Solved Infected W7 Pro

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-06 19:31 - 2017-11-06 19:31 - 000012602 _____ C:\ComboFix.txt
2017-11-06 19:17 - 2017-11-06 19:31 - 000000000 ____D C:\Qoobox
2017-11-06 19:17 - 2017-11-06 19:30 - 000000000 ____D C:\Windows\erdnt
2017-11-06 19:17 - 2011-06-25 22:45 - 000256000 _____ C:\Windows\PEV.exe
2017-11-06 19:17 - 2010-11-07 09:20 - 000208896 _____ C:\Windows\MBR.exe
2017-11-06 19:17 - 2009-04-19 20:56 - 000060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2017-11-06 19:17 - 2000-08-30 16:00 - 000518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2017-11-06 19:17 - 2000-08-30 16:00 - 000406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2017-11-06 19:17 - 2000-08-30 16:00 - 000098816 _____ C:\Windows\sed.exe
2017-11-06 19:17 - 2000-08-30 16:00 - 000080412 _____ C:\Windows\grep.exe
2017-11-06 19:17 - 2000-08-30 16:00 - 000068096 _____ C:\Windows\zip.exe
2017-11-06 19:15 - 2017-11-06 19:15 - 005660403 ____R (Swearware) C:\Users\Dell Vostro 1000\Desktop\ComboFix.exe
2017-11-06 17:24 - 2017-11-06 17:24 - 000000000 __SHD C:\Windows\system32\%APPDATA%
2017-11-06 16:36 - 2017-11-06 16:36 - 000000000 ____D C:\Windows\system32\SPReview
2017-11-06 14:04 - 2017-11-06 20:06 - 000027085 _____ C:\Users\Dell Vostro 1000\Desktop\Addition.txt
2017-11-06 14:03 - 2017-11-06 20:34 - 000012340 _____ C:\Users\Dell Vostro 1000\Desktop\FRST.txt
2017-11-06 10:37 - 2017-11-06 10:37 - 000000000 ____D C:\Windows\system32\EventProviders
2017-11-06 10:32 - 2017-11-06 20:34 - 000000000 ____D C:\FRST
2017-11-06 10:32 - 2017-11-06 10:32 - 001799680 _____ (Farbar) C:\Users\Dell Vostro 1000\Desktop\FRST.exe
2017-11-06 09:50 - 2010-11-20 04:32 - 005066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2017-11-06 09:50 - 2010-11-20 04:30 - 001290112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-11-06 09:50 - 2010-11-20 04:30 - 001211264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-11-06 09:50 - 2010-11-20 04:30 - 000712576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2017-11-06 09:50 - 2010-11-20 04:30 - 000245632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2017-11-06 09:50 - 2010-11-20 04:30 - 000233344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2017-11-06 09:50 - 2010-11-20 04:30 - 000143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2017-11-06 09:50 - 2010-11-20 04:30 - 000117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2017-11-06 09:50 - 2010-11-20 04:29 - 000728448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-11-06 09:50 - 2010-11-20 04:29 - 000520064 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2017-11-06 09:50 - 2010-11-20 04:29 - 000014208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2017-11-06 09:50 - 2010-11-20 04:24 - 001288488 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-11-06 09:50 - 2010-11-20 04:24 - 000508904 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2017-11-06 09:50 - 2010-11-20 04:21 - 012872192 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 011410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001712640 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001667584 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001619456 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2017-11-06 09:50 - 2010-11-20 04:21 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001363456 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001229824 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001175040 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001159168 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001128448 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001115136 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001086976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 001010688 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000980992 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000974336 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000870912 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000750592 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000646144 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000626176 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000597504 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000551424 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000521216 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000505856 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000492032 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000412160 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000376832 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000351232 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000350208 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000283648 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000270848 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000269824 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000224256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000136704 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2017-11-06 09:50 - 2010-11-20 04:21 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 001414144 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 001328128 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000641536 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000585728 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000573440 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000563712 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000547840 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000406528 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2017-11-06 09:50 - 2010-11-20 04:20 - 000242688 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 010990080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 005977600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 003215872 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 003207680 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 002291712 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 002151936 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 002064384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 001698816 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 001493504 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 001401344 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 001390080 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 001038848 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000954752 _____ (Microsoft Corporation) C:\Windows\system32\mfc40.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000954288 _____ (Microsoft Corporation) C:\Windows\system32\mfc40u.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000857600 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000804864 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000768512 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000732160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000674304 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-11-06 09:50 - 2010-11-20 04:19 - 000606208 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000599552 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000593408 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000584192 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000566272 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-11-06 09:50 - 2010-11-20 04:19 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 002522624 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001828352 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001792000 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001555456 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001371136 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001334272 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001171456 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001154048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 001076736 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000863744 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000739840 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000546304 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000522752 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000494592 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2017-11-06 09:50 - 2010-11-20 04:18 - 000485888 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000323072 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000270336 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000252928 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2017-11-06 09:50 - 2010-11-20 04:18 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2017-11-06 09:50 - 2010-11-20 04:17 - 003367424 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 002616320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 001203200 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 001049600 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 001025536 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000322048 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000302592 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000286720 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000280576 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000267776 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000220672 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2017-11-06 09:50 - 2010-11-20 04:17 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe
2017-11-06 09:50 - 2010-11-20 02:24 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2017-11-06 09:50 - 2010-11-20 02:22 - 000213504 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2017-11-06 09:50 - 2010-11-20 02:22 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2017-11-06 09:50 - 2010-11-20 01:09 - 002329088 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-11-06 09:50 - 2010-11-20 00:45 - 000311296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-11-06 09:50 - 2010-11-20 00:44 - 000388096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2017-11-06 09:50 - 2010-11-20 00:44 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-11-06 09:50 - 2010-11-19 19:52 - 000419880 _____ C:\Windows\system32\locale.nls
2017-11-06 09:50 - 2010-11-04 18:20 - 000146852 _____ C:\Windows\system32\systemsf.ebd
2017-11-06 09:50 - 2010-11-04 17:58 - 001130824 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2017-11-06 09:50 - 2010-11-04 17:58 - 000297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2017-11-06 09:50 - 2010-11-04 17:58 - 000049488 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2017-11-06 09:50 - 2010-11-04 17:53 - 000295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2017-11-06 09:50 - 2010-11-04 17:53 - 000099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2017-11-06 09:49 - 2010-11-20 04:36 - 001077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2017-11-06 09:49 - 2010-11-20 04:36 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2017-11-06 09:49 - 2010-11-20 04:30 - 000240000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000175360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000173440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000160128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000153984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000148864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000140160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000130432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000116096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000085376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000078208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000067456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000056192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000040704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2017-11-06 09:49 - 2010-11-20 04:30 - 000028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 002217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2017-11-06 09:49 - 2010-11-20 04:29 - 000332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 000274304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 000194432 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2017-11-06 09:49 - 2010-11-20 04:29 - 000194432 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2017-11-06 09:49 - 2010-11-20 04:29 - 000187776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2017-11-06 09:49 - 2010-11-20 04:29 - 000137088 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2017-11-06 09:49 - 2010-11-20 04:29 - 000132992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 000101760 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2017-11-06 09:49 - 2010-11-20 04:29 - 000080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 000043392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 000027008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2017-11-06 09:49 - 2010-11-20 04:29 - 000022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2017-11-06 09:49 - 2010-11-20 04:24 - 000690680 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2017-11-06 09:49 - 2010-11-20 04:24 - 000442720 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2017-11-06 09:49 - 2010-11-20 04:24 - 000271664 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2017-11-06 09:49 - 2010-11-20 04:24 - 000194800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2017-11-06 09:49 - 2010-11-20 04:23 - 000144768 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 002983424 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 002755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 002311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 002202624 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 002157568 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 002146304 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 001624064 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 001326592 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 001227776 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 001063936 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 001003008 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000933376 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000907776 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000850432 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000826368 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000782336 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000778240 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000766464 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000755200 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000750080 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000738816 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000697344 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000638976 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000600064 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000577024 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000464896 _____ (Microsoft Corporation) C:\Windows\system32\scrptadm.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000463360 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000458752 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000428544 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000416768 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000411648 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
 
