Solved User Account Control (UAC) was turned off, am I clean?

2016-07-16 04:42 - 2016-07-16 04:42 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IndirectKmd.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filetrace.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpol.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00035696 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm
2016-07-16 04:42 - 2016-07-16 04:42 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpata.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\traffic.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Netplwiz.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cnvfat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\witnesswmiv2provider.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32topl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pots.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsium.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\FDResPub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Apphlpdm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esevss.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasphone.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwlauncher.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipconfig.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hid.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\findstr.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\FdDevQuery.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\extrac32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadauthhelper.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034640 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\where.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olesvr32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mimefilt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vidcap.ax
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\proquota.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpui.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RNDISMP.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDisplayStatusManager.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nci.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\linkinfo.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ThumbnailExtractionHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppinst.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfg.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\choice.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033616 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaExt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NETSTAT.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvidc32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gmsaclient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddodiag.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\userinit.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapilua.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofiredm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthMtpContextHandler.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00033064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdmo.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\waitfor.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vidcap.ax
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcnsh.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndproxystub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutilext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscacheugc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmNotificationBroker.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cacls.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00032592 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pots.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hidserv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveTask.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimgvw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwsso.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifmon.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhf.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthTelemetry.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthpanapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft) C:\WINDOWS\system32\usk.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Portable.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrnr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\syskey.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsparse.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmprocessxmlfiltered.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzSqlExt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WppRecorder.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00031584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00031584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fs_rec.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00031528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptbase.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ C:\WINDOWS\SysWOW64\efsext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\proquota.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfvfw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Apphlpdm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDOIProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdlg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031080 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00031072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdcom.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030749 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbajet32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxlegih.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\timeout.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxdm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tape.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\cliconfg.exe
 
2016-07-16 04:42 - 2016-07-16 04:42 - 00030504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imaadp32.acm
2016-07-16 04:42 - 2016-07-16 04:42 - 00030504 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030504 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackagedCWALauncher.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icacls.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findstr.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\extrac32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceDisplayStatusManager.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credwiz.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ureg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMC.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\clip.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeevts.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msadp32.acm
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpol.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiprop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxsstore.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWNet.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dot3Conn.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\at.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029536 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_19a2.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029536 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_10df.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00029448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\avrt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32topl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vss_ps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsium.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipconfig.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cliconfg.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\choice.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\shgina.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\setspn.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provmigrate.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dispex.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdmo.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppinst.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FdDevQuery.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrshost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\prevhost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAMRNBSink.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MemoryDiagnostic.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.proxystub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmpbk32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDACLSys.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syskey.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcnsh.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcsubs.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysntfy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\secur32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\asyncmac.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallButtons.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.WorkplaceSettings.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userinit.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cacls.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BthTelemetry.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wephostsvc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msyuv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\more.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dswave.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmutil.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00027400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcPing.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifmon.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fsutilext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ctl3d32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaUacHelper.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmhsvc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEject.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00026968 _____ (Microsoft Corporation) C:\WINDOWS\system32\streamci.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026920 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwum.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timeout.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzSqlExt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winusb.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\VaultCmd.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncuprov.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifibus.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmoleaututils.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdlg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaProxy.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\osbaseln.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksthunk.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultPrinterProvider.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ARP.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00025952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BOOTVID.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00025864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcwum.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\snmpapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shutdownext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxdm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hid.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpupdate.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\WINSRPC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\stordiag.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiagnhost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gptext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\drprov.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcfgutils.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkwudrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkdsk.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFrameworkPS.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DDACLSys.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025440 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_1137.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg711.acm
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ C:\WINDOWS\system32\GamePanelExternalHook.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmiprop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ureg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWNet.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcdProp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\midimap.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Direct2DDesktop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comp.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsperf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd1394.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsrole.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxsstore.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAMRNBSink.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciseq.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltMC.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmintf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clip.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\serwvdrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedcli.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Register-CimProvider.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AJRouter.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024114 _____ C:\WINDOWS\system32\lcptr.tbl
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrshost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrnr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msyuv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\more.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciwave.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsparse.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sort.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdown.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmw32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BOOTVID.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00023816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaProxy.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comp.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshcon.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ROUTE.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\regsvr32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileAppxStreamingDataSource.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnmpntw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofire.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\capisp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msg711.acm
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaUacHelper.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lsmproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fc.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chkdsk.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ARP.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.RemoteDesktop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltLib.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\easconsent.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\acu.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdiagnhost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcVSp1res.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DefaultPrinterProvider.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davhlpr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshelper.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsDeviceAccessRevocation.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\shunimpl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcVSp1res.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\IpNatHlpClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mcd.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdstub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022232 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumbase.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft) C:\WINDOWS\system32\grb.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shutdown.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ndproxystub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\encapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmlprovi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\uniplat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\smclib.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00021856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00021656 _____ C:\WINDOWS\system32\NetTrace.PLA.Diagnostics.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblGameSaveProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winusb.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sort.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osbaseln.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NcdProp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gptext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmutil.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bitsperf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\replace.exe
 
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasctrs.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogHost3D.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\PING.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\nbtstat.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\convert.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeunattend.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00021344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlS0WndH.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00021344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft) C:\WINDOWS\system32\pegi-pt.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft) C:\WINDOWS\system32\pegi.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Register-CimProvider.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drprov.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Direct2DDesktop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.ps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shpafact.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiltcfg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCCSPal.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdPHost.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgwdi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMmRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksuser.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi_passthru.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdial.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanui2.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\netevent.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisVirtualBus.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmstplua.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkntfs.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\attrib.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhv1394.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wmilib.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00020160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SlideToShutDown.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00020152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnlsres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnlsres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\userinitext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\umdmxfrm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\runas.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\EsdSip.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdkey.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\backgroundTaskHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ROUTE.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\replace.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PING.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbnmpntw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\convert.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capisp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshqos.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Startupscan.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\PATHPING.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\nrpsrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontgroupsoverride.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseetw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irenum.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\doskey.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmOmaCpMo.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00019296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlS0WndH.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.RemoteDesktop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\midimap.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\attrib.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\TieringEngineProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\serialui.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbios.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHostProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018784 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupetw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018656 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schedcli.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiltcfg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltLib.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsock32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syssetup.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\muifontsetup.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernelceip.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\clb.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\hh.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00018144 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrss.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017935 _____ C:\WINDOWS\SysWOW64\EventViewer_EventDetails.xsl
2016-07-16 04:42 - 2016-07-16 04:42 - 00017935 _____ C:\WINDOWS\system32\EventViewer_EventDetails.xsl
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncInfrastructureps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\runas.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallButtons.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\TRACERT.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\RmClient.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrle32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmpushproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlwid.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\backgroundTaskHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_07_1415.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stdole2.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wowreg32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mountvol.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmutil.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCHERP.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\find.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00017048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshqos.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userinitext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCHERP.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fixmapi.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EsdSip.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\doskey.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsbyuv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\secinit.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\print.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\label.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsavailux.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhuxapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\CortanaMapiHelper.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016736 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016736 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet_uart16550.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PATHPING.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hh.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\whhelper.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\subst.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommonPal.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRINFO.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetmon.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft) C:\WINDOWS\system32\djctq.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmsgapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RmClient.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ktmutil.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcmsetup.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\pstorec.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwrun.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcico.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKOR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutilx.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft) C:\WINDOWS\system32\pcbp.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wowreg32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TRACERT.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syssetup.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscpxl32.dLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mountvol.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\label.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\find.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clb.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshirda.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\workerdd.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudDomainJoinAUG.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsddd.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwinsat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\regidle.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pstask.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpts.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidcrl40.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00015064 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumdll.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\subst.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secinit.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\print.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrle32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensApi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sas.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaPs.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\panmap.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcommandlineutils.dll
 
