Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Computer slow to boot up


  • This topic is locked This topic is locked
3 replies to this topic

#1 mcole2018

mcole2018

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:03:51 PM

Posted 28 April 2018 - 08:04 PM

I noticed computer is slow to boot up.  I tried to do some malware scan but don't think it made difference.  Please help.  Thanks! 

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25.04.2018
Ran by nshah (administrator) on NSHAH7-TP (28-04-2018 17:57:53)
Running from C:\Users\nshah\Downloads
Loaded Profiles: nshah (Available Profiles: amkoradmin & Administrator & nshah)
Platform: Windows 7 Enterprise Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(IBM Corp) C:\Program Files (x86)\IBM\Lotus\Notes\nslsvice.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\cyserver.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\CyveraService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(IBM) C:\Program Files (x86)\IBM\Lotus\Notes\nsd.exe
(Microsoft Corporation) C:\Program Files\Microsoft\MDOP MBAM\MBAMAgent.exe
(IBM Corp) C:\Program Files (x86)\IBM\Lotus\Notes\ntmulti.exe
(Palo Alto Networks) C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Clean\Clean.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Data Protection\BitLocker Management\Sophos.Encryption.BitLockerService.exe
(Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe
(Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFileScanner.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Health\Health.exe
(Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFileScanner.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe
(Sophos Limited) C:\Program Files\Sophos\Safestore\Safestore64.exe
(Sophos Limited) C:\Program Files\Sophos\Endpoint Defense\SSPService.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\tlaservice.exe
(UltraVNC) C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\tlaworker.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\tlaworker.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\tlaworker.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\tlaworker.exe
(Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(UltraVNC) C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcDeskBandHlpr.exe
(Altiris, Inc.) C:\Program Files\Altiris\Dagent\dagentui.exe
(Sophos Limited) C:\Program Files\Sophos\Sophos UI\Sophos UI.exe
(Palo Alto Networks) C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPA.exe
(Palo Alto Networks, Inc.) C:\Program Files\Palo Alto Networks\Traps\cytray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor Corp.) C:\Windows\RtsCM64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\SvcGuiHlpr.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Symantec Corporation) C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe
(Symantec Corporation) C:\Program Files\Altiris\Altiris Agent\x86\AeXNSAgentHostSurrogate32.exe
(SAP AG) C:\Program Files (x86)\SAP\SapSetup\Setup\Updater\NwSapAutoWorkstationUpdateService.exe
(Symantec Corporation) C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Altiris, Inc.) C:\Program Files\Altiris\Dagent\dagent.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\Windows-KB890830-x64-V5.59.exe
(Microsoft Corporation) C:\Windows\System32\MRT-KB890830.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [DagentUI] => C:\Program Files\Altiris\Dagent\dagentui.exe [852480 2013-11-22] (Altiris, Inc.)
HKLM\...\Run: [AcWin7Hlpr] => C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe [63728 2014-12-16] (Lenovo)
HKLM\...\Run: [IgfxTray] => C:\windows\system32\igfxtray.exe [392168 2016-06-02] ()
HKLM\...\Run: [HotKeysCmds] => C:\windows\system32\hkcmd.exe
HKLM\...\Run: [Sophos UI.exe] => C:\Program Files\Sophos\Sophos UI\Sophos UI.exe [2850056 2018-02-06] (Sophos Limited)
HKLM\...\Run: [GlobalProtect] => C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPA.exe [2128200 2017-02-21] (Palo Alto Networks)
HKLM\...\Run: [Cyvera] => C:\Program Files\Palo Alto Networks\Traps\cytray.exe [545032 2017-12-05] (Palo Alto Networks, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3898456 2018-01-09] (Synaptics Incorporated)
HKLM\...\Run: [RtsCM] => C:\windows\RTSCM64.EXE [195288 2014-12-09] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Persistence] => C:\windows\system32\igfxpers.exe
HKLM Group Policy restriction on software: %AppData%*\*\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %localAppData%\Temp\*.zip\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %localAppData%\Temp\7z*\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %localAppData%\Temp\wz*\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %localAppData%\Temp\Rar*\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %AppData%\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %localAppData%\*.exe <==== ATTENTION
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKLM\...\Policies\Explorer: [NoAutorun] 1
HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\Run: [GoogleChromeAutoLaunch_E1D5BC1B0E25B6117DB7B8B3EBCC8926] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1453912 2018-04-25] (Google Inc.)
HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\MountPoints2: {33df0825-671c-11e2-a467-806e6f6e6963} - D:\setup.exe
HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\MountPoints2: {78fc2b07-4dc7-11e6-b788-185e0f6e048c} - D:\DT4000_Launcher.exe
HKU\S-1-5-18\...\Policies\Explorer: [ForceRunOnStartMenu] 1
HKU\S-1-5-18\...\Policies\Explorer: [NoStartMenuMyGames] 1
HKU\S-1-5-18\...\Policies\Explorer: [TaskbarNoNotification] 1
HKU\S-1-5-18\...\Policies\Explorer: [NoSMConfigurePrograms] 1
HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 1
HKU\S-1-5-18\...\Policies\Explorer: [DisallowCpl] 1
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [174856 2015-02-25] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [156840 2015-02-25] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2017-11-30]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneDrive for Business.lnk [2018-04-28]
ShortcutTarget: OneDrive for Business.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * SophosNA
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
CHR HKU\.DEFAULT\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
CHR HKU\S-1-5-21-3733008567-4105056608-180679723-26472\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4C7B78BC-01DB-447C-86D1-1F78BF8B953D}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{58CBFEF3-884B-4B9C-9403-9B1ACA2E04F8}: [DhcpNameServer] 10.96.217.91 10.96.217.92 10.96.217.118
Tcpip\..\Interfaces\{AAB85D25-C2C2-4F81-B515-D5160000450E}: [DhcpNameServer] 10.96.217.91 10.96.217.92 10.96.217.118
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-3733008567-4105056608-180679723-26472\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
HKU\S-1-5-21-3733008567-4105056608-180679723-26472\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://amkornet.amkor.com/
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-04-15] (Microsoft Corporation)
BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2018-04-15] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2018-04-15] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll => No File
BHO-x32: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-04-03] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2018-04-15] (Microsoft Corporation)
DPF: HKLM-x32 {C4B4006B-48C5-4F09-B6D0-A2D07A99B931} hxxp://hpqc.amkor.com/qcbin/ALM-Platform-Loader.12.0x.cab
DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} hxxps://intercall.webex.com/client/WBXclient-T30L10NSP6-10050/webex/ieatgpc1.cab
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-03] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-03] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-03] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-03] (Microsoft Corporation)
Handler-x32: saphtmlp - {D1F8BD1E-7967-11D2-B43A-006094B9EADB} - c:\program files (x86)\sap\frontend\sapgui\saphtmlp.dll [2014-02-27] (SAP, Walldorf)
Handler-x32: sapr3 - {D1F8BD1E-7967-11D2-B43A-006094B9EADB} - c:\program files (x86)\sap\frontend\sapgui\saphtmlp.dll [2014-02-27] (SAP, Walldorf)
 
FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Data\IPSFF => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_29_0_0_140.dll [2018-04-10] ()
FF Plugin: @java.com/DTPlugin,version=1.6.0_45 -> C:\Windows\system32\npdeployJava1.dll [2013-04-11] (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_29_0_0_140.dll [2018-04-10] ()
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll [2012-05-25] (Yahoo! Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-04-03] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-04-03] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-11] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3733008567-4105056608-180679723-26472: @citrixonline.com/appdetectorplugin -> C:\Users\nshah\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2017-04-05] (Citrix Online)
FF Plugin HKU\S-1-5-21-3733008567-4105056608-180679723-26472: @zoom.us/ZoomVideoPlugin -> C:\Users\nshah\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2017-03-06] (Zoom Video Communications, Inc.)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default [2018-04-28]
CHR Extension: (Adobe Acrobat) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-07-14]
CHR Extension: (Google Docs Offline) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-03]
CHR Extension: (G Suite Training) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\idkloemkmldbemijiamdiolojbffnjlh [2017-12-15]
CHR Extension: (Cisco WebEx Extension) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2018-04-10]
CHR Extension: (Chromebook Recovery Utility) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\jndclpdbaamdhonoechobihbbiimdgai [2018-04-01]
CHR Extension: (Google Hangouts) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\knipolnnllmklapflnccelgolnpehhpl [2018-02-18]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2018-04-28]
CHR Extension: (Chrome Web Store Payments) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-10]
CHR Extension: (Chrome Media Router) - C:\Users\nshah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-04-27]
CHR HKU\S-1-5-21-3733008567-4105056608-180679723-26472\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 AeXAgentSrvHost; C:\Program Files\Altiris\Altiris Agent\x86\AeXNSAgentHostSurrogate32.exe [322336 2015-12-09] (Symantec Corporation)
R2 AeXNSClient; C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe [2727928 2015-12-09] (Symantec Corporation)
R2 Altiris Deployment Agent; C:\Program Files\Altiris\Dagent\dagent.exe [2044416 2013-11-22] (Altiris, Inc.) [File not signed]
S3 AltirisAgentProvider; C:\Program Files\Altiris\Altiris Agent\Agents\WMIProviderAgent\AltirisAgentProvider.exe [543280 2015-12-09] (Symantec Corporation)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8522416 2018-04-06] (Microsoft Corporation)
S3 ConfigService; C:\Program Files\Altiris\Altiris Agent\Agents\Deployment\ConfigService.exe [271432 2014-05-21] ()
R2 CyServer; C:\Program Files\Palo Alto Networks\Traps\cyserver.exe [727856 2017-12-05] (Palo Alto Networks, Inc.)
R2 CyveraService; C:\Program Files\Palo Alto Networks\Traps\CyveraService.exe [897288 2017-12-05] (Palo Alto Networks, Inc.)
R2 igfxCUIService1.0.0.0; C:\windows\system32\igfxCUIService.exe [354280 2016-06-02] (Intel Corporation)
R2 Lotus Notes Diagnostics; C:\Program Files (x86)\IBM\Lotus\Notes\nsd.exe [3417480 2011-07-11] (IBM)
R2 Lotus Notes Single Logon; C:\Program Files (x86)\IBM\Lotus\Notes\nslsvice.exe [62856 2011-07-11] (IBM Corp)
S2 LPlatSvc; C:\windows\system32\LPlatSvc.exe [710144 2016-09-06] (Lenovo.)
R2 MBAMAgent; C:\Program Files\Microsoft\MDOP MBAM\MBAMAgent.exe [323296 2014-06-17] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268968 2017-10-24] ()
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [File not signed]
R2 NWSAPAutoWorkstationUpdateSvc; C:\Program Files (x86)\SAP\SAPsetup\Setup\Updater\NwSapAutoWorkstationUpdateService.exe [193144 2014-02-27] (SAP AG)
R2 PanGPS; C:\Program Files\Palo Alto Networks\GlobalProtect\PanGPS.exe [3325768 2017-02-21] (Palo Alto Networks)
S2 panwd; C:\Program Files\Palo Alto Networks\Traps\cyserver.exe [727856 2017-12-05] (Palo Alto Networks, Inc.)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [File not signed]
R2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [773080 2018-01-08] (Sophos Limited)
R2 Sophos Clean Service; C:\Program Files (x86)\Sophos\Clean\Clean.exe [3709384 2018-01-09] (Sophos Limited)
R2 Sophos Device Encryption Service; C:\Program Files (x86)\Sophos\Sophos Data Protection\BitLocker Management\Sophos.Encryption.BitLockerService.exe [30424 2017-10-23] (Sophos Limited)
R2 Sophos File Scanner Service; C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe [1329528 2017-12-19] (Sophos Limited)
R2 Sophos Health Service; C:\Program Files (x86)\Sophos\Health\Health.exe [1720648 2017-12-05] (Sophos Limited)
R2 Sophos MCS Agent; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe [1301976 2017-09-27] (Sophos Limited)
R2 Sophos MCS Client; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe [1715464 2017-09-27] (Sophos Limited)
R2 Sophos Safestore Service; C:\Program Files\Sophos\Safestore\Safestore64.exe [1872880 2018-02-12] (Sophos Limited)
R2 Sophos System Protection Service; C:\Program Files\Sophos\Endpoint Defense\SSPService.exe [9412344 2018-02-15] (Sophos Limited)
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [23920 2017-12-12] ()
R2 tlaservice; C:\Program Files\Palo Alto Networks\Traps\tlaservice.exe [529672 2017-12-05] (Palo Alto Networks, Inc.)
R2 uvnc_service; C:\Program Files\uvnc bvba\UltraVNC\WinVNC.exe [2181400 2013-09-03] (UltraVNC)
R2 valWBFPolicyService; C:\windows\system32\valWBFPolicyService.exe [49040 2014-07-24] (Synaptics Incorporated)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2016-03-25] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3758760 2017-10-24] (Intel® Corporation)
S3 Smcinst; "C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7004.6500.105\SmcLU\Setup\smcinst.exe" [X]
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 CyveraK; C:\Program Files\Palo Alto Networks\Traps\cyverak.sys [193512 2017-12-05] (Palo Alto Networks, Inc.)
R1 Cyvrfsfd; C:\Program Files\Palo Alto Networks\Traps\cyvrfsfd.sys [241640 2017-12-05] (Palo Alto Networks, Inc.)
R1 cyvrmtgn; C:\Program Files\Palo Alto Networks\Traps\cyvrmtgn.sys [92648 2017-12-05] (Palo Alto Networks, Inc.)
R3 e1dexpress; C:\windows\System32\DRIVERS\e1d62x64.sys [378136 2014-09-29] (Intel Corporation)
R1 googledrivefs2285; C:\windows\System32\DRIVERS\googledrivefs2285.sys [86776 2018-01-26] (Google, Inc.)
R1 googledrivefs2334; C:\windows\System32\DRIVERS\googledrivefs2334.sys [99576 2018-04-02] (Google, Inc.)
S3 ISCT; C:\windows\system32\drivers\ISCTD64.sys [46568 2013-01-19] ()
R3 MEIx64; C:\windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
R3 NETwNs64; C:\windows\System32\DRIVERS\Netwsw04.sys [3472392 2017-10-29] (Intel Corporation)
R3 PanGpd; C:\windows\System32\DRIVERS\pangpd.sys [36352 2017-02-21] (Palo Alto Networks)
R3 RTSPER; C:\windows\System32\DRIVERS\RtsPer.sys [423128 2013-07-24] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\windows\System32\DRIVERS\rtsuvc.sys [2980568 2014-12-09] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\windows\System32\DRIVERS\Smb_driver_Intel.sys [41560 2018-01-09] (Synaptics Incorporated)
R0 Sophos Endpoint Defense; C:\windows\System32\DRIVERS\SophosED.sys [522824 2018-02-15] (Sophos Limited)
S1 UimBus; C:\windows\System32\DRIVERS\UimBus.sys [102664 2014-02-10] ()
S1 Uim_DEVIM; C:\windows\System32\DRIVERS\uim_devim.sys [25992 2014-02-10] ()
S1 Uim_IM; C:\windows\System32\DRIVERS\uim_im.sys [700424 2014-02-10] ()
S3 vpnva; C:\windows\System32\DRIVERS\vpnva64-6.sys [52592 2014-06-10] (Cisco Systems, Inc.)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S1 ZAM; \??\C:\windows\System32\drivers\zam64.sys [X]
S1 ZAM_Guard; \??\C:\windows\System32\drivers\zamguard64.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2018-04-28 17:57 - 2018-04-28 17:58 - 000025441 _____ C:\Users\nshah\Downloads\FRST.txt
2018-04-28 17:57 - 2018-04-28 17:57 - 002405888 _____ (Farbar) C:\Users\nshah\Downloads\FRST64.exe
2018-04-28 17:57 - 2018-04-28 17:57 - 000000000 ____D C:\FRST
2018-04-28 15:48 - 2018-04-28 15:48 - 000748192 _____ (TechGuy, Inc.) C:\Users\nshah\Downloads\SysInfo (1).exe
2018-04-28 15:12 - 2018-04-28 15:12 - 000748192 _____ (TechGuy, Inc.) C:\Users\nshah\Downloads\SysInfo.exe
2018-04-28 14:50 - 2018-04-28 14:51 - 006625600 _____ (Zemana Ltd. ) C:\Users\nshah\Downloads\Zemana.AntiMalware.Setup (1).exe
2018-04-28 14:46 - 2018-04-28 15:07 - 000020272 _____ C:\windows\ZAM_Guard.krnl.trace
2018-04-28 14:46 - 2018-04-28 14:55 - 000027497 _____ C:\windows\ZAM.krnl.trace
2018-04-28 14:45 - 2018-04-28 15:08 - 000000000 ____D C:\Program Files (x86)\Zemana AntiMalware
2018-04-28 14:45 - 2018-04-28 14:45 - 000000000 ____D C:\Users\nshah\AppData\Local\Zemana
2018-04-28 14:44 - 2018-04-28 14:45 - 006625600 _____ (Zemana Ltd. ) C:\Users\nshah\Downloads\Zemana.AntiMalware.Setup.exe
2018-04-28 14:21 - 2018-04-28 14:34 - 000000000 ____D C:\ProgramData\HitmanPro
2018-04-28 14:19 - 2018-04-28 14:21 - 011605440 _____ (SurfRight B.V.) C:\Users\nshah\Downloads\hitmanpro_x64.exe
2018-04-28 10:53 - 2018-01-09 02:19 - 000265304 _____ (Synaptics Incorporated) C:\windows\system32\SynTPAPI.dll
2018-04-28 10:53 - 2018-01-09 02:19 - 000220760 _____ (Synaptics Incorporated) C:\windows\system32\SynTPCo20.dll
2018-04-28 10:53 - 2018-01-09 02:18 - 000585816 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\SynTP.sys
2018-04-28 10:53 - 2018-01-09 02:18 - 000041560 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\Smb_driver_Intel.sys
2018-04-28 10:53 - 2018-01-08 22:59 - 000401920 _____ (Synaptics Incorporated) C:\windows\SysWOW64\SynCom.dll
2018-04-27 21:07 - 2018-04-27 21:07 - 000000000 ____D C:\Program Files\Malwarebytes
2018-04-27 21:02 - 2018-04-27 21:02 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\nshah\Downloads\rkill.exe
2018-04-27 20:51 - 2018-04-28 13:36 - 000000000 ____D C:\windows\pss
2018-04-27 13:48 - 2018-04-27 13:48 - 000625636 _____ C:\Users\nshah\Downloads\ATP_EX107_W_2017_v3.xlsx
2018-04-27 13:33 - 2018-04-27 13:33 - 000012378 _____ C:\Users\nshah\Downloads\testsheet-export-1524861207675.xlsx
2018-04-27 13:31 - 2018-04-27 13:31 - 000112925 _____ C:\Users\nshah\Downloads\EX107.W-1.xlsx
2018-04-27 13:28 - 2018-04-27 13:28 - 000024670 _____ C:\Users\nshah\Downloads\testsheet-export-1524860896718.xlsx
2018-04-27 13:26 - 2018-04-27 13:26 - 000485457 _____ C:\Users\nshah\Downloads\EX107.W-2 Grant of Authority Policy.xlsx
2018-04-27 13:18 - 2018-04-27 13:18 - 000025168 _____ C:\Users\nshah\Downloads\testsheet-export-1524860298271.xlsx
2018-04-27 13:15 - 2018-04-27 13:15 - 000012263 _____ C:\Users\nshah\Downloads\testsheet-export-1524860127802.xlsx
2018-04-27 13:10 - 2018-04-27 13:10 - 000176939 _____ C:\Users\nshah\Downloads\EX107_T_2 PO can't be issued without approval.xlsx
2018-04-27 13:09 - 2018-04-27 13:09 - 002615098 _____ C:\Users\nshah\Downloads\EX107_T_1 PO list from Jan 1 2017 to Jun 30 2017.xlsx
2018-04-27 13:06 - 2018-04-27 13:07 - 000463715 _____ C:\Users\nshah\Downloads\EX107_W_1  Screen Shots for issuing PO.xlsx
2018-04-27 13:02 - 2018-04-27 13:02 - 000012896 _____ C:\Users\nshah\Downloads\testsheet-export-1524859342882.xlsx
2018-04-27 11:20 - 2018-04-27 11:20 - 000155827 _____ C:\Users\nshah\Downloads\document (8).pdf
2018-04-27 11:09 - 2018-04-27 11:09 - 000154993 _____ C:\Users\nshah\Downloads\statement (2).pdf
2018-04-27 11:09 - 2018-04-27 11:09 - 000045296 _____ C:\Users\nshah\Downloads\confirm (3).pdf
2018-04-26 16:46 - 2018-04-26 16:46 - 000017824 _____ C:\Users\nshah\Downloads\e2e Test (3).xlsx
2018-04-26 15:28 - 2018-04-26 15:28 - 000020276 _____ C:\Users\nshah\Downloads\20180424 ON Semi Renesas Shipping data (2).xlsx
2018-04-26 10:07 - 2018-04-26 10:07 - 000145278 _____ C:\Users\nshah\Downloads\QA LABEL ST-00180 (1).pdf
2018-04-26 10:06 - 2018-04-26 10:06 - 000303642 _____ C:\Users\nshah\Downloads\UBIQ - LTC - QA.pdf
2018-04-26 10:06 - 2018-04-26 10:06 - 000245306 _____ C:\Users\nshah\Downloads\VISHAY - LTC - QA.pdf
2018-04-26 09:54 - 2018-04-26 09:54 - 000719872 _____ C:\Users\nshah\Downloads\Shipping Doc - Vishay - Sign Off.msg
2018-04-26 09:54 - 2018-04-26 09:54 - 000131465 _____ C:\Users\nshah\Downloads\QA LABEL UBIQ-00220.pdf
2018-04-26 09:53 - 2018-04-26 09:53 - 000966144 _____ C:\Users\nshah\Downloads\Shipping Doc - ST - Sign Off (1).msg
2018-04-26 09:53 - 2018-04-26 09:53 - 000713216 _____ C:\Users\nshah\Downloads\Shipping Doc - UBIQ - Sign Off.msg
2018-04-26 09:53 - 2018-04-26 09:53 - 000145278 _____ C:\Users\nshah\Downloads\QA LABEL ST-00180.pdf
2018-04-26 09:52 - 2018-04-26 09:52 - 001081856 _____ C:\Users\nshah\Downloads\Shipping Doc - Rohm - Sign Off.msg
2018-04-26 09:52 - 2018-04-26 09:52 - 000959488 _____ C:\Users\nshah\Downloads\Shipping Doc - Renesas - Sign Off.msg
2018-04-26 09:52 - 2018-04-26 09:52 - 000141703 _____ C:\Users\nshah\Downloads\QA LABEL NCE-00005.pdf
2018-04-26 09:52 - 2018-04-26 09:52 - 000115623 _____ C:\Users\nshah\Downloads\QA PACKING LIST NCE-00005.pdf
2018-04-26 09:51 - 2018-04-26 09:51 - 000720384 _____ C:\Users\nshah\Downloads\Shipping Doc - NCE - Sign Off.msg
2018-04-26 09:49 - 2018-04-26 09:49 - 000966144 _____ C:\Users\nshah\Downloads\Shipping Doc - ST - Sign Off.msg
2018-04-26 09:49 - 2018-04-26 09:49 - 000253952 _____ C:\Users\nshah\Downloads\Shipping Doc - TDSC - Sign Off (1).msg
2018-04-26 09:47 - 2018-04-26 09:47 - 000253952 _____ C:\Users\nshah\Downloads\Shipping Doc - TDSC - Sign Off.msg
2018-04-26 09:46 - 2018-04-26 09:46 - 000351642 _____ C:\Users\nshah\Downloads\TDSC - LTC - QA.pdf
2018-04-26 09:45 - 2018-04-26 09:45 - 000292781 _____ C:\Users\nshah\Downloads\QA LABEL TSBK-01536.pdf
2018-04-26 09:45 - 2018-04-26 09:45 - 000292781 _____ C:\Users\nshah\Downloads\QA LABEL TSBK-01536 (1).pdf
2018-04-26 09:43 - 2018-04-26 09:43 - 000528186 _____ C:\Users\nshah\Downloads\JSC - LTC - QA (1).pdf
2018-04-26 09:37 - 2018-04-26 09:37 - 000528186 _____ C:\Users\nshah\Downloads\JSC - LTC - QA.pdf
2018-04-26 09:37 - 2018-04-26 09:37 - 000279630 _____ C:\Users\nshah\Downloads\JSC - PRD.pdf
2018-04-26 09:35 - 2018-04-26 09:35 - 001294336 _____ C:\Users\nshah\Downloads\Shipping Doc - JSC - Sign Off.msg
2018-04-26 09:31 - 2018-04-26 09:31 - 000017824 _____ C:\Users\nshah\Downloads\e2e Test (2).xlsx
2018-04-25 16:49 - 2018-04-25 16:49 - 003811727 _____ C:\Users\nshah\Downloads\Himeji_Invoice_PRD (2).pdf
2018-04-25 16:49 - 2018-04-25 16:49 - 000289453 _____ C:\Users\nshah\Downloads\Himeji_Invoice_QA (2).pdf
2018-04-25 13:29 - 2018-04-25 13:29 - 000017247 _____ C:\Users\nshah\Downloads\e2e Test (1).xlsx
2018-04-25 12:39 - 2018-04-25 12:39 - 003811727 _____ C:\Users\nshah\Downloads\Himeji_Invoice_PRD (1).pdf
2018-04-25 12:39 - 2018-04-25 12:39 - 000289453 _____ C:\Users\nshah\Downloads\Himeji_Invoice_QA (1).pdf
2018-04-25 12:03 - 2018-04-25 12:03 - 000020273 _____ C:\Users\nshah\Downloads\20180424 ON Semi Renesas Shipping data (1).xlsx
2018-04-25 11:42 - 2018-04-25 11:42 - 000836060 _____ C:\Users\nshah\Downloads\ST_Invoice_QA.pdf
2018-04-25 11:08 - 2018-04-25 11:08 - 000885231 _____ C:\Users\nshah\Downloads\Renesas_Invoice_QA.pdf
2018-04-25 11:08 - 2018-04-25 11:08 - 000711171 _____ C:\Users\nshah\Downloads\Renesas_Invoice_PRD.pdf
2018-04-25 11:04 - 2018-04-25 11:04 - 000936271 _____ C:\Users\nshah\Downloads\Oita_Invoice_QA.pdf
2018-04-25 11:04 - 2018-04-25 11:04 - 000720929 _____ C:\Users\nshah\Downloads\Oita_Invoice_PRD.pdf
2018-04-25 10:57 - 2018-04-25 10:57 - 000401564 _____ C:\Users\nshah\Downloads\NCE_Invoice_QA.pdf
2018-04-25 10:57 - 2018-04-25 10:57 - 000309732 _____ C:\Users\nshah\Downloads\NCE_Invoice_PRD.pdf
2018-04-25 10:57 - 2018-04-25 10:57 - 000309732 _____ C:\Users\nshah\Downloads\NCE_Invoice_PRD (1).pdf
2018-04-25 10:52 - 2018-04-25 10:52 - 000289453 _____ C:\Users\nshah\Downloads\Himeji_Invoice_QA.pdf
2018-04-25 10:51 - 2018-04-25 10:51 - 003811727 _____ C:\Users\nshah\Downloads\Himeji_Invoice_PRD.pdf
2018-04-25 10:50 - 2018-04-25 10:50 - 000020273 _____ C:\Users\nshah\Downloads\20180424 ON Semi Renesas Shipping data.xlsx
2018-04-25 09:28 - 2018-04-25 09:28 - 000017247 _____ C:\Users\nshah\Downloads\e2e Test.xlsx
2018-04-24 17:27 - 2018-04-24 17:27 - 003911642 _____ C:\Users\nshah\Downloads\Customer_Oita (JSC) (1).pdf
2018-04-24 17:24 - 2018-04-24 17:24 - 001209620 _____ C:\Users\nshah\Downloads\Customer_Himeji (TDSC) (1).pdf
2018-04-24 13:40 - 2018-04-24 13:40 - 000532905 _____ C:\Users\nshah\Downloads\ATM AMIGOS Project Status WW11_v2.pptx
2018-04-24 13:37 - 2018-04-24 13:37 - 000560338 _____ C:\Users\nshah\Downloads\ATM AMIGOS Project Status WW12_v3.pptx
2018-04-24 13:36 - 2018-04-24 13:36 - 000291906 _____ C:\Users\nshah\Downloads\ATM AMIGOS Project Status WW13.pptx
2018-04-24 13:35 - 2018-04-24 13:35 - 000533068 _____ C:\Users\nshah\Downloads\ATM AMIGOS Project Status WW15.pptx
2018-04-24 13:35 - 2018-04-24 13:35 - 000390285 _____ C:\Users\nshah\Downloads\ATM AMIGOS Project Status WW14.pptx
2018-04-24 12:30 - 2018-04-24 12:30 - 003594090 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP001 IASN (2).xlsx
2018-04-24 12:16 - 2018-04-24 12:16 - 006172525 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD009 POD (2).xlsx
2018-04-24 12:14 - 2018-04-24 12:14 - 000819858 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP005 PO Release (5).xlsx
2018-04-24 12:14 - 2018-04-24 12:14 - 000354473 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP002 PP008 GI (4).xlsx
2018-04-24 12:13 - 2018-04-24 12:13 - 003879482 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP009 GR (5).xlsx
2018-04-23 10:47 - 2018-04-23 10:47 - 000806762 _____ C:\Users\nshah\Downloads\Custormer_STMicro.pdf
2018-04-23 10:20 - 2018-04-23 10:20 - 003911642 _____ C:\Users\nshah\Downloads\Customer_Oita (JSC).pdf
2018-04-23 10:06 - 2018-04-23 10:06 - 001209620 _____ C:\Users\nshah\Downloads\Customer_Himeji (TDSC).pdf
2018-04-20 15:32 - 2018-04-20 15:32 - 003770776 _____ C:\Users\nshah\Downloads\EAGLE Project - Customer Facing Impact Meeting (1).pptx
2018-04-20 15:31 - 2018-04-20 15:31 - 000970752 _____ C:\Users\nshah\Downloads\eMES_Overview_v1.1 (1).ppt
2018-04-20 14:46 - 2018-04-20 14:46 - 000301568 _____ C:\Users\nshah\Downloads\ATM TDSC SIT1  SIT2 Interface Results & Sign Off (1).msg
2018-04-20 14:39 - 2018-04-20 14:41 - 000445952 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (8).xlsx
2018-04-20 09:16 - 2018-04-20 09:16 - 003879482 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP009 GR (4).xlsx
2018-04-20 09:16 - 2018-04-20 09:16 - 000138747 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (7).xlsx
2018-04-20 09:15 - 2018-04-20 09:15 - 000138747 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (6).xlsx
2018-04-19 11:21 - 2018-04-19 11:21 - 000446642 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (7).xlsx
2018-04-18 14:30 - 2018-04-18 14:30 - 000023323 _____ C:\Users\nshah\Downloads\ATM Users Roles in TQA 4-16-2018.xlsx
2018-04-18 11:57 - 2018-04-18 14:03 - 000467135 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (6).xlsx
2018-04-18 11:08 - 2018-04-18 11:08 - 000301568 _____ C:\Users\nshah\Downloads\ATM TDSC SIT1  SIT2 Interface Results & Sign Off.msg
2018-04-18 11:07 - 2018-04-18 11:07 - 000854528 _____ C:\Users\nshah\Downloads\JSC Interface Test Sign Off.msg
2018-04-17 16:52 - 2018-04-17 16:52 - 003545446 _____ C:\Users\nshah\Downloads\OneDrive_1_4-17-2018.zip
2018-04-17 16:08 - 2018-04-17 16:08 - 003770776 _____ C:\Users\nshah\Downloads\EAGLE Project - Customer Facing Impact Meeting.pptx
2018-04-17 16:06 - 2018-04-17 16:06 - 000970752 _____ C:\Users\nshah\Downloads\eMES_Overview_v1.1.ppt
2018-04-17 15:58 - 2018-04-17 15:58 - 003241008 _____ C:\Users\nshah\Downloads\PCS Schd Process Gaps Current and eMES.pptx
2018-04-17 15:57 - 2018-04-17 15:57 - 000816056 _____ C:\Users\nshah\Downloads\Amkor CIM Overview.pptx
2018-04-17 15:46 - 2018-04-17 15:46 - 002284710 _____ C:\Users\nshah\Downloads\WW49_Windows-Unix--Backup-Email-Basis_Report.pptx
2018-04-17 15:23 - 2018-04-17 15:23 - 000103890 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (5).xlsx
2018-04-17 15:22 - 2018-04-17 15:22 - 003858261 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP009 GR (3).xlsx
2018-04-17 14:25 - 2018-04-17 14:25 - 000294421 _____ C:\Users\nshah\Downloads\sea-risk-sap-governance-risk-compliance-effective-risk-management-2018.pdf
2018-04-17 14:25 - 2018-04-17 14:25 - 000111639 _____ C:\Users\nshah\Downloads\sea-risk-sap-governance-risk-compliance-sap-access-control-upgrade-2018.pdf
2018-04-17 12:48 - 2018-04-17 12:48 - 000438093 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (5).xlsx
2018-04-17 11:56 - 2018-04-17 11:56 - 000438801 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (4).xlsx
2018-04-17 09:21 - 2018-04-17 09:21 - 000032896 _____ C:\Users\nshah\Downloads\(JSC)SIT SOL product test scenario_20180413 (2).xlsx
2018-04-17 09:20 - 2018-04-17 09:20 - 000062267 _____ C:\Users\nshah\Downloads\(JSC)SIT DIP product test scenario_20180413 (2).xlsx
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Public\Documents\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Public\Documents\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Public\Desktop\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Public\Desktop\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Public\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Public\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\Downloads\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\Downloads\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\Documents\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\Documents\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\Desktop\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\Desktop\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\AppData\LocalLow\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\AppData\LocalLow\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\AppData\Local\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\AppData\Local\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\nshah\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\Downloads\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\Downloads\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\Documents\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\Documents\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\Desktop\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\Desktop\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\AppData\LocalLow\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\AppData\LocalLow\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\AppData\Local\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\AppData\Local\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\mscons\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Default\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Default\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Default\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Default\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Default User\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Default User\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\Downloads\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\Downloads\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\Documents\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\Documents\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\Desktop\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\Desktop\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\AppData\LocalLow\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\AppData\LocalLow\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\AppData\Local\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\AppData\Local\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\amkoradmin\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\Downloads\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\Downloads\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\Documents\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\Documents\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\Desktop\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\Desktop\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\AppData\LocalLow\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\AppData\LocalLow\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\AppData\Local\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\AppData\Local\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\Users\Administrator\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\ProgramData\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\ProgramData\!!!!!1898668485.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\!!!!!1985810211.ppt
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N C:\!!!!!1898668485.ppt
2018-04-16 15:05 - 2018-04-27 15:53 - 000000000 ____D C:\Users\nshah\Documents\ITGC
2018-04-16 14:57 - 2018-04-16 14:57 - 000032895 _____ C:\Users\nshah\Downloads\(JSC)SIT SOL product test scenario_20180413 (1).xlsx
2018-04-16 14:54 - 2018-04-16 14:54 - 000062218 _____ C:\Users\nshah\Downloads\(JSC)SIT DIP product test scenario_20180413 (1).xlsx
