Advertisement
Guest User

Mark-FRST

a guest
Mar 11th, 2016
26
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 70.18 KB | None | 0 0
  1. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
  2. Ran by rterr (administrator) on DESKTOP-QUADA1U (11-03-2016 21:34:54)
  3. Running from C:\Users\rterr\Desktop
  4. Loaded Profiles: rterr (Available Profiles: rterr)
  5. Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
  6. Internet Explorer Version 11 (Default browser: Edge)
  7. Boot Mode: Normal
  8. Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Processes (Whitelisted) =================
  11.  
  12. (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
  13.  
  14. (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
  15. (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
  16. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
  17. (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
  18. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
  19. (Microsoft Corporation) C:\Windows\System32\wlanext.exe
  20. (Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
  21. (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
  22. (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
  23. (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
  24. (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
  25. () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
  26. (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
  27. (Symantec Corporation) C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\n360.exe
  28. (McAfee, Inc.) C:\Windows\System32\mfevtps.exe
  29. (SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
  30. (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
  31. (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
  32. (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
  33. (Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
  34. (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
  35. (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
  36. (Intel Corporation) C:\Windows\System32\igfxEM.exe
  37. (Intel Corporation) C:\Windows\System32\igfxHK.exe
  38. (Symantec Corporation) C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\n360.exe
  39. (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
  40. (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
  41. (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
  42. (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
  43. (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
  44. (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
  45. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
  46. (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
  47. (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
  48. (Microsoft Corporation) C:\Windows\System32\cmd.exe
  49. (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
  50. (Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
  51. (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
  52. (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
  53. (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
  54. () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
  55. (Microsoft Corporation) C:\Windows\System32\WWAHost.exe
  56. (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46271.0_x64__8wekyb3d8bbwe\HxMail.exe
  57. (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46271.0_x64__8wekyb3d8bbwe\HxTsr.exe
  58. Failed to access process -> iexplore.exe
  59.  
  60.  
  61. ==================== Registry (Whitelisted) ===========================
  62.  
  63. (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
  64.  
  65. HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8496344 2015-07-06] (Realtek Semiconductor)
  66. HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3945656 2015-12-29] (Synaptics Incorporated)
  67. HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [127528 2015-07-08] (Hewlett-Packard Company)
  68. HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Development Company, L.P.)
  69. HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795336 2015-06-21] (CyberLink Corp.)
  70. HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1065024 2014-06-10] (SEIKO EPSON CORPORATION)
  71. HKU\S-1-5-21-3355830756-1789120713-3534354194-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.)
  72. HKU\S-1-5-21-3355830756-1789120713-3534354194-1001\...\Run: [BingSvc] => C:\Users\rterr\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-29] (© 2015 Microsoft Corporation)
  73. HKU\S-1-5-21-3355830756-1789120713-3534354194-1001\...\RunOnce: [Uninstall C:\Users\rterr\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\rterr\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
  74. ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton Security Suite\Engine64\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
  75. ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton Security Suite\Engine64\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
  76. ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton Security Suite\Engine64\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
  77.  
  78. ==================== Internet (Whitelisted) ====================
  79.  
  80. (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
  81.  
  82. Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
  83. Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4
  84. Tcpip\..\Interfaces\{42fe0998-6a66-48ac-bf46-ad328c4371dd}: [DhcpNameServer] 75.75.75.75 75.75.76.76
  85. Tcpip\..\Interfaces\{4dbe738a-a9aa-4b2c-b608-950132108d9c}: [NameServer] 8.8.8.8,8.8.4.4
  86. Tcpip\..\Interfaces\{4dbe738a-a9aa-4b2c-b608-950132108d9c}: [DhcpNameServer] 8.8.8.8
  87.  
  88. Internet Explorer:
  89. ==================
  90. HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
  91. HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
  92. HKU\S-1-5-21-3355830756-1789120713-3534354194-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
  93. HKU\S-1-5-21-3355830756-1789120713-3534354194-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
  94. SearchScopes: HKLM-x32 -> {1D183557-EBD3-45CE-AD07-B196B7623836} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
  95. SearchScopes: HKU\S-1-5-21-3355830756-1789120713-3534354194-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  96. SearchScopes: HKU\S-1-5-21-3355830756-1789120713-3534354194-1001 -> {1D183557-EBD3-45CE-AD07-B196B7623836} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
  97. SearchScopes: HKU\S-1-5-21-3355830756-1789120713-3534354194-1001 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=APN10506&l=dis&prt=NSBU&chn=1122&geo=US&ver=22&locale=en_US&gct=kwd&qsrc=2869
  98. BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security Suite\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
  99. BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
  100. BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-10-19] (Hewlett-Packard Company)
  101. Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
  102. Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
  103. Toolbar: HKU\S-1-5-21-3355830756-1789120713-3534354194-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
  104.  
  105. FireFox:
  106. ========
  107. FF ProfilePath: C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default
  108. FF DefaultSearchEngine: Bing®
  109. FF DefaultSearchEngine.US: Bing
  110. FF SearchEngineOrder.3: Bing
  111. FF SelectedSearchEngine: Bing®
  112. FF Keyword.URL: hxxp://www.bing.com/search?FORM=SK2KDF&PC=SK2K&q=
  113. FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-11] ()
  114. FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
  115. FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-11] ()
  116. FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.)
  117. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-02] (Intel Corporation)
  118. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-02] (Intel Corporation)
  119. FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
  120. FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
  121. FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
  122. FF Extension: No Name - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [not found]
  123. FF Extension: Bing Search - C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default\Extensions\bingsearch.full@microsoft.com.xpi [2015-12-29]
  124. FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon
  125. FF Extension: Norton Identity Safe - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon [2016-01-14]
  126. FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon
  127.  