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcmonitor.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfmifsproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Background.ps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\whhelper.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pstorec.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommonPal.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MRINFO.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpPortingLibrary.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrssrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbperf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeSyncTask.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiUnattend.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncHostps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoveDeviceElevated.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\prflbmsg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HOSTNAME.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsui.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\EasPoliciesBrokerPS.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dmpusbstor.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DockInterface.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmiso8601utils.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\coreaudiopolicymanagerext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_ISCII.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\browseui.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsbyuv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\finger.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DDOIProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmcodecdspps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\svsvc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentTask.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityRtapiPal.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameBarPresenceWriter.proxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBthProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FamilySafetyExt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dabapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msidcrl40.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutilx.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringIeProvider.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiSysprep.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCShellCommonProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonUI.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\InfDefaultInstall.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Eap3Host.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUxRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwinsat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcico.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsui.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSHTCPIP.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wship6.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletBackgroundServiceProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\txfw32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\netwphelper.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\EasPoliciesBrokerHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mstee.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CHxReadingStringIME.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxStreamingDataSourcePS.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\acproxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpPortingLibrary.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundPlayback.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usbperf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HOSTNAME.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_ISCII.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\TCPSVCS.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapiperf.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemotePosWorker.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdiagnostics.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiwer.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MinstoreEvents.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-battery-events.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsied.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dvdplay.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhst3g.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultDeviceManager.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensApi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaPs.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityRtapiPal.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscat32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InfDefaultInstall.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CortanaMapiHelper.ProxyStub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeDateMUICallback.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\spnet.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\regedt32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidle.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscat32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mshidumdf.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomcnfg.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxlibres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\write.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wship6.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WalletBackgroundServiceProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncHostps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FamilySafetyExt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdext.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_8.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapihost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\write.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcfgex.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\nddeapi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Locator.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\help.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_8.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSHTCPIP.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmcodecdspps.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrssrv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TCPSVCS.EXE
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\softpub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regedt32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBthProxy.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dvdplay.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput9_1_0.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WppRecorderUM.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systray.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spmpm.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\softpub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shfolder.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetHost.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdnecat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mspqm.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mspclock.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ctfmon.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\acledit.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010540 _____ C:\WINDOWS\system32\TransformPPSToWlan.xslt
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\winhlp32.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sas.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcji32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiwer.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\help.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DefaultDeviceManager.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomcnfg.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\OskSupport.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Nlsdl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssip32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfime.ime
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHEPT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\idndl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\comcat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009926 _____ C:\WINDOWS\SysWOW64\l_intl.nls
2016-07-16 04:42 - 2016-07-16 04:42 - 00009926 _____ C:\WINDOWS\system32\l_intl.nls
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ C:\WINDOWS\system32\VpnSohDesktop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeDateMUICallback.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHEPT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsied.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshhyperv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcNs4.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\osuninst.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxex.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\beep.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spnet.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssip32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acledit.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYCL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUS.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSMSNO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSMSFI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRUM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDROST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDROPR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdnecnt.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLVST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINEN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCAN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00009129 _____ C:\WINDOWS\system32\ResPriHMImageList
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OskSupport.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odtext32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odpdx32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odfox32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odexl32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oddbse32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Nlsdl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYCL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSMSNO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSMSFI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDROST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDROPR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLVST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCAN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\f3ahvoas.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comcat.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUKX.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTUF.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTIPRD.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSORST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSOREX.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSL1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSG.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDPL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDNSO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDNO1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdnec95.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdnec.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdlk41a.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINUK2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDIBO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGRLND.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFI1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCZ2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCZ1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCZ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\f3ahvoas.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mshidkmdf.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00008598 _____ C:\WINDOWS\system32\ResPriImageList
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ C:\WINDOWS\system32\settings.dat
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccessRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\simpdata.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osuninst.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxex.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUS.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSL1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRUM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDPL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDNO1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdnecnt.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdnec.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINUK2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINEN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGRLND.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFI1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCZ2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCZ1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCZ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\idndl.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\simpdata.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYBA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDWOL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUSX.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTZM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTUQ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTIPRC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSW09.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSW.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSP.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSORS1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSORA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSF.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDPO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDNO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDNEPR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLV1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDIULAT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINORI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINMAL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINBEN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdibm02.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHELA3.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHELA2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHE220.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGKL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDEST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDES.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDDA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBENE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdax2.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gpuenergydrv.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshhyperv.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYBA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDWOL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUSX.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTZM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTUQ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTUF.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTIPRD.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSW09.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSW.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSP.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSORST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSORS1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSOREX.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSG.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSF.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDPO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDNSO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLV1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDIULAT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHELA3.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGKL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDEST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDES.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBENE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdax2.dll
 
