Inactive Windows 8 won't boot, CLFS.SYS issue

fbwing

Posts: 16   +0
Hello,

My laptop fails to boot saying the CLFS.SYS is missing or damaged.

I tried the Windows 8 Repair process, but after it gets to 98% it fails.

Fred
 
Welcome aboard

Please, observe following rules:
  • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
  • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
  • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
  • Never run more than one scan at a time.
  • Keep updating me regarding your computer behavior, good, or bad.
  • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
  • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
  • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

=====================================

I'm not sure if this is malware related issue but let's give it a shot.

For x32 (x86) bit systems download Farbar Recovery Scan Tool 32-Bit and save it to a flash drive.
For x64 bit systems download Farbar Recovery Scan Tool 64-Bit and save it to a flash drive.

Plug the flashdrive into the infected PC.

If you are using Windows 8 consult How to use the Windows 8 System Recovery Environment Command Prompt to enter System Recovery Command prompt.

If you are using Vista or Windows 7 enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.

To enter System Recovery Options by using Windows installation disc:
  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.

On the System Recovery Options menu you will get the following options:


  • Startup Repair
    System Restore
    Windows Complete PC Restore
    Windows Memory Diagnostic Tool
    Command Prompt
  • Select Command Prompt
  • In the command window type in notepad and press Enter.
  • The notepad opens. Under File menu select Open.
  • Select "Computer" and find your flash drive letter and close the notepad.
  • In the command window type e:\frst (for x64 bit version type e:\frst64) and press Enter
    Note: Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
 
Part 1

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-05-2013 01
Ran by SYSTEM on 11-05-2013 13:22:47
Running from C:\
Windows 8 Pro (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Recovery
The current controlset is ControlSet001
ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated)
HKLM\...\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation)
HKLM\...\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t [316032 2010-12-14] (Conexant systems, Inc.)
HKLM\...\Run: [TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe [973176 2010-12-15] ()
HKLM\...\Run: [Teco] "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r [1520552 2011-03-02] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe [595816 2010-04-23] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2010-12-14] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation)
HKLM\...\Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun [825184 2009-09-30] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-11-28] (Apple Inc.)
HKLM-x32\...\Run: [BambooCore] C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] ()
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152544 2012-12-12] (Apple Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255360 2012-12-14] (LogMeIn Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [SearchProtectAll] C:\Program Files (x86)\SearchProtect\bin\cltmng.exe [2731296 2013-03-06] (Conduit)
HKLM-x32\...\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [x]
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
HKU\nbuswell\...\Run: [Akamai NetSession Interface] "C:\Users\nbuswell\AppData\Local\Akamai\netsession_win.exe" [4441920 2012-10-09] (Akamai Technologies, Inc.)
HKU\nbuswell\...\Run: [DownloadManager] "C:\Program Files (x86)\Download Manager\DownloadManager.exe" /as [612352 2012-02-08] (DownloadManager)
HKU\nbuswell\...\Run: [SearchProtect] C:\Users\nbuswell\AppData\Roaming\SearchProtect\bin\cltmng.exe [2730784 2013-04-11] (Conduit)
HKU\nbuswell\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17418928 2012-07-13] (Skype Technologies S.A.)
HKU\nbuswell\...\Run: [Spotify] "C:\Users\nbuswell\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart [4555776 2013-04-21] (Spotify Ltd)
HKU\nbuswell\...\Run: [Spotify Web Helper] "C:\Users\nbuswell\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [1105408 2013-04-21] (Spotify Ltd)
HKU\nbuswell\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2011-06-22] (Google Inc.)
HKU\nbuswell_2\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2011-06-22] (Google Inc.)
HKU\nbuswell_2\...\Run: [SearchProtect] C:\Users\nbuswell_2\AppData\Roaming\SearchProtect\bin\cltmng.exe [2730784 2013-04-11] (Conduit)
AppInit_DLLs: [0 ] ()
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft)
Startup: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk
ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft)
Startup: C:\Users\nbuswell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> (No File)
Startup: C:\Users\nbuswell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
ShortcutTarget: GamersFirst LIVE!.lnk -> (No File)
Startup: C:\Users\nbuswell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1.lnk
ShortcutTarget: OpenOffice.org 3.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
Startup: C:\Users\nbuswell_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
ShortcutTarget: GamersFirst LIVE!.lnk -> (No File)
Startup: C:\Users\nbuswell_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1.lnk
ShortcutTarget: OpenOffice.org 3.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Services (Whitelisted) =================
S2 CltMngSvc; C:\Program Files (x86)\SearchProtect\bin\CltMngSvc.exe [93984 2013-03-06] (Conduit)
S2 mi-raysat_3dsmax2013_64; C:\Program Files\Autodesk\3ds Max Design 2013\NVIDIA\raysat_3dsmax2013_64server.exe [86016 2011-09-14] ()
S2 MSMQ; C:\Windows\system32\mqsvc.exe [25088 2012-07-25] (Microsoft Corporation)
S2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-05-10] ()
S2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [290776 2013-05-10] ()
S2 Updater Service for StartNow Toolbar; C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe [265952 2012-06-22] ()
S2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [471552 2012-07-25] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-28] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S3 L1C; C:\Windows\system32\DRIVERS\L1C63x64.sys [100864 2012-06-02] (Qualcomm Atheros Co., Ltd.)
S3 MQAC; C:\Windows\System32\drivers\mqac.sys [185856 2012-07-25] (Microsoft Corporation)
S0 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [217328 2012-07-25] () <===== ATTENTION
S3 RTL8192Ce; C:\Windows\system32\DRIVERS\rtwlane.sys [1119232 2012-06-29] (Realtek Semiconductor Corporation )
S3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [36864 2012-07-25] ()
S3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-25] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-25] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-25] (Microsoft Corporation)
S3 EagleX64; \??\C:\WINDOWS\system32\drivers\EagleX64.sys [x]
S3 idsvc;
S0 SmartDefragDriver; System32\Drivers\SmartDefragDriver.sys [x]
==================== NetSvcs (Whitelisted) ===================
 
Part 2

==================== One Month Created Files and Folders ========
2013-05-11 10:49 - 2013-05-11 10:49 - 00000000 ____D C:\FRST
2013-05-11 09:56 - 2013-05-11 10:35 - 00000000 ___HD C:\$SysReset
2013-05-11 09:01 - 2013-05-11 10:35 - 00000000 ____A C:\Recovery.txt
2013-05-10 14:37 - 2013-05-10 14:37 - 00002056 ____A C:\Users\nbuswell\Desktop\APB - Shortcut.lnk
2013-05-08 16:41 - 2013-05-08 16:41 - 00886409 ____A C:\Users\nbuswell\Downloads\pbsetup (1).zip
2013-05-08 16:36 - 2013-05-08 16:37 - 05081464 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-08 15:39 - 2013-05-08 15:39 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2013-05-08 15:35 - 2013-05-08 15:35 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2013-05-08 13:25 - 2013-05-08 13:26 - 01767963 ____A C:\Users\nbuswell\Downloads\fwnateseagleinfo.zip
2013-05-08 11:22 - 2013-05-10 14:48 - 00000000 ____D C:\Users\nbuswell\Desktop\Eagle Project
2013-05-03 14:45 - 2013-05-03 14:45 - 00351931 ____A C:\Users\nbuswell\Downloads\OptiFine_1.5.2_HD_D2.zip
2013-05-03 14:09 - 2013-05-03 14:09 - 00000117 ____A C:\Windows\System32\netcfg-697898000.txt
2013-05-03 14:09 - 2013-05-03 14:09 - 00000117 ____A C:\Windows\System32\netcfg-697896500.txt
2013-05-02 11:07 - 2012-10-16 20:32 - 01172992 ____A (Microsoft Corporation) C:\Windows\System32\mfnetsrc.dll
2013-05-02 11:07 - 2012-10-16 20:32 - 00677888 ____A (Microsoft Corporation) C:\Windows\System32\mfnetcore.dll
2013-05-02 11:07 - 2012-10-16 20:32 - 00673280 ____A (Microsoft Corporation) C:\Windows\System32\mfmpeg2srcsnk.dll
2013-05-02 11:07 - 2012-10-16 19:57 - 00929792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2013-05-02 11:07 - 2012-10-16 19:57 - 00568832 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2013-05-02 11:07 - 2012-10-16 19:57 - 00513024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2013-05-02 11:01 - 2013-05-02 11:01 - 00000117 ____A C:\Windows\System32\netcfg-600165656.txt
2013-05-02 11:01 - 2013-05-02 11:01 - 00000117 ____A C:\Windows\System32\netcfg-600164531.txt
2013-05-01 14:11 - 2013-05-01 14:11 - 00019229 ____A C:\Users\nbuswell\Downloads\mccapes_extra_151a_20130321_2321 (1).zip
2013-05-01 12:41 - 2013-05-01 12:41 - 00000117 ____A C:\Windows\System32\netcfg-519806593.txt
2013-05-01 12:41 - 2013-05-01 12:41 - 00000117 ____A C:\Windows\System32\netcfg-519804281.txt
2013-04-30 15:26 - 2013-04-30 15:26 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2013-04-30 15:26 - 2013-04-30 15:26 - 00000000 ____D C:\users\DefaultAppPool
2013-04-30 15:26 - 2013-04-23 14:34 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2013-04-30 15:26 - 2013-04-21 13:50 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2013-04-30 15:26 - 2013-04-21 13:50 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\IObit
2013-04-30 15:26 - 2013-04-21 13:50 - 00000000 ____D C:\Users\DefaultAppPool\AppData\LocalGoogle
2013-04-30 15:26 - 2013-04-21 13:50 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Google
2013-04-30 15:05 - 2012-10-11 22:13 - 00109568 ____A (Microsoft Corporation) C:\Windows\System32\dskquota.dll
2013-04-30 15:05 - 2012-10-11 21:39 - 00082944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll
2013-04-30 13:59 - 2013-04-30 13:59 - 00006633 ____A C:\Users\nbuswell\Downloads\mccapes_1_5_1_20130321_2322.zip
2013-04-30 13:57 - 2012-12-03 20:21 - 00368640 ____A (Microsoft Corporation) C:\Windows\System32\sppwinob.dll
2013-04-30 13:57 - 2012-11-28 21:05 - 01131520 ____A (Microsoft Corporation) C:\Windows\System32\AppXDeploymentServer.dll
2013-04-30 13:57 - 2012-11-28 21:05 - 00707584 ____A (Microsoft Corporation) C:\Windows\System32\AppXDeploymentExtensions.dll
2013-04-30 13:55 - 2012-11-19 21:24 - 01164800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2013-04-30 13:55 - 2012-11-19 21:17 - 01184256 ____A (Microsoft Corporation) C:\Windows\System32\Display.dll
2013-04-30 13:55 - 2012-11-19 21:02 - 00006656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KBDKURD.DLL
2013-04-30 13:55 - 2012-11-19 20:59 - 00007168 ____A (Microsoft Corporation) C:\Windows\System32\KBDKURD.DLL
2013-04-30 13:54 - 2012-10-10 23:47 - 00793200 ____A (Microsoft Corporation) C:\Windows\System32\mfplat.dll
2013-04-30 13:54 - 2012-10-10 23:35 - 02380944 ____A (Microsoft Corporation) C:\Windows\explorer.exe
2013-04-30 13:54 - 2012-10-10 23:25 - 00056552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sdstor.sys
2013-04-30 13:54 - 2012-10-10 23:23 - 00441576 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2013-04-30 13:54 - 2012-10-10 23:18 - 00172264 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2013-04-30 13:54 - 2012-10-10 23:16 - 01403784 ____A (Microsoft Corporation) C:\Windows\System32\winload.efi
2013-04-30 13:54 - 2012-10-10 23:16 - 01267424 ____A (Microsoft Corporation) C:\Windows\System32\winload.exe
2013-04-30 13:54 - 2012-10-10 23:16 - 01217328 ____A (Microsoft Corporation) C:\Windows\System32\winresume.efi
2013-04-30 13:54 - 2012-10-10 23:16 - 01093880 ____A (Microsoft Corporation) C:\Windows\System32\winresume.exe
2013-04-30 13:54 - 2012-10-10 23:13 - 00058088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dam.sys
2013-04-30 13:54 - 2012-10-10 23:13 - 00033512 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\battc.sys
2013-04-30 13:54 - 2012-10-10 23:08 - 00562392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys
2013-04-30 13:54 - 2012-10-10 23:01 - 00503080 ____A (Microsoft Corporation) C:\Windows\System32\ci.dll
2013-04-30 13:54 - 2012-10-10 21:56 - 02115952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2013-04-30 13:54 - 2012-10-10 21:46 - 01395712 ____A (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll
2013-04-30 13:54 - 2012-10-10 21:46 - 00816128 ____A (Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe
2013-04-30 13:54 - 2012-10-10 21:46 - 00517120 ____A (Microsoft Corporation) C:\Windows\System32\winlogon.exe
2013-04-30 13:54 - 2012-10-10 21:46 - 00373760 ____A (Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe
2013-04-30 13:54 - 2012-10-10 21:46 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe
2013-04-30 13:54 - 2012-10-10 21:46 - 00154112 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Storage.Compression.dll
2013-04-30 13:54 - 2012-10-10 21:46 - 00049664 ____A (Microsoft Corporation) C:\Windows\System32\BdeUISrv.exe
2013-04-30 13:54 - 2012-10-10 21:46 - 00024576 ____A (Microsoft Corporation) C:\Windows\System32\wfapigp.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 03554304 ____A (Microsoft Corporation) C:\Windows\System32\tquery.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 01045504 ____A (Microsoft Corporation) C:\Windows\System32\usercpl.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 00590848 ____A (Microsoft Corporation) C:\Windows\System32\SHCore.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 00579584 ____A (Microsoft Corporation) C:\Windows\System32\StructuredQuery.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 00505344 ____A (Microsoft Corporation) C:\Windows\System32\SpaceControl.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 00370176 ____A (Microsoft Corporation) C:\Windows\System32\SysFxUI.dll
2013-04-30 13:54 - 2012-10-10 21:45 - 00055808 ____A (Microsoft Corporation) C:\Windows\System32\PCPKsp.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 02116096 ____A (Microsoft Corporation) C:\Windows\System32\mssrch.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 01265152 ____A (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00904192 ____A (Microsoft Corporation) C:\Windows\System32\MPSSVC.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00745984 ____A (Microsoft Corporation) C:\Windows\System32\mssvp.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00561152 ____A (Microsoft Corporation) C:\Windows\System32\mfmp4srcsnk.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00435712 ____A (Microsoft Corporation) C:\Windows\System32\mssph.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00355328 ____A (Microsoft Corporation) C:\Windows\System32\mswsock.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00264704 ____A (Microsoft Corporation) C:\Windows\System32\ListSvc.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00259584 ____A (Microsoft Corporation) C:\Windows\System32\input.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00246272 ____A (Microsoft Corporation) C:\Windows\System32\mssphtb.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00105984 ____A (Microsoft Corporation) C:\Windows\System32\icfupgd.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00102400 ____A (Microsoft Corporation) C:\Windows\System32\mssitlb.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00096256 ____A (Microsoft Corporation) C:\Windows\System32\mssprxy.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\msscntrs.dll
2013-04-30 13:54 - 2012-10-10 21:44 - 00014336 ____A (Microsoft Corporation) C:\Windows\System32\msshooks.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 02206208 ____A (Microsoft Corporation) C:\Windows\System32\dwmcore.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 01836032 ____A (Microsoft Corporation) C:\Windows\System32\DWrite.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 01294336 ____A (Microsoft Corporation) C:\Windows\System32\gdi32.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 01280000 ____A (Microsoft Corporation) C:\Windows\System32\FntCache.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00757760 ____A (Microsoft Corporation) C:\Windows\System32\FirewallAPI.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00331776 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcore.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00244224 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcore6.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00190976 ____A (Microsoft Corporation) C:\Windows\System32\bdesvc.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00118784 ____A (Microsoft Corporation) C:\Windows\System32\AppxSip.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00081920 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcsvc.dll
2013-04-30 13:54 - 2012-10-10 21:43 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\dhcpcsvc6.dll
2013-04-30 13:54 - 2012-10-10 21:42 - 00612416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2013-04-30 13:54 - 2012-10-10 21:23 - 00034816 ____A (Microsoft Corporation) C:\Windows\System32\microsoft-windows-pdc.dll
2013-04-30 13:54 - 2012-10-10 21:23 - 00007680 ____A (Microsoft Corporation) C:\Windows\System32\kbdhebl3.dll
2013-04-30 13:54 - 2012-10-10 21:19 - 00005632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\drmkaud.sys
2013-04-30 13:54 - 2012-10-10 21:18 - 00111616 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\drmk.sys
2013-04-30 13:54 - 2012-10-10 21:16 - 00286208 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\portcls.sys
2013-04-30 13:54 - 2012-10-10 21:15 - 00074752 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mpsdrv.sys
2013-04-30 13:54 - 2012-10-10 21:08 - 00671232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2013-04-30 13:54 - 2012-10-10 21:08 - 00303104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2013-04-30 13:54 - 2012-10-10 21:08 - 00170496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2013-04-30 13:54 - 2012-10-10 21:07 - 02764288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 01226752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 00962560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 00460800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 00414720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 00116224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 00047616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll
2013-04-30 13:54 - 2012-10-10 21:07 - 00019968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 01841152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 01610240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 01420800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00658432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00653824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00550912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00411136 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00408064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00289280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00270336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00219648 ____A (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00204800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00186880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00094208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00060416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00051712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00035328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2013-04-30 13:54 - 2012-10-10 21:06 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2013-04-30 13:54 - 2012-10-10 21:05 - 00099840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2013-04-30 13:54 - 2012-10-10 20:42 - 00007168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kbdhebl3.dll
2013-04-30 13:54 - 2012-10-10 19:11 - 01022464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-04-30 13:54 - 2012-10-10 16:45 - 00478424 ____A C:\Windows\SysWOW64\locale.nls
2013-04-30 13:54 - 2012-10-10 16:44 - 00478424 ____A C:\Windows\System32\locale.nls
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437668578.txt
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437665531.txt
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437663546.txt
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437663484.txt
2013-04-26 07:43 - 2013-04-26 07:43 - 00000117 ____A C:\Windows\System32\netcfg-69901125.txt
2013-04-26 07:43 - 2013-04-26 07:43 - 00000117 ____A C:\Windows\System32\netcfg-69899296.txt
2013-04-25 17:13 - 2013-04-25 17:13 - 00019229 ____A C:\Users\nbuswell\Downloads\mccapes_extra_151a_20130321_2321.zip
2013-04-25 17:08 - 2012-10-23 20:54 - 00396008 ____A (Microsoft Corporation) C:\Windows\System32\hal.dll
2013-04-25 16:53 - 2013-04-25 16:53 - 01973350 ____A C:\Users\nbuswell\Downloads\minecraftforge-universal-1.5.1-7.7.1.674.zip
 
