1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Solved Slow Desktop PC performance (suspected virus infection)

Discussion in 'Malware and Virus Removal Archive' started by scgoh123, 2015/02/09.

  1. 2015/02/09
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    [Solved] Slow Desktop PC performance (suspected virus infection)

    Basic specs of desktop PC::
    Asus Desktop PC
    Processor: intel i5 2.50GHz
    RAM: DDR3 8GB
    64-bit OS
    Current OS: Windows 8.1

    Hi broni. Gonna seek your help again.
    Even though my desktop has decent specs, but its boot up time is even slower than my laptop!
    Isn't it weird? Usually with lower specs, windows 8.1 will boot to the start menu in seconds instead of minutes!
    Last week I just performed a refresh of the PC due to unbootable computer (yes that's definitely virus infection), but after refreshing, the boot up time still as slow as usual. :mad:

    So I need your assistance to analyse whether the desktop is infected by virus . Thanks!
     
  2. 2015/02/09
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    MBAM log

    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 9/2/2015
    Scan Time: 8:30:06 PM
    Logfile: mbam.txt
    Administrator: Yes

    Version: 2.00.4.1028
    Malware Database: v2015.02.09.05
    Rootkit Database: v2015.02.03.01
    License: Free
    Malware Protection: Disabled
    Malicious Website Protection: Disabled
    Self-protection: Disabled

    OS: Windows 8.1
    CPU: x64
    File System: NTFS
    User: Amos

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 407491
    Time Elapsed: 5 min, 38 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 0
    (No malicious items detected)

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 0
    (No malicious items detected)

    Files: 3
    Trojan.Agent, C:\Users\user\AppData\Local\Temp\Quarantine.exe, Quarantined, [9ecb67b5f298db5b054742dc52b07a86],
    PUP.Optional.OutBrowse, C:\Users\user\Downloads\KMSPico 10.0.5 (1).exe, Quarantined, [6900c755711946f00153bf5645bdf20e],
    PUP.Optional.OutBrowse, C:\Users\user\Downloads\KMSPico 10.0.5.exe, Quarantined, [15547f9d08827abc65ef6aab42c0c43c],

    Physical Sectors: 0
    (No malicious items detected)


    (end)
     

  3. to hide this advert.

  4. 2015/02/09
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    As for DDS log, I can't open the program because it stated that DDS is not meant to run in 'Compatibility Mode' and the program will exit. But when I right-clicked on the program it does not have the compatibility option.
     
  5. 2015/02/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    What do you mean by refreshing PC?
     
  6. 2015/02/10
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    Refreshing PC is another option of reformatting the PC without losing personal files. However, All the installed programs and windows updates will be wiped off. I just noticed about this feature in Windows 8 Recovery.

    BTW, what should I do for the DDS?
     
  7. 2015/02/10
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    [​IMG] Download RogueKiller from one of the following links and save it to your Desktop:

    Link 1
    Link 2

    • Close all the running programs
    • Windows Vista/7/8 users: right click on RogueKiller.exe, click Run as Administrator
    • Otherwise just double-click on RogueKiller.exe
    • Pre-scan will start. Let it finish.
    • Click on SCAN button.
    • Wait until the Status box shows Scan Finished
    • Click on Delete.
    • Wait until the Status box shows Deleting Finished.
    • Click on Report and copy/paste the content of the Notepad into your next reply.
    • RKreport.txt could also be found on your desktop.
    • If more than one log is produced post all logs.
    • If RogueKiller has been blocked, do not hesitate to try a few times more. If really won't run, rename it to winlogon.exe (or winlogon.com) and try again

    [​IMG] Create new restore point before proceeding with the next step....
    How to: http://www.smartestcomputing.us.com/topic/63983-how-to-create-new-restore-point-all-windows/

    Download [​IMG] Malwarebytes Anti-Rootkit (MBAR) to your desktop.
    • Warning! Malwarebytes Anti-Rootkit needs to be run from an account with administrator rights.
    • Double click on downloaded file. OK self extracting prompt.
    • MBAR will start. Click "Next" to continue.
    • Click in the following screen "Update" to obtain the latest malware definitions.
    • Once the update is complete select "Next" and click "Scan ".
    • When the scan is finished and no malware has been found select "Exit ".
    • If malware was detected, make sure to check all the items and click "Cleanup ". Reboot your computer.
    • Open the MBAR folder located on your Desktop and paste the content of the following files in your next reply:
      • "mbar-log-{date} (xx-xx-xx).txt "
      • "system-log.txt "
    NOTE. If you see This version requires you to completely exit the Anti Malware application message right click on the Malwarebytes Anti-Malware icon in the system tray and click on Exit.
     
  8. 2015/02/11
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    RogueKiller V10.2.0.0 [Jan 19 2015] by Adlice Software
    mail : http://www.adlice.com/contact/
    Feedback : http://forum.adlice.com
    Website : http://www.adlice.com/softwares/roguekiller/
    Blog : http://www.adlice.com

    Operating System : Windows 8.1 (6.3.9200 ) 64 bits version
    Started in : Normal mode
    User : Amos [Administrator]
    Mode : Scan -- Date : 02/11/2015 23:23:53

    ¤¤¤ Processes : 0 ¤¤¤

    ¤¤¤ Registry : 7 ¤¤¤
    [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\mailUpdate (C:\ProgramData\MailUpdate\mailUpdate.exe -service) -> Found
    [Hidden.From.SCM] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VerifierExt (system32\drivers\VerifierExt.sys) -> Found
    [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mailUpdate (C:\ProgramData\MailUpdate\mailUpdate.exe -service) -> Found
    [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Found
    [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Found
    [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Found
    [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Found

    ¤¤¤ Tasks : 0 ¤¤¤

    ¤¤¤ Files : 0 ¤¤¤

    ¤¤¤ Hosts File : 0 ¤¤¤

    ¤¤¤ Antirootkit : 0 (Driver: Not loaded [0xc000036b]) ¤¤¤

    ¤¤¤ Web browsers : 0 ¤¤¤

    ¤¤¤ MBR Check : ¤¤¤
    +++++ PhysicalDrive0: WDC WD10EZEX-22BN5A0 +++++
    --- User ---
    [MBR] 71a7a60f8d4f49698e91bde0f16a26f9
    [BSP] 03c2fe1fef33cd0c1c165de26dacaa1f : Empty MBR Code
    Partition table:
    0 - [XXXXXX] UNKNOWN (0x0) [VISIBLE] Offset (sectors): 1 | Size: 2097151 MB
    User = LL1 ... OK
    User = LL2 ... OK
     
  9. 2015/02/11
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    ---------------------------------------
    Malwarebytes Anti-Rootkit BETA 1.08.3.1004

    (c) Malwarebytes Corporation 2011-2012

    OS version: 6.3.9200 Windows 8.1 x64

    Account is Administrative

    Internet Explorer version: 11.0.9600.17498

    File system is: NTFS
    Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED
    CPU speed: 3.193000 GHz
    Memory total: 8526295040, free: 5770268672

    Downloaded database version: v2015.02.11.05
    Downloaded database version: v2015.02.03.01
    Downloaded database version: v2014.12.06.01
    =======================================
    Initializing...
    ------------ Kernel report ------------
    02/11/2015 23:27:55
    ------------ Loaded modules -----------
    \SystemRoot\system32\ntoskrnl.exe
    \SystemRoot\system32\hal.dll
    \SystemRoot\system32\kd.dll
    \SystemRoot\system32\mcupdate_GenuineIntel.dll
    \SystemRoot\System32\drivers\werkernel.sys
    \SystemRoot\System32\drivers\CLFS.SYS
    \SystemRoot\System32\drivers\tm.sys
    \SystemRoot\system32\PSHED.dll
    \SystemRoot\system32\BOOTVID.dll
    \SystemRoot\system32\CI.dll
    \SystemRoot\System32\drivers\msrpc.sys
    \SystemRoot\system32\drivers\Wdf01000.sys
    \SystemRoot\system32\drivers\WDFLDR.SYS
    \SystemRoot\System32\Drivers\acpiex.sys
    \SystemRoot\System32\Drivers\WppRecorder.sys
    \SystemRoot\System32\drivers\ACPI.sys
    \SystemRoot\System32\drivers\WMILIB.SYS
    \SystemRoot\System32\Drivers\cng.sys
    \SystemRoot\System32\drivers\msisadrv.sys
    \SystemRoot\System32\drivers\pci.sys
    \SystemRoot\System32\drivers\vdrvroot.sys
    \SystemRoot\system32\drivers\pdc.sys
    \SystemRoot\System32\drivers\partmgr.sys
    \SystemRoot\System32\drivers\spaceport.sys
    \SystemRoot\System32\drivers\volmgr.sys
    \SystemRoot\System32\drivers\volmgrx.sys
    \SystemRoot\System32\drivers\mountmgr.sys
    \SystemRoot\System32\drivers\iaStorA.sys
    \SystemRoot\System32\drivers\storport.sys
    \SystemRoot\system32\drivers\fltmgr.sys
    \SystemRoot\System32\drivers\fileinfo.sys
    \SystemRoot\System32\Drivers\Wof.sys
    \SystemRoot\System32\Drivers\Ntfs.sys
    \SystemRoot\System32\Drivers\ksecdd.sys
    \SystemRoot\System32\drivers\pcw.sys
    \SystemRoot\System32\Drivers\Fs_Rec.sys
    \SystemRoot\system32\drivers\ndis.sys
    \SystemRoot\system32\drivers\NETIO.SYS
    \SystemRoot\System32\Drivers\ksecpkg.sys
    \SystemRoot\System32\drivers\tcpip.sys
    \SystemRoot\System32\drivers\fwpkclnt.sys
    \SystemRoot\system32\DRIVERS\wfplwfs.sys
    \SystemRoot\System32\DRIVERS\fvevol.sys
    \SystemRoot\System32\drivers\volsnap.sys
    \SystemRoot\System32\drivers\rdyboost.sys
    \SystemRoot\System32\Drivers\mup.sys
    \SystemRoot\System32\drivers\intelpep.sys
    \SystemRoot\System32\drivers\disk.sys
    \SystemRoot\System32\drivers\CLASSPNP.SYS
    \SystemRoot\System32\Drivers\aswVmm.sys
    \SystemRoot\System32\Drivers\aswRvrt.sys
    \SystemRoot\System32\Drivers\crashdmp.sys
    \SystemRoot\System32\drivers\cdrom.sys
    \SystemRoot\system32\drivers\aswSnx.sys
    \SystemRoot\system32\drivers\aswSP.sys
    \SystemRoot\System32\Drivers\Null.SYS
    \SystemRoot\System32\Drivers\Beep.SYS
    \SystemRoot\System32\drivers\BasicRender.sys
    \SystemRoot\System32\drivers\dxgkrnl.sys
    \SystemRoot\System32\drivers\watchdog.sys
    \SystemRoot\System32\drivers\dxgmms1.sys
    \SystemRoot\System32\drivers\BasicDisplay.sys
    \SystemRoot\System32\Drivers\Npfs.SYS
    \SystemRoot\System32\Drivers\Msfs.SYS
    \SystemRoot\system32\DRIVERS\tdx.sys
    \SystemRoot\system32\DRIVERS\TDI.SYS
    \SystemRoot\System32\DRIVERS\netbt.sys
    \SystemRoot\system32\drivers\aswRdr2.sys
    \SystemRoot\system32\drivers\afd.sys
    \SystemRoot\system32\DRIVERS\pacer.sys
    \SystemRoot\system32\DRIVERS\netbios.sys
    \SystemRoot\system32\DRIVERS\rdbss.sys
    \SystemRoot\system32\drivers\nsiproxy.sys
    \SystemRoot\System32\drivers\npsvctrig.sys
    \SystemRoot\System32\drivers\mssmbios.sys
    \SystemRoot\System32\Drivers\dfsc.sys
    \SystemRoot\SysWow64\drivers\AsUpIO.sys
    \SystemRoot\SysWow64\drivers\AsIO.sys
    \SystemRoot\system32\DRIVERS\ahcache.sys
    \SystemRoot\System32\drivers\CompositeBus.sys
    \SystemRoot\system32\DRIVERS\kdnic.sys
    \SystemRoot\System32\drivers\umbus.sys
    \SystemRoot\system32\DRIVERS\nvlddmkm.sys
    \SystemRoot\System32\drivers\HDAudBus.sys
    \SystemRoot\System32\drivers\USBXHCI.SYS
    \SystemRoot\System32\drivers\ucx01000.sys
    \SystemRoot\system32\DRIVERS\TeeDriverx64.sys
    \SystemRoot\system32\DRIVERS\e1d64x64.sys
    \SystemRoot\System32\drivers\usbehci.sys
    \SystemRoot\System32\drivers\USBPORT.SYS
    \SystemRoot\System32\Drivers\fastfat.SYS
    \SystemRoot\System32\drivers\intelppm.sys
    \SystemRoot\System32\drivers\wmiacpi.sys
    \SystemRoot\System32\drivers\UEFI.sys
    \SystemRoot\System32\drivers\NdisVirtualBus.sys
    \SystemRoot\System32\drivers\swenum.sys
    \SystemRoot\System32\drivers\ks.sys
    \SystemRoot\System32\drivers\rdpbus.sys
    \SystemRoot\System32\drivers\usbhub.sys
    \SystemRoot\System32\drivers\USBD.SYS
    \SystemRoot\System32\drivers\UsbHub3.sys
    \SystemRoot\system32\drivers\nvhda64v.sys
    \SystemRoot\system32\drivers\portcls.sys
    \SystemRoot\system32\drivers\drmk.sys
    \SystemRoot\system32\drivers\ksthunk.sys
    \SystemRoot\system32\drivers\RTKVHD64.sys
    \SystemRoot\System32\Drivers\dump_diskdump.sys
    \SystemRoot\system32\drivers\AmUStor.SYS
    \SystemRoot\System32\Drivers\dump_iaStorA.sys
    \SystemRoot\System32\Drivers\dump_dumpfve.sys
    \SystemRoot\System32\drivers\hidusb.sys
    \SystemRoot\System32\drivers\HIDCLASS.SYS
    \SystemRoot\System32\drivers\HIDPARSE.SYS
    \SystemRoot\System32\drivers\kbdclass.sys
    \SystemRoot\System32\drivers\mouhid.sys
    \SystemRoot\System32\drivers\mouclass.sys
    \SystemRoot\System32\win32k.sys
    \SystemRoot\System32\drivers\monitor.sys
    \SystemRoot\System32\TSDDD.dll
    \SystemRoot\system32\drivers\luafv.sys
    \SystemRoot\system32\drivers\aswMonFlt.sys
    \SystemRoot\system32\drivers\aswStm.sys
    \SystemRoot\system32\DRIVERS\lltdio.sys
    \SystemRoot\system32\DRIVERS\rspndr.sys
    \SystemRoot\System32\drivers\condrv.sys
    \SystemRoot\system32\drivers\HTTP.sys
    \SystemRoot\system32\DRIVERS\bowser.sys
    \SystemRoot\System32\drivers\mpsdrv.sys
    \SystemRoot\system32\DRIVERS\mrxsmb.sys
    \SystemRoot\system32\DRIVERS\mrxsmb20.sys
    \SystemRoot\system32\drivers\aswHwid.sys
    \??\C:\WINDOWS\system32\Drivers\rikvm_38F51D56.sys
    \SystemRoot\system32\DRIVERS\mrxsmb10.sys
    \SystemRoot\system32\drivers\Ndu.sys
    \SystemRoot\system32\drivers\peauth.sys
    \SystemRoot\System32\Drivers\secdrv.SYS
    \SystemRoot\System32\DRIVERS\srvnet.sys
    \SystemRoot\System32\drivers\tcpipreg.sys
    \SystemRoot\System32\DRIVERS\srv2.sys
    \SystemRoot\System32\DRIVERS\srv.sys
    \SystemRoot\system32\DRIVERS\tunnel.sys
    \SystemRoot\System32\drivers\rdpvideominiport.sys
    \SystemRoot\System32\cdd.dll
    \SystemRoot\System32\drivers\USBSTOR.SYS
    \SystemRoot\system32\drivers\WudfPf.sys
    \SystemRoot\system32\DRIVERS\WUDFRd.sys
    \SystemRoot\System32\drivers\WpdUpFltr.sys
    \??\C:\WINDOWS\system32\drivers\mbamchameleon.sys
    \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
    ----------- End -----------
    Done!