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYCC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYAK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDVNTC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUZB.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUSR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUSL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUSA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDURDU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUGHR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUGHR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTURME.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTT102.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTIFI2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTIFI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTH3.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTH2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTH1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTH0.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAJIK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAILE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSYR2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSYR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDSN1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDPL1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdphags.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDPASH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDOSM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDOLDIT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDOLCH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDOGHAM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDNTL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdnko.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDNE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMYAN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMONST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMONMO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMON.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMLT48.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMLT47.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMAORI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMACST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDMAC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLT2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLT1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdlisus.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdlisub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDLAO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKYR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKURD.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKNI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKHMR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKAZ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJAV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDIT142.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDIT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINTEL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINTAM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINPUN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINMAR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINKAN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINHIN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINGUJ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINDEV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINBE2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINBE1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDINASA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDIC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHU1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdhebl3.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHEB.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHE319.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHAW.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDHAU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGTHC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdgeoqw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdgeooa.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdgeome.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdgeoer.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGAE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFTHRK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdfar.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDFA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDDZO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDDIV2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDDIV1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDCHER.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBULG.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBUG.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBLR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBHC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBGPH1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBGPH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBASH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZEL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdarmty.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdarmph.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDA3.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDA2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDA1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd103.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101c.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101b.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101a.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYCC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYAK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUZB.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUSR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUSL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUSA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUGHR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTT102.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTIFI2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTIFI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTH3.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTH2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTH1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTH0.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAJIK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAILE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSYR2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSYR1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDSN1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDPL1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdphags.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDPASH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDNTL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDNO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdnko.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDNE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDMYAN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDMONST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDMLT48.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDMLT47.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDMACST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDMAC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLT2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLT1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLT.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdlisus.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdlisub.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDLAO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKNI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKHMR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINTEL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINTAM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINPUN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINORI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINMAR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINMAL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINKAN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINHIN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINGUJ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINDEV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINBEN.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINBE2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINBE1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDINASA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDIC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHU1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHELA2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdhebl3.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHEB.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHE319.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHE220.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHAW.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHAU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGTHC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdgeoqw.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdgeooa.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdgeome.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdgeoer.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGAE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFTHRK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFI.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdfar.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDFA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDDIV2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDDIV1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDDA.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDCHER.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBULG.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBUG.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBLR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBHC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBGPH1.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBGPH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBASH.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZST.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZEL.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdarmty.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdarmph.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDA3.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDA2.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101c.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101b.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101a.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole32.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDIR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDGEO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDDV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDARMW.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDARME.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Firewall.cpl
2016-07-16 04:42 - 2016-07-16 04:42 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\null.sys
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDVNTC.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUK.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDOGHAM.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKAZ.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDIT142.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDIR.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDHE.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDGEO.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDDV.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBU.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDARMW.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDARME.DLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-hal-events.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-storage-tiering-events.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-sleepstudy-events.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shimeng.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\normaliz.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmi.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdatsrc.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\security.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidntld.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdatsrc.tlb
2016-07-16 04:42 - 2016-07-16 04:42 - 00004675 _____ C:\WINDOWS\SysWOW64\wsmanconfig_schema.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00004675 _____ C:\WINDOWS\system32\wsmanconfig_schema.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00004608 _____ (Microsoft) C:\WINDOWS\system32\WEB.rs
2016-07-16 04:42 - 2016-07-16 04:42 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2help.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaccrc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00004453 _____ C:\WINDOWS\SysWOW64\odbcconf.rsp
2016-07-16 04:42 - 2016-07-16 04:42 - 00004148 _____ C:\WINDOWS\system32\psmodulediscoveryprovider.mof
2016-07-16 04:42 - 2016-07-16 04:42 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
2016-07-16 04:42 - 2016-07-16 04:42 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzsyncres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-processor-aggregator-events.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00004014 _____ C:\WINDOWS\system32\xwizard.dtd
2016-07-16 04:42 - 2016-07-16 04:42 - 00003666 _____ C:\WINDOWS\system32\sysprtj.sep
2016-07-16 04:42 - 2016-07-16 04:42 - 00003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanutil.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003317 _____ C:\WINDOWS\system32\sysprint.sep
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rnr20.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msafd.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lz32.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\icmp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootstr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002711 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00002711 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rnr20.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneutilRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netmsg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\neth.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorc32r.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscpx32r.dLL
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprop.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icmp.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmdskres2.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netmsg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\neth.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msprivs.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iologmsg.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskres2.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAppsRes.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeres.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32res.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002426 _____ C:\WINDOWS\SysWOW64\WsmTxt.xsl
2016-07-16 04:42 - 2016-07-16 04:42 - 00002426 _____ C:\WINDOWS\system32\WsmTxt.xsl
 