- 000411648 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000410624 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000410112 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000406528 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000372224 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000352256 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000351232 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000346624 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000335872 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000327680 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000316416 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000305152 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000286208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000276992 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000247808 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000242176 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000242176 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000222208 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000220160 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000198144 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000196608 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000196096 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000176640 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000175616 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000159232 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000156672 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000154624 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000151040 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000139264 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000134656 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000111104 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000085504 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000082944 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000072192 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000040448 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2017-11-06 09:49 - 2010-11-20 04:21 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 002504192 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2017-11-06 09:49 - 2010-11-20 04:20 - 002494464 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 002130944 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 001750528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 001644032 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 001508864 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000932352 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000859648 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000801280 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000656384 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000600576 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000514560 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000441856 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000395264 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2017-11-06 09:49 - 2010-11-20 04:20 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000297472 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000295424 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000218112 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000199168 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000175616 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2017-11-06 09:49 - 2010-11-20 04:20 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2017-11-06 09:49 - 2010-11-20 04:20 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000165376 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000161792 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000116736 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2017-11-06 09:49 - 2010-11-20 04:20 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 002576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 002341376 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 001236992 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 001066496 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000856576 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000830464 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2017-11-06 09:49 - 2010-11-20 04:19 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000741376 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000716800 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000592384 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000488448 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000414208 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000350208 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2017-11-06 09:49 - 2010-11-20 04:19 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000320512 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000320512 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000312832 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000304640 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2017-11-06 09:49 - 2010-11-20 04:19 - 000216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2017-11-06 09:49 - 2010-11-20 04:19 - 000213504 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000209920 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000202752 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000196608 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000194560 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000118272 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2017-11-06 09:49 - 2010-11-20 04:19 - 000101888 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2017-11-06 09:49 - 2010-11-20 04:19 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000042496 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
 
- 000034304 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2017-11-06 09:49 - 2010-11-20 04:19 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 003727872 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 001400320 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 001188864 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 001040384 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 001003520 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000854016 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000762880 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000744448 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000743424 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000740864 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000685056 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000665600 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000630784 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000537600 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000508416 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000438272 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000418816 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000399872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000339968 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000333824 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000222208 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000220672 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000214016 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000202752 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000196608 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000145920 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000139264 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000133632 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000097280 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000080384 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2017-11-06 09:49 - 2010-11-20 04:18 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-11-06 09:49 - 2010-11-20 04:17 - 003179520 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 001131008 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000941568 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000802304 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000586752 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000523264 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000453632 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000334336 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000314880 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000254976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000233984 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000227328 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000209920 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000192000 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000173568 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000098816 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000066048 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000042496 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2017-11-06 09:49 - 2010-11-20 04:17 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 001466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000905216 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000692736 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000658944 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000649216 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000600576 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000478720 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000413696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2017-11-06 09:49 - 2010-11-20 04:16 - 000389632 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2017-11-06 09:49 - 2010-11-20 04:16 - 000345088 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000326656 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2017-11-06 09:49 - 2010-11-20 04:16 - 000320000 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2017-11-06 09:49 - 2010-11-20 04:16 - 000295424 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000293888 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2017-11-06 09:49 - 2010-11-20 04:16 - 000281088 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2017-11-06 09:49 - 2010-11-20 04:16 - 000204288 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2017-11-06 09:49 - 2010-11-20 04:16 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2017-11-06 09:49 - 2010-11-20 04:16 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2017-11-06 09:49 - 2010-11-20 04:16 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2017-11-06 09:49 - 2010-11-20 04:16 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2017-11-06 09:49 - 2010-11-20 04:16 - 000068608 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2017-11-06 09:49 - 2010-11-20 03:56 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2017-11-06 09:49 - 2010-11-20 03:54 - 000302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-11-06 09:49 - 2010-11-20 02:24 - 000133632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2017-11-06 09:49 - 2010-11-20 02:22 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2017-11-06 09:49 - 2010-11-20 02:22 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2017-11-06 09:49 - 2010-11-20 02:07 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2017-11-06 09:49 - 2010-11-20 02:01 - 000258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2017-11-06 09:49 - 2010-11-20 02:01 - 000164864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2017-11-06 09:49 - 2010-11-20 02:00 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2017-11-06 09:49 - 2010-11-20 02:00 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2017-11-06 09:49 - 2010-11-20 01:59 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2017-11-06 09:49 - 2010-11-20 01:59 - 000042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2017-11-06 09:49 - 2010-11-20 01:59 - 000035968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winusb.sys
2017-11-06 09:49 - 2010-11-20 01:50 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2017-11-06 09:49 - 2010-11-20 01:14 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2017-11-06 09:49 - 2010-11-20 01:06 - 000294400 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-11-06 09:49 - 2010-11-20 00:44 - 000242688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2017-11-06 09:49 - 2010-11-20 00:44 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-11-06 09:49 - 2010-11-20 00:44 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-11-06 09:49 - 2010-11-20 00:44 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-11-06 09:49 - 2010-11-20 00:42 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2017-11-06 09:49 - 2010-11-20 00:42 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-11-06 09:49 - 2010-11-20 00:42 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2017-11-06 09:49 - 2010-11-20 00:40 - 000513536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2017-11-06 09:49 - 2010-11-20 00:40 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2017-11-06 09:49 - 2010-11-20 00:39 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2017-11-06 09:49 - 2010-11-20 00:39 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-11-06 09:49 - 2010-11-04 18:11 - 000312168 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2017-11-06 09:49 - 2010-11-04 17:58 - 000155472 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2017-11-06 09:49 - 2010-11-04 17:58 - 000080720 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2017-11-06 09:48 - 2010-11-20 04:36 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2017-11-06 09:48 - 2010-11-20 04:21 - 000902656 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2017-11-06 09:48 - 2010-11-20 04:21 - 000739328 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2017-11-06 09:48 - 2010-11-20 04:21 - 000616960 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000567808 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000541184 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2017-11-06 09:48 - 2010-11-20 04:21 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000436736 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000350720 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000318976 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000318464 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000299520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000198144 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000189952 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000189952 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000186368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
 