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Public\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Public\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Public\Documents\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Public\Documents\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Public\Desktop\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Public\Desktop\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\Downloads\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\Downloads\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\Documents\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\Documents\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\Desktop\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\Desktop\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\AppData\Local\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\nshah\AppData\Local\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\Downloads\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\Downloads\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\Documents\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\Documents\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\Desktop\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\Desktop\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\AppData\Local\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\mscons\AppData\Local\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Default\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Default\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\Documents\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\Documents\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\Downloads\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\Downloads\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\Documents\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\Documents\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\Desktop\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\Desktop\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ1732747090.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\ProgramData\ZZZZZ2815832982.pps
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N C:\ProgramData\ZZZZZ1732747090.pps
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Public\Documents\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Public\Documents\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Public\Desktop\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Public\Desktop\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Public\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Public\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\Downloads\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\Downloads\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\Documents\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\Documents\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\Desktop\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\Desktop\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\AppData\LocalLow\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\AppData\LocalLow\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\AppData\Local\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\AppData\Local\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\nshah\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\Downloads\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\Downloads\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\Documents\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\Documents\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\Desktop\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\Desktop\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\AppData\LocalLow\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\AppData\LocalLow\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\AppData\Local\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\AppData\Local\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\mscons\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Default\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Default\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Default\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Default\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Default User\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Default User\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\Downloads\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\Downloads\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\Documents\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\Documents\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\Desktop\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\Desktop\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\AppData\LocalLow\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\AppData\LocalLow\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\AppData\Local\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\AppData\Local\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\amkoradmin\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\Downloads\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\Downloads\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\Documents\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\Documents\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\Desktop\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\Desktop\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\AppData\LocalLow\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\AppData\LocalLow\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\AppData\Local\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\AppData\Local\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\Users\Administrator\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\ProgramData\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\ProgramData\!!!!!1379154394.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\!!!!!1786692950.bmp
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N C:\!!!!!1379154394.bmp
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Public\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Public\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Public\Documents\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Public\Documents\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Public\Desktop\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Public\Desktop\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\Downloads\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\Downloads\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\Documents\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\Documents\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\Desktop\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\Desktop\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\AppData\Local\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\nshah\AppData\Local\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\Downloads\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\Downloads\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\Documents\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\Documents\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\Desktop\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\Desktop\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\AppData\Local\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\mscons\AppData\Local\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Default\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Default\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\Documents\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\Documents\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\Downloads\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\Downloads\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\Documents\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\Documents\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\Desktop\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\Desktop\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2100559072.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\ProgramData\ZZZZZ2267567491.txt
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N C:\ProgramData\ZZZZZ2100559072.txt
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Public\Documents\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Public\Documents\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Public\Desktop\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Public\Desktop\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Public\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Public\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\Downloads\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\Downloads\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\Documents\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\Documents\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\Desktop\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\Desktop\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\AppData\Roaming\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\AppData\Roaming\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\AppData\LocalLow\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\AppData\LocalLow\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\AppData\Local\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\AppData\Local\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\nshah\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\Downloads\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\Downloads\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\Documents\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\Documents\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\Desktop\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\Desktop\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\AppData\Roaming\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\AppData\Roaming\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\AppData\LocalLow\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\AppData\LocalLow\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\AppData\Local\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\AppData\Local\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\mscons\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Default\AppData\Roaming\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Default\AppData\Roaming\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Default\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Default\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Default User\AppData\Roaming\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Default User\AppData\Roaming\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\Downloads\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\Downloads\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\Documents\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\Documents\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\Desktop\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\Desktop\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\AppData\Roaming\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\AppData\Roaming\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\AppData\LocalLow\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\AppData\LocalLow\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\AppData\Local\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\AppData\Local\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\amkoradmin\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\Downloads\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\Downloads\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\Documents\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\Documents\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\Desktop\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\Desktop\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\AppData\Roaming\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\AppData\LocalLow\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\AppData\LocalLow\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\AppData\Local\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\AppData\Local\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\Users\Administrator\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\ProgramData\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\ProgramData\!!!!!1689065132
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\!!!!!1800708361
2018-04-16 14:01 - 2018-04-16 14:01 - 000000000 ____D C:\!!!!!1689065132
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Public\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Public\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Public\Documents\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Public\Documents\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Public\Desktop\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Public\Desktop\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\Downloads\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\Downloads\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\Documents\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\Documents\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\Desktop\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\Desktop\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\AppData\Local\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\nshah\AppData\Local\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\Downloads\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\Downloads\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\Documents\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\Documents\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\Desktop\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\Desktop\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\AppData\Local\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\mscons\AppData\Local\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Default\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Default\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\Documents\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\Documents\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\Downloads\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\Downloads\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\Documents\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\Documents\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\Desktop\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\Desktop\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2295974240.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\ProgramData\ZZZZZ983791688.eml
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N C:\ProgramData\ZZZZZ2295974240.eml
2018-04-15 17:38 - 2018-04-15 17:38 - 001562960 _____ C:\Users\nshah\Downloads\Internal-1182018-Amkor_DefaultTemplate.potx
2018-04-14 13:24 - 2018-04-14 13:24 - 000513128 _____ C:\Users\nshah\Downloads\ETRADE Brokerage Statement - XXXX9186.pdf
2018-04-14 13:22 - 2018-04-14 13:22 - 000504976 _____ C:\Users\nshah\Downloads\ETRADE Brokerage Statement - XXXX5753.pdf
2018-04-14 13:20 - 2018-04-14 13:20 - 000509106 _____ C:\Users\nshah\Downloads\ETRADE Brokerage Statement - XXXX9189.pdf
2018-04-14 11:20 - 2018-04-02 13:29 - 000099576 _____ (Google, Inc.) C:\windows\system32\Drivers\googledrivefs2334.sys
2018-04-13 14:03 - 2018-04-13 14:03 - 000017853 _____ C:\Users\nshah\Downloads\Test Scenarios and Restults.xlsx
2018-04-13 13:58 - 2018-04-13 13:58 - 000164826 _____ C:\Users\nshah\Downloads\Toshiba Himeji Interface - As-Is vs To-Be_v2.1 (2).pptx
2018-04-13 13:57 - 2018-04-13 13:57 - 001024020 _____ C:\Users\nshah\Downloads\TDSC SIT2 (VF) Result.xlsx
2018-04-13 13:55 - 2018-04-13 13:55 - 000428032 _____ C:\Users\nshah\Downloads\Customer's confirmation.msg
2018-04-13 13:48 - 2018-04-13 13:48 - 000032895 _____ C:\Users\nshah\Downloads\(JSC)SIT SOL product test scenario_20180413.xlsx
2018-04-13 13:47 - 2018-04-13 13:47 - 000062218 _____ C:\Users\nshah\Downloads\(JSC)SIT DIP product test scenario_20180413.xlsx
2018-04-13 13:46 - 2018-04-13 13:46 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (7).pptx
2018-04-13 13:45 - 2018-04-14 11:20 - 000001170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drive File Stream.lnk
2018-04-13 13:45 - 2018-04-13 13:45 - 000000000 ____D C:\Program Files\Google
2018-04-13 13:45 - 2018-01-26 19:23 - 000086776 _____ (Google, Inc.) C:\windows\system32\Drivers\googledrivefs2285.sys
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Public\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Public\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Public\Documents\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Public\Documents\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Public\Desktop\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Public\Desktop\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\Downloads\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\Downloads\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\Documents\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\Documents\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\Desktop\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\Desktop\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\AppData\Local\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\nshah\AppData\Local\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\Downloads\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\Downloads\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\Documents\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\Documents\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\Desktop\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\Desktop\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\AppData\Local\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\mscons\AppData\Local\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Default\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Default\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Default\AppData\Roaming\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Default\AppData\Roaming\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\Downloads\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\Downloads\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\Documents\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\Documents\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\Desktop\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\Desktop\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\Downloads\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\Downloads\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\Documents\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\Documents\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\Desktop\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\Desktop\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\AppData\Local\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\Users\Administrator\AppData\Local\ZZZZZ1836659985.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\ProgramData\ZZZZZ1964161346.pem
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N C:\ProgramData\ZZZZZ1836659985.pem
2018-04-12 14:45 - 2018-04-12 14:45 - 000016337 _____ C:\Users\nshah\Downloads\Go-No Go Criteria.xlsx
2018-04-12 14:44 - 2018-04-12 14:44 - 000022286 _____ C:\Users\nshah\Downloads\Cut-over Activities (2).xlsx
2018-04-12 14:39 - 2018-04-12 14:39 - 000022286 _____ C:\Users\nshah\Downloads\Cut-over Activities (1).xlsx
2018-04-12 14:37 - 2018-04-12 14:37 - 000032370 _____ C:\Users\nshah\Downloads\Cut-Over Plan_v2 (1).xlsx
2018-04-12 14:37 - 2018-04-12 14:37 - 000030460 _____ C:\Users\nshah\Downloads\Post Go-Live Support Plan_v1.xlsx
2018-04-12 14:34 - 2018-04-12 14:34 - 000022286 _____ C:\Users\nshah\Downloads\Cut-over Activities.xlsx
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Public\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Public\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Public\Documents\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Public\Documents\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Public\Desktop\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Public\Desktop\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\Downloads\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\Downloads\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\Documents\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\Documents\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\Desktop\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\Desktop\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\AppData\Local\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\nshah\AppData\Local\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\Downloads\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\Downloads\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\Documents\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\Documents\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\Desktop\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\Desktop\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\AppData\Local\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\mscons\AppData\Local\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Default\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Default\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\Documents\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\Documents\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\Downloads\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\Downloads\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\Documents\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\Documents\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\Desktop\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\Desktop\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ1515699188.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\ProgramData\ZZZZZ2564429509.mdb
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N C:\ProgramData\ZZZZZ1515699188.mdb
2018-04-12 12:33 - 2018-04-12 12:33 - 000162945 _____ C:\Users\nshah\Downloads\ST B2B Interface - As-Is vs To-Be (AMIGOS) - Copy (3).pptx
2018-04-12 12:33 - 2018-04-12 12:33 - 000162945 _____ C:\Users\nshah\Downloads\ST B2B Interface - As-Is vs To-Be (AMIGOS) - Copy (2).pptx
2018-04-12 12:32 - 2018-04-12 12:32 - 000164826 _____ C:\Users\nshah\Downloads\Toshiba Himeji Interface - As-Is vs To-Be_v2.1 (1).pptx
2018-04-12 12:23 - 2018-04-12 12:23 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (6).pptx
2018-04-12 12:19 - 2018-04-12 12:19 - 000152938 _____ C:\Users\nshah\Downloads\AMIGOS Volume Test Scope & Approach (1).pptx
2018-04-12 11:55 - 2018-04-12 11:55 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (5).pptx
2018-04-12 11:46 - 2018-04-12 11:46 - 000463469 _____ C:\Users\nshah\Downloads\ATM B2B Data Evidence - ON Semi.xlsx
2018-04-12 11:29 - 2018-04-12 11:29 - 000460651 _____ C:\Users\nshah\Downloads\Renesas UAT result.xlsx
2018-04-12 11:28 - 2018-04-12 11:28 - 000021232 _____ C:\Users\nshah\Downloads\Renesas UAT Scenarios (1).xlsx
2018-04-10 16:54 - 2018-04-10 16:54 - 000163202 _____ C:\Users\nshah\Downloads\ON Semi B2B Interface - As-Is vs To-Be (AMIGOS) (3).pptx
2018-04-10 16:53 - 2018-04-10 16:53 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (4).pptx
2018-04-09 14:56 - 2018-04-09 14:56 - 001583616 _____ C:\Users\nshah\Downloads\Himeji IF Integration Test(SIT1)_Confirmation2 (Test 6-11).msg
2018-04-09 14:52 - 2018-04-09 14:52 - 001395712 _____ C:\Users\nshah\Downloads\Himeji IF Integration Test(SIT1)_Confirmation (Test 1-5).msg
2018-04-09 14:49 - 2018-04-09 14:49 - 000023265 _____ C:\Users\nshah\Downloads\SIT1 test scenario and result between ATM and TDSC on 22Mar2018 to 28Mar2018 (1).xlsx
2018-04-09 14:46 - 2018-04-09 14:46 - 000164826 _____ C:\Users\nshah\Downloads\Toshiba Himeji Interface - As-Is vs To-Be_v2.1.pptx
2018-04-09 14:40 - 2018-04-09 14:40 - 000405738 _____ C:\Users\nshah\Downloads\B2B Production Support HD flow.pptx
2018-04-09 14:40 - 2018-04-09 14:40 - 000098741 _____ C:\Users\nshah\Downloads\Global B2B Team Proj Roadmap 07-15-10.pdf
2018-04-09 14:33 - 2018-04-09 14:33 - 000668835 _____ C:\Users\nshah\Downloads\LotStatus MDS elements (Jan2016 version)_Renesas required Items V2.0 (00000002).xlsx
2018-04-09 14:33 - 2018-04-09 14:33 - 000128246 _____ C:\Users\nshah\Downloads\B2B Overview.pdf
2018-04-08 20:10 - 2018-04-08 20:10 - 000076192 _____ C:\Users\nshah\Downloads\Sleeping.Beauty.1959.720p.BluRay.DTS.x264-ESiR-HI (1).srt
2018-04-08 20:09 - 2018-04-08 20:09 - 000076192 _____ C:\Users\nshah\Downloads\Sleeping.Beauty.1959.720p.BluRay.DTS.x264-ESiR-HI.srt
2018-04-08 20:04 - 2018-04-08 20:04 - 000039432 _____ C:\Users\nshah\Downloads\paddington-english-yify-60920.zip