2016-07-16 04:42 - 2016-07-16 04:42 - 00002307 _____ C:\WINDOWS\SysWOW64\WimBootCompress.ini
2016-07-16 04:42 - 2016-07-16 04:42 - 00002307 _____ C:\WINDOWS\system32\WimBootCompress.ini
2016-07-16 04:42 - 2016-07-16 04:42 - 00002233 _____ C:\WINDOWS\SysWOW64\12520850.cpx
2016-07-16 04:42 - 2016-07-16 04:42 - 00002219 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk
2016-07-16 04:42 - 2016-07-16 04:42 - 00002151 _____ C:\WINDOWS\SysWOW64\12520437.cpx
2016-07-16 04:42 - 2016-07-16 04:42 - 00002048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrsmgr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00002048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrsmgr.dll
2016-07-16 04:42 - 2016-07-16 04:42 - 00001820 _____ C:\WINDOWS\system32\rasctrnm.h
2016-07-16 04:42 - 2016-07-16 04:42 - 00001688 _____ C:\WINDOWS\system32\TransformPPSToWlanCredentials.xslt
2016-07-16 04:42 - 2016-07-16 04:42 - 00001673 _____ C:\WINDOWS\system32\tcpbidi.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00001559 _____ C:\WINDOWS\SysWOW64\WsmPty.xsl
2016-07-16 04:42 - 2016-07-16 04:42 - 00001559 _____ C:\WINDOWS\system32\WsmPty.xsl
2016-07-16 04:42 - 2016-07-16 04:42 - 00000843 _____ C:\WINDOWS\system32\onlinesetup.cmd
2016-07-16 04:42 - 2016-07-16 04:42 - 00000726 _____ C:\WINDOWS\system32\wpr.config.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00000714 _____ C:\WINDOWS\SysWOW64\RestartManager.mof
2016-07-16 04:42 - 2016-07-16 04:42 - 00000714 _____ C:\WINDOWS\system32\RestartManager.mof
2016-07-16 04:42 - 2016-07-16 04:42 - 00000670 ___RH C:\WINDOWS\WindowsShell.Manifest
2016-07-16 04:42 - 2016-07-16 04:42 - 00000646 _____ C:\WINDOWS\SysWOW64\Drivers\gmreadme.txt
2016-07-16 04:42 - 2016-07-16 04:42 - 00000646 _____ C:\WINDOWS\system32\Drivers\gmreadme.txt
2016-07-16 04:42 - 2016-07-16 04:42 - 00000614 _____ C:\WINDOWS\system32\WdsUnattendTemplate.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00000565 _____ C:\WINDOWS\SysWOW64\NdfEventView.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00000565 _____ C:\WINDOWS\system32\NdfEventView.xml
2016-07-16 04:42 - 2016-07-16 04:42 - 00000263 _____ C:\WINDOWS\system32\odbcconf.rsp
2016-07-16 04:42 - 2016-07-16 04:42 - 00000199 _____ C:\WINDOWS\SysWOW64\winrm.cmd
2016-07-16 04:42 - 2016-07-16 04:42 - 00000199 _____ C:\WINDOWS\system32\winrm.cmd
2016-07-16 04:42 - 2016-07-16 04:42 - 00000176 _____ C:\WINDOWS\SysWOW64\RestartManagerUninstall.mof
2016-07-16 04:42 - 2016-07-16 04:42 - 00000176 _____ C:\WINDOWS\system32\RestartManagerUninstall.mof
2016-07-16 04:42 - 2016-07-16 04:42 - 00000167 _____ C:\WINDOWS\system32\removehypervisor.mof
2016-07-16 04:42 - 2016-07-16 04:42 - 00000150 _____ C:\WINDOWS\system32\pcl.sep
2016-07-16 04:42 - 2016-07-16 04:42 - 00000051 _____ C:\WINDOWS\system32\pscript.sep
2016-07-16 04:42 - 2016-07-16 04:42 - 00000003 _____ C:\WINDOWS\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2016-07-16 04:42 - 2016-07-16 04:42 - 00000003 _____ C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01019_Inbox_Critical.Wdf
2016-07-16 04:41 - 2016-07-16 07:27 - 00038752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\terminpt.sys
2016-07-16 04:41 - 2016-07-16 07:27 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 04233728 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athwnx.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 03418976 _____ (QLogic Corporation) C:\WINDOWS\system32\Drivers\evbda.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 02104160 _____ (Chelsio Communications) C:\WINDOWS\system32\Drivers\cht4vx64.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 01135456 _____ (PMC-Sierra) C:\WINDOWS\system32\Drivers\adp80xx.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00842584 _____ (Mellanox) C:\WINDOWS\system32\Drivers\mlx4_bus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00714080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00705888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00673120 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorAV.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00589824 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00575840 _____ (LSI Corporation, Inc.) C:\WINDOWS\system32\Drivers\megasr.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00544608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00535904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-07-16 04:41 - 2016-07-16 04:41 - 00533856 _____ (QLogic Corporation) C:\WINDOWS\system32\Drivers\bxvbda.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00526176 _____ (Mellanox) C:\WINDOWS\system32\Drivers\ibbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00501088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00412000 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorV.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00381792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-07-16 04:41 - 2016-07-16 04:41 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysFxUI.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00346976 _____ (Chelsio Communications) C:\WINDOWS\system32\Drivers\cht4sx64.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthHFSrv.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00305504 _____ (VIA Corporation) C:\WINDOWS\system32\Drivers\VSTXRAID.SYS
2016-07-16 04:41 - 2016-07-16 04:41 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00277344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDScDrv.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00259424 _____ (AMD Technologies Inc.) C:\WINDOWS\system32\Drivers\amdsbs.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\1394ohci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00220000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00191840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-07-16 04:41 - 2016-07-16 04:41 - 00176384 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaLPSS2i_I2C.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdrom.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00169312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00166752 _____ (VIA Technologies Inc.,Ltd) C:\WINDOWS\system32\Drivers\vsmraid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00166240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvstor.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00150368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvraid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00137056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00131936 _____ (PMC-Sierra, Inc.) C:\WINDOWS\system32\Drivers\arcsas.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00129888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-07-16 04:41 - 2016-07-16 04:41 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmdisk0101.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pcmcia.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00113152 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaLPSSi_I2C.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00110432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sbp2port.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00108896 _____ (Mellanox) C:\WINDOWS\system32\Drivers\ndfltr.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00108896 _____ (LSI Corporation) C:\WINDOWS\system32\Drivers\lsi_sas.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00107360 _____ (LSI) C:\WINDOWS\system32\Drivers\3ware.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00105824 _____ (LSI Corporation) C:\WINDOWS\system32\Drivers\lsi_sas2i.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00104288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00102752 _____ (Chelsio Communications) C:\WINDOWS\system32\Drivers\cht4dx64.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbcir.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\disk.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00101216 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\lsi_sas3i.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\parport.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00096608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UfxChipidea.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00096096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00089952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winusb.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00088416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00083296 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdsata.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00082784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00082776 _____ (LSI Corporation) C:\WINDOWS\system32\Drivers\lsi_sss.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00081760 _____ (Silicon Integrated Systems) C:\WINDOWS\system32\Drivers\sisraid4.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00081408 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\iai2c.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00080224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00077152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-07-16 04:41 - 2016-07-16 04:41 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00064864 _____ (Mellanox) C:\WINDOWS\system32\Drivers\winverbs.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00064512 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaLPSS2i_GPIO2.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00064352 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\Drivers\HpSAMD.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Synth3dVsc.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00063840 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\Drivers\mvumis.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00062304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00061792 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\percsas3i.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00059744 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\megasas.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00059232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00058720 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\percsas2i.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\umbus.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicDisplay.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00053088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vdrvroot.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00052576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidi2c.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00050528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00050016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidinterrupt.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\circlass.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00048152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00046944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidir.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00044896 _____ (Silicon Integrated Systems Corp.) C:\WINDOWS\system32\Drivers\sisraid2.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\devauthe.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00043360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssmbios.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthAvrcpTg.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbGDCoInstaller.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00038128 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaLPSSi_GPIO.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00036704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbatt.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00036192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00036192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\battc.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dmvsc.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