Part 3

2013-04-25 16:53 - 2013-04-25 16:53 - 00351820 ____A C:\Users\nbuswell\Downloads\OptiFine_1.5.1_HD_D1.zip
2013-04-25 16:52 - 2013-04-25 16:52 - 00014347 ____A C:\Users\nbuswell\Downloads\iChunUtil1.0.0.zip
2013-04-25 16:51 - 2013-04-25 16:51 - 00620705 ____A C:\Users\nbuswell\Downloads\PortalGun1.5.1.zip
2013-04-25 16:17 - 2013-04-25 16:17 - 00865576 ____A (SetupManager) C:\Users\nbuswell\Downloads\Setup.exe
2013-04-25 15:12 - 2012-11-26 22:39 - 01122768 ____A (Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
2013-04-25 15:12 - 2012-11-26 20:49 - 01027152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2013-04-25 15:12 - 2012-11-26 20:20 - 01217536 ____A (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2013-04-25 15:12 - 2012-11-26 20:20 - 01123840 ____A (Microsoft Corporation) C:\Windows\System32\mstsc.exe
2013-04-25 15:12 - 2012-11-26 20:20 - 01048064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2013-04-25 15:12 - 2012-11-26 20:20 - 00798208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2013-04-25 15:12 - 2012-11-26 20:20 - 00702464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2013-04-25 15:12 - 2012-11-26 20:20 - 00680960 ____A (Microsoft Corporation) C:\Windows\System32\vds.exe
2013-04-25 15:12 - 2012-11-26 20:20 - 00560128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll
2013-04-25 15:12 - 2012-11-26 20:20 - 00179200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2013-04-25 15:12 - 2012-11-26 20:20 - 00046592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll
2013-04-25 15:12 - 2012-11-26 20:19 - 03245568 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2013-04-25 15:12 - 2012-11-26 20:19 - 01536512 ____A (Microsoft Corporation) C:\Windows\System32\storagewmi.dll
2013-04-25 15:12 - 2012-11-26 20:19 - 00955904 ____A (Microsoft Corporation) C:\Windows\System32\WebcamUi.dll
2013-04-25 15:12 - 2012-11-26 20:19 - 00631808 ____A (Microsoft Corporation) C:\Windows\System32\UserLanguagesCpl.dll
2013-04-25 15:12 - 2012-11-26 20:19 - 00245248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2013-04-25 15:12 - 2012-11-26 20:19 - 00244736 ____A (Microsoft Corporation) C:\Windows\System32\wpnapps.dll
2013-04-25 15:12 - 2012-11-26 20:18 - 01071104 ____A (Microsoft Corporation) C:\Windows\System32\IKEEXT.DLL
2013-04-25 15:12 - 2012-11-26 20:18 - 00888832 ____A (Microsoft Corporation) C:\Windows\System32\nshwfp.dll
2013-04-25 15:12 - 2012-11-26 20:18 - 00378880 ____A (Microsoft Corporation) C:\Windows\System32\FWPUCLNT.DLL
2013-04-25 15:12 - 2012-11-26 20:17 - 00718848 ____A (Microsoft Corporation) C:\Windows\System32\BFE.DLL
2013-04-25 15:12 - 2012-10-12 00:08 - 00027880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpvideominiport.sys
2013-04-25 15:12 - 2012-10-11 22:14 - 00036352 ____A (Microsoft Corporation) C:\Windows\System32\rfxvmt.dll
2013-04-25 15:12 - 2012-10-11 21:50 - 00235520 ____A (Microsoft Corporation) C:\Windows\System32\rdpudd.dll
2013-04-25 15:12 - 2012-09-10 21:28 - 00023552 ____A (Microsoft Corporation) C:\Windows\System32\vdsldr.exe
2013-04-25 15:12 - 2012-09-10 21:27 - 00190976 ____A (Microsoft Corporation) C:\Windows\System32\vdsutil.dll
2013-04-25 15:12 - 2012-09-10 21:27 - 00120832 ____A (Microsoft Corporation) C:\Windows\System32\vds_ps.dll
2013-04-25 13:34 - 2013-04-25 13:34 - 00001459 ____A C:\Users\nbuswell\Downloads\$600 pc build.txt
2013-04-25 13:25 - 2012-11-07 20:25 - 00523776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2013-04-25 13:25 - 2012-11-07 20:25 - 00143872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2013-04-25 13:25 - 2012-11-07 20:25 - 00124928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-04-25 13:25 - 2012-11-07 20:22 - 00641536 ____A (Microsoft Corporation) C:\Windows\System32\WSShared.dll
2013-04-25 13:25 - 2012-11-07 20:22 - 00198656 ____A (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.dll
2013-04-25 13:25 - 2012-11-07 20:22 - 00163840 ____A (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-04-25 12:46 - 2013-04-25 12:46 - 00903072 ____A (Oracle Corporation) C:\Users\nbuswell\Downloads\chromeinstall-7u21 (1).exe
2013-04-25 12:45 - 2013-04-25 12:45 - 00003915 ____A C:\Windows\SysWOW64\jupdate-1.7.0_21-b11.log
2013-04-25 12:45 - 2013-04-04 01:35 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-04-25 12:45 - 2013-04-04 01:30 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-04-25 12:45 - 2013-04-04 01:29 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-04-25 12:44 - 2013-04-25 12:44 - 00903072 ____A (Oracle Corporation) C:\Users\nbuswell\Downloads\chromeinstall-7u21.exe
2013-04-25 12:32 - 2012-11-05 23:33 - 01566432 ____A (Microsoft Corporation) C:\Windows\System32\ole32.dll
2013-04-25 12:32 - 2012-11-05 23:33 - 00490064 ____A (Microsoft Corporation) C:\Windows\System32\AudioEng.dll
2013-04-25 12:32 - 2012-11-05 23:33 - 00447792 ____A (Microsoft Corporation) C:\Windows\System32\AudioSes.dll
2013-04-25 12:32 - 2012-11-05 23:33 - 00253512 ____A (Microsoft Corporation) C:\Windows\System32\audiodg.exe
2013-04-25 12:32 - 2012-11-05 21:00 - 00427568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2013-04-25 12:32 - 2012-11-05 21:00 - 00324344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2013-04-25 12:32 - 2012-11-05 20:48 - 01150160 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2013-04-25 12:32 - 2012-11-05 20:20 - 00883712 ____A (Microsoft Corporation) C:\Windows\HelpPane.exe
2013-04-25 12:32 - 2012-11-05 20:20 - 00516608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2013-04-25 12:32 - 2012-11-05 20:19 - 08552448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll
2013-04-25 12:32 - 2012-11-05 20:19 - 01451520 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2013-04-25 12:32 - 2012-11-05 20:19 - 01386496 ____A (Microsoft Corporation) C:\Windows\System32\wlansvc.dll
2013-04-25 12:32 - 2012-11-05 20:19 - 00710656 ____A (Microsoft Corporation) C:\Windows\System32\winhttp.dll
2013-04-25 12:32 - 2012-11-05 20:18 - 11459584 ____A (Microsoft Corporation) C:\Windows\System32\glcndFilter.dll
2013-04-25 12:32 - 2012-11-05 20:18 - 01526784 ____A (Microsoft Corporation) C:\Windows\System32\mfcore.dll
2013-04-25 12:32 - 2012-11-05 20:18 - 01037312 ____A (Microsoft Corporation) C:\Windows\System32\localspl.dll
2013-04-25 12:32 - 2012-11-05 20:18 - 00976384 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2013-04-25 12:32 - 2012-11-05 20:17 - 00785920 ____A (Microsoft Corporation) C:\Windows\System32\audiosrv.dll
2013-04-25 12:31 - 2012-11-05 23:52 - 00277736 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\msiscsi.sys
2013-04-25 12:31 - 2012-11-05 23:33 - 00522640 ____A (Microsoft Corporation) C:\Windows\System32\AUDIOKSE.dll
2013-04-25 12:31 - 2012-11-05 21:00 - 00463768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2013-04-25 12:31 - 2012-11-05 20:20 - 00386560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2013-04-25 12:31 - 2012-11-05 20:20 - 00375296 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2013-04-25 12:31 - 2012-11-05 20:20 - 00314880 ____A (Microsoft Corporation) C:\Windows\System32\rdpclip.exe
2013-04-25 12:31 - 2012-11-05 20:20 - 00202240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2013-04-25 12:31 - 2012-11-05 20:20 - 00093696 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2013-04-25 12:31 - 2012-11-05 20:20 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00470016 ____A (Microsoft Corporation) C:\Windows\System32\wlanmsm.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00466944 ____A (Microsoft Corporation) C:\Windows\System32\wcncsvc.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00446464 ____A (Microsoft Corporation) C:\Windows\System32\wlansec.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00273408 ____A (Microsoft Corporation) C:\Windows\System32\wlanapi.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00214528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00126976 ____A (Microsoft Corporation) C:\Windows\System32\WcnApi.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00126464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\wfdprov.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00027136 ____A (Microsoft Corporation) C:\Windows\System32\WcnEapPeerProxy.dll
2013-04-25 12:31 - 2012-11-05 20:19 - 00026624 ____A (Microsoft Corporation) C:\Windows\System32\WcnEapAuthProxy.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00501760 ____A (Microsoft Corporation) C:\Windows\System32\DevicePairing.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00449536 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00281088 ____A (Microsoft Corporation) C:\Windows\System32\mfreadwrite.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00267264 ____A (Microsoft Corporation) C:\Windows\System32\EncDump.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00189440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2013-04-25 12:31 - 2012-11-05 20:18 - 00172032 ____A (Microsoft Corporation) C:\Windows\System32\MFCaptureEngine.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00102400 ____A (Microsoft Corporation) C:\Windows\System32\fdWCN.dll
2013-04-25 12:31 - 2012-11-05 20:18 - 00084992 ____A (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2013-04-25 12:31 - 2012-11-05 20:17 - 00212992 ____A (Microsoft Corporation) C:\Windows\System32\bthprops.cpl
2013-04-25 12:31 - 2012-11-05 20:17 - 00169472 ____A (Microsoft Corporation) C:\Windows\System32\AudioEndpointBuilder.dll
2013-04-25 12:31 - 2012-11-05 20:17 - 00110080 ____A (Microsoft Corporation) C:\Windows\System32\dafWCN.dll
2013-04-25 12:31 - 2012-11-05 20:00 - 00016384 ____A (Microsoft Corporation) C:\Windows\System32\iscsilog.dll
2013-04-25 12:31 - 2012-11-05 19:58 - 00009728 ____A (Microsoft Corporation) C:\Windows\System32\wlanhlp.dll
2013-04-25 12:31 - 2012-11-05 19:56 - 00009728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2013-04-25 12:31 - 2012-11-05 19:55 - 00090624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\amdk8.sys
2013-04-25 12:31 - 2012-11-05 19:55 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\intelppm.sys
2013-04-25 12:31 - 2012-11-05 19:55 - 00088064 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\amdppm.sys
2013-04-25 12:31 - 2012-11-05 19:55 - 00087552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\processr.sys
2013-04-25 12:31 - 2012-11-05 19:55 - 00022528 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\fxppm.sys
2013-04-25 12:31 - 2012-11-05 19:54 - 00859136 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys
2013-04-25 12:31 - 2012-11-05 19:53 - 00560640 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys
2013-04-25 12:31 - 2012-11-05 19:51 - 00665600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2013-04-25 12:10 - 2012-09-20 01:10 - 02367528 ____A (Microsoft Corporation) C:\Windows\System32\WSService.dll
2013-04-25 12:10 - 2012-09-19 23:55 - 03265256 ____A (Broadcom Corporation) C:\Windows\System32\Drivers\evbda.sys
2013-04-25 12:09 - 2012-09-20 00:40 - 00389360 ____A (Microsoft Corporation) C:\Windows\System32\MMDevAPI.dll
2013-04-25 12:09 - 2012-09-20 00:28 - 01825208 ____A (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2013-04-25 12:09 - 2012-09-19 23:55 - 00533224 ____A (Broadcom Corporation) C:\Windows\System32\Drivers\bxvbda.sys
2013-04-25 12:09 - 2012-09-19 22:33 - 14259712 ____A (Microsoft Corporation) C:\Windows\System32\wmp.dll
2013-04-25 12:09 - 2012-09-19 22:33 - 03964416 ____A (Microsoft Corporation) C:\Windows\System32\WinSAT.exe
2013-04-25 12:09 - 2012-09-19 22:33 - 02397184 ____A (Microsoft Corporation) C:\Windows\System32\WpcMon.exe
2013-04-25 12:09 - 2012-09-19 22:33 - 01513984 ____A (Microsoft Corporation) C:\Windows\System32\vssapi.dll
2013-04-25 12:09 - 2012-09-19 22:33 - 01304064 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Media.Streaming.dll
2013-04-25 12:09 - 2012-09-19 22:33 - 00757248 ____A (Microsoft Corporation) C:\Windows\System32\uDWM.dll
2013-04-25 12:09 - 2012-09-19 22:32 - 01739264 ____A (Microsoft Corporation) C:\Windows\System32\RacEngn.dll
2013-04-25 12:09 - 2012-09-19 22:32 - 01019392 ____A (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.dll
2013-04-25 12:09 - 2012-09-19 22:32 - 00762368 ____A (Microsoft Corporation) C:\Windows\System32\provcore.dll
2013-04-25 12:09 - 2012-09-19 22:30 - 03847168 ____A (Microsoft Corporation) C:\Windows\System32\d2d1.dll
2013-04-25 12:09 - 2012-09-19 22:30 - 02219008 ____A (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2013-04-25 12:09 - 2012-09-19 21:55 - 11875328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-04-25 12:09 - 2012-09-19 21:53 - 03296256 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2013-04-25 12:08 - 2012-09-20 01:08 - 00027280 ____A (Microsoft Corporation) C:\Windows\System32\avrt.dll
2013-04-25 12:08 - 2012-09-20 00:31 - 00425192 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\acpi.sys
2013-04-25 12:08 - 2012-09-19 23:55 - 00120040 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\msgpioclx.sys
2013-04-25 12:08 - 2012-09-19 23:03 - 00465128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\fvevol.sys
2013-04-25 12:08 - 2012-09-19 22:48 - 00062488 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dumpfve.sys
2013-04-25 12:08 - 2012-09-19 22:47 - 00307192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00866304 ____A (Microsoft Corporation) C:\Windows\System32\WinTypes.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00573440 ____A (Microsoft Corporation) C:\Windows\System32\WinSATAPI.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00545280 ____A (Microsoft Corporation) C:\Windows\System32\taskeng.exe
2013-04-25 12:08 - 2012-09-19 22:33 - 00541184 ____A (Microsoft Corporation) C:\Windows\System32\VAN.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00457216 ____A (Microsoft Corporation) C:\Windows\System32\wpncore.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00420352 ____A (Microsoft Corporation) C:\Windows\System32\WWAHost.exe
2013-04-25 12:08 - 2012-09-19 22:33 - 00410624 ____A (Microsoft Corporation) C:\Windows\System32\services.exe
2013-04-25 12:08 - 2012-09-19 22:33 - 00390144 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Networking.BackgroundTransfer.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00344064 ____A (Microsoft Corporation) C:\Windows\System32\wlidcredprov.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00332800 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00249344 ____A (Microsoft Corporation) C:\Windows\System32\wpnprv.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00203776 ____A (Microsoft Corporation) C:\Windows\System32\WSClient.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00177152 ____A (Microsoft Corporation) C:\Windows\System32\WSSync.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00101888 ____A (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
2013-04-25 12:08 - 2012-09-19 22:33 - 00090624 ____A (Microsoft Corporation) C:\Windows\System32\TpmTasks.dll
2013-04-25 12:08 - 2012-09-19 22:33 - 00029696 ____A (Microsoft Corporation) C:\Windows\System32\svchost.exe
2013-04-25 12:08 - 2012-09-19 22:32 - 01400832 ____A (Microsoft Corporation) C:\Windows\System32\propsys.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00256512 ____A (Microsoft Corporation) C:\Windows\System32\msvproc.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00228352 ____A (Microsoft Corporation) C:\Windows\System32\ProximityService.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00121856 ____A (Microsoft Corporation) C:\Windows\System32\rascfg.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00112128 ____A (Microsoft Corporation) C:\Windows\System32\PackageStateRoaming.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00093696 ____A (Microsoft Corporation) C:\Windows\System32\psmsrv.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00065536 ____A (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll
2013-04-25 12:08 - 2012-09-19 22:32 - 00034816 ____A (Microsoft Corporation) C:\Windows\System32\perfdisk.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00755200 ____A (Microsoft Corporation) C:\Windows\System32\fveapi.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00617984 ____A (Microsoft Corporation) C:\Windows\System32\mfsrcsnk.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00604672 ____A (Microsoft Corporation) C:\Windows\System32\dnsapi.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00355328 ____A (Microsoft Corporation) C:\Windows\System32\mfsvr.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00240640 ____A (Microsoft Corporation) C:\Windows\System32\fveapibase.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00236544 ____A (Microsoft Corporation) C:\Windows\System32\MFPlay.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00231936 ____A (Microsoft Corporation) C:\Windows\System32\fhengine.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00172544 ____A (Microsoft Corporation) C:\Windows\System32\dwmredir.dll
2013-04-25 12:08 - 2012-09-19 22:31 - 00155136 ____A (Microsoft Corporation) C:\Windows\System32\IPHLPAPI.DLL
2013-04-25 12:08 - 2012-09-19 22:31 - 00080896 ____A (Microsoft Corporation) C:\Windows\System32\mmcss.dll
2013-04-25 12:08 - 2012-09-19 22:30 - 02016256 ____A (Microsoft Corporation) C:\Windows\System32\batmeter.dll
2013-04-25 12:08 - 2012-09-19 22:30 - 01743872 ____A (Microsoft Corporation) C:\Windows\System32\combase.dll
2013-04-25 12:08 - 2012-09-19 22:30 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\appwiz.cpl
2013-04-25 12:08 - 2012-09-19 22:30 - 00634880 ____A (Microsoft Corporation) C:\Windows\System32\apphelp.dll
2013-04-25 12:08 - 2012-09-19 22:30 - 00190976 ____A (Microsoft Corporation) C:\Windows\System32\aelupsvc.dll
2013-04-25 12:08 - 2012-09-19 22:30 - 00180736 ____A (Microsoft Corporation) C:\Windows\System32\bcdsrv.dll
2013-04-25 12:08 - 2012-09-19 22:30 - 00179712 ____A (Microsoft Corporation) C:\Windows\System32\bisrv.dll
2013-04-25 12:08 - 2012-09-19 22:26 - 01409376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-04-25 12:08 - 2012-09-19 22:13 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\microsoft-windows-kernel-power-events.dll
2013-04-25 12:08 - 2012-09-19 22:13 - 00023656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\avrt.dll
2013-04-25 12:08 - 2012-09-19 22:08 - 00571392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\csc.sys
2013-04-25 12:08 - 2012-09-19 21:55 - 00995328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2013-04-25 12:08 - 2012-09-19 21:55 - 00465920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2013-04-25 12:08 - 2012-09-19 21:55 - 00333824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2013-04-25 12:08 - 2012-09-19 21:55 - 00303616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll
2013-04-25 12:08 - 2012-09-19 21:55 - 00265216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-04-25 12:08 - 2012-09-19 21:55 - 00166912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2013-04-25 12:08 - 2012-09-19 21:55 - 00154624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll
2013-04-25 12:08 - 2012-09-19 21:55 - 00023040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
2013-04-25 12:08 - 2012-09-19 21:54 - 01369600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 01196032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 01137152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00709632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00533504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00509952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00480768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00449024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00180224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00108544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00089088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2013-04-25 12:08 - 2012-09-19 21:54 - 00031232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfdisk.dll
2013-04-25 12:08 - 2012-09-19 21:53 - 02033664 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2013-04-25 12:08 - 2012-09-19 21:53 - 02007040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll
2013-04-25 12:08 - 2012-09-19 21:53 - 01247232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2013-04-25 12:08 - 2012-09-19 21:53 - 00675840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2013-04-25 12:08 - 2012-09-19 21:53 - 00670208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2013-04-25 12:08 - 2012-09-19 21:53 - 00461824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2013-04-25 12:08 - 2012-09-19 21:53 - 00119808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2013-04-25 12:07 - 2012-09-20 00:04 - 00100072 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2013-04-25 12:07 - 2012-09-19 22:33 - 01342464 ____A (Microsoft Corporation) C:\Windows\System32\user32.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00699392 ____A (Microsoft Corporation) C:\Windows\System32\twinapi.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00627712 ____A (Microsoft Corporation) C:\Windows\System32\lpksetup.exe
2013-04-25 12:07 - 2012-09-19 22:33 - 00588800 ____A (Microsoft Corporation) C:\Windows\System32\webio.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00194048 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00142848 ____A (Microsoft Corporation) C:\Windows\System32\fhmanagew.exe
2013-04-25 12:07 - 2012-09-19 22:33 - 00117760 ____A (Microsoft Corporation) C:\Windows\System32\dwm.exe
2013-04-25 12:07 - 2012-09-19 22:33 - 00110592 ____A C:\Windows\System32\OEMLicense.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00107008 ____A (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00092672 ____A (Microsoft Corporation) C:\Windows\System32\drvinst.exe
2013-04-25 12:07 - 2012-09-19 22:33 - 00092160 ____A (Microsoft Corporation) C:\Windows\System32\lpremove.exe
2013-04-25 12:07 - 2012-09-19 22:33 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\umpo.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00069632 ____A (Microsoft Corporation) C:\Windows\System32\vsstrace.dll
2013-04-25 12:07 - 2012-09-19 22:33 - 00060928 ____A (Microsoft Corporation) C:\Windows\System32\ndptsp.tsp
2013-04-25 12:07 - 2012-09-19 22:33 - 00047104 ____A (Microsoft Corporation) C:\Windows\System32\kmddsp.tsp
2013-04-25 12:07 - 2012-09-19 22:33 - 00035840 ____A (Microsoft Corporation) C:\Windows\System32\lsass.exe
2013-04-25 12:07 - 2012-09-19 22:33 - 00025088 ____A (Microsoft Corporation) C:\Windows\System32\sdbinst.exe
2013-04-25 12:07 - 2012-09-19 22:32 - 00189952 ____A (Microsoft Corporation) C:\Windows\System32\perfos.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00163328 ____A (Microsoft Corporation) C:\Windows\System32\sspicli.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\RpcEpMap.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00075264 ____A (Microsoft Corporation) C:\Windows\System32\rasdiag.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00044544 ____A (Microsoft Corporation) C:\Windows\System32\perfctrs.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00041984 ____A (Microsoft Corporation) C:\Windows\System32\rasmxs.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00037888 ____A (Microsoft Corporation) C:\Windows\System32\perfproc.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00029696 ____A (Microsoft Corporation) C:\Windows\System32\rasser.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\sspisrv.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00023552 ____A (Microsoft Corporation) C:\Windows\System32\perfnet.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\MUILanguageCleanup.dll
 