- 000162304 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\sppinst.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000085504 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000085504 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2017-11-06 09:48 - 2010-11-20 04:21 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\sppuinotify.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000014848 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2017-11-06 09:48 - 2010-11-20 04:21 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2017-11-06 09:48 - 2010-11-20 04:21 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 001661440 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 001160192 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 001111552 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000283136 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000236544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000183296 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000121344 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2017-11-06 09:48 - 2010-11-20 04:20 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2017-11-06 09:48 - 2010-11-20 04:20 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000032768 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2017-11-06 09:48 - 2010-11-20 04:20 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000219648 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000082944 _____ (Radius Inc.) C:\Windows\system32\iccvid.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2017-11-06 09:48 - 2010-11-20 04:19 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000402944 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000242176 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000230912 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000211456 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2017-11-06 09:48 - 2010-11-20 04:18 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2017-11-06 09:48 - 2010-11-20 04:18 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2017-11-06 09:48 - 2010-11-20 04:17 - 000327680 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000292864 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000280064 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000278016 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000276480 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000257536 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000182784 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000144896 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000133632 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000074240 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000066048 _____ C:\Windows\system32\PrintBrmUi.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000062976 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000061440 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\qprocess.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\tskill.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\tsdiscon.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\tscon.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\qappsrv.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\logoff.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\shadow.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\rwinsta.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\reset.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000014848 _____ (Microsoft Corporation) C:\Windows\system32\query.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2017-11-06 09:48 - 2010-11-20 04:17 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2017-11-06 09:48 - 2010-11-20 04:16 - 000878592 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2017-11-06 09:48 - 2010-11-20 04:16 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2017-11-06 09:48 - 2010-11-20 04:16 - 000220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2017-11-06 09:48 - 2010-11-20 04:16 - 000186368 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2017-11-06 09:48 - 2010-11-20 04:16 - 000153600 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2017-11-06 09:48 - 2010-11-20 04:16 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2017-11-06 09:48 - 2010-11-20 04:16 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000072704 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000065024 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2017-11-06 09:48 - 2010-11-20 04:16 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
 