2016-07-16 04:41 - 2016-07-16 04:41 - 00033280 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\iagpio.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00032608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fdc.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00032096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00032096 _____ (Mellanox) C:\WINDOWS\system32\Drivers\winmad.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthhfHid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00031072 _____ (Promise Technology, Inc.) C:\WINDOWS\system32\Drivers\stexstor.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wacompen.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbohci.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\CmBatt.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urschipidea.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uefi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00028456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00027488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urssynopsys.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00026976 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdxata.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npsvctrig.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VMBusHID.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serenum.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kdnic.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00022880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\isapnp.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDPrint.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00020504 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcLpioDMA.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\genericusbfn.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00018784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wmiacpi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AcpiDev.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00017944 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtPL080.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00017944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WindowsTrustedRTProxy.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hyperkbd.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volume.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00016168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpipmi.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\umpass.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmgencounter.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\errdev.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpitime.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpipagr.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CIRCoInst.dll
2016-07-16 04:41 - 2016-07-16 04:41 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmgid.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00009728 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn2.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00009728 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn.sys
2016-07-16 04:41 - 2016-07-16 04:41 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vms3cap.sys
2016-07-16 04:36 - 2016-08-05 12:09 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-07-15 23:04 - 2016-08-05 12:08 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-07-15 23:04 - 2016-08-05 11:46 - 00262144 _____ C:\WINDOWS\system32\config\BBI
2016-07-15 23:04 - 2016-08-05 11:24 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-07-15 23:04 - 2016-07-16 07:14 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-07-15 23:04 - 2016-07-16 07:14 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-07-15 23:04 - 2016-07-16 07:14 - 00000000 ____D C:\WINDOWS\servicing
2016-07-15 23:04 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-07-15 23:04 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-07-15 23:04 - 2016-07-15 23:04 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmiEngine.dll
2016-07-15 23:04 - 2016-07-15 23:04 - 00267104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2016-07-15 23:04 - 2016-07-15 23:04 - 00220000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdscore.dll
2016-07-15 23:04 - 2016-07-15 23:04 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
2016-07-15 23:04 - 2016-07-15 23:04 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PkgMgr.exe
2016-07-15 23:04 - 2016-07-15 23:04 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2016-07-15 23:04 - 2016-07-15 23:04 - 00133472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SSShim.dll
2016-07-15 23:04 - 2016-07-15 23:04 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2016-07-15 23:04 - 2016-07-15 23:04 - 00115552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SSShim.dll
2016-07-15 23:04 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2016-07-15 23:04 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-07-15 23:04 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-07-14 12:24 - 2016-07-30 10:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Identifier
2016-07-14 12:24 - 2016-07-14 12:25 - 00000000 ____D C:\Users\Thomas Paine\AppData\Roaming\driveridentifier
2016-07-14 12:19 - 2016-07-30 10:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Easy
2016-07-14 12:19 - 2016-07-16 10:23 - 00000438 _____ C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job
2016-07-12 15:05 - 2016-08-04 05:30 - 00002274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-07-12 12:22 - 2016-06-30 20:57 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2016-07-12 12:21 - 2016-06-30 20:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-05 12:59 - 2015-08-12 22:08 - 00000000 ____D C:\Users\Thomas Paine\AppData\Local\Packages
2016-08-05 12:22 - 2015-08-12 22:18 - 00002426 _____ C:\Users\Thomas Paine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-08-05 12:22 - 2015-08-12 22:18 - 00000000 ___RD C:\Users\Thomas Paine\OneDrive
2016-08-05 12:14 - 2015-08-12 22:08 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-08-05 12:05 - 2015-10-30 00:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-08-05 12:02 - 2015-08-12 22:00 - 00022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-08-05 11:46 - 2016-06-30 04:57 - 00000000 ____D C:\Users\Thomas Paine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2016-08-05 11:46 - 2016-06-27 05:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2016-08-05 11:46 - 2016-05-21 09:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.1
2016-08-05 11:46 - 2016-02-26 16:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2016-08-05 11:46 - 2016-02-04 10:24 - 00000000 ____D C:\Users\Thomas Paine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2016-08-05 11:46 - 2016-01-12 09:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2016-08-05 11:46 - 2016-01-07 17:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I-Menu
2016-08-05 11:46 - 2015-10-30 02:07 - 00000000 ____D C:\WINDOWS\ShellNew
2016-08-05 11:46 - 2015-10-26 05:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
2016-08-05 11:46 - 2015-10-23 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2016-08-05 11:46 - 2015-09-29 11:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-08-05 11:46 - 2015-01-14 11:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp
2016-08-05 11:46 - 2014-07-08 12:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
2016-08-05 11:46 - 2014-05-01 20:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan
2016-08-05 11:46 - 2014-04-28 18:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-08-05 11:46 - 2014-03-17 08:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64
2016-08-05 11:46 - 2013-01-11 20:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HostsMan
2016-08-05 11:46 - 2012-12-28 08:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2016-08-05 11:46 - 2012-12-27 21:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-08-05 11:46 - 2010-08-11 20:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
2016-08-05 11:46 - 2010-07-17 22:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Player
2016-08-05 11:46 - 2010-07-17 20:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-08-05 11:46 - 2010-02-22 20:09 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
2016-08-05 11:46 - 2010-02-22 20:09 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2016-08-05 11:46 - 2010-02-22 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling
2016-08-05 11:46 - 2010-02-22 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP MediaSmart Demo
2016-08-05 11:46 - 2010-02-22 19:43 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-08-05 11:46 - 2010-02-22 19:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools
2016-08-05 11:46 - 2009-07-13 22:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-08-05 11:41 - 2015-10-29 23:28 - 00000000 ____D C:\Users\Default.migrated
2016-08-05 11:34 - 2013-11-05 09:35 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe
2016-08-05 11:34 - 2011-02-24 19:09 - 00000000 ____D C:\WINDOWS\system32\SPReview
2016-08-05 11:34 - 2011-02-24 19:08 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2016-08-05 11:34 - 2010-07-29 20:50 - 00000000 ____D C:\WINDOWS\system32\HJSMEM
2016-08-05 11:31 - 2016-06-12 08:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2016-08-05 11:31 - 2013-08-16 09:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2016-08-05 11:31 - 2010-02-22 19:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD
2016-08-05 11:31 - 2009-07-14 00:44 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-08-05 11:30 - 2009-07-13 22:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-08-05 11:30 - 2009-07-13 20:20 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-08-05 11:19 - 2015-08-12 21:18 - 00000000 ____D C:\AMD
2016-08-05 10:39 - 2015-01-09 21:31 - 00000000 ____D C:\Users\Thomas Paine\AppData\Local\CrashDumps
2016-08-05 10:34 - 2014-06-19 07:13 - 00000924 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-05 10:32 - 2016-05-10 17:14 - 00000954 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-555829191-1849574639-2068614983-1001UA1d12e07e9b93886.job
2016-08-05 10:05 - 2015-08-21 12:55 - 00000258 __RSH C:\ProgramData\ntuser.pol
2016-08-05 10:01 - 2015-10-16 14:36 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-08-04 17:32 - 2016-05-10 17:14 - 00000902 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-555829191-1849574639-2068614983-1001Core1d12e07e993e88d.job
2016-08-04 15:45 - 2014-04-20 11:34 - 00000000 ____D C:\Users\Thomas Paine\Documents\GREAT
2016-08-04 13:34 - 2014-06-19 07:13 - 00000920 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-08-04 06:17 - 2016-06-27 05:32 - 00000000 ____D C:\ProgramData\Foxit Software
2016-08-03 20:45 - 2015-10-26 05:08 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster
2016-08-03 20:45 - 2010-02-22 19:38 - 00000000 ____D C:\ProgramData\Temp
2016-08-03 05:06 - 2016-01-23 16:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-08-02 05:07 - 2015-11-17 14:48 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-07-30 17:47 - 2016-03-25 10:12 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-07-28 08:49 - 2015-09-29 11:15 - 00000000 ____D C:\Users\Thomas Paine\AppData\Roaming\vlc
2016-07-28 08:44 - 2013-03-17 14:34 - 00000000 ____D C:\Users\Thomas Paine\AppData\Roaming\dvdcss
2016-07-28 08:38 - 2012-12-27 21:31 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-07-28 08:38 - 2010-02-22 20:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-07-27 15:01 - 2014-12-04 09:16 - 00000000 ____D C:\Users\Thomas Paine\dwhelper
2016-07-27 12:25 - 2010-07-16 19:26 - 00504488 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-07-26 09:18 - 2016-01-22 17:52 - 00001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-07-22 10:00 - 2010-07-16 21:14 - 00000448 _____ C:\WINDOWS\Tasks\PCDRScheduledMaintenance.job
2016-07-20 05:43 - 2015-11-29 20:54 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-07-20 05:42 - 2015-12-03 14:16 - 00001114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-07-20 05:42 - 2015-12-03 14:16 - 00001102 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-07-20 05:40 - 2016-06-02 05:33 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2016-07-19 18:38 - 2016-04-27 11:27 - 00000000 ____D C:\Users\Thomas Paine\Documents\HENDRIX
2016-07-18 12:13 - 2015-03-03 18:02 - 00000000 ____D C:\Users\Thomas Paine\Documents\MANUALS
2016-07-16 14:15 - 2013-08-24 19:04 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-07-16 11:46 - 2014-04-28 18:37 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-07-16 11:46 - 2014-04-28 18:37 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-07-14 12:46 - 2010-09-12 15:01 - 00000000 ____D C:\Users\Thomas Paine\AppData\Local\ElevatedDiagnostics
2016-07-12 16:17 - 2014-03-17 08:26 - 00000000 ____D C:\Users\Thomas Paine\AppData\Roaming\MPC-HC
2016-07-12 15:04 - 2011-03-30 19:24 - 00000000 ____D C:\Program Files (x86)\Google
2016-07-12 12:31 - 2013-08-14 03:01 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-07-12 12:24 - 2010-07-18 11:04 - 144749672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-07-10 11:39 - 2016-01-20 12:45 - 00000000 ____D C:\Users\Thomas Paine\Documents\GOOD MUSIC
2016-07-07 06:03 - 2016-03-26 11:25 - 00000562 _____ C:\Users\Thomas Paine\Desktop\JRT.txt