    Scan started
    Database versions:
    main: v2015.02.11.05
    rootkit: v2015.02.03.01

    <<<2>>>
    Physical Sector Size: 512
    Drive: 0, DevicePointer: 0xffffe001dfd9e060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\disk\
    --------- Disk Stack ------
    DevicePointer: 0xffffe001dfd9eb20, DeviceName: Unknown, DriverName: \Driver\partmgr\
    DevicePointer: 0xffffe001dfd9e060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\disk\
    DevicePointer: 0xffffe001de5f5e50, DeviceName: Unknown, DriverName: \Driver\ACPI\
    DevicePointer: 0xffffe001de6d2400, DeviceName: Unknown, DriverName: \Driver\ACPI\
    DevicePointer: 0xffffe001de6d57f0, DeviceName: \Device\0000002c\, DriverName: \Driver\iaStorA\
    ------------ End ----------
    Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\disk\
    Upper DeviceData: 0x0, 0x0, 0x0
    Lower DeviceData: 0x0, 0x0, 0x0
    <<<3>>>
    Volume: C:
    File system type: NTFS
    SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
    <<<2>>>
    <<<3>>>
    Volume: C:
    File system type: NTFS
    SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
    Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
    Done!
    Drive 0
    This is a System drive
    Scanning MBR on drive 0...
    Inspecting partition table:
    This drive is a GPT Drive.
    MBR Signature: 55AA
    Disk Signature: CCD8730E

    GPT Protective MBR Partition information:

    Partition 0 type is EFI-GPT (0xee)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 1 Numsec = 4294967295

    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0 Numsec = 0

    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0 Numsec = 0

    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0 Numsec = 0

    GPT Partition information:

    GPT Header Signature 4546492050415254
    GPT Header Revision 65536 Size 92 CRC 2479520070
    GPT Header CurrentLba = 1 BackupLba 1953525167
    GPT Header FirstUsableLba 34 LastUsableLba 1953525134
    GPT Header Guid 2c83b8cf-6bfd-4db7-a23b-8a3d5f5377bf
    GPT Header Contains 128 partition entries starting at LBA 2
    GPT Header Partition entry size = 128

    Backup GPT header Signature 4546492050415254
    Backup GPT header Revision 65536 Size 92 CRC 2479520070
    Backup GPT header CurrentLba = 1953525167 BackupLba 1
    Backup GPT header FirstUsableLba 34 LastUsableLba 1953525134
    Backup GPT header Guid 2c83b8cf-6bfd-4db7-a23b-8a3d5f5377bf
    Backup GPT header Contains 128 partition entries starting at LBA 1953525135
    Backup GPT header Partition entry size = 128

    Partition 0 Type de94bba4-6d1-4d40-a16a-bfd5179d6ac
    Partition ID 23609896-b4ba-4b66-97bb-7eafc0e37a5d
    FirstLBA 2048 Last LBA 1640447
    Attributes 1
    Partition Name Basic data partition

    Partition 1 Type c12a7328-f81f-11d2-ba4b-0a0c93ec93b
    Partition ID f509a15a-1c9-4368-875e-3c359a54a161
    FirstLBA 1640448 Last LBA 2172927
    Attributes 0
    Partition Name EFI system partition

    GPT Partition 1 is bootable
    Partition 2 Type e3c9e316-b5c-4db8-817d-f92df0215ae
    Partition ID 4cb62b07-9809-48b4-a9b9-351359116ad
    FirstLBA 2172928 Last LBA 2435071
    Attributes 0
    Partition Name Microsoft reserved partition

    Partition 3 Type ebd0a0a2-b9e5-4433-87c0-68b6b72699c7
    Partition ID 3ec4bafc-18f5-49ce-8ac2-763b9691ae
    FirstLBA 2435072 Last LBA 317007871
    Attributes 0
    Partition Name Basic data partition

    Partition 4 Type ebd0a0a2-b9e5-4433-87c0-68b6b72699c7
    Partition ID bb398a60-e636-4dd7-8078-672376d9b929
    FirstLBA 317007872 Last LBA 1920729087
    Attributes 0
    Partition Name Basic data partition

    Partition 5 Type de94bba4-6d1-4d40-a16a-bfd5179d6ac
    Partition ID 132fddd0-f6e6-4ee7-832d-2443374d2a14
    FirstLBA 1920729088 Last LBA 1953523711
    Attributes 1
    Partition Name Basic data partition

    Disk Size: 1000204886016 bytes
    Sector size: 512 bytes

    Done!
    Physical Sector Size: 512
    Drive: 1, DevicePointer: 0xffffe001df245060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\disk\
    --------- Disk Stack ------
    DevicePointer: 0xffffe001df0cdb20, DeviceName: Unknown, DriverName: \Driver\partmgr\
    DevicePointer: 0xffffe001df245060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\disk\
    DevicePointer: 0xffffe001dfab0b10, DeviceName: \Device\0000005b\, DriverName: \Driver\USBSTOR\
    ------------ End ----------
    Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\disk\
    Upper DeviceData: 0x0, 0x0, 0x0
    Lower DeviceData: 0x0, 0x0, 0x0
    Drive 1
    Scanning MBR on drive 1...
    Inspecting partition table:
    MBR Signature: 55AA
    Disk Signature: C3072E18

    Partition information:

    Partition 0 type is Other (0xc)
    Partition is ACTIVE.
    Partition starts at LBA: 8064 Numsec = 30481344
    Partition file system is FAT32
    Partition is not bootable

    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0 Numsec = 0

    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0 Numsec = 0

    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0 Numsec = 0

    Disk Size: 15610576896 bytes
    Sector size: 512 bytes

    Done!
    Scan finished
     
  10. 2015/02/11
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    Sorry for my late reply, due to heavy loads of assignments in college.
    Can you extend the maximum days for a reply because I don't go online frequently nowadays?
     
  11. 2015/02/11
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Post back when you can

    [​IMG] Please download AdwCleaner by Xplode onto your desktop.
    • Close all open programs and internet browsers.
    • Double click on adwcleaner.exe to run the tool.
    • Click on Scan button.
    • When the scan has finished click on Clean button.
    • Your computer will be rebooted automatically. A text file will open after the restart.
    • Please post the contents of that logfile with your next reply.
    • You can find the logfile at C:\AdwCleaner[S1].txt as well.

    [​IMG] Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator ".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.

    [​IMG] Please download Farbar Recovery Scan Tool and save it to your Desktop.

    Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please copy and paste it to your reply.
     
  12. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    # AdwCleaner v4.110 - Logfile created 12/02/2015 at 15:23:07
    # Updated 05/02/2015 by Xplode
    # Database : 2015-02-09.1 [Server]
    # Operating system : Windows 8.1 (x64)
    # Username : Amos - ASUS
    # Running from : C:\Users\user\Downloads\adwcleaner_4.110.exe
    # Option : Cleaning

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****

    Folder Deleted : C:\ProgramData\apn

    ***** [ Scheduled tasks ] *****


    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****


    ***** [ Web browsers ] *****

    -\\ Internet Explorer v11.0.9600.17416


    -\\ Google Chrome v40.0.2214.111


    *************************

    AdwCleaner[R0].txt - [4211 bytes] - [27/01/2015 23:10:29]
    AdwCleaner[R1].txt - [874 bytes] - [12/02/2015 15:20:59]
    AdwCleaner[S0].txt - [3596 bytes] - [27/01/2015 23:12:36]
    AdwCleaner[S1].txt - [804 bytes] - [12/02/2015 15:23:07]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [862 bytes] ##########
     
  13. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 6.4.2 (02.02.2015:1)
    OS: Windows 8.1 x64
    Ran by Amos on Thu 12/02/2015 at 15:28:02.52
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




    ~~~ Services



    ~~~ Registry Values



    ~~~ Registry Keys



    ~~~ Files



    ~~~ Folders



    ~~~ Event Viewer Logs were cleared





    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Thu 12/02/2015 at 15:31:09.11
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
  14. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    FRST log part 1

    Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-02-2015 02
    Ran by Amos (administrator) on ASUS on 12-02-2015 15:32:27
    Running from C:\Users\user\Downloads
    Loaded Profiles: Amos (Available profiles: Amos & Administrator)
    Platform: Windows 8.1 (X64) OS Language: English (United States)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
    (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
    (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSWinService.exe
    () C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSUpdateChecker.exe
    (ASUSTeK) C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe
    (Microsoft Corporation) C:\Windows\System32\InputMethod\CHS\ChsIME.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
    () C:\Windows\SysWOW64\AsHookDevice.exe
    (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
    (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
    (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
    () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
    (BitTorrent Inc.) C:\Users\user\AppData\Roaming\BitTorrent\BitTorrent.exe
    (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
    (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
    () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
    (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
    (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSPanel.exe
    (Thisisu) C:\Users\user\Desktop\JRT_NEW.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
    (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
    (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


    ==================== Registry (Whitelisted) ==================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
    HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-30] (Realtek Semiconductor)
    HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-08] (Intel Corporation)
    HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-17] (NVIDIA Corporation)
    HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2014-01-09] (ASUSTek Computer Inc.)
    HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\ASUSWSLoader.exe [63296 2013-08-16] ()
    HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-09] (CyberLink Corp.)
    HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [181208 2013-06-24] (cyberlink)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-02-09] (AVAST Software)
    HKLM\...\Policies\Explorer: [NoFolderOptions] 0
    HKLM\...\Policies\Explorer: [NoControlPanel] 0
    HKU\S-1-5-21-413873820-248839952-575072685-1002\...\Run: [BitTorrent] => C:\Users\user\AppData\Roaming\BitTorrent\BitTorrent.exe [1442904 2015-02-10] (BitTorrent Inc.)
    ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.0.3.226\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.0.3.226\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.0.3.226\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
    HKU\S-1-5-21-413873820-248839952-575072685-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-413873820-248839952-575072685-1002 -> {E062413F-21FA-478C-A673-ED6CAB200848} URL = http://www.youtube.com/results?search_query={searchTerms}
    BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
    BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
    BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
    BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
    DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
    Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
    Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
    Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
    Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
    Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
    Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

    FireFox:
    ========
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
    FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
    FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
    FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2015-02-02]
    FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
    FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-09]

    Chrome:
    =======
    CHR HomePage: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1422285347&from=obw&uid=WDCXWD10EZEX-22BN5A0_WD-WCC3F156124961249
    CHR StartupUrls: Default -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1422285347&from=obw&uid=WDCXWD10EZEX-22BN5A0_WD-WCC3F156124961249 "
    CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
    CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Google Slides) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-26]
    CHR Extension: (Google Docs) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-26]
    CHR Extension: (Google Drive) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-26]
    CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-26]
    CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-26]
    CHR Extension: (Google Search) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-26]
    CHR Extension: (Google Sheets) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-26]
    CHR Extension: (SiteAdvisor) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-02-03]
    CHR Extension: (Google Wallet) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-26]
    CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-26]
    CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-02-09]
    CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-02-09]
    CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-02-09]

    ==================== Services (Whitelisted) =================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-08-28] ()
    R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSWinService.exe [71680 2013-08-16] (ASUS Cloud Corporation) [File not signed]
    R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-02-09] (AVAST Software)
    R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation)
    S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [244696 2013-06-25] (CyberLink)
    R2 Device Handle Service; C:\Windows\SysWOW64\AsHookDevice.exe [207160 2013-08-09] ()
    R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-24] (MAGIX AG) [File not signed]
    S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-27] (MAGIX®) [File not signed]
    R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-08] (Intel Corporation)
    R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
    S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
    R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-20] (Intel Corporation)
    R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [155368 2015-01-30] (McAfee, Inc.)
    R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
    S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
    S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
    S2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe -service [X]

    ==================== Drivers (Whitelisted) ====================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
    R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-04] ()
    R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-02-09] ()
    R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-02-09] (AVAST Software)
    R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-02-09] (AVAST Software)
    R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-02-09] ()
    R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-02-09] (AVAST Software)
    R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-02-09] (AVAST Software)
    R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-02-09] (AVAST Software)
    R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-02-09] ()
    S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-05] (Microsoft Corporation)
    R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-27] (Intel Corporation)
    R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-20] (Intel Corporation)
    U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-02-11] ()
    S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

    ==================== NetSvcs (Whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
     
  15. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    ==================== One Month Created Files and Folders ========

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2015-02-12 15:32 - 2015-02-12 15:32 - 00018225 _____ () C:\Users\user\Downloads\FRST.txt
    2015-02-12 15:32 - 2015-02-12 15:32 - 00000000 ____D () C:\FRST
    2015-02-12 15:31 - 2015-02-12 15:31 - 00000621 _____ () C:\Users\user\Desktop\JRT.txt
    2015-02-12 15:27 - 2015-02-03 02:13 - 01388274 _____ (Thisisu) C:\Users\user\Desktop\JRT_NEW.exe
    2015-02-12 15:20 - 2015-02-12 15:20 - 02134016 _____ (Farbar) C:\Users\user\Downloads\FRST64.exe
    2015-02-12 15:19 - 2015-02-12 15:19 - 02112512 _____ () C:\Users\user\Downloads\adwcleaner_4.110.exe
    2015-02-12 00:53 - 2015-02-12 01:06 - 124159056 _____ () C:\Users\user\Downloads\mahou-shoujo-madoka-magica-episode-9.mp4
    2015-02-11 23:27 - 2015-02-12 00:52 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
    2015-02-11 23:24 - 2015-02-12 00:52 - 00000000 ____D () C:\Users\user\Desktop\mbar
    2015-02-11 23:20 - 2015-02-11 23:20 - 00035064 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
    2015-02-11 23:20 - 2015-02-11 23:20 - 00000000 ____D () C:\ProgramData\RogueKiller
    2015-02-11 23:19 - 2015-02-11 23:21 - 16466552 _____ (Malwarebytes Corp.) C:\Users\user\Downloads\mbar-1.08.3.1004.exe
    2015-02-11 23:18 - 2015-02-11 23:19 - 15431256 _____ () C:\Users\user\Downloads\RogueKiller.exe
    2015-02-10 19:48 - 2015-02-10 20:00 - 140687067 _____ () C:\Users\user\Downloads\mahou-shoujo-madoka-magica-episode-10.mp4
    2015-02-09 20:54 - 2015-02-09 20:54 - 00001366 _____ () C:\Users\user\Desktop\mbam.txt
    2015-02-09 20:27 - 2015-02-09 20:27 - 00001987 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
    2015-02-09 20:27 - 2015-02-09 20:27 - 00000000 ____D () C:\Users\user\AppData\Roaming\AVAST Software
    2015-02-09 20:27 - 2015-02-09 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
    2015-02-09 20:26 - 2015-02-12 15:24 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
    2015-02-09 20:26 - 2015-02-09 20:26 - 01050432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00436624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
    2015-02-09 20:26 - 2015-02-09 20:26 - 00267632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00116728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00087912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
    2015-02-09 20:26 - 2015-02-09 20:26 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
    2015-02-09 20:26 - 2015-02-09 20:26 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
    2015-02-09 20:24 - 2014-10-18 17:55 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
    2015-02-09 20:24 - 2014-10-18 16:09 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
    2015-02-09 20:24 - 2014-10-18 16:09 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
    2015-02-09 20:24 - 2014-10-18 15:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
    2015-02-09 20:24 - 2014-10-18 14:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
    2015-02-09 20:24 - 2014-10-18 14:38 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
    2015-02-09 20:24 - 2014-10-18 14:27 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
    2015-02-09 20:24 - 2014-10-18 14:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
    2015-02-09 20:24 - 2014-10-18 14:23 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
    2015-02-09 20:24 - 2014-10-18 14:23 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
    2015-02-09 20:24 - 2014-10-18 14:21 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
    2015-02-09 20:24 - 2014-10-18 14:20 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
    2015-02-09 20:24 - 2014-10-18 14:14 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
    2015-02-09 20:24 - 2014-10-18 14:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
    2015-02-09 20:24 - 2014-10-18 14:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
    2015-02-09 20:24 - 2014-10-18 14:11 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
    2015-02-09 20:18 - 2015-02-09 20:18 - 00000000 ____D () C:\Program Files\AVAST Software
    2015-02-09 20:16 - 2015-02-09 20:18 - 00000000 ____D () C:\ProgramData\AVAST Software
    2015-02-09 20:16 - 2015-02-09 20:16 - 05006864 _____ (AVAST Software) C:\Users\user\Downloads\avast_free_antivirus_setup_online.exe
    2015-02-09 20:16 - 2015-02-09 20:16 - 00688992 _____ (Swearware) C:\Users\user\Downloads\dds.com
    2015-02-04 02:09 - 2015-02-04 02:09 - 00000000 ____D () C:\Users\user\Downloads\KPcov9
    2015-02-04 01:55 - 2015-02-04 01:55 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
    2015-02-03 23:44 - 2014-07-24 23:28 - 00419648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
    2015-02-03 23:44 - 2014-07-24 23:28 - 00412992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
    2015-02-03 23:44 - 2014-07-24 23:28 - 00280384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
    2015-02-03 23:44 - 2014-07-24 23:28 - 00143680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
    2015-02-03 23:44 - 2014-07-24 23:23 - 00125472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
    2015-02-03 23:44 - 2014-07-24 23:20 - 00645592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
    2015-02-03 23:44 - 2014-07-24 23:20 - 00263400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
    2015-02-03 23:44 - 2014-07-24 23:16 - 02574208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
    2015-02-03 23:44 - 2014-07-24 23:16 - 00211216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
    2015-02-03 23:44 - 2014-07-24 23:07 - 02009920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
    2015-02-03 23:44 - 2014-07-24 23:05 - 01660048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
    2015-02-03 23:44 - 2014-07-24 23:05 - 01519560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
    2015-02-03 23:44 - 2014-07-24 23:05 - 01488008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
    2015-02-03 23:44 - 2014-07-24 23:05 - 01356840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
    2015-02-03 23:44 - 2014-07-24 23:03 - 02141920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
    2015-02-03 23:44 - 2014-07-24 23:03 - 00882136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
    2015-02-03 23:44 - 2014-07-24 23:03 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
    2015-02-03 23:44 - 2014-07-24 23:03 - 00233888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
    2015-02-03 23:44 - 2014-07-24 23:03 - 00205512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
    2015-02-03 23:44 - 2014-07-24 21:50 - 00098048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
    2015-02-03 23:44 - 2014-07-24 21:48 - 02410976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
    2015-02-03 23:44 - 2014-07-24 21:48 - 00180208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
    2015-02-03 23:44 - 2014-07-24 21:46 - 00477200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
    2015-02-03 23:44 - 2014-07-24 21:36 - 02145472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
    2015-02-03 23:44 - 2014-07-24 21:36 - 00707536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
    2015-02-03 23:44 - 2014-07-24 21:36 - 00355800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
    2015-02-03 23:44 - 2014-07-24 21:36 - 00180720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
    2015-02-03 23:44 - 2014-07-24 19:51 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRUM.DLL
    2015-02-03 23:44 - 2014-07-24 19:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYAK.DLL
    2015-02-03 23:44 - 2014-07-24 19:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTT102.DLL
    2015-02-03 23:44 - 2014-07-24 19:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAT.DLL
    2015-02-03 23:44 - 2014-07-24 19:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU1.DLL
    2015-02-03 23:44 - 2014-07-24 19:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBASH.DLL
    2015-02-03 23:44 - 2014-07-24 19:51 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU.DLL
    2015-02-03 23:44 - 2014-07-24 19:46 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
    2015-02-03 23:44 - 2014-07-24 19:45 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
    2015-02-03 23:44 - 2014-07-24 19:44 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
    2015-02-03 23:44 - 2014-07-24 19:43 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
    2015-02-03 23:44 - 2014-07-24 19:42 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
    2015-02-03 23:44 - 2014-07-24 19:42 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
    2015-02-03 23:44 - 2014-07-24 19:41 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
    2015-02-03 23:44 - 2014-07-24 19:06 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
    2015-02-03 23:44 - 2014-07-24 19:05 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
    2015-02-03 23:44 - 2014-07-24 19:05 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
    2015-02-03 23:44 - 2014-07-24 18:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYAK.DLL
    2015-02-03 23:44 - 2014-07-24 18:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTT102.DLL
    2015-02-03 23:44 - 2014-07-24 18:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAT.DLL
    2015-02-03 23:44 - 2014-07-24 18:51 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRUM.DLL
    2015-02-03 23:44 - 2014-07-24 18:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU1.DLL
    2015-02-03 23:44 - 2014-07-24 18:51 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBASH.DLL
    2015-02-03 23:44 - 2014-07-24 18:51 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU.DLL
    2015-02-03 23:44 - 2014-07-24 18:49 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll
    2015-02-03 23:44 - 2014-07-24 18:32 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.cpl
    2015-02-03 23:44 - 2014-07-24 18:20 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
    2015-02-03 23:44 - 2014-07-24 18:18 - 01089024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
    2015-02-03 23:44 - 2014-07-24 18:12 - 00878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
    2015-02-03 23:44 - 2014-07-24 18:10 - 01844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
    2015-02-03 23:44 - 2014-07-24 18:10 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
    2015-02-03 23:44 - 2014-07-24 18:10 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
    2015-02-03 23:44 - 2014-07-24 18:10 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasnap.dll
    2015-02-03 23:44 - 2014-07-24 18:05 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
    2015-02-03 23:44 - 2014-07-24 17:52 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
    2015-02-03 23:44 - 2014-07-24 17:44 - 16874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
    2015-02-03 23:44 - 2014-07-24 17:42 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.cpl
    2015-02-03 23:44 - 2014-07-24 17:40 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
    2015-02-03 23:44 - 2014-07-24 17:39 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
    2015-02-03 23:44 - 2014-07-24 17:33 - 01741824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
    2015-02-03 23:44 - 2014-07-24 17:32 - 01048064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
    2015-02-03 23:44 - 2014-07-24 17:27 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
    2015-02-03 23:44 - 2014-07-24 17:25 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
    2015-02-03 23:44 - 2014-07-24 17:24 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
    2015-02-03 23:44 - 2014-07-24 17:21 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
    2015-02-03 23:44 - 2014-07-24 17:18 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
    2015-02-03 23:44 - 2014-07-24 17:16 - 12730880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
    2015-02-03 23:44 - 2014-07-24 17:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
    2015-02-03 23:44 - 2014-07-24 17:12 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
    2015-02-03 23:44 - 2014-07-24 17:11 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
    2015-02-03 23:44 - 2014-07-24 17:11 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
    2015-02-03 23:44 - 2014-07-24 17:10 - 00540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
    2015-02-03 23:44 - 2014-07-24 17:04 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
    2015-02-03 23:44 - 2014-07-24 17:04 - 00183808 _____ (Microsoft Corp.)
     