  128. Chrome:
  129. =======
  130. CHR Profile: C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default
  131. CHR Extension: (Google Slides) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-01-01]
  132. CHR Extension: (Google Docs) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-01-01]
  133. CHR Extension: (Google Drive) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-01]
  134. CHR Extension: (YouTube) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-01]
  135. CHR Extension: (Norton Security Toolbar) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2016-02-25]
  136. CHR Extension: (Google Search) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-01]
  137. CHR Extension: (Google Sheets) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-01-01]
  138. CHR Extension: (Google Docs Offline) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-01-01]
  139. CHR Extension: (Norton Identity Safe) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2016-01-01]
  140. CHR Extension: (Chrome Web Store Payments) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-01-01]
  141. CHR Extension: (Gmail) - C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-01-01]
  142. CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\Exts\Chrome.crx [2015-12-30]
  143. CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
  144. CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\Exts\Chrome.crx [2015-12-30]
  145. CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
  146.  
  147. ==================== Services (Whitelisted) ========================
  148.  
  149. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  150.  
  151. R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [676336 2015-06-25] (SEIKO EPSON CORPORATION)
  152. R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation)
  153. R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1385640 2015-07-13] (Intel Corporation)
  154. R2 HPSupportSolutionsFrameworkService; c:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)
  155. R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Development Company, L.P.)
  156. R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [350312 2015-07-07] (Intel Corporation)
  157. S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
  158. R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
  159. R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
  160. R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
  161. R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [380896 2016-01-21] (McAfee, Inc.)
  162. S3 mfevtp; C:\WINDOWS\system32\mfevtps.exe [275368 2015-11-18] (McAfee, Inc.)
  163. R2 N360; C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\N360.exe [282016 2015-11-20] (Symantec Corporation)
  164. R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] ()
  165. R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [294616 2015-07-06] (Realtek Semiconductor)
  166. R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-12-29] (Synaptics Incorporated)
  167. R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
  168. S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
  169. S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
  170.  
  171. ===================== Drivers (Whitelisted) ==========================
  172.  
  173. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  174.  
  175. R1 BHDrvx64; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\BASHDefs\20160309.001\BHDrvx64.sys [1766640 2016-03-03] (Symantec Corporation)
  176. R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1605050.00F\ccSetx64.sys [173808 2015-07-10] (Symantec Corporation)
  177. R3 clwvd6; C:\Windows\system32\DRIVERS\clwvd6.sys [41704 2013-10-29] (CyberLink Corporation)
  178. R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [47096 2015-07-13] (Intel Corporation)
  179. R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [43512 2015-07-13] (Intel Corporation)
  180. R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-11-12] (Symantec Corporation)
  181. R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [157520 2015-11-12] (Symantec Corporation)
  182. R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [251384 2015-07-13] (Intel Corporation)
  183. R3 iagpioe; C:\Windows\System32\drivers\iagpioe.sys [41984 2015-06-03] (Intel(R) Corporation)
  184. U5 iai2ce; C:\Windows\System32\Drivers\iai2ce.sys [89592 2015-06-03] (Intel(R) Corporation)
  185. S3 iauarte; C:\Windows\System32\drivers\iauarte.sys [112640 2015-06-03] (Intel(R) Corporation)
  186. R1 IDSVia64; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\IPSDefs\20160311.001\IDSvia64.sys [767224 2016-02-13] (Symantec Corporation)
  187. R3 igfxLP; C:\Windows\system32\DRIVERS\igdkmd64lp.sys [5744568 2015-07-07] (Intel Corporation)
  188. R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
  189. R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-03-11] (Malwarebytes)
  190. R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
  191. R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [419624 2015-11-25] (McAfee, Inc.)
  192. R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [351144 2015-11-25] (McAfee, Inc.)
  193. R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [846080 2015-11-25] (McAfee, Inc.)
  194. R3 NAVENG; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\VirusDefs\20160311.021\ENG64.SYS [138488 2015-10-16] (Symantec Corporation)
  195. R3 NAVEX15; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\VirusDefs\20160311.021\EX64.SYS [2148080 2015-10-16] (Symantec Corporation)
  196. R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-06-01] (Realtek )
  197. S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [402136 2015-06-12] (Realsil Semiconductor Corporation)
  198. R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [4629744 2015-12-29] (Realtek Semiconductor Corporation )
  199. S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [33448 2015-07-07] (Synaptics Incorporated)
  200. R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-12-29] (Synaptics Incorporated)
  201. R1 SRTSP; C:\Windows\System32\Drivers\N360x64\1605050.00F\SRTSP64.SYS [928496 2015-11-11] (Symantec Corporation)
  202. R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1605050.00F\SRTSPX64.SYS [50936 2015-07-10] (Symantec Corporation)
  203. R0 SymEFASI; C:\Windows\System32\drivers\N360x64\1605050.00F\SYMEFASI64.SYS [1621232 2015-11-11] (Symantec Corporation)
  204. S0 SymELAM; C:\Windows\System32\drivers\N360x64\1605050.00F\SymELAM.sys [24192 2015-07-10] (Symantec Corporation)
  205. R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [111344 2015-12-29] (Symantec Corporation)
  206. R1 SymIRON; C:\Windows\system32\drivers\N360x64\1605050.00F\Ironx64.SYS [297720 2015-07-10] (Symantec Corporation)
  207. R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1605050.00F\SYMNETS.SYS [577768 2015-11-11] (Symantec Corporation)
  208. R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [146232 2015-06-26] (Intel Corporation)
  209. S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
  210. S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
  211. S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
  212. R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30384 2015-06-23] (HP Inc.)
  213.  
  214. ==================== NetSvcs (Whitelisted) ===================
  215.  
  216. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  217.  
  218.  
  219. ==================== One Month Created files and folders ========
  220.  
  221. (If an entry is included in the fixlist, the file/folder will be moved.)
  222.  