2018-04-06 14:53 - 2018-04-06 14:53 - 000164056 _____ C:\Users\nshah\Downloads\Toshiba Himeji Interface - As-Is vs To-Be_v2 (4).pptx
2018-04-05 15:35 - 2018-04-05 15:35 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (3).pptx
2018-04-05 14:35 - 2018-04-05 14:35 - 000038996 _____ C:\Users\nshah\Downloads\Oita IF Test Plan (3).xlsx
2018-04-05 14:34 - 2018-04-05 14:34 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (2).pptx
2018-04-05 14:28 - 2018-04-05 14:28 - 000164056 _____ C:\Users\nshah\Downloads\Toshiba Himeji Interface - As-Is vs To-Be_v2 (3).pptx
2018-04-05 14:28 - 2018-04-05 14:28 - 000023148 _____ C:\Users\nshah\Downloads\SIT1 test scenario and result between ATM and TDSC on 22Mar2018 to 28Mar2018.xlsx
2018-04-05 14:24 - 2018-04-05 14:24 - 000162945 _____ C:\Users\nshah\Downloads\ST B2B Interface - As-Is vs To-Be (AMIGOS) - Copy (1).pptx
2018-04-05 14:11 - 2018-04-05 14:11 - 000163202 _____ C:\Users\nshah\Downloads\ON Semi B2B Interface - As-Is vs To-Be (AMIGOS) (2).pptx
2018-04-05 14:08 - 2018-04-05 14:08 - 000163047 _____ C:\Users\nshah\Downloads\Renesas B2B Interface - As-Is vs To-Be (AMIGOS) (1).pptx
2018-04-05 14:05 - 2018-04-05 14:05 - 000363233 _____ C:\Users\nshah\Downloads\Rohm UAT result.xlsx
2018-04-05 14:02 - 2018-04-05 14:02 - 000015464 _____ C:\Users\nshah\Downloads\ROHM UAT Scenarios (2).xlsx
2018-04-05 11:30 - 2018-04-05 11:30 - 000036738 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (3).xlsx
2018-04-05 09:50 - 2018-04-05 09:50 - 001381502 _____ C:\Users\nshah\Downloads\Function 1_proc_Update_tblATM_MES_MDOD_Comparison (1).xlsx
2018-04-05 09:44 - 2018-04-05 09:44 - 001381502 _____ C:\Users\nshah\Downloads\Function 1_proc_Update_tblATM_MES_MDOD_Comparison.xlsx
2018-04-05 09:43 - 2018-04-05 09:43 - 000024045 _____ C:\Users\nshah\Downloads\Regression Test - eCIM.xlsx
2018-04-04 18:25 - 2018-04-04 18:25 - 000021432 _____ C:\Users\nshah\Downloads\SIT1 test result between ATM and TDSC on 22Mar2018 to 28Mar2018 (4).xlsx
2018-04-04 16:47 - 2018-04-04 16:47 - 000162945 _____ C:\Users\nshah\Downloads\ST B2B Interface - As-Is vs To-Be (AMIGOS) - Copy.pptx
2018-04-04 16:46 - 2018-04-04 16:46 - 000024949 _____ C:\Users\nshah\Downloads\ST Micro UAT Scenarios.xlsx
2018-04-04 16:45 - 2018-04-04 16:45 - 000163047 _____ C:\Users\nshah\Downloads\Renesas B2B Interface - As-Is vs To-Be (AMIGOS).pptx
2018-04-04 16:45 - 2018-04-04 16:45 - 000021232 _____ C:\Users\nshah\Downloads\Renesas UAT Scenarios.xlsx
2018-04-04 16:44 - 2018-04-04 16:44 - 000005081 _____ C:\Users\nshah\Downloads\ATM-LE-2018-04-03T18-15-10.0687.xml
2018-04-04 16:43 - 2018-04-04 16:43 - 000018715 _____ C:\Users\nshah\Downloads\ON Semi UAT Scenarios.xlsx
2018-04-04 16:37 - 2018-04-04 16:37 - 000163202 _____ C:\Users\nshah\Downloads\ON Semi B2B Interface - As-Is vs To-Be (AMIGOS) (1).pptx
2018-04-04 16:32 - 2018-04-04 16:32 - 000038996 _____ C:\Users\nshah\Downloads\Oita IF Test Plan (2).xlsx
2018-04-04 16:31 - 2018-04-04 16:31 - 000162723 _____ C:\Users\nshah\Downloads\Toshiba Oita Interface - As-Is vs To-Be_v2 (1).pptx
2018-04-04 16:31 - 2018-04-04 16:31 - 000015464 _____ C:\Users\nshah\Downloads\ROHM UAT Scenarios (1).xlsx
2018-04-04 16:09 - 2018-04-04 16:09 - 001395712 _____ C:\Users\nshah\Downloads\Himeji IF Integration Test(SIT1)_Confirmation1 (2).msg
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Public\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Public\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Public\Documents\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Public\Documents\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Public\Desktop\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Public\Desktop\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\Downloads\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\Downloads\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\Documents\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\Documents\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\Desktop\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\Desktop\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\AppData\Local\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\nshah\AppData\Local\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\Downloads\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\Downloads\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\Documents\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\Documents\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\Desktop\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\Desktop\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\AppData\Local\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\mscons\AppData\Local\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Default\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Default\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\Documents\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\Documents\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\Downloads\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\Downloads\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\Documents\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\Documents\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\Desktop\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\Desktop\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2586568860.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\ProgramData\ZZZZZ2703198550.xls
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N C:\ProgramData\ZZZZZ2586568860.xls
2018-04-04 15:05 - 2018-04-04 15:05 - 000872564 _____ C:\Users\nshah\Downloads\SIT1_TSB IntegrationTest (1).zip
2018-04-04 15:05 - 2018-04-04 15:05 - 000021432 _____ C:\Users\nshah\Downloads\SIT1 test result between ATM and TDSC on 22Mar2018 to 28Mar2018 (3).xlsx
2018-04-04 15:04 - 2018-04-04 15:04 - 000021432 _____ C:\Users\nshah\Downloads\SIT1 test result between ATM and TDSC on 22Mar2018 to 28Mar2018 (2).xlsx
2018-04-04 14:50 - 2018-04-04 14:50 - 000164056 _____ C:\Users\nshah\Downloads\Toshiba Himeji Interface - As-Is vs To-Be_v2 (2).pptx
2018-04-04 14:34 - 2018-04-04 14:34 - 000035717 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (2).xlsx
2018-04-04 14:27 - 2018-04-04 14:27 - 000035717 _____ C:\Users\nshah\Downloads\Code Freeze Change Request Log (1).xlsx
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Public\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Public\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Public\Documents\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Public\Documents\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Public\Desktop\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Public\Desktop\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\Downloads\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\Downloads\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\Documents\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\Documents\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\Desktop\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\Desktop\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\AppData\Roaming\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\AppData\LocalLow\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\AppData\Local\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\nshah\AppData\Local\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\Downloads\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\Downloads\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\Documents\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\Documents\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\Desktop\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\Desktop\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\AppData\Roaming\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\AppData\LocalLow\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\AppData\Local\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\mscons\AppData\Local\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Default\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Default\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Default\AppData\Roaming\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Default User\AppData\Roaming\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\Downloads\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\Documents\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\Documents\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\Desktop\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\AppData\Roaming\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\AppData\LocalLow\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\amkoradmin\AppData\Local\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\Downloads\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\Downloads\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\Documents\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\Documents\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\Desktop\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\Desktop\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\AppData\Roaming\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\AppData\LocalLow\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\Users\Administrator\AppData\Local\ZZZZZ1473273266.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\ProgramData\ZZZZZ2174704099.pdf
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N C:\ProgramData\ZZZZZ1473273266.pdf
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Public\Documents\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Public\Documents\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Public\Desktop\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Public\Desktop\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Public\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Public\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\Downloads\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\Downloads\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\Documents\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\Documents\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\Desktop\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\Desktop\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\AppData\LocalLow\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\AppData\LocalLow\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\AppData\Local\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\AppData\Local\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\nshah\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\Downloads\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\Downloads\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\Documents\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\Documents\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\Desktop\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\Desktop\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\AppData\LocalLow\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\AppData\LocalLow\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\AppData\Local\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\AppData\Local\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\mscons\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Default\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Default\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Default\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Default\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Default User\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Default User\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\Downloads\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\Downloads\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\Documents\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\Documents\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\Desktop\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\Desktop\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\AppData\LocalLow\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\AppData\LocalLow\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\AppData\Local\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\AppData\Local\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\amkoradmin\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\Downloads\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\Downloads\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\Documents\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\Documents\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\Desktop\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\Desktop\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\AppData\LocalLow\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\AppData\LocalLow\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\AppData\Local\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\AppData\Local\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\Users\Administrator\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\ProgramData\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\ProgramData\!!!!!2756857846.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\!!!!!2913953061.pptx
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N C:\!!!!!2756857846.pptx
2018-04-04 14:08 - 2018-04-04 14:08 - 003858261 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP009 GR (2).xlsx
2018-04-04 14:08 - 2018-04-04 14:08 - 000103890 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (4).xlsx
2018-04-04 14:06 - 2018-04-04 14:06 - 001486656 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP004 Master Data_PAX (3).xlsx
2018-04-04 10:49 - 2018-04-04 10:49 - 000015464 _____ C:\Users\nshah\Downloads\ROHM UAT Scenarios.xlsx
2018-04-04 09:32 - 2018-04-04 09:32 - 000048842 _____ C:\Users\nshah\Downloads\VerificationofInsurance (1).pdf
2018-04-04 09:31 - 2018-04-04 09:31 - 000146805 _____ C:\Users\nshah\Downloads\InsuranceIDCard (3).pdf
2018-04-04 09:31 - 2018-04-04 09:31 - 000117519 _____ C:\Users\nshah\Downloads\InsuranceIDCard (4).pdf
2018-04-04 09:30 - 2018-04-04 09:30 - 000146710 _____ C:\Users\nshah\Downloads\InsuranceIDCard (2).pdf
2018-04-03 11:30 - 2018-04-03 11:30 - 001404223 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD005 CPO (3).xlsx
2018-04-03 10:44 - 2018-04-03 10:44 - 000354473 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP002 PP008 GI (3).xlsx
2018-04-03 10:43 - 2018-04-03 10:43 - 000557864 _____ C:\Users\nshah\Downloads\Amkor Interface Template_MM001 Purch Order (2).xlsx
2018-04-03 10:43 - 2018-04-03 10:43 - 000103924 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (3).xlsx
2018-04-03 10:41 - 2018-04-03 10:41 - 003335833 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD003 Stock Transfer (4).xlsx
2018-04-03 10:38 - 2018-04-03 10:38 - 003335833 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD003 Stock Transfer (3).xlsx
2018-04-03 10:36 - 2018-04-03 10:36 - 000819858 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP005 PO Release (4).xlsx
2018-04-03 10:33 - 2018-04-03 10:33 - 001240161 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP004 Master Data_PAX (2).xlsx
2018-04-02 19:30 - 2018-04-02 19:30 - 000227131 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP001 IASN (1).xlsx
2018-04-02 19:25 - 2018-04-02 19:25 - 000151864 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD001 WOS (2).xlsx
2018-04-02 18:59 - 2018-04-02 18:59 - 000353353 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP002 PP008 GI (2).xlsx
2018-04-02 18:24 - 2018-04-02 18:24 - 003335833 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD003 Stock Transfer (2).xlsx
2018-04-02 18:07 - 2018-04-02 18:07 - 000776654 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP005 PO Release (3).xlsx
2018-04-02 16:42 - 2018-04-02 16:42 - 000172402 _____ C:\Users\nshah\Downloads\Regression Test Review - External Source Master.xlsx
2018-04-02 16:42 - 2018-04-02 16:42 - 000172402 _____ C:\Users\nshah\Downloads\Regression Test Review - External Source Master (1).xlsx
2018-04-02 16:42 - 2018-04-02 16:42 - 000105886 _____ C:\Users\nshah\Downloads\Regression Test Review - PAX Master.xlsx
2018-04-02 16:41 - 2018-04-02 16:41 - 000028302 _____ C:\Users\nshah\Downloads\Regression Test (Internal) Review_v2.xlsx
2018-04-02 14:23 - 2018-04-02 14:23 - 000759503 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD010 SO Price (1).xlsx
2018-04-02 14:22 - 2018-04-02 14:22 - 006172525 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD009 POD (1).xlsx
2018-04-02 14:22 - 2018-04-02 14:22 - 000154788 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD006 SO Chanage.xlsx
2018-04-02 14:21 - 2018-04-02 14:21 - 003335833 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD003 Stock Transfer (1).xlsx
2018-04-02 14:21 - 2018-04-02 14:21 - 001404223 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD005 CPO (2).xlsx
2018-04-02 14:21 - 2018-04-02 14:21 - 000125293 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD004 Ship to Party.xlsx
2018-04-02 14:20 - 2018-04-02 14:20 - 000151864 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD001 WOS (1).xlsx
2018-04-02 14:17 - 2018-04-02 14:17 - 003861928 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP009 GR (1).xlsx
2018-04-02 14:14 - 2018-04-02 14:14 - 000642121 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP005 PO Release (2).xlsx
2018-04-02 14:13 - 2018-04-02 14:13 - 001240161 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP004 Master Data_PAX (1).xlsx
2018-04-02 14:13 - 2018-04-02 14:13 - 001222055 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP004 Master Data_MES (1).xlsx
2018-04-02 14:12 - 2018-04-02 14:12 - 000353353 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP002 PP008 GI (1).xlsx
2018-04-02 14:11 - 2018-04-02 14:11 - 000520058 _____ C:\Users\nshah\Downloads\Amkor Interface Template_MM001 Purch Order (1).xlsx
2018-04-02 14:11 - 2018-04-02 14:11 - 000103924 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (2).xlsx
2018-04-02 14:10 - 2018-04-02 14:10 - 000103924 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park (1).xlsx
2018-04-02 14:07 - 2018-04-02 14:07 - 000759503 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD010 SO Price.xlsx
2018-04-02 14:06 - 2018-04-02 14:06 - 006172525 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD009 POD.xlsx
2018-04-02 14:06 - 2018-04-02 14:06 - 001404223 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD005 CPO (1).xlsx
2018-04-02 13:57 - 2018-04-02 13:57 - 001404223 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD005 CPO.xlsx
2018-04-02 13:56 - 2018-04-02 13:56 - 003861928 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP009 GR.xlsx
2018-04-02 13:53 - 2018-04-02 13:53 - 000642121 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP005 PO Release (1).xlsx
2018-04-02 13:30 - 2018-04-02 13:30 - 000227131 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP001 IASN.xlsx
2018-04-02 13:28 - 2018-04-02 13:28 - 000151864 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD001 WOS.xlsx
2018-04-02 13:27 - 2018-04-02 13:27 - 000353353 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP002 PP008 GI.xlsx
2018-04-02 13:24 - 2018-04-02 13:24 - 000520058 _____ C:\Users\nshah\Downloads\Amkor Interface Template_MM001 Purch Order.xlsx
2018-04-02 13:22 - 2018-04-02 13:22 - 000103924 _____ C:\Users\nshah\Downloads\Amkor Interface Template_FI004 Freight Park.xlsx
2018-04-02 12:22 - 2018-04-02 12:22 - 003335833 _____ C:\Users\nshah\Downloads\Amkor Interface Template_SD003 Stock Transfer.xlsx
2018-04-02 12:10 - 2018-04-02 12:10 - 000642121 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP005 PO Release.xlsx
2018-04-02 12:08 - 2018-04-02 12:08 - 001240161 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP004 Master Data_PAX.xlsx
2018-04-02 12:07 - 2018-04-02 12:07 - 001222055 _____ C:\Users\nshah\Downloads\Amkor Interface Template_PP004 Master Data_MES.xlsx
2018-04-02 10:55 - 2018-04-02 10:55 - 000214016 _____ C:\Users\nshah\Downloads\pwc-systems-implementation-lessons-learned (1).ppt
2018-04-02 10:26 - 2018-04-02 10:26 - 000229286 _____ C:\Users\nshah\Downloads\Your-Itinerary---March-2018.pdf
2018-04-02 10:26 - 2018-04-02 10:26 - 000066933 _____ C:\Users\nshah\Downloads\LA-Fitness-_-Member-Services---Check-in-History---Mar-2018.pdf
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2018-04-28 17:57 - 2017-10-11 08:42 - 136971704 ____C (Microsoft Corporation) C:\windows\system32\MRT-KB890830.exe
2018-04-28 17:57 - 2013-07-16 10:00 - 000000000 ____D C:\windows\system32\MRT
2018-04-28 17:57 - 2013-01-25 11:39 - 136971704 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2018-04-28 17:51 - 2016-05-03 14:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2018-04-28 17:23 - 2013-08-05 09:52 - 000000000 ____D C:\windows\SysWOW64\Macromed
2018-04-28 15:53 - 2009-07-13 21:45 - 000014448 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-04-28 15:53 - 2009-07-13 21:45 - 000014448 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-04-28 15:51 - 2013-07-16 09:59 - 000506958 _____ C:\windows\system32\perfh012.dat
2018-04-28 15:51 - 2013-07-16 09:59 - 000145410 _____ C:\windows\system32\perfc012.dat
2018-04-28 15:51 - 2009-07-13 22:13 - 001532976 _____ C:\windows\system32\PerfStringBackup.INI
2018-04-28 15:51 - 2009-07-13 20:20 - 000000000 ____D C:\windows\inf
2018-04-28 15:46 - 2016-05-03 13:21 - 000000000 __SHD C:\Users\nshah\IntelGraphicsProfiles
2018-04-28 15:44 - 2016-10-25 13:07 - 000000000 ___HD C:\windows\system32\WLANProfiles
2018-04-28 15:44 - 2016-06-27 08:38 - 000000000 ____D C:\Users\nshah\AppData\Roaming\Skype
2018-04-28 15:44 - 2016-05-17 09:38 - 000000000 ___RD C:\Users\nshah\OneDrive - Amkor Technology
2018-04-28 15:44 - 2016-05-03 13:21 - 000000000 ____D C:\Users\nshah
2018-04-28 15:44 - 2015-05-08 09:41 - 000000000 ___SD C:\windows\system32\CompatTel
2018-04-28 15:44 - 2015-03-16 09:52 - 000000000 ____D C:\ProgramData\Validity
2018-04-28 15:44 - 2013-07-16 09:58 - 000000000 ____D C:\windows\SysWOW64\XPSViewer
2018-04-28 15:44 - 2009-07-13 22:32 - 000000000 ____D C:\windows\system32\WinBioDatabase
2018-04-28 15:44 - 2009-07-13 22:08 - 000000006 ____H C:\windows\Tasks\SA.DAT
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\SysWOW64\MUI
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\system32\NDF
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\system32\MUI
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\security
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\schemas
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\registration
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\PolicyDefinitions
2018-04-28 15:44 - 2009-07-13 20:20 - 000000000 ____D C:\windows\L2Schemas
2018-04-28 15:06 - 2014-08-25 07:58 - 000000000 ____D C:\Program Files (x86)\Java
2018-04-28 14:51 - 2013-02-21 12:05 - 000055886 __RSH C:\ProgramData\ntuser.pol
2018-04-28 14:50 - 2016-05-03 13:21 - 000009190 __RSH C:\Users\nshah\ntuser.pol
2018-04-28 14:49 - 2016-05-04 04:05 - 000001344 _____ C:\windows\system32\config\netlogon.ftl
2018-04-28 13:21 - 2018-02-09 13:46 - 000000000 ____D C:\Users\nshah\Documents\Misc
2018-04-27 16:54 - 2017-07-09 08:30 - 000000000 ____D C:\Program Files (x86)\GoToMeeting
2018-04-27 16:52 - 2016-07-14 10:58 - 000000000 ____D C:\Users\nshah\AppData\Local\ElevatedDiagnostics
2018-04-26 17:04 - 2015-12-11 12:17 - 000002243 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-04-24 11:22 - 2017-12-27 16:25 - 000000000 ____D C:\Users\nshah\Documents\ATM SAP
2018-04-23 09:16 - 2014-06-20 10:16 - 001560158 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2018-04-17 10:29 - 2016-06-01 09:36 - 000000000 ____D C:\Users\nshah\AppData\Local\ACL
2018-04-16 17:53 - 2016-05-28 14:28 - 000000000 ____D C:\Users\nshah\AppData\Local\CutePDF Writer
2018-04-16 16:57 - 2016-05-12 14:22 - 000002242 ____H C:\Users\nshah\Documents\Default.rdp
2018-04-16 09:03 - 2016-05-03 14:06 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-04-16 09:02 - 2013-01-25 11:03 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-04-13 21:18 - 2017-03-22 22:12 - 000000000 ___RD C:\Program Files (x86)\Skype
2018-04-13 21:18 - 2016-08-28 22:03 - 000000000 ____D C:\ProgramData\Skype
2018-04-13 13:45 - 2016-05-03 13:21 - 000000000 ____D C:\Users\nshah\AppData\Local\Google
2018-04-13 13:44 - 2015-12-11 12:16 - 000000000 ____D C:\Program Files (x86)\Google
2018-04-13 09:59 - 2017-08-15 09:39 - 000000000 ____D C:\Users\nshah\AppData\Local\MirrorOp
2018-04-10 16:47 - 2018-03-14 00:26 - 000004450 _____ C:\windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-04-10 16:47 - 2013-08-05 09:53 - 000004312 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2018-04-10 16:47 - 2013-08-05 09:52 - 000804864 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2018-04-10 16:47 - 2013-08-05 09:52 - 000144896 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-04-10 16:47 - 2013-08-05 09:52 - 000000000 ____D C:\windows\system32\Macromed
2018-04-10 09:24 - 2016-12-20 11:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2018-04-01 16:00 - 2017-03-23 15:35 - 000000000 ____D C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
 