- 000045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2017-11-06 09:48 - 2010-11-20 04:16 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\chgport.exe
2017-11-06 09:48 - 2010-11-20 04:16 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\chglogon.exe
2017-11-06 09:48 - 2010-11-20 04:16 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\chgusr.exe
2017-11-06 09:48 - 2010-11-20 04:16 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\change.exe
2017-11-06 09:48 - 2010-11-20 04:08 - 012625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2017-11-06 09:48 - 2010-11-20 04:07 - 001164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2017-11-06 09:48 - 2010-11-20 04:07 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2017-11-06 09:48 - 2010-11-20 04:07 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-11-06 09:48 - 2010-11-20 04:06 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2017-11-06 09:48 - 2010-11-20 04:05 - 000121856 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2017-11-06 09:48 - 2010-11-20 04:05 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2017-11-06 09:48 - 2010-11-20 04:03 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2017-11-06 09:48 - 2010-11-20 04:03 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\vmbusres.dll
2017-11-06 09:48 - 2010-11-20 04:03 - 000038400 _____ (Microsoft Corporation) C:\Windows\system32\vmstorfltres.dll
2017-11-06 09:48 - 2010-11-20 04:00 - 001027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2017-11-06 09:48 - 2010-11-20 04:00 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2017-11-06 09:48 - 2010-11-20 04:00 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2017-11-06 09:48 - 2010-11-20 04:00 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2017-11-06 09:48 - 2010-11-20 04:00 - 000005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2017-11-06 09:48 - 2010-11-20 03:57 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2017-11-06 09:48 - 2010-11-20 03:56 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2017-11-06 09:48 - 2010-11-20 02:52 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2017-11-06 09:48 - 2010-11-20 02:49 - 000386048 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-11-06 09:48 - 2010-11-20 02:22 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys
2017-11-06 09:48 - 2010-11-20 02:21 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\RDPREFDD.dll
2017-11-06 09:48 - 2010-11-20 02:21 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2017-11-06 09:48 - 2010-11-20 02:21 - 000018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys
2017-11-06 09:48 - 2010-11-20 02:07 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2017-11-06 09:48 - 2010-11-20 02:07 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2017-11-06 09:48 - 2010-11-20 02:07 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2017-11-06 09:48 - 2010-11-20 02:06 - 000117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2017-11-06 09:48 - 2010-11-20 02:06 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2017-11-06 09:48 - 2010-11-20 02:06 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2017-11-06 09:48 - 2010-11-20 02:00 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2017-11-06 09:48 - 2010-11-20 02:00 - 000075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2017-11-06 09:48 - 2010-11-20 02:00 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2017-11-06 09:48 - 2010-11-20 02:00 - 000025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2017-11-06 09:48 - 2010-11-20 02:00 - 000025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD.sys
2017-11-06 09:48 - 2010-11-20 01:59 - 000132224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2017-11-06 09:48 - 2010-11-20 01:59 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2017-11-06 09:48 - 2010-11-20 01:59 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2017-11-06 09:48 - 2010-11-20 01:58 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2017-11-06 09:48 - 2010-11-20 01:50 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2017-11-06 09:48 - 2010-11-20 01:50 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2017-11-06 09:48 - 2010-11-20 01:50 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2017-11-06 09:48 - 2010-11-20 01:29 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-11-06 09:48 - 2010-11-20 01:24 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2017-11-06 09:48 - 2010-11-20 01:19 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2017-11-06 09:48 - 2010-11-20 01:14 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\VmbusCoinstaller.dll
2017-11-06 09:48 - 2010-11-20 01:14 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll
2017-11-06 09:48 - 2010-11-20 01:14 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2017-11-06 09:48 - 2010-11-20 01:14 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2017-11-06 09:48 - 2010-11-20 01:14 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys
2017-11-06 09:48 - 2010-11-20 01:14 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2017-11-06 09:48 - 2010-11-20 01:14 - 000005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys
2017-11-06 09:48 - 2010-11-20 01:07 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-11-06 09:48 - 2010-11-20 00:54 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2017-11-06 09:48 - 2010-11-20 00:47 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2017-11-06 09:48 - 2010-11-20 00:42 - 000078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2017-11-06 09:48 - 2010-11-20 00:39 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2017-11-06 09:48 - 2010-11-20 00:38 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2017-11-06 09:48 - 2010-11-19 21:23 - 000053600 _____ C:\Windows\system32\dosx.exe
2017-11-06 09:48 - 2010-11-09 17:45 - 000010429 _____ C:\Windows\system32\ScavengeSpace.xml
2017-11-06 09:48 - 2010-11-04 18:20 - 000105559 _____ C:\Windows\system32\RacRules.xml
2017-11-06 09:47 - 2010-11-20 04:21 - 000363008 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2017-11-06 09:24 - 2017-11-06 09:24 - 002082630 _____ (J.C. Kessels ) C:\Users\Dell Vostro 1000\Desktop\MyDefrag-v431.exe
2017-11-05 18:20 - 2017-11-05 18:20 - 000000969 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-11-05 18:20 - 2017-11-05 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-11-05 18:20 - 2017-11-05 18:20 - 000000000 ____D C:\Program Files\CCleaner
2017-11-05 18:17 - 2017-11-05 18:17 - 000040924 __RSH C:\ProgramData\ntuser.pol
2017-11-05 18:16 - 2017-11-05 18:18 - 000000000 ____D C:\Program Files\SpywareBlaster
2017-11-05 18:16 - 2017-11-05 18:16 - 000001041 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk
2017-11-05 18:16 - 2017-11-05 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
2017-11-05 18:16 - 2012-05-02 12:17 - 001070152 _____ (Microsoft Corporation) C:\Windows\system32\MSCOMCTL.OCX
2017-11-05 18:16 - 2009-03-24 13:52 - 000129872 _____ (Microsoft Corporation) C:\Windows\system32\MSSTDFMT.DLL
2017-11-05 18:11 - 2017-11-05 18:11 - 004291320 _____ (BrightFort LLC ) C:\Users\Dell Vostro 1000\Downloads\spywareblastersetup55.exe
2017-11-05 18:09 - 2017-11-05 18:10 - 010427120 _____ (Piriform Ltd) C:\Users\Dell Vostro 1000\Downloads\ccsetup536.exe
2017-11-05 15:19 - 2017-11-05 15:19 - 000001028 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-11-05 15:03 - 2017-11-05 15:03 - 000000000 ____D C:\Users\Dell Vostro 1000\AppData\Roaming\AVAST Software
2017-11-05 15:03 - 2017-11-05 15:03 - 000000000 ____D C:\Users\Dell Vostro 1000\AppData\Local\CEF