  16. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    C:\WINDOWS\system32\Defrag.exe
    2015-02-03 23:44 - 2014-07-24 17:03 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
    2015-02-03 23:44 - 2014-07-24 16:58 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
    2015-02-03 23:44 - 2014-07-24 16:53 - 01261056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
    2015-02-03 23:44 - 2014-07-24 16:53 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
    2015-02-03 23:44 - 2014-07-24 16:49 - 01287680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
    2015-02-03 23:44 - 2014-07-24 16:49 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
    2015-02-03 23:44 - 2014-07-24 16:48 - 00659968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
    2015-02-03 23:44 - 2014-07-24 16:47 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
    2015-02-03 23:44 - 2014-07-24 16:43 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
    2015-02-03 23:44 - 2014-07-24 16:39 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
    2015-02-03 23:44 - 2014-07-24 16:38 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
    2015-02-03 23:44 - 2014-07-24 16:36 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
    2015-02-03 23:44 - 2014-07-24 16:32 - 01532416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
    2015-02-03 23:44 - 2014-07-24 16:30 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
    2015-02-03 23:44 - 2014-07-24 16:29 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
    2015-02-03 23:44 - 2014-07-24 16:28 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
    2015-02-03 23:44 - 2014-07-24 16:23 - 01404416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
    2015-02-03 23:44 - 2014-07-24 16:22 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
    2015-02-03 23:44 - 2014-07-24 16:21 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
    2015-02-03 23:44 - 2014-07-24 16:21 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
    2015-02-03 23:44 - 2014-07-24 16:18 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
    2015-02-03 23:44 - 2014-07-24 16:18 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
    2015-02-03 23:44 - 2014-07-24 16:16 - 00505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
    2015-02-03 23:44 - 2014-07-24 16:16 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
    2015-02-03 23:44 - 2014-07-24 16:15 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
    2015-02-03 23:44 - 2014-07-24 16:15 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
    2015-02-03 23:44 - 2014-07-24 16:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
    2015-02-03 23:44 - 2014-07-24 16:10 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
    2015-02-03 23:44 - 2014-07-24 16:10 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
    2015-02-03 23:44 - 2014-07-24 16:08 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
    2015-02-03 23:44 - 2014-07-24 16:05 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
    2015-02-03 23:44 - 2014-07-24 16:01 - 01992192 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
    2015-02-03 23:44 - 2014-07-24 16:00 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
    2015-02-03 23:44 - 2014-07-24 15:58 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
    2015-02-03 23:44 - 2014-07-24 15:58 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
    2015-02-03 23:44 - 2014-07-24 15:54 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
    2015-02-03 23:44 - 2014-07-24 15:50 - 01182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
    2015-02-03 23:44 - 2014-07-24 15:47 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
    2015-02-03 23:44 - 2014-07-24 15:44 - 01057792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
    2015-02-03 23:44 - 2014-07-24 15:41 - 00459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
    2015-02-03 23:44 - 2014-07-24 15:28 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
    2015-02-03 23:44 - 2014-07-24 12:11 - 00513544 _____ () C:\WINDOWS\SysWOW64\locale.nls
    2015-02-03 23:44 - 2014-07-24 12:11 - 00513544 _____ () C:\WINDOWS\system32\locale.nls
    2015-02-03 23:44 - 2014-07-12 13:55 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
    2015-02-03 23:44 - 2014-07-12 12:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
    2015-02-03 23:44 - 2014-07-04 20:59 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
    2015-02-03 23:44 - 2014-07-04 18:29 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
    2015-02-03 23:44 - 2014-07-04 18:20 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
    2015-02-03 23:44 - 2014-07-04 18:06 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
    2015-02-03 23:44 - 2014-07-04 18:00 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
    2015-02-03 23:44 - 2014-07-04 17:30 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
    2015-02-03 23:44 - 2014-07-04 17:27 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
    2015-02-03 23:44 - 2014-06-27 14:22 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
    2015-02-03 23:44 - 2014-06-26 08:32 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
    2015-02-03 23:44 - 2014-06-26 08:29 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
    2015-02-03 23:44 - 2014-06-20 07:37 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
    2015-02-03 23:44 - 2014-06-19 10:13 - 00310080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
    2015-02-03 23:44 - 2014-06-14 14:03 - 02389504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
    2015-02-03 23:44 - 2014-06-14 13:46 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
    2015-02-03 23:44 - 2014-06-07 20:46 - 00216368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
    2015-02-03 23:44 - 2014-06-07 18:20 - 00189016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
    2015-02-03 23:44 - 2014-06-05 22:00 - 01118040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
    2015-02-03 23:44 - 2014-06-05 18:18 - 01018368 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
    2015-02-03 23:44 - 2014-06-05 17:42 - 00889856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
    2015-02-03 23:44 - 2014-05-31 13:00 - 01463808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
    2015-02-03 23:44 - 2014-05-31 12:18 - 01319936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
    2015-02-03 23:44 - 2014-05-29 14:23 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
    2015-02-03 23:44 - 2014-05-29 13:25 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
    2015-02-03 23:44 - 2014-05-26 15:26 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
    2015-02-03 23:44 - 2014-05-10 18:12 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
    2015-02-03 23:44 - 2014-05-10 16:46 - 00335680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
    2015-02-03 23:44 - 2014-05-06 12:41 - 00486744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
    2015-02-03 23:44 - 2014-05-06 08:55 - 00391000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
    2015-02-03 23:44 - 2014-03-25 10:27 - 00160600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
    2015-02-03 23:44 - 2014-03-25 10:27 - 00123920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
    2015-02-03 23:44 - 2014-03-25 09:20 - 00128568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
    2015-02-03 23:44 - 2014-03-25 09:20 - 00127544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
    2015-02-01 16:12 - 2015-02-01 16:12 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
    2015-02-01 16:12 - 2015-02-01 16:12 - 00000000 ____D () C:\WINDOWS\system32\appraiser
    2015-02-01 16:10 - 2015-02-01 16:10 - 00000000 ____D () C:\Users\user\AppData\Roaming\WinRAR
    2015-02-01 16:08 - 2015-02-01 16:08 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
    2015-02-01 16:08 - 2015-02-01 16:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
    2015-02-01 16:07 - 2015-02-01 16:08 - 00000000 ____D () C:\Program Files\WinRAR
    2015-02-01 15:33 - 2014-04-14 11:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
    2015-02-01 15:30 - 2015-02-01 15:30 - 00000885 _____ () C:\Users\user\Desktop\BitTorrent.lnk
    2015-02-01 15:30 - 2015-02-01 15:30 - 00000865 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
    2015-02-01 15:29 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\user\AppData\Roaming\BitTorrent
    2015-02-01 15:28 - 2015-02-01 15:29 - 01743448 _____ (BitTorrent Inc.) C:\Users\user\Downloads\BitTorrent (1).exe
    2015-01-29 22:53 - 2015-01-29 22:53 - 00006881 _____ () C:\Users\user\Downloads\senarai_markah_pelajar_SPMC_T5_2012.xls
    2015-01-29 21:36 - 2014-11-10 10:29 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
    2015-01-29 21:36 - 2014-11-10 09:51 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll
    2015-01-29 21:36 - 2014-10-31 07:39 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
    2015-01-29 21:36 - 2014-10-31 07:38 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
    2015-01-29 21:36 - 2014-08-15 08:36 - 00146752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
    2015-01-29 21:36 - 2014-07-30 09:56 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
    2015-01-29 21:36 - 2014-07-29 13:22 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
    2015-01-29 21:36 - 2014-05-30 11:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
    2015-01-29 21:25 - 2014-12-09 09:50 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
    2015-01-29 21:25 - 2014-10-13 10:33 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
    2015-01-29 21:25 - 2014-10-11 08:58 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
    2015-01-29 21:25 - 2014-10-11 08:53 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
    2015-01-29 21:25 - 2014-10-08 15:30 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
    2015-01-29 21:25 - 2014-10-08 15:09 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
    2015-01-29 21:25 - 2014-10-08 14:27 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
    2015-01-29 21:25 - 2014-10-08 13:32 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
    2015-01-29 21:25 - 2014-10-08 13:19 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
    2015-01-29 21:25 - 2014-09-27 15:13 - 00104336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
    2015-01-29 21:25 - 2014-09-27 13:24 - 00088800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
    2015-01-29 21:25 - 2014-09-27 11:38 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
    2015-01-29 21:25 - 2014-09-27 11:30 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
    2015-01-29 21:25 - 2014-09-27 11:17 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
    2015-01-29 21:25 - 2014-09-22 12:38 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
    2015-01-29 21:25 - 2014-09-22 11:06 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
    2015-01-29 21:25 - 2014-09-22 11:06 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
    2015-01-29 21:25 - 2014-09-22 10:49 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
    2015-01-29 21:25 - 2014-09-19 08:16 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
    2015-01-29 21:25 - 2014-09-03 06:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
    2015-01-29 21:25 - 2014-09-03 06:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
    2015-01-29 21:25 - 2014-03-13 15:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
    2015-01-29 21:25 - 2014-03-13 14:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
    2015-01-29 21:23 - 2014-08-07 10:12 - 01336624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
    2015-01-29 21:23 - 2014-08-02 11:56 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
    2015-01-29 21:23 - 2014-06-20 09:48 - 01273184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
    2015-01-29 21:23 - 2014-06-20 07:52 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
    2015-01-29 21:23 - 2014-06-13 09:15 - 00517528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
    2015-01-29 21:23 - 2014-06-13 09:14 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
    2015-01-29 21:23 - 2014-06-13 08:10 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
    2015-01-29 21:23 - 2014-06-06 19:34 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
    2015-01-29 21:22 - 2014-12-12 10:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
    2015-01-29 21:22 - 2014-12-12 08:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
    2015-01-29 21:22 - 2014-12-04 07:37 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
    2015-01-29 21:22 - 2014-12-04 07:09 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
    2015-01-29 21:22 - 2014-12-03 07:09 - 01083392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
    2015-01-29 21:22 - 2014-12-03 07:09 - 00740864 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
    2015-01-29 21:22 - 2014-12-03 07:09 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
    2015-01-29 21:22 - 2014-12-03 07:09 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
    2015-01-29 21:22 - 2014-12-03 07:09 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
    2015-01-29 21:22 - 2014-10-10 09:58 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
    2015-01-29 21:22 - 2014-10-10 09:58 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
    2015-01-29 21:22 - 2014-10-10 09:44 - 00563976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
    2015-01-29 21:22 - 2014-10-08 15:37 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
    2015-01-29 21:22 - 2014-10-08 15:37 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
    2015-01-29 21:22 - 2014-10-08 15:34 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
    2015-01-29 21:22 - 2014-10-08 15:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
    2015-01-29 21:22 - 2014-10-08 14:56 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
    2015-01-29 21:22 - 2014-10-08 14:51 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
    2015-01-29 21:22 - 2014-10-08 14:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
    2015-01-29 21:22 - 2014-10-08 14:18 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
    2015-01-29 21:22 - 2014-10-08 14:17 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
    2015-01-29 21:22 - 2014-10-08 13:23 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
    2015-01-29 21:22 - 2014-08-02 08:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
    2015-01-29 21:22 - 2014-07-16 02:16 - 03048880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
    2015-01-29 21:22 - 2014-07-15 16:29 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
    2015-01-29 21:22 - 2014-07-15 16:22 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
    2015-01-29 21:22 - 2014-07-15 16:03 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
    2015-01-29 21:22 - 2014-04-11 11:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
    2015-01-29 21:22 - 2014-04-11 10:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
    2015-01-29 21:21 - 2014-12-19 14:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
    2015-01-29 21:21 - 2014-10-17 15:01 - 00789184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
    2015-01-29 21:21 - 2014-10-17 14:58 - 00602768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
    2015-01-29 21:21 - 2014-09-04 08:12 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
    2015-01-29 21:21 - 2014-09-04 08:01 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
    2015-01-29 21:21 - 2014-08-23 15:48 - 02374784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
    2015-01-29 21:21 - 2014-08-23 15:13 - 02084520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
    2015-01-29 21:21 - 2014-08-23 14:10 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
    2015-01-29 21:21 - 2014-08-23 13:32 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
    2015-01-29 21:21 - 2014-08-23 12:33 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
    2015-01-29 21:21 - 2014-08-16 08:29 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
    2015-01-29 21:21 - 2014-08-16 08:23 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
    2015-01-29 21:21 - 2014-08-16 08:22 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
    2015-01-29 21:21 - 2014-08-16 08:19 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
    2015-01-29 21:21 - 2014-08-16 08:17 - 08757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
    2015-01-29 21:21 - 2014-08-16 08:14 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
    2015-01-29 21:21 - 2014-08-16 08:13 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
    2015-01-29 21:21 - 2014-08-16 08:13 - 05902848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
    2015-01-29 21:21 - 2014-08-16 08:11 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
    2015-01-29 21:21 - 2014-08-16 08:08 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
    2015-01-29 21:21 - 2014-08-16 08:07 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
    2015-01-29 21:20 - 2014-08-16 12:08 - 01507648 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
    2015-01-29 21:20 - 2014-08-16 12:01 - 01710184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
    2015-01-29 21:20 - 2014-08-16 11:58 - 01112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
    2015-01-29 21:20 - 2014-08-16 11:16 - 01205976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
    2015-01-29 21:20 - 2014-08-16 11:03 - 01467384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
    2015-01-29 21:20 - 2014-08-16 09:31 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
    2015-01-29 21:20 - 2014-08-16 09:04 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
    2015-01-29 21:20 - 2014-08-16 08:58 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
    2015-01-29 21:20 - 2014-08-16 08:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
    2015-01-29 21:20 - 2014-08-16 08:46 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
    2015-01-29 21:20 - 2014-08-16 08:45 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
    2015-01-29 21:20 - 2014-08-16 08:43 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
    2015-01-29 21:20 - 2014-08-16 08:43 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
    2015-01-29 21:20 - 2014-08-16 08:31 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
    2015-01-29 21:20 - 2014-08-16 08:31 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
    2015-01-29 21:20 - 2014-08-16 08:22 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
    2015-01-29 21:20 - 2014-08-16 08:18 - 04758528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
    2015-01-29 21:20 - 2014-08-16 08:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
    2015-01-29 21:20 - 2014-08-16 08:10 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
    2015-01-29 21:20 - 2014-07-24 23:28 - 00468288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
    2015-01-29 21:20 - 2014-07-24 19:42 - 01200640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
    2015-01-29 21:20 - 2014-07-24 19:41 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
    2015-01-29 21:20 - 2014-07-24 18:09 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
    2015-01-29 21:20 - 2014-07-24 17:27 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
    2015-01-29 21:18 - 2014-10-23 13:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
    2015-01-29 21:18 - 2014-10-23 13:05 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
    2015-01-29 21:18 - 2014-10-13 10:43 - 00238912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
    2015-01-29 21:18 - 2014-10-13 10:43 - 00153920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
    2015-01-29 21:18 - 2014-10-13 10:43 - 00086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
    2015-01-29 21:18 - 2014-10-13 10:43 - 00039744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
    2015-01-29 21:18 - 2014-08-23 13:18 - 02149376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
    2015-01-29 21:18 - 2014-08-23 13:03 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
    2015-01-29 21:18 - 2014-06-10 06:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
    2015-01-29 21:18 - 2014-06-10 06:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
    2015-01-29 21:18 - 2014-05-03 13:36 - 00997888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
    2015-01-29 21:18 - 2014-05-03 13:19 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
    2015-01-29 21:18 - 2014-05-03 13:08 - 00301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
    2015-01-29 21:18 - 2014-05-03 13:07 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
    2015-01-29 21:18 - 2014-05-03 12:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
    2015-01-29 21:18 - 2014-05-03 12:37 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
    2015-01-29 21:18 - 2014-05-03 12:37 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedyn.dll
    2015-01-29 21:18 - 2014-05-03 07:26 - 00050745 _____ () C:\WINDOWS\system32\srms.dat
    2015-01-29 21:18 - 2014-04-30 14:43 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys
    2015-01-29 21:18 - 2014-04-30 14:41 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
    2015-01-29 21:18 - 2014-04-30 14:41 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
    2015-01-29 21:18 - 2014-04-30 14:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
    2015-01-29 21:18 - 2014-04-30 13:45 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
    2015-01-29 21:18 - 2014-04-30 12:48 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
    2015-01-29 21:18 - 2014-04-30 12:24 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
    2015-01-29 21:18 - 2014-04-30 12:23 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
    2015-01-29 21:18 - 2014-04-30 12:23 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
    2015-01-29 21:18 - 2014-04-30 12:23 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
    2015-01-29 21:18 - 2014-04-30 12:14 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
    2015-01-29 21:18 - 2014-04-30 11:59 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
    2015-01-29 21:18 - 2014-04-30 11:46 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
    2015-01-29 21:18 - 2014-04-30 11:46 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
    2015-01-29 21:18 - 2014-04-30 11:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
    2015-01-29 21:18 - 2014-04-30 11:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
    2015-01-29 21:18 - 2014-04-30 11:42 - 00403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
    2015-01-29 21:18 - 2014-04-29 06:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
    2015-01-29 21:18 - 2014-04-27 00:39 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
    2015-01-29 21:18 - 2014-04-18 22:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
    2015-01-29 21:18 - 2014-04-18 17:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
    2015-01-29 21:18 - 2014-04-14 17:37 - 02125344 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
    2015-01-29 21:18 - 2014-04-14 17:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
    2015-01-29 21:18 - 2014-04-14 16:08 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
     