==================== Files in the root of some directories =======

2016-02-24 07:04 - 2016-05-23 15:22 - 0005120 _____ () C:\Users\Thomas Paine\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-08-05 11:15

==================== End of FRST.txt ============================
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\google.com -> hxxps://www.google.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-555829191-1849574639-2068614983-1001\...\1-2005-search.com -> www.1-2005-search.com

There are 12684 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 19:34 - 2015-01-13 17:52 - 00449968 ___RA C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 localhost127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 www.123moviedownload.com

There are 15463 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-555829191-1849574639-2068614983-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Thomas Paine\Pictures\HAWKS\12552922_1065689990128759_8546792748169811001_n.jpg
DNS Servers: 192.168.1.1 - 184.16.33.54
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)
 
==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [WirelessDisplay-Infra-In-TCP] => (Allow) %systemroot%\system32\CastSrv.exe
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{16CA3375-DD5A-41BA-96F4-A3E96DAD169F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{9C0FA181-EB00-401F-A5FE-4031BEFE4A65}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{C6863105-6F15-408E-9D03-511C61A9E50D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{C6FD28FB-1A90-4BE4-B8BB-6C9899271DF1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{35F4D62A-5A5B-40DF-AF98-13981003FCAC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{3E5176AA-DDAE-484E-AAFE-249C6528BFC6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{C9483B71-6266-4A4F-86AA-0671EC1A0F34}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{4061A30F-9980-4D5D-960B-132EF3214E0E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{BF0DB74F-7D05-4D76-ABC2-C0D65980C5BD}C:\program files (x86)\hewlett-packard\hp support solutions\modules\hpdevicedetection3.exe] => (Allow) C:\program files (x86)\hewlett-packard\hp support solutions\modules\hpdevicedetection3.exe
FirewallRules: [TCP Query User{269C02F0-C76F-4EC3-A57F-A6F73B116522}C:\program files (x86)\hewlett-packard\hp support solutions\modules\hpdevicedetection3.exe] => (Allow) C:\program files (x86)\hewlett-packard\hp support solutions\modules\hpdevicedetection3.exe
FirewallRules: [UDP Query User{9E438F61-E6A1-42AC-8B77-F5C91F9A5017}C:\program files (x86)\itunes\itunes.exe] => (Allow) C:\program files (x86)\itunes\itunes.exe
FirewallRules: [TCP Query User{4C15FF0B-5F10-4C19-9CEB-4762AA2D0CE6}C:\program files (x86)\itunes\itunes.exe] => (Allow) C:\program files (x86)\itunes\itunes.exe
FirewallRules: [UDP Query User{FA298B7B-AAEA-4071-A78E-75DD1C109B47}C:\users\thomas paine\appdata\local\google\chrome sxs\application\chrome.exe] => (Block) C:\users\thomas paine\appdata\local\google\chrome sxs\application\chrome.exe
FirewallRules: [TCP Query User{DFA841D9-A17A-441D-8427-6657D13CA8F9}C:\users\thomas paine\appdata\local\google\chrome sxs\application\chrome.exe] => (Block) C:\users\thomas paine\appdata\local\google\chrome sxs\application\chrome.exe
FirewallRules: [{B5FC9AB9-BF49-41C8-8452-00EE27F5191B}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
FirewallRules: [{46076396-A6E2-4221-A947-4C1DBCBB87FA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{AD9DFAA3-A236-4F7C-8723-96A519B0A2AF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{EDFE3A90-A59E-4FB8-8D76-4E13C4F45344}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3331F3BB-EF4F-406D-8AA8-B2C6A1883197}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3A4DB0FD-3EAB-4D61-AC01-22F90F59F5A1}] => (Allow) C:\Users\Thomas Paine\AppData\Local\Mozilla Firefox\firefox.exe
FirewallRules: [{8E150347-1C02-42A4-A5CC-08D0B5B21E96}] => (Allow) C:\Users\Thomas Paine\AppData\Local\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{56A31289-C5DC-4792-A62A-9F734ABC8A6E}C:\users\thomas paine\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\thomas paine\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [TCP Query User{71E7FB35-8080-4D6C-97BB-48B56181668B}C:\users\thomas paine\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\thomas paine\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [{F7562249-0467-4A4D-AEEB-345B1C0172E9}] => (Allow) C:\Windows\Temp\CMC_DRAGON\restart_helper.exe
FirewallRules: [{5F8AE4C2-FB60-414F-BD38-56581284F607}] => (Allow) C:\Windows\Temp\CMC_DRAGON\restart_helper.exe
FirewallRules: [{BB160FB3-4622-4BE7-86CD-D8B105F1DE2A}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
FirewallRules: [{ACDD4560-2E87-4785-BCCA-892A18FAB468}] => (Allow) C:\Program Files\Opera x64\opera.exe
FirewallRules: [{5DF07451-80E5-46EC-9563-8C1309849048}] => (Allow) C:\Program Files\Opera x64\opera.exe
FirewallRules: [{0FADA42C-9646-4947-A12D-F69B25ACF8E1}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe
FirewallRules: [{40C7EFC5-DC48-4AFD-AA94-D69A5D6D6EDD}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe
FirewallRules: [{C2508F72-FB13-4815-95F1-7DC361F68BBF}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{78C8D35C-0C38-48AE-B98F-62D4E2A691E6}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [UDP Query User{0604616B-0A3E-4EC1-8078-52EA53AD8736}C:\users\thomas paine\appdata\roaming\macromedia\flash player\] => (Allow) C:\users\thomas paine\appdata\roaming\macromedia\flash player\http://
FirewallRules: [TCP Query User{37597D95-B3DE-47B2-A3E5-5BA3F5CC6756}C:\users\thomas paine\appdata\roaming\macromedia\flash player\] => (Allow) C:\users\thomas paine\appdata\roaming\macromedia\flash player\http://
FirewallRules: [{FCC2389C-F322-4C77-A03C-E4E5D3F17DF0}] => (Allow) C:\Users\Thomas Paine\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
FirewallRules: [{922B686D-147D-4037-91C9-8A26162B7340}] => (Allow) C:\Users\Thomas Paine\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
FirewallRules: [{940CA27F-7EE2-49E2-8A98-3F924531FB94}] => (Allow) C:\Users\Thomas Paine\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
FirewallRules: [{4EBD5667-5DDE-4556-B0F0-AD2B5B57739F}] => (Allow) C:\Users\Thomas Paine\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
FirewallRules: [{6999820A-7616-4608-9CB3-720A45A68DAE}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
FirewallRules: [{F450383D-9D5E-4A9A-9465-C5806547E399}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
FirewallRules: [{D374C1B1-998D-40CA-965C-3C6A4236A803}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe
FirewallRules: [{8127009A-58A2-4E55-B760-F0C658603CC8}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe
FirewallRules: [{6021A164-9C07-4CDD-824A-70E5F97CC8BD}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe
FirewallRules: [{9F0A4983-18E0-4C18-B419-E000BE7D465F}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe
FirewallRules: [{2534BAD2-D2D9-4420-B9E7-149801C3EAB0}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDirector\PDR.EXE
FirewallRules: [{F3215DA9-57C1-4786-B8BF-CE2C77485AC2}] => (Allow) C:\Program Files\Waterfox\waterfox.exe
FirewallRules: [{5FCF4C30-5D02-4E9C-836F-41F47CDEE2F8}] => (Allow) C:\Program Files\Waterfox\waterfox.exe
FirewallRules: [{CA57F00C-2AE8-475D-B03A-546C641E9165}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{C5101161-28E6-4A94-830B-50051C5E68D5}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe

==================== Restore Points =========================

05-08-2016 14:15:35 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/05/2016 07:09:02 PM) (Source: ESENT) (EventID: 542) (User: )
Description: DllHost (5460) WebCacheLocal: Database C:\Users\Thomas Paine\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat: Page 33 (0x21) (objid 9) has a logical corruption of type 'LinesOutOfOrder'.

Error: (08/05/2016 07:05:04 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_2d0f50fcbdb171b8.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_2d0f50fcbdb171b8.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_2d0f50fcbdb171b8.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_2d0f50fcbdb171b8.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_74bc87d3d22d9abe.manifest.

Error: (08/05/2016 06:47:08 PM) (Source: ESENT) (EventID: 542) (User: )
Description: DllHost (9300) WebCacheLocal: Database C:\Users\Thomas Paine\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat: Page 33 (0x21) (objid 9) has a logical corruption of type 'LinesOutOfOrder'.

Error: (08/05/2016 05:47:15 PM) (Source: ESENT) (EventID: 542) (User: )
Description: DllHost (9780) WebCacheLocal: Database C:\Users\Thomas Paine\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat: Page 33 (0x21) (objid 9) has a logical corruption of type 'LinesOutOfOrder'.

Error: (08/05/2016 03:50:53 PM) (Source: ESENT) (EventID: 542) (User: )
Description: DllHost (3228) WebCacheLocal: Database C:\Users\Thomas Paine\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat: Page 33 (0x21) (objid 9) has a logical corruption of type 'LinesOutOfOrder'.

Error: (08/05/2016 02:24:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: taskhostw.exe, version: 10.0.14393.0, time stamp: 0x57899a8f
Faulting module name: ESENT.dll, version: 10.0.14393.0, time stamp: 0x57899845
Exception code: 0xc0000005
Fault offset: 0x0000000000058b4a
Faulting process id: 0x1064
Faulting application start time: 0xtaskhostw.exe0
Faulting application path: taskhostw.exe1
Faulting module path: taskhostw.exe2
Report Id: taskhostw.exe3
Faulting package full name: taskhostw.exe4
Faulting package-relative application ID: taskhostw.exe5

Error: (08/05/2016 02:15:51 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (08/05/2016 12:59:13 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: HAL-9000)
Description: Activation of app Microsoft.WindowsMaps_8wekyb3d8bbwe!App failed with error: -2144927148 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (08/05/2016 12:51:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.14393.0, time stamp: 0x57899179
Faulting module name: MessagingNativeCore.dll, version: 2.19.1607.1001, time stamp: 0x5776e7d8
Exception code: 0xc0000005
Fault offset: 0x001043cf
Faulting process id: 0x870
Faulting application start time: 0xbackgroundTaskHost.exe0
Faulting application path: backgroundTaskHost.exe1
Faulting module path: backgroundTaskHost.exe2
Report Id: backgroundTaskHost.exe3
Faulting package full name: backgroundTaskHost.exe4
Faulting package-relative application ID: backgroundTaskHost.exe5

Error: (08/05/2016 12:50:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.14393.0, time stamp: 0x57899179
Faulting module name: MessagingNativeCore.dll, version: 2.19.1607.1001, time stamp: 0x5776e7d8
Exception code: 0xc0000005
Fault offset: 0x001043cf
Faulting process id: 0x1a74
Faulting application start time: 0xbackgroundTaskHost.exe0
Faulting application path: backgroundTaskHost.exe1
Faulting module path: backgroundTaskHost.exe2
Report Id: backgroundTaskHost.exe3
Faulting package full name: backgroundTaskHost.exe4
Faulting package-relative application ID: backgroundTaskHost.exe5


System errors:
=============
Error: (08/05/2016 06:04:55 PM) (Source: DCOM) (EventID: 10010) (User: HAL-9000)
Description: {21F282D1-A881-49E1-9A3A-26E44E39B86C}

Error: (08/05/2016 06:02:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Connected Devices Platform Service service terminated with the following error:
%%2147500037 = Unspecified error

Error: (08/05/2016 04:04:55 PM) (Source: DCOM) (EventID: 10010) (User: HAL-9000)
Description: {21F282D1-A881-49E1-9A3A-26E44E39B86C}

Error: (08/05/2016 04:02:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Connected Devices Platform Service service terminated with the following error:
%%2147500037 = Unspecified error

Error: (08/05/2016 12:33:55 PM) (Source: DCOM) (EventID: 10016) (User: HAL-9000)
Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HAL-9000ciber surferS-1-5-21-555829191-1849574639-2068614983-1001LocalHost (Using LRPC)Microsoft.Windows.Cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742

Error: (08/05/2016 12:22:40 PM) (Source: DCOM) (EventID: 10010) (User: HAL-9000)
Description: {21F282D1-A881-49E1-9A3A-26E44E39B86C}

Error: (08/05/2016 12:13:42 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}{F72671A9-012C-4725-9D2F-2A4D32D65169}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable

Error: (08/05/2016 12:08:56 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.