2017-11-05 15:02 - 2017-11-05 15:02 - 000783648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000499560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000297840 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000149824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000124952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000099560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000070864 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000042856 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-11-05 15:02 - 2017-11-05 15:02 - 000002079 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2017-11-05 15:02 - 2017-11-05 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2017-11-05 15:02 - 2017-11-05 15:01 - 000921280 _____ (Microsoft Corporation) C:\Windows\ucrtbase.dll
2017-11-05 15:02 - 2017-11-05 15:01 - 000304816 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-11-05 15:02 - 2017-11-05 15:01 - 000276736 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswblogx.sys
2017-11-05 15:02 - 2017-11-05 15:01 - 000255624 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdriverx.sys
2017-11-05 15:02 - 2017-11-05 15:01 - 000157416 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidshx.sys
2017-11-05 15:02 - 2017-11-05 15:01 - 000050384 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbunivx.sys
2017-11-05 15:00 - 2017-11-05 15:00 - 000000000 ____D C:\Program Files\AVAST Software
2017-11-05 14:58 - 2017-11-05 15:59 - 000000000 ____D C:\ProgramData\AVAST Software
2017-11-05 14:39 - 2017-11-05 14:39 - 000000000 _____ C:\Windows\ativpsrm.bin
2017-11-05 14:32 - 2017-11-05 14:36 - 000000000 ____D C:\Windows\system32\MRT
2017-11-05 14:32 - 2017-11-05 14:32 - 124059592 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-11-05 14:31 - 2017-11-05 14:32 - 124059592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-11-05 14:31 - 2016-06-25 07:43 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\EOSNotify.exe
2017-11-05 14:31 - 2011-04-08 22:02 - 003967872 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2017-11-05 14:31 - 2011-04-08 22:02 - 003912576 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-11-05 14:31 - 2011-04-08 21:56 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2017-11-05 14:31 - 2010-12-16 23:07 - 000542208 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-11-05 14:27 - 2012-06-02 15:19 - 000171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-11-05 14:27 - 2012-06-02 15:12 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2017-11-05 14:27 - 2012-06-02 14:19 - 001933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-11-05 14:27 - 2012-06-02 14:19 - 000577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-11-05 14:27 - 2012-06-02 14:19 - 000053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-11-05 14:27 - 2012-06-02 14:19 - 000045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-11-05 14:27 - 2012-06-02 14:19 - 000035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-11-05 14:27 - 2012-06-02 14:12 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-11-05 14:27 - 2012-06-02 14:12 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-11-05 14:22 - 2017-11-06 18:13 - 000024688 _____ C:\Windows\system32\Drivers\TrueSight.sys
2017-11-05 14:22 - 2017-11-05 16:53 - 000001005 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2017-11-05 14:22 - 2017-11-05 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2017-11-05 14:22 - 2017-11-05 16:53 - 000000000 ____D C:\Program Files\RogueKiller
2017-11-05 14:22 - 2017-11-05 14:37 - 000000000 ____D C:\ProgramData\RogueKiller
2017-11-05 14:20 - 2017-11-06 17:57 - 000221112 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-11-05 14:17 - 2017-11-06 18:48 - 000000000 ____D C:\AdwCleaner
2017-11-05 14:15 - 2017-11-05 14:15 - 000448512 _____ (OldTimer Tools) C:\Users\Dell Vostro 1000\Desktop\TFC.exe
2017-11-05 14:13 - 2017-11-05 14:13 - 008261584 _____ (Malwarebytes) C:\Users\Dell Vostro 1000\Desktop\AdwCleaner.exe
2017-11-05 13:52 - 2017-11-05 13:52 - 000166848 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-11-05 13:52 - 2017-11-05 13:52 - 000065824 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-11-05 13:52 - 2017-11-05 13:52 - 000040352 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-11-05 13:51 - 2017-11-05 14:19 - 000059904 _____ C:\Windows\system32\Drivers\mbae.sys
2017-11-05 13:51 - 2017-11-05 13:51 - 000002024 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-11-05 13:51 - 2017-11-05 13:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-11-05 13:51 - 2017-11-05 13:51 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-11-05 13:51 - 2017-11-05 13:51 - 000000000 ____D C:\Program Files\Malwarebytes
2017-11-05 13:21 - 2017-11-05 13:21 - 000000000 ____D C:\Users\Dell Vostro 1000\AppData\Roaming\SUPERAntiSpyware.com
2017-11-05 13:20 - 2017-11-05 13:21 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
2017-11-05 13:20 - 2017-11-05 13:20 - 000001965 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2017-11-05 13:20 - 2017-11-05 13:20 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2017-11-05 13:20 - 2017-11-05 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-06 19:29 - 2009-07-13 18:04 - 000000215 _____ C:\Windows\system.ini
2017-11-06 19:24 - 2015-12-18 05:27 - 000000000 ____D C:\ProgramData\TEMP
2017-11-06 18:03 - 2009-07-13 20:34 - 000020512 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-11-06 18:03 - 2009-07-13 20:34 - 000020512 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-11-06 18:01 - 2013-01-16 06:16 - 000713888 _____ C:\Windows\system32\PerfStringBackup.INI
2017-11-06 18:01 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\inf
2017-11-06 17:56 - 2009-07-13 20:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-11-06 16:49 - 2013-01-16 06:01 - 000000000 ____D C:\Windows\Panther
2017-11-06 16:48 - 2009-07-13 20:33 - 000293000 _____ C:\Windows\system32\FNTCACHE.DAT
2017-11-06 16:45 - 2009-07-13 23:50 - 000000000 ____D C:\Program Files\Windows Journal
2017-11-06 16:45 - 2009-07-13 20:52 - 000000000 ____D C:\Program Files\Windows Sidebar
2017-11-06 16:45 - 2009-07-13 20:52 - 000000000 ____D C:\Program Files\Windows Portable Devices
2017-11-06 16:45 - 2009-07-13 20:52 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2017-11-06 16:45 - 2009-07-13 20:52 - 000000000 ____D C:\Program Files\Windows Defender
2017-11-06 16:45 - 2009-07-13 20:52 - 000000000 ____D C:\Program Files\DVD Maker
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\sysprep
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\Setup
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\oobe
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\migwiz
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\manifeststore
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\Dism
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\servicing
2017-11-06 16:45 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\PolicyDefinitions
2017-11-06 16:40 - 2009-07-13 18:05 - 000152576 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2017-11-05 18:16 - 2009-07-13 18:37 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2017-11-05 16:43 - 2015-01-18 21:03 - 000000000 ____D C:\ProgramData\Yahoo!
2017-11-05 16:43 - 2015-01-18 21:00 - 000000000 ____D C:\Program Files\Yahoo!
2017-11-05 15:19 - 2014-08-21 07:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-11-05 15:18 - 2015-01-18 21:04 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-11-05 15:18 - 2013-01-16 18:24 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-11-05 15:18 - 2013-01-16 18:24 - 000000000 ____D C:\Windows\system32\Macromed
2017-11-05 15:18 - 2013-01-16 18:24 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-11-05 15:11 - 2013-01-16 18:25 - 000000000 ____D C:\Program Files\Common Files\Adobe AIR
2017-11-05 15:10 - 2013-01-16 18:24 - 000000000 ____D C:\Windows\system32\Adobe
2017-11-05 14:50 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\system32\NDF
2017-11-05 14:19 - 2015-01-18 21:04 - 000000000 ____D C:\Users\Dell Vostro 1000\AppData\Roaming\Yahoo!
2017-11-05 14:19 - 2015-01-18 21:04 - 000000000 ____D C:\Users\Dell Vostro 1000\AppData\LocalLow\Yahoo!
2017-11-05 13:15 - 2015-01-03 17:54 - 000002393 _____ C:\Users\Dell Vostro 1000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-11-06 19:08