  17. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    2015-01-29 21:18 - 2014-04-14 16:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
    2015-01-29 21:18 - 2014-04-14 13:18 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
    2015-01-29 21:18 - 2014-04-11 12:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
    2015-01-29 21:18 - 2014-04-11 12:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
    2015-01-29 21:18 - 2014-04-09 19:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
    2015-01-29 21:18 - 2014-04-09 14:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
    2015-01-29 21:18 - 2014-04-09 13:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
    2015-01-29 21:18 - 2014-04-09 11:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
    2015-01-29 21:18 - 2014-04-09 06:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll
    2015-01-29 21:18 - 2014-04-09 06:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll
    2015-01-29 21:18 - 2014-04-09 02:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll
    2015-01-29 21:18 - 2014-04-09 02:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll
    2015-01-29 21:18 - 2014-04-08 10:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
    2015-01-29 21:18 - 2014-04-07 00:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
    2015-01-29 21:18 - 2014-04-07 00:34 - 00275800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
    2015-01-29 21:18 - 2014-04-07 00:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
    2015-01-29 21:18 - 2014-04-07 00:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
    2015-01-29 21:18 - 2014-04-07 00:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
    2015-01-29 21:18 - 2014-04-07 00:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
    2015-01-29 21:18 - 2014-04-07 00:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
    2015-01-29 21:18 - 2014-04-07 00:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
    2015-01-29 21:18 - 2014-04-07 00:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
    2015-01-29 21:18 - 2014-04-07 00:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
    2015-01-29 21:18 - 2014-04-06 23:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
    2015-01-29 21:18 - 2014-04-06 23:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
    2015-01-29 21:18 - 2014-04-06 23:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
    2015-01-29 21:18 - 2014-04-06 23:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
    2015-01-29 21:18 - 2014-04-06 23:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
    2015-01-29 21:18 - 2014-04-06 20:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
    2015-01-29 21:18 - 2014-04-06 20:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
    2015-01-29 21:18 - 2014-04-06 20:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
    2015-01-29 21:18 - 2014-04-06 20:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
    2015-01-29 21:18 - 2014-04-06 20:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
    2015-01-29 21:18 - 2014-04-06 19:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
    2015-01-29 21:18 - 2014-04-06 18:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
    2015-01-29 21:18 - 2014-04-06 17:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
    2015-01-29 21:18 - 2014-04-03 16:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
    2015-01-29 21:18 - 2014-04-03 16:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
    2015-01-29 21:18 - 2014-04-03 12:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
    2015-01-29 21:18 - 2014-04-03 12:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
    2015-01-29 21:18 - 2014-04-03 10:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
    2015-01-29 21:18 - 2014-04-03 10:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
    2015-01-29 21:18 - 2014-03-28 23:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
    2015-01-29 21:18 - 2014-03-27 13:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
    2015-01-29 21:18 - 2014-03-27 12:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
    2015-01-29 21:18 - 2014-03-27 11:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
    2015-01-29 21:18 - 2014-03-27 11:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
    2015-01-29 21:18 - 2014-03-19 16:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
    2015-01-29 21:18 - 2014-03-19 15:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
    2015-01-29 21:18 - 2014-03-19 15:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
    2015-01-29 21:18 - 2014-03-18 13:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
    2015-01-29 21:18 - 2014-03-18 12:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
    2015-01-29 21:18 - 2014-03-17 13:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
    2015-01-29 21:18 - 2014-03-17 12:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
    2015-01-29 21:18 - 2014-03-14 14:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
    2015-01-29 21:18 - 2014-03-14 14:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
    2015-01-29 21:16 - 2014-12-06 11:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
    2015-01-29 21:16 - 2014-12-06 09:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
    2015-01-29 21:16 - 2014-11-22 11:13 - 25059840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
    2015-01-29 21:16 - 2014-11-22 10:50 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
    2015-01-29 21:16 - 2014-11-22 10:49 - 02885120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
    2015-01-29 21:16 - 2014-11-22 10:49 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
    2015-01-29 21:16 - 2014-11-22 10:48 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
    2015-01-29 21:16 - 2014-11-22 10:35 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
    2015-01-29 21:16 - 2014-11-22 10:34 - 06039552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
    2015-01-29 21:16 - 2014-11-22 10:22 - 19749376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
    2015-01-29 21:16 - 2014-11-22 10:08 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
    2015-01-29 21:16 - 2014-11-22 10:07 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
    2015-01-29 21:16 - 2014-11-22 10:06 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
    2015-01-29 21:16 - 2014-11-22 10:06 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
    2015-01-29 21:16 - 2014-11-22 10:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
    2015-01-29 21:16 - 2014-11-22 10:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
    2015-01-29 21:16 - 2014-11-22 10:01 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
    2015-01-29 21:16 - 2014-11-22 09:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
    2015-01-29 21:16 - 2014-11-22 09:55 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
    2015-01-29 21:16 - 2014-11-22 09:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
    2015-01-29 21:16 - 2014-11-22 09:49 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
    2015-01-29 21:16 - 2014-11-22 09:49 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
    2015-01-29 21:16 - 2014-11-22 09:49 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
    2015-01-29 21:16 - 2014-11-22 09:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
    2015-01-29 21:16 - 2014-11-22 09:43 - 14412800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
    2015-01-29 21:16 - 2014-11-22 09:35 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
    2015-01-29 21:16 - 2014-11-22 09:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
    2015-01-29 21:16 - 2014-11-22 09:33 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
    2015-01-29 21:16 - 2014-11-22 09:29 - 04299264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
    2015-01-29 21:16 - 2014-11-22 09:29 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
    2015-01-29 21:16 - 2014-11-22 09:28 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
    2015-01-29 21:16 - 2014-11-22 09:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
    2015-01-29 21:16 - 2014-11-22 09:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
    2015-01-29 21:16 - 2014-11-22 09:23 - 00326656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
    2015-01-29 21:16 - 2014-11-22 09:22 - 02052096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
    2015-01-29 21:16 - 2014-11-22 09:15 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
    2015-01-29 21:16 - 2014-11-22 09:13 - 12836864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
    2015-01-29 21:16 - 2014-11-22 09:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
    2015-01-29 21:16 - 2014-11-22 09:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
    2015-01-29 21:16 - 2014-11-22 08:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
    2015-01-29 21:16 - 2014-11-22 08:54 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
    2015-01-29 21:16 - 2014-11-07 12:16 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
    2015-01-29 21:16 - 2014-11-07 11:26 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2015-01-29 21:16 - 2014-11-01 07:57 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
    2015-01-29 21:16 - 2014-11-01 07:47 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
    2015-01-29 21:16 - 2014-10-31 13:12 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wextract.exe
    2015-01-29 21:16 - 2014-10-31 13:12 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshta.exe
    2015-01-29 21:16 - 2014-10-31 13:10 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iexpress.exe
    2015-01-29 21:16 - 2014-10-31 13:09 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
    2015-01-29 21:16 - 2014-10-31 13:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
    2015-01-29 21:16 - 2014-10-31 13:06 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
    2015-01-29 21:16 - 2014-10-31 13:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
    2015-01-29 21:16 - 2014-10-31 13:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
    2015-01-29 21:16 - 2014-10-31 12:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
    2015-01-29 21:16 - 2014-10-31 12:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
    2015-01-29 21:16 - 2014-10-31 12:54 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEAdvpack.dll
    2015-01-29 21:16 - 2014-10-31 12:53 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
    2015-01-29 21:16 - 2014-10-31 12:52 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
    2015-01-29 21:16 - 2014-10-31 12:51 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
    2015-01-29 21:16 - 2014-10-31 12:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
    2015-01-29 21:16 - 2014-10-31 12:50 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
    2015-01-29 21:16 - 2014-10-31 12:40 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
    2015-01-29 21:16 - 2014-10-31 12:38 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
    2015-01-29 21:16 - 2014-10-31 12:30 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
    2015-01-29 21:16 - 2014-10-31 12:29 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
    2015-01-29 21:16 - 2014-10-31 12:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
     
  18. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    2015-01-29 21:16 - 2014-10-31 12:28 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
    2015-01-29 21:16 - 2014-10-31 12:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
    2015-01-29 21:16 - 2014-10-31 12:24 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
    2015-01-29 21:16 - 2014-10-31 12:19 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
    2015-01-29 21:16 - 2014-10-31 11:44 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
    2015-01-29 21:16 - 2014-10-31 11:42 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
    2015-01-29 21:16 - 2014-10-31 11:28 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wextract.exe
    2015-01-29 21:16 - 2014-10-31 11:28 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe
    2015-01-29 21:16 - 2014-10-31 11:27 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iexpress.exe
    2015-01-29 21:16 - 2014-10-31 11:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pngfilt.dll
    2015-01-29 21:16 - 2014-10-31 11:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
    2015-01-29 21:16 - 2014-10-31 11:24 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\url.dll
    2015-01-29 21:16 - 2014-10-31 11:24 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
    2015-01-29 21:16 - 2014-10-31 11:23 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
    2015-01-29 21:16 - 2014-10-31 11:16 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
    2015-01-29 21:16 - 2014-10-31 11:15 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
    2015-01-29 21:16 - 2014-10-31 11:14 - 00112128 _____ (MicrosoftCorporation) C:\WINDOWS\SysWOW64\IEAdvpack.dll
    2015-01-29 21:16 - 2014-10-31 11:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
    2015-01-29 21:16 - 2014-10-31 11:13 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
    2015-01-29 21:16 - 2014-10-31 11:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
    2015-01-29 21:16 - 2014-10-31 11:11 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
    2015-01-29 21:16 - 2014-10-31 11:03 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licmgr10.dll
    2015-01-29 21:16 - 2014-10-31 11:02 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
    2015-01-29 21:16 - 2014-10-31 10:57 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
    2015-01-29 21:16 - 2014-10-31 10:56 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inseng.dll
    2015-01-29 21:16 - 2014-10-31 10:56 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
    2015-01-29 21:16 - 2014-10-31 10:56 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
    2015-01-29 21:16 - 2014-10-31 10:53 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
    2015-01-29 21:16 - 2014-10-31 10:53 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
    2015-01-29 21:16 - 2014-10-31 10:48 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
    2015-01-29 21:16 - 2014-10-31 10:26 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
    2015-01-29 21:16 - 2014-10-31 10:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imgutil.dll
    2015-01-29 21:16 - 2014-10-29 09:24 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
    2015-01-29 21:16 - 2014-10-29 09:01 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
    2015-01-29 21:16 - 2014-10-07 11:30 - 04182016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
    2015-01-29 21:16 - 2014-07-12 12:17 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
    2015-01-29 21:16 - 2014-06-06 21:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
    2015-01-29 21:16 - 2014-06-06 20:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
    2015-01-29 21:16 - 2014-06-02 10:10 - 00423768 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
    2015-01-29 21:16 - 2014-05-31 18:07 - 00440664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys
    2015-01-29 21:16 - 2014-05-31 18:07 - 00089944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys
    2015-01-29 21:16 - 2014-05-31 18:07 - 00027480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
    2015-01-29 21:16 - 2014-05-31 14:30 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
    2015-01-29 21:16 - 2014-05-31 14:27 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
    2015-01-29 21:16 - 2014-05-31 14:26 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
    2015-01-29 21:16 - 2014-05-31 12:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
    2015-01-29 21:16 - 2014-05-31 12:01 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
    2015-01-29 21:16 - 2014-05-31 12:01 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFSvc.dll
    2015-01-29 21:16 - 2014-05-27 17:56 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
    2015-01-29 21:16 - 2014-05-27 17:53 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
    2015-01-29 21:16 - 2014-05-19 14:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
    2015-01-29 21:16 - 2014-05-19 14:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
    2015-01-29 21:16 - 2014-05-19 13:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
    2015-01-29 21:16 - 2014-04-30 12:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
    2015-01-29 21:16 - 2014-04-30 12:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
    2015-01-29 21:16 - 2014-04-30 11:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
    2015-01-29 21:13 - 2014-12-09 03:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
    2015-01-29 21:13 - 2014-12-09 03:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
    2015-01-29 21:13 - 2014-12-06 09:35 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
    2015-01-29 21:13 - 2014-11-10 07:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
    2015-01-29 21:13 - 2014-11-10 07:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
    2015-01-29 21:13 - 2014-11-10 07:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
    2015-01-29 21:13 - 2014-11-10 07:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
    2015-01-29 21:13 - 2014-10-29 12:00 - 00465320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
    2015-01-29 21:13 - 2014-10-29 12:00 - 00139984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
    2015-01-29 21:13 - 2014-10-29 11:52 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
    2015-01-29 21:13 - 2014-10-29 11:52 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
    2015-01-29 21:13 - 2014-10-29 11:52 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
    2015-01-29 21:13 - 2014-10-29 11:52 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
    2015-01-29 21:13 - 2014-10-29 11:12 - 00413136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
    2015-01-29 21:13 - 2014-10-29 11:12 - 00136296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
    2015-01-29 21:13 - 2014-10-29 11:07 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
    2015-01-29 21:13 - 2014-10-29 11:07 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
    2015-01-29 21:13 - 2014-10-29 11:07 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
    2015-01-29 21:13 - 2014-10-29 10:44 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
    2015-01-29 21:13 - 2014-10-29 09:59 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
    2015-01-29 21:13 - 2014-10-29 09:02 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
    2015-01-29 21:13 - 2014-09-10 14:25 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
    2015-01-29 21:13 - 2014-09-08 11:07 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
    2015-01-29 21:13 - 2014-09-08 11:07 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
    2015-01-29 21:13 - 2014-09-08 06:08 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml
    2015-01-29 21:13 - 2014-09-05 06:30 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
    2015-01-29 21:13 - 2014-09-05 06:21 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
    2015-01-29 21:13 - 2014-09-04 11:05 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
    2015-01-29 21:13 - 2014-09-04 10:22 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
    2015-01-29 21:13 - 2014-09-04 09:01 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
    2015-01-29 21:13 - 2014-09-04 08:32 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
    2015-01-29 21:13 - 2014-09-04 08:10 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
    2015-01-29 21:13 - 2014-08-31 08:17 - 00148800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
    2015-01-29 21:13 - 2014-08-31 08:15 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
    2015-01-29 21:13 - 2014-08-31 06:59 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
    2015-01-29 21:13 - 2014-08-31 06:05 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
    2015-01-29 21:13 - 2014-08-31 05:58 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
    2015-01-29 21:13 - 2014-08-31 05:04 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
    2015-01-29 21:13 - 2014-08-31 04:53 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
    2015-01-29 21:13 - 2014-08-31 04:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
    2015-01-29 21:13 - 2014-08-28 10:55 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
    2015-01-29 21:13 - 2014-08-28 08:21 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
    2015-01-29 21:13 - 2014-08-28 08:06 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
    2015-01-29 21:13 - 2014-08-23 13:14 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
    2015-01-29 21:13 - 2014-08-23 13:04 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
    2015-01-29 21:13 - 2014-08-23 12:50 - 02714112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
    2015-01-29 21:13 - 2014-08-02 08:51 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
    2015-01-29 21:13 - 2014-08-02 08:35 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
    2015-01-29 21:13 - 2014-07-24 19:22 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
    2015-01-29 21:13 - 2014-07-24 17:53 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
    2015-01-29 21:13 - 2014-07-24 17:13 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
     