==================== Files in the root of some directories =======
 
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2267567491.txt
2018-04-04 15:29 - 2018-04-04 15:29 - 000002024 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1208317784.doc
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ1836659985.pem
2018-03-23 13:46 - 2018-03-23 13:46 - 000010000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!3951898386.jpg
2018-04-16 14:22 - 2018-04-16 14:22 - 000020000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2485081605.png
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1786692950.bmp
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ983791688.eml
2018-04-16 13:55 - 2018-04-16 13:55 - 000050240 ____N () C:\Users\nshah\AppData\Roaming\!!!!!412241841.docx
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2586568860.xls
2018-03-23 15:42 - 2018-03-23 15:42 - 000150000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!724534982.xlsx
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2564429509.mdb
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1985810211.ppt
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ1732747090.pps
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!2756857846.pptx
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2174704099.pdf
2018-03-23 14:06 - 2018-03-23 14:06 - 000300000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!270344315.avi
2018-03-23 13:47 - 2018-03-23 13:47 - 000350000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ1939086922.db
2018-03-23 15:28 - 2018-03-23 15:28 - 000350000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1383988956.pst
2018-03-23 14:12 - 2018-03-23 14:12 - 000400000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2812619514.sql
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2100559072.txt
2018-04-04 15:29 - 2018-04-04 15:29 - 000002024 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1869269020.doc
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ1964161346.pem
2018-03-23 13:46 - 2018-03-23 13:46 - 000010000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!2228986962.jpg
2018-04-16 14:22 - 2018-04-16 14:22 - 000020000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2847717705.png
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1379154394.bmp
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2295974240.eml
2018-04-16 13:55 - 2018-04-16 13:55 - 000050240 ____N () C:\Users\nshah\AppData\Roaming\!!!!!2672249850.docx
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2703198550.xls
2018-03-23 15:42 - 2018-03-23 15:42 - 000150000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!2001773847.xlsx
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ1515699188.mdb
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1898668485.ppt
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2815832982.pps
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!2913953061.pptx
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ1473273266.pdf
2018-03-23 14:06 - 2018-03-23 14:06 - 000300000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!3686593842.avi
2018-03-23 13:47 - 2018-03-23 13:47 - 000350000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ2243579124.db
2018-03-23 15:28 - 2018-03-23 15:28 - 000350000 ____N () C:\Users\nshah\AppData\Roaming\!!!!!1242248044.pst
2018-03-23 14:12 - 2018-03-23 14:12 - 000400000 ____N () C:\Users\nshah\AppData\Roaming\ZZZZZ439021810.sql
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2267567491.txt
2018-04-04 15:29 - 2018-04-04 15:29 - 000002024 ____N () C:\Users\nshah\AppData\Local\!!!!!1208317784.doc
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N () C:\Users\nshah\AppData\Local\ZZZZZ1836659985.pem
2018-03-23 13:46 - 2018-03-23 13:46 - 000010000 ____N () C:\Users\nshah\AppData\Local\!!!!!3951898386.jpg
2018-04-16 14:22 - 2018-04-16 14:22 - 000020000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2485081605.png
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N () C:\Users\nshah\AppData\Local\!!!!!1786692950.bmp
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ983791688.eml
2018-04-16 13:55 - 2018-04-16 13:55 - 000050240 ____N () C:\Users\nshah\AppData\Local\!!!!!412241841.docx
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2586568860.xls
2018-03-23 15:42 - 2018-03-23 15:42 - 000150000 ____N () C:\Users\nshah\AppData\Local\!!!!!724534982.xlsx
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2564429509.mdb
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N () C:\Users\nshah\AppData\Local\!!!!!1985810211.ppt
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ1732747090.pps
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N () C:\Users\nshah\AppData\Local\!!!!!2756857846.pptx
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2174704099.pdf
2018-03-23 14:06 - 2018-03-23 14:06 - 000300000 ____N () C:\Users\nshah\AppData\Local\!!!!!270344315.avi
2018-03-23 13:47 - 2018-03-23 13:47 - 000350000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ1939086922.db
2018-03-23 15:28 - 2018-03-23 15:28 - 000350000 ____N () C:\Users\nshah\AppData\Local\!!!!!1383988956.pst
2018-03-23 14:12 - 2018-03-23 14:12 - 000400000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2812619514.sql
2016-05-03 13:21 - 2015-12-09 08:12 - 000000017 _____ () C:\Users\nshah\AppData\Local\resmon.resmoncfg
2018-04-16 14:10 - 2018-04-16 14:10 - 000001024 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2100559072.txt
2018-04-04 15:29 - 2018-04-04 15:29 - 000002024 ____N () C:\Users\nshah\AppData\Local\!!!!!1869269020.doc
2018-04-12 15:28 - 2018-04-12 15:28 - 000004048 ____N () C:\Users\nshah\AppData\Local\ZZZZZ1964161346.pem
2018-03-23 13:46 - 2018-03-23 13:46 - 000010000 ____N () C:\Users\nshah\AppData\Local\!!!!!2228986962.jpg
2018-04-16 14:22 - 2018-04-16 14:22 - 000020000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2847717705.png
2018-04-16 14:30 - 2018-04-16 14:30 - 000025000 ____N () C:\Users\nshah\AppData\Local\!!!!!1379154394.bmp
2018-04-16 13:49 - 2018-04-16 13:49 - 000030000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2295974240.eml
2018-04-16 13:55 - 2018-04-16 13:55 - 000050240 ____N () C:\Users\nshah\AppData\Local\!!!!!2672249850.docx
2018-04-04 15:06 - 2018-04-04 15:06 - 000100000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2703198550.xls
2018-03-23 15:42 - 2018-03-23 15:42 - 000150000 ____N () C:\Users\nshah\AppData\Local\!!!!!2001773847.xlsx
2018-04-12 14:33 - 2018-04-12 14:33 - 000175000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ1515699188.mdb
2018-04-16 15:29 - 2018-04-16 15:29 - 000200000 ____N () C:\Users\nshah\AppData\Local\!!!!!1898668485.ppt
2018-04-16 14:41 - 2018-04-16 14:41 - 000225000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2815832982.pps
2018-04-04 14:21 - 2018-04-04 14:21 - 000250000 ____N () C:\Users\nshah\AppData\Local\!!!!!2913953061.pptx
2018-04-04 14:24 - 2018-04-04 14:24 - 000275000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ1473273266.pdf
2018-03-23 14:06 - 2018-03-23 14:06 - 000300000 ____N () C:\Users\nshah\AppData\Local\!!!!!3686593842.avi
2018-03-23 13:47 - 2018-03-23 13:47 - 000350000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ2243579124.db
2018-03-23 15:28 - 2018-03-23 15:28 - 000350000 ____N () C:\Users\nshah\AppData\Local\!!!!!1242248044.pst
2018-03-23 14:12 - 2018-03-23 14:12 - 000400000 ____N () C:\Users\nshah\AppData\Local\ZZZZZ439021810.sql
 
Some files in TEMP:
====================
2018-04-28 14:41 - 2018-04-28 14:21 - 011605440 _____ (SurfRight B.V.) C:\Users\nshah\AppData\Local\Temp\HitmanPro.exe
2018-01-20 19:11 - 2018-01-20 19:12 - 001864256 _____ (Oracle Corporation) C:\Users\nshah\AppData\Local\Temp\jre-8u161-windows-au.exe
2018-04-21 11:14 - 2018-04-21 11:14 - 001884616 _____ (Oracle Corporation) C:\Users\nshah\AppData\Local\Temp\jre-8u171-windows-au.exe
2018-04-13 21:15 - 2018-04-13 21:16 - 058834376 _____ (Skype Technologies S.A.) C:\Users\nshah\AppData\Local\Temp\SkypeSetup.exe
2017-03-22 22:12 - 2017-03-22 22:12 - 014456872 _____ (Microsoft Corporation) C:\Users\nshah\AppData\Local\Temp\vc_redist.x86.exe
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\SysWOW64\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2018-04-28 01:52
 
==================== End of FRST.txt ============================
 
 


BC AdBot (Login to Remove)

 


#2 mcole2018

mcole2018
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:03:51 PM

Posted 28 April 2018 - 08:08 PM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25.04.2018

Ran by nshah (28-04-2018 17:58:36)

Running from C:\Users\nshah\Downloads

Windows 7 Enterprise Service Pack 1 (X64) (2016-05-03 10:35:12)

Boot Mode: Normal

==========================================================

 

 

==================== Accounts: =============================

 

Administrator (S-1-5-21-1012591852-3362119673-2904557523-500 - Administrator - Enabled) => C:\Users\Administrator

amkoradmin (S-1-5-21-1012591852-3362119673-2904557523-1002 - Administrator - Enabled) => C:\Users\amkoradmin

AntiVirus (S-1-5-21-1012591852-3362119673-2904557523-1000 - Administrator - Enabled)

Guest (S-1-5-21-1012591852-3362119673-2904557523-501 - Limited - Disabled)

 

==================== Security Center ========================

 

(If an entry is included in the fixlist, it will be removed.)

 

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

 

==================== Installed Programs ======================

 

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 

64 Bit HP CIO Components Installer (HKLM\...\{13DA9C7C-EBFB-40D0-94A1-55B42883DF21}) (Version: 21.2.1 - HP Inc.) Hidden

7-Zip 16.04 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1604-000001000000}) (Version: 16.04.00.0 - Igor Pavlov)

ACL for Windows (HKLM-x32\...\{F6B3EEE6-54A5-4012-AD19-6356B3DD7F34}) (Version: 11.4.2.536 - ACL Services Ltd.)

Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated)

Adobe Flash Player 29 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 29.0.0.140 - Adobe Systems Incorporated)

Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated)

Altiris Deployment Agent (HKLM\...\{6C8D5E56-CA12-42B2-9075-044B4C7067A9}) (Version: 1.0.0 - Altiris)

Altiris Inventory Agent (HKLM-x32\...\{0B6F2D9A-5725-43B7-9BFB-71A2AD2BD517}) (Version: 7.5.3219.0 - Symantec Corporation) Hidden

Analytics Exchange Client (HKLM-x32\...\{618D78F7-CAE5-4F98-91CC-E0D75C988F56}) (Version: 6.0.0.791 - ACL Services Ltd.)

Cisco IP Communicator (HKLM-x32\...\{5ED3AC8B-72BB-42D7-A6F7-AC618168630D}) (Version: 8.6.1.0 - Cisco Systems, Inc.)

Cisco WebEx Meetings (HKLM-x32\...\ActiveTouchMeetingClient) (Version:  - Cisco WebEx LLC)

Citrix Online Launcher (HKLM-x32\...\{48947098-A67C-46D4-90C5-9F2F6F0F96FE}) (Version: 1.0.449 - Citrix)

Core FTP LE 2.1 (HKLM-x32\...\Core FTP LE 2.1) (Version:  - )

CutePDF Writer 2.8 (HKLM\...\CutePDF Writer Installation) (Version:  - )

Deployment Solution Agent (HKLM\...\{0B44568E-7915-4BD7-989F-C88683645220}) (Version: 7.5.3219.0 - Symantec) Hidden

DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)

Direct Link Desktop Edition (HKLM-x32\...\{076B7D53-A235-4BCC-9563-E567121DAC66}) (Version: 7.0.0.136 - ACL Services Ltd.)

Engineering Client Viewer 7.0 (HKLM-x32\...\SAP_Engineering Client Viewer 7.0) (Version:  - SAP AG)

EPM add-in for Microsoft Office (HKLM-x32\...\{2C342070-8569-41F7-9DB4-6FF7D63AACA2}) (Version: 10.0.0.9063 - SAP BusinessObjects)

Extended Asian Language font pack for Adobe Reader XI (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-A00000000049}) (Version: 11.0.09 - Adobe Systems Incorporated)

GlobalProtect (HKLM\...\{F6590E2B-4FA4-4733-A923-467915FE52DB}) (Version: 3.1.6 - Palo Alto Networks)

Google Chrome (HKLM-x32\...\{9BCCDBF4-DB5F-3792-98B0-74100A584B07}) (Version: 66.0.3359.139 - Google, Inc.)

Google Drive File Stream (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 25.196.245.2031 - Google, Inc.)

Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden

Hangouts Plugin for Microsoft Outlook® 1.0.65.0 (x86) (HKLM-x32\...\{217449B4-9083-4A44-BA87-5C51DAE738BE}) (Version: 1.0.65.0 - Google, Inc.)

Integrated Camera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11073 - Realtek Semiconductor Corp.)

Intel® Network Connections Drivers (HKLM\...\PROSet) (Version: 19.5 - Intel)

Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4432 - Intel Corporation)

Intel® PROSet/Wireless Software (HKLM-x32\...\{a0f22a81-00d1-45d6-9cad-d93c57053e53}) (Version: 20.10.2 - Intel Corporation)

Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.12.16 - Lenovo) Hidden

Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0070 - Lenovo)

Lotus Notes 8.5.2 (HKLM-x32\...\{07C69B3A-62B3-41BF-82EE-B3A87BD6EA0C}) (Version: 8.52.10222 - IBM)

MDOP MBAM (HKLM\...\{1B0FF767-2365-4E2B-91D1-93D442944055}) (Version: 2.5.0252.0 - Microsoft Corporation)

Microsoft .NET Framework 4.5.2(한국어) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1042) (Version: 4.5.51209 - Microsoft Corporation)

Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01590 - Microsoft Corporation)

Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)

Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.9126.2152 - Microsoft Corporation)

Microsoft OneDrive (HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\OneDriveSetup.exe) (Version: 17.3.6281.1202 - Microsoft Corporation)

Microsoft Project Professional 2013 (HKLM-x32\...\Office15.PRJPRO) (Version: 15.0.4569.1506 - Microsoft Corporation)

Microsoft redistributable runtime DLLs VS2005 SP1(x86) (HKLM-x32\...\{CEC7A786-A9C8-4EF7-BB59-6518E3B3C878}) (Version: 8.0.50727.4053 - SAP)

Microsoft redistributable runtime DLLs VS2008 SP1(x86) (HKLM-x32\...\{A47A9101-6EB5-4314-BDA1-297880FBB908}) (Version: 9.0 - SAP AG)

Microsoft redistributable runtime DLLs VS2010 SP1 (x86) (HKLM-x32\...\{2385C070-EC26-4AB9-8718-E605C977C0ED}) (Version: 10.0.40219.1 - SAP)

Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)

Microsoft Visio Professional 2013 (HKLM-x32\...\Office15.VISPRO) (Version: 15.0.4569.1506 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)

Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)

MirrorOp (HKLM-x32\...\{2b9ca461-682c-4799-8ceb-c9f1a313dcd8}) (Version: 2.0.0.19 - AWIND Inc)

MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)

MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)

MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)

Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden

Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden

Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden

Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden

Open XML SDK 2.5 for Microsoft Office (HKLM-x32\...\{3EA16E23-14D2-466A-8268-D7CD40DC46B6}) (Version: 2.5.5631 - Microsoft Corporation)

Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden

Patch Management Agent (HKLM\...\{26C5D274-98EE-4CB4-A3FE-499C406F0E74}) (Version: 7.5.3219.0 - Symantec) Hidden

SAP Business Explorer (HKLM-x32\...\SAPBI) (Version: 7.30 - SAP AG)

SAP GUI for Windows 7.30 (HKLM-x32\...\SAPGUI710) (Version: 7.30 Compilation 3 - SAP AG)

SAP JNet (HKLM-x32\...\SAP_JNet) (Version:  - SAP AG)

SAPSetup Automatic Workstation Update Service (HKLM-x32\...\SAP_WUS) (Version:  - SAP AG)

Skype™ 7.41 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.41.101 - Skype Technologies S.A.)

Sling (HKLM-x32\...\{A0C306FE-01A5-4B94-A037-EF5403F8CE41}) (Version: 5.0.174 - Echostar)

Software Management Solution Plugin (HKLM\...\{58A202A4-FEF3-448A-AB52-037BEA512524}) (Version: 7.5.3219.0 - Altiris Inc.) Hidden

Sophos AutoUpdate XG (HKLM-x32\...\{72E136F7-3751-422E-AC7A-1B2E46391909}) (Version: 5.11.155 - Sophos Limited) Hidden

Sophos Clean (HKLM\...\Sophos Clean) (Version: 3.8.3.1 - Sophos Limited) Hidden

Sophos Data Protection Agent 1.3.90.0 (HKLM-x32\...\{BE279FDE-A093-4976-BE34-E7AEDED3A46F}) (Version: 1.3.90.0 - Sophos Limited) Hidden

Sophos Diagnostic Utility (HKLM-x32\...\{4627F5A1-E85A-4394-9DB3-875DF83AF6C2}) (Version: 1.20.0.4 - Sophos Limited) Hidden

Sophos Endpoint (HKLM\...\{D29542AE-287C-42E4-AB28-3858E13C1A3E}) (Version: 1.4.147 - Sophos Limited) Hidden

Sophos Endpoint Agent (HKLM\...\Sophos Endpoint Agent) (Version: 2.0.2 - Sophos Limited)

Sophos Endpoint Defense (HKLM\...\Sophos Endpoint Defense) (Version: 1.3.0.512 - Sophos Limited) Hidden

Sophos Endpoint Self Help (HKLM\...\{BB36D9C2-6AE5-4AB2-BC91-ECD247092BD8}) (Version: 2.0.103 - Sophos Limited) Hidden

Sophos File Scanner (HKLM\...\{CD39E739-F480-4AC4-B0C9-68CA731D8AC6}) (Version: 1.1.98 - Sophos Limited) Hidden

Sophos Health (HKLM-x32\...\{E44AF5E6-7D11-4BDF-BEA8-AA7AE5FE6745}) (Version: 2.0.6.223 - Sophos Limited) Hidden

Sophos Management Communications System (HKLM-x32\...\{2C14E1A2-C4EB-466E-8374-81286D723D3A}) (Version: 4.7.15 - Sophos Limited) Hidden

Sophos Standalone Engine (HKLM\...\Sophos Standalone Engine) (Version: 1.1.227 - Sophos Limited) Hidden

Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.27.39 - Synaptics Incorporated)

ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4500 - Broadcom Corporation)

ThinkVantage Access Connections (HKLM-x32\...\{8E537894-A559-4D60-B3CB-F4485E3D24E3}) (Version: 6.24 - Lenovo)

Traps 4.1.2.29819 (HKLM\...\{A4A93499-4BC3-4104-8041-F69A4C95CA57}) (Version: 4.1.2.29819 - Palo Alto Networks, Inc.)

UltraVnc (HKLM\...\Ultravnc2_is1) (Version: 1.1.9.3 - uvnc bvba)

Update for Skype for Business 2015 (KB4018334) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPRO_{43E657C8-617B-4062-9580-690699462328}) (Version:  - Microsoft)

Update for Skype for Business 2015 (KB4018334) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPRO_{43E657C8-617B-4062-9580-690699462328}) (Version:  - Microsoft)

wePresent WiPG-2000 (HKLM-x32\...\{6A00B7A2-F8DC-4521-A9EC-A329F495EA11}) (Version: 1.0.2.2 - AWIND Inc)

Windows Driver Package - Broadcom (BTHUSB) Bluetooth  (04/08/2010 6.3.5.430) (HKLM\...\DE7217D2A8B057F15EC6E52329FDAB84231521E8) (Version: 04/08/2010 6.3.5.430 - Broadcom)

Windows Driver Package - Broadcom HIDClass  (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)

Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)

Zoom (HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\ZoomUMX) (Version: 4.0 - Zoom Video Communications, Inc.)

 

==================== Custom CLSID (Whitelisted): ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\nshah\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\FileCoAuthLib64.dll ()

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{7CB4D2F7-77AE-4A08-9BDF-21370FF8D6BD}\InprocServer32 -> C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll (Google, Inc.)

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\windows\system32\igfxEM.exe (Intel Corporation)

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{96836CC1-31EA-4F1C-A7F4-D67863D5D4FD}\InprocServer32 -> C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll (Google, Inc.)

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{9EE0C242-8973-456D-B382-0752476703FD}\InprocServer32 -> C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll (Google, Inc.)

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{B53FB4A1-B6BB-4F9B-AAA8-8704FBC1BE25}\InprocServer32 -> C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll (Google, Inc.)

CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{C9F7D7A1-D13F-4C72-9AB0-06FDC65AA931}\InprocServer32 -> C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll (Google, Inc.)

ShellIconOverlayIdentifiers: [    GoogleDriveCloudOverlayIconHandler] -> {7CB4D2F7-77AE-4A08-9BDF-21370FF8D6BD} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] (Google, Inc.)

ShellIconOverlayIdentifiers: [    GoogleDrivePinnedOverlayIconHandler] -> {C9F7D7A1-D13F-4C72-9AB0-06FDC65AA931} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] (Google, Inc.)

ShellIconOverlayIdentifiers: [    GoogleDriveProgressOverlayIconHandler] -> {96836CC1-31EA-4F1C-A7F4-D67863D5D4FD} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] (Google, Inc.)

ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll -> No File

ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll -> No File

ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll -> No File

ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)

ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll -> No File

ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)

ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll -> No File

ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\windows\system32\igfxpph.dll -> No File

ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\windows\system32\igfxDTCM.dll [2016-06-02] (Intel Corporation)

ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\windows\system32\nvshext.dll [2015-02-04] (NVIDIA Corporation)

ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)

ContextMenuHandlers1_S-1-5-21-3733008567-4105056608-180679723-26472: [DriveFS] -> {B53FB4A1-B6BB-4F9B-AAA8-8704FBC1BE25} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] (Google, Inc.)

ContextMenuHandlers4_S-1-5-21-3733008567-4105056608-180679723-26472: [DriveFS] -> {B53FB4A1-B6BB-4F9B-AAA8-8704FBC1BE25} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] (Google, Inc.)

ContextMenuHandlers5_S-1-5-21-3733008567-4105056608-180679723-26472: [DriveFS] -> {B53FB4A1-B6BB-4F9B-AAA8-8704FBC1BE25} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] (Google, Inc.)