  223. 2016-03-11 21:34 - 2016-03-11 21:35 - 00021474 _____ C:\Users\rterr\Desktop\FRST.txt
  224. 2016-03-11 21:34 - 2016-03-11 21:34 - 00000000 ____D C:\FRST
  225. 2016-03-11 21:32 - 2016-03-11 21:32 - 02374144 _____ (Farbar) C:\Users\rterr\Desktop\FRST64.exe
  226. 2016-03-11 20:35 - 2016-03-11 20:35 - 00000000 ___HD C:\OneDriveTemp
  227. 2016-03-11 20:17 - 2012-07-26 00:32 - 00125872 _____ (GEAR Software Inc.) C:\WINDOWS\system32\GEARAspi64.dll
  228. 2016-03-11 20:17 - 2012-07-26 00:32 - 00106928 _____ (GEAR Software Inc.) C:\WINDOWS\SysWOW64\GEARAspi.dll
  229. 2016-03-11 20:17 - 2012-07-26 00:32 - 00033240 _____ (GEAR Software Inc.) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
  230. 2016-03-11 20:16 - 2016-03-11 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Bootable Recovery Tool Wizard
  231. 2016-03-11 20:16 - 2016-03-11 20:16 - 00000000 ____D C:\WINDOWS\system32\Drivers\NBRTWizardx64
  232. 2016-03-11 20:16 - 2016-03-11 20:16 - 00000000 ____D C:\Program Files (x86)\Norton Bootable Recovery Tool Wizard
  233. 2016-03-11 20:15 - 2016-03-11 20:15 - 00001418 _____ C:\Users\rterr\Desktop\Norton Installation Files.lnk
  234. 2016-03-11 18:40 - 2016-03-11 18:41 - 00000000 ___HD C:\$SysReset
  235. 2016-03-11 14:02 - 2016-03-11 18:11 - 00000000 ____D C:\WINDOWS\System32\Tasks\McAfee
  236. 2016-03-11 13:45 - 2016-03-11 18:34 - 00000000 ____D C:\Program Files\Common Files\McAfee
  237. 2016-03-11 13:45 - 2015-11-25 07:29 - 00846080 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\mfehidk.sys
  238. 2016-03-11 13:45 - 2015-11-25 07:29 - 00419624 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\mfeaack.sys
  239. 2016-03-11 13:45 - 2015-11-25 07:29 - 00351144 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\mfeavfk.sys
  240. 2016-03-11 13:45 - 2015-11-18 14:24 - 00275368 _____ (McAfee, Inc.) C:\WINDOWS\system32\mfevtps.exe
  241. 2016-03-10 19:22 - 2016-03-10 19:22 - 03088296 _____ (Symantec Corporation) C:\Users\rterr\Downloads\NPE (3).exe
  242. 2016-03-10 19:22 - 2016-03-10 19:22 - 03088296 _____ (Symantec Corporation) C:\Users\rterr\Downloads\NPE (2).exe
  243. 2016-03-10 19:21 - 2016-03-10 19:21 - 03088296 _____ (Symantec Corporation) C:\Users\rterr\Downloads\NPE.exe
  244. 2016-03-10 19:21 - 2016-03-10 19:21 - 03088296 _____ (Symantec Corporation) C:\Users\rterr\Downloads\NPE (1).exe
  245. 2016-03-09 17:17 - 2016-03-11 20:56 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
  246. 2016-03-09 17:17 - 2016-03-11 20:34 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
  247. 2016-03-09 17:17 - 2016-03-11 19:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
  248. 2016-03-09 17:17 - 2016-03-09 17:17 - 00001182 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
  249. 2016-03-09 17:17 - 2016-03-09 17:17 - 00000000 ____D C:\ProgramData\Malwarebytes
  250. 2016-03-09 17:17 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
  251. 2016-03-09 17:17 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
  252. 2016-03-09 17:17 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
  253. 2016-03-09 16:58 - 2016-03-11 20:07 - 00000000 ____D C:\Users\rterr\AppData\Local\NPE
  254. 2016-03-09 16:48 - 2016-03-11 19:19 - 00000000 ____D C:\Program Files (x86)\AdwCleaner
  255. 2016-03-09 16:47 - 2016-03-09 16:47 - 01524224 _____ C:\Users\rterr\Downloads\adwcleaner_5.101.exe
  256. 2016-03-08 22:58 - 2016-02-24 04:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
  257. 2016-03-08 22:58 - 2016-02-24 01:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
  258. 2016-03-08 22:58 - 2016-02-24 01:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
  259. 2016-03-08 22:58 - 2016-02-24 00:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
  260. 2016-03-08 22:58 - 2016-02-24 00:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
  261. 2016-03-08 22:58 - 2016-02-24 00:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
  262. 2016-03-08 22:57 - 2016-03-01 00:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
  263. 2016-03-08 22:57 - 2016-03-01 00:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
  264. 2016-03-08 22:57 - 2016-02-24 04:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
  265. 2016-03-08 22:57 - 2016-02-24 04:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
  266. 2016-03-08 22:57 - 2016-02-24 04:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
  267. 2016-03-08 22:57 - 2016-02-24 04:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
  268. 2016-03-08 22:57 - 2016-02-24 04:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
  269. 2016-03-08 22:57 - 2016-02-24 04:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
  270. 2016-03-08 22:57 - 2016-02-24 04:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
  271. 2016-03-08 22:57 - 2016-02-24 03:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
  272. 2016-03-08 22:57 - 2016-02-24 03:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
  273. 2016-03-08 22:57 - 2016-02-24 03:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
  274. 2016-03-08 22:57 - 2016-02-24 03:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
  275. 2016-03-08 22:57 - 2016-02-24 03:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
  276. 2016-03-08 22:57 - 2016-02-24 03:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
  277. 2016-03-08 22:57 - 2016-02-24 03:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
  278. 2016-03-08 22:57 - 2016-02-24 03:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
  279. 2016-03-08 22:57 - 2016-02-24 03:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
  280. 2016-03-08 22:57 - 2016-02-24 03:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
  281. 2016-03-08 22:57 - 2016-02-24 03:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
  282. 2016-03-08 22:57 - 2016-02-24 03:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
  283. 2016-03-08 22:57 - 2016-02-24 03:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
  284. 2016-03-08 22:57 - 2016-02-24 03:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
  285. 2016-03-08 22:57 - 2016-02-24 03:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
  286. 2016-03-08 22:57 - 2016-02-24 03:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
  287. 2016-03-08 22:57 - 2016-02-24 03:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
  288. 2016-03-08 22:57 - 2016-02-24 03:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
  289. 2016-03-08 22:57 - 2016-02-24 03:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
  290. 2016-03-08 22:57 - 2016-02-24 03:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
  291. 2016-03-08 22:57 - 2016-02-24 03:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
  292. 2016-03-08 22:57 - 2016-02-24 02:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
  293. 2016-03-08 22:57 - 2016-02-24 02:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
  294. 2016-03-08 22:57 - 2016-02-24 02:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
  295. 2016-03-08 22:57 - 2016-02-24 02:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
  296. 2016-03-08 22:57 - 2016-02-24 02:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
  297. 2016-03-08 22:57 - 2016-02-24 02:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