  19. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    2015-01-29 21:13 - 2014-07-24 16:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
    2015-01-29 21:13 - 2014-07-24 16:08 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
    2015-01-29 21:13 - 2014-07-24 15:49 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
    2015-01-29 21:13 - 2014-07-24 15:43 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
    2015-01-29 21:13 - 2014-07-24 11:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
    2015-01-29 21:13 - 2014-07-24 11:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
    2015-01-29 21:13 - 2014-05-13 15:01 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
    2015-01-29 21:13 - 2014-05-01 21:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
    2015-01-29 21:13 - 2014-05-01 13:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
    2015-01-29 21:11 - 2014-05-31 18:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
    2015-01-29 21:11 - 2014-05-31 10:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
    2015-01-29 21:11 - 2014-05-31 10:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
    2015-01-29 21:11 - 2014-04-11 16:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
    2015-01-29 21:11 - 2014-04-11 13:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
    2015-01-27 23:47 - 2015-01-27 23:47 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe
    2015-01-27 23:42 - 2015-01-27 23:47 - 00000000 ____D () C:\ProgramData\HitmanPro
    2015-01-27 23:28 - 2015-02-11 23:27 - 00136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
    2015-01-27 23:28 - 2015-02-11 23:24 - 00097496 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
    2015-01-27 23:28 - 2015-01-27 23:28 - 00001117 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    2015-01-27 23:28 - 2015-01-27 23:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2015-01-27 23:28 - 2015-01-27 23:28 - 00000000 ____D () C:\ProgramData\Malwarebytes
    2015-01-27 23:28 - 2015-01-27 23:28 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-01-27 23:28 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
    2015-01-27 23:28 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
    2015-01-27 23:27 - 2015-01-27 23:30 - 11225840 _____ (SurfRight B.V.) C:\Users\user\Downloads\HitmanPro_x64.exe
    2015-01-27 23:20 - 2015-01-27 23:20 - 00000000 ____D () C:\WINDOWS\ERUNT
    2015-01-27 23:15 - 2015-01-27 23:20 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\user\Downloads\mbam-setup-2.0.4.1028.exe
    2015-01-27 23:10 - 2015-02-12 15:23 - 00000000 ____D () C:\AdwCleaner
    2015-01-27 23:10 - 2015-01-27 23:10 - 01707939 _____ (Thisisu) C:\Users\user\Downloads\JRT.exe
    2015-01-27 23:09 - 2015-01-27 23:10 - 02194432 _____ () C:\Users\user\Downloads\AdwCleaner.exe
    2015-01-27 23:07 - 2015-01-27 23:07 - 00003134 _____ () C:\WINDOWS\System32\Tasks\{E4B90523-2BFA-43F8-BA56-02535AA27824}
    2015-01-27 21:19 - 2015-01-27 21:21 - 00094380 _____ () C:\Users\user\Downloads\Thunder_dl_7.9.32.4882.exe
    2015-01-27 21:18 - 2015-01-27 21:18 - 00005443 _____ () C:\Users\user\Downloads\[kickass.so]winrar.5.20.final.x86.x64.incl.key.atom.torrent
    2015-01-27 21:17 - 2015-01-27 21:17 - 00219687 _____ () C:\Users\user\Downloads\keywinf - Rabu, 21 Januari 2015 [pram-software].rar
    2015-01-27 21:13 - 2015-01-27 21:13 - 01020150 _____ () C:\Users\user\Downloads\KPcov9.7z
    2015-01-27 20:54 - 2014-02-23 00:59 - 01290688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
    2015-01-27 20:54 - 2014-02-23 00:15 - 01929608 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
    2015-01-27 20:54 - 2014-02-23 00:15 - 01206000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
    2015-01-27 20:54 - 2014-02-23 00:00 - 00249688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
    2015-01-27 20:54 - 2014-02-22 23:55 - 01435304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
    2015-01-27 20:54 - 2014-02-22 23:53 - 03394384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
    2015-01-27 20:54 - 2014-02-22 23:46 - 01927600 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
    2015-01-27 20:54 - 2014-02-22 23:46 - 01445616 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
    2015-01-27 20:54 - 2014-02-22 23:46 - 01000424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
    2015-01-27 20:54 - 2014-02-22 23:44 - 00539992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
    2015-01-27 20:54 - 2014-02-22 23:41 - 01215832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
    2015-01-27 20:54 - 2014-02-22 23:41 - 00800552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
    2015-01-27 20:54 - 2014-02-22 23:41 - 00391008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
    2015-01-27 20:54 - 2014-02-22 22:52 - 01767440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
    2015-01-27 20:54 - 2014-02-22 22:51 - 01063976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
    2015-01-27 20:54 - 2014-02-22 22:42 - 01017936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
    2015-01-27 20:54 - 2014-02-22 22:38 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
    2015-01-27 20:54 - 2014-02-22 22:38 - 01077944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
    2015-01-27 20:54 - 2014-02-22 22:04 - 01011280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
    2015-01-27 20:54 - 2014-02-22 22:04 - 00650736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
    2015-01-27 20:54 - 2014-02-22 20:24 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
    2015-01-27 20:54 - 2014-02-22 20:22 - 01163264 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
    2015-01-27 20:54 - 2014-02-22 20:08 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\OobeFldr.dll
    2015-01-27 20:54 - 2014-02-22 20:07 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll
    2015-01-27 20:54 - 2014-02-22 19:28 - 02428928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
    2015-01-27 20:54 - 2014-02-22 19:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\recimg.exe
    2015-01-27 20:54 - 2014-02-22 19:17 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OobeFldr.dll
    2015-01-27 20:54 - 2014-02-22 18:47 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe
    2015-01-27 20:54 - 2014-02-22 18:38 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
    2015-01-27 20:54 - 2014-02-22 18:34 - 11742720 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
    2015-01-27 20:54 - 2014-02-22 18:02 - 08946688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
    2015-01-27 20:54 - 2014-02-22 17:53 - 00825344 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
    2015-01-27 20:54 - 2014-02-22 17:52 - 01132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
    2015-01-27 20:54 - 2014-02-22 17:47 - 01192448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
    2015-01-27 20:54 - 2014-02-22 17:38 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
    2015-01-27 20:54 - 2014-02-22 17:35 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofTasks.dll
    2015-01-27 20:54 - 2014-02-22 17:28 - 02643456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
    2015-01-27 20:54 - 2014-02-22 17:26 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
    2015-01-27 20:54 - 2014-02-22 17:26 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
    2015-01-27 20:54 - 2014-02-22 17:24 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
    2015-01-27 20:54 - 2014-02-22 17:23 - 03494912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
    2015-01-27 20:54 - 2014-02-22 17:23 - 01576960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
    2015-01-27 20:54 - 2014-02-22 17:23 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
    2015-01-27 20:54 - 2014-02-22 17:16 - 11776000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
    2015-01-27 20:54 - 2014-02-22 17:14 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
    2015-01-27 20:54 - 2014-02-22 17:13 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
    2015-01-27 20:54 - 2014-02-22 17:11 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
    2015-01-27 20:54 - 2014-02-22 17:10 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
    2015-01-27 20:54 - 2014-02-22 17:07 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
    2015-01-27 20:54 - 2014-02-22 17:01 - 13933568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
    2015-01-27 20:54 - 2014-02-22 17:00 - 01341440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
    2015-01-27 20:54 - 2014-02-22 17:00 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
    2015-01-27 20:54 - 2014-02-22 16:59 - 01621504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
    2015-01-27 20:54 - 2014-02-22 16:59 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
    2015-01-27 20:54 - 2014-02-22 16:54 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
    2015-01-27 20:54 - 2014-02-22 16:51 - 01258496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll
    2015-01-27 20:54 - 2014-02-22 16:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
    2015-01-27 20:54 - 2014-02-22 16:45 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
    2015-01-27 20:54 - 2014-02-22 16:40 - 02368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
    2015-01-27 20:54 - 2014-02-22 16:39 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
    2015-01-27 20:54 - 2014-02-22 16:37 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
    2015-01-27 20:54 - 2014-02-22 16:22 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
    2015-01-27 20:54 - 2014-02-22 16:21 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
    2015-01-27 20:54 - 2014-02-22 16:06 - 01640960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
    2015-01-27 20:54 - 2014-02-22 16:03 - 01496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
    2015-01-27 20:54 - 2014-02-08 09:08 - 00139600 _____ () C:\WINDOWS\system32\systemsf.ebd
    2015-01-27 20:54 - 2013-12-10 15:35 - 00530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
    2015-01-27 20:53 - 2014-02-23 00:59 - 00289752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
    2015-01-27 20:53 - 2014-02-23 00:59 - 00209160 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
    2015-01-27 20:53 - 2014-02-23 00:15 - 00275312 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
    2015-01-27 20:53 - 2014-02-23 00:15 - 00188464 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
    2015-01-27 20:53 - 2014-02-23 00:15 - 00071888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
    2015-01-27 20:53 - 2014-02-23 00:02 - 00170952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
    2015-01-27 20:53 - 2014-02-23 00:02 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhost.exe
    2015-01-27 20:53 - 2014-02-23 00:02 - 00080048 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostex.exe
    2015-01-27 20:53 - 2014-02-23 00:00 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys
    2015-01-27 20:53 - 2014-02-22 23:59 - 00027480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
    2015-01-27 20:53 - 2014-02-22 23:55 - 00244848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
    2015-01-27 20:53 - 2014-02-22 23:55 - 00162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
    2015-01-27 20:53 - 2014-02-22 23:55 - 00152848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
    2015-01-27 20:53 - 2014-02-22 23:55 - 00131168 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
    2015-01-27 20:53 - 2014-02-22 23:50 - 00761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
    2015-01-27 20:53 - 2014-02-22 23:50 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
    2015-01-27 20:53 - 2014-02-22 23:50 - 00043408 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
    2015-01-27 20:53 - 2014-02-22 23:50 - 00032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
    2015-01-27 20:53 - 2014-02-22 23:49 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
    2015-01-27 20:53 - 2014-02-22 23:49 - 00189784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS
    2015-01-27 20:53 - 2014-02-22 23:49 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
    2015-01-27 20:53 - 2014-02-22 23:48 - 01791752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
    2015-01-27 20:53 - 2014-02-22 23:46 - 00669896 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
    2015-01-27 20:53 - 2014-02-22 23:44 - 00924504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
    2015-01-27 20:53 - 2014-02-22 23:43 - 00142576 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
    2015-01-27 20:53 - 2014-02-22 23:43 - 00094560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
    2015-01-27 20:53 - 2014-02-22 23:41 - 00372360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
    2015-01-27 20:53 - 2014-02-22 22:52 - 00251504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
    2015-01-27 20:53 - 2014-02-22 22:51 - 00140456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
    2015-01-27 20:53 - 2014-02-22 22:42 - 00232896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
    2015-01-27 20:53 - 2014-02-22 22:38 - 00506120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
    2015-01-27 20:53 - 2014-02-22 22:18 - 00089848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe
    2015-01-27 20:53 - 2014-02-22 22:18 - 00041320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
    2015-01-27 20:53 - 2014-02-22 22:18 - 00029912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
    2015-01-27 20:53 - 2014-02-22 22:11 - 00490136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
    2015-01-27 20:53 - 2014-02-22 22:08 - 00079496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
    2015-01-27 20:53 - 2014-02-22 22:04 - 00317584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
    2015-01-27 20:53 - 2014-02-22 22:04 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
    2015-01-27 20:53 - 2014-02-22 20:20 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
    2015-01-27 20:53 - 2014-02-22 20:20 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-power-events.dll
    2015-01-27 20:53 - 2014-02-22 20:17 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
    2015-01-27 20:53 - 2014-02-22 20:17 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
    2015-01-27 20:53 - 2014-02-22 20:17 - 00874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe
    2015-01-27 20:53 - 2014-02-22 20:17 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\f3ahvoas.dll
    2015-01-27 20:53 - 2014-02-22 20:17 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-session-winsta-l1-1-0.dll
    2015-01-27 20:53 - 2014-02-22 20:14 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
    2015-01-27 20:53 - 2014-02-22 20:14 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\watchdog.sys
    2015-01-27 20:53 - 2014-02-22 20:14 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
    2015-01-27 20:53 - 2014-02-22 20:11 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
    2015-01-27 20:53 - 2014-02-22 20:09 - 00663040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
    2015-01-27 20:53 - 2014-02-22 20:08 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncui.dll
    2015-01-27 20:53 - 2014-02-22 20:08 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
    2015-01-27 20:53 - 2014-02-22 20:07 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
    2015-01-27 20:53 - 2014-02-22 20:07 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
    2015-01-27 20:53 - 2014-02-22 20:07 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\clrhost.dll
    2015-01-27 20:53 - 2014-02-22 20:04 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
    2015-01-27 20:53 - 2014-02-22 20:03 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
    2015-01-27 20:53 - 2014-02-22 20:03 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
    2015-01-27 20:53 - 2014-02-22 20:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\aelupsvc.dll
    2015-01-27 20:53 - 2014-02-22 20:01 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
    2015-01-27 20:53 - 2014-02-22 20:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
    2015-01-27 20:53 - 2014-02-22 19:59 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgrade.exe
    2015-01-27 20:53 - 2014-02-22 19:57 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
    2015-01-27 20:53 - 2014-02-22 19:54 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
    2015-01-27 20:53 - 2014-02-22 19:50 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
    2015-01-27 20:53 - 2014-02-22 19:50 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
    2015-01-27 20:53 - 2014-02-22 19:48 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ocsetapi.dll
    2015-01-27 20:53 - 2014-02-22 19:47 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsdyn.dll
    2015-01-27 20:53 - 2014-02-22 19:47 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
    2015-01-27 20:53 - 2014-02-22 19:47 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
    2015-01-27 20:53 - 2014-02-22 19:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
    2015-01-27 20:53 - 2014-02-22 19:45 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
    2015-01-27 20:53 - 2014-02-22 19:45 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhevents.dll
    2015-01-27 20:53 - 2014-02-22 19:42 - 00038680 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
    2015-01-27 20:53 - 2014-02-22 19:41 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
    2015-01-27 20:53 - 2014-02-22 19:37 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskpart.exe
    2015-01-27 20:53 - 2014-02-22 19:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskmgr.dll
    2015-01-27 20:53 - 2014-02-22 19:32 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
    2015-01-27 20:53 - 2014-02-22 19:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
    2015-01-27 20:53 - 2014-02-22 19:27 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll
    2015-01-27 20:53 - 2014-02-22 19:25 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
    2015-01-27 20:53 - 2014-02-22 19:25 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
    2015-01-27 20:53 - 2014-02-22 19:24 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
    2015-01-27 20:53 - 2014-02-22 19:24 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
    2015-01-27 20:53 - 2014-02-22 19:24 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe
    2015-01-27 20:53 - 2014-02-22 19:24 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SSShim.dll
    2015-01-27 20:53 - 2014-02-22 19:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-session-winsta-l1-1-0.dll
    2015-01-27 20:53 - 2014-02-22 19:22 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
    2015-01-27 20:53 - 2014-02-22 19:17 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll
    2015-01-27 20:53 - 2014-02-22 19:16 - 00617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
    2015-01-27 20:53 - 2014-02-22 19:16 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
    2015-01-27 20:53 - 2014-02-22 19:16 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
    2015-01-27 20:53 - 2014-02-22 19:16 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
    2015-01-27 20:53 - 2014-02-22 19:16 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clrhost.dll
    2015-01-27 20:53 - 2014-02-22 19:15 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
    2015-01-27 20:53 - 2014-02-22 19:14 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cleanmgr.exe
    2015-01-27 20:53 - 2014-02-22 19:13 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
    2015-01-27 20:53 - 2014-02-22 19:11 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
    2015-01-27 20:53 - 2014-02-22 19:09 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
    2015-01-27 20:53 - 2014-02-22 19:08 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
    2015-01-27 20:53 - 2014-02-22 19:07 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\scavengeui.dll
    2015-01-27 20:53 - 2014-02-22 19:07 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
    2015-01-27 20:53 - 2014-02-22 19:06 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
    2015-01-27 20:53 - 2014-02-22 19:05 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RASMM.dll
    2015-01-27 20:53 - 2014-02-22 19:05 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
    2015-01-27 20:53 - 2014-02-22 19:05 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
    2015-01-27 20:53 - 2014-02-22 19:05 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentHost.dll
    2015-01-27 20:53 - 2014-02-22 19:04 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
    2015-01-27 20:53 - 2014-02-22 19:02 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContent.dll
    2015-01-27 20:53 - 2014-02-22 19:02 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
    2015-01-27 20:53 - 2014-02-22 19:01 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fsutil.exe
    2015-01-27 20:53 - 2014-02-22 18:59 - 01283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
    2015-01-27 20:53 - 2014-02-22 18:59 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
    2015-01-27 20:53 - 2014-02-22 18:59 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ocsetapi.dll
    2015-01-27 20:53 - 2014-02-22 18:58 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
    2015-01-27 20:53 - 2014-02-22 18:58 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAConn.dll
    2015-01-27 20:53 - 2014-02-22 18:57 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
    2015-01-27 20:53 - 2014-02-22 18:57 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
    2015-01-27 20:53 - 2014-02-22 18:56 - 02862592 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
    2015-01-27 20:53 - 2014-02-22 18:56 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\srchadmin.dll
    2015-01-27 20:53 - 2014-02-22 18:56 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
    2015-01-27 20:53 - 2014-02-22 18:55 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
    2015-01-27 20:53 - 2014-02-22 18:55 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
    2015-01-27 20:53 - 2014-02-22 18:53 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PkgMgr.exe
    2015-01-27 20:53 - 2014-02-22 18:52 - 02288640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
    2015-01-27 20:53 - 2014-02-22 18:52 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
    2015-01-27 20:53 - 2014-02-22 18:51 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
    2015-01-27 20:53 - 2014-02-22 18:50 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskpart.exe
    2015-01-27 20:53 - 2014-02-22 18:47 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmdskmgr.dll
    2015-01-27 20:53 - 2014-02-22 18:47 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
    2015-01-27 20:53 - 2014-02-22 18:47 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
    2015-01-27 20:53 - 2014-02-22 18:46 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
    2015-01-27 20:53 - 2014-02-22 18:41 - 02566656 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
    2015-01-27 20:53 - 2014-02-22 18:41 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
    2015-01-27 20:53 - 2014-02-22 18:41 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\netid.dll
    2015-01-27 20:53 - 2014-02-22 18:40 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
    2015-01-27 20:53 - 2014-02-22 18:38 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
    2015-01-27 20:53 - 2014-02-22 18:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
    2015-01-27 20:53 - 2014-02-22 18:36 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
    2015-01-27 20:53 - 2014-02-22 18:35 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
    2015-01-27 20:53 - 2014-02-22 18:35 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitagent.exe
    2015-01-27 20:53 - 2014-02-22 18:34 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgradeResults.exe
    2015-01-27 20:53 - 2014-02-22 18:33 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
    2015-01-27 20:53 - 2014-02-22 18:32 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
    2015-01-27 20:53 - 2014-02-22 18:30 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cleanmgr.exe
    2015-01-27 20:53 - 2014-02-22 18:27 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
    2015-01-27 20:53 - 2014-02-22 18:25 - 01428480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
    2015-01-27 20:53 - 2014-02-22 18:25 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
    2015-01-27 20:53 - 2014-02-22 18:21 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe
    2015-01-27 20:53 - 2014-02-22 18:21 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
    2015-01-27 20:53 - 2014-02-22 18:20 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
    2015-01-27 20:53 - 2014-02-22 18:18 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
    2015-01-27 20:53 - 2014-02-22 18:18 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
    2015-01-27 20:53 - 2014-02-22 18:17 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
    2015-01-27 20:53 - 2014-02-22 18:17 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
    2015-01-27 20:53 - 2014-02-22 18:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
    2015-01-27 20:53 - 2014-02-22 18:16 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srchadmin.dll
    2015-01-27 20:53 - 2014-02-22 18:16 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
    2015-01-27 20:53 - 2014-02-22 18:15 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
    2015-01-27 20:53 - 2014-02-22 18:14 - 02811392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
    2015-01-27 20:53 - 2014-02-22 18:14 - 02165760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
    2015-01-27 20:53 - 2014-02-22 18:14 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
    2015-01-27 20:53 - 2014-02-22 18:13 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
    2015-01-27 20:53 - 2014-02-22 18:13 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
    2015-01-27 20:53 - 2014-02-22 18:12 - 00797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
    2015-01-27 20:53 - 2014-02-22 18:12 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
    2015-01-27 20:53 - 2014-02-22 18:09 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
    2015-01-27 20:53 - 2014-02-22 18:09 - 01224192 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
    2015-01-27 20:53 - 2014-02-22 18:09 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
    2015-01-27 20:53 - 2014-02-22 18:05 - 01757184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
    2015-01-27 20:53 - 2014-02-22 18:04 - 00935424 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
    2015-01-27 20:53 - 2014-02-22 18:04 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
    2015-01-27 20:53 - 2014-02-22 18:04 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netid.dll
    2015-01-27 20:53 - 2014-02-22 18:03 - 02544128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
    2015-01-27 20:53 - 2014-02-22 18:02 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
    2015-01-27 20:53 - 2014-02-22 18:01 - 01227776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
    2015-01-27 20:53 - 2014-02-22 18:01 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
    2015-01-27 20:53 - 2014-02-22 18:00 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
    2015-01-27 20:53 - 2014-02-22 17:59 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
    2015-01-27 20:53 - 2014-02-22 17:59 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
    2015-01-27 20:53 - 2014-02-22 17:57 - 00710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
    2015-01-27 20:53 - 2014-02-22 17:56 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
    2015-01-27 20:53 - 2014-02-22 17:54 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
    2015-01-27 20:53 - 2014-02-22 17:54 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
    2015-01-27 20:53 - 2014-02-22 17:54 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
    2015-01-27 20:53 - 2014-02-22 17:52 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
    2015-01-27 20:53 - 2014-02-22 17:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
    2015-01-27 20:53 - 2014-02-22 17:49 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
    2015-01-27 20:53 - 2014-02-22 17:48 - 01136128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
    2015-01-27 20:53 - 2014-02-22 17:48 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
    2015-01-27 20:53 - 2014-02-22 17:48 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
    2015-01-27 20:53 - 2014-02-22 17:46 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
    2015-01-27 20:53 - 2014-02-22 17:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
    2015-01-27 20:53 - 2014-02-22 17:45 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
    2015-01-27 20:53 - 2014-02-22 17:45 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
    2015-01-27 20:53 - 2014-02-22 17:45 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
    2015-01-27 20:53 - 2014-02-22 17:44 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
    2015-01-27 20:53 - 2014-02-22 17:44 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\korwbrkr.dll
    2015-01-27 20:53 - 2014-02-22 17:43 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
    2015-01-27 20:53 - 2014-02-22 17:43 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
    2015-01-27 20:53 - 2014-02-22 17:40 - 02537472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
    2015-01-27 20:53 - 2014-02-22 17:39 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
    2015-01-27 20:53 - 2014-02-22 17:36 - 01392640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
    2015-01-27 20:53 - 2014-02-22 17:36 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
    2015-01-27 20:53 - 2014-02-22 17:36 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
    2015-01-27 20:53 - 2014-02-22 17:36 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
    2015-01-27 20:53 - 2014-02-22 17:35 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
    2015-01-27 20:53 - 2014-02-22 17:34 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
    2015-01-27 20:53 - 2014-02-22 17:34 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
    2015-01-27 20:53 - 2014-02-22 17:33 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
    2015-01-27 20:53 - 2014-02-22 17:32 - 01162752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
    2015-01-27 20:53 - 2014-02-22 17:31 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
    2015-01-27 20:53 - 2014-02-22 17:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
    2015-01-27 20:53 - 2014-02-22 17:29 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
    2015-01-27 20:53 - 2014-02-22 17:28 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
    2015-01-27 20:53 - 2014-02-22 17:28 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
    2015-01-27 20:53 - 2014-02-22 17:27 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
    2015-01-27 20:53 - 2014-02-22 17:26 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
    2015-01-27 20:53 - 2014-02-22 17:26 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.exe
    2015-01-27 20:53 - 2014-02-22 17:25 - 00399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
    2015-01-27 20:53 - 2014-02-22 17:25 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
    2015-01-27 20:53 - 2014-02-22 17:25 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
    2015-01-27 20:53 - 2014-02-22 17:25 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
    2015-01-27 20:53 - 2014-02-22 17:23 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
    2015-01-27 20:53 - 2014-02-22 17:23 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
    2015-01-27 20:53 - 2014-02-22 17:22 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
    2015-01-27 20:53 - 2014-02-22 17:22 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
    2015-01-27 20:53 - 2014-02-22 17:19 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
    2015-01-27 20:53 - 2014-02-22 17:18 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
    2015-01-27 20:53 - 2014-02-22 17:16 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxshared.dll
    2015-01-27 20:53 - 2014-02-22 17:15 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
    2015-01-27 20:53 - 2014-02-22 17:14 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
    2015-01-27 20:53 - 2014-02-22 17:12 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
    2015-01-27 20:53 - 2014-02-22 17:10 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
    2015-01-27 20:53 - 2014-02-22 17:09 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
    2015-01-27 20:53 - 2014-02-22 17:09 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
    2015-01-27 20:53 - 2014-02-22 17:08 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
    2015-01-27 20:53 - 2014-02-22 17:07 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
    2015-01-27 20:53 - 2014-02-22 17:06 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
    2015-01-27 20:53 - 2014-02-22 17:04 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll
    2015-01-27 20:53 - 2014-02-22 17:04 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\slpts.dll
    2015-01-27 20:53 - 2014-02-22 17:02 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
    2015-01-27 20:53 - 2014-02-22 17:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
    2015-01-27 20:53 - 2014-02-22 16:58 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
    2015-01-27 20:53 - 2014-02-22 16:55 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
    2015-01-27 20:53 - 2014-02-22 16:55 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
    2015-01-27 20:53 - 2014-02-22 16:55 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
    2015-01-27 20:53 - 2014-02-22 16:55 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll
    2015-01-27 20:53 - 2014-02-22 16:55 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slpts.dll
    2015-01-27 20:53 - 2014-02-22 16:55 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msshooks.dll
    2015-01-27 20:53 - 2014-02-22 16:54 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
    2015-01-27 20:53 - 2014-02-22 16:54 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
    2015-01-27 20:53 - 2014-02-22 16:54 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
    2015-01-27 20:53 - 2014-02-22 16:54 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
    2015-01-27 20:53 - 2014-02-22 16:54 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AepRoam.dll
    2015-01-27 20:53 - 2014-02-22 16:53 - 00876544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
    2015-01-27 20:53 - 2014-02-22 16:52 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
    2015-01-27 20:53 - 2014-02-22 16:51 - 00716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
    2015-01-27 20:53 - 2014-02-22 16:51 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
    2015-01-27 20:53 - 2014-02-22 16:51 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
    2015-01-27 20:53 - 2014-02-22 16:49 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
    2015-01-27 20:53 - 2014-02-22 16:49 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
    2015-01-27 20:53 - 2014-02-22 16:48 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll
    2015-01-27 20:53 - 2014-02-22 16:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
    2015-01-27 20:53 - 2014-02-22 16:48 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
    2015-01-27 20:53 - 2014-02-22 16:48 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msshooks.dll
    2015-01-27 20:53 - 2014-02-22 16:47 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
    2015-01-27 20:53 - 2014-02-22 16:47 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
     