Part 4

2013-04-25 12:07 - 2012-09-19 22:32 - 00009728 ____A (Microsoft Corporation) C:\Windows\System32\spwmp.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00006656 ____A (Microsoft Corporation) C:\Windows\System32\shimeng.dll
2013-04-25 12:07 - 2012-09-19 22:32 - 00006144 ____A (Microsoft Corporation) C:\Windows\System32\msdxm.ocx
2013-04-25 12:07 - 2012-09-19 22:32 - 00006144 ____A (Microsoft Corporation) C:\Windows\System32\dxmasf.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00459776 ____A (Microsoft Corporation) C:\Windows\System32\dxgi.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00437760 ____A (Microsoft Corporation) C:\Windows\System32\mfh264enc.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00315392 ____A (Microsoft Corporation) C:\Windows\System32\fhcfg.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00280576 ____A (Microsoft Corporation) C:\Windows\System32\fhcat.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00210432 ____A (Microsoft Corporation) C:\Windows\System32\dnsrslvr.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00137728 ____A (Microsoft Corporation) C:\Windows\System32\fhshl.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00118272 ____A (Microsoft Corporation) C:\Windows\System32\DevPropMgr.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00116736 ____A (Microsoft Corporation) C:\Windows\System32\fhsvc.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00080896 ____A (Microsoft Corporation) C:\Windows\System32\fhsrchapi.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00070656 ____A (Microsoft Corporation) C:\Windows\System32\fhevents.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00067584 ____A (Microsoft Corporation) C:\Windows\System32\fhsrchph.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00064000 ____A (Microsoft Corporation) C:\Windows\System32\fhlisten.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00064000 ____A (Microsoft Corporation) C:\Windows\System32\fhautoplay.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00053760 ____A (Microsoft Corporation) C:\Windows\System32\fhcleanup.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00038400 ____A (Microsoft Corporation) C:\Windows\System32\fhtask.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00037888 ____A (Microsoft Corporation) C:\Windows\System32\LangCleanupSysprepAction.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00020480 ____A (Microsoft Corporation) C:\Windows\System32\fhsvcctl.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00017408 ____A (Microsoft Corporation) C:\Windows\System32\eventcls.dll
2013-04-25 12:07 - 2012-09-19 22:31 - 00008704 ____A (Microsoft Corporation) C:\Windows\System32\lpksetupproxyserv.dll
2013-04-25 12:07 - 2012-09-19 22:30 - 02066432 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll
2013-04-25 12:07 - 2012-09-19 22:30 - 00156672 ____A (Microsoft Corporation) C:\Windows\System32\DAFWSD.dll
2013-04-25 12:07 - 2012-09-19 22:30 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\CscMig.dll
2013-04-25 12:07 - 2012-09-19 22:30 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-04-25 12:07 - 2012-09-19 22:12 - 09374208 ____A (Microsoft Corporation) C:\Windows\System32\wmploc.DLL
2013-04-25 12:07 - 2012-09-19 22:09 - 00025088 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndistapi.sys
2013-04-25 12:07 - 2012-09-19 22:09 - 00022528 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ws2ifsl.sys
2013-04-25 12:07 - 2012-09-19 22:08 - 00071168 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hdaudbus.sys
2013-04-25 12:07 - 2012-09-19 22:08 - 00060416 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndproxy.sys
2013-04-25 12:07 - 2012-09-19 22:07 - 00210304 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbvideo.sys
2013-04-25 12:07 - 2012-09-19 22:05 - 00083456 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\wanarp.sys
2013-04-25 12:07 - 2012-09-19 21:55 - 00417280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2013-04-25 12:07 - 2012-09-19 21:55 - 00267776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2013-04-25 12:07 - 2012-09-19 21:55 - 00263168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll
2013-04-25 12:07 - 2012-09-19 21:55 - 00239616 ____A (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2013-04-25 12:07 - 2012-09-19 21:55 - 00083968 ____A C:\Windows\SysWOW64\OEMLicense.dll
2013-04-25 12:07 - 2012-09-19 21:55 - 00080896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2013-04-25 12:07 - 2012-09-19 21:55 - 00080384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2013-04-25 12:07 - 2012-09-19 21:55 - 00051200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp
2013-04-25 12:07 - 2012-09-19 21:55 - 00038912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2013-04-25 12:07 - 2012-09-19 21:55 - 00021504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2013-04-25 12:07 - 2012-09-19 21:54 - 00413184 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00270336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00214528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00059392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00052224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfctrs.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00034816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00033792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfos.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00032768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00022016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00021504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\perfnet.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00009216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00005632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2013-04-25 12:07 - 2012-09-19 21:54 - 00004608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2013-04-25 12:07 - 2012-09-19 21:54 - 00004608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2013-04-25 12:07 - 2012-09-19 21:53 - 01701376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-04-25 12:07 - 2012-09-19 21:53 - 00366080 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2013-04-25 12:07 - 2012-09-19 21:53 - 00025088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-04-25 12:07 - 2012-09-19 21:53 - 00015360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2013-04-25 12:07 - 2012-09-19 21:32 - 09374208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-04-25 12:07 - 2012-09-19 20:13 - 00098816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-04-25 12:07 - 2012-09-19 20:10 - 01126912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2013-04-25 12:04 - 2013-04-25 12:52 - 00000000 ____D C:\Users\nbuswell\Desktop\Minecraft Server
2013-04-25 12:02 - 2013-04-25 12:02 - 02541261 ____A C:\Users\nbuswell\Downloads\Minecraft_Server.exe
2013-04-25 12:01 - 2013-04-25 12:02 - 07734377 ____A C:\Users\nbuswell\Downloads\Survival Island.zip
2013-04-25 11:42 - 2013-04-25 11:42 - 00000117 ____A C:\Windows\System32\netcfg-112859.txt
2013-04-25 11:39 - 2013-04-25 11:39 - 00000117 ____A C:\Windows\System32\netcfg-68586828.txt
2013-04-25 11:39 - 2012-09-26 23:17 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\newdev.exe
2013-04-25 11:39 - 2012-09-26 23:17 - 00075264 ____A (Microsoft Corporation) C:\Windows\System32\ndadmin.exe
2013-04-25 11:39 - 2012-09-26 23:15 - 00301568 ____A (Microsoft Corporation) C:\Windows\System32\newdev.dll
2013-04-25 11:39 - 2012-09-26 22:35 - 00074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\newdev.exe
2013-04-25 11:39 - 2012-09-26 22:35 - 00073728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ndadmin.exe
2013-04-25 11:39 - 2012-09-26 22:34 - 00275968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2013-04-25 11:38 - 2013-04-25 11:38 - 00029220 ____A C:\Windows\DirectX.log
2013-04-25 11:38 - 2013-04-25 11:38 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2013-04-25 11:37 - 2013-04-25 11:38 - 00000000 ____D C:\c1d6b861f88f9bfc667a
2013-04-25 11:31 - 2012-10-01 23:34 - 00446976 ____A (Microsoft Corporation) C:\Windows\System32\wwansvc.dll
2013-04-25 11:31 - 2012-10-01 23:34 - 00068608 ____A (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll
2013-04-25 11:30 - 2013-04-25 11:35 - 07878008 ____A (Microsoft Corporation) C:\Users\nbuswell\Downloads\Xbox360_64Eng.exe
2013-04-25 11:09 - 2013-04-25 11:09 - 00000117 ____A C:\Windows\System32\netcfg-66778437.txt
2013-04-25 11:09 - 2013-04-25 11:09 - 00000117 ____A C:\Windows\System32\netcfg-66775468.txt
2013-04-24 16:50 - 2013-04-24 16:50 - 00886409 ____A C:\Users\nbuswell\Downloads\pbsetup.zip
2013-04-24 12:25 - 2013-04-24 12:25 - 00485359 ____A C:\Users\nbuswell\Downloads\metro_for_steam___2_9_by_boneyardbrew-d4u3kjv.zip
2013-04-24 12:24 - 2013-04-24 12:24 - 00052224 ____A C:\Users\nbuswell\Downloads\settings.exe
2013-04-24 12:09 - 2013-04-24 12:09 - 00000117 ____A C:\Windows\System32\netcfg-90208484.txt
2013-04-24 12:09 - 2013-04-24 12:09 - 00000117 ____A C:\Windows\System32\netcfg-90202593.txt
2013-04-23 18:39 - 2013-04-23 18:39 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\Softland
2013-04-23 18:39 - 2013-04-23 18:39 - 00000000 ____D C:\Program Files\Softland
2013-04-23 18:39 - 2013-02-13 10:17 - 00026432 ____A (Softland) C:\Windows\System32\novamnp7.dll
2013-04-23 18:39 - 2013-02-13 10:17 - 00022336 ____A (Softland) C:\Windows\System32\novamip7.dll
2013-04-23 18:39 - 2011-11-22 13:05 - 00007549 ____A C:\Windows\System32\novap7.ctm
2013-04-23 18:37 - 2013-04-23 18:37 - 06841632 ____A (Softland ) C:\Users\nbuswell\Downloads\novapp.exe
2013-04-23 18:08 - 2013-04-23 18:14 - 00026680 ____A C:\Users\nbuswell\Desktop\Economies Around the World.odt
2013-04-23 14:34 - 2013-04-23 14:34 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-04-23 14:34 - 2013-04-23 14:34 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-04-23 07:24 - 2013-04-23 07:24 - 00001135 ____A C:\Windows\System32\netcfg-65925031.txt
2013-04-23 07:24 - 2013-04-23 07:24 - 00000117 ____A C:\Windows\System32\netcfg-65920750.txt
2013-04-23 07:24 - 2013-04-23 07:24 - 00000117 ____A C:\Windows\System32\netcfg-65917703.txt
2013-04-22 18:14 - 2013-04-22 18:14 - 00000000 ____D C:\Windows\System32\appmgmt
2013-04-22 18:09 - 2013-04-22 18:09 - 00001091 ____A C:\Windows\System32\netcfg-18198375.txt
2013-04-22 16:41 - 2013-04-22 16:41 - 00000000 ____D C:\Users\nbuswell\Desktop\Nates 8GB
2013-04-22 16:38 - 2013-04-22 16:38 - 00000117 ____A C:\Windows\System32\netcfg-12734625.txt
2013-04-22 16:38 - 2013-04-22 16:38 - 00000117 ____A C:\Windows\System32\netcfg-12730468.txt
2013-04-22 13:51 - 2013-04-23 17:43 - 00000000 ____D C:\Users\nbuswell\Desktop\Tennessee Trip
2013-04-22 13:09 - 2013-04-22 13:09 - 00000128 ____A C:\Windows\System32\netcfg-183484.txt
2013-04-22 12:53 - 2013-04-22 12:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-04-22 12:52 - 2013-04-22 12:52 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2013-04-22 12:28 - 2013-04-22 12:52 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2013-04-22 12:28 - 2013-04-22 12:28 - 00000000 ____D C:\Windows\PCHEALTH
2013-04-22 12:26 - 2013-04-22 12:29 - 00000000 ____D C:\Program Files\Microsoft Office
2013-04-22 12:26 - 2013-04-22 12:26 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2013-04-22 12:26 - 2013-04-22 12:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2013-04-22 12:20 - 2013-04-22 12:20 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-04-22 12:20 - 2013-04-22 12:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-04-21 17:26 - 2013-05-06 12:40 - 00000000 ____D C:\Windows.old
2013-04-21 15:21 - 2013-01-09 17:53 - 00028904 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\msgpiowin32.sys
2013-04-21 15:21 - 2013-01-09 17:40 - 01448168 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
2013-04-21 15:21 - 2013-01-09 17:40 - 00303848 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys
2013-04-21 15:21 - 2013-01-09 17:29 - 00785504 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys
2013-04-21 15:21 - 2013-01-09 17:29 - 00091880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\partmgr.sys
2013-04-21 15:21 - 2013-01-09 15:26 - 01752064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2013-04-21 15:21 - 2013-01-09 15:26 - 01611776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2013-04-21 15:21 - 2013-01-09 15:26 - 00890880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2013-04-21 15:21 - 2013-01-09 15:26 - 00436736 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2013-04-21 15:21 - 2013-01-09 15:26 - 00410624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2013-04-21 15:21 - 2013-01-09 15:26 - 00278528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srm.dll
2013-04-21 15:21 - 2013-01-09 15:26 - 00261120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2013-04-21 15:21 - 2013-01-09 15:26 - 00202752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmstormod.dll
2013-04-21 15:21 - 2013-01-09 15:26 - 00083968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wiaacmgr.exe
2013-04-21 15:21 - 2013-01-09 15:26 - 00067584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2013-04-21 15:21 - 2013-01-09 15:25 - 00582144 ____A (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 02094592 ____A (Microsoft Corporation) C:\Windows\System32\mmc.exe
2013-04-21 15:21 - 2013-01-09 15:23 - 01964544 ____A (Microsoft Corporation) C:\Windows\System32\wlidsvc.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 01886208 ____A (Microsoft Corporation) C:\Windows\System32\setupapi.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00728064 ____A (Microsoft Corporation) C:\Windows\System32\samsrv.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00594944 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Networking.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00406016 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Media.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00279040 ____A (Microsoft Corporation) C:\Windows\System32\srm.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00274432 ____A (Microsoft Corporation) C:\Windows\System32\srmstormod.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00256000 ____A (Microsoft Corporation) C:\Windows\System32\WSDMon.dll
2013-04-21 15:21 - 2013-01-09 15:23 - 00095232 ____A (Microsoft Corporation) C:\Windows\System32\wiaacmgr.exe
2013-04-21 15:21 - 2013-01-09 15:22 - 01120768 ____A (Microsoft Corporation) C:\Windows\System32\msctf.dll
2013-04-21 15:21 - 2013-01-09 15:22 - 00894464 ____A (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll
2013-04-21 15:21 - 2013-01-09 15:22 - 00820736 ____A (Microsoft Corporation) C:\Windows\System32\gpprefcl.dll
2013-04-21 15:21 - 2013-01-09 15:22 - 00666112 ____A (Microsoft Corporation) C:\Windows\System32\MP4SDECD.DLL
2013-04-21 15:21 - 2013-01-09 15:22 - 00438272 ____A (Microsoft Corporation) C:\Windows\System32\lsm.dll
2013-04-21 15:21 - 2013-01-09 15:22 - 00159232 ____A (Microsoft Corporation) C:\Windows\System32\inetpp.dll
2013-04-21 15:21 - 2012-11-01 21:19 - 00171520 ____A (Microsoft Corporation) C:\Windows\System32\ncbservice.dll
2013-04-21 15:21 - 2012-11-01 21:18 - 00107520 ____A (Microsoft Corporation) C:\Windows\System32\httpprxm.dll
2013-04-21 15:21 - 2012-11-01 21:18 - 00062464 ____A (Microsoft Corporation) C:\Windows\System32\adhsvc.dll
2013-04-21 15:21 - 2012-11-01 21:18 - 00022528 ____A (Microsoft Corporation) C:\Windows\System32\adhapi.dll
2013-04-21 15:21 - 2012-11-01 21:18 - 00017920 ____A (Microsoft Corporation) C:\Windows\System32\httpprxp.dll
2013-04-21 15:21 - 2012-11-01 21:18 - 00015872 ____A (Microsoft Corporation) C:\Windows\System32\keepaliveprovider.dll
2013-04-21 15:21 - 2012-10-11 22:14 - 01347072 ____A (Microsoft Corporation) C:\Windows\System32\srmclient.dll
2013-04-21 15:21 - 2012-10-11 22:14 - 00652800 ____A (Microsoft Corporation) C:\Windows\System32\srmscan.dll
2013-04-21 15:21 - 2012-10-11 22:14 - 00172032 ____A (Microsoft Corporation) C:\Windows\System32\srmshell.dll
2013-04-21 15:21 - 2012-10-11 22:14 - 00134144 ____A (Microsoft Corporation) C:\Windows\System32\adrclient.dll
2013-04-21 15:21 - 2012-10-11 22:14 - 00087040 ____A (Microsoft Corporation) C:\Windows\System32\srmtrace.dll
2013-04-21 15:21 - 2012-10-11 22:14 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\srm_ps.dll
2013-04-21 15:21 - 2012-10-11 21:41 - 00987648 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmclient.dll
2013-04-21 15:21 - 2012-10-11 21:41 - 00487936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmscan.dll
2013-04-21 15:21 - 2012-10-11 21:41 - 00128000 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmshell.dll
2013-04-21 15:21 - 2012-10-11 21:41 - 00104448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\adrclient.dll
2013-04-21 15:21 - 2012-10-11 21:41 - 00068096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srmtrace.dll
2013-04-21 15:21 - 2012-10-11 21:41 - 00015872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\srm_ps.dll
2013-04-21 15:10 - 2012-08-30 16:52 - 00017888 ____A (Microsoft Corporation) C:\Windows\System32\msvcr100_clr0400.dll
2013-04-21 15:09 - 2012-08-30 16:53 - 00017888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll
2013-04-21 15:07 - 2013-04-21 15:07 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\Microsoft Help
2013-04-21 15:04 - 2013-03-02 03:02 - 00058288 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2013-04-21 15:04 - 2013-03-02 02:57 - 00337128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\USBXHCI.SYS
2013-04-21 15:04 - 2013-03-02 02:57 - 00332520 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\storport.sys
2013-04-21 15:04 - 2013-03-02 02:57 - 00283880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\spaceport.sys
2013-04-21 15:04 - 2013-03-02 02:57 - 00077544 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\storahci.sys
2013-04-21 15:04 - 2013-03-02 02:45 - 00194792 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sdbus.sys
2013-04-21 15:04 - 2013-03-02 02:45 - 00148712 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tpm.sys
2013-04-21 15:04 - 2013-03-02 02:45 - 00125160 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dumpsd.sys
2013-04-21 15:04 - 2013-03-02 02:39 - 00495336 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\vhdmp.sys
2013-04-21 15:04 - 2013-03-02 02:39 - 00327912 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\Classpnp.sys
2013-04-21 15:04 - 2013-03-02 02:39 - 00069864 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\pdc.sys
2013-04-21 15:04 - 2013-03-02 01:59 - 02231528 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-04-21 15:04 - 2013-03-02 01:59 - 00411880 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2013-04-21 15:04 - 2013-03-02 00:24 - 00034304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2013-04-21 15:04 - 2013-03-02 00:23 - 17560576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 08857088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 01338880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00893952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00621056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00601088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00504320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00356352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00246784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00125952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00100864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncInfo.dll
2013-04-21 15:04 - 2013-03-02 00:23 - 00083968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2013-04-21 15:04 - 2013-03-02 00:22 - 05091840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-04-21 15:04 - 2013-03-02 00:22 - 00850944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2013-04-21 15:04 - 2013-03-02 00:22 - 00357888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2013-04-21 15:04 - 2013-03-02 00:21 - 02033664 ____A (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-04-21 15:04 - 2013-03-02 00:21 - 00550912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2013-04-21 15:04 - 2013-03-02 00:21 - 00309760 ____A (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2013-04-21 15:04 - 2013-03-02 00:21 - 00145408 ____A (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2013-04-21 15:04 - 2013-03-02 00:21 - 00036352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 19748864 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 10116608 ____A (Microsoft Corporation) C:\Windows\System32\twinui.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 03240448 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 01627648 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 01619968 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 01161728 ____A (Microsoft Corporation) C:\Windows\System32\sppobjs.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 01149952 ____A (Microsoft Corporation) C:\Windows\System32\winmde.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 01101824 ____A (Microsoft Corporation) C:\Windows\System32\wmpmde.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00951808 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Globalization.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00760320 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00645120 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll
 