  298. 2016-03-08 22:57 - 2016-02-24 02:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
  299. 2016-03-08 22:57 - 2016-02-24 02:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
  300. 2016-03-08 22:57 - 2016-02-24 02:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
  301. 2016-03-08 22:57 - 2016-02-24 02:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
  302. 2016-03-08 22:57 - 2016-02-24 02:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
  303. 2016-03-08 22:57 - 2016-02-24 02:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
  304. 2016-03-08 22:57 - 2016-02-24 02:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
  305. 2016-03-08 22:57 - 2016-02-24 02:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
  306. 2016-03-08 22:57 - 2016-02-24 02:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
  307. 2016-03-08 22:57 - 2016-02-24 02:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
  308. 2016-03-08 22:57 - 2016-02-24 02:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
  309. 2016-03-08 22:57 - 2016-02-24 02:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
  310. 2016-03-08 22:57 - 2016-02-24 02:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
  311. 2016-03-08 22:57 - 2016-02-24 02:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
  312. 2016-03-08 22:57 - 2016-02-24 02:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
  313. 2016-03-08 22:57 - 2016-02-24 02:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
  314. 2016-03-08 22:57 - 2016-02-24 02:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
  315. 2016-03-08 22:57 - 2016-02-24 02:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
  316. 2016-03-08 22:57 - 2016-02-24 02:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
  317. 2016-03-08 22:57 - 2016-02-24 02:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
  318. 2016-03-08 22:57 - 2016-02-24 02:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
  319. 2016-03-08 22:57 - 2016-02-24 02:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
  320. 2016-03-08 22:57 - 2016-02-24 02:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
  321. 2016-03-08 22:57 - 2016-02-24 02:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
  322. 2016-03-08 22:57 - 2016-02-24 02:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
  323. 2016-03-08 22:57 - 2016-02-24 02:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
  324. 2016-03-08 22:57 - 2016-02-24 02:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
  325. 2016-03-08 22:57 - 2016-02-24 02:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
  326. 2016-03-08 22:57 - 2016-02-24 02:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
  327. 2016-03-08 22:57 - 2016-02-24 02:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
  328. 2016-03-08 22:57 - 2016-02-24 02:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
  329. 2016-03-08 22:57 - 2016-02-24 02:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
  330. 2016-03-08 22:57 - 2016-02-24 02:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
  331. 2016-03-08 22:57 - 2016-02-24 02:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
  332. 2016-03-08 22:57 - 2016-02-24 01:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
  333. 2016-03-08 22:57 - 2016-02-24 01:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
  334. 2016-03-08 22:57 - 2016-02-24 01:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
  335. 2016-03-08 22:57 - 2016-02-24 01:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
  336. 2016-03-08 22:57 - 2016-02-24 01:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
  337. 2016-03-08 22:57 - 2016-02-24 01:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
  338. 2016-03-08 22:57 - 2016-02-24 01:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
  339. 2016-03-08 22:57 - 2016-02-24 01:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
  340. 2016-03-08 22:57 - 2016-02-24 01:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
  341. 2016-03-08 22:57 - 2016-02-24 01:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
  342. 2016-03-08 22:57 - 2016-02-24 01:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
  343. 2016-03-08 22:57 - 2016-02-24 01:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
  344. 2016-03-08 22:57 - 2016-02-24 01:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
  345. 2016-03-08 22:57 - 2016-02-24 01:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
  346. 2016-03-08 22:57 - 2016-02-24 01:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
  347. 2016-03-08 22:57 - 2016-02-24 01:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
  348. 2016-03-08 22:57 - 2016-02-24 01:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
  349. 2016-03-08 22:57 - 2016-02-24 01:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
  350. 2016-03-08 22:57 - 2016-02-24 01:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
  351. 2016-03-08 22:57 - 2016-02-24 01:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
  352. 2016-03-08 22:57 - 2016-02-24 01:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
  353. 2016-03-08 22:57 - 2016-02-24 01:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
  354. 2016-03-08 22:57 - 2016-02-24 01:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
  355. 2016-03-08 22:57 - 2016-02-24 01:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
  356. 2016-03-08 22:57 - 2016-02-24 01:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
  357. 2016-03-08 22:57 - 2016-02-24 01:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
  358. 2016-03-08 22:57 - 2016-02-24 01:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
  359. 2016-03-08 22:57 - 2016-02-24 01:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
  360. 2016-03-08 22:57 - 2016-02-24 01:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
  361. 2016-03-08 22:57 - 2016-02-24 01:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
  362. 2016-03-08 22:57 - 2016-02-24 01:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
  363. 2016-03-08 22:57 - 2016-02-24 01:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
  364. 2016-03-08 22:57 - 2016-02-24 01:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
  365. 2016-03-08 22:57 - 2016-02-24 01:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
  366. 2016-03-08 22:57 - 2016-02-24 01:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
  367. 2016-03-08 22:57 - 2016-02-24 01:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
  368. 2016-03-08 22:57 - 2016-02-24 01:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
  369. 2016-03-08 22:57 - 2016-02-24 01:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
  370. 2016-03-08 22:57 - 2016-02-24 01:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
  371. 2016-03-08 22:57 - 2016-02-24 01:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
  372. 2016-03-08 22:57 - 2016-02-24 01:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
  373. 2016-03-08 22:57 - 2016-02-24 01:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
  374. 2016-03-08 22:57 - 2016-02-24 01:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