==================== End of FRST.txt ============================
 
ComboFix 17-10-17.01 - Dell Vostro 1000 11/06/2017 19:19:25.1.2 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.1918.654 [GMT -8:00]
Running from: c:\users\Dell Vostro 1000\Desktop\ComboFix.exe
AV: Avast Antivirus *Disabled/Updated* {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
SP: Avast Antivirus *Disabled/Updated* {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2017-10-07 to 2017-11-07 )))))))))))))))))))))))))))))))
.
.
2017-11-07 03:29 . 2017-11-07 03:29 -------- d-----w- c:\users\Default\AppData\Local\temp
2017-11-07 01:24 . 2017-11-07 01:24 -------- d-sh--w- c:\windows\system32\%APPDATA%
2017-11-07 00:36 . 2017-11-07 00:36 -------- d-----w- c:\windows\system32\SPReview
2017-11-06 18:37 . 2017-11-06 18:37 -------- d-----w- c:\windows\system32\EventProviders
2017-11-06 18:32 . 2017-11-06 22:05 -------- d-----w- C:\FRST
2017-11-06 17:49 . 2010-11-20 12:30 240000 ----a-w- c:\windows\system32\drivers\netio.sys
2017-11-06 17:48 . 2010-11-20 12:21 105984 ----a-w- c:\windows\system32\WPDShServiceObj.dll
2017-11-06 17:47 . 2010-11-20 12:21 363008 ----a-w- c:\windows\system32\wbemcomn.dll
2017-11-06 17:47 . 2010-11-20 12:19 606208 ----a-w- c:\windows\system32\wbem\fastprox.dll
2017-11-06 02:20 . 2017-11-06 02:20 -------- d-----w- c:\program files\CCleaner
2017-11-06 02:16 . 2017-11-06 02:16 -------- d-----w- c:\programdata\Licenses
2017-11-06 02:16 . 2017-11-06 02:18 -------- d-----w- c:\program files\SpywareBlaster
2017-11-06 02:16 . 2012-05-02 20:17 1070152 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2017-11-06 02:16 . 2009-03-24 21:52 129872 ----a-w- c:\windows\system32\MSSTDFMT.DLL
2017-11-05 23:18 . 2017-11-05 23:18 58024 ----a-w- c:\program files\Mozilla Firefox\browser\components\browsercomps.dll
2017-11-05 23:18 . 2017-11-05 23:18 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll
2017-11-05 23:18 . 2017-11-05 23:18 20648 ----a-w- c:\program files\Mozilla Firefox\AccessibleMarshal.dll
2017-11-05 23:18 . 2017-11-05 23:18 109736 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
2017-11-05 23:18 . 2017-11-05 23:18 10592424 ----a-w- c:\program files\Mozilla Firefox\icudt55.dll
2017-11-05 23:18 . 2017-11-05 23:18 901288 ----a-w- c:\program files\Mozilla Firefox\icuuc55.dll
2017-11-05 23:18 . 2017-11-05 23:18 59560 ----a-w- c:\program files\Mozilla Firefox\lgpllibs.dll
2017-11-05 23:18 . 2017-11-05 23:18 1287848 ----a-w- c:\program files\Mozilla Firefox\icuin55.dll
2017-11-05 23:03 . 2017-11-05 23:03 -------- d-----w- c:\users\Dell Vostro 1000\AppData\Roaming\AVAST Software
2017-11-05 23:03 . 2017-11-05 23:03 -------- d-----w- c:\users\Dell Vostro 1000\AppData\Local\CEF
2017-11-05 23:00 . 2017-11-05 23:00 -------- d-----w- c:\program files\AVAST Software
2017-11-05 22:58 . 2017-11-05 23:59 -------- d-----w- c:\programdata\AVAST Software
2017-11-05 22:39 . 2017-11-05 22:39 0 ----a-w- c:\windows\ativpsrm.bin
2017-11-05 22:38 . 2017-11-05 22:38 -------- d-----w- c:\windows\Migration
2017-11-05 22:32 . 2017-11-05 22:36 -------- d-----w- c:\windows\system32\MRT
2017-11-05 22:32 . 2017-11-05 22:32 124059592 -c--a-w- c:\windows\system32\MRT-KB890830.exe
2017-11-05 22:31 . 2011-04-09 06:02 3967872 ----a-w- c:\windows\system32\ntkrnlpa.exe
2017-11-05 22:31 . 2011-04-09 06:02 3912576 ----a-w- c:\windows\system32\ntoskrnl.exe
2017-11-05 22:31 . 2011-04-09 05:56 123904 ----a-w- c:\windows\system32\poqexec.exe
2017-11-05 22:31 . 2010-12-17 07:07 542208 ----a-w- c:\windows\system32\kerberos.dll
2017-11-05 22:31 . 2016-06-25 15:43 301056 ----a-w- c:\windows\system32\EOSNotify.exe
2017-11-05 22:27 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe
2017-11-05 22:27 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll
2017-11-05 22:27 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll
2017-11-05 22:27 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll
2017-11-05 22:27 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll
2017-11-05 22:27 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll
2017-11-05 22:27 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll
2017-11-05 22:27 . 2012-06-02 23:19 171904 ----a-w- c:\windows\system32\wuwebv.dll
2017-11-05 22:27 . 2012-06-02 23:12 33792 ----a-w- c:\windows\system32\wuapp.exe
2017-11-05 22:22 . 2017-11-07 02:13 24688 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2017-11-05 22:22 . 2017-11-05 22:37 -------- d-----w- c:\programdata\RogueKiller
2017-11-05 22:22 . 2017-11-06 00:53 -------- d-----w- c:\program files\RogueKiller
2017-11-05 22:20 . 2017-11-07 01:57 221112 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2017-11-05 22:17 . 2017-11-07 02:48 -------- d-----w- C:\AdwCleaner
2017-11-05 21:52 . 2017-11-05 21:52 166848 ----a-w- c:\windows\system32\drivers\MBAMChameleon.sys
2017-11-05 21:52 . 2017-11-05 21:52 65824 ----a-w- c:\windows\system32\drivers\mwac.sys
2017-11-05 21:52 . 2017-11-05 21:52 40352 ----a-w- c:\windows\system32\drivers\mbam.sys
2017-11-05 21:51 . 2017-11-05 22:19 59904 ----a-w- c:\windows\system32\drivers\mbae.sys
2017-11-05 21:51 . 2017-11-05 21:51 -------- d-----w- c:\programdata\Malwarebytes
2017-11-05 21:51 . 2017-11-05 21:51 -------- d-----w- c:\program files\Malwarebytes
2017-11-05 21:51 . 2017-11-05 21:51 -------- d-----w- c:\users\Dell Vostro 1000\AppData\Local\Programs
2017-11-05 21:21 . 2017-11-05 21:21 -------- d-----w- c:\users\Dell Vostro 1000\AppData\Roaming\SUPERAntiSpyware.com
2017-11-05 21:20 . 2017-11-05 21:21 -------- d-----w- c:\program files\SUPERAntiSpyware
2017-11-05 21:20 . 2017-11-05 21:20 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2017-11-05 21:19 . 2017-11-05 21:19 11282328 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7BFD8D9B-77E3-432E-A97F-B210B81F456F}\mpengine.dll
 