Part 5

2013-04-21 15:04 - 2013-03-01 18:45 - 00328192 ____A (Microsoft Corporation) C:\Windows\System32\ubpm.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00251904 ____A (Microsoft Corporation) C:\Windows\System32\WUSettingsProvider.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00245248 ____A (Microsoft Corporation) C:\Windows\System32\usbmon.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00180224 ____A (Microsoft Corporation) C:\Windows\System32\SystemEventsBrokerServer.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00173568 ____A (Microsoft Corporation) C:\Windows\System32\storewuauth.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00171008 ____A (Microsoft Corporation) C:\Windows\System32\TimeBrokerServer.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00141824 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\wpdbusenum.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00098304 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00077824 ____A (Microsoft Corporation) C:\Windows\System32\taskhost.exe
2013-04-21 15:04 - 2013-03-01 18:45 - 00072192 ____A (Microsoft Corporation) C:\Windows\System32\taskhostex.exe
2013-04-21 15:04 - 2013-03-01 18:45 - 00071168 ____A (Microsoft Corporation) C:\Windows\System32\WSDPrintProxy.DLL
2013-04-21 15:04 - 2013-03-01 18:45 - 00043520 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2013-04-21 15:04 - 2013-03-01 18:45 - 00039424 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2013-04-21 15:04 - 2013-03-01 18:44 - 05978624 ____A (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 01048576 ____A (Microsoft Corporation) C:\Windows\System32\mfasfsrcsnk.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00703488 ____A (Microsoft Corporation) C:\Windows\System32\drvstore.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00455168 ____A (Microsoft Corporation) C:\Windows\System32\netcfgx.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00448512 ____A (Microsoft Corporation) C:\Windows\System32\SettingSync.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00150016 ____A (Microsoft Corporation) C:\Windows\System32\discan.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00128512 ____A (Microsoft Corporation) C:\Windows\System32\SettingSyncInfo.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00117248 ____A (Microsoft Corporation) C:\Windows\System32\NdisImPlatform.dll
2013-04-21 15:04 - 2013-03-01 18:44 - 00049152 ____A (Microsoft Corporation) C:\Windows\System32\DevDispItemProvider.dll
2013-04-21 15:04 - 2013-03-01 18:43 - 02302464 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll
2013-04-21 15:04 - 2013-03-01 18:43 - 02146304 ____A (Microsoft Corporation) C:\Windows\System32\actxprxy.dll
2013-04-21 15:04 - 2013-03-01 18:43 - 00389120 ____A (Microsoft Corporation) C:\Windows\System32\BCP47Langs.dll
2013-04-21 15:04 - 2013-03-01 18:43 - 00156160 ____A (Microsoft Corporation) C:\Windows\System32\powercfg.cpl
2013-04-21 15:04 - 2013-03-01 18:15 - 00026112 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mouhid.sys
2013-04-21 15:04 - 2013-02-28 20:56 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\monitor.sys
2013-04-21 15:04 - 2013-02-20 15:08 - 00387867 ____A C:\Windows\System32\ApnDatabase.xml
2013-04-21 15:04 - 2013-02-06 17:33 - 00754176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2013-04-21 15:04 - 2012-11-05 20:20 - 00018432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2013-04-21 15:04 - 2012-11-05 20:20 - 00017408 ____A (Microsoft Corporation) C:\Windows\System32\wuaext.dll
2013-04-21 15:04 - 2012-11-05 20:00 - 00099328 ____A (Microsoft Corporation) C:\Windows\System32\wushareduxresources.dll
2013-04-21 15:04 - 2012-11-01 21:20 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2013-04-21 15:04 - 2012-09-19 23:55 - 00212200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\UCX01000.SYS
2013-04-21 14:55 - 2013-04-21 14:55 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\Autodesk
2013-04-21 14:54 - 2013-04-21 14:54 - 00000117 ____A C:\Windows\System32\netcfg-3726609.txt
2013-04-21 14:54 - 2013-04-21 14:54 - 00000117 ____A C:\Windows\System32\netcfg-3724437.txt
2013-04-21 14:44 - 2013-04-21 14:45 - 00000000 ____D C:\Users\nbuswell_2\AppData\Roaming\SearchProtect
2013-04-21 14:44 - 2013-04-21 14:44 - 00000000 ____D C:\Users\nbuswell_2\AppData\Roaming\Wacom
2013-04-21 14:43 - 2013-04-21 15:01 - 00000660 _RASH C:\Users\nbuswell_2\ntuser.pol
2013-04-21 14:43 - 2013-04-21 14:44 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\Packages
2013-04-21 14:43 - 2013-04-21 14:43 - 00000020 ___SH C:\Users\nbuswell_2\ntuser.ini
2013-04-21 14:43 - 2013-04-21 14:43 - 00000000 ____D C:\Users\nbuswell_2\AppData\Roaming\WTablet
2013-04-21 14:42 - 2013-02-21 02:29 - 14323200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-04-21 14:42 - 2013-02-21 02:14 - 19230208 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-04-21 14:41 - 2013-02-21 02:30 - 01766912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-04-21 14:41 - 2013-02-21 02:30 - 01129984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 13761024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 02046464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-04-21 14:41 - 2013-02-21 02:29 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-04-21 14:41 - 2013-02-21 02:15 - 02240512 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-04-21 14:41 - 2013-02-21 02:15 - 00915968 ____A (Microsoft Corporation) C:\Windows\System32\uxtheme.dll
2013-04-21 14:41 - 2013-02-21 02:15 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-04-21 14:41 - 2013-02-21 02:14 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 02647040 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-04-21 14:41 - 2013-02-21 02:14 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-04-21 14:41 - 2013-02-19 01:53 - 00534528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2013-04-21 14:41 - 2013-01-15 16:35 - 00044032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2013-04-21 14:41 - 2013-01-15 16:31 - 00053760 ____A (Microsoft Corporation) C:\Windows\System32\UXInit.dll
2013-04-21 14:41 - 2013-01-03 21:32 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-04-21 14:41 - 2013-01-03 20:19 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-04-21 14:41 - 2012-11-07 20:20 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-04-21 14:41 - 2012-11-07 20:20 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-04-21 14:41 - 2012-10-09 23:04 - 00094208 ____A (Microsoft Corporation) C:\Windows\System32\synceng.dll
2013-04-21 14:41 - 2012-10-09 22:31 - 00072192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2013-04-21 14:40 - 2013-03-19 14:19 - 04041728 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2013-04-21 14:40 - 2013-03-06 22:50 - 06991592 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2013-04-21 14:40 - 2012-11-25 20:21 - 00071168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2013-04-21 14:40 - 2012-11-25 20:20 - 00086016 ____A (Microsoft Corporation) C:\Windows\System32\ncryptsslp.dll
2013-04-21 14:40 - 2012-11-09 20:23 - 00148480 ____A (Microsoft Corporation) C:\Windows\System32\poqexec.exe
2013-04-21 14:40 - 2012-11-09 20:23 - 00132608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2013-04-21 14:40 - 2012-11-09 20:22 - 00144384 ____A (Microsoft Corporation) C:\Windows\System32\tssdisai.dll
2013-04-21 14:40 - 2012-11-09 20:22 - 00126976 ____A (Microsoft Corporation) C:\Windows\System32\RDWebAI.dll
2013-04-21 14:40 - 2012-11-09 20:22 - 00122880 ____A (Microsoft Corporation) C:\Windows\System32\VmHostAI.dll
2013-04-21 14:40 - 2012-11-09 20:20 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\appserverai.dll
2013-04-21 14:39 - 2013-03-02 00:23 - 00375808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2013-04-21 14:39 - 2013-03-02 00:22 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2013-04-21 14:39 - 2013-03-01 18:44 - 01011200 ____A (Microsoft Corporation) C:\Windows\System32\reseteng.dll
2013-04-21 14:39 - 2013-03-01 18:44 - 00468992 ____A (Microsoft Corporation) C:\Windows\System32\MFMediaEngine.dll
2013-04-21 14:39 - 2013-02-02 03:19 - 00496872 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbhub.sys
2013-04-21 14:39 - 2013-02-02 03:19 - 00446184 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\USBHUB3.SYS
2013-04-21 14:39 - 2013-02-02 03:19 - 00061672 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\crashdmp.sys
2013-04-21 14:39 - 2013-02-02 02:54 - 01933544 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2013-04-21 14:39 - 2013-02-02 02:28 - 00993512 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2013-04-21 14:39 - 2013-02-02 00:40 - 10792448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2013-04-21 14:39 - 2013-02-02 00:40 - 00410624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wlroamextension.dll
2013-04-21 14:39 - 2013-02-02 00:40 - 00370688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2013-04-21 14:39 - 2013-02-02 00:40 - 00197632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2013-04-21 14:39 - 2013-02-02 00:40 - 00155136 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2013-04-21 14:39 - 2013-02-02 00:40 - 00080896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe
2013-04-21 14:39 - 2013-02-02 00:40 - 00079360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe
2013-04-21 14:39 - 2013-02-02 00:39 - 00325632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-04-21 14:39 - 2013-02-02 00:39 - 00157696 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2013-04-21 14:39 - 2013-02-02 00:39 - 00115712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll
2013-04-21 14:39 - 2013-02-02 00:39 - 00055296 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2013-04-21 14:39 - 2013-02-02 00:39 - 00018432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2013-04-21 14:39 - 2013-02-02 00:39 - 00015872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll
2013-04-21 14:39 - 2013-02-02 00:39 - 00012288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll
2013-04-21 14:39 - 2013-02-02 00:38 - 00567808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll
2013-04-21 14:39 - 2013-02-02 00:24 - 00107520 ____A (Microsoft Corporation) C:\Windows\System32\taskkill.exe
2013-04-21 14:39 - 2013-02-02 00:24 - 00102400 ____A (Microsoft Corporation) C:\Windows\System32\tasklist.exe
2013-04-21 14:39 - 2013-02-02 00:23 - 13643264 ____A (Microsoft Corporation) C:\Windows\System32\Windows.UI.Xaml.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00731648 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00611840 ____A (Microsoft Corporation) C:\Windows\System32\wpd_ci.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00543232 ____A (Microsoft Corporation) C:\Windows\System32\wlroamextension.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00475136 ____A (Microsoft Corporation) C:\Windows\System32\WWanAPI.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00293376 ____A (Microsoft Corporation) C:\Windows\System32\Windows.Networking.Connectivity.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00228352 ____A (Microsoft Corporation) C:\Windows\System32\XpsRasterService.dll
2013-04-21 14:39 - 2013-02-02 00:23 - 00087552 ____A (Microsoft Corporation) C:\Windows\System32\wersvc.dll
2013-04-21 14:39 - 2013-02-02 00:22 - 00416256 ____A (Microsoft Corporation) C:\Windows\System32\schannel.dll
2013-04-21 14:39 - 2013-02-02 00:21 - 00467456 ____A (Microsoft Corporation) C:\Windows\System32\netprofmsvc.dll
2013-04-21 14:39 - 2013-02-02 00:21 - 00385024 ____A (Microsoft Corporation) C:\Windows\System32\ncsi.dll
2013-04-21 14:39 - 2013-02-02 00:21 - 00225280 ____A (Microsoft Corporation) C:\Windows\System32\mbsmsapi.dll
2013-04-21 14:39 - 2013-02-02 00:20 - 00729600 ____A (Microsoft Corporation) C:\Windows\System32\duser.dll
2013-04-21 14:39 - 2013-02-02 00:20 - 00260096 ____A (Microsoft Corporation) C:\Windows\System32\hotspotauth.dll
2013-04-21 14:39 - 2013-02-01 23:25 - 00297984 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ks.sys
2013-04-21 14:39 - 2013-02-01 23:25 - 00082944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys
2013-04-21 14:39 - 2013-02-01 23:25 - 00037632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\BthAvrcpTg.sys
2013-04-21 14:39 - 2012-12-14 20:55 - 00443392 ____A (Microsoft Corporation) C:\Windows\System32\ReAgent.dll
2013-04-21 14:39 - 2012-11-26 19:57 - 00018432 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\BtaMPM.sys