Error: (08/05/2016 12:04:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error:
%%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (08/05/2016 12:04:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error:
%%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.


CodeIntegrity:
===================================
Date: 2016-08-05 19:05:59.160
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 19:05:59.159
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 19:05:58.803
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 19:05:58.801
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 19:05:58.388
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 19:05:58.385
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 19:05:58.361
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 17:17:52.349
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 17:17:52.347
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-08-05 17:17:52.343
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: AMD Phenom(tm) II X4 945 Processor
Percentage of memory in use: 38%
Total physical RAM: 8183.89 MB
Available physical RAM: 5064.45 MB
Total Virtual: 10103.89 MB
Available Virtual: 5137.93 MB

==================== Drives ================================

Drive c: (HP) (Fixed) (Total:919.46 GB) (Free:245.16 GB) NTFS
Drive d: (FACTORY_IMAGE) (Fixed) (Total:11.32 GB) (Free:1.61 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.3 GB) (Disk ID: 1549F232)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=919.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=11.3 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================
 
Please, observe following rules:
  • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
  • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
  • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
  • Never run more than one scan at a time.
  • Keep updating me regarding your computer behavior, good, or bad.
  • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
  • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
  • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

=============================

We can run couple more checks but so far I don't see much there.

redtarget.gif
Download RogueKiller from one of the following links and save it to your Desktop:

Link 1
Link 2

  • Close all the running programs
  • Double click on downloaded setup.exe file to install the program.
  • Click on Start Scan button.
  • Click on another Start Scan button.
  • Wait until the Status box shows Scan Finished
  • Click on Delete.
  • Wait until the Status box shows Deleting Finished.
  • Click on Report and copy/paste the content of the Notepad into your next reply.
  • RKreport.txt could also be found on your desktop.
  • If more than one log is produced post all logs.
redtarget.gif
Please download Malwarebytes Anti-Malware (MBAM) to your desktop.
NOTE. If you already have MBAM 2.0 installed scroll down.
  • Double-click mbam-setup-2.0.0.1000.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to the following:
  • Launch Malwarebytes Anti-Malware
  • A 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
  • Click Finish.
  • On the Dashboard, click the 'Update Now >>' link
  • After the update completes, click the 'Scan Now >>' button.
  • Or, on the Dashboard, click the Scan Now >> button.
  • If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
  • In most cases, a restart will be required.
  • Wait for the prompt to restart the computer to appear, then click on Yes.
If you already have MBAM 2.0 installed:
  • On the Dashboard, click the 'Update Now >>' link
  • After the update completes, click the 'Scan Now >>' button.
  • Or, on the Dashboard, click the Scan Now >> button.
  • If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
  • In most cases, a restart will be required.
  • Wait for the prompt to restart the computer to appear, then click on Yes.
How to get logs:
(Export log to save as txt)
  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the Scan Log which shows the Date and time of the scan just performed.
  • Click 'Export'.
  • Click 'Text file (*.txt)'
  • In the Save File dialog box which appears, click on Desktop.
  • In the File name: box type a name for your scan log.
  • A message box named 'File Saved' should appear stating "Your file has been successfully exported".
  • Click Ok
  • Attach that saved log to your next reply.
(Copy to clipboard for pasting into forum replies or tickets)
  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the Scan Log which shows the Date and time of the scan just performed.
  • Click 'Copy to Clipboard'
  • Paste the contents of the clipboard into your reply.
redtarget.gif
Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
redtarget.gif
Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
 
RogueKiller V12.4.2.0 (x64) [Aug 1 2016] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/download/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 10 (10.0.14393) 64 bits version
Started in : Normal mode
User : ciber surfer [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Mode : Delete -- Date : 08/06/2016 20:23:48

¤¤¤ Processes : 0 ¤¤¤

¤¤¤ Registry : 6 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-555829191-1849574639-2068614983-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.kirotv.com/ -> Not selected
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-555829191-1849574639-2068614983-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.kirotv.com/ -> Not selected
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-555829191-1849574639-2068614983-1001\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Not selected
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-555829191-1849574639-2068614983-1001\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C2B7D062-17BE-4DC5-B38E-3D552D756FB4} | DhcpNameServer : 172.20.10.1 ([]) -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{C2B7D062-17BE-4DC5-B38E-3D552D756FB4} | DhcpNameServer : 172.20.10.1 ([]) -> Not selected

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 0 ¤¤¤

¤¤¤ Hosts File : 0 [Too big!] ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤

¤¤¤ Web browsers : 1 ¤¤¤
[PUM.HomePage][FIREFX:Config] b40jm6yq.default : user_pref("browser.startup.homepage", "www.kiro7.com"); -> Not selected

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-65M2B1 SCSI Disk Device +++++
--- User ---
[MBR] d0d5c8781f2e3f601f6f702ac02ea8cb
[BSP] f8a8e634e7e5a470666b97c664cffb51 : HP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 941527 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 1928454144 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 1929375744 | Size: 11595 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
Error reading LL2 MBR! ([1] Incorrect function. )

+++++ PhysicalDrive1: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive2: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive3: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive4: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )
 
# AdwCleaner v5.201 - Logfile created 06/08/2016 at 20:47:14
# Updated 30/06/2016 by ToolsLib
# Database : 2016-08-06.2 [Server]
# Operating system : Windows 10 Home (X64)
# Username : ciber surfer - HAL-9000
# Running from : C:\Users\Thomas Paine\Pictures\OTHER FOLDERS\Desktop\adwcleaner_5.201.exe
# Option : Clean
# Support : https://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [974 bytes] - [20/07/2016 06:49:03]
C:\AdwCleaner\AdwCleaner[C2].txt - [1611 bytes] - [25/07/2016 07:29:29]
C:\AdwCleaner\AdwCleaner[C3].txt - [1757 bytes] - [29/07/2016 06:08:06]
C:\AdwCleaner\AdwCleaner[C4].txt - [970 bytes] - [06/08/2016 20:47:14]
C:\AdwCleaner\AdwCleaner[S1].txt - [813 bytes] - [20/07/2016 06:46:49]
C:\AdwCleaner\AdwCleaner[S2].txt - [1425 bytes] - [25/07/2016 07:26:02]
C:\AdwCleaner\AdwCleaner[S3].txt - [1571 bytes] - [29/07/2016 06:06:15]
C:\AdwCleaner\AdwCleaner[S4].txt - [1251 bytes] - [06/08/2016 20:45:30]

########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [1333 bytes] ##########
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 10 Home x64
Ran by ciber surfer (Administrator) on Sat 08/06/2016 at 20:56:45.62
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 2

Successfully deleted: C:\WINDOWS\system32\Tasks\Driver Easy Scheduled Scan (Task)
Successfully deleted: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job (Task)



Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 08/06/2016 at 21:01:05.48
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
Back