  375. 2016-03-08 22:57 - 2016-02-24 01:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
  376. 2016-03-08 22:57 - 2016-02-24 01:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
  377. 2016-03-08 22:57 - 2016-02-24 01:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
  378. 2016-03-08 22:57 - 2016-02-24 01:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
  379. 2016-03-08 22:57 - 2016-02-24 01:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
  380. 2016-03-08 22:57 - 2016-02-24 01:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
  381. 2016-03-08 22:57 - 2016-02-24 01:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
  382. 2016-03-08 22:57 - 2016-02-24 01:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
  383. 2016-03-08 22:57 - 2016-02-24 01:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
  384. 2016-03-08 22:57 - 2016-02-24 01:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
  385. 2016-03-08 22:57 - 2016-02-24 01:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
  386. 2016-03-08 22:57 - 2016-02-24 01:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
  387. 2016-03-08 22:57 - 2016-02-24 01:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
  388. 2016-03-08 22:57 - 2016-02-24 01:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
  389. 2016-03-08 22:57 - 2016-02-24 01:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
  390. 2016-03-08 22:57 - 2016-02-24 01:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
  391. 2016-03-08 22:57 - 2016-02-24 01:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
  392. 2016-03-08 22:57 - 2016-02-24 01:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
  393. 2016-03-08 22:57 - 2016-02-24 01:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
  394. 2016-03-08 22:57 - 2016-02-24 01:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
  395. 2016-03-08 22:57 - 2016-02-24 01:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
  396. 2016-03-08 22:57 - 2016-02-24 01:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
  397. 2016-03-08 22:57 - 2016-02-24 00:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
  398. 2016-03-08 22:57 - 2016-02-24 00:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
  399. 2016-03-08 22:57 - 2016-02-24 00:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
  400. 2016-03-08 22:57 - 2016-02-24 00:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
  401. 2016-03-08 22:57 - 2016-02-24 00:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
  402. 2016-03-08 22:57 - 2016-02-24 00:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
  403. 2016-03-08 22:57 - 2016-02-24 00:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
  404. 2016-03-08 22:57 - 2016-02-24 00:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
  405. 2016-03-08 22:57 - 2016-02-24 00:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
  406. 2016-03-08 22:57 - 2016-02-24 00:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
  407. 2016-03-08 22:57 - 2016-02-23 23:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
  408. 2016-03-08 22:57 - 2016-02-23 23:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
  409. 2016-03-01 16:56 - 2016-02-23 06:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
  410. 2016-03-01 16:56 - 2016-02-23 05:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
  411. 2016-03-01 16:56 - 2016-02-23 05:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
  412. 2016-03-01 16:56 - 2016-02-23 04:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
  413. 2016-03-01 16:56 - 2016-02-23 03:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
  414. 2016-03-01 16:56 - 2016-02-23 03:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
  415. 2016-03-01 16:56 - 2016-02-23 03:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
  416. 2016-03-01 16:56 - 2016-02-23 02:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
  417. 2016-03-01 16:56 - 2016-02-23 02:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
  418. 2016-03-01 16:56 - 2016-02-23 01:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
  419. 2016-03-01 16:56 - 2016-02-23 01:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
  420. 2016-03-01 16:56 - 2016-02-23 01:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
  421. 2016-03-01 16:56 - 2016-02-23 01:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
  422. 2016-03-01 16:56 - 2016-02-23 01:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
  423. 2016-03-01 16:56 - 2016-02-23 01:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
  424. 2016-03-01 16:56 - 2016-02-08 22:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
  425. 2016-03-01 16:56 - 2016-02-08 22:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
  426. 2016-03-01 16:55 - 2016-02-23 06:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
  427. 2016-03-01 16:55 - 2016-02-23 06:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
  428. 2016-03-01 16:55 - 2016-02-23 06:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
  429. 2016-03-01 16:55 - 2016-02-23 06:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
  430. 2016-03-01 16:55 - 2016-02-23 06:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
  431. 2016-03-01 16:55 - 2016-02-23 06:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
  432. 2016-03-01 16:55 - 2016-02-23 05:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
  433. 2016-03-01 16:55 - 2016-02-23 05:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
  434. 2016-03-01 16:55 - 2016-02-23 05:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
  435. 2016-03-01 16:55 - 2016-02-23 05:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
  436. 2016-03-01 16:55 - 2016-02-23 05:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
  437. 2016-03-01 16:55 - 2016-02-23 05:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
  438. 2016-03-01 16:55 - 2016-02-23 05:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
  439. 2016-03-01 16:55 - 2016-02-23 05:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
  440. 2016-03-01 16:55 - 2016-02-23 05:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
  441. 2016-03-01 16:55 - 2016-02-23 05:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
  442. 2016-03-01 16:55 - 2016-02-23 05:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
  443. 2016-03-01 16:55 - 2016-02-23 05:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
  444. 2016-03-01 16:55 - 2016-02-23 05:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
  445. 2016-03-01 16:55 - 2016-02-23 04:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
  446. 2016-03-01 16:55 - 2016-02-23 04:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
  447. 2016-03-01 16:55 - 2016-02-23 04:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
  448. 2016-03-01 16:55 - 2016-02-23 04:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
  449. 2016-03-01 16:55 - 2016-02-23 04:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
  450. 2016-03-01 16:55 - 2016-02-23 04:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
  451. 2016-03-01 16:55 - 2016-02-23 04:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