2013-04-21 14:39 - 2012-11-26 19:55 - 00029952 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\BthhfHid.sys
2013-04-21 14:39 - 2012-11-19 20:56 - 00027136 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbohci.sys
2013-04-21 14:39 - 2012-11-19 20:54 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidi2c.sys
2013-04-21 14:39 - 2012-11-08 20:49 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll
2013-04-21 14:39 - 2012-11-08 20:03 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-04-21 14:39 - 2012-11-02 21:26 - 00132096 ____A (Microsoft Corporation) C:\Windows\System32\sysreset.exe
2013-04-21 14:39 - 2012-11-02 21:25 - 00945152 ____A (Microsoft Corporation) C:\Windows\System32\resetengmig.dll
2013-04-21 14:39 - 2012-10-23 19:25 - 00026624 ____A (Microsoft Corporation) C:\Windows\System32\ReAgentc.exe
2013-04-21 14:39 - 2012-10-23 18:48 - 00024064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2013-04-21 14:39 - 2012-10-05 20:53 - 02893824 ____A (Microsoft Corporation) C:\Windows\System32\msmpeg2vdec.dll
2013-04-21 14:39 - 2012-10-05 20:15 - 02400256 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2013-04-21 14:39 - 2012-09-19 23:55 - 00488168 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbport.sys
2013-04-21 14:39 - 2012-09-19 23:55 - 00079080 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbehci.sys
2013-04-21 14:39 - 2012-09-19 23:55 - 00021736 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbd.sys
2013-04-21 14:39 - 2012-09-19 22:32 - 00356352 ____A (Microsoft Corporation) C:\Windows\System32\nlasvc.dll
2013-04-21 14:39 - 2012-09-19 22:32 - 00072192 ____A (Microsoft Corporation) C:\Windows\System32\nlaapi.dll
2013-04-21 14:39 - 2012-09-19 22:09 - 00032256 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbuhci.sys
2013-04-21 14:38 - 2013-02-11 16:17 - 00020992 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023.sys
2013-04-21 14:38 - 2013-02-05 14:31 - 00622080 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys
2013-04-21 14:38 - 2013-02-05 14:29 - 00370688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys
2013-04-21 14:38 - 2013-02-05 14:28 - 00247808 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys
2013-04-21 14:38 - 2013-02-05 14:28 - 00215552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys
2013-04-21 14:38 - 2013-02-01 21:41 - 01437184 ____A (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2013-04-21 14:38 - 2013-02-01 21:31 - 01690624 ____A (Microsoft Corporation) C:\Windows\System32\GdiPlus.dll
2013-04-21 14:38 - 2012-11-02 21:26 - 00034816 ____A (Microsoft Corporation) C:\Windows\System32\dpnsvr.exe
2013-04-21 14:38 - 2012-11-02 21:26 - 00032256 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2013-04-21 14:38 - 2012-11-02 21:24 - 00463872 ____A (Microsoft Corporation) C:\Windows\System32\dpnet.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00375808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00067584 ____A (Microsoft Corporation) C:\Windows\System32\dpnathlp.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00058880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\dpnhupnp.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\dpnhpast.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00008192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2013-04-21 14:38 - 2012-11-02 21:24 - 00008192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2013-04-21 14:38 - 2012-11-02 21:04 - 00004096 ____A (Microsoft Corporation) C:\Windows\System32\dpnlobby.dll
2013-04-21 14:38 - 2012-11-02 21:04 - 00003584 ____A (Microsoft Corporation) C:\Windows\System32\dpnaddr.dll
2013-04-21 14:38 - 2012-11-02 21:00 - 00003072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2013-04-21 14:38 - 2012-11-02 21:00 - 00002560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2013-04-21 14:38 - 2012-10-23 19:25 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\pcalua.exe
2013-04-21 14:38 - 2012-10-23 19:24 - 00405504 ____A (Microsoft Corporation) C:\Windows\System32\pcasvc.dll
2013-04-21 14:38 - 2012-10-23 19:24 - 00031232 ____A (Microsoft Corporation) C:\Windows\System32\pcadm.dll
2013-04-21 14:38 - 2012-10-23 19:05 - 00011776 ____A (Microsoft Corporation) C:\Windows\System32\pcaevts.dll
2013-04-21 14:34 - 2012-12-16 00:28 - 00046080 ____A (Adobe Systems) C:\Windows\System32\atmlib.dll
2013-04-21 14:34 - 2012-12-16 00:20 - 00035328 ____A (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-04-21 14:34 - 2012-12-16 00:08 - 00362496 ____A (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll
2013-04-21 14:34 - 2012-12-15 23:57 - 00300032 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-04-21 14:34 - 2012-11-07 20:24 - 00075776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-04-21 14:34 - 2012-11-07 20:24 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-04-21 14:34 - 2012-11-07 20:20 - 00096256 ____A (Microsoft Corporation) C:\Windows\System32\fontsub.dll
2013-04-21 14:34 - 2012-11-07 20:20 - 00014336 ____A (Microsoft Corporation) C:\Windows\System32\dciman32.dll
2013-04-21 14:34 - 2012-11-07 20:02 - 00003072 ____A (Microsoft Corporation) C:\Windows\System32\lpk.dll
2013-04-21 14:34 - 2012-11-07 20:01 - 00003072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-04-21 14:33 - 2013-01-28 17:57 - 00035232 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WdBoot.sys
2013-04-21 14:33 - 2013-01-28 15:08 - 00230904 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WdFilter.sys
2013-04-21 14:33 - 2012-10-31 20:41 - 01802240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2013-04-21 14:33 - 2012-10-31 20:41 - 01438720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2013-04-21 14:33 - 2012-10-31 20:40 - 02361344 ____A (Microsoft Corporation) C:\Windows\System32\msxml6.dll
2013-04-21 14:33 - 2012-10-31 20:40 - 01836032 ____A (Microsoft Corporation) C:\Windows\System32\msxml3.dll
2013-04-21 14:33 - 2012-10-31 20:21 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\msxml6r.dll
2013-04-21 14:33 - 2012-10-31 20:21 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\msxml3r.dll
2013-04-21 14:33 - 2012-10-31 20:20 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2013-04-21 14:33 - 2012-10-31 20:20 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2013-04-21 14:11 - 2013-04-23 15:28 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-04-21 14:11 - 2013-04-21 14:11 - 00000000 __RHD C:\MSOCache
2013-04-21 14:11 - 2013-04-21 14:11 - 00000000 ____D C:\Users\nbuswell\AppData\Local\Microsoft Help
2013-04-21 14:08 - 2013-04-21 14:08 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-04-21 14:02 - 2013-04-22 17:19 - 00000000 ____D C:\Users\nbuswell\AppData\Local\Packages
2013-04-21 14:02 - 2013-04-22 12:05 - 00000660 _RASH C:\Users\nbuswell\ntuser.pol
2013-04-21 14:02 - 2013-04-21 14:04 - 00000000 ____D C:\ProgramData\PRICache
2013-04-21 14:02 - 2013-04-21 14:02 - 00000020 ___SH C:\Users\nbuswell\ntuser.ini
2013-04-21 13:59 - 2013-04-21 13:59 - 00000117 ____A C:\Windows\System32\netcfg-414781.txt
2013-04-21 13:59 - 2013-04-21 13:59 - 00000117 ____A C:\Windows\System32\netcfg-414546.txt
2013-04-21 13:58 - 2013-05-10 17:43 - 01832683 ____A C:\Windows\WindowsUpdate.log
2013-04-21 13:57 - 2013-04-21 13:57 - 00022744 ____A C:\Windows\System32\emptyregdb.dat
2013-04-21 13:57 - 2013-04-21 13:57 - 00000117 ____A C:\Windows\System32\netcfg-313921.txt
2013-04-21 13:57 - 2013-04-21 13:57 - 00000117 ____A C:\Windows\System32\netcfg-311531.txt
2013-04-21 13:57 - 2013-04-21 13:57 - 00000117 ____A C:\Windows\System32\netcfg-310765.txt
2013-04-21 13:56 - 2013-04-21 13:56 - 00000000 ____D C:\Windows\CSC
2013-04-21 13:55 - 2013-04-21 13:55 - 00001139 ____A C:\Windows\System32\netcfg-141937.txt
2013-04-21 13:55 - 2013-04-21 13:55 - 00001139 ____A C:\Windows\System32\netcfg-141359.txt
2013-04-21 13:54 - 2013-04-21 13:54 - 00000117 ____A C:\Windows\System32\netcfg-118062.txt
2013-04-21 13:54 - 2013-04-21 13:54 - 00000117 ____A C:\Windows\System32\netcfg-117703.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1395546.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1394484.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1394234.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1394046.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1393640.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1393046.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\LocalGoogle
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\LocalGoogle
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-04-21 13:34 - 2013-05-08 16:34 - 00000000 ____D C:\users\nbuswell
2013-04-21 13:34 - 2013-04-21 15:02 - 00000000 ____D C:\users\nbuswell_2
2013-04-21 13:34 - 2013-04-21 13:57 - 00034293 ____A C:\Windows\diagwrn.xml
2013-04-21 13:34 - 2013-04-21 13:57 - 00034293 ____A C:\Windows\diagerr.xml
2013-04-21 13:33 - 2013-04-21 13:33 - 00951150 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-04-21 13:33 - 2013-04-21 13:33 - 00021658 ____A C:\Windows\iis.log
2013-04-21 13:30 - 2013-04-21 13:49 - 00000000 ____D C:\Program Files\CONEXANT
2013-04-21 13:30 - 2013-04-21 13:30 - 00001136 ____A C:\Windows\System32\netcfg-181437.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00001136 ____A C:\Windows\System32\netcfg-175390.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000197 ____A C:\Windows\System32\netcfg-178156.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000185 ____A C:\Windows\System32\netcfg-157171.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000164 ____A C:\Windows\System32\netcfg-153156.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000161 ____A C:\Windows\System32\netcfg-154765.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000160 ____A C:\Windows\System32\netcfg-154343.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000160 ____A C:\Windows\System32\netcfg-153890.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000159 ____A C:\Windows\System32\netcfg-153687.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000157 ____A C:\Windows\System32\netcfg-154140.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000150 ____A C:\Windows\System32\netcfg-152937.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-04-21 13:30 - 2013-04-21 13:30 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2013-04-21 13:29 - 2013-04-21 13:29 - 00000160 ____A C:\Windows\System32\netcfg-152109.txt
2013-04-21 13:29 - 2013-04-21 13:29 - 00000157 ____A C:\Windows\System32\netcfg-152734.txt
2013-04-21 13:27 - 2013-05-08 16:36 - 00032806 ____A C:\Windows\PFRO.log
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Windows\SysWOW64\BestPractices
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Windows\System32\msmq
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Windows\System32\BestPractices
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files\MSBuild
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\inetpub
2013-04-21 13:21 - 2012-11-17 16:48 - 00778856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2013-04-21 13:21 - 2012-11-17 16:48 - 00102528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-04-21 13:21 - 2012-11-17 16:48 - 00035400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2013-04-21 13:21 - 2012-11-17 16:46 - 01166440 ____A (Microsoft Corporation) C:\Windows\System32\PresentationNative_v0300.dll
2013-04-21 13:21 - 2012-11-17 16:46 - 00124040 ____A (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2013-04-21 13:21 - 2012-11-17 16:46 - 00035400 ____A (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe
2013-04-21 13:20 - 2013-04-21 13:20 - 00262144 ____A C:\Windows\System32\config\userdiff
2013-04-21 13:19 - 2013-04-21 13:19 - 00000000 ____D C:\Program Files\Synaptics
2013-04-21 12:49 - 2013-04-21 13:57 - 00006633 ____A C:\Windows\comsetup.log
2013-04-21 11:34 - 2013-04-21 14:02 - 00000000 ____D C:\Windows\Panther
2013-04-21 08:29 - 2013-04-25 18:44 - 00006651 ____A C:\Users\nbuswell\Desktop\server.log
2013-04-21 08:08 - 2013-04-21 08:08 - 00001456 ____A C:\Users\nbuswell\AppData\Local\Adobe Save for Web 12.0 Prefs
2013-04-14 09:57 - 2013-04-14 10:04 - 00001981 ____A C:\Users\nbuswell\Downloads\server.log
2013-04-14 09:49 - 2013-04-14 13:15 - 00000000 ____D C:\Users\nbuswell\Downloads\Ultimate
2013-04-14 09:48 - 2013-04-14 13:09 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\ftblauncher
2013-04-14 09:48 - 2013-04-14 09:48 - 00515317 ____A () C:\Users\nbuswell\Desktop\FTB_Launcher.exe
 