  20. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    2015-01-27 20:53 - 2014-02-22 16:47 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AltTab.dll
    2015-01-27 20:53 - 2014-02-22 16:46 - 03312128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
    2015-01-27 20:53 - 2014-02-22 16:45 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
    2015-01-27 20:53 - 2014-02-22 16:45 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
    2015-01-27 20:53 - 2014-02-22 16:45 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
    2015-01-27 20:53 - 2014-02-22 16:44 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
    2015-01-27 20:53 - 2014-02-22 16:44 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
    2015-01-27 20:53 - 2014-02-22 16:44 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
    2015-01-27 20:53 - 2014-02-22 16:43 - 00644608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
    2015-01-27 20:53 - 2014-02-22 16:43 - 00469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
    2015-01-27 20:53 - 2014-02-22 16:43 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll
    2015-01-27 20:53 - 2014-02-22 16:43 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
    2015-01-27 20:53 - 2014-02-22 16:43 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Renewal.dll
    2015-01-27 20:53 - 2014-02-22 16:42 - 00943104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
    2015-01-27 20:53 - 2014-02-22 16:42 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
    2015-01-27 20:53 - 2014-02-22 16:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
    2015-01-27 20:53 - 2014-02-22 16:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
    2015-01-27 20:53 - 2014-02-22 16:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
    2015-01-27 20:53 - 2014-02-22 16:39 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
    2015-01-27 20:53 - 2014-02-22 16:38 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
    2015-01-27 20:53 - 2014-02-22 16:37 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
    2015-01-27 20:53 - 2014-02-22 16:36 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
    2015-01-27 20:53 - 2014-02-22 16:35 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
    2015-01-27 20:53 - 2014-02-22 16:33 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
    2015-01-27 20:53 - 2014-02-22 16:33 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingMonitor.dll
    2015-01-27 20:53 - 2014-02-22 16:31 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
    2015-01-27 20:53 - 2014-02-22 16:30 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
    2015-01-27 20:53 - 2014-02-22 16:29 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
    2015-01-27 20:53 - 2014-02-22 16:24 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
    2015-01-27 20:53 - 2014-02-22 16:24 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
    2015-01-27 20:53 - 2014-02-22 16:22 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
    2015-01-27 20:53 - 2014-02-22 16:21 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
    2015-01-27 20:53 - 2014-02-22 16:20 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
    2015-01-27 20:53 - 2014-02-22 16:20 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
    2015-01-27 20:53 - 2014-02-22 16:19 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
    2015-01-27 20:53 - 2014-02-22 16:17 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
    2015-01-27 20:53 - 2014-02-22 16:17 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
    2015-01-27 20:53 - 2014-02-22 16:01 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
    2015-01-27 20:53 - 2014-02-22 16:00 - 00514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
    2015-01-27 20:53 - 2014-02-22 15:54 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
    2015-01-27 20:53 - 2014-02-22 12:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
    2015-01-27 20:53 - 2014-02-22 12:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
    2015-01-27 20:53 - 2014-02-22 12:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
    2015-01-27 20:53 - 2014-02-22 12:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
    2015-01-27 20:53 - 2014-02-22 12:33 - 00262335 _____ () C:\WINDOWS\system32\dfpinc.dat
    2015-01-27 20:53 - 2014-02-08 09:08 - 00100197 _____ () C:\WINDOWS\SysWOW64\RacRules.xml
    2015-01-27 20:53 - 2014-02-08 09:08 - 00100197 _____ () C:\WINDOWS\system32\RacRules.xml
    2015-01-27 20:53 - 2014-02-01 14:00 - 00007762 _____ () C:\WINDOWS\SysWOW64\connectedsearch-suggestions.searchconnector-ms
    2015-01-27 20:53 - 2014-02-01 14:00 - 00007762 _____ () C:\WINDOWS\system32\connectedsearch-suggestions.searchconnector-ms
    2015-01-27 20:53 - 2014-02-01 14:00 - 00007130 _____ () C:\WINDOWS\SysWOW64\connectedsearch-zeroinput.searchconnector-ms
    2015-01-27 20:53 - 2014-02-01 14:00 - 00007130 _____ () C:\WINDOWS\system32\connectedsearch-zeroinput.searchconnector-ms
    2015-01-27 20:53 - 2014-02-01 14:00 - 00002255 _____ () C:\WINDOWS\SysWOW64\WimBootCompress.ini
    2015-01-27 20:53 - 2014-02-01 14:00 - 00002255 _____ () C:\WINDOWS\system32\WimBootCompress.ini
    2015-01-27 20:53 - 2014-01-31 20:09 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
    2015-01-27 20:53 - 2014-01-31 17:55 - 03596800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
    2015-01-27 20:53 - 2014-01-31 17:35 - 03085824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
    2015-01-27 20:53 - 2014-01-31 17:19 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
    2015-01-27 20:53 - 2014-01-31 17:15 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
    2015-01-27 20:53 - 2014-01-31 17:10 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
    2015-01-27 20:53 - 2014-01-31 17:08 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
    2015-01-27 20:53 - 2014-01-31 17:04 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
    2015-01-27 20:53 - 2014-01-29 16:52 - 00551256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
    2015-01-27 20:53 - 2014-01-29 16:40 - 00994136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
    2015-01-27 20:53 - 2014-01-29 08:36 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
    2015-01-27 20:53 - 2014-01-29 08:18 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
    2015-01-27 20:53 - 2014-01-29 08:17 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
    2015-01-27 20:53 - 2014-01-28 03:53 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
    2015-01-27 20:53 - 2014-01-28 03:48 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
    2015-01-27 20:53 - 2014-01-22 14:21 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
    2015-01-27 20:53 - 2014-01-22 13:50 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
    2015-01-27 20:53 - 2014-01-18 01:24 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
    2015-01-27 20:53 - 2014-01-18 01:04 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
    2015-01-27 20:53 - 2013-12-05 02:41 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
    2015-01-27 20:53 - 2013-11-27 17:20 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\finger.exe
    2015-01-27 20:53 - 2013-11-27 17:10 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
    2015-01-27 20:53 - 2013-11-27 16:56 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiohlp.dll
    2015-01-27 20:53 - 2013-11-11 07:41 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
    2015-01-27 20:52 - 2015-01-27 20:52 - 00001142 _____ () C:\Users\user\Desktop\Welcome to ASUS Product Registration.lnk
    2015-01-27 20:52 - 2014-02-22 20:17 - 00008192 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-1.dll
    2015-01-27 20:52 - 2014-02-22 20:17 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-0.dll
    2015-01-27 20:52 - 2014-02-22 20:17 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-kernel32-package-l1-1-1.dll
    2015-01-27 20:52 - 2014-02-22 20:08 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
    2015-01-27 20:52 - 2014-02-22 20:08 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
    2015-01-27 20:52 - 2014-02-22 20:08 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
    2015-01-27 20:52 - 2014-02-22 20:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
    2015-01-27 20:52 - 2014-02-22 19:39 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll
    2015-01-27 20:52 - 2014-02-22 19:25 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\f3ahvoas.dll
    2015-01-27 20:52 - 2014-02-22 19:25 - 00008192 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-private-l1-1-1.dll
    2015-01-27 20:52 - 2014-02-22 19:25 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-private-l1-1-0.dll
    2015-01-27 20:52 - 2014-02-22 19:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll
    2015-01-27 20:52 - 2014-02-22 19:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-kernel32-package-l1-1-1.dll
    2015-01-27 20:52 - 2014-02-22 19:08 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
    2015-01-27 20:52 - 2014-02-22 17:51 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
    2015-01-27 20:52 - 2014-02-22 17:19 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\korwbrkr.dll
    2015-01-27 20:52 - 2014-02-22 16:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
    2015-01-27 20:52 - 2014-02-22 16:39 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
    2015-01-27 20:52 - 2014-02-22 12:43 - 00002440 ___RS () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk
    2015-01-27 20:52 - 2014-02-01 14:00 - 00011109 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms
    2015-01-27 20:52 - 2014-02-01 14:00 - 00011109 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms
    2015-01-27 20:52 - 2013-11-27 17:47 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe
    2015-01-27 20:50 - 2015-01-27 20:50 - 00000000 ___HD () C:\WINDOWS\system32\CanonIJ Uninstaller Information
    2015-01-27 20:50 - 2015-01-27 20:50 - 00000000 ___HD () C:\ProgramData\CanonBJ
    2015-01-27 20:50 - 2015-01-27 20:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP250 series
    2015-01-27 20:50 - 2010-04-24 05:00 - 00336896 _____ (CANON INC.) C:\WINDOWS\system32\CNMLM9W.DLL
    2015-01-27 20:50 - 2009-04-03 16:01 - 01321984 _____ (CANON INC.) C:\WINDOWS\system32\CNC250C.dll
    2015-01-27 20:50 - 2009-04-03 16:00 - 00092672 _____ (CANON INC.) C:\WINDOWS\system32\CNC250I.dll
    2015-01-27 20:50 - 2009-04-03 15:57 - 00106496 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC250U.dll
    2015-01-27 20:50 - 2009-03-18 09:10 - 00244736 _____ (CANON INC.) C:\WINDOWS\system32\CNMIU9W.DLL
    2015-01-27 20:50 - 2009-03-11 11:36 - 00328192 _____ (CANON INC.) C:\WINDOWS\system32\CNC250L.dll
    2015-01-27 20:50 - 2009-03-11 11:34 - 00303104 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC250L.dll
    2015-01-27 20:50 - 2009-02-04 13:18 - 00104960 _____ (Canon Inc.) C:\WINDOWS\system32\CNC250O.dll
    2015-01-27 20:50 - 2008-11-18 19:57 - 00012288 _____ () C:\WINDOWS\SysWOW64\CNC173AD.TBL
    2015-01-27 20:50 - 2008-11-18 19:57 - 00012288 _____ () C:\WINDOWS\system32\CNC173AD.TBL
    2015-01-27 20:50 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\WINDOWS\system32\CNHMCA6.dll
    2015-01-27 20:50 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNHMCA.dll
    2015-01-27 20:49 - 2015-01-27 20:49 - 00000000 ___HD () C:\Program Files\CanonBJ
    2015-01-27 20:38 - 2015-01-27 20:40 - 21060752 _____ () C:\Users\user\Downloads\mp68-win-mp250-1_05-ea24.exe
    2015-01-27 20:17 - 2014-03-20 12:19 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
    2015-01-27 20:17 - 2014-03-20 11:41 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
    2015-01-27 20:17 - 2014-03-20 08:53 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
    2015-01-27 20:17 - 2014-03-20 08:48 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
    2015-01-27 20:17 - 2014-03-20 07:55 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
    2015-01-27 20:17 - 2014-03-20 07:39 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
    2015-01-27 20:17 - 2014-03-20 07:36 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
    2015-01-27 20:17 - 2014-03-19 13:50 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
    2015-01-27 20:17 - 2014-03-19 13:20 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
    2015-01-27 20:17 - 2014-03-13 20:35 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
    2015-01-27 20:17 - 2014-03-11 23:45 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
    2015-01-27 20:17 - 2014-03-11 23:02 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
    2015-01-27 20:17 - 2014-03-11 22:25 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
    2015-01-27 20:17 - 2014-03-11 22:05 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
    2015-01-27 20:17 - 2014-03-09 04:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
    2015-01-27 20:17 - 2014-03-09 04:38 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
    2015-01-27 20:17 - 2014-03-08 23:29 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
    2015-01-27 20:17 - 2014-03-08 19:34 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
    2015-01-27 20:17 - 2014-03-08 17:02 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
    2015-01-27 20:17 - 2014-03-08 16:33 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
    2015-01-27 20:17 - 2014-03-08 16:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
    2015-01-27 20:17 - 2014-03-08 16:12 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll
    2015-01-27 20:17 - 2014-03-08 15:47 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll
    2015-01-27 20:17 - 2014-03-08 15:04 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
    2015-01-27 20:17 - 2014-03-08 14:48 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
    2015-01-27 20:17 - 2014-03-08 14:41 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
    2015-01-27 20:17 - 2014-03-08 14:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
    2015-01-27 20:17 - 2014-03-08 14:31 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
    2015-01-27 20:17 - 2014-03-08 14:30 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
    2015-01-27 20:17 - 2014-03-08 14:25 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
    2015-01-27 20:17 - 2014-03-08 14:04 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
    2015-01-27 20:17 - 2014-03-08 13:58 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
    2015-01-27 20:17 - 2014-03-08 13:41 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
    2015-01-27 20:17 - 2014-03-08 13:11 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
    2015-01-27 20:17 - 2014-03-06 22:34 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
    2015-01-27 20:17 - 2014-03-06 22:34 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
    2015-01-27 20:17 - 2014-03-06 20:53 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
    2015-01-27 20:17 - 2014-03-06 20:51 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
    2015-01-27 20:17 - 2014-03-06 20:39 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
    2015-01-27 20:17 - 2014-03-06 19:19 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
    2015-01-27 20:17 - 2014-03-06 19:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
    2015-01-27 20:17 - 2014-03-06 18:46 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
    2015-01-27 20:17 - 2014-03-06 17:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
    2015-01-27 20:17 - 2014-03-06 17:24 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
    2015-01-27 20:17 - 2014-03-06 17:22 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
    2015-01-27 20:17 - 2014-03-06 17:19 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
    2015-01-27 20:17 - 2014-03-06 17:19 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
    2015-01-27 20:17 - 2014-03-06 17:19 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
    2015-01-27 20:17 - 2014-03-06 17:19 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
    2015-01-27 20:17 - 2014-03-06 17:08 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
    2015-01-27 20:17 - 2014-03-06 16:41 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll
    2015-01-27 20:17 - 2014-03-06 16:38 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
    2015-01-27 20:17 - 2014-03-06 16:20 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
    2015-01-27 20:17 - 2014-03-06 16:10 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll
    2015-01-27 20:17 - 2014-03-06 16:00 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
    2015-01-27 20:17 - 2014-03-06 15:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
    2015-01-27 20:17 - 2014-03-06 15:16 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
    2015-01-27 20:17 - 2014-03-06 15:02 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
    2015-01-27 20:17 - 2014-03-06 14:51 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
    2015-01-27 20:17 - 2014-03-06 14:29 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
    2015-01-27 20:17 - 2014-03-06 14:27 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
    2015-01-27 20:17 - 2014-03-06 14:24 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
    2015-01-27 20:17 - 2014-03-06 14:23 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
    2015-01-27 20:17 - 2014-03-06 14:23 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
    2015-01-27 20:17 - 2014-03-06 14:21 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
    2015-01-27 20:17 - 2014-03-06 14:09 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
    2015-01-27 20:17 - 2014-03-06 14:06 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
    2015-01-27 20:17 - 2014-03-06 14:04 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
    2015-01-27 20:17 - 2014-03-06 14:01 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
    2015-01-27 20:17 - 2014-03-06 13:51 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
    2015-01-27 20:17 - 2014-03-06 13:47 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
    2015-01-27 20:17 - 2014-03-06 13:42 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
    2015-01-27 20:17 - 2014-03-04 15:16 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
    2015-01-27 20:17 - 2014-03-04 15:13 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
    2015-01-27 20:17 - 2014-03-04 15:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
    2015-01-27 20:17 - 2014-03-04 15:00 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
    2015-01-27 20:17 - 2014-03-04 14:56 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
    2015-01-27 20:17 - 2014-03-04 14:42 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
    2015-01-27 20:17 - 2014-03-04 14:39 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
    2015-01-27 20:17 - 2014-03-04 14:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
    2015-01-27 20:17 - 2014-03-04 14:15 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
    2015-01-27 20:17 - 2014-03-04 14:05 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
    2015-01-27 20:17 - 2014-03-04 14:03 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
    2015-01-27 20:17 - 2014-03-04 14:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
    2015-01-27 20:17 - 2014-03-04 13:54 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
    2015-01-27 20:17 - 2014-03-04 13:52 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
    2015-01-27 20:17 - 2013-12-24 07:28 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
    2015-01-27 20:17 - 2013-12-24 07:26 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
    2015-01-27 19:25 - 2015-01-27 19:25 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
    2015-01-27 08:38 - 2015-02-01 17:08 - 00000000 ____D () C:\Windows.old
    2015-01-27 08:38 - 2015-01-27 08:38 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
    2015-01-27 08:20 - 2015-01-26 17:03 - 00000000 ___HD () C:\$SysReset
    2015-01-26 23:07 - 2015-01-27 20:13 - 00000000 ____D () C:\Program Files\Microsoft Office 15
    2015-01-26 23:07 - 2015-01-26 23:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
    2015-01-26 23:07 - 2015-01-26 23:07 - 01060536 _____ (Microsoft Corporation) C:\Users\user\Downloads\Setup.X86.en-US_O365HomePremRetail_f3b71e37-e302-4fb0-90cc-0c1ba98a67c3_TX_PR_.exe
    2015-01-26 22:40 - 2015-01-26 22:40 - 00000000 ____D () C:\Users\user\AppData\Local\Adobe
    2015-01-26 20:21 - 2015-01-26 20:22 - 00000000 ____D () C:\WINDOWS\system32\MRT
    2015-01-26 20:21 - 2014-12-31 13:12 - 113365784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
    2015-01-26 20:05 - 2015-01-26 20:05 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
    2015-01-26 20:05 - 2015-01-26 20:05 - 00002046 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
    2015-01-26 20:05 - 2015-01-26 20:05 - 00000000 ____D () C:\Program Files (x86)\Adobe
    2015-01-26 19:59 - 2015-02-09 21:13 - 00002210 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
    2015-01-26 19:59 - 2015-01-27 23:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
    2015-01-26 19:55 - 2015-02-12 15:24 - 00000912 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
    2015-01-26 19:55 - 2015-02-12 02:06 - 00000916 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
    2015-01-26 19:55 - 2015-02-09 21:01 - 00003888 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
    2015-01-26 19:55 - 2015-02-09 21:01 - 00003652 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
    2015-01-26 19:55 - 2015-01-26 19:59 - 00000000 ____D () C:\Users\user\AppData\Local\Google
    2015-01-26 19:55 - 2015-01-26 19:59 - 00000000 ____D () C:\Program Files (x86)\Google
    2015-01-26 19:55 - 2015-01-26 19:55 - 00000000 ____D () C:\Users\user\AppData\Local\Deployment
    2015-01-26 19:55 - 2015-01-26 19:55 - 00000000 ____D () C:\Users\user\AppData\Local\Apps\2.0
    2015-01-26 18:19 - 2015-01-26 18:19 - 00000000 ____D () C:\Users\user\AppData\Roaming\Macromedia
    2015-01-26 17:50 - 2013-11-27 23:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
    2015-01-26 17:50 - 2013-11-27 21:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
    2015-01-26 17:50 - 2013-11-27 20:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys
    2015-01-26 17:50 - 2013-11-27 18:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
    2015-01-26 17:50 - 2013-11-27 17:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
    2015-01-26 17:50 - 2013-11-27 17:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
    2015-01-26 17:50 - 2013-11-27 16:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
    2015-01-26 17:50 - 2013-11-23 15:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll
    2015-01-26 17:50 - 2013-11-23 15:13 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
    2015-01-26 17:50 - 2013-11-21 14:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll
    2015-01-26 17:50 - 2013-11-15 22:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
    2015-01-26 17:50 - 2013-11-15 22:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
    2015-01-26 17:46 - 2013-10-23 19:29 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
    2015-01-26 17:46 - 2013-10-23 19:13 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll
    2015-01-26 17:46 - 2013-10-08 13:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
    2015-01-26 17:46 - 2013-10-08 13:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
    2015-01-26 17:46 - 2013-10-08 12:50 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
    2015-01-26 17:46 - 2013-10-05 23:25 - 00057176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
    2015-01-26 17:46 - 2013-10-05 22:21 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
    2015-01-26 17:46 - 2013-10-05 20:05 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
    2015-01-26 17:46 - 2013-10-05 17:18 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
    2015-01-26 17:46 - 2013-10-05 16:56 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
    2015-01-26 17:46 - 2013-10-05 16:55 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
    2015-01-26 17:46 - 2013-10-05 16:40 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
    2015-01-26 17:46 - 2013-10-05 16:24 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
    2015-01-26 17:46 - 2013-10-05 16:21 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
    2015-01-26 17:46 - 2013-10-05 15:43 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
    2015-01-26 17:46 - 2013-10-05 15:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
    2015-01-26 17:46 - 2013-09-17 17:06 - 01067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
    2015-01-26 17:46 - 2013-09-17 14:31 - 00883184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
    2015-01-26 17:46 - 2013-09-14 22:00 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
    2015-01-26 17:46 - 2013-09-14 20:33 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
    2015-01-26 17:46 - 2013-09-14 18:05 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
    2015-01-26 17:46 - 2013-09-14 17:11 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
    2015-01-26 17:46 - 2013-09-13 16:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe
    2015-01-26 17:46 - 2013-09-13 15:47 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe
    2015-01-26 17:46 - 2013-09-12 16:45 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
    2015-01-26 17:46 - 2013-09-12 16:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
    2015-01-26 17:46 - 2013-09-12 16:02 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
    2015-01-26 17:46 - 2013-09-12 15:44 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
    2015-01-26 17:46 - 2013-09-12 15:37 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
    2015-01-26 17:46 - 2013-09-12 15:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
    2015-01-26 17:46 - 2013-09-12 15:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
    2015-01-26 17:46 - 2013-09-12 15:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
    2015-01-26 17:46 - 2013-09-10 12:52 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll
    2015-01-26 17:44 - 2013-10-26 09:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
    2015-01-26 17:41 - 2014-01-04 23:54 - 00138240 _____ () C:\WINDOWS\system32\OEMLicense.dll
    2015-01-26 17:41 - 2014-01-04 23:08 - 00103936 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll
    2015-01-26 17:41 - 2013-12-31 07:34 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
    2015-01-26 17:41 - 2013-12-31 07:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
    2015-01-26 17:41 - 2013-12-27 16:57 - 00842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
    2015-01-26 17:41 - 2013-12-27 15:03 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
    2015-01-26 17:41 - 2013-12-21 15:21 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
    2015-01-26 17:41 - 2013-12-17 15:21 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
    2015-01-26 17:35 - 2014-02-06 19:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
    2015-01-26 17:35 - 2014-02-06 19:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
    2015-01-26 17:35 - 2014-02-06 18:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
    2015-01-26 17:35 - 2013-12-09 08:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
    2015-01-26 17:35 - 2013-12-09 07:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
    2015-01-26 17:35 - 2013-10-19 16:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
    2015-01-26 17:35 - 2013-10-19 15:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
    2015-01-26 17:32 - 2014-01-28 03:07 - 04175360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
    2015-01-26 17:32 - 2014-01-28 02:23 - 02873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
    2015-01-26 17:32 - 2014-01-28 02:21 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
    2015-01-26 17:32 - 2014-01-28 01:18 - 01486848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
    2015-01-26 17:32 - 2014-01-28 01:00 - 01238016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
    2015-01-26 17:32 - 2013-12-21 22:51 - 06353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
    2015-01-26 17:32 - 2013-12-21 16:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
    2015-01-26 17:32 - 2013-11-23 12:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
    2015-01-26 17:32 - 2013-11-23 12:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
    2015-01-26 17:32 - 2013-11-21 14:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
    2015-01-26 17:32 - 2013-11-21 13:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
    2015-01-26 17:31 - 2013-11-27 19:41 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
    2015-01-26 17:29 - 2014-10-31 06:37 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
    2015-01-26 17:29 - 2014-10-31 06:34 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
    2015-01-26 17:29 - 2014-01-07 15:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
    2015-01-26 17:29 - 2014-01-07 13:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
    2015-01-26 17:11 - 2015-01-26 17:11 - 00000000 ____D () C:\Program Files (x86)\ESET
    2015-01-26 16:56 - 2015-02-12 15:29 - 00003592 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-413873820-248839952-575072685-1002
    2015-01-26 16:49 - 2015-01-26 16:49 - 00000000 ____D () C:\Users\user\AppData\Roaming\WebStorage
    2015-01-26 16:46 - 2015-01-26 16:46 - 00000000 ____D () C:\Users\user\AppData\Roaming\Intel Corporation
    2015-01-26 16:45 - 2015-01-26 16:45 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
    2015-01-26 16:45 - 2015-01-26 16:45 - 00000000 ____D () C:\Users\user\AppData\Local\ASUS
    2015-01-26 16:44 - 2015-01-27 23:12 - 00001004 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
    2015-01-26 16:44 - 2015-01-26 23:07 - 00000000 ____D () C:\Users\user\AppData\Local\VirtualStore
    2015-01-26 16:44 - 2015-01-26 22:40 - 00000000 ____D () C:\Users\user\AppData\Roaming\Adobe
    2015-01-26 16:44 - 2015-01-26 16:44 - 00000020 ___SH () C:\Users\user\ntuser.ini
    2015-01-26 16:42 - 2015-01-26 23:11 - 00002168 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk
    2015-01-26 16:42 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-01-26 16:42 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
    2015-01-26 16:42 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    2015-01-26 16:42 - 2013-08-22 23:36 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
    2015-01-26 16:40 - 2015-01-26 16:43 - 00032388 _____ () C:\WINDOWS\diagwrn.xml
    2015-01-26 16:40 - 2015-01-26 16:43 - 00032388 _____ () C:\WINDOWS\diagerr.xml