 

==================== Scheduled Tasks (Whitelisted) =============

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

Task: {08AD7507-09D6-4099-85C5-C87AB1ABEFA4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-04-06] (Microsoft Corporation)

Task: {3517FBA6-9EE5-4C24-AF5B-0C91EB2924C1} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2017-12-12] ()

Task: {38BEF093-3C9C-4CA0-8D35-2A9FF64D3102} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-11] (Google Inc.)

Task: {3B30088F-1615-4E30-B683-67E79ADA347D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe

Task: {3EAD0179-1426-4106-A233-FAEDA34C45EF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-04-15] (Microsoft Corporation)

Task: {436561C5-1C56-425E-8B0D-BF63F8C6844D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_140_Plugin.exe [2018-04-10] (Adobe Systems Incorporated)

Task: {500F337C-6556-40C6-8554-158224EF5D0B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-04-15] (Microsoft Corporation)

Task: {62616FCE-AF80-443A-A9E8-62295E4C261A} - System32\Tasks\{83FDBEC3-3E2C-4454-B213-3806C1592589} => C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\Yahoo!\Messenger\UNWISE.EXE" -c /U C:\Program Files (x86)\Yahoo!\Messenger\INSTALL.LOG

Task: {67B7FD4A-D5DA-4AA7-A9A4-76BE322022FF} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-04-15] (Microsoft Corporation)

Task: {7702604B-DF3E-46D8-BC27-FBA18064C9D1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-04-06] (Microsoft Corporation)

Task: {7E77970F-9DBC-4EA1-9F4D-95AA9010D9EA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-04-15] (Microsoft Corporation)

Task: {83CADEAF-320E-47DA-93CD-1C8F9DCED9FC} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-04-15] (Microsoft Corporation)

Task: {91AC3C7B-5A27-4112-BA23-73CD57494701} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-04-10] (Adobe Systems Incorporated)

Task: {924D4533-6D6D-4B60-81C3-7A8C331D4236} - System32\Tasks\f2327ea5-546c-4329-bb8d-cecd5bc274ad => C:\windows\LSDeployment\RemoteDeployment_x64.exe [2017-02-21] ()

Task: {BF3072D2-44FD-4A37-9C5A-0BCC345936CF} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2017-12-12] ()

Task: {C6DDECA8-98C0-4F19-984A-BABA6CD02ACE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-11] (Google Inc.)

Task: {F0DDE201-0D75-467B-9B58-E29B9F93B5CB} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe

Task: {F7E53642-EF54-4B7E-83C0-7BCF6F4C1D74} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)

 

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

 

 

==================== Shortcuts & WMI ========================

 

(The entries could be listed to be restored or removed.)

 

 

ShortcutWithArgument: C:\Users\nshah\Documents\Misc\flash drive = old\Amkor\Amkor\Misc Backup\Favorites\E&Y Favorites\E&Y Branding Zone.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://brandingzone.iweb.ey.com/

ShortcutWithArgument: C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Chromebook Recovery Utility.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=jndclpdbaamdhonoechobihbbiimdgai

ShortcutWithArgument: C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Hangouts.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl

ShortcutWithArgument: C:\Users\nshah\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Hangouts.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl

 

==================== Loaded Modules (Whitelisted) ==============

 

2013-01-25 14:47 - 2009-11-05 08:40 - 000085504 _____ () C:\windows\System32\cpwmon64.dll

2018-04-14 11:20 - 2018-04-02 13:44 - 002519800 _____ () C:\Program Files\Google\Drive File Stream\25.196.245.2031\common_icuuc.dll

2018-04-14 11:20 - 2018-04-02 13:44 - 003299576 _____ () C:\Program Files\Google\Drive File Stream\25.196.245.2031\icui18n.dll

2018-04-14 11:20 - 2018-04-02 13:44 - 003843832 _____ () C:\Program Files\Google\Drive File Stream\25.196.245.2031\cc_icu_data_library_core.dll

2016-06-25 13:20 - 2018-04-03 09:18 - 008936112 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll

2016-06-25 13:20 - 2018-04-03 09:17 - 008935600 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\1033\GrooveIntlResource.dll

2018-04-26 17:04 - 2018-04-25 20:24 - 003738456 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libglesv2.dll

2018-04-26 17:04 - 2018-04-25 20:24 - 000085848 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libegl.dll

 

==================== Alternate Data Streams (Whitelisted) =========

 

(If an entry is included in the fixlist, only the ADS will be removed.)

 

 

==================== Safe Mode (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

 

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmcService => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Sophos File Scanner Service => ""="service"

 

==================== Association (Whitelisted) ===============

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

 

 

==================== Internet Explorer trusted/restricted ===============

 

(If an entry is included in the fixlist, it will be removed from the registry.)

 

IE trusted site: HKU\.DEFAULT\...\aadrm.com -> aadrm.com

IE trusted site: HKU\.DEFAULT\...\amkor.com -> amkor.com

IE trusted site: HKU\.DEFAULT\...\assets-yammer.com -> assets-yammer.com

IE trusted site: HKU\.DEFAULT\...\azurerms.com -> hxxps://portal.na.azurerms.com

IE trusted site: HKU\.DEFAULT\...\cloudapp.net -> office365servicehealthcommunications.cloudapp.net

IE trusted site: HKU\.DEFAULT\...\cloudfront.net -> cloudfront.net

IE trusted site: HKU\.DEFAULT\...\crocodoc.com -> crocodoc.com

IE trusted site: HKU\.DEFAULT\...\googleapis.com -> ajax.googleapis.com

IE trusted site: HKU\.DEFAULT\...\live.com -> *.officeapps.live.com

IE trusted site: HKU\.DEFAULT\...\lync.com -> lync.com

IE trusted site: HKU\.DEFAULT\...\microsoftonline-p.com -> microsoftonline-p.com

IE trusted site: HKU\.DEFAULT\...\microsoftonline-p.net -> microsoftonline-p.net

IE trusted site: HKU\.DEFAULT\...\microsoftonline.com -> microsoftonline.com

IE trusted site: HKU\.DEFAULT\...\microsoftonlineimages.com -> microsoftonlineimages.com

IE trusted site: HKU\.DEFAULT\...\msecnd.net -> msecnd.net

IE trusted site: HKU\.DEFAULT\...\msocdn.com -> msocdn.com

IE trusted site: HKU\.DEFAULT\...\office.com -> office.com

IE trusted site: HKU\.DEFAULT\...\office.net -> *.cdn.office.net

IE trusted site: HKU\.DEFAULT\...\office365.com -> outlook.office365.com

IE trusted site: HKU\.DEFAULT\...\onenote.com -> onenote.com

 

There are 12 more sites.

 

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\aadrm.com -> aadrm.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\amkor.com -> hxxp://aanet.amkor.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\assets-yammer.com -> assets-yammer.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\azurerms.com -> hxxps://portal.na.azurerms.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\cloudapp.net -> office365servicehealthcommunications.cloudapp.net

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\cloudfront.net -> cloudfront.net

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\crocodoc.com -> crocodoc.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\googleapis.com -> ajax.googleapis.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\live.com -> *.officeapps.live.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\lync.com -> lync.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonline-p.com -> microsoftonline-p.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonline-p.net -> microsoftonline-p.net

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonline.com -> microsoftonline.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonlineimages.com -> microsoftonlineimages.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\msecnd.net -> msecnd.net

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\msocdn.com -> msocdn.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\office.com -> office.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\office.net -> *.cdn.office.net

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\office365.com -> outlook.office365.com

IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\onenote.com -> onenote.com

 

There are 12 more sites.

 

 

==================== Hosts content: ===============================

 

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

 

2009-07-13 19:34 - 2009-06-10 14:00 - 000000824 _____ C:\windows\system32\Drivers\etc\hosts

 

 

==================== Other Areas ============================

 

(Currently there is no automatic fix for this section.)

 

HKU\S-1-5-21-3733008567-4105056608-180679723-26472\Control Panel\Desktop\\Wallpaper -> C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg

DNS Servers: 192.168.1.1

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)

Windows Firewall is enabled.

 

==================== MSCONFIG/TASK MANAGER disabled items ==

 

 

==================== FirewallRules (Whitelisted) ===============

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe

FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe

FirewallRules: [{7C2E28CB-BE7C-4AE1-BA3A-3B30235F378E}] => (Allow) LPort=5900

FirewallRules: [{45828EC8-135C-4B92-A880-1C3D9F16DE53}] => (Allow) LPort=5800

FirewallRules: [{15951C58-BD14-49D1-924E-817F8F046815}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe

FirewallRules: [{EB80064F-38C2-42B9-A4F8-02EDC378C66A}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe

FirewallRules: [{29317E14-FB6F-4742-839E-7CD46B9A172E}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\Smc.exe

FirewallRules: [{B2452928-B66A-4CDB-8BB6-140678511DA5}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\Smc.exe

FirewallRules: [{D8CE4E05-923A-45E6-9AA0-37A8F34A231C}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\snac64.exe

FirewallRules: [{797ECD50-00AB-4751-992F-D97FB6250138}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\snac64.exe

FirewallRules: [{6F1F064B-7580-4124-BFB7-8F33FFFE2CF3}] => (Allow) C:\Program Files (x86)\wePresent WiPG-2000\wePresent WiPG-2000.exe

FirewallRules: [{47CF3E8B-8EEF-4F3E-BD5B-701AF2FCEF18}] => (Allow) C:\Program Files (x86)\wePresent WiPG-2000\wePresent WiPG-2000.exe

FirewallRules: [{4B51C21A-2E32-4629-B557-C46F44BFD658}] => (Allow) C:\Program Files (x86)\wePresent WiPG-2000\wePresent WiPG-2000.exe

FirewallRules: [{DBDEF0CB-F07E-4A41-A33D-5BFCF6187D01}] => (Allow) C:\Program Files (x86)\wePresent WiPG-2000\wePresent WiPG-2000.exe

FirewallRules: [{D842E209-4EB7-4824-9E75-45584ADCC378}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe

FirewallRules: [{480602B3-A198-4933-9E71-4E1AFAFC57FC}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe

FirewallRules: [{3AF02433-5E58-44E8-830A-E516487F2D5D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe

FirewallRules: [{4E35B013-D9A4-42D7-B177-BB9DA6EB81E3}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe

FirewallRules: [{8BF73B65-C103-45DF-892B-65003540BD64}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe

FirewallRules: [{02FB2D70-075A-4765-BF30-255FF67755D6}] => (Allow) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

FirewallRules: [{183C36FA-1811-4AC6-A6CD-4874CCECD3A1}] => (Allow) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

FirewallRules: [{7F719F7A-C28A-43A2-AB8B-DEE755FA6F0F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe

FirewallRules: [{FA357283-41DF-416D-86F1-3FB5B692FF78}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7004.6500.105\Bin\ccSvcHst.exe

FirewallRules: [{9DF5A983-92EE-4CAE-B751-0BB8E802ABC4}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7004.6500.105\Bin\ccSvcHst.exe

FirewallRules: [{ECD5505F-40C1-4EB2-BEDC-83566E5410F0}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7004.6500.105\Bin64\snac64.exe

FirewallRules: [{2B832B54-A3EF-46DF-92D0-0F80C085FF3F}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7004.6500.105\Bin64\snac64.exe

FirewallRules: [{3235AEE0-E032-4270-BF1E-74F609F3B247}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe

FirewallRules: [{4ACC8BB7-58A5-40DA-ACFA-B028E7E587FC}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

FirewallRules: [{AE1A17FE-588E-448D-AA9D-63A3C834EAF7}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe

FirewallRules: [{D5F67FF7-ECC6-4C81-AA37-425EF64E1EA1}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe

FirewallRules: [{EE11A593-E5FF-44BF-AF3A-F6388DE0FD60}] => (Allow) C:\Program Files (x86)\MirrorOp\MirrorOp.exe

FirewallRules: [{0651A1ED-3AAF-4C41-84CD-726E669D723A}] => (Allow) C:\Program Files (x86)\MirrorOp\MirrorOp.exe

FirewallRules: [{39D102AC-275A-4658-8721-2660BEEB9D0B}] => (Allow) C:\Program Files (x86)\MirrorOp\SidePadLite.exe

FirewallRules: [{6E236713-065B-4CE7-82D0-9BCCB04B99A9}] => (Allow) C:\Program Files (x86)\MirrorOp\SidePadLite.exe

FirewallRules: [{44C5C1F6-1E0A-4B0D-A8BA-E147E10A9592}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe

FirewallRules: [{E9BC719A-0122-493E-BCB3-16D452F9E2E2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

 

==================== Restore Points =========================

 

28-04-2018 14:25:12 Checkpoint by HitmanPro

28-04-2018 14:26:51 Checkpoint by HitmanPro

28-04-2018 14:40:47 Checkpoint by HitmanPro

28-04-2018 14:41:21 Checkpoint by HitmanPro

28-04-2018 14:57:07 Windows Update

28-04-2018 15:05:53 Removed Java 8 Update 171

28-04-2018 15:19:59 Restore Operation

28-04-2018 17:50:48 Windows Update

 

==================== Faulty Device Manager Devices =============

 

Name: PCI Data Acquisition and Signal Processing Controller

Description: PCI Data Acquisition and Signal Processing Controller

Class Guid: 

Manufacturer: 

Service: 

Problem: : The drivers for this device are not installed. (Code 28)

Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

 

Name: ZAM Helper Driver

Description: ZAM Helper Driver

Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}

Manufacturer: 

Service: ZAM

Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)

Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.

Devices stay in this state if they have been prepared for removal.

After you remove the device, this error disappears.Remove the device, and this error should be resolved.

 

Name: ZAM Guard Driver

Description: ZAM Guard Driver

Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}

Manufacturer: 

Service: ZAM_Guard

Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)

Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.

Devices stay in this state if they have been prepared for removal.

After you remove the device, this error disappears.Remove the device, and this error should be resolved.

 

 

==================== Event log errors: =========================

 

Application errors:

==================

Error: (04/28/2018 05:51:58 PM) (Source: SideBySide) (EventID: 35) (User: )

Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.

Component identity found in manifest does not match the identity of the component requested.

Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".

Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".

Please use sxstrace.exe for detailed diagnosis.

 

Error: (04/28/2018 04:43:32 PM) (Source: SideBySide) (EventID: 35) (User: )

Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.

Component identity found in manifest does not match the identity of the component requested.

Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".

Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".

Please use sxstrace.exe for detailed diagnosis.

 

Error: (04/28/2018 03:46:19 PM) (Source: System Restore) (EventID: 8210) (User: )

Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x80070005.

 

Error: (04/28/2018 03:45:06 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)

Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

 

Error: (04/28/2018 03:32:48 PM) (Source: System Restore) (EventID: 8210) (User: )

Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x80070005.

 

Error: (04/28/2018 03:26:37 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)

Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

 

Error: (04/28/2018 03:08:28 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)

Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

 

Error: (04/28/2018 02:50:33 PM) (Source: SideBySide) (EventID: 35) (User: )

Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.

Component identity found in manifest does not match the identity of the component requested.

Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".

Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".

Please use sxstrace.exe for detailed diagnosis.

 

 

System errors:

=============

Error: (04/28/2018 05:36:57 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: NT AUTHORITY)

Description: The processing of Group Policy failed because of lack of network connectivity to a domain controller. This may be a transient condition. A success message would be generated once the machine gets connected to the domain controller and Group Policy has succesfully processed. If you do not see a success message for several hours, then contact your administrator.

 

Error: (04/28/2018 03:48:50 PM) (Source: TermService) (EventID: 1067) (User: )

Description: The terminal server cannot register 'TERMSRV' Service Principal Name to be used for server authentication. The following error occured: The specified domain either does not exist or could not be contacted.

.

 

Error: (04/28/2018 03:46:19 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: US)

Description: The processing of Group Policy failed because of lack of network connectivity to a domain controller. This may be a transient condition. A success message would be generated once the machine gets connected to the domain controller and Group Policy has succesfully processed. If you do not see a success message for several hours, then contact your administrator.

 

Error: (04/28/2018 03:45:24 PM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load: 

cdrom

UimBus

Uim_DEVIM

Uim_IM

 

Error: (04/28/2018 03:44:56 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1055) (User: NT AUTHORITY)

Description: The processing of Group Policy failed. Windows could not resolve the computer name. This could be caused by one of more of the following: 

a) Name Resolution failure on the current domain controller. 

B) Active Directory Replication Latency (an account created on another domain controller has not replicated to the current domain controller).

 

Error: (04/28/2018 03:44:56 PM) (Source: NETLOGON) (EventID: 5719) (User: )

Description: This computer was not able to set up a secure session with a domain

controller in domain US due to the following: 

There are currently no logon servers available to service the logon request.

 

 

This may lead to authentication problems. Make sure that this

computer is connected to the network. If the problem persists,

please contact your domain administrator.

 

 

 

ADDITIONAL INFO

 

If this computer is a domain controller for the specified domain, it

sets up the secure session to the primary domain controller emulator in the specified

domain. Otherwise, this computer sets up the secure session to any domain controller

in the specified domain.

 

Error: (04/28/2018 03:44:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )

Description: A timeout was reached (30000 milliseconds) while waiting for the Lenovo Platform Service service to connect.

 

Error: (04/28/2018 03:32:45 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: US)

Description: The processing of Group Policy failed because of lack of network connectivity to a domain controller. This may be a transient condition. A success message would be generated once the machine gets connected to the domain controller and Group Policy has succesfully processed. If you do not see a success message for several hours, then contact your administrator.

 

 

CodeIntegrity:

===================================

 

Date: 2017-05-15 12:34:09.991

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-05-15 12:34:09.990

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-05-08 12:34:09.797

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-05-08 12:34:09.796

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-05-01 13:22:58.801

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-05-01 13:22:58.801

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-04-24 12:34:30.516

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Date: 2017-04-24 12:34:30.516

Description: 

Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

==================== Memory info =========================== 

 

Processor: Intel® Core™ i5-5300U CPU @ 2.30GHz

Percentage of memory in use: 66%

Total physical RAM: 7888.23 MB

Available physical RAM: 2612.91 MB

Total Virtual: 15774.62 MB

Available Virtual: 10300.83 MB

 

==================== Drives ================================

 

Drive c: (Windows) (Fixed) (Total:238.18 GB) (Free:119.05 GB) NTFS

 

\\?\Volume{16758045-111a-11e6-b832-806e6f6e6963}\ (system) (Fixed) (Total:0.29 GB) (Free:0.26 GB) NTFS

 

==================== MBR & Partition Table ==================

 

========================================================

Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 8930D4EA)

Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)

Partition 2: (Not Active) - (Size=238.2 GB) - (Type=07 NTFS)

 

==================== End of Addition.txt ============================

 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25.04.2018
Ran by nshah (28-04-2018 17:58:36)
Running from C:\Users\nshah\Downloads
Windows 7 Enterprise Service Pack 1 (X64) (2016-05-03 10:35:12)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-1012591852-3362119673-2904557523-500 - Administrator - Enabled) => C:\Users
 
\Administrator
amkoradmin (S-1-5-21-1012591852-3362119673-2904557523-1002 - Administrator - Enabled) => C:\Users
 
\amkoradmin
AntiVirus (S-1-5-21-1012591852-3362119673-2904557523-1000 - Administrator - Enabled)
Guest (S-1-5-21-1012591852-3362119673-2904557523-501 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware 
 
programs should be uninstalled manually.)
 