Part 6

==================== One Month Modified Files and Folders =======
2013-05-11 10:49 - 2013-05-11 10:49 - 00000000 ____D C:\FRST
2013-05-11 10:35 - 2013-05-11 09:56 - 00000000 ___HD C:\$SysReset
2013-05-11 10:35 - 2013-05-11 09:01 - 00000000 ____A C:\Recovery.txt
2013-05-10 17:43 - 2013-04-21 13:58 - 01832683 ____A C:\Windows\WindowsUpdate.log
2013-05-10 17:00 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\sru
2013-05-10 16:59 - 2012-04-09 12:41 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-05-10 16:49 - 2011-06-22 06:14 - 00000912 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-10 15:36 - 2013-02-06 15:19 - 00000000 ____D C:\Users\nbuswell\AppData\Local\Akamai
2013-05-10 14:51 - 2013-01-26 19:03 - 00290776 ____A C:\Windows\SysWOW64\PnkBstrB.exe
2013-05-10 14:51 - 2012-07-25 23:21 - 00497221 ____A C:\Windows\setupact.log
2013-05-10 14:51 - 2012-01-09 19:49 - 00290776 ____A C:\Windows\SysWOW64\PnkBstrB.xtr
2013-05-10 14:48 - 2013-05-08 11:22 - 00000000 ____D C:\Users\nbuswell\Desktop\Eagle Project
2013-05-10 14:37 - 2013-05-10 14:37 - 00002056 ____A C:\Users\nbuswell\Desktop\APB - Shortcut.lnk
2013-05-10 12:49 - 2011-06-22 06:14 - 00000908 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-10 12:19 - 2013-01-26 19:03 - 00290776 ____A C:\Windows\SysWOW64\PnkBstrB.ex0
2013-05-10 12:19 - 2011-08-13 11:34 - 00000000 ____D C:\Program Files (x86)\Steam
2013-05-10 12:04 - 2013-01-26 19:03 - 00076888 ____A C:\Windows\SysWOW64\PnkBstrA.exe
2013-05-09 16:00 - 2013-01-30 12:56 - 00000000 ____D C:\Users\nbuswell\AppData\Local\LogMeIn Hamachi
2013-05-08 19:06 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-05-08 16:41 - 2013-05-08 16:41 - 00886409 ____A C:\Users\nbuswell\Downloads\pbsetup (1).zip
2013-05-08 16:38 - 2011-07-18 10:45 - 00000416 ____A C:\Windows\Tasks\PC Optimizer Pro64 startups.job
2013-05-08 16:37 - 2013-05-08 16:36 - 05081464 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-08 16:37 - 2012-07-25 23:22 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-08 16:36 - 2013-04-21 13:27 - 00032806 ____A C:\Windows\PFRO.log
2013-05-08 16:36 - 2012-07-25 21:26 - 03145728 __ASH C:\Windows\System32\config\BBI
2013-05-08 16:34 - 2013-04-21 13:34 - 00000000 ____D C:\users\nbuswell
2013-05-08 15:39 - 2013-05-08 15:39 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2013-05-08 15:35 - 2013-05-08 15:35 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2013-05-08 13:26 - 2013-05-08 13:25 - 01767963 ____A C:\Users\nbuswell\Downloads\fwnateseagleinfo.zip
2013-05-08 11:24 - 2012-07-25 23:28 - 00978638 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-06 13:25 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\rescache
2013-05-06 12:40 - 2013-04-21 17:26 - 00000000 ____D C:\Windows.old
2013-05-06 11:28 - 2012-07-26 00:12 - 00000000 ___RD C:\Windows\ToastData
2013-05-06 11:28 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\WinStore
2013-05-06 11:28 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\SysWOW64\inetsrv
2013-05-06 11:28 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\inetsrv
2013-05-06 11:28 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-05-06 11:27 - 2012-07-26 00:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2013-05-06 11:27 - 2012-07-25 21:38 - 00000000 ____D C:\Windows\System32\oobe
2013-05-03 19:21 - 2013-01-23 18:53 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\Spotify
2013-05-03 17:44 - 2012-07-07 15:51 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\.minecraft
2013-05-03 16:06 - 2013-01-23 18:54 - 00000000 ____D C:\Users\nbuswell\AppData\Local\Spotify
2013-05-03 14:45 - 2013-05-03 14:45 - 00351931 ____A C:\Users\nbuswell\Downloads\OptiFine_1.5.2_HD_D2.zip
2013-05-03 14:09 - 2013-05-03 14:09 - 00000117 ____A C:\Windows\System32\netcfg-697898000.txt
2013-05-03 14:09 - 2013-05-03 14:09 - 00000117 ____A C:\Windows\System32\netcfg-697896500.txt
2013-05-02 11:01 - 2013-05-02 11:01 - 00000117 ____A C:\Windows\System32\netcfg-600165656.txt
2013-05-02 11:01 - 2013-05-02 11:01 - 00000117 ____A C:\Windows\System32\netcfg-600164531.txt
2013-05-02 07:29 - 2010-11-20 19:27 - 00278800 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2013-05-01 14:11 - 2013-05-01 14:11 - 00019229 ____A C:\Users\nbuswell\Downloads\mccapes_extra_151a_20130321_2321 (1).zip
2013-05-01 12:41 - 2013-05-01 12:41 - 00000117 ____A C:\Windows\System32\netcfg-519806593.txt
2013-05-01 12:41 - 2013-05-01 12:41 - 00000117 ____A C:\Windows\System32\netcfg-519804281.txt
2013-04-30 18:17 - 2012-04-13 13:47 - 00000000 ____D C:\Users\nbuswell\Desktop\Folders
2013-04-30 15:26 - 2013-04-30 15:26 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2013-04-30 15:26 - 2013-04-30 15:26 - 00000000 ____D C:\users\DefaultAppPool
2013-04-30 13:59 - 2013-04-30 13:59 - 00006633 ____A C:\Users\nbuswell\Downloads\mccapes_1_5_1_20130321_2322.zip
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437668578.txt
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437665531.txt
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437663546.txt
2013-04-30 13:52 - 2013-04-30 13:52 - 00000117 ____A C:\Windows\System32\netcfg-437663484.txt
2013-04-26 07:43 - 2013-04-26 07:43 - 00000117 ____A C:\Windows\System32\netcfg-69901125.txt
2013-04-26 07:43 - 2013-04-26 07:43 - 00000117 ____A C:\Windows\System32\netcfg-69899296.txt
2013-04-25 18:45 - 2011-07-29 19:29 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\Skype
2013-04-25 18:44 - 2013-04-21 08:29 - 00006651 ____A C:\Users\nbuswell\Desktop\server.log
2013-04-25 17:31 - 2013-03-08 20:13 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\.technic
2013-04-25 17:13 - 2013-04-25 17:13 - 00019229 ____A C:\Users\nbuswell\Downloads\mccapes_extra_151a_20130321_2321.zip
2013-04-25 16:53 - 2013-04-25 16:53 - 01973350 ____A C:\Users\nbuswell\Downloads\minecraftforge-universal-1.5.1-7.7.1.674.zip
2013-04-25 16:53 - 2013-04-25 16:53 - 00351820 ____A C:\Users\nbuswell\Downloads\OptiFine_1.5.1_HD_D1.zip
2013-04-25 16:52 - 2013-04-25 16:52 - 00014347 ____A C:\Users\nbuswell\Downloads\iChunUtil1.0.0.zip
2013-04-25 16:51 - 2013-04-25 16:51 - 00620705 ____A C:\Users\nbuswell\Downloads\PortalGun1.5.1.zip
2013-04-25 16:17 - 2013-04-25 16:17 - 00865576 ____A (SetupManager) C:\Users\nbuswell\Downloads\Setup.exe
2013-04-25 13:34 - 2013-04-25 13:34 - 00001459 ____A C:\Users\nbuswell\Downloads\$600 pc build.txt
2013-04-25 12:52 - 2013-04-25 12:04 - 00000000 ____D C:\Users\nbuswell\Desktop\Minecraft Server
2013-04-25 12:46 - 2013-04-25 12:46 - 00903072 ____A (Oracle Corporation) C:\Users\nbuswell\Downloads\chromeinstall-7u21 (1).exe
2013-04-25 12:45 - 2013-04-25 12:45 - 00003915 ____A C:\Windows\SysWOW64\jupdate-1.7.0_21-b11.log
2013-04-25 12:45 - 2011-03-23 18:26 - 00000000 ____D C:\Program Files (x86)\Java
2013-04-25 12:44 - 2013-04-25 12:44 - 00903072 ____A (Oracle Corporation) C:\Users\nbuswell\Downloads\chromeinstall-7u21.exe
2013-04-25 12:12 - 2013-04-07 14:59 - 00000000 ____D C:\Users\nbuswell\Desktop\Tekkit_Server_3.1.2
2013-04-25 12:02 - 2013-04-25 12:02 - 02541261 ____A C:\Users\nbuswell\Downloads\Minecraft_Server.exe
2013-04-25 12:02 - 2013-04-25 12:01 - 07734377 ____A C:\Users\nbuswell\Downloads\Survival Island.zip
2013-04-25 11:42 - 2013-04-25 11:42 - 00000117 ____A C:\Windows\System32\netcfg-112859.txt
2013-04-25 11:39 - 2013-04-25 11:39 - 00000117 ____A C:\Windows\System32\netcfg-68586828.txt
2013-04-25 11:38 - 2013-04-25 11:38 - 00029220 ____A C:\Windows\DirectX.log
2013-04-25 11:38 - 2013-04-25 11:38 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2013-04-25 11:38 - 2013-04-25 11:37 - 00000000 ____D C:\c1d6b861f88f9bfc667a
2013-04-25 11:35 - 2013-04-25 11:30 - 07878008 ____A (Microsoft Corporation) C:\Users\nbuswell\Downloads\Xbox360_64Eng.exe
2013-04-25 11:09 - 2013-04-25 11:09 - 00000117 ____A C:\Windows\System32\netcfg-66778437.txt
2013-04-25 11:09 - 2013-04-25 11:09 - 00000117 ____A C:\Windows\System32\netcfg-66775468.txt
2013-04-24 16:50 - 2013-04-24 16:50 - 00886409 ____A C:\Users\nbuswell\Downloads\pbsetup.zip
2013-04-24 16:35 - 2012-07-26 00:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-04-24 12:25 - 2013-04-24 12:25 - 00485359 ____A C:\Users\nbuswell\Downloads\metro_for_steam___2_9_by_boneyardbrew-d4u3kjv.zip
2013-04-24 12:24 - 2013-04-24 12:24 - 00052224 ____A C:\Users\nbuswell\Downloads\settings.exe
2013-04-24 12:09 - 2013-04-24 12:09 - 00000117 ____A C:\Windows\System32\netcfg-90208484.txt
2013-04-24 12:09 - 2013-04-24 12:09 - 00000117 ____A C:\Windows\System32\netcfg-90202593.txt
2013-04-23 18:39 - 2013-04-23 18:39 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\Softland
2013-04-23 18:39 - 2013-04-23 18:39 - 00000000 ____D C:\Program Files\Softland
2013-04-23 18:37 - 2013-04-23 18:37 - 06841632 ____A (Softland ) C:\Users\nbuswell\Downloads\novapp.exe
2013-04-23 18:17 - 2013-02-06 20:09 - 00000000 ____D C:\Users\nbuswell\Desktop\Photoshop Work
2013-04-23 18:14 - 2013-04-23 18:08 - 00026680 ____A C:\Users\nbuswell\Desktop\Economies Around the World.odt
2013-04-23 17:43 - 2013-04-22 13:51 - 00000000 ____D C:\Users\nbuswell\Desktop\Tennessee Trip
2013-04-23 17:38 - 2012-10-18 19:00 - 00000000 ____D C:\Program Files (x86)\Swiki
2013-04-23 17:31 - 2012-01-16 15:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-04-23 17:30 - 2013-03-13 12:49 - 00000000 ____D C:\ProgramData\MAgoniPicc
2013-04-23 17:30 - 2012-01-16 15:34 - 00000000 ____D C:\ProgramData\Premium
2013-04-23 17:30 - 2012-01-16 15:34 - 00000000 ____D C:\ProgramData\InstallMate
2013-04-23 17:25 - 2013-04-06 13:30 - 00000000 ____D C:\Program Files (x86)\Filter Forge 3
2013-04-23 17:25 - 2012-03-28 10:36 - 00000000 ____D C:\srcds
2013-04-23 17:23 - 2013-02-06 16:34 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
2013-04-23 17:23 - 2013-02-06 15:22 - 00000000 ____D C:\ProgramData\Autodesk
2013-04-23 17:22 - 2013-02-06 16:34 - 00000000 ____D C:\Program Files\Autodesk
2013-04-23 15:28 - 2013-04-21 14:11 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-04-23 14:34 - 2013-04-30 15:26 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2013-04-23 14:34 - 2013-04-23 14:34 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-04-23 14:34 - 2013-04-23 14:34 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-04-23 11:11 - 2012-12-06 15:14 - 00000000 ___RD C:\Users\nbuswell\Dropbox
2013-04-23 11:11 - 2012-12-06 15:10 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\Dropbox
2013-04-23 07:24 - 2013-04-23 07:24 - 00001135 ____A C:\Windows\System32\netcfg-65925031.txt
2013-04-23 07:24 - 2013-04-23 07:24 - 00000117 ____A C:\Windows\System32\netcfg-65920750.txt
2013-04-23 07:24 - 2013-04-23 07:24 - 00000117 ____A C:\Windows\System32\netcfg-65917703.txt
2013-04-22 18:14 - 2013-04-22 18:14 - 00000000 ____D C:\Windows\System32\appmgmt
2013-04-22 18:10 - 2011-03-23 18:27 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-04-22 18:09 - 2013-04-22 18:09 - 00001091 ____A C:\Windows\System32\netcfg-18198375.txt
2013-04-22 17:19 - 2013-04-21 14:02 - 00000000 ____D C:\Users\nbuswell\AppData\Local\Packages
2013-04-22 16:41 - 2013-04-22 16:41 - 00000000 ____D C:\Users\nbuswell\Desktop\Nates 8GB
2013-04-22 16:38 - 2013-04-22 16:38 - 00000117 ____A C:\Windows\System32\netcfg-12734625.txt
2013-04-22 16:38 - 2013-04-22 16:38 - 00000117 ____A C:\Windows\System32\netcfg-12730468.txt
2013-04-22 13:09 - 2013-04-22 13:09 - 00000128 ____A C:\Windows\System32\netcfg-183484.txt
2013-04-22 13:03 - 2012-07-26 00:12 - 00000000 ____D C:\Program Files\Windows Defender
2013-04-22 13:03 - 2012-07-26 00:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-04-22 12:54 - 2012-07-25 23:52 - 00000000 ____D C:\Windows\ShellNew