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2017-11-07 00:40 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2017-11-05 23:18 . 2015-01-19 05:04 803328 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2017-11-05 23:18 . 2013-01-17 02:24 144896 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00asw]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2017-11-05 23:01 1395224 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2017-10-18 7814656]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvLaunch.exe" [2017-11-05 253344]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="c:\windows\System32\SPReview\SPReview.exe" [2017-11-07 280576]
.
c:\users\Dell Vostro 1000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.4.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2012-8-13 1199104]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
@="Service"
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2017-11-05 149824]
R3 aswbIDSAgent;aswbIDSAgent;c:\program files\AVAST Software\Avast\aswidsagent.exe [2017-11-05 5828816]
R3 aswHwid;aswHwid;c:\windows\system32\drivers\aswHwid.sys [2017-11-05 42856]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
S0 aswbidsh;aswbidsh;c:\windows\\SystemRoot\system32\drivers\aswbidshx.sys [x]
S0 aswblog;aswblog;c:\windows\\SystemRoot\system32\drivers\aswblogx.sys [x]
S0 aswbuniv;aswbuniv;c:\windows\\SystemRoot\system32\drivers\aswbunivx.sys [x]
S0 aswRvrt;aswRvrt;c:\windows\\SystemRoot\system32\drivers\aswRvrt.sys [x]
S0 aswVmm;aswVmm;c:\windows\\SystemRoot\system32\drivers\aswVmm.sys [x]
S1 aswbidsdriver;aswbidsdriver;c:\windows\system32\drivers\aswbidsdriverx.sys [2017-11-05 255624]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2017-11-05 783648]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2017-11-05 499560]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2017-01-30 143776]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2017-11-05 124952]
S2 MBAMService;Malwarebytes Service;c:\program files\Malwarebytes\Anti-Malware\mbamservice.exe [2017-08-07 4430792]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\System32\Drivers\mbamswissarmy.sys [2017-11-07 221112]
S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360]
S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992]
S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504]
.
.
 
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - MBAMSWISSARMY
*Deregistered* - TrueSight
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://start.iplay.com/?o=shp
mStart Page = hxxp://www.yahoo.com/?fr=fp-msgr
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Dell Vostro 1000\AppData\Roaming\Mozilla\Firefox\Profiles\ew85w4lr.default-1443471164890\
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
BHO-{7ffa5f54-1c4f-46de-8576-c271a0dd482f} - c:\program files\iplay_en\encyclopediabritannicagamesbarX.dll
BHO-{95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
Toolbar-{7ffa5f54-1c4f-46de-8576-c271a0dd482f} - c:\program files\iplay_en\encyclopediabritannicagamesbarX.dll
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_27_0_0_183_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_27_0_0_183_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2017-11-06 19:31:48
ComboFix-quarantined-files.txt 2017-11-07 03:31
.
Pre-Run: 39,707,619,328 bytes free
Post-Run: 39,643,930,624 bytes free
.
- - End Of File - - 27A94BDFE06B7FF0D055B1C0279FFC4C
A36C5E4F47E84449FF07ED3517B43A31
 
Since last post, I was trying to remove an uninstallable MS update when it showed 201 updates which are preparing to be installed as I type.
 
15FD176B-0DB6-4B32-A99D-A189E85E3CDA.jpeg
These are being installed because I’m Not used to a laptop. Your instructions say not to do anything other than what you direct. Sorry
 
It'd be safe now to let those updates install.

Then...

Download attached fixlist.txt file and save it to the Desktop.
NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Run FRST(FRST64) and press the Fix button just once and wait.
The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.
 

Attachments

  • fixlist.txt
    3 KB · Views: 1
775AAA6B-D085-40EC-B17C-0959701B911E.jpeg Woke up, laptop was off so I powered it up & a few moments later I see this, will continue when it’s done
 
Fix result of Farbar Recovery Scan Tool (x86) Version: 02-11-2017 02
Ran by Dell Vostro 1000 (08-11-2017 05:12:37) Run:1
Running from C:\Users\Dell Vostro 1000\Desktop
Loaded Profiles: Dell Vostro 1000 (Available Profiles: Dell Vostro 1000)
Boot Mode: Normal

==============================================

fixlist content:
*****************
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.27.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.30.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.31.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.28.1\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.28.13\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.29.5\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.33.3\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.26.9\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.32.7\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.29.1\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.25.11\psuser.dll => No File
CustomCLSID: HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Dell Vostro 1000\AppData\Local\Google\Update\1.3.28.15\psuser.dll => No File
AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F [134]
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [135]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
U3 catchme; \??\C:\Users\DELLVO~1\AppData\Local\Temp\catchme.sys [X]
U3 mbr; \??\C:\ComboFix\mbr.sys [X]

*****************

HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9} => key removed successfully.
HKU\S-1-5-21-2096075369-1562336306-3977701488-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF} => key removed successfully.
C:\ProgramData\TEMP => ":2CB9631F" ADS removed successfully..
C:\ProgramData\TEMP => ":5C321E34" ADS removed successfully..
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => key removed successfully.
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Policies\Google => key removed successfully.
HKLM\System\CurrentControlSet\Services\catchme => key removed successfully.
catchme => service removed successfully.
mbr => service not found.


The system needed a reboot.