  452. 2016-03-01 16:55 - 2016-02-23 04:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
  453. 2016-03-01 16:55 - 2016-02-23 04:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
  454. 2016-03-01 16:55 - 2016-02-23 04:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
  455. 2016-03-01 16:55 - 2016-02-23 04:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
  456. 2016-03-01 16:55 - 2016-02-23 04:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
  457. 2016-03-01 16:55 - 2016-02-23 04:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
  458. 2016-03-01 16:55 - 2016-02-23 04:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
  459. 2016-03-01 16:55 - 2016-02-23 03:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
  460. 2016-03-01 16:55 - 2016-02-23 03:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
  461. 2016-03-01 16:55 - 2016-02-23 03:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
  462. 2016-03-01 16:55 - 2016-02-23 03:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
  463. 2016-03-01 16:55 - 2016-02-23 03:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
  464. 2016-03-01 16:55 - 2016-02-23 03:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
  465. 2016-03-01 16:55 - 2016-02-23 03:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
  466. 2016-03-01 16:55 - 2016-02-23 03:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
  467. 2016-03-01 16:55 - 2016-02-23 03:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
  468. 2016-03-01 16:55 - 2016-02-23 03:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
  469. 2016-03-01 16:55 - 2016-02-23 03:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
  470. 2016-03-01 16:55 - 2016-02-23 03:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
  471. 2016-03-01 16:55 - 2016-02-23 03:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
  472. 2016-03-01 16:55 - 2016-02-23 03:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
  473. 2016-03-01 16:55 - 2016-02-23 03:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
  474. 2016-03-01 16:55 - 2016-02-23 03:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
  475. 2016-03-01 16:55 - 2016-02-23 03:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
  476. 2016-03-01 16:55 - 2016-02-23 03:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
  477. 2016-03-01 16:55 - 2016-02-23 03:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
  478. 2016-03-01 16:55 - 2016-02-23 03:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
  479. 2016-03-01 16:55 - 2016-02-23 03:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
  480. 2016-03-01 16:55 - 2016-02-23 03:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
  481. 2016-03-01 16:55 - 2016-02-23 03:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
  482. 2016-03-01 16:55 - 2016-02-23 03:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
  483. 2016-03-01 16:55 - 2016-02-23 03:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
  484. 2016-03-01 16:55 - 2016-02-23 03:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
  485. 2016-03-01 16:55 - 2016-02-23 03:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
  486. 2016-03-01 16:55 - 2016-02-23 03:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
  487. 2016-03-01 16:55 - 2016-02-23 03:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
  488. 2016-03-01 16:55 - 2016-02-23 03:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
  489. 2016-03-01 16:55 - 2016-02-23 02:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
  490. 2016-03-01 16:55 - 2016-02-23 02:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
  491. 2016-03-01 16:55 - 2016-02-23 02:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
  492. 2016-03-01 16:55 - 2016-02-23 02:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
  493. 2016-03-01 16:55 - 2016-02-23 02:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
  494. 2016-03-01 16:55 - 2016-02-23 02:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
  495. 2016-03-01 16:55 - 2016-02-23 02:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
  496. 2016-03-01 16:55 - 2016-02-23 02:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
  497. 2016-03-01 16:55 - 2016-02-23 02:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
  498. 2016-03-01 16:55 - 2016-02-23 02:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
  499. 2016-03-01 16:55 - 2016-02-23 02:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
  500. 2016-03-01 16:55 - 2016-02-23 02:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
  501. 2016-03-01 16:55 - 2016-02-23 02:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
  502. 2016-03-01 16:55 - 2016-02-23 02:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
  503. 2016-03-01 16:55 - 2016-02-23 02:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
  504. 2016-03-01 16:55 - 2016-02-23 02:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
  505. 2016-03-01 16:55 - 2016-02-23 02:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
  506. 2016-03-01 16:55 - 2016-02-23 02:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
  507. 2016-03-01 16:55 - 2016-02-23 02:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
  508. 2016-03-01 16:55 - 2016-02-23 02:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
  509. 2016-03-01 16:55 - 2016-02-23 02:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
  510. 2016-03-01 16:55 - 2016-02-23 01:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
  511. 2016-03-01 16:55 - 2016-02-23 01:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
  512. 2016-03-01 16:55 - 2016-02-23 01:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
  513. 2016-03-01 16:55 - 2016-02-23 01:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
  514. 2016-03-01 16:55 - 2016-02-23 01:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
  515. 2016-03-01 16:55 - 2016-02-23 01:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
  516. 2016-03-01 16:55 - 2016-02-23 01:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
  517. 2016-03-01 16:55 - 2016-02-23 01:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
  518. 2016-03-01 16:55 - 2016-02-23 01:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
  519. 2016-03-01 16:55 - 2016-02-23 01:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
  520. 2016-03-01 16:55 - 2016-02-23 01:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
  521. 2016-03-01 16:55 - 2016-02-23 01:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
  522. 2016-03-01 16:55 - 2016-02-08 22:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
  523. 2016-03-01 16:55 - 2016-02-08 22:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
  524. 2016-03-01 16:54 - 2016-02-23 06:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
  525. 2016-03-01 16:54 - 2016-02-23 06:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
  526. 2016-03-01 16:54 - 2016-02-23 06:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
  527. 2016-03-01 16:54 - 2016-02-23 05:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
  528. 2016-03-01 16:54 - 2016-02-23 05:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
  529. 2016-03-01 16:54 - 2016-02-23 05:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