64 Bit HP CIO Components Installer (HKLM\...\{13DA9C7C-EBFB-40D0-94A1-55B42883DF21}) (Version: 21.2.1 - 
 
HP Inc.) Hidden
7-Zip 16.04 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1604-000001000000}) (Version: 16.04.00.0 - Igor 
 
Pavlov)
ACL for Windows (HKLM-x32\...\{F6B3EEE6-54A5-4012-AD19-6356B3DD7F34}) (Version: 11.4.2.536 - ACL 
 
Services Ltd.)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 18.011.20038 - 
 
Adobe Systems Incorporated)
Adobe Flash Player 29 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 29.0.0.140 - Adobe 
 
Systems Incorporated)
Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.140 - Adobe 
 
Systems Incorporated)
Altiris Deployment Agent (HKLM\...\{6C8D5E56-CA12-42B2-9075-044B4C7067A9}) (Version: 1.0.0 - Altiris)
Altiris Inventory Agent (HKLM-x32\...\{0B6F2D9A-5725-43B7-9BFB-71A2AD2BD517}) (Version: 7.5.3219.0 - 
 
Symantec Corporation) Hidden
Analytics Exchange Client (HKLM-x32\...\{618D78F7-CAE5-4F98-91CC-E0D75C988F56}) (Version: 6.0.0.791 - 
 
ACL Services Ltd.)
Cisco IP Communicator (HKLM-x32\...\{5ED3AC8B-72BB-42D7-A6F7-AC618168630D}) (Version: 8.6.1.0 - Cisco 
 
Systems, Inc.)
Cisco WebEx Meetings (HKLM-x32\...\ActiveTouchMeetingClient) (Version:  - Cisco WebEx LLC)
Citrix Online Launcher (HKLM-x32\...\{48947098-A67C-46D4-90C5-9F2F6F0F96FE}) (Version: 1.0.449 - 
 
Citrix)
Core FTP LE 2.1 (HKLM-x32\...\Core FTP LE 2.1) (Version:  - )
CutePDF Writer 2.8 (HKLM\...\CutePDF Writer Installation) (Version:  - )
Deployment Solution Agent (HKLM\...\{0B44568E-7915-4BD7-989F-C88683645220}) (Version: 7.5.3219.0 - 
 
Symantec) Hidden
DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - 
 
Microsoft Corporation)
Direct Link Desktop Edition (HKLM-x32\...\{076B7D53-A235-4BCC-9563-E567121DAC66}) (Version: 7.0.0.136 - 
 
ACL Services Ltd.)
Engineering Client Viewer 7.0 (HKLM-x32\...\SAP_Engineering Client Viewer 7.0) (Version:  - SAP AG)
EPM add-in for Microsoft Office (HKLM-x32\...\{2C342070-8569-41F7-9DB4-6FF7D63AACA2}) (Version: 
 
10.0.0.9063 - SAP BusinessObjects)
Extended Asian Language font pack for Adobe Reader XI (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-
 
A00000000049}) (Version: 11.0.09 - Adobe Systems Incorporated)
GlobalProtect (HKLM\...\{F6590E2B-4FA4-4733-A923-467915FE52DB}) (Version: 3.1.6 - Palo Alto Networks)
Google Chrome (HKLM-x32\...\{9BCCDBF4-DB5F-3792-98B0-74100A584B07}) (Version: 66.0.3359.139 - Google, 
 
Inc.)
Google Drive File Stream (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 25.196.245.2031 - 
 
Google, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google 
 
Inc.) Hidden
Hangouts Plugin for Microsoft Outlook® 1.0.65.0 (x86) (HKLM-x32\...\{217449B4-9083-4A44-BA87-
 
5C51DAE738BE}) (Version: 1.0.65.0 - Google, Inc.)
Integrated Camera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11073 - 
 
Realtek Semiconductor Corp.)
Intel® Network Connections Drivers (HKLM\...\PROSet) (Version: 19.5 - Intel)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 
 
10.18.14.4432 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{a0f22a81-00d1-45d6-9cad-d93c57053e53}) (Version: 20.10.2 
 
- Intel Corporation)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.12.16 - Lenovo) Hidden
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0070 - Lenovo)
Lotus Notes 8.5.2 (HKLM-x32\...\{07C69B3A-62B3-41BF-82EE-B3A87BD6EA0C}) (Version: 8.52.10222 - IBM)
MDOP MBAM (HKLM\...\{1B0FF767-2365-4E2B-91D1-93D442944055}) (Version: 2.5.0252.0 - Microsoft 
 
Corporation)
Microsoft .NET Framework 4.5.2(한국어) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1042) (Version: 
 
4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 
 
4.6.01590 - Microsoft Corporation)
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) 
 
(Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.9126.2152 - 
 
Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\OneDriveSetup.exe) (Version: 
 
17.3.6281.1202 - Microsoft Corporation)
Microsoft Project Professional 2013 (HKLM-x32\...\Office15.PRJPRO) (Version: 15.0.4569.1506 - Microsoft 
 
Corporation)
Microsoft redistributable runtime DLLs VS2005 SP1(x86) (HKLM-x32\...\{CEC7A786-A9C8-4EF7-BB59-
 
6518E3B3C878}) (Version: 8.0.50727.4053 - SAP)
Microsoft redistributable runtime DLLs VS2008 SP1(x86) (HKLM-x32\...\{A47A9101-6EB5-4314-BDA1-
 
297880FBB908}) (Version: 9.0 - SAP AG)
Microsoft redistributable runtime DLLs VS2010 SP1 (x86) (HKLM-x32\...\{2385C070-EC26-4AB9-8718-
 
E605C977C0ED}) (Version: 10.0.40219.1 - SAP)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - 
 
Microsoft Corporation)
Microsoft Visio Professional 2013 (HKLM-x32\...\Office15.VISPRO) (Version: 15.0.4569.1506 - Microsoft 
 
Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) 
 
(Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-
 
13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-
 
22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-
 
21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-
 
87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-
 
6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-
 
68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-
 
4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-
 
97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-
 
47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-
 
0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-
 
3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 
 
Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MirrorOp (HKLM-x32\...\{2b9ca461-682c-4799-8ceb-c9f1a313dcd8}) (Version: 2.0.0.19 - AWIND Inc)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - 
 
Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - 
 
Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 
 
4.20.9818.0 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) 
 
(Version: 16.0.9126.2152 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-
 
0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 
 
16.0.9126.2152 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) 
 
(Version: 16.0.9126.2152 - Microsoft Corporation) Hidden
Open XML SDK 2.5 for Microsoft Office (HKLM-x32\...\{3EA16E23-14D2-466A-8268-D7CD40DC46B6}) (Version: 
 
2.5.5631 - Microsoft Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-
 
040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Patch Management Agent (HKLM\...\{26C5D274-98EE-4CB4-A3FE-499C406F0E74}) (Version: 7.5.3219.0 - 
 
Symantec) Hidden
SAP Business Explorer (HKLM-x32\...\SAPBI) (Version: 7.30 - SAP AG)
SAP GUI for Windows 7.30 (HKLM-x32\...\SAPGUI710) (Version: 7.30 Compilation 3 - SAP AG)
SAP JNet (HKLM-x32\...\SAP_JNet) (Version:  - SAP AG)
SAPSetup Automatic Workstation Update Service (HKLM-x32\...\SAP_WUS) (Version:  - SAP AG)
Skype™ 7.41 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.41.101 - Skype 
 
Technologies S.A.)
Sling (HKLM-x32\...\{A0C306FE-01A5-4B94-A037-EF5403F8CE41}) (Version: 5.0.174 - Echostar)
Software Management Solution Plugin (HKLM\...\{58A202A4-FEF3-448A-AB52-037BEA512524}) (Version: 
 
7.5.3219.0 - Altiris Inc.) Hidden
Sophos AutoUpdate XG (HKLM-x32\...\{72E136F7-3751-422E-AC7A-1B2E46391909}) (Version: 5.11.155 - Sophos 
 
Limited) Hidden
Sophos Clean (HKLM\...\Sophos Clean) (Version: 3.8.3.1 - Sophos Limited) Hidden
Sophos Data Protection Agent 1.3.90.0 (HKLM-x32\...\{BE279FDE-A093-4976-BE34-E7AEDED3A46F}) (Version: 
 
1.3.90.0 - Sophos Limited) Hidden
Sophos Diagnostic Utility (HKLM-x32\...\{4627F5A1-E85A-4394-9DB3-875DF83AF6C2}) (Version: 1.20.0.4 - 
 
Sophos Limited) Hidden
Sophos Endpoint (HKLM\...\{D29542AE-287C-42E4-AB28-3858E13C1A3E}) (Version: 1.4.147 - Sophos Limited) 
 
Hidden
Sophos Endpoint Agent (HKLM\...\Sophos Endpoint Agent) (Version: 2.0.2 - Sophos Limited)
Sophos Endpoint Defense (HKLM\...\Sophos Endpoint Defense) (Version: 1.3.0.512 - Sophos Limited) Hidden
Sophos Endpoint Self Help (HKLM\...\{BB36D9C2-6AE5-4AB2-BC91-ECD247092BD8}) (Version: 2.0.103 - Sophos 
 
Limited) Hidden
Sophos File Scanner (HKLM\...\{CD39E739-F480-4AC4-B0C9-68CA731D8AC6}) (Version: 1.1.98 - Sophos 
 
Limited) Hidden
Sophos Health (HKLM-x32\...\{E44AF5E6-7D11-4BDF-BEA8-AA7AE5FE6745}) (Version: 2.0.6.223 - Sophos 
 
Limited) Hidden
Sophos Management Communications System (HKLM-x32\...\{2C14E1A2-C4EB-466E-8374-81286D723D3A}) (Version: 
 
4.7.15 - Sophos Limited) Hidden
Sophos Standalone Engine (HKLM\...\Sophos Standalone Engine) (Version: 1.1.227 - Sophos Limited) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.27.39 - Synaptics 
 
Incorporated)
ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) 
 
(Version: 6.5.1.4500 - Broadcom Corporation)
ThinkVantage Access Connections (HKLM-x32\...\{8E537894-A559-4D60-B3CB-F4485E3D24E3}) (Version: 6.24 - 
 
Lenovo)
Traps 4.1.2.29819 (HKLM\...\{A4A93499-4BC3-4104-8041-F69A4C95CA57}) (Version: 4.1.2.29819 - Palo Alto 
 
Networks, Inc.)
UltraVnc (HKLM\...\Ultravnc2_is1) (Version: 1.1.9.3 - uvnc bvba)
Update for Skype for Business 2015 (KB4018334) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-
 
0000000FF1CE}_Office15.PRJPRO_{43E657C8-617B-4062-9580-690699462328}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4018334) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-
 
0000000FF1CE}_Office15.VISPRO_{43E657C8-617B-4062-9580-690699462328}) (Version:  - Microsoft)
wePresent WiPG-2000 (HKLM-x32\...\{6A00B7A2-F8DC-4521-A9EC-A329F495EA11}) (Version: 1.0.2.2 - AWIND 
 
Inc)
Windows Driver Package - Broadcom (BTHUSB) Bluetooth  (04/08/2010 6.3.5.430) (HKLM\...
 
\DE7217D2A8B057F15EC6E52329FDAB84231521E8) (Version: 04/08/2010 6.3.5.430 - Broadcom)
Windows Driver Package - Broadcom HIDClass  (07/28/2009 6.2.0.9800) (HKLM\...
 
\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)
Zoom (HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\ZoomUMX) (Version: 4.0 - Zoom Video 
 
Communications, Inc.)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be 
 
moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{162C6FB5-44D3-435B-
 
903D-E613FA093FB5}\InprocServer32 -> C:\Users\nshah\AppData\Local\Microsoft\OneDrive
 
\17.3.6281.1202\amd64\FileCoAuthLib64.dll ()
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{7CB4D2F7-77AE-4A08-
 
9BDF-21370FF8D6BD}\InprocServer32 -> C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\drivefsext.dll (Google, Inc.)
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{820D63D5-8CFF-46DE-
 
86AF-4997DEDD6DB5}\localserver32 -> C:\windows\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{96836CC1-31EA-4F1C-A7F4
 
-D67863D5D4FD}\InprocServer32 -> C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\drivefsext.dll (Google, Inc.)
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{9EE0C242-8973-456D-B382
 
-0752476703FD}\InprocServer32 -> C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\drivefsext.dll (Google, Inc.)
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{B53FB4A1-B6BB-4F9B-AAA8
 
-8704FBC1BE25}\InprocServer32 -> C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\drivefsext.dll (Google, Inc.)
CustomCLSID: HKU\S-1-5-21-3733008567-4105056608-180679723-26472_Classes\CLSID\{C9F7D7A1-D13F-4C72-9AB0
 
-06FDC65AA931}\InprocServer32 -> C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\drivefsext.dll (Google, Inc.)
ShellIconOverlayIdentifiers: [    GoogleDriveCloudOverlayIconHandler] -> {7CB4D2F7-77AE-4A08-9BDF-
 
21370FF8D6BD} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] 
 
(Google, Inc.)
ShellIconOverlayIdentifiers: [    GoogleDrivePinnedOverlayIconHandler] -> {C9F7D7A1-D13F-4C72-9AB0-
 
06FDC65AA931} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] 
 
(Google, Inc.)
ShellIconOverlayIdentifiers: [    GoogleDriveProgressOverlayIconHandler] -> {96836CC1-31EA-4F1C-A7F4-
 
D67863D5D4FD} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-04-02] 
 
(Google, Inc.)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => 
 
C:\Program Files (x86)\Google\Drive\googledrivesync64.dll -> No File
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:
 
\Program Files (x86)\Google\Drive\googledrivesync64.dll -> No File
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:
 
\Program Files (x86)\Google\Drive\googledrivesync64.dll -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-
 
zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files 
 
(x86)\Google\Drive\contextmenu64.dll -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-
 
zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files 
 
(x86)\Google\Drive\contextmenu64.dll -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\windows
 
\system32\igfxpph.dll -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\windows
 
\system32\igfxDTCM.dll [2016-06-02] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\windows
 
\system32\nvshext.dll [2015-02-04] (NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-
 
zip.dll [2016-10-04] (Igor Pavlov)
ContextMenuHandlers1_S-1-5-21-3733008567-4105056608-180679723-26472: [DriveFS] -> {B53FB4A1-B6BB-4F9B-
 
AAA8-8704FBC1BE25} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-
 
04-02] (Google, Inc.)
ContextMenuHandlers4_S-1-5-21-3733008567-4105056608-180679723-26472: [DriveFS] -> {B53FB4A1-B6BB-4F9B-
 
AAA8-8704FBC1BE25} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-
 
04-02] (Google, Inc.)
ContextMenuHandlers5_S-1-5-21-3733008567-4105056608-180679723-26472: [DriveFS] -> {B53FB4A1-B6BB-4F9B-
 
AAA8-8704FBC1BE25} => C:\Program Files\Google\Drive File Stream\25.196.245.2031\drivefsext.dll [2018-
 
04-02] (Google, Inc.)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be 
 
moved unless listed separately.)
 
Task: {08AD7507-09D6-4099-85C5-C87AB1ABEFA4} - System32\Tasks\Microsoft\Office\Office ClickToRun 
 
Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018
 
-04-06] (Microsoft Corporation)
Task: {3517FBA6-9EE5-4C24-AF5B-0C91EB2924C1} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files 
 
(x86)\Lenovo\System Update\tvsuShim.exe [2017-12-12] ()
Task: {38BEF093-3C9C-4CA0-8D35-2A9FF64D3102} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program 
 
Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-11] (Google Inc.)
Task: {3B30088F-1615-4E30-B683-67E79ADA347D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 
 
64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {3EAD0179-1426-4106-A233-FAEDA34C45EF} - System32\Tasks\Microsoft\Office
 
\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe 
 
[2018-04-15] (Microsoft Corporation)
Task: {436561C5-1C56-425E-8B0D-BF63F8C6844D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:
 
\windows\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_140_Plugin.exe [2018-04-10] (Adobe Systems 
 
Incorporated)
Task: {500F337C-6556-40C6-8554-158224EF5D0B} - System32\Tasks\Microsoft\Office
 
\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root
 
\Office16\officebackgroundtaskhandler.exe [2018-04-15] (Microsoft Corporation)
Task: {62616FCE-AF80-443A-A9E8-62295E4C261A} - System32\Tasks\{83FDBEC3-3E2C-4454-B213-3806C1592589} => 
 
C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\Yahoo!\Messenger\UNWISE.EXE" -c /U C:\Program 
 
Files (x86)\Yahoo!\Messenger\INSTALL.LOG
Task: {67B7FD4A-D5DA-4AA7-A9A4-76BE322022FF} - System32\Tasks\Microsoft\Office\Office Subscription 
 
Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared
 
\Office16\OLicenseHeartbeat.exe [2018-04-15] (Microsoft Corporation)
Task: {7702604B-DF3E-46D8-BC27-FBA18064C9D1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 
 
2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-04-06] 
 
(Microsoft Corporation)
Task: {7E77970F-9DBC-4EA1-9F4D-95AA9010D9EA} - System32\Tasks\Microsoft\Office
 
\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe 
 
[2018-04-15] (Microsoft Corporation)
Task: {83CADEAF-320E-47DA-93CD-1C8F9DCED9FC} - System32\Tasks\Microsoft\Office
 
\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root
 
\Office16\officebackgroundtaskhandler.exe [2018-04-15] (Microsoft Corporation)
Task: {91AC3C7B-5A27-4112-BA23-73CD57494701} - System32\Tasks\Adobe Flash Player Updater => C:\Windows
 
\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-04-10] (Adobe Systems Incorporated)
Task: {924D4533-6D6D-4B60-81C3-7A8C331D4236} - System32\Tasks\f2327ea5-546c-4329-bb8d-cecd5bc274ad => 
 
C:\windows\LSDeployment\RemoteDeployment_x64.exe [2017-02-21] ()
Task: {BF3072D2-44FD-4A37-9C5A-0BCC345936CF} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:
 
\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2017-12-12] ()
Task: {C6DDECA8-98C0-4F19-984A-BABA6CD02ACE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program 
 
Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-11] (Google Inc.)
Task: {F0DDE201-0D75-467B-9B58-E29B9F93B5CB} - System32\Tasks\Microsoft\Office\Office 15 Subscription 
 
Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {F7E53642-EF54-4B7E-83C0-7BCF6F4C1D74} - System32\Tasks\Adobe Acrobat Update Task => C:\Program 
 
Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running 
 
by the task will not be moved.)
 