2013-04-22 12:53 - 2013-04-22 12:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-04-22 12:52 - 2013-04-22 12:52 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2013-04-22 12:52 - 2013-04-22 12:28 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2013-04-22 12:29 - 2013-04-22 12:26 - 00000000 ____D C:\Program Files\Microsoft Office
2013-04-22 12:28 - 2013-04-22 12:28 - 00000000 ____D C:\Windows\PCHEALTH
2013-04-22 12:28 - 2011-03-23 18:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-04-22 12:26 - 2013-04-22 12:26 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2013-04-22 12:26 - 2013-04-22 12:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2013-04-22 12:20 - 2013-04-22 12:20 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-04-22 12:20 - 2013-04-22 12:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-04-22 12:07 - 2012-07-26 00:12 - 00000000 ____D C:\Program Files\Common Files\System
2013-04-22 12:07 - 2009-07-13 18:34 - 00000554 ____A C:\Windows\win.ini
2013-04-22 12:05 - 2013-04-21 14:02 - 00000660 _RASH C:\Users\nbuswell\ntuser.pol
2013-04-21 17:26 - 2012-07-26 00:13 - 00262144 ____A C:\Windows\System32\config\BCD-Template
2013-04-21 15:07 - 2013-04-21 15:07 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\Microsoft Help
2013-04-21 15:02 - 2013-04-21 13:34 - 00000000 ____D C:\users\nbuswell_2
2013-04-21 15:02 - 2012-08-03 08:41 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\LogMeIn Hamachi
2013-04-21 15:01 - 2013-04-21 14:43 - 00000660 _RASH C:\Users\nbuswell_2\ntuser.pol
2013-04-21 14:55 - 2013-04-21 14:55 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\Autodesk
2013-04-21 14:54 - 2013-04-21 14:54 - 00000117 ____A C:\Windows\System32\netcfg-3726609.txt
2013-04-21 14:54 - 2013-04-21 14:54 - 00000117 ____A C:\Windows\System32\netcfg-3724437.txt
2013-04-21 14:54 - 2012-11-30 13:14 - 00000000 ____D C:\Program Files (x86)\NCH Software
2013-04-21 14:51 - 2013-03-12 13:58 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\uTorrent
2013-04-21 14:50 - 2012-11-30 13:15 - 00000000 ____D C:\ProgramData\NCH Software
2013-04-21 14:46 - 2012-10-16 11:04 - 00001205 ____A C:\Users\nbuswell_2\Desktop\GamersFirst LIVE!.lnk
2013-04-21 14:45 - 2013-04-21 14:44 - 00000000 ____D C:\Users\nbuswell_2\AppData\Roaming\SearchProtect
2013-04-21 14:45 - 2012-09-16 14:47 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\GamersFirst LIVE!
2013-04-21 14:44 - 2013-04-21 14:44 - 00000000 ____D C:\Users\nbuswell_2\AppData\Roaming\Wacom
2013-04-21 14:44 - 2013-04-21 14:43 - 00000000 ____D C:\Users\nbuswell_2\AppData\Local\Packages
2013-04-21 14:43 - 2013-04-21 14:43 - 00000020 ___SH C:\Users\nbuswell_2\ntuser.ini
2013-04-21 14:43 - 2013-04-21 14:43 - 00000000 ____D C:\Users\nbuswell_2\AppData\Roaming\WTablet
2013-04-21 14:15 - 2011-06-22 05:44 - 00000000 ____D C:\Intel
2013-04-21 14:11 - 2013-04-21 14:11 - 00000000 __RHD C:\MSOCache
2013-04-21 14:11 - 2013-04-21 14:11 - 00000000 ____D C:\Users\nbuswell\AppData\Local\Microsoft Help
2013-04-21 14:10 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\restore
2013-04-21 14:08 - 2013-04-21 14:08 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-04-21 14:04 - 2013-04-21 14:02 - 00000000 ____D C:\ProgramData\PRICache
2013-04-21 14:02 - 2013-04-21 14:02 - 00000020 ___SH C:\Users\nbuswell\ntuser.ini
2013-04-21 14:02 - 2013-04-21 11:34 - 00000000 ____D C:\Windows\Panther
2013-04-21 13:59 - 2013-04-21 13:59 - 00000117 ____A C:\Windows\System32\netcfg-414781.txt
2013-04-21 13:59 - 2013-04-21 13:59 - 00000117 ____A C:\Windows\System32\netcfg-414546.txt
2013-04-21 13:58 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\Recovery
2013-04-21 13:58 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\Registration
2013-04-21 13:57 - 2013-04-21 13:57 - 00022744 ____A C:\Windows\System32\emptyregdb.dat
2013-04-21 13:57 - 2013-04-21 13:57 - 00000117 ____A C:\Windows\System32\netcfg-313921.txt
2013-04-21 13:57 - 2013-04-21 13:57 - 00000117 ____A C:\Windows\System32\netcfg-311531.txt
2013-04-21 13:57 - 2013-04-21 13:57 - 00000117 ____A C:\Windows\System32\netcfg-310765.txt
2013-04-21 13:57 - 2013-04-21 13:34 - 00034293 ____A C:\Windows\diagwrn.xml
2013-04-21 13:57 - 2013-04-21 13:34 - 00034293 ____A C:\Windows\diagerr.xml
2013-04-21 13:57 - 2013-04-21 12:49 - 00006633 ____A C:\Windows\comsetup.log
2013-04-21 13:57 - 2012-07-26 00:12 - 00000000 __RSD C:\Windows\Media
2013-04-21 13:57 - 2012-07-26 00:12 - 00000000 __RHD C:\Users\Public\Libraries
2013-04-21 13:56 - 2013-04-21 13:56 - 00000000 ____D C:\Windows\CSC
2013-04-21 13:55 - 2013-04-21 13:55 - 00001139 ____A C:\Windows\System32\netcfg-141937.txt
2013-04-21 13:55 - 2013-04-21 13:55 - 00001139 ____A C:\Windows\System32\netcfg-141359.txt
2013-04-21 13:54 - 2013-04-21 13:54 - 00000117 ____A C:\Windows\System32\netcfg-118062.txt
2013-04-21 13:54 - 2013-04-21 13:54 - 00000117 ____A C:\Windows\System32\netcfg-117703.txt
2013-04-21 13:52 - 2013-03-29 18:33 - 00000000 ____D C:\Windows\SysWOW64\syncdb
2013-04-21 13:52 - 2012-07-25 23:49 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2013-04-21 13:52 - 2012-07-25 21:38 - 00000000 ____D C:\Windows\System32\Sysprep
2013-04-21 13:52 - 2011-03-23 18:33 - 00000000 ____D C:\Windows\en
2013-04-21 13:50 - 2013-04-30 15:26 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2013-04-21 13:50 - 2013-04-30 15:26 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\IObit
2013-04-21 13:50 - 2013-04-30 15:26 - 00000000 ____D C:\Users\DefaultAppPool\AppData\LocalGoogle
2013-04-21 13:50 - 2013-04-30 15:26 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Google
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1395546.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1394484.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1394234.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1394046.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1393640.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000235 ____A C:\Windows\System32\netcfg-1393046.txt
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\LocalGoogle
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\LocalGoogle
2013-04-21 13:50 - 2013-04-21 13:50 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-04-21 13:50 - 2012-07-26 00:13 - 00003960 ____A C:\Windows\DtcInstall.log
2013-04-21 13:50 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\SysWOW64\IME
2013-04-21 13:50 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2013-04-21 13:50 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\NDF
2013-04-21 13:50 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\IME
2013-04-21 13:50 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\schemas
2013-04-21 13:50 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\Resources
2013-04-21 13:50 - 2012-02-04 11:03 - 00000000 ____D C:\Windows\SysWOW64\xlive
2013-04-21 13:50 - 2012-01-16 16:37 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2013-04-21 13:50 - 2011-06-22 05:55 - 00000000 ____D C:\Windows\SysWOW64\sda
2013-04-21 13:50 - 2009-07-13 19:20 - 00000000 ____D C:\users\Default.migrated
2013-04-21 13:49 - 2013-04-21 13:30 - 00000000 ____D C:\Program Files\CONEXANT
2013-04-21 13:49 - 2012-07-26 00:12 - 00000000 __SHD C:\Program Files\Windows Sidebar
2013-04-21 13:49 - 2012-07-26 00:12 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2013-04-21 13:49 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\LiveKernelReports
2013-04-21 13:49 - 2010-11-20 23:16 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-04-21 13:49 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files\Microsoft Games
2013-04-21 13:49 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files\DVD Maker
2013-04-21 13:49 - 2009-07-13 19:20 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2013-04-21 13:36 - 2009-07-13 19:20 - 00000000 ___HD C:\Windows\System32\GroupPolicy
2013-04-21 13:33 - 2013-04-21 13:33 - 00951150 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-04-21 13:33 - 2013-04-21 13:33 - 00021658 ____A C:\Windows\iis.log
2013-04-21 13:30 - 2013-04-21 13:30 - 00001136 ____A C:\Windows\System32\netcfg-181437.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00001136 ____A C:\Windows\System32\netcfg-175390.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000197 ____A C:\Windows\System32\netcfg-178156.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000185 ____A C:\Windows\System32\netcfg-157171.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000164 ____A C:\Windows\System32\netcfg-153156.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000161 ____A C:\Windows\System32\netcfg-154765.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000160 ____A C:\Windows\System32\netcfg-154343.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000160 ____A C:\Windows\System32\netcfg-153890.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000159 ____A C:\Windows\System32\netcfg-153687.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000157 ____A C:\Windows\System32\netcfg-154140.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000150 ____A C:\Windows\System32\netcfg-152937.txt
2013-04-21 13:30 - 2013-04-21 13:30 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-04-21 13:30 - 2013-04-21 13:30 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2013-04-21 13:29 - 2013-04-21 13:29 - 00000160 ____A C:\Windows\System32\netcfg-152109.txt
2013-04-21 13:29 - 2013-04-21 13:29 - 00000157 ____A C:\Windows\System32\netcfg-152734.txt
2013-04-21 13:24 - 2012-07-26 00:18 - 00028672 __ASH C:\Windows\System32\config\BCD-Template.LOG
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Windows\SysWOW64\BestPractices
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Windows\System32\msmq
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Windows\System32\BestPractices
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files\MSBuild
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-04-21 13:22 - 2013-04-21 13:22 - 00000000 ____D C:\inetpub
2013-04-21 13:20 - 2013-04-21 13:20 - 00262144 ____A C:\Windows\System32\config\userdiff
2013-04-21 13:19 - 2013-04-21 13:19 - 00000000 ____D C:\Program Files\Synaptics
2013-04-21 13:17 - 2012-07-25 21:37 - 00000000 __RHD C:\users\Default
2013-04-21 12:50 - 2012-10-13 18:39 - 01975714 ____A C:\Windows\WindowsUpdate (1).log
2013-04-21 12:49 - 2009-07-13 20:45 - 00024608 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-04-21 12:49 - 2009-07-13 20:45 - 00024608 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-04-21 12:11 - 2011-03-23 18:28 - 00000000 ____D C:\Program Files (x86)\TOSHIBA
2013-04-21 12:10 - 2011-07-16 12:59 - 00001945 ____A C:\Windows\epplauncher.mif
2013-04-21 12:00 - 2011-03-23 18:27 - 00000000 ____D C:\Program Files\Toshiba
2013-04-21 11:57 - 2011-03-23 18:30 - 00000000 ____D C:\ProgramData\Toshiba
2013-04-21 08:08 - 2013-04-21 08:08 - 00001456 ____A C:\Users\nbuswell\AppData\Local\Adobe Save for Web 12.0 Prefs
2013-04-16 18:20 - 2012-04-12 20:38 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\TS3Client
2013-04-16 16:23 - 2012-12-24 12:26 - 00000000 ____D C:\Users\nbuswell\Desktop\Games
2013-04-14 13:15 - 2013-04-14 09:49 - 00000000 ____D C:\Users\nbuswell\Downloads\Ultimate
2013-04-14 13:09 - 2013-04-14 09:48 - 00000000 ____D C:\Users\nbuswell\AppData\Roaming\ftblauncher
2013-04-14 10:13 - 2013-03-27 11:49 - 00000000 ____D C:\Program Files (x86)\War Thunder
2013-04-14 10:04 - 2013-04-14 09:57 - 00001981 ____A C:\Users\nbuswell\Downloads\server.log
2013-04-14 09:48 - 2013-04-14 09:48 - 00515317 ____A () C:\Users\nbuswell\Desktop\FTB_Launcher.exe
Other Malware:
===========
C:\ProgramData\hash.dat
==================== Known DLLs (Whitelisted) ================