  530. 2016-03-01 16:54 - 2016-02-23 05:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
  531. 2016-03-01 16:54 - 2016-02-23 04:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
  532. 2016-03-01 16:54 - 2016-02-23 04:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
  533. 2016-03-01 16:54 - 2016-02-23 04:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
  534. 2016-03-01 16:54 - 2016-02-23 04:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
  535. 2016-03-01 16:54 - 2016-02-23 04:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
  536. 2016-03-01 16:54 - 2016-02-23 04:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
  537. 2016-03-01 16:54 - 2016-02-23 04:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
  538. 2016-03-01 16:54 - 2016-02-23 04:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
  539. 2016-03-01 16:54 - 2016-02-23 04:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
  540. 2016-03-01 16:54 - 2016-02-23 04:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
  541. 2016-03-01 16:54 - 2016-02-23 04:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
  542. 2016-03-01 16:54 - 2016-02-23 04:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
  543. 2016-03-01 16:54 - 2016-02-23 04:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
  544. 2016-03-01 16:54 - 2016-02-23 03:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
  545. 2016-03-01 16:54 - 2016-02-23 03:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
  546. 2016-03-01 16:54 - 2016-02-23 03:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
  547. 2016-03-01 16:54 - 2016-02-23 03:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
  548. 2016-03-01 16:54 - 2016-02-23 03:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
  549. 2016-03-01 16:54 - 2016-02-23 03:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
  550. 2016-03-01 16:54 - 2016-02-23 03:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
  551. 2016-03-01 16:54 - 2016-02-23 03:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
  552. 2016-03-01 16:54 - 2016-02-23 03:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
  553. 2016-03-01 16:54 - 2016-02-23 03:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
  554. 2016-03-01 16:54 - 2016-02-23 03:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
  555. 2016-03-01 16:54 - 2016-02-23 03:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
  556. 2016-03-01 16:54 - 2016-02-23 03:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
  557. 2016-03-01 16:54 - 2016-02-23 03:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
  558. 2016-03-01 16:54 - 2016-02-23 03:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
  559. 2016-03-01 16:54 - 2016-02-23 03:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
  560. 2016-03-01 16:54 - 2016-02-23 03:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
  561. 2016-03-01 16:54 - 2016-02-23 03:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
  562. 2016-03-01 16:54 - 2016-02-23 03:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
  563. 2016-03-01 16:54 - 2016-02-23 03:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
  564. 2016-03-01 16:54 - 2016-02-23 03:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
  565. 2016-03-01 16:54 - 2016-02-23 03:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
  566. 2016-03-01 16:54 - 2016-02-23 03:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
  567. 2016-03-01 16:54 - 2016-02-23 03:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
  568. 2016-03-01 16:54 - 2016-02-23 03:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
  569. 2016-03-01 16:54 - 2016-02-23 02:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
  570. 2016-03-01 16:54 - 2016-02-23 02:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
  571. 2016-03-01 16:54 - 2016-02-23 02:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
  572. 2016-03-01 16:54 - 2016-02-23 02:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
  573. 2016-03-01 16:54 - 2016-02-23 02:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
  574. 2016-03-01 16:54 - 2016-02-23 02:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
  575. 2016-03-01 16:54 - 2016-02-23 02:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
  576. 2016-03-01 16:54 - 2016-02-23 02:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
  577. 2016-03-01 16:54 - 2016-02-23 02:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
  578. 2016-03-01 16:54 - 2016-02-23 02:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
  579. 2016-03-01 16:54 - 2016-02-23 02:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
  580. 2016-03-01 16:54 - 2016-02-23 02:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
  581. 2016-03-01 16:54 - 2016-02-23 02:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
  582. 2016-03-01 16:54 - 2016-02-23 01:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
  583. 2016-03-01 16:54 - 2016-02-23 01:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
  584. 2016-03-01 16:54 - 2016-02-08 23:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
  585. 2016-03-01 16:54 - 2016-02-08 23:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
  586. 2016-03-01 16:54 - 2016-02-08 22:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
  587. 2016-03-01 16:54 - 2016-02-08 22:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
  588. 2016-02-25 18:24 - 2016-02-25 18:24 - 00000000 ____D C:\Users\rterr\AppData\LocalLow\Temp
  589. 2016-02-25 18:20 - 2016-02-25 18:20 - 01808424 _____ (LogMeIn, Inc.) C:\Users\rterr\Downloads\Support-LogMeInRescue (2).exe
  590. 2016-02-25 18:18 - 2016-03-02 03:34 - 00000000 ____D C:\Program Files (x86)\LogMeIn Rescue RC - c7382fad-5c75-45da-b574-c5a2c4f4356d
  591. 2016-02-25 18:16 - 2016-02-25 18:16 - 01808424 _____ (LogMeIn, Inc.) C:\Users\rterr\Downloads\Support-LogMeInRescue (1).exe
  592. 2016-02-24 15:56 - 2016-02-24 15:56 - 00000248 _____ C:\rescue.info
  593. 2016-02-24 15:54 - 2016-03-02 12:13 - 00000000 ____D C:\Users\rterr\AppData\Local\LogMeIn Rescue Applet
  594. 2016-02-24 15:54 - 2016-02-24 15:54 - 01808424 _____ (LogMeIn, Inc.) C:\Users\rterr\Downloads\Support-LogMeInRescue.exe
  595. 2016-02-18 16:51 - 2016-03-09 15:51 - 00000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForrterr.job
  596. 2016-02-18 16:51 - 2016-03-09 15:27 - 00003256 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForrterr
  597. 2016-02-13 08:20 - 2016-02-13 08:20 - 00000000 ____D C:\WINDOWS\%LOCALAPPDATA%
  598.  
  599. ==================== One Month Modified files and folders ========
  600.  
  601. (If an entry is included in the fixlist, the file/folder will be moved.)
  602.  
  603. 2016-03-11 21:35 - 2015-12-29 21:28 - 00000000 ____D C:\Users\rterr\AppData\Roaming\Skype
  604. 2016-03-11 21:14 - 2016-01-01 20:59 - 00000938 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
  605. 2016-03-11 21:13 - 2016-01-01 13:13 - 00000951 _____ C:\WINDOWS\Tasks\EPSON XP-620 Series Update {B41EEF45-B943-4F4B-9F17-AC392E782F81}.job
  606. 2016-03-11 21:08 - 2016-01-01 13:08 - 00000951 _____ C:\WINDOWS\Tasks\EPSON XP-620 Series Update {84C35374-C9C2-4A8E-A2B6-978A0FE0BAE0}.job