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
ShortcutWithArgument: C:\Users\nshah\Documents\Misc\flash drive = old\Amkor\Amkor\Misc Backup
 
\Favorites\E&Y Favorites\E&Y Branding Zone.lnk -> C:\Program Files\Internet Explorer\iexplore.exe 
 
(Microsoft Corporation) -> hxxp://brandingzone.iweb.ey.com/
ShortcutWithArgument: C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
 
\Chromebook Recovery Utility.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google 
 
Inc.) ->  --profile-directory=Default --app-id=jndclpdbaamdhonoechobihbbiimdgai
ShortcutWithArgument: C:\Users\nshah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
 
\Google Hangouts.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  
 
--profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl
ShortcutWithArgument: C:\Users\nshah\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User 
 
Pinned\TaskBar\Google Hangouts.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
 
(Google Inc.) ->  --profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl
 
==================== Loaded Modules (Whitelisted) ==============
 
2013-01-25 14:47 - 2009-11-05 08:40 - 000085504 _____ () C:\windows\System32\cpwmon64.dll
2018-04-14 11:20 - 2018-04-02 13:44 - 002519800 _____ () C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\common_icuuc.dll
2018-04-14 11:20 - 2018-04-02 13:44 - 003299576 _____ () C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\icui18n.dll
2018-04-14 11:20 - 2018-04-02 13:44 - 003843832 _____ () C:\Program Files\Google\Drive File Stream
 
\25.196.245.2031\cc_icu_data_library_core.dll
2016-06-25 13:20 - 2018-04-03 09:18 - 008936112 _____ () C:\Program Files (x86)\Microsoft Office\root
 
\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2016-06-25 13:20 - 2018-04-03 09:17 - 008935600 _____ () C:\Program Files (x86)\Microsoft Office\root
 
\Office16\1033\GrooveIntlResource.dll
2018-04-26 17:04 - 2018-04-25 20:24 - 003738456 _____ () C:\Program Files (x86)\Google\Chrome
 
\Application\66.0.3359.139\libglesv2.dll
2018-04-26 17:04 - 2018-04-25 20:24 - 000085848 _____ () C:\Program Files (x86)\Google\Chrome
 
\Application\66.0.3359.139\libegl.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" 
 
will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmcService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Sophos File Scanner Service => ""="service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\.DEFAULT\...\aadrm.com -> aadrm.com
IE trusted site: HKU\.DEFAULT\...\amkor.com -> amkor.com
IE trusted site: HKU\.DEFAULT\...\assets-yammer.com -> assets-yammer.com
IE trusted site: HKU\.DEFAULT\...\azurerms.com -> hxxps://portal.na.azurerms.com
IE trusted site: HKU\.DEFAULT\...\cloudapp.net -> office365servicehealthcommunications.cloudapp.net
IE trusted site: HKU\.DEFAULT\...\cloudfront.net -> cloudfront.net
IE trusted site: HKU\.DEFAULT\...\crocodoc.com -> crocodoc.com
IE trusted site: HKU\.DEFAULT\...\googleapis.com -> ajax.googleapis.com
IE trusted site: HKU\.DEFAULT\...\live.com -> *.officeapps.live.com
IE trusted site: HKU\.DEFAULT\...\lync.com -> lync.com
IE trusted site: HKU\.DEFAULT\...\microsoftonline-p.com -> microsoftonline-p.com
IE trusted site: HKU\.DEFAULT\...\microsoftonline-p.net -> microsoftonline-p.net
IE trusted site: HKU\.DEFAULT\...\microsoftonline.com -> microsoftonline.com
IE trusted site: HKU\.DEFAULT\...\microsoftonlineimages.com -> microsoftonlineimages.com
IE trusted site: HKU\.DEFAULT\...\msecnd.net -> msecnd.net
IE trusted site: HKU\.DEFAULT\...\msocdn.com -> msocdn.com
IE trusted site: HKU\.DEFAULT\...\office.com -> office.com
IE trusted site: HKU\.DEFAULT\...\office.net -> *.cdn.office.net
IE trusted site: HKU\.DEFAULT\...\office365.com -> outlook.office365.com
IE trusted site: HKU\.DEFAULT\...\onenote.com -> onenote.com
 
There are 12 more sites.
 
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\aadrm.com -> aadrm.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\amkor.com -> 
 
hxxp://aanet.amkor.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\assets-yammer.com -> assets-
 
yammer.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\azurerms.com -> 
 
hxxps://portal.na.azurerms.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\cloudapp.net -> 
 
office365servicehealthcommunications.cloudapp.net
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\cloudfront.net -> 
 
cloudfront.net
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\crocodoc.com -> crocodoc.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\googleapis.com -> 
 
ajax.googleapis.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\live.com -> 
 
*.officeapps.live.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\lync.com -> lync.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonline-p.com -> 
 
microsoftonline-p.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonline-p.net -> 
 
microsoftonline-p.net
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonline.com -> 
 
microsoftonline.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\microsoftonlineimages.com -> 
 
microsoftonlineimages.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\msecnd.net -> msecnd.net
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\msocdn.com -> msocdn.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\office.com -> office.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\office.net -> *.cdn.office.net
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\office365.com -> 
 
outlook.office365.com
IE trusted site: HKU\S-1-5-21-3733008567-4105056608-180679723-26472\...\onenote.com -> onenote.com
 
There are 12 more sites.
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 19:34 - 2009-06-10 14:00 - 000000824 _____ C:\windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3733008567-4105056608-180679723-26472\Control Panel\Desktop\\Wallpaper -> C:\Users\nshah
 
\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) 
 
(ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be 
 
moved unless listed separately.)
 
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{7C2E28CB-BE7C-4AE1-BA3A-3B30235F378E}] => (Allow) LPort=5900
FirewallRules: [{45828EC8-135C-4B92-A880-1C3D9F16DE53}] => (Allow) LPort=5800
FirewallRules: [{15951C58-BD14-49D1-924E-817F8F046815}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC
 
\winvnc.exe
FirewallRules: [{EB80064F-38C2-42B9-A4F8-02EDC378C66A}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC
 
\winvnc.exe
FirewallRules: [{29317E14-FB6F-4742-839E-7CD46B9A172E}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\Smc.exe
FirewallRules: [{B2452928-B66A-4CDB-8BB6-140678511DA5}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\Smc.exe
FirewallRules: [{D8CE4E05-923A-45E6-9AA0-37A8F34A231C}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\snac64.exe
FirewallRules: [{797ECD50-00AB-4751-992F-D97FB6250138}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.4013.4013.105\Bin64\snac64.exe
FirewallRules: [{6F1F064B-7580-4124-BFB7-8F33FFFE2CF3}] => (Allow) C:\Program Files (x86)\wePresent 
 
WiPG-2000\wePresent WiPG-2000.exe
FirewallRules: [{47CF3E8B-8EEF-4F3E-BD5B-701AF2FCEF18}] => (Allow) C:\Program Files (x86)\wePresent 
 
WiPG-2000\wePresent WiPG-2000.exe
FirewallRules: [{4B51C21A-2E32-4629-B557-C46F44BFD658}] => (Allow) C:\Program Files (x86)\wePresent 
 
WiPG-2000\wePresent WiPG-2000.exe
FirewallRules: [{DBDEF0CB-F07E-4A41-A33D-5BFCF6187D01}] => (Allow) C:\Program Files (x86)\wePresent 
 
WiPG-2000\wePresent WiPG-2000.exe
FirewallRules: [{D842E209-4EB7-4824-9E75-45584ADCC378}] => (Allow) C:\Program Files\Microsoft Office 
 
15\root\Office15\Lync.exe
FirewallRules: [{480602B3-A198-4933-9E71-4E1AFAFC57FC}] => (Allow) C:\Program Files\Microsoft Office 
 
15\root\Office15\UcMapi.exe
FirewallRules: [{3AF02433-5E58-44E8-830A-E516487F2D5D}] => (Allow) C:\Program Files (x86)\Microsoft 
 
Office\root\Office16\Lync.exe
FirewallRules: [{4E35B013-D9A4-42D7-B177-BB9DA6EB81E3}] => (Allow) C:\Program Files (x86)\Microsoft 
 
Office\root\Office16\Lync.exe
FirewallRules: [{8BF73B65-C103-45DF-892B-65003540BD64}] => (Allow) C:\Program Files (x86)\Microsoft 
 
Office\root\Office16\UcMapi.exe
FirewallRules: [{02FB2D70-075A-4765-BF30-255FF67755D6}] => (Allow) C:\Program Files (x86)\Yahoo!
 
\Messenger\YahooMessenger.exe
FirewallRules: [{183C36FA-1811-4AC6-A6CD-4874CCECD3A1}] => (Allow) C:\Program Files (x86)\Yahoo!
 
\Messenger\YahooMessenger.exe
FirewallRules: [{7F719F7A-C28A-43A2-AB8B-DEE755FA6F0F}] => (Allow) C:\Program Files (x86)\Skype\Phone
 
\Skype.exe
FirewallRules: [{FA357283-41DF-416D-86F1-3FB5B692FF78}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.7004.6500.105\Bin\ccSvcHst.exe
FirewallRules: [{9DF5A983-92EE-4CAE-B751-0BB8E802ABC4}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.7004.6500.105\Bin\ccSvcHst.exe
FirewallRules: [{ECD5505F-40C1-4EB2-BEDC-83566E5410F0}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.7004.6500.105\Bin64\snac64.exe
FirewallRules: [{2B832B54-A3EF-46DF-92D0-0F80C085FF3F}] => (Allow) C:\Program Files (x86)\Symantec
 
\Symantec Endpoint Protection\12.1.7004.6500.105\Bin64\snac64.exe
FirewallRules: [{3235AEE0-E032-4270-BF1E-74F609F3B247}] => (Allow) C:\Program Files (x86)\Microsoft 
 
Office\root\Office16\UcMapi.exe
FirewallRules: [{4ACC8BB7-58A5-40DA-ACFA-B028E7E587FC}] => (Allow) C:\Program Files\Intel\WiFi\bin
 
\PanDhcpDns.exe
FirewallRules: [{AE1A17FE-588E-448D-AA9D-63A3C834EAF7}] => (Allow) C:\Program Files (x86)\Lenovo\System 
 
Update\uncserver.exe
FirewallRules: [{D5F67FF7-ECC6-4C81-AA37-425EF64E1EA1}] => (Allow) C:\Program Files (x86)\Lenovo\System 
 
Update\uncserver.exe
FirewallRules: [{EE11A593-E5FF-44BF-AF3A-F6388DE0FD60}] => (Allow) C:\Program Files (x86)\MirrorOp
 
\MirrorOp.exe
FirewallRules: [{0651A1ED-3AAF-4C41-84CD-726E669D723A}] => (Allow) C:\Program Files (x86)\MirrorOp
 
\MirrorOp.exe
FirewallRules: [{39D102AC-275A-4658-8721-2660BEEB9D0B}] => (Allow) C:\Program Files (x86)\MirrorOp
 
\SidePadLite.exe
FirewallRules: [{6E236713-065B-4CE7-82D0-9BCCB04B99A9}] => (Allow) C:\Program Files (x86)\MirrorOp
 
\SidePadLite.exe
FirewallRules: [{44C5C1F6-1E0A-4B0D-A8BA-E147E10A9592}] => (Allow) C:\Program Files (x86)\Microsoft 
 
Office\root\Office16\outlook.exe
FirewallRules: [{E9BC719A-0122-493E-BCB3-16D452F9E2E2}] => (Allow) C:\Program Files (x86)\Google
 
\Chrome\Application\chrome.exe
 
==================== Restore Points =========================
 
28-04-2018 14:25:12 Checkpoint by HitmanPro
28-04-2018 14:26:51 Checkpoint by HitmanPro
28-04-2018 14:40:47 Checkpoint by HitmanPro
28-04-2018 14:41:21 Checkpoint by HitmanPro
28-04-2018 14:57:07 Windows Update
28-04-2018 15:05:53 Removed Java 8 Update 171
28-04-2018 15:19:59 Restore Operation
28-04-2018 17:50:48 Windows Update
 
==================== Faulty Device Manager Devices =============
 
Name: PCI Data Acquisition and Signal Processing Controller
Description: PCI Data Acquisition and Signal Processing Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware 
 
Update wizard.
 
Name: ZAM Helper Driver
Description: ZAM Helper Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: ZAM
Problem: : This device is not present, is not working properly, or does not have all its drivers 
 
installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new 
 
driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be 
 
resolved.
 
Name: ZAM Guard Driver
Description: ZAM Guard Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: ZAM_Guard
Problem: : This device is not present, is not working properly, or does not have all its drivers 
 
installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new 
 
driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be 
 
resolved.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (04/28/2018 05:51:58 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root
 
\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office
 
\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/28/2018 04:43:32 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root
 
\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office
 
\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/28/2018 03:46:19 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional 
 
information: 0x80070005.
 
Error: (04/28/2018 03:45:06 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE 
 
TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated 
 
in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this 
 
filter until the problem is corrected.
 
Error: (04/28/2018 03:32:48 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional 
 
information: 0x80070005.
 
Error: (04/28/2018 03:26:37 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE 
 
TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated 
 
in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this 
 
filter until the problem is corrected.
 
Error: (04/28/2018 03:08:28 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE 
 
TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated 
 
in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this 
 
filter until the problem is corrected.
 
Error: (04/28/2018 02:50:33 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root
 
\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office
 
\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
 
 
System errors:
=============
Error: (04/28/2018 05:36:57 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: NT 
 
AUTHORITY)
Description: The processing of Group Policy failed because of lack of network connectivity to a domain 
 
controller. This may be a transient condition. A success message would be generated once the machine 
 
gets connected to the domain controller and Group Policy has succesfully processed. If you do not see a 
 
success message for several hours, then contact your administrator.
 
Error: (04/28/2018 03:48:50 PM) (Source: TermService) (EventID: 1067) (User: )
Description: The terminal server cannot register 'TERMSRV' Service Principal Name to be used for server 
 
authentication. The following error occured: The specified domain either does not exist or could not be 
 
contacted.
.
 
Error: (04/28/2018 03:46:19 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: US)
Description: The processing of Group Policy failed because of lack of network connectivity to a domain 
 
controller. This may be a transient condition. A success message would be generated once the machine 
 
gets connected to the domain controller and Group Policy has succesfully processed. If you do not see a 
 
success message for several hours, then contact your administrator.
 
Error: (04/28/2018 03:45:24 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
cdrom
UimBus
Uim_DEVIM
Uim_IM
 
Error: (04/28/2018 03:44:56 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1055) (User: NT 
 
AUTHORITY)
Description: The processing of Group Policy failed. Windows could not resolve the computer name. This 
 
could be caused by one of more of the following: 
a) Name Resolution failure on the current domain controller. 
B) Active Directory Replication Latency (an account created on another domain controller has not 
 
replicated to the current domain controller).
 
Error: (04/28/2018 03:44:56 PM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: This computer was not able to set up a secure session with a domain
controller in domain US due to the following: 
There are currently no logon servers available to service the logon request.
 
 
This may lead to authentication problems. Make sure that this
computer is connected to the network. If the problem persists,
please contact your domain administrator.
 
 
 
ADDITIONAL INFO
 
If this computer is a domain controller for the specified domain, it
sets up the secure session to the primary domain controller emulator in the specified
domain. Otherwise, this computer sets up the secure session to any domain controller
in the specified domain.
 
Error: (04/28/2018 03:44:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Lenovo Platform Service 
 
service to connect.
 
Error: (04/28/2018 03:32:45 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: US)
Description: The processing of Group Policy failed because of lack of network connectivity to a domain 
 
controller. This may be a transient condition. A success message would be generated once the machine 
 
gets connected to the domain controller and Group Policy has succesfully processed. If you do not see a 
 
success message for several hours, then contact your administrator.
 
 
CodeIntegrity:
===================================
 
Date: 2017-05-15 12:34:09.991
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-05-15 12:34:09.990
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-05-08 12:34:09.797
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-05-08 12:34:09.796
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-05-01 13:22:58.801
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-05-01 13:22:58.801
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-04-24 12:34:30.516
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
Date: 2017-04-24 12:34:30.516
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files 
 
(x86)\Lenovo\System Update\ApsIns64.sys because file hash could not be found on the system. A recent 
 
hardware or software change might have installed a file that is signed incorrectly or damaged, or that 
 
might be malicious software from an unknown source.
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i5-5300U CPU @ 2.30GHz
Percentage of memory in use: 66%
Total physical RAM: 7888.23 MB
Available physical RAM: 2612.91 MB
Total Virtual: 15774.62 MB
Available Virtual: 10300.83 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:238.18 GB) (Free:119.05 GB) NTFS
 
\\?\Volume{16758045-111a-11e6-b832-806e6f6e6963}\ (system) (Fixed) (Total:0.29 GB) (Free:0.26 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 8930D4EA)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.2 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================
 


#3 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,760 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:51 PM

Posted 03 May 2018 - 08:05 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> https://www.bleepingcomputer.com/logreply/676565 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new FRST log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download FRST by Farbar from the following link if you no longer have it available and save it to your destop.

    FRST Download Link

  • When you go to the above page, there will be 32-bit and 64-bit downloads available. Please click on the appropriate one for your version of Windows. If you are unsure as to whether your Windows is 32-bit or 64-bit, please see this tutorial.
  • Double click on the FRST icon and allow it to run.
  • Agree to the usage agreement and FRST will open. Do not make any changes and click on the Scan button.
  • Notepad will open with the results.
  • Post the new logs as explained in the prep guide.
  • Close the program window, and delete the program from your desktop.


As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#4 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,760 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:51 PM

Posted 04 May 2018 - 11:38 AM

You have stated that you no longer need help with this issue, therefore I am closing this topic. If that is not the case and you need or wish to continue with this topic, please send any Moderator a Personal Message (PM) that you would like this topic re-opened.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users