    ==================== One Month Modified Files and Folders =======

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2015-02-12 15:30 - 2014-01-09 17:06 - 01438230 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
    2015-02-12 15:30 - 2013-09-14 05:15 - 00448560 _____ () C:\WINDOWS\system32\prfh0804.dat
    2015-02-12 15:30 - 2013-09-14 05:15 - 00139886 _____ () C:\WINDOWS\system32\prfc0804.dat
    2015-02-12 15:27 - 2014-03-04 08:42 - 01563750 _____ () C:\WINDOWS\WindowsUpdate.log
    2015-02-12 15:24 - 2014-03-04 08:51 - 00000025 ___SH () C:\WINDOWS\SysWOW64\ReadTag.ini
    2015-02-12 15:24 - 2013-08-22 22:46 - 00033156 _____ () C:\WINDOWS\setupact.log
    2015-02-12 15:24 - 2013-08-22 22:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
    2015-02-12 15:23 - 2014-03-04 08:42 - 00000000 ____D () C:\ProgramData\NVIDIA
    2015-02-12 15:23 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
    2015-02-12 15:16 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sru
    2015-02-11 22:34 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
    2015-02-11 22:30 - 2013-08-22 23:20 - 00000000 ____D () C:\WINDOWS\CbsTemp
    2015-02-10 19:01 - 2014-01-09 16:52 - 00016816 _____ () C:\WINDOWS\PFRO.log
    2015-02-10 19:01 - 2013-08-22 22:44 - 00564552 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
    2015-02-09 20:38 - 2014-01-09 17:29 - 00000000 ____D () C:\ProgramData\McAfee
    2015-02-09 20:38 - 2014-01-09 17:29 - 00000000 ____D () C:\Program Files (x86)\McAfee
    2015-02-09 20:36 - 2013-08-23 03:11 - 00000000 ____D () C:\Program Files\Windows Journal
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ToastData
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\setup
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\InputMethod
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\en-GB
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\setup
    2015-02-09 20:36 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\en-GB
    2015-02-09 20:36 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
    2015-02-09 20:21 - 2013-08-22 23:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
    2015-02-09 20:21 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
    2015-02-04 03:31 - 2013-08-22 23:38 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2015-02-04 03:31 - 2013-08-22 23:38 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
    2015-02-03 23:30 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\rescache
    2015-02-02 23:25 - 2013-09-14 04:22 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\SysWOW64\winrm
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\SysWOW64\slmgr
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\system32\winrm
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\system32\WCN
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\system32\slmgr
    2015-02-02 23:25 - 2013-08-23 03:09 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ___SD () C:\WINDOWS\system32\dsc
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\WinStore
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\Com
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\IME
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\Help
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Defender
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Common Files\System
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
    2015-02-02 23:25 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
    2015-02-02 23:25 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe
    2015-02-02 23:25 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
    2015-02-02 23:25 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
    2015-02-02 23:25 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\Dism
    2015-02-02 23:25 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\servicing
    2015-02-02 23:23 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\Globalization
    2015-02-01 16:12 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-02-01 16:12 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-02-01 16:12 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS
    2015-02-01 16:12 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS
    2015-02-01 16:12 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\AppCompat
    2015-02-01 16:11 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
    2015-02-01 16:11 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\FileManager
    2015-02-01 16:11 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\Camera
    2015-01-29 20:54 - 2014-01-09 17:27 - 00000000 ____D () C:\ProgramData\Adobe
    2015-01-28 23:41 - 2013-08-22 23:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-01-28 23:40 - 2013-09-14 04:32 - 00000000 ____D () C:\WINDOWS\en-GB
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\zh-HK
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\uk-UA
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\tr-TR
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\th-TH
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sl-SI
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sk-SK
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\ro-RO
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\lv-LV
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\lt-LT
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\hr-HR
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\he-IL
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\et-EE
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\bg-BG
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\ar-SA
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
    2015-01-28 23:40 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform
    2015-01-28 19:58 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\schemas
    2015-01-27 20:50 - 2013-08-22 23:36 - 00000000 __RSD () C:\WINDOWS\Media
    2015-01-27 08:39 - 2013-08-22 23:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
    2015-01-26 23:43 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
    2015-01-26 23:43 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
    2015-01-26 23:11 - 2014-05-19 11:10 - 00000000 __RDO () C:\Users\user\SkyDrive
    2015-01-26 16:44 - 2014-05-19 07:14 - 00000000 ____D () C:\Users\user\AppData\Local\Packages
    2015-01-26 16:43 - 2014-01-09 16:51 - 00000000 ___DC () C:\WINDOWS\Panther
    2015-01-26 16:43 - 2013-08-22 23:36 - 00000000 __RHD () C:\Users\Public\Libraries
    2015-01-26 16:43 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
    2015-01-26 16:40 - 2013-08-22 21:36 - 00000000 __RHD () C:\Users\Default

    ==================== Files in the root of some directories =======

    2014-01-09 17:14 - 2014-01-09 17:14 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

    Some content of TEMP:
    ====================
    C:\Users\user\AppData\Local\Temp\dllnt_dump.dll
    C:\Users\user\AppData\Local\Temp\Quarantine.exe
    C:\Users\user\AppData\Local\Temp\sqlite3.dll
    C:\Users\user\AppData\Local\Temp\utt66FB.tmp.exe


    ==================== Bamital & volsnap Check =================

    (There is no automatic fix for files that do not pass verification.)

    C:\Windows\System32\winlogon.exe => File is digitally signed
    C:\Windows\System32\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\System32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\System32\services.exe => File is digitally signed
    C:\Windows\System32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\System32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\System32\rpcss.dll => File is digitally signed
    C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


    LastRegBack: 2015-02-09 20:49

    ==================== End Of Log ==========================
     
  21. 2015/02/12
    scgoh123

    scgoh123 Well-Known Member Thread Starter

    Joined:
    2009/09/04
    Messages:
    352
    Likes Received:
    2
    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-02-2015 02
    Ran by Amos at 2015-02-12 15:33:11
    Running from C:\Users\user\Downloads
    Boot Mode: Normal
    ==========================================================


    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)

    AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
    AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

    ==================== Installed Programs ======================

    (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    Adobe Reader XI (11.0.03) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated)
    Alcor Micro USB Card Reader Driver (HKLM-x32\...\InstallShield_{07CCA4AC-FCC6-4A0A-B87A-26F6F50A7E31}) (Version: 20.2.44.03548 - Alcor Micro Corp.)
    Alcor Micro USB Card Reader Driver (x32 Version: 20.2.44.03548 - Alcor Micro Corp.) Hidden
    ASUS Launcher (HKLM-x32\...\{40376CD0-67E0-4190-86CA-8BD8CBAC331C}) (Version: 2.00.11 - ASUSTeK Computer Inc.)
    ASUS Manager - Ai Booting (HKLM-x32\...\{2DCE446C-D090-4458-8782-8F16DF94351E}) (Version: 2.01.11 - ASUSTeK Computer Inc.)
    ASUS Manager - PC Cleanup (HKLM-x32\...\{E22A19AE-7DDB-4959-B1DB-A0996294352A}) (Version: 2.00.04 - ASUSTeK Computer Inc.)
    ASUS Manager - Power Manager (HKLM-x32\...\{DD248BEE-E925-4720-A775-9A42276BB6EA}) (Version: 2.01.03 - ASUSTeK Computer Inc.)
    ASUS Manager - Recovery (HKLM-x32\...\{CF4A14CB-C4CB-4241-B659-7C58517515CF}) (Version: 2.00.08 - ASUSTeK Computer Inc.)
    ASUS Manager - Update (HKLM-x32\...\{675BBE8A-0ED3-4048-8723-BA51EAB8E1A8}) (Version: 2.01.05 - ASUSTeK Computer Inc.)
    ASUS Manager - USB Lock (HKLM-x32\...\{1931C916-6CB8-4E4D-8561-EA20C426AE19}) (Version: 2.00.10 - ASUSTeK Computer Inc.)
    ASUS Manager (HKLM-x32\...\{F5E5AD85-4A90-4604-A887-464D3818D8FD}) (Version: 2.05.04 - ASUSTeK Computer Inc.)
    ASUS Music Maker (HKLM-x32\...\MAGIX_{AB515018-7F9D-4047-B0C0-F26BAC30F3E1}) (Version: 18.0.4.1 - MAGIX AG)
    ASUS Music Maker (Version: 18.0.4.1 - MAGIX AG) Hidden
    ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5424.52 - CyberLink Corp.)
    ASUSDVD (x32 Version: 10.0.5424.52 - CyberLink Corp.) Hidden
    AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.311 - ASUSTEK)
    Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
    BitTorrent (HKU\S-1-5-21-413873820-248839952-575072685-1002\...\BitTorrent) (Version: 7.9.2.38657 - BitTorrent Inc.)
    Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - Canon Inc.)
    CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.4428 - CyberLink Corp.)
    CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.)
    CyberLink PowerDirector 10 (Version: 10.0.0.2810 - CyberLink Corp.) Hidden
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    eManual (HKLM-x32\...\{0C84E634-EB68-4A54-B21E-A05EC87A4CC5}) (Version: 1.00.07 - ASUSTeK Computer Inc.)
    ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
    Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG)
    Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Galeria de Fotografias (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Galería de fotos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Galerie de photos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
    Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation)
    Intel(R) Network Connections 18.5.54.0 (HKLM\...\PROSetDX) (Version: 18.5.54.0 - Intel)
    Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
    Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
    McAfee SiteAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 3.7.1.156 - McAfee, Inc.)
    Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4675.1003 - Microsoft Corporation)
    Microsoft SkyDrive (HKU\S-1-5-21-413873820-248839952-575072685-1002\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
    NVIDIA 3D Vision Controller Driver 326.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 326.01 - NVIDIA Corporation)
    NVIDIA 3D Vision Driver 326.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 326.35 - NVIDIA Corporation)
    NVIDIA GeForce Experience 1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5 - NVIDIA Corporation)
    NVIDIA Graphics Driver 326.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 326.35 - NVIDIA Corporation)
    NVIDIA HD Audio Driver 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
    NVIDIA PhysX System Software 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation)
    Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
    Raccolta foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7035 - Realtek Semiconductor Corp.)
    Update for CHS Microsoft IME HAP Dictionary (Version: 16.0.1354.1 - Microsoft Corporation) Hidden
    VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden
    WebStorage (HKLM-x32\...\WebStorage) (Version: 2.0.3.226 - ASUS Cloud Corporation)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
    WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
    Συλλογή φωτογραφιών (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    影像中心 (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
    照片库 (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden

    ==================== Custom CLSID (selected items): ==========================

    (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

    CustomCLSID: HKU\S-1-5-21-413873820-248839952-575072685-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-413873820-248839952-575072685-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-413873820-248839952-575072685-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-413873820-248839952-575072685-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)

    ==================== Restore Points =========================

    01-02-2015 15:20:41 Windows Update
    05-02-2015 22:43:33 Windows Update
    09-02-2015 20:17:46 avast! antivirus system restore point

    ==================== Hosts content: ==========================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2013-08-22 21:25 - 2013-08-22 21:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

    ==================== Scheduled Tasks (whitelisted) =============

    (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

    Task: {03D5BCA6-EC9E-4495-8FC0-EE69B3CDD308} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-26] (Google Inc.)
    Task: {0EC5AB37-2C52-41FE-8F92-FA49E2647C24} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-02-09] (AVAST Software)
    Task: {32AC5BE2-3B53-4235-BE54-61C1B12F545D} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-01-27] (Microsoft Corporation)
    Task: {3D899139-6FB4-434C-B028-44B7D5192BF1} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSUpdateChecker.exe [2013-08-09] ()
    Task: {5D9ED36D-106B-4FDD-B1EA-915D8B866285} - System32\Tasks\ASUS\Power_Manager_background => C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe [2013-09-07] (ASUSTeK)
    Task: {67BCD63F-C426-48B9-AB83-F4958604E0A3} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-11-05] ()
    Task: {73E906E4-C622-40C5-BB99-746B050A55B1} - System32\Tasks\ASUS\ASUS Manager BackgroundWindow => C:\Program Files (x86)\ASUS\ASUS Manager\BackgroundWindow.exe [2013-08-24] ()
    Task: {7787CAA5-4378-424C-99E0-C8282C30DCD2} - System32\Tasks\ASUS\ASUS Manager HotKey Service => C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe [2013-09-19] (ASUSTeK Computer Inc.)
    Task: {A5A6DBDF-2D92-478B-8A9E-3C8962E617CA} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-12-31] (Microsoft Corporation)
    Task: {BBAC5618-6EDB-4667-AE90-E36C6483938A} - System32\Tasks\{E4B90523-2BFA-43F8-BA56-02535AA27824} => pcalua.exe -a C:\Users\user\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=obw <==== ATTENTION
    Task: {BF5A72AD-E721-472E-9304-8A3ED8892C15} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-26] (Google Inc.)
    Task: {DA6BA694-90EB-46DA-A078-68A4A73BA68D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation)
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    ==================== Loaded Modules (whitelisted) ==============

    2014-03-04 08:42 - 2013-07-24 08:46 - 00097056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
    2014-03-04 08:46 - 2013-08-09 09:33 - 01114768 _____ () C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSUpdateChecker.exe
    2015-01-27 19:35 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
    2014-03-04 08:46 - 2013-08-09 02:00 - 00207160 _____ () C:\Windows\SysWOW64\AsHookDevice.exe
    2014-01-09 17:33 - 2012-04-24 18:43 - 00390632 ____R () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
    2014-03-04 08:46 - 2013-08-28 23:24 - 00920736 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
    2012-03-08 10:27 - 2012-03-08 10:27 - 00016384 _____ () C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\ACVsWin.dll
    2015-01-27 19:57 - 2015-01-27 19:57 - 08897696 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
    2015-02-12 01:00 - 2015-02-12 01:00 - 02912256 _____ () C:\Program Files\AVAST Software\Avast\defs\15021100\algo.dll
    2015-02-12 15:24 - 2015-02-12 15:24 - 02912256 _____ () C:\Program Files\AVAST Software\Avast\defs\15021200\algo.dll
    2015-02-09 20:26 - 2015-02-09 20:26 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
    2014-03-04 08:46 - 2015-02-12 15:26 - 00026624 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll
    2014-03-04 08:46 - 2010-06-29 10:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll
    2014-03-04 08:41 - 2013-08-20 03:10 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
    2015-02-09 21:13 - 2015-02-04 17:02 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll
    2015-02-09 21:13 - 2015-02-04 17:02 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll
    2015-02-09 21:13 - 2015-02-04 17:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll
    2015-02-09 21:13 - 2015-02-04 17:02 - 14965064 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\PepperFlash\pepflashplayer.dll

    ==================== Alternate Data Streams (whitelisted) =========

    (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

    AlternateDataStreams: C:\Users\user\SkyDrive:ms-properties
    AlternateDataStreams: C:\Users\user\Downloads\Re confir.eml:OECustomProperty

    ==================== Safe Mode (whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => " "=" "
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => " "=" "

    ==================== EXE Association (whitelisted) ===============

    (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-413873820-248839952-575072685-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
    DNS Servers: 192.168.1.1

    ==================== MSCONFIG/TASK MANAGER disabled items ==

    (Currently there is no automatic fix for this section.)


    ==================== Accounts: =============================

    Administrator (S-1-5-21-413873820-248839952-575072685-500 - Administrator - Disabled) => C:\Users\Administrator
    Amos (S-1-5-21-413873820-248839952-575072685-1002 - Administrator - Enabled) => C:\Users\user
    Guest (S-1-5-21-413873820-248839952-575072685-501 - Limited - Disabled)

    ==================== Faulty Device Manager Devices =============


    ==================== Event log errors: =========================

    Application errors:
    ==================

    System errors:
    =============
    Error: (02/12/2015 03:32:57 PM) (Source: DCOM) (EventID: 10010) (User: asus)
    Description: {9AA46009-3CE0-458A-A354-715610A075E6}

    Error: (02/12/2015 03:32:27 PM) (Source: DCOM) (EventID: 10010) (User: asus)
    Description: {9AA46009-3CE0-458A-A354-715610A075E6}


    Microsoft Office Sessions:
    =========================

    ==================== Memory info ===========================

    Processor: Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz
    Percentage of memory in use: 21%
    Total physical RAM: 8131.31 MB
    Available physical RAM: 6399.63 MB
    Total Pagefile: 9411.31 MB
    Available Pagefile: 7440.95 MB
    Total Virtual: 131072 MB
    Available Virtual: 131071.8 MB

    ==================== Drives ================================

    Drive c: (Windows) (Fixed) (Total:150 GB) (Free:86.76 GB) NTFS
    Drive d: (Data) (Fixed) (Total:764.71 GB) (Free:740.66 GB) NTFS

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (Size: 931.5 GB) (Disk ID: CCD8730E)

    Partition: GPT Partition Type.

    ==================== End Of Log ============================
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.