  607. 2016-03-11 21:05 - 2015-12-29 19:27 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
  608. 2016-03-11 20:56 - 2015-12-29 18:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\Norton 360
  609. 2016-03-11 20:48 - 2015-12-29 19:08 - 00000000 ____D C:\Users\rterr\AppData\Local\CrashDumps
  610. 2016-03-11 20:37 - 2015-12-29 18:37 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{43ED3A7B-1402-42E8-B261-AEE8AE80FF9F}
  611. 2016-03-11 20:35 - 2016-01-01 20:59 - 00000934 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
  612. 2016-03-11 20:35 - 2015-12-29 18:14 - 00000000 ___RD C:\Users\rterr\OneDrive
  613. 2016-03-11 20:34 - 2015-12-31 04:28 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
  614. 2016-03-11 20:34 - 2015-12-29 18:10 - 00000000 __SHD C:\Users\rterr\IntelGraphicsProfiles
  615. 2016-03-11 20:33 - 2015-12-31 04:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
  616. 2016-03-11 20:25 - 2015-10-30 01:28 - 03932160 ___SH C:\WINDOWS\system32\config\BBI
  617. 2016-03-11 20:17 - 2015-12-29 18:37 - 00000000 ____D C:\ProgramData\Norton
  618. 2016-03-11 20:16 - 2015-12-29 18:38 - 00000000 ____D C:\Program Files (x86)\NortonInstaller
  619. 2016-03-11 20:15 - 2015-12-29 18:37 - 00000000 ____D C:\Users\Public\Downloads\Norton
  620. 2016-03-11 19:19 - 2015-12-29 19:15 - 00000000 ____D C:\Program Files (x86)\TeamViewer
  621. 2016-03-11 19:19 - 2015-10-30 04:07 - 00000000 ____D C:\Program Files\Windows Journal
  622. 2016-03-11 19:19 - 2015-10-30 02:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
  623. 2016-03-11 19:19 - 2015-10-30 02:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
  624. 2016-03-11 19:19 - 2015-10-30 02:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
  625. 2016-03-11 19:19 - 2015-10-30 02:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
  626. 2016-03-11 19:19 - 2015-07-16 01:05 - 00000000 __RHD C:\Users\Public\AccountPictures
  627. 2016-03-11 19:17 - 2015-10-30 04:07 - 00000000 ____D C:\WINDOWS\ShellNew
  628. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 __RSD C:\WINDOWS\Media
  629. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ___SD C:\WINDOWS\system32\Nui
  630. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
  631. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
  632. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
  633. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
  634. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\icsxml
  635. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
  636. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\rescache
  637. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
  638. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\L2Schemas
  639. 2016-03-11 19:17 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\bcastdvr
  640. 2016-03-11 19:17 - 2015-10-30 02:21 - 00000000 ____D C:\WINDOWS\INF
  641. 2016-03-11 19:17 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
  642. 2016-03-11 19:17 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
  643. 2016-03-11 19:17 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\system32\Dism
  644. 2016-03-11 19:17 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\servicing
  645. 2016-03-11 19:05 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\registration
  646. 2016-03-11 18:43 - 2015-10-30 02:24 - 00000000 ___HD C:\Program Files\WindowsApps
  647. 2016-03-11 18:43 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\AppReadiness
  648. 2016-03-11 18:35 - 2015-09-09 19:00 - 00000000 ____D C:\ProgramData\mcafee
  649. 2016-03-11 18:11 - 2015-10-30 02:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
  650. 2016-03-11 18:11 - 2015-10-30 01:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
  651. 2016-03-11 18:09 - 2015-07-10 04:05 - 00000000 ____D C:\Users\Default.migrated
  652. 2016-03-11 13:48 - 2015-12-31 04:31 - 00972104 _____ C:\WINDOWS\system32\PerfStringBackup.INI
  653. 2016-03-11 03:03 - 2015-12-31 04:22 - 00215984 _____ C:\WINDOWS\system32\FNTCACHE.DAT
  654. 2016-03-11 00:26 - 2015-10-30 02:11 - 00000000 ____D C:\WINDOWS\CbsTemp
  655. 2016-03-10 22:26 - 2015-12-29 18:14 - 00002374 _____ C:\Users\rterr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
  656. 2016-03-09 21:01 - 2015-12-29 18:10 - 00000000 ____D C:\Users\rterr\AppData\Local\Packages
  657. 2016-03-09 18:43 - 2015-12-29 21:50 - 00000000 ____D C:\WINDOWS\system32\MRT
  658. 2016-03-09 18:35 - 2015-12-29 21:50 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
  659. 2016-03-09 17:46 - 2015-10-30 04:02 - 00000000 ____D C:\WINDOWS\DigitalLocker
  660. 2016-03-09 16:53 - 2015-12-31 04:32 - 00000000 ____D C:\Users\rterr
  661. 2016-03-09 16:52 - 2016-01-01 21:02 - 00000000 ____D C:\searchplugins
  662. 2016-03-09 15:57 - 2015-12-29 18:33 - 00000000 ____D C:\Users\rterr\OneDrive\Documents\YouCam
  663. 2016-03-08 02:12 - 2015-10-30 02:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
  664. 2016-03-08 02:12 - 2015-10-30 02:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
  665. 2016-03-04 18:48 - 2015-12-29 19:15 - 00001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
  666. 2016-03-02 12:24 - 2015-12-29 18:39 - 00000000 ____D C:\WINDOWS\system32\Drivers\N360x64
  667. 2016-02-24 23:35 - 2015-07-13 11:28 - 00000000 ___HD C:\SYSTEM.SAV
  668. 2016-02-24 23:30 - 2015-07-13 11:28 - 00000000 ____D C:\SWSetup
  669. 2016-02-19 18:20 - 2016-01-01 21:05 - 00002279 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  670. 2016-02-19 18:20 - 2016-01-01 21:05 - 00002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
  671. 2016-02-18 16:51 - 2015-12-29 18:11 - 00000000 ____D C:\Users\rterr\AppData\Local\Hewlett-Packard
  672.  
  673. Some files in TEMP:
  674. ====================
  675. C:\Users\rterr\AppData\Local\Temp\0197231457737752mcinst.exe
  676. C:\Users\rterr\AppData\Local\Temp\McCSPInstall.dll
  677. C:\Users\rterr\AppData\Local\Temp\mccspuninstall.exe
  678.  
  679.  
  680. ==================== Bamital & volsnap =================
  681.  
  682. (There is no automatic fix for files that do not pass verification.)
  683.  
  684. C:\WINDOWS\system32\winlogon.exe => File is digitally signed
  685. C:\WINDOWS\system32\wininit.exe => File is digitally signed
  686. C:\WINDOWS\explorer.exe => File is digitally signed
  687. C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
  688. C:\WINDOWS\system32\svchost.exe => File is digitally signed
  689. C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
  690. C:\WINDOWS\system32\services.exe => File is digitally signed
  691. C:\WINDOWS\system32\User32.dll => File is digitally signed
  692. C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
  693. C:\WINDOWS\system32\userinit.exe => File is digitally signed
  694. C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
  695. C:\WINDOWS\system32\rpcss.dll => File is digitally signed
  696. C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
  697. C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
  698. C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
  699.  
  700.  
  701. LastRegBack: 2016-03-10 04:04
  702.  
  703. ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement