This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Soooo slow and Blue screen [Solved]

13 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hello, 

 

My computer is incredibly soooo slow, takes forever to startup on login and takes forever to do anything.  I tried running the requested downloads to post with this message but got the Blue Screen shutdown screen twice and it won't allow me to run the  aswMBR.

 

Hoping you can help me!!

 

 

Hello thoran and welcome back to the WTT forum.

My name is Satchfan and I would be glad to help you with your computer problem.

Run Farbar Recovery Scan Tool

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • press Scan button
  • it will produce a log called Frst.txt in the same directory the tool is run from
  • please copy and paste log back here.
  • the first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the Frst.txt into your reply.

Logs to include with next post:

Frst.txt
Addition.txt


Thanks

Satchfan

 

Thanks for your quick response.  Here are the logs requested

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-07-2019
Ran by [removed] (administrator) on TAMI-PC (Dell Inc. Inspiron N5110) (29-07-2019 21:02:21)
Running from C:\Users\[removed]\Downloads
[removed]
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
(Dell Inc -> Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Dell Inc -> SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
(Dell Inc. -> Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 5000 series\Bin\HPNetworkCommunicatorCom.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 5000 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe
(Intel Corporation - Mobile Wireless Group -> Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
(Sonic Solutions -> ) C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(Symantec Corporation -> Dell, Inc.) C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe
(Unlimited Realities -> ) C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\…\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [525312 2011-01-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
HKLM\…\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [609144 2011-04-12] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
HKLM\…\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [3668336 2011-03-24] (Dell Inc -> Dell Inc.)
HKLM\…\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\…\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-09-15] (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation)
HKLM\…\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [10365952 2011-05-19] (Intel Corporation) [File not signed]
HKLM\…\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-03-15] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\…\Run: [DellStage] => C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe [2195824 2012-02-01] (Unlimited Realities -> )
HKLM\…\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-05-22] (Apple Inc. -> Apple Inc.)
HKLM\…\Run: [CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-2872C50 (the data entry has 44 more characters).
HKLM\…\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [316848 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
HKLM-x32\…\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-06] (Intel Corporation -> Intel Corporation)
HKLM-x32\…\Run: [RoxWatchTray] => c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions -> Sonic Solutions)
HKLM-x32\…\Run: [Desktop Disc Tool] => c:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] (Sonic Solutions -> )
HKLM-x32\…\Run: [Dell DataSafe Online] => C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe [1117528 2010-08-25] (Symantec Corporation -> Dell, Inc.)
HKLM-x32\…\Run: [HP Component Manager] => C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe [212992 2003-06-26] (Hewlett-Packard Company) [File not signed]
HKLM-x32\…\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\…\Run: [AdobeCS5.5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\…\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [305088 2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
HKLM-x32\…\Run: [AccuWeatherWidget] => C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe [968048 2012-02-01] (Unlimited Realities -> )
HKLM-x32\…\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2018-05-15] (Apple Inc. -> Apple Inc.)
HKLM-x32\…\RunOnce: [Launcher] => C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe [163040 2010-08-11] (SoftThinks -> Softthinks) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [HP Photosmart 5510 series (NET)] => C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe [2676584 2011-09-16] (Hewlett Packard -> Hewlett-Packard Co.)
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [AmazonMP3DownloaderHelper] => C:\Users\Tami\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-09] (Amazon Services LLC -> )
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [HP ENVY 5000 (NET)] => C:\Program Files\HP\HP ENVY 5000 series\Bin\ScanToPCActivationApp.exe [4065416 2018-04-19] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [Chromium] => c:\users\tami\appdata\local\chromium\application\chrome.exe [4195328 2017-10-06] (The Chromium Authors) [File not signed]
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {21baa9b2-b7cf-11e1-9847-4c80934c276d} - E:\ToolLauncher-Bootstrap.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {37ee0435-6edd-11e9-bd6a-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {65ee1464-f310-11e2-a1ea-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-18\…\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
HKLM\…\Drivers32: [vidc.iv31] => C:\Windows\SysWOW64\ir32_32.dll [197632 2009-07-13] (Microsoft Windows -> Intel(R) Corporation)
HKLM\…\Drivers32: [vidc.iv32] => C:\Windows\SysWOW64\ir32_32.dll [197632 2009-07-13] (Microsoft Windows -> Intel(R) Corporation)
HKLM\…\Drivers32-x32: [vidc.iv41] => ir41_32.ax
HKLM\…\Drivers32: [msacm.iac2] => C:\WINDOWS\SysWOW64\iac25_32.ax [197632 2009-07-13] (Microsoft Windows -> Intel Corporation)
HKLM\…\Drivers32: [vidc.iv50] => C:\Windows\SysWOW64\ir50_32.dll [746496 2009-07-13] (Microsoft Windows -> Intel Corporation)
HKLM\…\Drivers32: [wdmaud.drv] => C:\windows\SysWOW64\wdmaud.drv [172032 2010-11-20] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.142\Installer\chrmstp.exe [2019-07-17] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" –configure-user-settings –verbose-logging –system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Incorporated -> Adobe Systems, Inc.)
HKLM\Software\…\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {21B21443-5AE9-42B2-BB8F-8EB797174549} - System32\Tasks\AdobeAAMUpdater-1.0-Tami-PC-Tami => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-03-15] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4B5E5ACC-6DE2-478E-9603-760272BBD832} - System32\Tasks\GoogleUpdateTaskMachineCore
Task: {55DFE024-5925-475F-98BA-4F840ADE02B9} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2314008 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {604C0D3D-48AA-4C84-B4EA-55FF690BD2C3} - System32\Tasks\GoogleUpdateTaskMachineUA
Task: {718A47EF-072A-442D-A703-8EEA18427433} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {83A41953-0DA4-4C3D-8A08-F56D27385400} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {83E0E132-B515-4AC2-A980-1E228A4DC79B} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [3987888 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {8AAD24F3-B106-4A31-AF51-0F343CC8BEFD} - System32\Tasks\{64989D82-2F11-4953-9865-B523AFF6C5DB} => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqthb08.exe [53248 2003-07-25] ( ) [File not signed]
Task: {B14173EE-4E51-424C-B029-FF10305E2EAF} - System32\Tasks\{77E3687E-C267-4C10-BFCD-0427E1B49D53} => C:\windows\system32\pcalua.exe -a C:\windows\system32\pcwrun.exe -c "C:\Program Files (x86)\HP\Digital Imaging\bin\hpqthb08.exe"
Task: {C2390267-CEE0-419A-840A-BA1BE5D980F9} - System32\Tasks\HP Photo Creations Messager => C:\ProgramData\HP Photo Creations\MessageCheck.exe [153768 2011-02-15] (Visan Industries -> )
Task: {E37C798F-FAC4-4F0A-B6A8-16D4B7101270} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {EF623357-922B-42A0-957D-1B8B92EF4B44} - System32\Tasks\{365FFA08-95DB-41A5-8DE7-F4224AADEFFB} => C:\windows\system32\pcalua.exe -a D:\setup.exe -d D:\
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\windows\Tasks\HP Photo Creations Messager.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5C0C6F98-E449-4F79-B4D7-F7765B5EE563}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.msn.com/USCON/1
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp;=yhs-fullyhosted_003&type;=wbf_kjpjs68acegi17p_19_19¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyE0CzztDzytAyE0CtByByC0DzzyC0DyEtN0D0Tzu0StByCzzyCtN1L2XzuyEtFyDtCtFtDtFtCtAtBtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StBzztB0BtC0F0F0AtGtD0DyC0AtGzytC0CtBtGtAyCyDtBtG0Ezy0BzzyCtC0EyD0BtBzy0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2S1OtB1RyEyCtAzz1OtGtByD1RzztGyE1Q1Q1TtG1StDzy1QtGtBtBzytB1QtA1QtCtCtCtCyD2QtN0A0LzutBtN1B2Z1V1T1S1NzutBtCzztAzytN1Q2Z1B1P1RzutCyDyDyByEzyzzyDyDyB%26cr%3D795786994%26a%3Dwbf_kjpjs68acegi17p_19_19%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p;={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: HKLM-x32 {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} hxxps://support.dell.com/systemprofiler/SysProExe.CAB
Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [File not signed]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-02-13] (Google Inc -> Google, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3101223633-2765994983-3815756064-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Tami\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-08-08] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3101223633-2765994983-3815756064-1000: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Tami\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-09] (Amazon Services LLC -> Amazon.com, Inc.)
 
Chrome: 
=======
CHR DefaultSearchURL: Default -> hxxp://srchbar.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> sse
CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms}
CHR Profile: C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default [2019-07-29]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-21]
CHR Extension: (Adobe Acrobat) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-06-12]
CHR Extension: (Copy me that!) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgjinjcobiflbbnhenlfkcjpeeacklfl [2019-05-08]
CHR Extension: (Recipe Index - Bravo For Paleo) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbmjacjjhcghfhaifleccehpcankbibp [2017-05-13]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-09]
CHR Extension: (Chrome Media Router) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-28]
CHR HKLM\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Andrea Electronics Corporation)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-04-27] (Apple Inc. -> Apple Inc.)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [415032 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6845400 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [921664 2011-05-19] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1335360 2011-05-19] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [995392 2011-05-19] (Intel Corporation) [File not signed]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-09-15] (Intel Corporation - Mobile Wireless Group -> )
R2 NOBU; C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2823000 2010-08-25] (Symantec Corporation -> Dell, Inc.)
R2 SftService; C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE [689472 2010-08-20] (Dell Inc -> SoftThinks SAS)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [296448 2011-01-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare)
R2 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120016 2018-12-29] (Wondershare Technology Co.,Ltd -> Wondershare)
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S0 AFS; C:\Windows\SysWow64\Drivers\AFS.sys [77004 2012-03-20] (Oak Technology Inc.) [File not signed]
R3 AMPPAL; C:\windows\System32\DRIVERS\AMPPAL.sys [299008 2011-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 AMPPALP; C:\windows\System32\DRIVERS\amppal.sys [299008 2011-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R0 avgArDisk; C:\windows\System32\drivers\avgArDisk.sys [37368 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgArPot; C:\windows\System32\drivers\avgArPot.sys [209304 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\windows\System32\drivers\avgbidsdriver.sys [263784 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\windows\System32\drivers\avgbidsh.sys [206624 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\windows\System32\drivers\avgbuniv.sys [61736 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\windows\System32\drivers\avgKbd.sys [42552 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\windows\System32\drivers\avgMonFlt.sys [169160 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\windows\System32\drivers\avgRdr2.sys [112568 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\windows\System32\drivers\avgRvrt.sys [88208 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\windows\System32\drivers\avgSnx.sys [1031048 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\windows\System32\drivers\avgSP.sys [477336 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\windows\System32\drivers\avgStm.sys [225864 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\windows\System32\drivers\avgVmm.sys [387952 2019-07-29] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
S3 intaud_WaveExtensible; C:\windows\System32\drivers\intelaud.sys [34200 2011-06-21] (Wireless Display -> Intel Corporation)
R3 iwdbus; C:\windows\System32\DRIVERS\iwdbus.sys [25496 2011-06-21] (Wireless Display -> Intel Corporation)
R3 STHDA; C:\windows\System32\DRIVERS\stwrt64.sys [520192 2011-01-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 USBAAPL64; C:\windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 aswVmm; \??\C:\Users\Tami\AppData\Local\Temp\aswVmm.sys [X] <==== ATTENTION
S3 CtClsFlt; system32\DRIVERS\CtClsFlt.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-07-29 21:11 - 2019-07-29 21:11 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (3).exe
2019-07-29 21:01 - 2019-07-29 21:01 - 002096128 _____ (Farbar) C:\Users\Tami\Downloads\FRST64 (1).exe
2019-07-29 20:56 - 2019-07-29 20:56 - 000266288 _____ C:\windows\Minidump\072919-40513-01.dmp
2019-07-29 20:56 - 2019-07-29 20:56 - 000262144 _____ C:\windows\Minidump\072919-37502-01.dmp
2019-07-29 20:14 - 2019-07-29 20:14 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (2).exe
2019-07-29 18:08 - 2019-07-20 16:45 - 000363440 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\avgBoot.exe
2019-07-29 18:08 - 2019-07-20 16:45 - 000225864 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgStm.sys
2019-07-29 18:08 - 2019-07-20 16:45 - 000169160 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgMonFlt.sys
2019-07-22 19:46 - 2019-07-22 19:47 - 000000000 ____D C:\Users\Tami\Desktop\2019 Garden
2019-07-20 21:32 - 2019-07-29 18:08 - 000001916 _____ C:\Users\Public\Desktop\AVG AntiVirus FREE.lnk
2019-07-20 21:32 - 2019-07-20 21:32 - 000000000 ____D C:\Users\Tami\AppData\Roaming\AVG
2019-07-20 21:32 - 2019-07-20 21:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2019-07-20 21:14 - 2019-07-20 16:45 - 000206624 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\aswf0a54f187e20b8a0.tmp
2019-07-20 21:03 - 2019-07-20 21:07 - 000514641 ____C C:\unp307526161806892536i-manual.mdmp
2019-07-20 21:01 - 2019-07-20 16:45 - 000263784 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\aswe4d1166f455407fb.tmp
2019-07-20 18:09 - 2019-07-20 18:09 - 000268624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Tami\Downloads\avg_antivirus_free_setup (4).exe
2019-07-20 16:46 - 2019-07-20 21:08 - 000000000 ____D C:\windows\System32\Tasks\AVG
2019-07-20 16:45 - 2019-07-29 20:59 - 000004162 _____ C:\windows\System32\Tasks\Antivirus Emergency Update
2019-07-20 16:45 - 2019-07-29 08:35 - 000387952 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgVmm.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 001031048 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgSnx.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000477336 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgSP.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000263784 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgbidsdriver.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000209304 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgArPot.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000206624 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgbidsh.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000112568 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgRdr2.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000088208 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgRvrt.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000061736 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgbuniv.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000042552 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgKbd.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000037368 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgArDisk.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000000000 ____D C:\Program Files\Common Files\AVG
2019-07-20 16:41 - 2019-07-20 16:41 - 000000000 ____D C:\Program Files\AVG
2019-07-20 16:40 - 2019-07-20 16:40 - 000268624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Tami\Downloads\avg_antivirus_free_setup (3).exe
2019-07-20 14:21 - 2019-07-20 21:08 - 000000000 ___SD C:\windows\system32\CompatTel
2019-07-20 14:21 - 2019-07-20 21:08 - 000000000 ____D C:\windows\system32\appraiser
2019-07-20 12:02 - 2019-06-17 23:21 - 002724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2019-07-20 12:02 - 2019-06-17 23:07 - 000048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2019-07-20 12:02 - 2019-06-17 22:56 - 000116224 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2019-07-20 12:02 - 2019-06-17 22:51 - 002724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2019-07-20 12:02 - 2019-06-17 22:38 - 000087552 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2019-07-20 12:02 - 2019-06-17 22:32 - 000030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2019-07-20 12:02 - 2019-06-17 22:16 - 000091136 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2019-07-20 12:02 - 2019-06-17 22:16 - 000073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2019-07-20 12:02 - 2019-06-17 22:16 - 000060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-07-20 12:02 - 2019-06-12 10:21 - 000617984 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmdrmsdk.dll
2019-07-20 12:02 - 2019-06-12 10:21 - 000082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcrypt.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 001329664 _____ (Microsoft Corporation) C:\windows\SysWOW64\quartz.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000988160 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmv2clt.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000504320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscp.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000489984 _____ (Microsoft Corporation) C:\windows\SysWOW64\evr.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000442368 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000406016 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmmgrtn.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000354816 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000265216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msnetobj.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000103424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000744960 _____ (Microsoft Corporation) C:\windows\SysWOW64\blackbox.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000342528 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000195072 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:08 - 000005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2019-07-20 12:02 - 2019-06-12 10:08 - 000005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2019-07-20 12:02 - 2019-06-12 10:07 - 000463872 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2019-07-20 12:02 - 2019-06-12 10:07 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\msmmsp.dll
2019-07-20 12:02 - 2019-06-12 10:07 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000680960 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000295936 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000034816 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:04 - 000023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2019-07-20 12:02 - 2019-06-12 09:55 - 000009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\sscore.dll
2019-07-20 12:02 - 2019-06-12 09:48 - 000007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2019-07-20 12:02 - 2019-06-12 09:48 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2019-07-20 12:02 - 2019-06-12 09:46 - 000006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:46 - 000004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:46 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:46 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:38 - 000296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2019-07-20 12:02 - 2019-06-09 10:08 - 000044032 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll
2019-07-20 12:02 - 2019-06-07 10:07 - 000008704 _____ (Microsoft Corporation) C:\windows\system32\comcat.dll
2019-07-20 12:02 - 2019-06-07 09:55 - 000007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\comcat.dll
2019-07-20 12:02 - 2019-05-13 09:44 - 000353280 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd3x40.dll
2019-07-20 12:02 - 2019-05-13 09:44 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msexcl40.dll
2019-07-20 12:02 - 2019-05-13 09:44 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd2x40.dll
2019-07-20 12:02 - 2019-04-14 00:39 - 000010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000020944 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000019408 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000017656 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000015608 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000014288 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000014072 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000013560 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012752 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012536 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012240 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011504 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000021752 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000018680 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000017352 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000017144 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000015096 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000013560 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000013560 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000013048 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000012024 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000012024 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011728 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-07-20 12:02 - 2019-04-09 10:05 - 000573440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2019-07-20 12:02 - 2019-04-09 10:05 - 000030208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2019-07-20 12:02 - 2019-04-09 09:52 - 000037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2019-07-20 12:02 - 2019-04-09 09:52 - 000037888 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2019-07-20 12:02 - 2019-04-09 09:52 - 000012288 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2019-07-20 12:02 - 2019-04-04 19:23 - 000057856 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdll.dll
2019-07-20 12:02 - 2019-03-11 16:33 - 001391616 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2019-07-20 12:02 - 2019-03-11 16:33 - 001241088 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2019-07-20 12:02 - 2019-03-11 16:33 - 000107520 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleprn.dll
2019-07-20 12:02 - 2019-02-16 00:50 - 000321536 _____ (Microsoft Corporation) C:\windows\SysWOW64\winspool.drv
2019-07-20 12:02 - 2018-12-07 21:56 - 000081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\rascfg.dll
2019-07-20 12:02 - 2018-12-04 11:07 - 000170496 _____ (Microsoft Corporation) C:\windows\system32\itss.dll
2019-07-20 12:02 - 2018-10-26 22:04 - 000015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\dispex.dll
2019-07-20 12:02 - 2018-09-22 21:55 - 002319872 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000491520 _____ (Microsoft Corporation) C:\windows\system32\mssph.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000288256 _____ (Microsoft Corporation) C:\windows\system32\mssphtb.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000115200 _____ (Microsoft Corporation) C:\windows\system32\mssitlb.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000075264 _____ (Microsoft Corporation) C:\windows\system32\msscntrs.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\msshooks.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 001549312 _____ (Microsoft Corporation) C:\windows\SysWOW64\tquery.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 001400320 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssrch.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000666624 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssvp.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssph.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000197120 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssphtb.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000104448 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssitlb.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000059392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscntrs.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000034816 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssprxy.dll
2019-07-20 12:02 - 2018-09-22 21:34 - 000591872 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2019-07-20 12:02 - 2018-09-22 21:34 - 000249856 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2019-07-20 12:02 - 2018-09-22 21:33 - 000113664 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe
2019-07-20 12:02 - 2018-09-22 21:22 - 000427520 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchIndexer.exe
2019-07-20 12:02 - 2018-09-22 21:22 - 000164352 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchProtocolHost.exe
2019-07-20 12:02 - 2018-09-22 21:21 - 000086528 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchFilterHost.exe
2019-07-20 12:02 - 2018-09-22 21:21 - 000009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\msshooks.dll
2019-07-20 12:02 - 2018-09-08 19:59 - 002851840 _____ (Microsoft Corporation) C:\windows\system32\themeui.dll
2019-07-20 12:02 - 2018-09-08 19:44 - 002755584 _____ (Microsoft Corporation) C:\windows\SysWOW64\themeui.dll
2019-07-20 12:02 - 2018-08-15 21:18 - 000041984 _____ (Microsoft Corporation) C:\windows\system32\UtcResources.dll
2019-07-20 12:02 - 2018-08-13 16:49 - 001391856 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2019-07-20 12:02 - 2018-06-27 10:55 - 000484864 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2019-07-20 12:02 - 2018-06-27 10:43 - 000363520 _____ (Microsoft Corporation) C:\windows\SysWOW64\StructuredQuery.dll
2019-07-20 12:02 - 2018-06-08 11:21 - 000369664 _____ (Microsoft Corporation) C:\windows\system32\zipfldr.dll
2019-07-20 12:02 - 2018-06-08 10:55 - 000330240 _____ (Microsoft Corporation) C:\windows\SysWOW64\zipfldr.dll
2019-07-20 12:02 - 2018-02-10 12:36 - 000007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\MsraLegacy.tlb
2019-07-20 12:02 - 2018-02-10 12:25 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\Drivers\errdev.sys
2019-07-20 12:02 - 2018-02-10 12:25 - 000007168 _____ (Microsoft Corporation) C:\windows\system32\MsraLegacy.tlb
2019-07-20 12:01 - 2019-06-20 21:44 - 003229696 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2019-07-20 12:01 - 2019-06-20 04:11 - 000396896 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2019-07-20 12:01 - 2019-06-20 03:15 - 000348976 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2019-07-20 12:01 - 2019-06-17 23:34 - 025730560 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2019-07-20 12:01 - 2019-06-17 23:21 - 000004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2019-07-20 12:01 - 2019-06-17 23:09 - 002903552 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2019-07-20 12:01 - 2019-06-17 23:08 - 000066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2019-07-20 12:01 - 2019-06-17 23:07 - 000578560 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2019-07-20 12:01 - 2019-06-17 23:07 - 000417280 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2019-07-20 12:01 - 2019-06-17 23:07 - 000088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2019-07-20 12:01 - 2019-06-17 23:00 - 000054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2019-07-20 12:01 - 2019-06-17 22:59 - 005775872 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2019-07-20 12:01 - 2019-06-17 22:59 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2019-07-20 12:01 - 2019-06-17 22:57 - 000615936 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2019-07-20 12:01 - 2019-06-17 22:56 - 020274688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2019-07-20 12:01 - 2019-06-17 22:56 - 000790528 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2019-07-20 12:01 - 2019-06-17 22:56 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2019-07-20 12:01 - 2019-06-17 22:55 - 000814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2019-07-20 12:01 - 2019-06-17 22:48 - 000969216 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2019-07-20 12:01 - 2019-06-17 22:45 - 000489984 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2019-07-20 12:01 - 2019-06-17 22:39 - 000496128 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2019-07-20 12:01 - 2019-06-17 22:39 - 000077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2019-07-20 12:01 - 2019-06-17 22:39 - 000062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2019-07-20 12:01 - 2019-06-17 22:38 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2019-07-20 12:01 - 2019-06-17 22:38 - 000107520 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2019-07-20 12:01 - 2019-06-17 22:37 - 000064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2019-07-20 12:01 - 2019-06-17 22:35 - 002297344 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2019-07-20 12:01 - 2019-06-17 22:35 - 000199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2019-07-20 12:01 - 2019-06-17 22:34 - 000092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2019-07-20 12:01 - 2019-06-17 22:32 - 000315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2019-07-20 12:01 - 2019-06-17 22:32 - 000047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2019-07-20 12:01 - 2019-06-17 22:30 - 000476160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2019-07-20 12:01 - 2019-06-17 22:30 - 000152064 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2019-07-20 12:01 - 2019-06-17 22:29 - 000663040 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2019-07-20 12:01 - 2019-06-17 22:29 - 000620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2019-07-20 12:01 - 2019-06-17 22:29 - 000115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2019-07-20 12:01 - 2019-06-17 22:21 - 000416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2019-07-20 12:01 - 2019-06-17 22:21 - 000262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2019-07-20 12:01 - 2019-06-17 22:20 - 000809472 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2019-07-20 12:01 - 2019-06-17 22:20 - 000728064 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2019-07-20 12:01 - 2019-06-17 22:19 - 015311872 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2019-07-20 12:01 - 2019-06-17 22:17 - 002136064 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2019-07-20 12:01 - 2019-06-17 22:17 - 001359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2019-07-20 12:01 - 2019-06-17 22:13 - 000168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2019-07-20 12:01 - 2019-06-17 22:13 - 000076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2019-07-20 12:01 - 2019-06-17 22:11 - 000279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2019-07-20 12:01 - 2019-06-17 22:10 - 000130048 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2019-07-20 12:01 - 2019-06-17 22:07 - 004494336 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2019-07-20 12:01 - 2019-06-17 22:06 - 004858880 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2019-07-20 12:01 - 2019-06-17 22:04 - 000230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2019-07-20 12:01 - 2019-06-17 22:03 - 013706752 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2019-07-20 12:01 - 2019-06-17 22:03 - 002060288 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2019-07-20 12:01 - 2019-06-17 22:03 - 000696320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2019-07-20 12:01 - 2019-06-17 22:02 - 001155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2019-07-20 12:01 - 2019-06-17 21:55 - 001557504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2019-07-20 12:01 - 2019-06-17 21:44 - 004386304 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2019-07-20 12:01 - 2019-06-17 21:43 - 000800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2019-07-20 12:01 - 2019-06-17 21:41 - 001323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2019-07-20 12:01 - 2019-06-17 21:39 - 000710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2019-07-20 12:01 - 2019-06-12 10:23 - 004057320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2019-07-20 12:01 - 2019-06-12 10:23 - 003964136 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2019-07-20 12:01 - 2019-06-12 10:22 - 001314104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 012574208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2019-07-20 12:01 - 2019-06-12 10:21 - 011411968 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 001114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000666112 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000275968 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000179712 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 003207168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000555520 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000261632 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000254464 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000070144 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 001177088 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 001005056 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptui.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000644096 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000373248 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000106496 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:11 - 000262376 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2019-07-20 12:01 - 2019-06-12 10:11 - 000153832 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2019-07-20 12:01 - 2019-06-12 10:11 - 000094440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mountmgr.sys
2019-07-20 12:01 - 2019-06-12 10:10 - 005550824 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2019-07-20 12:01 - 2019-06-12 10:10 - 000095464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2019-07-20 12:01 - 2019-06-12 10:09 - 001664352 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 014637568 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 012574720 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2019-07-20 12:01 - 2019-06-12 10:08 - 000782848 _____ (Microsoft Corporation) C:\windows\system32\wmdrmsdk.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000361984 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000236032 _____ (Microsoft Corporation) C:\windows\system32\srvsvc.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000215552 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000210432 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000135680 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000094208 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000028672 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000013312 _____ (Microsoft Corporation) C:\windows\system32\sscore.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 004120576 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001574400 _____ (Microsoft Corporation) C:\windows\system32\quartz.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001484800 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001472512 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001211392 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001202176 _____ (Microsoft Corporation) C:\windows\system32\drmv2clt.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001162752 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001068544 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000733184 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000641024 _____ (Microsoft Corporation) C:\windows\system32\msscp.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000632320 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000499712 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000497664 _____ (Microsoft Corporation) C:\windows\system32\drmmgrtn.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000433152 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000408576 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000345600 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000325632 _____ (Microsoft Corporation) C:\windows\system32\msnetobj.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000317440 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000312320 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000284672 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000206848 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000190976 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000190464 _____ (Microsoft Corporation) C:\windows\system32\rpchttp.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000187904 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000141824 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000081920 _____ (Microsoft Corporation) C:\windows\system32\cryptsp.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000044032 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000043520 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000037376 _____ (Microsoft Corporation) C:\windows\system32\pcadm.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000008704 _____ (Microsoft Corporation) C:\windows\system32\pcaevts.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000880640 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000842240 _____ (Microsoft Corporation) C:\windows\system32\blackbox.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000438784 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000123904 _____ (Microsoft Corporation) C:\windows\system32\bcrypt.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:05 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\rrinstaller.exe
2019-07-20 12:01 - 2019-06-12 09:54 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2019-07-20 12:01 - 2019-06-12 09:50 - 000055808 _____ (Microsoft Corporation) C:\windows\system32\rrinstaller.exe
2019-07-20 12:01 - 2019-06-12 09:49 - 000024576 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2019-07-20 12:01 - 2019-06-12 09:47 - 000036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptbase.dll
2019-07-20 12:01 - 2019-06-12 09:42 - 000148480 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2019-07-20 12:01 - 2019-06-12 09:42 - 000062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2019-07-20 12:01 - 2019-06-12 09:42 - 000017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2019-07-20 12:01 - 2019-06-12 09:39 - 000338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2019-07-20 12:01 - 2019-06-12 09:39 - 000129024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\videoprt.sys
2019-07-20 12:01 - 2019-06-12 09:37 - 000274944 _____ (Microsoft Corporation) C:\windows\system32\Dism.exe
2019-07-20 12:01 - 2019-06-12 09:37 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\pcalua.exe
2019-07-20 12:01 - 2019-06-12 09:36 - 000464384 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000406016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000291328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000169472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000160768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000129536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2019-07-20 12:01 - 2019-06-12 09:35 - 000064512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\amdk8.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\intelppm.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\processr.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\amdppm.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000044544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\npfs.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000030720 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2019-07-20 12:01 - 2019-06-10 21:59 - 002863104 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2019-07-20 12:01 - 2019-06-07 10:18 - 001425920 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll
2019-07-20 12:01 - 2019-06-07 10:08 - 002072576 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2019-07-20 12:01 - 2019-06-07 10:08 - 000516096 _____ (Microsoft Corporation) C:\windows\system32\rpcss.dll
2019-07-20 12:01 - 2019-06-03 18:11 - 001110528 _____ (Microsoft Corporation) C:\windows\system32\schedsvc.dll
2019-07-20 12:01 - 2019-06-03 18:11 - 000474112 _____ (Microsoft Corporation) C:\windows\system32\taskcomp.dll
2019-07-20 12:01 - 2019-06-03 18:10 - 000304640 _____ (Microsoft Corporation) C:\windows\SysWOW64\taskcomp.dll
2019-07-20 12:01 - 2019-05-24 19:04 - 014185984 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2019-07-20 12:01 - 2019-05-24 19:03 - 001867776 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll
2019-07-20 12:01 - 2019-05-24 18:59 - 012880384 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2019-07-20 12:01 - 2019-05-24 18:58 - 001499648 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2019-07-20 12:01 - 2019-05-22 21:06 - 000405504 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2019-07-20 12:01 - 2019-05-22 21:06 - 000008192 _____ (Microsoft Corporation) C:\windows\system32\msimg32.dll
2019-07-20 12:01 - 2019-05-22 20:58 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2019-07-20 12:01 - 2019-05-22 20:58 - 000004608 _____ (Microsoft Corporation) C:\windows\SysWOW64\msimg32.dll
2019-07-20 12:01 - 2019-05-22 19:31 - 001988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2019-07-20 12:01 - 2019-05-17 13:21 - 000372456 _____ (Microsoft Corporation) C:\windows\system32\clfs.sys
2019-07-20 12:01 - 2019-05-13 09:44 - 001311744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msjet40.dll
2019-07-20 12:01 - 2019-05-13 09:44 - 000241152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msltus40.dll
2019-07-20 12:01 - 2019-05-09 10:18 - 002368000 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2019-07-20 12:01 - 2019-05-09 10:18 - 000337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2019-07-20 12:01 - 2019-05-09 10:18 - 000025088 _____ (Microsoft Corporation) C:\windows\SysWOW64\msimsg.dll
2019-07-20 12:01 - 2019-05-09 10:17 - 001806848 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2019-07-20 12:01 - 2019-05-09 10:09 - 000114400 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2019-07-20 12:01 - 2019-05-09 10:07 - 003247616 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2019-07-20 12:01 - 2019-05-09 10:07 - 000504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2019-07-20 12:01 - 2019-05-09 10:07 - 000025088 _____ (Microsoft Corporation) C:\windows\system32\msimsg.dll
2019-07-20 12:01 - 2019-05-09 10:06 - 001942016 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2019-07-20 12:01 - 2019-05-09 10:06 - 000070144 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll
2019-07-20 12:01 - 2019-05-09 09:51 - 000073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msiexec.exe
2019-07-20 12:01 - 2019-05-09 09:40 - 000128512 _____ (Microsoft Corporation) C:\windows\system32\msiexec.exe
2019-07-20 12:01 - 2019-04-25 10:18 - 000083968 _____ (Microsoft Corporation) C:\windows\SysWOW64\userenv.dll
2019-07-20 12:01 - 2019-04-25 10:06 - 000110592 _____ (Microsoft Corporation) C:\windows\system32\userenv.dll
2019-07-20 12:01 - 2019-04-24 10:11 - 001893096 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2019-07-20 12:01 - 2019-04-24 10:09 - 000377064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys
2019-07-20 12:01 - 2019-04-24 10:09 - 000287976 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2019-07-20 12:01 - 2019-04-18 21:44 - 000185064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pci.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000064232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ULIAGPKX.SYS
2019-07-20 12:01 - 2019-04-18 21:43 - 000063208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\termdd.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000060648 _____ (Microsoft Corporation) C:\windows\system32\Drivers\AGP440.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000031976 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mssmbios.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000020200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\isapnp.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000122600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\NV_AGP.SYS
2019-07-20 12:01 - 2019-04-18 21:42 - 000068328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\volmgr.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000036064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vdrvroot.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000015080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msisadrv.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000012136 _____ (Microsoft Corporation) C:\windows\system32\Drivers\swenum.sys
2019-07-20 12:01 - 2019-04-16 10:17 - 000583680 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2019-07-20 12:01 - 2019-04-16 10:05 - 000878080 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2019-07-20 12:01 - 2019-04-14 00:42 - 000309480 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2019-07-20 12:01 - 2019-04-14 00:40 - 000025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2019-07-20 12:01 - 2019-04-14 00:28 - 000383720 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2019-07-20 12:01 - 2019-04-14 00:26 - 000041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2019-07-20 12:01 - 2019-04-14 00:26 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000994384 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000064248 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000017656 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000016120 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000914584 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000065784 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000015608 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-07-20 12:01 - 2019-04-09 10:17 - 000174080 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 003165184 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000192512 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000098816 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000093696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2019-07-20 12:01 - 2019-04-09 10:03 - 000091136 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2019-07-20 12:01 - 2019-04-09 09:53 - 002651136 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2019-07-20 12:01 - 2019-04-09 09:52 - 000709120 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2019-07-20 12:01 - 2019-04-09 09:52 - 000140288 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2019-07-20 12:01 - 2019-04-07 10:17 - 000382976 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2019-07-20 12:01 - 2019-04-07 10:03 - 001281536 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2019-07-20 12:01 - 2019-04-07 10:03 - 000486400 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2019-07-20 12:01 - 2019-04-07 09:42 - 000475648 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxbde40.dll
2019-07-20 12:01 - 2019-04-07 09:42 - 000376320 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspbde40.dll
2019-07-20 12:01 - 2019-04-04 19:34 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\cryptdll.dll
2019-07-20 12:01 - 2019-03-28 20:36 - 000114688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\luafv.sys
2019-07-20 12:01 - 2019-03-20 21:10 - 000032768 _____ (Microsoft Corporation) C:\windows\system32\sxssrv.dll
2019-07-20 12:01 - 2019-03-11 16:41 - 002009600 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2019-07-20 12:01 - 2019-03-11 16:41 - 001894912 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2019-07-20 12:01 - 2019-03-11 16:41 - 000688128 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2019-07-20 12:01 - 2019-03-04 21:44 - 000076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2019-07-20 12:01 - 2019-03-04 21:44 - 000033280 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2019-07-20 12:01 - 2019-03-04 21:44 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidusb.sys
2019-07-20 12:01 - 2019-02-21 10:48 - 000025088 _____ (Microsoft Corporation) C:\windows\system32\netbtugc.exe
2019-07-20 12:01 - 2019-02-21 10:43 - 000026624 _____ (Microsoft Corporation) C:\windows\SysWOW64\netbtugc.exe
2019-07-20 12:01 - 2019-02-21 10:37 - 000262656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netbt.sys
2019-07-20 12:01 - 2019-02-16 01:02 - 000972288 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2019-07-20 12:01 - 2019-02-16 01:02 - 000443904 _____ (Microsoft Corporation) C:\windows\system32\winspool.drv
2019-07-20 12:01 - 2019-02-10 11:10 - 001680104 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2019-07-20 12:01 - 2019-02-10 10:36 - 000328192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\udfs.sys
2019-07-20 12:01 - 2019-02-10 10:36 - 000205312 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2019-07-20 12:01 - 2019-02-10 10:36 - 000195584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\exfat.sys
2019-07-20 12:01 - 2019-02-10 10:35 - 000092672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cdfs.sys
2019-07-20 12:01 - 2019-02-07 11:01 - 000095232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bridge.sys
2019-07-20 12:01 - 2019-02-03 10:36 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msfs.sys
2019-07-20 12:01 - 2018-12-07 21:56 - 000061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasdiag.dll
2019-07-20 12:01 - 2018-12-07 21:47 - 000088576 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wanarp.sys
2019-07-20 12:01 - 2018-12-07 21:47 - 000058368 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndproxy.sys
2019-07-20 12:01 - 2018-12-07 21:47 - 000024064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndistapi.sys
2019-07-20 12:01 - 2018-12-07 21:41 - 000033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasmxs.dll
2019-07-20 12:01 - 2018-12-07 21:41 - 000022528 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasser.dll
2019-07-20 12:01 - 2018-12-04 10:55 - 000158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\itircl.dll
2019-07-20 12:01 - 2018-12-04 10:55 - 000142848 _____ (Microsoft Corporation) C:\windows\SysWOW64\itss.dll
2019-07-20 12:01 - 2018-11-17 21:57 - 002565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2019-07-20 12:01 - 2018-11-13 14:26 - 000467856 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2019-07-20 12:01 - 2018-11-11 12:01 - 000366824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msrpc.sys
2019-07-20 12:01 - 2018-10-26 22:42 - 000230400 _____ (Microsoft Corporation) C:\windows\system32\scrobj.dll
2019-07-20 12:01 - 2018-10-26 22:42 - 000202752 _____ (Microsoft Corporation) C:\windows\system32\scrrun.dll
2019-07-20 12:01 - 2018-10-26 22:42 - 000150016 _____ (Microsoft Corporation) C:\windows\system32\wshom.ocx
2019-07-20 12:01 - 2018-10-26 22:41 - 000018944 _____ (Microsoft Corporation) C:\windows\system32\dispex.dll
2019-07-20 12:01 - 2018-10-26 22:27 - 000173568 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrobj.dll
2019-07-20 12:01 - 2018-10-26 22:27 - 000164352 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrrun.dll
2019-07-20 12:01 - 2018-10-26 22:27 - 000121856 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshom.ocx
2019-07-20 12:01 - 2018-10-26 22:04 - 000126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscript.exe
2019-07-20 12:01 - 2018-10-26 22:04 - 000025088 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshcon.dll
2019-07-20 12:01 - 2018-09-22 21:54 - 002222080 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2019-07-20 12:01 - 2018-09-22 21:54 - 000778240 _____ (Microsoft Corporation) C:\windows\system32\mssvp.dll
2019-07-20 12:01 - 2018-09-22 21:54 - 000099840 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2019-07-20 12:01 - 2018-09-08 20:02 - 000986824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2019-07-20 12:01 - 2018-09-08 20:02 - 000265416 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2019-07-20 12:01 - 2018-09-08 19:57 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\cdd.dll
2019-07-20 12:01 - 2018-08-28 00:50 - 000243200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ks.sys
2019-07-20 12:01 - 2018-08-10 10:55 - 000022528 _____ (Microsoft Corporation) C:\windows\system32\wfapigp.dll
2019-07-20 12:01 - 2018-08-10 10:54 - 000828928 _____ (Microsoft Corporation) C:\windows\system32\MPSSVC.dll
2019-07-20 12:01 - 2018-08-10 10:54 - 000749568 _____ (Microsoft Corporation) C:\windows\system32\FirewallAPI.dll
2019-07-20 12:01 - 2018-08-10 10:54 - 000108544 _____ (Microsoft Corporation) C:\windows\system32\icfupgd.dll
2019-07-20 12:01 - 2018-08-10 10:40 - 000463360 _____ (Microsoft Corporation) C:\windows\SysWOW64\FirewallAPI.dll
2019-07-20 12:01 - 2018-08-10 10:27 - 000077312 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mpsdrv.sys
2019-07-20 12:01 - 2018-08-10 10:20 - 000018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wfapigp.dll
2019-07-20 12:01 - 2018-08-03 10:39 - 000084992 _____ (Microsoft Corporation) C:\windows\SysWOW64\hlink.dll
2019-07-20 12:01 - 2018-07-18 10:18 - 000090112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bowser.sys
2019-07-20 12:01 - 2018-07-06 11:09 - 000947904 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2019-07-20 12:01 - 2018-06-29 10:55 - 000045568 _____ (Microsoft Corporation) C:\windows\system32\cscapi.dll
2019-07-20 12:01 - 2018-06-29 10:55 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\cscdll.dll
2019-07-20 12:01 - 2018-06-29 10:40 - 000023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscdll.dll
2019-07-20 12:01 - 2018-06-29 10:09 - 000034304 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscapi.dll
2019-07-20 12:01 - 2018-06-08 11:19 - 000357888 _____ (Microsoft Corporation) C:\windows\system32\dnsapi.dll
2019-07-20 12:01 - 2018-06-08 11:19 - 000182272 _____ (Microsoft Corporation) C:\windows\system32\dnsrslvr.dll
2019-07-20 12:01 - 2018-06-08 10:54 - 000269824 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnsapi.dll
2019-07-20 12:01 - 2018-06-08 10:28 - 000030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnscacheugc.exe
2019-07-20 12:01 - 2018-05-14 22:44 - 001159680 _____ (Microsoft Corporation) C:\windows\system32\webservices.dll
2019-07-20 12:01 - 2018-05-14 22:13 - 000782848 _____ (Microsoft Corporation) C:\windows\SysWOW64\webservices.dll
2019-07-20 12:01 - 2018-05-11 16:19 - 000977408 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2019-07-20 12:01 - 2018-05-11 16:19 - 000084480 _____ (Microsoft Corporation) C:\windows\system32\INETRES.dll
2019-07-20 12:01 - 2018-05-10 19:40 - 000741888 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2019-07-20 12:01 - 2018-05-10 19:40 - 000084480 _____ (Microsoft Corporation) C:\windows\SysWOW64\INETRES.dll
2019-07-20 12:01 - 2018-05-02 10:32 - 000056320 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2019-07-20 12:01 - 2018-05-02 10:32 - 000030720 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2019-07-20 12:01 - 2018-05-02 10:32 - 000025600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2019-07-20 12:01 - 2018-04-25 11:02 - 000124416 _____ (Microsoft Corporation) C:\windows\system32\wkssvc.dll
2019-07-20 12:01 - 2018-04-25 10:18 - 000115200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dfsc.sys
2019-07-20 12:01 - 2018-04-18 10:51 - 000523776 _____ (Microsoft Corporation) C:\windows\SysWOW64\hhctrl.ocx
2019-07-20 12:01 - 2018-04-18 10:51 - 000043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\hhsetup.dll
2019-07-20 12:01 - 2018-04-18 10:35 - 000015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\hh.exe
2019-07-20 12:01 - 2018-04-10 11:35 - 001735168 _____ (Microsoft Corporation) C:\windows\system32\comsvcs.dll
2019-07-20 12:01 - 2018-04-10 11:34 - 000525824 _____ (Microsoft Corporation) C:\windows\system32\catsrvut.dll
2019-07-20 12:01 - 2018-04-10 11:33 - 001241600 _____ (Microsoft Corporation) C:\windows\SysWOW64\comsvcs.dll
2019-07-20 12:01 - 2018-04-10 11:32 - 000487936 _____ (Microsoft Corporation) C:\windows\SysWOW64\catsrvut.dll
2019-07-20 12:01 - 2018-03-06 13:13 - 000148160 _____ (Microsoft Corporation) C:\windows\SysWOW64\basecsp.dll
2019-07-20 12:01 - 2018-03-06 13:11 - 000184320 _____ (Microsoft Corporation) C:\windows\SysWOW64\scksp.dll
2019-07-20 12:01 - 2018-03-06 13:11 - 000052224 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsnmp32.dll
2019-07-20 12:01 - 2018-03-06 13:10 - 000170176 _____ (Microsoft Corporation) C:\windows\system32\basecsp.dll
2019-07-20 12:01 - 2018-03-06 13:07 - 000229376 _____ (Microsoft Corporation) C:\windows\system32\scksp.dll
2019-07-20 12:01 - 2018-03-06 13:07 - 000067072 _____ (Microsoft Corporation) C:\windows\system32\wsnmp32.dll
2019-07-20 12:01 - 2018-02-21 22:28 - 000217600 _____ (Microsoft Corporation) C:\windows\system32\WinSCard.dll
2019-07-20 12:01 - 2018-02-21 22:06 - 000134656 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinSCard.dll
2019-07-20 12:01 - 2018-02-10 13:35 - 000334528 _____ (Microsoft Corporation) C:\windows\system32\Drivers\acpi.sys
2019-07-20 12:01 - 2018-02-10 13:23 - 002292224 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVidCtl.dll
2019-07-20 12:01 - 2018-02-10 13:23 - 000111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\racpldlg.dll
2019-07-20 12:01 - 2018-02-10 13:11 - 003665920 _____ (Microsoft Corporation) C:\windows\system32\MSVidCtl.dll
2019-07-20 12:01 - 2018-02-10 13:11 - 000119296 _____ (Microsoft Corporation) C:\windows\system32\racpldlg.dll
2019-07-20 12:01 - 2018-02-10 12:36 - 000040960 _____ (Microsoft Corporation) C:\windows\SysWOW64\sdchange.exe
2019-07-20 12:01 - 2018-02-10 12:26 - 000051712 _____ (Microsoft Corporation) C:\windows\system32\sdchange.exe
2019-07-20 12:01 - 2018-02-10 12:25 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wmiacpi.sys
2019-07-20 12:01 - 2018-01-12 11:40 - 000407040 _____ (Microsoft Corporation) C:\windows\system32\scesrv.dll
2019-07-20 12:01 - 2018-01-12 11:27 - 004834816 _____ (Microsoft Corporation) C:\windows\system32\xpsrchvw.exe
2019-07-20 12:01 - 2018-01-12 11:26 - 000308224 _____ (Microsoft Corporation) C:\windows\SysWOW64\scesrv.dll
2019-07-20 12:01 - 2018-01-12 11:16 - 003405824 _____ (Microsoft Corporation) C:\windows\SysWOW64\xpsrchvw.exe
2019-07-20 12:00 - 2019-06-28 00:24 - 000887808 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000448512 _____ (Microsoft Corporation) C:\windows\system32\wlansec.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000414208 _____ (Microsoft Corporation) C:\windows\system32\wlanmsm.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000118784 _____ (Microsoft Corporation) C:\windows\system32\wlanhlp.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000113664 _____ (Microsoft Corporation) C:\windows\system32\wlanapi.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000428032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanmsm.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000392704 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlansec.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000083968 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanhlp.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanapi.dll
2019-07-20 12:00 - 2019-06-20 22:09 - 000806400 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2019-07-20 12:00 - 2019-06-20 22:05 - 000628224 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2019-07-20 12:00 - 2019-06-20 20:41 - 001251840 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2019-07-20 12:00 - 2019-06-18 01:41 - 001649664 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2019-07-20 12:00 - 2019-06-17 22:38 - 000047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2019-07-20 12:00 - 2019-06-12 22:25 - 000160488 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2019-07-20 12:00 - 2019-06-12 22:21 - 000732160 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpchttp.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000046592 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssign32.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\mferror.dll
2019-07-20 12:00 - 2019-06-12 10:19 - 000690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2019-07-20 12:00 - 2019-06-12 10:19 - 000080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsp.dll
2019-07-20 12:00 - 2019-06-12 10:19 - 000017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2019-07-20 12:00 - 2019-06-12 10:15 - 000631680 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2019-07-20 12:00 - 2019-06-12 10:11 - 000708328 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2019-07-20 12:00 - 2019-06-12 10:08 - 000503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\mssign32.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\mferror.dll
2019-07-20 12:00 - 2019-06-12 10:06 - 000690688 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2019-07-20 12:00 - 2019-06-12 10:01 - 000663552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\PEAuth.sys
2019-07-20 12:00 - 2019-06-12 09:49 - 000205312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Dism.exe
2019-07-20 12:00 - 2019-06-12 09:49 - 000125952 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2019-07-20 12:00 - 2019-06-12 09:48 - 000025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2019-07-20 12:00 - 2019-06-12 09:48 - 000014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2019-07-20 12:00 - 2019-06-12 09:42 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2019-07-20 12:00 - 2019-06-12 09:37 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\pcawrk.exe
2019-07-20 12:00 - 2019-06-10 21:59 - 001712640 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000801792 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000634368 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000501760 _____ (Microsoft Corporation) C:\windows\system32\centel.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000456192 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000315904 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000257024 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2019-07-20 12:00 - 2019-06-09 10:20 - 003229184 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2019-07-20 12:00 - 2019-06-09 10:19 - 000131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2019-07-20 12:00 - 2019-06-09 10:08 - 003730432 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2019-07-20 12:00 - 2019-06-09 10:07 - 000158720 _____ (Microsoft Corporation) C:\windows\system32\aaclient.dll
2019-07-20 12:00 - 2019-06-09 10:04 - 001053184 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2019-07-20 12:00 - 2019-06-09 10:04 - 000036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll
2019-07-20 12:00 - 2019-06-09 09:49 - 001120768 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2019-07-20 12:00 - 2019-06-09 09:49 - 000249344 _____ (Microsoft Corporation) C:\windows\system32\wksprt.exe
2019-07-20 12:00 - 2019-06-07 10:18 - 000026112 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleres.dll
2019-07-20 12:00 - 2019-06-07 10:08 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\oleres.dll
2019-07-20 12:00 - 2019-05-22 21:06 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\mf3216.dll
2019-07-20 12:00 - 2019-05-22 20:58 - 000046080 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf3216.dll
2019-07-20 12:00 - 2019-05-22 19:05 - 001182208 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2019-07-20 12:00 - 2019-05-09 10:17 - 000805376 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdosys.dll
2019-07-20 12:00 - 2019-05-09 10:06 - 001133568 _____ (Microsoft Corporation) C:\windows\system32\cdosys.dll
2019-07-20 12:00 - 2019-04-29 21:07 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2019-07-20 12:00 - 2019-04-29 20:56 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2019-07-20 12:00 - 2019-04-18 21:43 - 000023784 _____ (Microsoft Corporation) C:\windows\system32\streamci.dll
2019-07-20 12:00 - 2019-04-16 08:15 - 000419648 _____ C:\windows\SysWOW64\locale.nls
2019-07-20 12:00 - 2019-04-16 08:15 - 000419648 _____ C:\windows\system32\locale.nls
2019-07-20 12:00 - 2019-04-14 00:40 - 000111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\t2embed.dll
2019-07-20 12:00 - 2019-04-14 00:39 - 000071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2019-07-20 12:00 - 2019-04-14 00:26 - 000151552 _____ (Microsoft Corporation) C:\windows\system32\t2embed.dll
2019-07-20 12:00 - 2019-04-14 00:26 - 000101376 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2019-07-20 12:00 - 2019-04-14 00:26 - 000046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2019-07-20 12:00 - 2019-04-14 00:12 - 000034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2019-07-20 12:00 - 2019-04-09 09:52 - 000036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2019-07-20 12:00 - 2019-04-07 10:17 - 000160256 _____ (Microsoft Corporation) C:\windows\SysWOW64\werui.dll
2019-07-20 12:00 - 2019-04-07 10:03 - 000174080 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2019-07-20 12:00 - 2019-04-07 10:03 - 000086016 _____ (Microsoft Corporation) C:\windows\system32\wercplsupport.dll
2019-07-20 12:00 - 2019-04-07 10:03 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\werdiagcontroller.dll
2019-07-20 12:00 - 2019-04-07 09:49 - 000054272 _____ (Microsoft Corporation) C:\windows\SysWOW64\wermgr.exe
2019-07-20 12:00 - 2019-04-07 09:48 - 000028672 _____ (Microsoft Corporation) C:\windows\SysWOW64\werdiagcontroller.dll
2019-07-20 12:00 - 2019-04-07 09:38 - 000407040 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2019-07-20 12:00 - 2019-04-07 09:35 - 000050688 _____ (Microsoft Corporation) C:\windows\system32\wermgr.exe
2019-07-20 12:00 - 2019-04-07 08:05 - 000634312 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2019-07-20 12:00 - 2019-03-11 16:41 - 001032192 _____ (Microsoft Corporation) C:\windows\system32\rdpcore.dll
2019-07-20 12:00 - 2019-03-11 16:41 - 000129536 _____ (Microsoft Corporation) C:\windows\system32\oleprn.dll
2019-07-20 12:00 - 2019-03-11 16:41 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2019-07-20 12:00 - 2019-03-11 16:41 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2019-07-20 12:00 - 2019-03-11 16:33 - 000827904 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpcore.dll
2019-07-20 12:00 - 2019-03-11 16:33 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2019-07-20 12:00 - 2019-03-11 16:33 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2019-07-20 12:00 - 2019-02-15 11:09 - 000355328 _____ (Microsoft Corporation) C:\windows\system32\Faultrep.dll
2019-07-20 12:00 - 2019-02-15 10:58 - 000320512 _____ (Microsoft Corporation) C:\windows\SysWOW64\Faultrep.dll
2019-07-20 12:00 - 2019-02-15 10:40 - 000415744 _____ (Microsoft Corporation) C:\windows\system32\WerFault.exe
2019-07-20 12:00 - 2019-02-15 10:40 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\WerFaultSecure.exe
2019-07-20 12:00 - 2019-02-15 10:38 - 000360960 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFault.exe
2019-07-20 12:00 - 2019-02-15 10:38 - 000028672 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFaultSecure.exe
2019-07-20 12:00 - 2019-02-07 11:06 - 000027648 _____ (Microsoft Corporation) C:\windows\system32\brdgcfg.dll
2019-07-20 12:00 - 2019-02-07 11:06 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\bridgeres.dll
2019-07-20 12:00 - 2019-02-07 10:46 - 000020992 _____ (Microsoft Corporation) C:\windows\system32\bridgeunattend.exe
2019-07-20 12:00 - 2018-12-07 22:08 - 000095744 _____ (Microsoft Corporation) C:\windows\system32\rascfg.dll
2019-07-20 12:00 - 2018-12-07 22:08 - 000076288 _____ (Microsoft Corporation) C:\windows\system32\rasdiag.dll
2019-07-20 12:00 - 2018-12-07 22:08 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\ndptsp.tsp
2019-07-20 12:00 - 2018-12-07 22:08 - 000047104 _____ (Microsoft Corporation) C:\windows\system32\kmddsp.tsp
2019-07-20 12:00 - 2018-12-07 22:08 - 000041472 _____ (Microsoft Corporation) C:\windows\system32\rasmxs.dll
2019-07-20 12:00 - 2018-12-07 22:08 - 000029696 _____ (Microsoft Corporation) C:\windows\system32\rasser.dll
2019-07-20 12:00 - 2018-12-07 21:56 - 000050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\ndptsp.tsp
2019-07-20 12:00 - 2018-12-07 21:41 - 000038912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kmddsp.tsp
2019-07-20 12:00 - 2018-12-04 11:07 - 000194048 _____ (Microsoft Corporation) C:\windows\system32\itircl.dll
2019-07-20 12:00 - 2018-11-13 14:41 - 000459632 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2019-07-20 12:00 - 2018-10-26 22:42 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\wshcon.dll
2019-07-20 12:00 - 2018-10-26 22:11 - 000168960 _____ (Microsoft Corporation) C:\windows\system32\wscript.exe
2019-07-20 12:00 - 2018-10-26 22:11 - 000156160 _____ (Microsoft Corporation) C:\windows\system32\cscript.exe
2019-07-20 12:00 - 2018-10-26 22:04 - 000141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscript.exe
2019-07-20 12:00 - 2018-08-29 20:47 - 001230848 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2019-07-20 12:00 - 2018-08-29 20:10 - 001424896 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2019-07-20 12:00 - 2018-08-12 15:28 - 000018944 _____ (Microsoft Corporation) C:\windows\system32\netevent.dll
2019-07-20 12:00 - 2018-08-12 15:14 - 000018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\netevent.dll
2019-07-20 12:00 - 2018-08-03 10:55 - 000109568 _____ (Microsoft Corporation) C:\windows\system32\hlink.dll
2019-07-20 12:00 - 2018-06-08 10:44 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\dnscacheugc.exe
2019-07-20 12:00 - 2018-05-02 10:32 - 000344064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2019-07-20 12:00 - 2018-05-02 10:32 - 000325632 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2019-07-20 12:00 - 2018-05-02 10:32 - 000099840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2019-07-20 12:00 - 2018-05-02 10:32 - 000007808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2019-07-20 12:00 - 2018-04-18 11:03 - 000701952 _____ (Microsoft Corporation) C:\windows\system32\hhctrl.ocx
2019-07-20 12:00 - 2018-04-18 11:03 - 000053248 _____ (Microsoft Corporation) C:\windows\system32\hhsetup.dll
2019-07-20 12:00 - 2018-04-18 10:41 - 000016896 _____ (Microsoft Corporation) C:\windows\hh.exe
2019-07-20 12:00 - 2018-02-10 13:11 - 000133120 _____ (Microsoft Corporation) C:\windows\system32\msrahc.dll
2019-07-20 12:00 - 2018-02-10 12:36 - 000108032 _____ (Microsoft Corporation) C:\windows\SysWOW64\msra.exe
2019-07-20 12:00 - 2018-02-10 12:26 - 000653312 _____ (Microsoft Corporation) C:\windows\system32\msra.exe
2019-07-20 12:00 - 2017-12-05 12:36 - 000092160 _____ (Microsoft Corporation) C:\windows\system32\TabSvc.dll
2019-07-20 12:00 - 2017-12-05 11:04 - 000404992 _____ (Microsoft Corporation) C:\windows\system32\wisptis.exe
2019-07-16 10:49 - 2019-07-20 20:19 - 000018485 ____H C:\Users\Tami\Desktop\~WRL1445.tmp
2019-07-16 10:49 - 2019-07-16 11:21 - 000018279 ____H C:\Users\Tami\Desktop\~WRL1256.tmp
2019-07-10 14:34 - 2019-07-17 17:51 - 000000000 ____D C:\Users\Tami\Desktop\Patio curtains
2019-07-10 12:25 - 2019-07-10 12:28 - 000000000 ____D C:\Users\Tami\Desktop\Irrigation setup
 
==================== One month (modified) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-07-29 21:07 - 2012-02-04 10:30 - 000000000 ____D C:\Users\Tami\AppData\Roaming\SoftGrid Client
2019-07-29 21:07 - 2009-07-13 23:45 - 000020928 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-07-29 21:07 - 2009-07-13 23:45 - 000020928 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-07-29 21:04 - 2018-01-10 20:28 - 000034409 _____ C:\Users\Tami\Downloads\FRST.txt
2019-07-29 21:02 - 2018-01-10 20:27 - 000000000 ____D C:\FRST
2019-07-29 20:57 - 2009-07-14 00:13 - 000797868 _____ C:\windows\system32\PerfStringBackup.INI
2019-07-29 20:57 - 2009-07-14 00:08 - 000000006 ____H C:\windows\Tasks\SA.DAT
2019-07-29 20:57 - 2009-07-13 22:20 - 000000000 ____D C:\windows\inf
2019-07-29 20:56 - 2014-01-09 14:30 - 000000000 ____D C:\windows\Minidump
2019-07-29 20:56 - 2011-12-31 17:46 - 000000000 ____D C:\Users\Tami\AppData\Local\SoftThinks
2019-07-29 20:56 - 2011-12-15 00:17 - 000000000 ____D C:\ProgramData\Sonic
2019-07-29 19:12 - 2018-01-12 13:36 - 000000000 ____D C:\ProgramData\Avg
2019-07-29 19:12 - 2015-03-25 09:49 - 000000000 ____D C:\Users\Tami\AppData\Local\Avg
2019-07-29 19:12 - 2012-02-03 20:29 - 000000000 ____D C:\Program Files (x86)\AVG
2019-07-29 18:06 - 2019-06-17 09:33 - 000000000 ____D C:\Users\Tami\Desktop\Boston
2019-07-29 18:04 - 2011-12-31 17:46 - 000000000 ____D C:\Users\Tami
2019-07-29 17:35 - 2013-12-12 19:35 - 000000000 ____D C:\Users\TEMP.Tami-PC
2019-07-29 17:35 - 2009-07-13 22:20 - 000000000 ____D C:\windows\rescache
2019-07-29 17:35 - 2009-07-13 22:20 - 000000000 ____D C:\windows\registration
2019-07-22 17:18 - 2009-07-13 22:20 - 000000000 ____D C:\windows\AppCompat
2019-07-20 21:09 - 2014-02-08 12:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2019-07-20 21:09 - 2014-02-08 12:31 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2019-07-20 21:09 - 2011-12-15 00:27 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2019-07-20 21:09 - 2009-07-13 22:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\SysWOW64\ras
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\SysWOW64\Dism
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\system32\ras
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\system32\Dism
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\servicing
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\PolicyDefinitions
2019-07-20 19:18 - 2019-01-10 13:30 - 000000000 _____ C:\windows\system32\last.dump
2019-07-20 15:03 - 2016-12-31 16:57 - 000000000 ____D C:\ProgramData\boost_interprocess
2019-07-20 14:26 - 2009-07-13 23:45 - 004882496 _____ C:\windows\system32\FNTCACHE.DAT
2019-07-20 12:39 - 2011-11-16 14:25 - 000790482 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2019-07-20 12:08 - 2018-01-12 15:25 - 000000000 ____D C:\windows\system32\MRT
2019-07-20 12:03 - 2018-01-12 15:24 - 136618864 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2019-07-17 16:53 - 2019-03-30 19:34 - 000000000 ____D C:\Users\Tami\Desktop\Side of house
2019-07-17 15:36 - 2013-03-21 15:46 - 000002226 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-07-16 11:33 - 2009-07-13 22:20 - 000000000 ____D C:\windows\system32\NDF
2019-07-10 09:59 - 2018-09-10 11:39 - 000000000 ____D C:\windows\System32\Tasks\AVAST Software
2019-07-10 09:00 - 2018-03-02 13:47 - 000000000 ____D C:\Users\Tami\Desktop\Recipes
 
==================== Files in the root of some directories ================
 
2014-10-18 13:38 - 2014-10-18 14:41 - 000000299 _____ () C:\Users\Tami\AppData\Roaming\FotoSketcher.ini
2019-01-31 12:39 - 2019-01-31 12:39 - 000000038 ___SH () C:\Users\Tami\AppData\Local\5678c43253f8bbb5ed82a9.59421958
2012-03-29 10:09 - 2012-03-29 10:09 - 000000092 _____ () C:\Users\Tami\AppData\Local\fusioncache.dat
2014-10-20 19:03 - 2014-10-20 19:03 - 000000017 _____ () C:\Users\Tami\AppData\Local\resmon.resmoncfg
 
==================== FLock ================
 
2011-12-15 03:12 C:\System Recovery
 
==================== SigCheck ===============================
 
(There is no automatic fix for files that do not pass verification.)
 
 
LastRegBack: 2019-07-29 13:02
==================== End of FRST.txt ============================
 
 
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-07-2019
Ran by [removed] (29-07-2019 21:04:47)
Running from C:\Users\[removed]\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2011-12-31 22:46:11)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3101223633-2765994983-3815756064-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3101223633-2765994983-3815756064-1003 - Limited - Enabled)
Guest (S-1-5-21-3101223633-2765994983-3815756064-501 - Limited - Disabled)
Tami (S-1-5-21-3101223633-2765994983-3815756064-1000 - Administrator - Enabled) => C:\Users\Tami
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: AVG Antivirus (Enabled - Up to date) {4FC75CA5-1654-5411-7CFB-1893D506BCF4}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Accidental Damage Services Agreement (HKLM-x32\…\{EF85FEF4-EB92-4075-A6D2-5F519BB30A2C}) (Version: 2.0.0 - Dell Inc.)
Adobe Acrobat Reader DC (HKLM-x32\…\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 19.010.20099 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\…\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\…\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.0.6 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX 64-bit (HKLM\…\Adobe Flash Player ActiveX) (Version: 11.0.1.152 - Adobe Systems Incorporated)
Adobe Photoshop CS5.1 (HKLM-x32\…\{9158FF30-78D7-40EF-B83E-451AC5334640}) (Version: 12.1 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM-x32\…\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
AiO_Scan (HKLM-x32\…\{092eeeee-9fdd-4895-a568-0818c96beb6c}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
AIOMinimal (HKLM-x32\…\{ec7d7a6a-31cb-4810-826f-74171bef44f1}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
AiOSoftware (HKLM-x32\…\{c330461f-c4a9-4fc7-af5d-c158e0b56aa7}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Amazon MP3 Downloader 1.0.18 (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Amazon MP3 Downloader) (Version: 1.0.18 - Amazon Services LLC)
ANT Drivers Installer x64 (HKLM\…\{CAED120A-1F05-4B8F-B76E-A3EA5C328AB8}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (32-bit) (HKLM-x32\…\{C56BA005-F02C-461B-ACA5-A0CE3E32578F}) (Version: 6.5 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\…\{C8087B7C-8496-45BE-92FB-91D31EB73969}) (Version: 6.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\…\{64695C4A-C68F-46B5-A734-50EBF124A68E}) (Version: 11.3.3.4 - Apple Inc.)
Apple Software Update (HKLM-x32\…\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
AVG AntiVirus FREE (HKLM-x32\…\AVG Antivirus) (Version: 19.6.3098 - AVG Technologies)
Banctec Service Agreement (HKLM-x32\…\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}) (Version: 2.0.0 - Dell Inc.)
Bonjour (HKLM\…\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Canon Auto Update Service (HKLM-x32\…\Auto Update Service) (Version: 1.1.0.13 - Canon Inc.)
Canon DIGITAL CAMERA Solution Disk Software Guide (HKLM-x32\…\Software Guide) (Version: 1.6.0.1 - Canon Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\…\MyCamera Download Plugin) (Version: 3.1.1.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\…\CANON iMAGE GATEWAY Task) (Version: 1.9.0.9 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\…\Canon MOV Decoder) (Version: 1.9.0.8 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\…\Canon MOV Encoder) (Version: 1.8.0.1 - Canon Inc.)
Canon Personal Printing Guide (HKLM-x32\…\Personal Printing Guide) (Version: 1.1.1.3 - Canon Inc.)
Canon PowerShot SX130 IS Camera User Guide (HKLM-x32\…\CameraUserGuide-PSSX130IS) (Version: 1.0.0.1 - Canon Inc.)
Canon PowerShot SX40 HS Camera User Guide (HKLM-x32\…\CameraUserGuide-PSSX40HS) (Version: 1.0.0.1 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (HKLM-x32\…\CameraWindowDC8) (Version: 8.6.0.11 - Canon Inc.)
Canon Utilities CameraWindow Launcher (HKLM-x32\…\CameraWindowLauncher) (Version: 7.6.0.1 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\…\MovieUploaderForYouTube) (Version: 1.3.0.3 - Canon Inc.)
Canon Utilities MyCamera (HKLM-x32\…\MyCamera) (Version: 7.5.0.1 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\…\ZoomBrowser EX) (Version: 6.8.0.10 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\…\ZoomBrowser EX Memory Card Utility) (Version: 1.6.0.15 - Canon Inc.)
Citrix online plug-in - web (HKLM-x32\…\CitrixOnlinePluginPackWeb) (Version: 12.1.44.1 - Citrix Systems, Inc.)
Complete Care Business Service Agreement (HKLM-x32\…\{0ECFCB07-9BFE-4970-ACA1-D568D982760B}) (Version: 2.0.0 - Dell Inc.)
Consumer In-Home Service Agreement (HKLM-x32\…\{F47C37A4-7189-430A-B81D-739FF8A7A554}) (Version: 2.0.0 - Dell Inc.)
Copy (HKLM-x32\…\{D1D8C9C4-89BE-4f37-9EC4-B80E3C239C41}) (Version: 5.31.0.150 - Hewlett-Packard) Hidden
CreativeProjects (HKLM-x32\…\{A363B66C-1547-47bf-90F0-3834E70A841A}) (Version: 5.31.0.150 - Hewlett-Packard) Hidden
D3DX10 (HKLM-x32\…\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Dell DataSafe Local Backup - Support Software (HKLM-x32\…\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version:  - Dell)
Dell DataSafe Local Backup (HKLM-x32\…\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.47 - Dell)
Dell DataSafe Online (HKLM-x32\…\{7EC66A95-AC2D-4127-940B-0445A526AB2F}) (Version: 2.1.19634 - Dell)
Dell Digital Delivery (HKLM-x32\…\{693A23FB-F28B-4F7A-A720-4C1263F97F43}) (Version: 3.1.1002.0 - Dell Products, LP)
Dell Edoc Viewer (HKLM\…\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Getting Started Guide (HKLM-x32\…\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
Dell Home Systems Service Agreement (HKLM-x32\…\{AB2FDE4F-6BED-4E9E-B676-3DCCEBB1FBFE}) (Version: 2.0.0 - Dell Inc.)
Dell Resource CD (HKLM-x32\…\{42929F0F-CE14-47AF-9FC7-FF297A603021}) (Version: 1.00.0000 - Dell Inc.)
Dell Stage (HKLM-x32\…\{FE182796-F6BA-486A-8590-89B7E8D1D60F}) (Version: 1.7.209.0 - Fingertapps)
Dell System Detect (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\9204f5692a8faf3b) (Version: 3.3.2.1 - Dell)
Dell Touchpad (HKLM\…\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1209.101.204 - ALPS ELECTRIC CO., LTD.)
Dell VideoStage  (HKLM-x32\…\{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}) (Version: 1.2.0.1712 - CyberLink Corp.) Hidden
Dell VideoStage  (HKLM-x32\…\InstallShield_{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}) (Version: 1.2.0.1712 - CyberLink Corp.)
Director (HKLM-x32\…\{829698DE-9EAC-475E-9A05-B7BA807CA1EF}) (Version: 5.31.0.154 - Hewlett-Packard) Hidden
DirectX 9 Runtime (HKLM-x32\…\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden
DocProc (HKLM-x32\…\{2F1FD032-67D1-4569-923F-47EAF132BF0F}) (Version: 3.1.0.0 - Hewlett-Packard) Hidden
Fax (HKLM-x32\…\{bb6cac2a-1fa0-471a-bc3c-ade699c39f3c}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Google Chrome (HKLM-x32\…\Google Chrome) (Version: 75.0.3770.142 - Google LLC)
Google Update Helper (HKLM-x32\…\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
HP ENVY 5000 series Basic Device Software (HKLM\…\{959CC4D2-B16C-4DFC-965A-B9FAFEAA4139}) (Version: 44.3.2218.18109 - HP Inc.)
HP Photo & Imaging 3.1 (HKLM-x32\…\HP Photo & Imaging) (Version: 3.1 - HP)
HP Photo Creations (HKLM-x32\…\HP Photo Creations) (Version: 1.0.0.5192 - HP Photo Creations)
HP Photosmart 5510 series Basic Device Software (HKLM\…\{424E8E17-A7B7-45B5-8C79-D58F04D9D920}) (Version: 25.0.621.0 - Hewlett-Packard Co.)
HP Photosmart 5510 series Help (HKLM-x32\…\{E02964EA-0E1B-4620-A26E-CBAB0341B1BB}) (Version: 140.0.2.2 - Hewlett Packard)
HP PSC & OfficeJet 3.0 (HKLM-x32\…\{F38FA38A-7E5A-4209-88ED-4DE21CD20EEF}) (Version: 3.0 - HP)
hpmdtab (HKLM-x32\…\{9F4EEA0C-7174-4BD3-89AF-7AB2F9F6AEDD}) (Version: 2.0.470.1598 - Hewlett-Packard) Hidden
HPSystemDiagnostics (HKLM-x32\…\{3CF78481-FB7B-4B51-99A2-D5E0CD0B3AAF}) (Version: 1.5.0.0 - Your Company Name) Hidden
IDT Audio (HKLM-x32\…\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6324.0 - IDT)
InstantShare (HKLM-x32\…\{745A92AF-53B4-41A7-91C3-9B026B1D5897}) (Version: 3.1.0.13 - Hewlett-Packard) Hidden
Intel PROSet Wireless (HKLM-x32\…\ProInst) (Version:  - ) Hidden
Intel(R) Control Center (HKLM-x32\…\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\…\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\…\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2361 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\…\{7CE8BE79-ABC3-4B2C-9543-28ED2B0A9EA8}) (Version: 1.2.0.0587 - Intel Corporation)
Intel(R) PROSet/Wireless WiFi Software (HKLM\…\{295AEB79-B53A-4F1B-860F-7800BB7E3681}) (Version: 14.2.1000 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\…\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation)
Intel(R) Turbo Boost Technology Monitor 2.0 (HKLM\…\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel)
Intel(R) WiDi (HKLM-x32\…\{781A93CD-1608-427D-B7F0-D05C07795B25}) (Version: 2.1.41.0 - Intel Corporation)
iTunes (HKLM\…\{BE065D5C-5EB5-4F39-A112-32897C297935}) (Version: 12.7.5.9 - Apple Inc.)
Java(TM) 6 Update 24 (64-bit) (HKLM\…\{26A24AE4-039D-4CA4-87B4-2F86416024F0}) (Version: 6.0.240 - Oracle)
Java(TM) 6 Update 27 (64-bit) (HKLM\…\{26A24AE4-039D-4CA4-87B4-2F86416027FF}) (Version: 6.0.270 - Oracle)
Java(TM) 6 Update 27 (HKLM-x32\…\{26A24AE4-039D-4CA4-87B4-2F83216027FF}) (Version: 6.0.270 - Oracle)
Junk Mail filter update (HKLM-x32\…\{400C31E4-796F-4E86-8FDC-C3C4FACC6847}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Memories Disc Creator 2.0 (HKLM-x32\…\{2E132061-C78A-48D4-A899-1D13B9D189FA}) (Version: 2.0.470.1598 - Memories Disc Creator 2.0)
Microsoft .NET Framework 1.1 (HKLM-x32\…\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.6 (HKLM\…\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\…\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\…\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\…\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\…\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\…\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\…\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\…\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\…\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\…\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\…\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\…\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (HKLM-x32\…\{5BABDA39-61CF-41EE-992D-4054B6649A9B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\…\{ED6C77F9-4D7E-447C-9EC0-9A212D075535}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\…\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
Overland (HKLM-x32\…\{1CAD83B0-87A3-4206-BF70-644546808731}) (Version: 1.76.0 - Hewlett-Packard) Hidden
Paprika Recipe Manager (HKLM-x32\…\{B1465B7D-CC75-4950-836B-8697055E9D7F}) (Version: 1.2.2 - Hindsight Labs LLC)
PDF Settings CS5 (HKLM-x32\…\{A78FE97A-C0C8-49CE-89D0-EDD524A17392}) (Version: 10.0 - Adobe Systems Incorporated) Hidden
PhotoGallery (HKLM-x32\…\{C38BC5B7-62D3-4880-82DD-A4803FD81921}) (Version: 5.31.0.158 - Hewlett-Packard) Hidden
PhotoShowExpress (HKLM-x32\…\{3250260C-7A95-4632-893B-89657EB5545B}) (Version: 2.0.063 - Sonic Solutions) Hidden
Picasa 3 (HKLM-x32\…\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayReady PC Runtime x86 (HKLM-x32\…\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Premium Service Agreement (HKLM-x32\…\{C33AA6D6-F5EC-48F3-AFDC-8141345D473A}) (Version: 2.0.0 - Dell Inc.)
PrintScreen (HKLM-x32\…\{CFD1B282-555D-494d-8231-4175C2AF08C2}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
QFolder (HKLM-x32\…\{8777AC6D-89F9-4793-8266-DE406F343E89}) (Version: 1.00.0000 - Hewlett-Packard) Hidden
QualxServ Service Agreement (HKLM-x32\…\{903679E8-44C8-4C07-9600-05C92654FC50}) (Version: 2.0.0 - Dell Inc.)
QuickProjects (HKLM-x32\…\{5ADF6293-D60F-4425-AFA7-CEB820DB872B}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Quickset64 (HKLM\…\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 10.09.25 - Dell Inc.)
Readme (HKLM-x32\…\{54e854d5-d5d4-452d-9c75-b39f5625b5fb}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\…\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.31.1025.2010 - Realtek)
Realtek USB 2.0 Card Reader (HKLM-x32\…\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30126 - Realtek Semiconductor Corp.)
Roxio Creator Starter (HKLM-x32\…\{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}) (Version: 12.1.77.0 - Roxio)
Roxio File Backup (HKLM\…\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.2 - Roxio) Hidden
Roxio PhotoShow (HKLM-x32\…\Roxio PhotoShow) (Version: 6.0 - Sonic Solutions)
Scan (HKLM-x32\…\{939227BD-19D8-4684-8A04-31AC9F6A564C}) (Version: 3.1.0.0 - Hewlett-Packard) Hidden
SkinsHP1 (HKLM-x32\…\{4FB6F304-A91D-4919-98E5-D96E074EA9E5}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
SkinsHP2 (HKLM-x32\…\{D545BB81-DEB0-49f7-BE26-197BC31AAF57}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Sonic CinePlayer Decoder Pack (HKLM-x32\…\{9A00EC4E-27E1-42C4-98DD-662F32AC8870}) (Version: 4.3.0 - Sonic Solutions) Hidden
TI USB 3.0 Host Controller Driver (HKLM-x32\…\InstallShield_{B1EB7FFF-6E44-43D8-869D-B78E44CD3E0F}) (Version: 1.12.14.0 - Texas Instruments Inc.)
TI USB3 Host Driver (HKLM-x32\…\{B1EB7FFF-6E44-43D8-869D-B78E44CD3E0F}) (Version: 1.12.14.0 - Texas Instruments Inc.) Hidden
TrayApp (HKLM-x32\…\{CE4F8FFB-4063-4247-9F14-ECE61AFEFA25}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
TrustedID (HKLM-x32\…\{C16A92EF-017B-4839-9C75-FBADB5A1FA27}) (Version: 5.0 - TrustedID)
TrustedID IDMonitor Identity Protection (HKLM-x32\…\{0E74474A-1CDF-4249-A507-CE8C1DCEC8BC}) (Version: 1.1.0 - TrustedID Inc)
Unity Web Player (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\UnityWebPlayer) (Version: 4.5.3f3 - Unity Technologies ApS)
Unload (HKLM-x32\…\{E4ABB302-9D82-4D18-83D5-AD1DFE786AA8}) (Version: 3.1.0 - Hewlett-Packard) Hidden
Visual Studio 2008 x64 Redistributables (HKLM-x32\…\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2010 x64 Redistributables (HKLM\…\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\…\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\…\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
WebReg (HKLM-x32\…\{FBBF532A-47AC-457d-AC06-0D3163D8911E}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\…\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\…\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Live Essentials (HKLM-x32\…\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [BTMSentToExt] -> {0A7D34C2-E9DA-48A1-9E34-0CDFC2DE3B44} => C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-05-19] (Intel Corporation) [File not signed]
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2011-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
 
==================== Loaded Modules (Whitelisted) ==============
 
2012-02-01 12:44 - 2012-02-01 12:44 - 002278400 _____ () [File not signed] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtCore4.dll
2012-02-01 12:44 - 2012-02-01 12:44 - 008151040 _____ () [File not signed] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtGui4.dll
2011-12-15 00:00 - 2010-11-06 00:50 - 000058880 _____ () [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2011-09-15 18:46 - 2011-09-15 18:46 - 001501696 _____ () [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2019-07-20 15:34 - 2019-07-20 15:34 - 000169984 _____ () [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\6ac716341e20c0459e03ef1c3151953f\IsdiInterop.ni.dll
2011-12-15 00:00 - 2010-10-05 21:43 - 001892352 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\xerces-c_2_7.dll
2003-06-26 18:50 - 2003-06-26 18:50 - 000212992 _____ (Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe
2019-07-20 15:34 - 2019-07-20 15:34 - 000014336 _____ (Intel Corp.) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\e291b9fca9075d4bb3bb14576935a70c\IAStorCommon.ni.dll
2011-05-19 02:16 - 2011-05-19 02:16 - 010365952 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll
2011-05-19 02:16 - 2011-05-19 02:16 - 000839744 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
2011-05-19 02:16 - 2011-05-19 02:16 - 000921664 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
2011-05-19 02:16 - 2011-05-19 02:16 - 001335360 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
2011-05-19 02:16 - 2011-05-19 02:16 - 000995392 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
2011-12-15 00:00 - 2010-10-05 21:38 - 000069632 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\StatusStrings.dll
2011-12-15 00:00 - 2010-11-06 00:50 - 000164864 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorUIHelper.dll
2011-12-15 00:00 - 2010-11-06 00:50 - 001109504 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IntelVisualDesign.dll
2011-12-15 00:00 - 2010-11-06 00:46 - 000275456 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ISDI.dll
2010-08-16 13:01 - 2010-08-16 13:01 - 000333312 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\BluetoothHS\BTHSSupplicant.dll
2011-09-15 10:46 - 2011-09-15 10:46 - 000117248 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\BluetoothHS\UsR3IoPort.dll
2011-09-15 19:03 - 2011-09-15 19:03 - 000333312 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\P2PSupplicant.dll
2019-07-20 15:34 - 2019-07-20 15:34 - 000219136 _____ (Intel Corporation) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\6e8df879720824be12dde4a211a34107\IAStorDataMgr.ni.dll
2019-07-20 15:34 - 2019-07-20 15:34 - 000019968 _____ (Intel Corporation) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvc\1dc3ee64449cdc565694cd7377e8280a\IAStorDataMgrSvc.ni.exe
2019-07-20 15:34 - 2019-07-20 15:34 - 000475648 _____ (Intel Corporation) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\db2460573643f47bddb4c2cc094569ca\IAStorUtil.ni.dll
2011-09-15 19:33 - 2011-09-15 19:33 - 001746432 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\FrameworkPlugins\PanTray.dll
2011-09-15 19:25 - 2011-09-15 19:25 - 001077248 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\PsRegApi.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 001047552 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\TraceApi.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 003719168 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\AmtWsMan.dll
2011-09-15 19:24 - 2011-09-15 19:24 - 000846336 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\DbEngine.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 000841728 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\IntStngs.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 000336896 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\IWMSPROV.DLL
2011-09-15 19:47 - 2011-09-15 19:47 - 000094720 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\LangResources\ENU\PanTrENU.dll
2011-09-15 19:30 - 2011-09-15 19:30 - 001278976 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\MurocApi.dll
2011-09-15 19:31 - 2011-09-15 19:31 - 000570368 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\PanApi.dll
2011-09-15 19:29 - 2011-09-15 19:29 - 002072576 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\PfMgrApi.dll
2011-09-15 19:24 - 2011-09-15 19:24 - 000177152 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\S24MUDLL.dll
2011-09-15 19:24 - 2011-09-15 19:24 - 000234496 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\WiMAXCoEx.dll
2011-09-15 19:36 - 2011-09-15 19:36 - 002354688 _____ (Intel(R) Corporation) [File not signed] C:\windows\System32\IWMSSvc.dll
2003-06-23 11:44 - 2003-06-23 11:44 - 000344064 ____R (Microsoft Corporation) [File not signed] C:\Program Files (x86)\HP\hpcoretech\HPVCR70.dll
2013-01-08 11:42 - 2013-01-08 11:42 - 001101824 _____ (Microsoft Corporation) [File not signed] C:\windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80.DLL
2013-01-08 11:42 - 2013-01-08 11:42 - 000057344 _____ (Microsoft Corporation) [File not signed] C:\windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3\MFC80ENU.DLL
2018-01-15 20:05 - 2018-01-15 20:05 - 000225280 _____ (Microsoft Corporation) [File not signed] C:\windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcm90.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000781536 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
2011-12-15 00:32 - 2010-08-11 19:19 - 001121504 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000113888 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\PSTVdsDisk.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000056544 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STCoreXml.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000232672 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000126176 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000119008 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000109792 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000072928 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000077024 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000330976 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STSCheduler.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000060640 ____N (SoftThinks -> SOFTTHINKS) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\CSTError.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000310496 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STDisks.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000122080 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STString.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000081120 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STStringArray.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000113888 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STSystems.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000122080 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STXml.dll
2012-02-01 12:44 - 2012-02-01 12:44 - 018858496 _____ (Unlimited Realities) [File not signed] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\libumajin.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\dell.com -> dell.com
IE restricted site: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\doubleclick.net -> hxxp://googleads.g.doubleclick.net
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 21:34 - 2019-05-10 10:01 - 000000824 _____ C:\windows\system32\drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;c:\Program Files (x86)\Common Files\Roxio Shared\OEM\DLLShared\;c:\Program Files (x86)\Common Files\Roxio Shared\OEM\DLLShared\;c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\DLLShared\;c:\Program Files (x86)\Roxio\OEM\AudioCore\;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Tami\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
If an entry is included in the fixlist, it will be removed.
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{72709570-0CEB-4421-B524-EA225B02CBC0}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation - Mobile Wireless Group -> )
FirewallRules: [{8A4FFE1A-415E-42BA-8A0E-C6582C544054}] => (Allow) C:\Program Files (x86)\Dell\VideoStage\VideoStage.exe (CyberLink -> CyberLink Corp.)
FirewallRules: [{2AE694EB-A0C1-4D67-AF8B-8E6586964D6A}] => (Allow) C:\Program Files (x86)\Intel Corporation\Intel WiDi\WiDiApp.exe (Intel Corporation -> Intel Corporation)
FirewallRules: [{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{02E14A49-E136-48FA-97DA-97524D815CD0}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{22F4253E-C7D0-47E1-A97D-F4979988D7E3}] => (Allow) C:\Program Files\dell stage\dell stage\accuweather\accuweather.exe No File
FirewallRules: [{88FBBAB2-B0D7-41B1-9859-D812504B3097}] => (Allow) C:\Program Files\dell stage\musicstage\musicstageengine.exe No File
FirewallRules: [{59CE2640-80C3-4C91-859E-FDA38AE1C06F}] => (Allow) C:\Program Files\dell stage\dell stage\stage_primary.exe No File
FirewallRules: [{391734FF-1051-4B3B-A74E-5E689B4ECF72}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7FC77117-4B0A-4DE7-AD2E-221CE18BD0BC}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{FDB309EA-4E8D-4FA3-8B39-86C8F68EA2F8}] => (Allow) C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5451BF2A-ECA0-4031-9EEF-AD2389232985}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BF53FB2A-DED4-4400-83FC-64EABB1F5688}] => (Allow) LPort=2869
FirewallRules: [{70F6A9A9-6027-4B87-9852-814FFB32E9AE}] => (Allow) LPort=1900
FirewallRules: [{3D7F9820-0347-4FB4-AA44-F91FD0457A39}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7FCBC720-D309-406C-8998-93A2399AE91F}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe No File
FirewallRules: [{5044BBB2-0556-4FA4-A277-14868431FB01}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe No File
FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}] => (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File
FirewallRules: [{2D785FF4-5E02-45A7-AABE-25DB10B2AE9A}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{76608A9A-CB0E-45E7-8B08-E30140EABF6A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D9169C53-D9FC-4493-A2B4-A63CEADB5ABB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EB3EC78A-3EAD-4FE6-990B-AAEA5F1FDB2D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8C879029-4230-485D-80C6-4692C8B15CA1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2535B1AA-E938-44E8-BBEA-B1BC8AEB656D}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{98B940D4-0D20-4530-AABE-11CD9EFF026F}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS5A2D\HP.EasyStart.exe (HP Inc. -> HP)
FirewallRules: [{89B8A42D-5DB0-4CAD-97FA-F4690516E14E}] => (Allow) C:\Program Files\HP\HP ENVY 5000 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{3DDA7EDD-A484-4567-8738-4E40D52D8CAB}] => (Allow) LPort=5357
FirewallRules: [{7F378E4C-16CE-4C30-865A-31E6A798C532}] => (Allow) C:\Program Files\HP\HP ENVY 5000 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{B82E7603-E4BE-4A3B-B75F-2073047536E3}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{7D4C30B2-24C1-4FBE-847D-4DF80B2E6FE2}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{0C5C3C03-FB18-4E9F-AB7A-D9D5C2FA25D6}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{F98B8967-CE82-4875-B99D-490EED72234E}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [TCP Query User{10BACBE5-047A-45F3-8DE3-09AD8B7C24A6}C:\program files (x86)\premieropinion\pmropn.exe] => (Block) C:\program files (x86)\premieropinion\pmropn.exe No File
FirewallRules: [UDP Query User{B285A22C-A47D-4DAD-A453-E68EE1B19964}C:\program files (x86)\premieropinion\pmropn.exe] => (Block) C:\program files (x86)\premieropinion\pmropn.exe No File
FirewallRules: [{1ED861E0-8E7B-4A6B-8DAA-0EBED52AA4D4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
 
==================== Restore Points =========================
 
20-07-2019 12:02:59 Windows Update
20-07-2019 15:00:22 Removed MSXML 4.0 SP2 (KB973688)
20-07-2019 15:02:08 Removed Fitbit Connect
20-07-2019 15:03:44 Removed Bonjour
20-07-2019 20:34:27 Restore Operation
21-07-2019 19:00:24 Windows Backup
22-07-2019 19:00:26 Windows Backup
29-07-2019 08:39:57 Windows Backup
29-07-2019 19:11:36 Windows Backup
 
==================== Faulty Device Manager Devices =============
 
Name: Integrated Webcam
Description: USB Video Device
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Microsoft
Service: usbvideo
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (07/29/2019 08:56:30 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Tami\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 63.0.3235.0,language="*",type="win32",version="63.0.3235.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (07/29/2019 09:02:15 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
(Stream product id=0x0066): Streaming Failed
 
Error: (07/29/2019 09:01:42 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Too many failures while downloading ranges: 2
 
Error: (07/29/2019 08:57:49 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (07/29/2019 09:00:40 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
(Stream product id=0x0066): Streaming Failed
 
Error: (07/29/2019 09:00:10 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Too many failures while downloading ranges: 2
 
Error: (07/29/2019 08:59:23 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Tami\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 63.0.3235.0,language="*",type="win32",version="63.0.3235.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (07/29/2019 08:57:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
 
System errors:
=============
Error: (07/29/2019 08:59:10 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
AFS
 
Error: (07/29/2019 09:03:18 PM) (Source: iaStor) (EventID: 9) (User: )
Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period.
 
Error: (07/29/2019 09:38:33 PM) (Source: iaStor) (EventID: 9) (User: )
Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period.
 
Error: (07/29/2019 08:58:26 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
AFS
 
Error: (07/29/2019 08:56:48 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: The computer has rebooted from a bugcheck.  The bugcheck was: 0x00000667 (0xffffffffc000020d, 0x0000000080000021, 0x0000000000000000, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 072919-37502-01.
 
Error: (07/29/2019 08:56:43 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 9:34:20 PM on ‎7/‎29/‎2019 was unexpected.
 
Error: (07/29/2019 09:33:06 PM) (Source: iaStor) (EventID: 9) (User: )
Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period.
 
Error: (07/29/2019 09:32:47 PM) (Source: iaStor) (EventID: 9) (User: )
Description: The device, \Device\Ide\iaStor0, did not respond within the timeout period.
 
 
==================== Memory info =========================== 
 
BIOS: Dell Inc. A09 09/30/2011
Motherboard: Dell Inc. 034W60
Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz
Percentage of memory in use: 79%
Total physical RAM: 6050.05 MB
Available physical RAM: 1256.88 MB
Total Virtual: 12098.25 MB
Available Virtual: 7136.55 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:451.01 GB) (Free:289.41 GB) NTFS
 
\\?\Volume{5396aac6-26d8-11e1-a13f-806e6f6e6963}\ (Recovery) (Fixed) (Total:14.65 GB) (Free:5.3 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 7905EDEF)
Partition 1: (Not Active) - (Size=100 MB) - (Type=DE)
Partition 2: (Active) - (Size=14.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=451 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

You need to move Farbar Recovery Scan Tool to your desktop otherwise fixes will not work.

  • go to your Downloads folder and locate FRST64
  • right click and select Cut
  • go to an empty spot on your desktop, right click and select Paste

Farbar Recovery Scan Tool should now be on your desktop.

================================================

Run Farbar Recovery Scan Tool

Open notepad. Please copy the contents of the code box below and paste it into Notepad.

CloseProcesses:
HKLM\…\Run: [CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-2872C50 (the data entry has 44 more characters).
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {EF623357-922B-42A0-957D-1B8B92EF4B44} - System32\Tasks\{365FFA08-95DB-41A5-8DE7-F4224AADEFFB} => C:\windows\system32\pcalua.exe -a D:\setup.exe -d D:\
Task: C:\windows\Tasks\HP Photo Creations Messager.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe
SearchScopes: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_kjpjs68acegi17p_19_19¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyE0CzztDzytAyE0CtByByC0DzzyC0DyEtN0D0Tzu0StByCzzyCtN1L2XzuyEtFyDtCtFtDtFtCtAtBtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StBzztB0BtC0F0F0AtGtD0DyC0AtGzytC0CtBtGtAyCyDtBtG0Ezy0BzzyCtC0EyD0BtBzy0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2S1OtB1RyEyCtAzz1OtGtByD1RzztGyE1Q1Q1TtG1StDzy1QtGtBtBzytB1QtA1QtCtCtCtCyD2QtN0A0LzutBtN1B2Z1V1T1S1NzutBtCzztAzytN1Q2Z1B1P1RzutCyDyDyByEzyzzyDyDyB%26cr%3D795786994%26a%3Dwbf_kjpjs68acegi17p_19_19%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms
CHR DefaultSearchURL: Default -> hxxp://srchbar.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> sse
CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms}
CHR HKLM\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
S3 aswVmm; \??\C:\Users\Tami\AppData\Local\Temp\aswVmm.sys [X] <==== ATTENTION
S3 CtClsFlt; system32\DRIVERS\CtClsFlt.sys [X]
2019-07-16 10:49 - 2019-07-20 20:19 - 000018485 ____H C:\Users\Tami\Desktop\~WRL1445.tmp
2019-07-16 10:49 - 2019-07-16 11:21 - 000018279 ____H C:\Users\Tami\Desktop\~WRL1256.tmp
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
FirewallRules: [{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{02E14A49-E136-48FA-97DA-97524D815CD0}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{22F4253E-C7D0-47E1-A97D-F4979988D7E3}] => (Allow) C:\Program Files\dell stage\dell stage\accuweather\accuweather.exe No File
FirewallRules: [{88FBBAB2-B0D7-41B1-9859-D812504B3097}] => (Allow) C:\Program Files\dell stage\musicstage\musicstageengine.exe No File
FirewallRules: [{59CE2640-80C3-4C91-859E-FDA38AE1C06F}] => (Allow) C:\Program Files\dell stage\dell stage\stage_primary.exe No File
FirewallRules: [{7FCBC720-D309-406C-8998-93A2399AE91F}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe No File
FirewallRules: [{5044BBB2-0556-4FA4-A277-14868431FB01}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe No File
FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}] => (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File
FirewallRules: [TCP Query User{10BACBE5-047A-45F3-8DE3-09AD8B7C24A6}C:\program files (x86)\premieropinion\pmropn.exe] => (Block) C:\program files (x86)\premieropinion\pmropn.exe No File
FirewallRules: [UDP Query User{B285A22C-A47D-4DAD-A453-E68EE1B19964}C:\program files (x86)\premieropinion\pmropn.exe] => (Block) C:\program files (x86)\premieropinion\pmropn.exe No File
C:\Program Files\Common Files\Bitdefender
C:\Users\Tami\AppData\Roaming\FotoSketcher.ini
C:\Users\Tami\AppData\Local\5678c43253f8bbb5ed82a9.59421958
C:\Users\Tami\AppData\Local\fusioncache.dat
C:\Users\Tami\AppData\Local\resmon.resmoncfg
C:\Program Files\Common Files\mcafee
CMD: ipconfig /flushdns
CMD: ipconfig /release
CMD: ipconfig /renew
EmptyTemp:

NOTE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

  • save the files as fixlist.txt in the same folder as FRST – NOTE: It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work
  • run FRST64 then click Fix just once and wait
  • it will create a log on your desktop, (Fixlog.txt); please post it to your reply.

================================================

Download and run Tweaking.com - Windows Repair

Please temporarily disable your antivirus.

Download Windows Repair from here and save it to your desktop.

  • install and then run the programme
  • when it starts, it will check that all its files are present
  • when the next window opens,click on the middle tab, ‘Jump to Repairs’
  • in the next window click on ‘Open Repairs’, (the programme will make a backup of your registry)
  • place a checkmark next to 05, Repair WMI
  • click Start
  • leave the default selected items as they are and check Restart System When Finished
  • now press Start Repairs.

===================================================

Run Malwarebytes Anti-Malware

Please download and run the installer for Malwarebytes 3.0.

  • follow the prompts to install the program, (Malwarebytes 3.0 will automatically upgrade Malwarebytes Anti-Malware 2.x to Malwarebytes 3.0)
  • run the program
  • click on the ‘Dashboard’ to make sure everything is up to date, (it is not necessary to upgrade to the premium version of MBAM)
  • click on the ‘Scan’ tab, (directly below the Dashboard tab)
  • select the Threat Scan option
  • click the Scan Now button
  • ’Threat Scan’ will begin
  • when the scan has completed and if malware was found, click the Quarantine Selected button to allow MBAM to quarantine what was found
  • if prompted to restart the computer, close all other programs and click Yes to restart your computer
  • once you are back at your desktop, open MBAM once more
  • click on the ‘Reports’ tab
  • double-click on the most recent Scan Report
  • click on Export, then Copy to Clipboard

Please paste the contents of the clipboard into your next reply.

Logs to include with next post:

Fixlog.txt
Mbam.txt


Thanks

Satchfan

 

Question, when I do the Tweaking.com - Windows repair……do I ONLY check box #5 for Repair WMI, or do I leave all 33 boxes checked and repair everything?

Fix result of Farbar Recovery Scan Tool (x64) Version: 30-07-2019 01
Ran by [removed] (30-07-2019 12:14:54) Run:1
Running from C:\Users\[removed]\Desktop\Fix
[removed]
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CloseProcesses:
HKLM\…\Run: [CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-2872C50 (the data entry has 44 more characters).
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {EF623357-922B-42A0-957D-1B8B92EF4B44} - System32\Tasks\{365FFA08-95DB-41A5-8DE7-F4224AADEFFB} => C:\windows\system32\pcalua.exe -a D:\setup.exe -d D:\
Task: C:\windows\Tasks\HP Photo Creations Messager.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe
SearchScopes: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL =
hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_kjpjs68acegi17p_19_19¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyE0CzztDzytAyE0CtByByC0DzzyC0DyEtN0D0Tzu0StByCzzyCtN1L2XzuyEtFyDtCtFtDtFtCtAtBtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StBzztB0BtC0F0F0AtGtD0DyC0AtGzytC0CtBtGtAyCyDtBtG0Ezy0BzzyCtC0EyD0BtBzy0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2S1OtB1RyEyCtAzz1OtGtByD1RzztGyE1Q1Q1TtG1StDzy1QtGtBtBzytB1QtA1QtCtCtCtCyD2QtN0A0LzutBtN1B2Z1V1T1S1NzutBtCzztAzytN1Q2Z1B1P1RzutCyDyDyByEzyzzyDyDyB%26cr%3D795786994%26a%3Dwbf_kjpjs68acegi17p_19_19%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms
CHR DefaultSearchURL: Default -> hxxp://srchbar.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> sse
CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms}
CHR HKLM\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR
HKLM\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension:
[nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
S3 aswVmm; \??\C:\Users\Tami\AppData\Local\Temp\aswVmm.sys [X] <==== ATTENTION
S3 CtClsFlt; system32\DRIVERS\CtClsFlt.sys [X]
2019-07-16 10:49 - 2019-07-20 20:19 - 000018485 ____H C:\Users\Tami\Desktop\~WRL1445.tmp
2019-07-16 10:49 - 2019-07-16 11:21 - 000018279 ____H C:\Users\Tami\Desktop\~WRL1256.tmp
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
FirewallRules:
[{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{02E14A49-E136-48FA-97DA-97524D815CD0}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{22F4253E-C7D0-47E1-A97D-F4979988D7E3}] => (Allow) C:\Program Files\dell stage\dell stage\accuweather\accuweather.exe No File
FirewallRules: [{88FBBAB2-B0D7-41B1-9859-D812504B3097}] => (Allow) C:\Program Files\dell stage\musicstage\musicstageengine.exe No File
FirewallRules: [{59CE2640-80C3-4C91-859E-FDA38AE1C06F}] => (Allow) C:\Program Files\dell stage\dell stage\stage_primary.exe No File
FirewallRules: [{7FCBC720-D309-406C-8998-93A2399AE91F}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe No File
FirewallRules: [{5044BBB2-0556-4FA4-A277-14868431FB01}] => (Allow) C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe No File
FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}]
=> (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File
FirewallRules: [TCP Query User{10BACBE5-047A-45F3-8DE3-09AD8B7C24A6}C:\program files (x86)\premieropinion\pmropn.exe] => (Block) C:\program files (x86)\premieropinion\pmropn.exe No File
FirewallRules: [UDP Query User{B285A22C-A47D-4DAD-A453-E68EE1B19964}C:\program files (x86)\premieropinion\pmropn.exe] => (Block) C:\program files (x86)\premieropinion\pmropn.exe No File
C:\Program Files\Common Files\Bitdefender
C:\Users\Tami\AppData\Roaming\FotoSketcher.ini
C:\Users\Tami\AppData\Local\5678c43253f8bbb5ed82a9.59421958
C:\Users\Tami\AppData\Local\fusioncache.dat
C:\Users\Tami\AppData\Local\resmon.resmoncfg
C:\Program Files\Common Files\mcafee
CMD: ipconfig /flushdns
CMD: ipconfig /release
CMD: ipconfig /renew
EmptyTemp:
*****************
 
Processes closed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\CL-23-2872C50A-40A2-4405-BC3F-1B038A041BEE" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF623357-922B-42A0-957D-1B8B92EF4B44}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF623357-922B-42A0-957D-1B8B92EF4B44}" => removed successfully
C:\windows\System32\Tasks\{365FFA08-95DB-41A5-8DE7-F4224AADEFFB} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{365FFA08-95DB-41A5-8DE7-F4224AADEFFB}" => removed successfully
C:\windows\Tasks\HP Photo Creations Messager.job => moved successfully
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} => removed successfully
HKLM\Software\Classes\CLSID\{2f23ab71-4ac6-41f2-a955-ea576e553146} => not found
hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_kjpjs68acegi17p_19_19¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyE0CzztDzytAyE0CtByByC0DzzyC0DyEtN0D0Tzu0StByCzzyCtN1L2XzuyEtFyDtCtFtDtFtCtAtBtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StBzztB0BtC0F0F0AtGtD0DyC0AtGzytC0CtBtGtAyCyDtBtG0Ezy0BzzyCtC0EyD0BtBzy0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2S1OtB1RyEyCtAzz1OtGtByD1RzztGyE1Q1Q1TtG1StDzy1QtGtBtBzytB1QtA1QtCtCtCtCyD2QtN0A0LzutBtN1B2Z1V1T1S1NzutBtCzztAzytN1Q2Z1B1P1RzutCyDyDyByEzyzzyDyDyB%26cr%3D795786994%26a%3Dwbf_kjpjs68acegi17p_19_19%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms => Error: No automatic fix found for this entry.
"Chrome DefaultSearchURL" => removed successfully
"Chrome DefaultSearchKeyword" => removed successfully
"Chrome DefaultSuggestURL" => removed successfully
HKLM\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce => removed successfully
CHR => Error: No automatic fix found for this entry.
HKLM\…\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej => removed successfully
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce => removed successfully
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\pdpcpceofkopegffcdnffeenbfdldock => removed successfully
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn => removed successfully
CHR HKLM-x32\…\Chrome\Extension: => Error: No automatic fix found for this entry.
[nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pdpcpceofkopegffcdnffeenbfdldock => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej => removed successfully
HKLM\System\CurrentControlSet\Services\aswVmm => removed successfully
aswVmm => service removed successfully
HKLM\System\CurrentControlSet\Services\CtClsFlt => removed successfully
CtClsFlt => service removed successfully
C:\Users\Tami\Desktop\~WRL1445.tmp => moved successfully
C:\Users\Tami\Desktop\~WRL1256.tmp => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avg => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\FirewallRules:" => not found
[{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{02E14A49-E136-48FA-97DA-97524D815CD0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{22F4253E-C7D0-47E1-A97D-F4979988D7E3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{88FBBAB2-B0D7-41B1-9859-D812504B3097}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{59CE2640-80C3-4C91-859E-FDA38AE1C06F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7FCBC720-D309-406C-8998-93A2399AE91F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5044BBB2-0556-4FA4-A277-14868431FB01}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}]" => not found
=> (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{10BACBE5-047A-45F3-8DE3-09AD8B7C24A6}C:\program files (x86)\premieropinion\pmropn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B285A22C-A47D-4DAD-A453-E68EE1B19964}C:\program files (x86)\premieropinion\pmropn.exe" => removed successfully
"C:\Program Files\Common Files\Bitdefender" => not found
C:\Users\Tami\AppData\Roaming\FotoSketcher.ini => moved successfully
C:\Users\Tami\AppData\Local\5678c43253f8bbb5ed82a9.59421958 => moved successfully
C:\Users\Tami\AppData\Local\fusioncache.dat => moved successfully
C:\Users\Tami\AppData\Local\resmon.resmoncfg => moved successfully
"C:\Program Files\Common Files\mcafee" => not found
 
========= ipconfig /flushdns =========
 
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========= End of CMD: =========
 
 
========= ipconfig /release =========
 
 
Windows IP Configuration
 
No operation can be performed on Wireless Network Connection 3 while it has its media disconnected.
No operation can be performed on Wireless Network Connection 2 while it has its media disconnected.
No operation can be performed on Local Area Connection while it has its media disconnected.
 