==== End of Fixlog 05:12:38 ====
 
Cool :)

Last scans...

redtarget.gif
Download Security Check from here or here and save it to your Desktop.
  • Double-click SecurityCheck.exe
  • Follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

NOTE 1. If one of your security applications (e.g., third-party firewall) requests permission to allow DIG.EXE access the Internet, allow it to do so.
NOTE 2. SecurityCheck may produce some false warning(s), so leave the results reading to me.
NOTE 3. If you receive UNSUPPORTED OPERATING SYSTEM! ABORTED! message restart computer and Security Check should run


redtarget.gif
Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
Make sure the following options are checked:
  • Internet Services
  • Windows Firewall
  • System Restore
  • Security Center
  • Windows Update
  • Windows Defender
  • Other Services

Press "Scan".
It will create a log (FSS.txt) in the same directory the tool is run.
Please copy and paste the log to your reply.


redtarget.gif
Download Temp File Cleaner (TFC)
Alternate download: http://www.itxassociates.com/OT-Tools/TFC.exe
  • Double click on TFC.exe to run the program.
  • Click on Start button to begin cleaning process.
  • TFC will close all running programs, and it may ask you to restart computer.


redtarget.gif
Download Sophos Free Virus Removal Tool and save it to your desktop.
  • Double click the icon and select Run
  • Click Next
  • Select I accept the terms in this license agreement, then click Next twice
  • Click Install
  • Click Finish to launch the program
  • Once the virus database has been updated click Start Scanning
  • If any threats are found click Details, then View log file... (bottom left hand corner)
  • Copy and paste the results in your reply
  • Close the Notepad document, close the Threat Details screen, then click Start cleanup
  • Click Exit to close the program
 
Results of screen317's Security Check version 1.014 --- 12/23/15
Windows 7 Service Pack 1 x86 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
Avast Antivirus
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
SpywareBlaster 5.5
SUPERAntiSpyware
CCleaner
Adobe Flash Player 27.0.0.183
Adobe Reader 9 Adobe Reader out of Date!
Mozilla Firefox (43.0.1)
Google Chrome (62.0.3202.89)
Google Chrome (SetupMetrics...)
````````Process Check: objlist.exe by Laurent````````
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbamtray.exe
AVAST Software Avast AvastSvc.exe
AVAST Software Avast AvastUI.exe
AVAST Software Avast aswidsagent.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 11% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````
 
Farbar Service Scanner Version: 27-01-2016
Ran by Dell Vostro 1000 (administrator) on 08-11-2017 at 18:16:13
Running from "C:\Users\Dell Vostro 1000\Desktop"
Microsoft Windows 7 Professional Service Pack 1 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Policy:
========================


Action Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\system32\nsisvc.dll => File is digitally signed
C:\Windows\system32\Drivers\nsiproxy.sys => File is digitally signed
C:\Windows\system32\dhcpcore.dll => File is digitally signed
C:\Windows\system32\Drivers\afd.sys => File is digitally signed
C:\Windows\system32\Drivers\tdx.sys => File is digitally signed
C:\Windows\system32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\system32\dnsrslvr.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\mpssvc.dll => File is digitally signed
C:\Windows\system32\bfe.dll => File is digitally signed
C:\Windows\system32\Drivers\mpsdrv.sys => File is digitally signed
C:\Windows\system32\SDRSVC.dll => File is digitally signed
C:\Windows\system32\vssvc.exe => File is digitally signed
C:\Windows\system32\wscsvc.dll => File is digitally signed
C:\Windows\system32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\system32\wuaueng.dll => File is digitally signed
C:\Windows\system32\qmgr.dll => File is digitally signed
C:\Windows\system32\es.dll => File is digitally signed
C:\Windows\system32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\system32\ipnathlp.dll => File is digitally signed
C:\Windows\system32\iphlpsvc.dll => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed


**** End of log ****
 
Update Adobe Reader

You can download it from https://www.techspot.com/downloads/2083-adobe-reader-dc.html
After installing the latest Adobe Reader, uninstall all previous versions (if present).
Note. If you already have Adobe Photoshop Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop Album Starter Edition.

======================================

Your computer is clean

1. This step will remove all cleaning tools we used, it'll reset restore points (so you won't get reinfected by accidentally using some older restore point) and it'll make some other minor adjustments...
This is a very crucial step so make sure you don't skip it.
Download
51a5ce45263de-delfix.png
DelFix by Xplode to your desktop. Delfix will delete all the used tools and logfiles.

Double-click Delfix.exe to start the tool.
Make sure the following items are checked:
  • Activate UAC (optional; some users prefer to keep it off)
  • Remove disinfection tools
  • Create registry backup
  • Purge System Restore
  • Reset system settings
Now click "Run" and wait patiently.
Once finished a logfile will be created. You don't have to attach it to your next reply.

2. Make sure Windows Updates are current.

3. If any trojans, rootkits or bootkits were listed among your infection(s), make sure, you change all of your on-line important passwords (bank account(s), secured web sites, etc.) immediately!

4. Check if your browser plugins are up to date.
Firefox - https://www.mozilla.org/en-US/plugincheck/
other browsers: https://browsercheck.qualys.com/ (click on "Scan without installing plugin" and then on "Scan now")

5. Run Malwarebytes "Quick scan" once in a while to assure safety of your computer.

6. Run Temporary File Cleaner (TFC), AdwCleaner and Junkware Removal Tool (JRT) weekly (you need to redownload these tools since they were removed by DelFix).

7. Download and install Secunia Personal Software Inspector (PSI): https://www.techspot.com/downloads/4898-secunia-personal-software-inspector-psi.html. The Secunia PSI is a FREE security tool designed to detect vulnerable and out-dated programs and plug-ins which expose your PC to attacks. Run it weekly.

8. (optional) If you want to keep all your programs up to date, download and install FileHippo Update Checker.
The Update Checker will scan your computer for installed software, check the versions and then send this information to FileHippo.com to see if there are any newer releases.

9. When installing\updating ANY program, make sure you always select "Custom " installation, so you can UN-check any possible "drive-by-install" (foistware), like toolbars etc., which may try to install along with the legitimate program. Do NOT click "Next" button without looking at any given page.

10. Read:
How did I get infected?, With steps so it does not happen again!: http://www.bleepingcomputer.com/forums/topic2520.html
Simple and easy ways to keep your computer safe and secure on the Internet: http://www.bleepingcomputer.com/tutorials/keep-your-computer-safe-online/
About those Toolbars and Add-ons - Potentially Unwanted Programs (PUPs) which change your browser settings: http://www.bleepingcomputer.com/for...curity-questions-best-practices/#entry3187642

11. Please, let me know, how your computer is doing.
 
Back