==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================

==================== Memory info ===========================
Percentage of memory in use: 17%
Total physical RAM: 4043.86 MB
Available physical RAM: 3343.61 MB
Total Pagefile: 4043.86 MB
Available Pagefile: 3364.93 MB
Total Virtual: 8192 MB
Available Virtual: 8191.89 MB
==================== Drives ================================
Drive c: (TI106139W0E) (Fixed) (Total:282.9 GB) (Free:26.72 GB) NTFS (Disk=0 Partition=2) ==>[System with boot components (obtained from reading drive)]
Drive e: (System) (Fixed) (Total:1.46 GB) (Free:1.07 GB) NTFS (Disk=0 Partition=1) ==>[System with boot components (obtained from reading drive)]
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: () (Removable) (Total:14.91 GB) (Free:11.4 GB) NTFS (Disk=1 Partition=1)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows Vista) (Size: 298 GB) (Disk ID: 4E59E2AF)
Partition 1: (Active) - (Size=1 GB) - (Type=27)
Partition 2: (Not Active) - (Size=283 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=14 GB) - (Type=17)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 15 GB) (Disk ID: 00000000)
Partition 1: (Active) - (Size=15 GB) - (Type=07 NTFS)

Last Boot: 2013-05-09 16:57
==================== End Of Log ============================
 
Re-run FRST again.
Type the following in the edit box after "Search:".

CLFS.SYS

Click Search button and post the log (Search.txt) it makes in your reply.
 
Farbar Recovery Scan Tool (x64) Version: 11-05-2013 01
Ran by SYSTEM at 2013-05-11 15:31:42
Running from C:\
Boot Mode: Recovery
================== Search: "CLFS.SYS" ===================
C:\Windows\WinSxS\amd64_microsoft-windows-commonlog_31bf3856ad364e35_6.2.9200.16384_none_d74c4211b1503bec\clfs.sys
[2012-07-25 18:29] - [2012-07-25 20:57] - 0361200 ____A (Microsoft Corporation) 83C591EBBF14758EB2AD5B8F5216B0C3
C:\Windows\System32\Drivers\clfs.sys
[2012-07-25 18:29] - [2012-07-25 20:57] - 0361200 ____A (Microsoft Corporation) 83C591EBBF14758EB2AD5B8F5216B0C3
====== End Of Search ======
 
I just checked my clfs.sys file and it has very same date but different MD5 number.

Let's see if this will help....

Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7: Now please enter System Recovery Options.
On Windows XP: Now please boot into the UBCD.
Run FRST/FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

See if you can boot normally.
 

Attachments

  • fixlist.txt
    27 bytes · Views: 9
Still same error when booting.

Here is the log file.

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-05-2013 01
Ran by SYSTEM at 2013-05-11 16:34:05 Run:1
Running from Y:\
Boot Mode: Recovery
==============================================
DEFAULT hive was successfully copied to System32\config\HiveBackup
DEFAULT hive was successfully restored from registry back up.
SAM hive was successfully copied to System32\config\HiveBackup
SAM hive was successfully restored from registry back up.
SECURITY hive was successfully copied to System32\config\HiveBackup
SECURITY hive was successfully restored from registry back up.
SOFTWARE hive was successfully copied to System32\config\HiveBackup
SOFTWARE hive was successfully restored from registry back up.
SYSTEM hive was successfully copied to System32\config\HiveBackup
SYSTEM hive was successfully restored from registry back up.
==== End of Fixlog ====
 
After I put the file on the USB drive, what do you want me to do on my laptop? Post #9 was the search for CLFS.SYS on the laptop, but nothing has changed if the file is just copied to the USB drive.

Should I copy the new CLFS.SYS to C:\Windows\System32\drivers folder?
 
Post #9 was the search for CLFS.SYS on the laptop, but nothing has changed if the file is just copied to the USB drive.
I need you to redo very same search so I can see you pasted that file in a right location.
Post search results.
 
I copied your CLFS.SYS file to C:\Windows\System32\drivers and did the FRST Search (log is below). I also tried rebooting, but still have the same error.

Farbar Recovery Scan Tool (x64) Version: 11-05-2013 01
Ran by SYSTEM at 2013-05-11 22:25:26
Running from C:\
Boot Mode: Recovery
================== Search: "CLFS.SYS" ===================
C:\Windows\WinSxS\amd64_microsoft-windows-commonlog_31bf3856ad364e35_6.2.9200.16384_none_d74c4211b1503bec\clfs.sys
[2012-07-25 18:29] - [2013-05-11 18:08] - 0361200 ____A (Microsoft Corporation) 9905168708DB68849B879B5548F68AB3
C:\Windows\System32\Drivers\clfs.sys
[2012-07-25 18:29] - [2013-05-11 18:08] - 0361200 ____A (Microsoft Corporation) 9905168708DB68849B879B5548F68AB3
====== End Of Search ======
 
It seems to have different MD5 number than my file but in any case....try to boot your computer normally and see what happens.
 
OK, here is the deal....
I don't really see anything seriously malicious on your computer.
I can see couple of minor issues which we can fix but I doubt it'll help.
I'll give a shot though.
If this doesn't help you'll have to either try Windows forum or reinstall Windows.

Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7: Now please enter System Recovery Options.
On Windows XP: Now please boot into the UBCD.
Run FRST/FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.
See if you can boot normally.
 

Attachments

  • fixlist.txt
    1.5 KB · Views: 6
Ok, ran the FRST with the fixlist.txt (log below) and tried rebooting. Still failing, but now it is saying there's a problem with the WDFLDR.SYS file.

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-05-2013 01
Ran by SYSTEM at 2013-05-11 23:37:50 Run:2
Running from Y:\
Boot Mode: Recovery
==============================================
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SearchProtectAll => Value deleted successfully.
C:\Users\nbuswell\AppData\Roaming\SearchProtect => Moved successfully.
HKEY_USERS\nbuswell\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtect => Value deleted successfully.
HKEY_USERS\nbuswell_2\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtect => Value deleted successfully.
C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk => Moved successfully.
C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe => Moved successfully.
C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk not found.
C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe not found.
C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk => Moved successfully.
C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe not found.
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs => Value was restored successfully.
CltMngSvc => Service deleted successfully.
C:\Program Files (x86)\SearchProtect => Moved successfully.
Updater Service for StartNow Toolbar => Service deleted successfully.
C:\Program Files (x86)\StartNow Toolbar => Moved successfully.
rdyboost => Service deleted successfully.
C:\ProgramData\hash.dat => Moved successfully.
==== End of Fixlog ====
 
I did a Search on the WDFLDR.SYS so you have that. I also attached the FRST log rather than the cut and paste. Let me know if you still want me to paste it into the post.

Farbar Recovery Scan Tool (x64) Version: 11-05-2013 01
Ran by SYSTEM at 2013-05-11 23:46:25
Running from C:\
Boot Mode: Recovery
================== Search: "WDFLDR.SYS" ===================
C:\Windows\WinSxS\amd64_microsoft-windows-wdf-kernellibrary_31bf3856ad364e35_6.2.9200.20604_none_cffcdf95c08d0971\WdfLdr.sys
[2012-07-25 21:26] - [2012-07-25 21:26] - 0054376 ____A (Microsoft Corporation) D41D8CD98F00B204E9800998ECF8427E
C:\Windows\WinSxS\amd64_microsoft-windows-wdf-kernellibrary_31bf3856ad364e35_6.2.9200.16497_none_cf14f276a7b5b3fe\WdfLdr.sys
[2012-07-25 21:26] - [2012-07-25 21:26] - 0054376 ____A (Microsoft Corporation) D41D8CD98F00B204E9800998ECF8427E
C:\Windows\WinSxS\amd64_microsoft-windows-wdf-kernellibrary_31bf3856ad364e35_6.2.9200.16384_none_cf1cbf9ea7b04ee1\WdfLdr.sys
[2012-07-25 21:26] - [2012-07-25 21:26] - 0054376 ____A (Microsoft Corporation) D41D8CD98F00B204E9800998ECF8427E
C:\Windows\System32\Drivers\WdfLdr.sys
[2012-07-25 21:26] - [2012-07-25 21:26] - 0054376 ____A (Microsoft Corporation) D41D8CD98F00B204E9800998ECF8427E
====== End Of Search ======
 

Attachments

  • FRST.txt
    125.8 KB · Views: 1
Nothing there so unfortunately there is not much else I can do.
You either try Windows forum or you reinstall Windows.
 
Back