Wireless LAN adapter Wireless Network Connection 3:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Wireless LAN adapter Wireless Network Connection 2:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : 
   Link-local IPv6 Address . . . . . : fe80::b5f2:79c3:1aa3:1138%14
   Default Gateway . . . . . . . . . : 
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Tunnel adapter Teredo Tunneling Pseudo-Interface:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Tunnel adapter isatap.{5C0C6F98-E449-4F79-B4D7-F7765B5EE563}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
========= End of CMD: =========
 
 
========= ipconfig /renew =========
 
 
Windows IP Configuration
 
No operation can be performed on Wireless Network Connection 3 while it has its media disconnected.
No operation can be performed on Wireless Network Connection 2 while it has its media disconnected.
No operation can be performed on Local Area Connection while it has its media disconnected.
 
Wireless LAN adapter Wireless Network Connection 3:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Wireless LAN adapter Wireless Network Connection 2:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : 
   Link-local IPv6 Address . . . . . : fe80::b5f2:79c3:1aa3:1138%14
   IPv4 Address. . . . . . . . . . . : 192.168.1.7
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.1.1
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
Tunnel adapter Teredo Tunneling Pseudo-Interface:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
 
========= End of CMD: =========
 
 
=========== EmptyTemp: ==========
 
BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 85332911 B
Java, Flash, Steam htmlcache => 456 B
Windows/system/drivers => 709453214 B
Edge => 0 B
Chrome => 95735699 B
Firefox => 0 B
Opera => 0 B
 
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 140 B
Tami => 2204903770 B
TEMP.Tami-PC => 0 B
 
RecycleBin => 6086083997 B
EmptyTemp: => 8.6 GB temporary data Removed.
 
================================
 
 
The system needed a reboot.
 
==== End of Fixlog 12:19:59 ====
 
Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 7/31/19
Scan Time: 7:21 PM
Log File: 5a01cd05-b3f2-11e9-ac18-24b6fd098e80.json
 
-Software Information-
Version: 3.8.3.2965
Components Version: 1.0.613
Update Package Version: 1.0.11806
License: Trial
 
-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Tami-PC\Tami
 
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 302829
Threats Detected: 119
Threats Quarantined: 119
Time Elapsed: 12 min, 23 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 7
PUP.Optional.WebDiscoverBrowser, HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\WebDiscoverBrowser, Delete-on-Reboot, [1655], [253912],1.0.11806
PUP.Optional.WebDiscoverBrowser, HKLM\SOFTWARE\WOW6432NODE\WebDiscoverBrowser, Delete-on-Reboot, [1655], [253915],1.0.11806
PUP.Optional.SecuredSearch, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pdpcpceofkopegffcdnffeenbfdldock, Delete-on-Reboot, [236], [586076],1.0.11806
PUP.Optional.InstallCore, HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\CSASTATS\ic, Delete-on-Reboot, [446], [586068],1.0.11806
PUP.Optional.WebDiscoverBrowser, HKU\S-1-5-18\SOFTWARE\WebDiscoverBrowser, Delete-on-Reboot, [1655], [253912],1.0.11806
PUP.Optional.SearchManager, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\nahhmpbckpgdidfnmfkfgiflpjijilce, Delete-on-Reboot, [2077], [476595],1.0.11806
PUP.Optional.WebDiscoverBrowser, HKLM\SOFTWARE\WebDiscoverBrowser, Delete-on-Reboot, [1655], [253915],1.0.11806
 
Registry Value: 1
PUP.Optional.SearchManager, HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|NAHHMPBCKPGDIDFNMFKFGIFLPJIJILCE, Delete-on-Reboot, [2077], [476595],1.0.11806
 
Registry Data: 0
(No malicious items detected)
 
Data Stream: 0
(No malicious items detected)
 
Folder: 23
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\data_reduction_proxy_leveldb, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Download Service\EntryDB, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Sync Data\LevelDB, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Download Service, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Extension State, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Session Storage, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache\GPUCache, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Thumbnails, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Sync Data, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\BrowserMetrics, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\USERS\TAMI\APPDATA\LOCAL\WEBDISCOVERBROWSER, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data\Crashpad\reports, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data\Crashpad, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\WEBDISCOVERBROWSER, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\Locales, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.SearchManager, C:\Users\Tami\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.3.81_0, Delete-on-Reboot, [2077], [453140],1.0.11806
PUP.Optional.SearchManager, C:\USERS\TAMI\APPDATA\LOCAL\CHROMIUM\USER DATA\Default\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, Delete-on-Reboot, [2077], [453140],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\USERS\TAMI\APPDATA\LOCAL\{D87EEE22-FCD6-829A-914E-A772B5265BEA}, Delete-on-Reboot, [801], [542290],1.0.11806
 
File: 88
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Extension State\000003.log, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Extension State\LOCK, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Extension State\LOG, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Extension State\MANIFEST-000001, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\data_reduction_proxy_leveldb\000007.log, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\data_reduction_proxy_leveldb\LOCK, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\data_reduction_proxy_leveldb\LOG, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000006, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Download Service\EntryDB\000003.log, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Download Service\EntryDB\LOCK, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Download Service\EntryDB\LOG, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Download Service\EntryDB\MANIFEST-000001, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Session Storage\000003.log, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Session Storage\LOCK, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Session Storage\LOG, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Session Storage\MANIFEST-000001, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Sync Data\LevelDB\000003.log, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Sync Data\LevelDB\LOCK, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Sync Data\LevelDB\LOG, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Thumbnails\000003.log, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Thumbnails\LOCK, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Thumbnails\LOG, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Thumbnails\MANIFEST-000001, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Shortcuts, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Network Persistent State, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Preferences, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\previews_opt_out.db, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Top Sites, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Visited Links, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Web Data, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Favicons, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\History, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\History Provider Cache, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\History-journal, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Login Data, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Default\Login Data-journal, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\BrowserMetrics\BrowserMetrics-5CD59110.pma, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache\GPUCache\data_0, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache\GPUCache\data_1, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache\GPUCache\data_2, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache\GPUCache\data_3, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\ShaderCache\GPUCache\index, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\CrashpadMetrics.pma~RF82b25.TMP, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Local State, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Safe Browsing Channel IDs, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Users\Tami\AppData\Local\WebDiscoverBrowser\User Data\Safe Browsing Cookies, Delete-on-Reboot, [1655], [181497],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data\Crashpad\metadata, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data\Crashpad\settings.dat, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data\CrashpadMetrics-active.pma, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.WebDiscoverBrowser, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WebDiscoverBrowser\User Data\CrashpadMetrics.pma, Delete-on-Reboot, [1655], [444086],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\Locales\en-US.pak, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\icudtl.dat, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\chrome_100_percent.pak, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\chrome_200_percent.pak, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\natives_blob.bin, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\resources.pak, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\snapshot_blob.bin, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.Webbar, C:\Program Files\WebDiscoverBrowser\4.28.2\v8_context_snapshot.bin, Delete-on-Reboot, [741], [348279],1.0.11806
PUP.Optional.SearchManager, C:\USERS\TAMI\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Replaced, [2077], [476595],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\USERS\TAMI\APPDATA\LOCAL\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HOWTOREMOVE\HOWTOREMOVE.HTML, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\chromium-min.jpg, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\control panel-min-min.JPG, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\down.png, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\ff menu.JPG, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\ff search engine-min.png, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\hp-min ff.png, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\hp-min ie.png, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\search engine.gif, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\setup pages.gif, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\sp-min.png, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\start-min.jpg, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\HowToRemove\up.png, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\lidosera, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\sarinanit, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\uninst.exe, Delete-on-Reboot, [801], [542290],1.0.11806
PUP.Optional.WinYahoo.TskLnk, C:\Users\Tami\AppData\Local\{D87EEE22-FCD6-829A-914E-A772B5265BEA}\uninstp.dat, Delete-on-Reboot, [801], [542290],1.0.11806
Adware.InstallCore, C:\USERS\TAMI\DOWNLOADS\KINGOROOT.EXE, Delete-on-Reboot, [448], [683291],1.0.11806
PUP.Optional.SearchManager.BITSRST, C:\USERS\TAMI\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Replaced, [270], [626729],1.0.11806
PUP.Optional.SearchManager.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\PROGRAMDATA\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\PROGRAMDATA\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [270], [-1],0.0.0
PUP.Optional.SearchManager.BITSRST, C:\USERS\TAMI\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Replaced, [270], [628563],1.0.11806
 
Physical Sector: 0
(No malicious items detected)
 
WMI: 0
(No malicious items detected)
 
 
(end)

There were many entries marked "delete on reboot". Did you do that? If not, please reboot and run Malwarebytess again and send the new log.

I rebooted it several times and continued to get the notification that it needed to be rebooted.  I reran the program and here is the most recent log.

 

Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 8/1/19
Scan Time: 6:35 PM
Log File: 11afd802-b4b5-11e9-88dd-24b6fd098e80.json
 
-Software Information-
Version: 3.8.3.2965
Components Version: 1.0.613
Update Package Version: 1.0.11818
License: Trial
 
-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Tami-PC\Tami
 
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 303077
Threats Detected: 0
Threats Quarantined: 0
Time Elapsed: 8 min, 44 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 0
(No malicious items detected)
 
Registry Value: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Data Stream: 0
(No malicious items detected)
 
Folder: 0
(No malicious items detected)
 
File: 0
(No malicious items detected)
 
Physical Sector: 0
(No malicious items detected)
 
WMI: 0
(No malicious items detected)
 
 
(end)

That looks better.

===================================================

Note: Please complete these tasks in the order given in the instructions.

===================================================

Download and run AdwCleaner

Download AdwCleaner from here and save it to your desktop.

  • run AdwCleaner by clicking on Scan Now
  • when it has finished, leave everything that was found checked, (ticked), then click on Clean and Repair
  • if it asks to reboot, allow the reboot
  • on reboot a log will be produced; please attach the content of the log to your next reply.

===================================================

Please run FRST again and make sure there is a checkmark next to ‘Addition.txt’ before you hit Scan.

Logs to include with next post:

AdwCleaner log
New Frst.txt
New Addition.txt


Can you tell me how your computer is now.

Thanks

Satchfan

 

Computer seems to be running better.  I still have some moments of "not responding" but overall it is much better.

My other main issue is my computer clock - it's constantly changing to the wrong time/date.

I've reset it numerous times, made sure the correct time zone is selected and auto sync with server - but I still am having

problems with that.

 

# ——————————-
# Malwarebytes AdwCleaner 7.4.0.0
# ——————————-
# Build:    07-23-2019
# Database: 2019-08-02.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# ——————————-
# Mode: Clean
# ——————————-
# Start:    08-03-2019
# Duration: 00:01:14
# OS:       Windows 7 Home Premium
# Cleaned:  25
# Failed:   0
 
 
***** [ Services ] *****
 
No malicious services cleaned.
 
***** [ Folders ] *****
 
Deleted       C:\Program Files\WebDiscoverBrowser
Deleted       C:\ProgramData\ByteFence
 
***** [ Files ] *****
 
No malicious files cleaned.
 
***** [ DLL ] *****
 
No malicious DLLs cleaned.
 
***** [ WMI ] *****
 
No malicious WMI cleaned.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts cleaned.
 
***** [ Tasks ] *****
 
No malicious tasks cleaned.
 
***** [ Registry ] *****
 
Deleted       HKCU\Software\PRODUCTSETUP
Deleted       HKCU\Software\ProductSetup\Uninstall\0B2U2Z1P0F1P1G1R1P1V0A1Q1Q0O1G
Deleted       HKCU\Software\ProductSetup\Uninstall\0S1P1T1C1R1MtT0P1C1F2X1L1Q1P1QtT1S2UtT0Y1T1M1F1F
Deleted       HKCU\Software\csastats
 
***** [ Chromium (and derivatives) ] *****
 
No malicious Chromium entries cleaned.
 
***** [ Chromium URLs ] *****
 
Deleted       AVG Secure Search
Deleted       AVG Secure Search
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries cleaned.
 
***** [ Firefox URLs ] *****
 
No malicious Firefox URLs cleaned.
 
***** [ Preinstalled Software ] *****
 
Deleted       Preinstalled.DellDigitalDelivery
Deleted       Preinstalled.DellGamesBundle
Deleted       Preinstalled.DellQuickset
Deleted       Preinstalled.HPCleanFLC
Deleted       Preinstalled.HPDigitalImaging
 
 
*************************
 
[+] Delete Tracing Keys
[+] Reset Winsock
 
*************************
 
AdwCleaner[S00].txt - [1935 octets] - [03/08/2019 21:52:10]
 
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
 
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-07-2019 01
Ran by [removed] (administrator) on TAMI-PC (Dell Inc. Inspiron N5110) (03-08-2019 21:59:51)
Running from C:\Users\[removed]\Desktop\Fix
[removed]
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Amazon Services LLC -> ) C:\Users\Tami\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
(Citrix Systems, Inc. -> Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
(Dell Inc -> SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 5000 series\Bin\HPNetworkCommunicatorCom.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 5000 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe
(Intel Corporation - Mobile Wireless Group -> Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
(Sonic Solutions -> ) C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(Symantec Corporation -> Dell, Inc.) C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe
(Tweaking LLC -> Tweaking.com) C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
(Unlimited Realities -> ) C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\…\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [525312 2011-01-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
HKLM\…\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [609144 2011-04-12] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
HKLM\…\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\…\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-09-15] (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation)
HKLM\…\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [10365952 2011-05-19] (Intel Corporation) [File not signed]
HKLM\…\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-03-15] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\…\Run: [DellStage] => C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe [2195824 2012-02-01] (Unlimited Realities -> )
HKLM\…\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-05-22] (Apple Inc. -> Apple Inc.)
HKLM\…\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [316848 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
HKLM-x32\…\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-06] (Intel Corporation -> Intel Corporation)
HKLM-x32\…\Run: [RoxWatchTray] => c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions -> Sonic Solutions)
HKLM-x32\…\Run: [Desktop Disc Tool] => c:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] (Sonic Solutions -> )
HKLM-x32\…\Run: [Dell DataSafe Online] => C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe [1117528 2010-08-25] (Symantec Corporation -> Dell, Inc.)
HKLM-x32\…\Run: [HP Component Manager] => C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe [212992 2003-06-26] (Hewlett-Packard Company) [File not signed]
HKLM-x32\…\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\…\Run: [AdobeCS5.5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\…\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [305088 2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
HKLM-x32\…\Run: [AccuWeatherWidget] => C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe [968048 2012-02-01] (Unlimited Realities -> )
HKLM-x32\…\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2018-05-15] (Apple Inc. -> Apple Inc.)
HKLM-x32\…\RunOnce: [Launcher] => C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe [163040 2010-08-11] (SoftThinks -> Softthinks) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [HP Photosmart 5510 series (NET)] => C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe [2676584 2011-09-16] (Hewlett Packard -> Hewlett-Packard Co.)
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [AmazonMP3DownloaderHelper] => C:\Users\Tami\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-09] (Amazon Services LLC -> )
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [HP ENVY 5000 (NET)] => C:\Program Files\HP\HP ENVY 5000 series\Bin\ScanToPCActivationApp.exe [4065416 2018-04-19] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [Chromium] => c:\users\tami\appdata\local\chromium\application\chrome.exe [4195328 2017-10-06] (The Chromium Authors) [File not signed]
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {21baa9b2-b7cf-11e1-9847-4c80934c276d} - E:\ToolLauncher-Bootstrap.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {37ee0435-6edd-11e9-bd6a-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {65ee1464-f310-11e2-a1ea-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-18\…\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
HKLM\…\Drivers32: [vidc.iv31] => C:\Windows\SysWOW64\ir32_32.dll [197632 2009-07-13] (Microsoft Windows -> Intel(R) Corporation)
HKLM\…\Drivers32: [vidc.iv32] => C:\Windows\SysWOW64\ir32_32.dll [197632 2009-07-13] (Microsoft Windows -> Intel(R) Corporation)
HKLM\…\Drivers32-x32: [vidc.iv41] => ir41_32.ax
HKLM\…\Drivers32: [msacm.iac2] => C:\WINDOWS\SysWOW64\iac25_32.ax [197632 2009-07-13] (Microsoft Windows -> Intel Corporation)
HKLM\…\Drivers32: [vidc.iv50] => C:\Windows\SysWOW64\ir50_32.dll [746496 2009-07-13] (Microsoft Windows -> Intel Corporation)
HKLM\…\Drivers32: [wdmaud.drv] => C:\windows\SysWOW64\wdmaud.drv [172032 2010-11-20] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.87\Installer\chrmstp.exe [2019-07-31] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" –configure-user-settings –verbose-logging –system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Incorporated -> Adobe Systems, Inc.)
HKLM\Software\…\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {21B21443-5AE9-42B2-BB8F-8EB797174549} - System32\Tasks\AdobeAAMUpdater-1.0-Tami-PC-Tami => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-03-15] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4B5E5ACC-6DE2-478E-9603-760272BBD832} - System32\Tasks\GoogleUpdateTaskMachineCore
Task: {55DFE024-5925-475F-98BA-4F840ADE02B9} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2079152 2019-07-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {604C0D3D-48AA-4C84-B4EA-55FF690BD2C3} - System32\Tasks\GoogleUpdateTaskMachineUA
Task: {718A47EF-072A-442D-A703-8EEA18427433} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {83A41953-0DA4-4C3D-8A08-F56D27385400} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {83E0E132-B515-4AC2-A980-1E228A4DC79B} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [3987888 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {8AAD24F3-B106-4A31-AF51-0F343CC8BEFD} - System32\Tasks\{64989D82-2F11-4953-9865-B523AFF6C5DB} => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqthb08.exe
Task: {9DE19BB1-F752-4480-8DBE-96793D7E9A97} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
Task: {B14173EE-4E51-424C-B029-FF10305E2EAF} - System32\Tasks\{77E3687E-C267-4C10-BFCD-0427E1B49D53} => C:\windows\system32\pcalua.exe -a C:\windows\system32\pcwrun.exe -c "C:\Program Files (x86)\HP\Digital Imaging\bin\hpqthb08.exe"
Task: {C2390267-CEE0-419A-840A-BA1BE5D980F9} - System32\Tasks\HP Photo Creations Messager => C:\ProgramData\HP Photo Creations\MessageCheck.exe [153768 2011-02-15] (Visan Industries -> )
Task: {E37C798F-FAC4-4F0A-B6A8-16D4B7101270} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5C0C6F98-E449-4F79-B4D7-F7765B5EE563}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.msn.com/USCON/1
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: HKLM-x32 {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} hxxps://support.dell.com/systemprofiler/SysProExe.CAB
Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2011-04-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.)
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [File not signed]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-02-13] (Google Inc -> Google, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3101223633-2765994983-3815756064-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Tami\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-08-08] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3101223633-2765994983-3815756064-1000: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Tami\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-09] (Amazon Services LLC -> Amazon.com, Inc.)
 
Chrome: 
=======
CHR Profile: C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default [2019-08-03]
CHR Extension: (Adobe Acrobat) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-07-30]
CHR Extension: (AVG SafePrice | Comparison, deals, coupons) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2019-07-31]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-07-30]
CHR Extension: (Chrome Media Router) - C:\Users\Tami\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-07-31]
CHR HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Andrea Electronics Corporation)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-04-27] (Apple Inc. -> Apple Inc.)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [415032 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6845400 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [921664 2011-05-19] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1335360 2011-05-19] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [995392 2011-05-19] (Intel Corporation) [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-09-15] (Intel Corporation - Mobile Wireless Group -> )
R2 NOBU; C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2823000 2010-08-25] (Symantec Corporation -> Dell, Inc.)
R2 SftService; C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE [689472 2010-08-20] (Dell Inc -> SoftThinks SAS)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [296448 2011-01-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare)
R2 WsDrvInst; C:\Program Files (x86)\Wondershare\drfone\Library\DriverInstaller\DriverInstall.exe [120016 2018-12-29] (Wondershare Technology Co.,Ltd -> Wondershare)
S2 DellDigitalDelivery; "C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe" [X]
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S0 AFS; C:\Windows\SysWow64\Drivers\AFS.sys [77004 2012-03-20] (Oak Technology Inc.) [File not signed]
R3 AMPPAL; C:\windows\System32\DRIVERS\AMPPAL.sys [299008 2011-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 AMPPALP; C:\windows\System32\DRIVERS\amppal.sys [299008 2011-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R0 avgArDisk; C:\windows\System32\drivers\avgArDisk.sys [37368 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgArPot; C:\windows\System32\drivers\avgArPot.sys [209304 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\windows\System32\drivers\avgbidsdriver.sys [263784 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\windows\System32\drivers\avgbidsh.sys [206624 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\windows\System32\drivers\avgbuniv.sys [61736 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\windows\System32\drivers\avgKbd.sys [42552 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\windows\System32\drivers\avgMonFlt.sys [168944 2019-07-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\windows\System32\drivers\avgRdr2.sys [112568 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\windows\System32\drivers\avgRvrt.sys [88208 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\windows\System32\drivers\avgSnx.sys [1030832 2019-07-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\windows\System32\drivers\avgSP.sys [477336 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\windows\System32\drivers\avgStm.sys [225864 2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\windows\System32\drivers\avgVmm.sys [387952 2019-07-29] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 ESProtectionDriver; C:\windows\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes)
S3 intaud_WaveExtensible; C:\windows\System32\drivers\intelaud.sys [34200 2011-06-21] (Wireless Display -> Intel Corporation)
R3 iwdbus; C:\windows\System32\DRIVERS\iwdbus.sys [25496 2011-06-21] (Wireless Display -> Intel Corporation)
R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [199768 2019-07-31] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMFarflt; C:\windows\System32\DRIVERS\farflt.sys [224408 2019-08-03] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\windows\system32\DRIVERS\mbam.sys [73584 2019-08-03] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [275232 2019-08-03] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\windows\System32\DRIVERS\mwac.sys [106344 2019-08-03] (Malwarebytes Corporation -> Malwarebytes)
R3 STHDA; C:\windows\System32\DRIVERS\stwrt64.sys [520192 2011-01-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 USBAAPL64; C:\windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-08-03 21:47 - 2019-08-03 21:48 - 007623880 _____ (Malwarebytes) C:\Users\Tami\Desktop\adwcleaner_7.4.exe
2019-08-03 21:47 - 2019-08-03 21:47 - 000224408 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys
2019-08-03 21:47 - 2019-08-03 21:47 - 000106344 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys
2019-08-03 21:47 - 2019-08-03 21:47 - 000073584 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2019-08-01 18:49 - 2019-08-01 18:49 - 000001218 _____ C:\Users\Tami\Desktop\Mbam4.txt
2019-08-01 18:15 - 2019-08-03 21:47 - 000275232 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2019-07-31 19:37 - 2019-07-31 19:37 - 000020115 _____ C:\Users\Tami\Desktop\Mbam.txt
2019-07-31 19:07 - 2019-07-31 19:07 - 000199768 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamChameleon.sys
2019-07-31 19:06 - 2019-07-31 19:06 - 000001869 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-07-31 19:06 - 2019-07-31 19:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-07-31 19:06 - 2019-07-31 19:06 - 000000000 ____D C:\Program Files\Malwarebytes
2019-07-31 19:06 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2019-07-31 19:00 - 2019-07-31 19:05 - 064752904 _____ (Malwarebytes ) C:\Users\Tami\Desktop\mb3-setup-consumer-3.8.3.2965-1.0.613-1.0.11789.exe
2019-07-30 12:33 - 2019-07-30 11:50 - 018888762 _____ (Tweaking.com) C:\Users\Tami\Downloads\Unconfirmed 63862.crdownload
2019-07-30 12:10 - 2019-08-03 21:59 - 000000000 ____D C:\Users\Tami\Desktop\Fix
2019-07-30 12:03 - 2019-07-30 12:03 - 000000207 _____ C:\windows\tweaking.com-regbackup-TAMI-PC-Windows-7-Home-Premium-(64-bit).dat
2019-07-30 12:03 - 2019-07-30 12:03 - 000000000 ____D C:\Users\Tami\Desktop\FRST-OlderVersion
2019-07-30 12:03 - 2019-07-30 12:03 - 000000000 ____D C:\RegBackup
2019-07-30 12:01 - 2019-07-30 12:03 - 038907848 _____ (Tweaking.com) C:\Users\Tami\Downloads\tweaking.com_windows_repair_aio_setup.exe
2019-07-30 11:59 - 2019-07-30 11:59 - 000002165 _____ C:\Users\Tami\Desktop\Tweaking.com - Windows Repair.lnk
2019-07-30 11:58 - 2019-07-30 11:58 - 000003650 _____ C:\windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon
2019-07-30 11:58 - 2019-07-30 11:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2019-07-30 11:58 - 2019-07-30 11:58 - 000000000 ____D C:\Program Files (x86)\Tweaking.com
2019-07-30 11:57 - 2019-07-30 11:59 - 000311647 _____ C:\windows\Tweaking.com - Windows Repair Setup Log.txt
2019-07-30 11:55 - 2019-07-31 18:58 - 034634368 _____ (Malwarebytes ) C:\Users\Tami\Downloads\Unconfirmed 381296.crdownload
2019-07-30 11:54 - 2019-07-30 11:55 - 038907848 _____ (Tweaking.com) C:\Users\Tami\Downloads\tweaking.com_windows_repair_aio_setup (1).exe
2019-07-29 21:11 - 2019-07-29 21:11 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (3).exe
2019-07-29 21:08 - 2019-07-29 21:08 - 000044206 _____ C:\Users\Tami\Desktop\Addition 7-29.txt
2019-07-29 20:56 - 2019-07-29 20:56 - 000266288 _____ C:\windows\Minidump\072919-40513-01.dmp
2019-07-29 20:56 - 2019-07-29 20:56 - 000262144 _____ C:\windows\Minidump\072919-37502-01.dmp
2019-07-29 20:14 - 2019-07-29 20:14 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (2).exe
2019-07-29 18:08 - 2019-07-30 11:55 - 000168944 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgMonFlt.sys
2019-07-29 18:08 - 2019-07-20 16:45 - 000363440 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\avgBoot.exe
2019-07-29 18:08 - 2019-07-20 16:45 - 000225864 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgStm.sys
2019-07-22 19:46 - 2019-07-22 19:47 - 000000000 ____D C:\Users\Tami\Desktop\2019 Garden
2019-07-20 21:32 - 2019-07-29 18:08 - 000001916 _____ C:\Users\Public\Desktop\AVG AntiVirus FREE.lnk
2019-07-20 21:32 - 2019-07-20 21:32 - 000000000 ____D C:\Users\Tami\AppData\Roaming\AVG
2019-07-20 21:32 - 2019-07-20 21:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2019-07-20 21:14 - 2019-07-20 16:45 - 000206624 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\aswf0a54f187e20b8a0.tmp
2019-07-20 21:03 - 2019-07-20 21:07 - 000514641 ____C C:\unp307526161806892536i-manual.mdmp
2019-07-20 21:01 - 2019-07-20 16:45 - 000263784 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\aswe4d1166f455407fb.tmp
2019-07-20 18:09 - 2019-07-20 18:09 - 000268624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Tami\Downloads\avg_antivirus_free_setup (4).exe
2019-07-20 16:46 - 2019-07-20 21:08 - 000000000 ____D C:\windows\System32\Tasks\AVG
2019-07-20 16:45 - 2019-08-01 18:16 - 000004162 _____ C:\windows\System32\Tasks\Antivirus Emergency Update
2019-07-20 16:45 - 2019-07-30 11:55 - 001030832 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgSnx.sys
2019-07-20 16:45 - 2019-07-29 08:35 - 000387952 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgVmm.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000477336 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgSP.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000263784 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgbidsdriver.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000209304 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgArPot.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000206624 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgbidsh.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000112568 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgRdr2.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000088208 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgRvrt.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000061736 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgbuniv.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000042552 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgKbd.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000037368 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgArDisk.sys
2019-07-20 16:45 - 2019-07-20 16:45 - 000000000 ____D C:\Program Files\Common Files\AVG
2019-07-20 16:41 - 2019-07-20 16:41 - 000000000 ____D C:\Program Files\AVG
2019-07-20 16:40 - 2019-07-20 16:40 - 000268624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Tami\Downloads\avg_antivirus_free_setup (3).exe
2019-07-20 14:21 - 2019-07-20 21:08 - 000000000 ___SD C:\windows\system32\CompatTel
2019-07-20 14:21 - 2019-07-20 21:08 - 000000000 ____D C:\windows\system32\appraiser
2019-07-20 12:02 - 2019-06-17 23:21 - 002724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2019-07-20 12:02 - 2019-06-17 23:07 - 000048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2019-07-20 12:02 - 2019-06-17 22:56 - 000116224 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2019-07-20 12:02 - 2019-06-17 22:51 - 002724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2019-07-20 12:02 - 2019-06-17 22:38 - 000087552 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2019-07-20 12:02 - 2019-06-17 22:32 - 000030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2019-07-20 12:02 - 2019-06-17 22:16 - 000091136 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2019-07-20 12:02 - 2019-06-17 22:16 - 000073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2019-07-20 12:02 - 2019-06-17 22:16 - 000060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-07-20 12:02 - 2019-06-12 10:21 - 000617984 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmdrmsdk.dll
2019-07-20 12:02 - 2019-06-12 10:21 - 000082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcrypt.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 001329664 _____ (Microsoft Corporation) C:\windows\SysWOW64\quartz.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000988160 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmv2clt.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000504320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscp.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000489984 _____ (Microsoft Corporation) C:\windows\SysWOW64\evr.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000442368 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000406016 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmmgrtn.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000354816 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000265216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msnetobj.dll
2019-07-20 12:02 - 2019-06-12 10:20 - 000103424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000744960 _____ (Microsoft Corporation) C:\windows\SysWOW64\blackbox.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000342528 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000195072 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:19 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:08 - 000005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2019-07-20 12:02 - 2019-06-12 10:08 - 000005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2019-07-20 12:02 - 2019-06-12 10:07 - 000463872 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2019-07-20 12:02 - 2019-06-12 10:07 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\msmmsp.dll
2019-07-20 12:02 - 2019-06-12 10:07 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000680960 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000295936 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000034816 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2019-07-20 12:02 - 2019-06-12 10:06 - 000004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:06 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 10:04 - 000023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2019-07-20 12:02 - 2019-06-12 09:55 - 000009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\sscore.dll
2019-07-20 12:02 - 2019-06-12 09:48 - 000007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2019-07-20 12:02 - 2019-06-12 09:48 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2019-07-20 12:02 - 2019-06-12 09:46 - 000006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:46 - 000004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:46 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:46 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-07-20 12:02 - 2019-06-12 09:38 - 000296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2019-07-20 12:02 - 2019-06-09 10:08 - 000044032 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll
2019-07-20 12:02 - 2019-06-07 10:07 - 000008704 _____ (Microsoft Corporation) C:\windows\system32\comcat.dll
2019-07-20 12:02 - 2019-06-07 09:55 - 000007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\comcat.dll
2019-07-20 12:02 - 2019-05-13 09:44 - 000353280 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd3x40.dll
2019-07-20 12:02 - 2019-05-13 09:44 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msexcl40.dll
2019-07-20 12:02 - 2019-05-13 09:44 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd2x40.dll
2019-07-20 12:02 - 2019-04-14 00:39 - 000010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000020944 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000019408 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000017656 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000015608 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000014288 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000014072 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000013560 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012752 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012536 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012240 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:05 - 000011504 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000021752 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000018680 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000017352 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000017144 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000015096 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000013560 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000013560 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000013048 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000012024 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000012024 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011728 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-07-20 12:02 - 2019-04-12 08:04 - 000011000 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-07-20 12:02 - 2019-04-09 10:05 - 000573440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2019-07-20 12:02 - 2019-04-09 10:05 - 000030208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2019-07-20 12:02 - 2019-04-09 09:52 - 000037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2019-07-20 12:02 - 2019-04-09 09:52 - 000037888 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2019-07-20 12:02 - 2019-04-09 09:52 - 000012288 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2019-07-20 12:02 - 2019-04-04 19:23 - 000057856 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdll.dll
2019-07-20 12:02 - 2019-03-11 16:33 - 001391616 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2019-07-20 12:02 - 2019-03-11 16:33 - 001241088 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2019-07-20 12:02 - 2019-03-11 16:33 - 000107520 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleprn.dll
2019-07-20 12:02 - 2019-02-16 00:50 - 000321536 _____ (Microsoft Corporation) C:\windows\SysWOW64\winspool.drv
2019-07-20 12:02 - 2018-12-07 21:56 - 000081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\rascfg.dll
2019-07-20 12:02 - 2018-12-04 11:07 - 000170496 _____ (Microsoft Corporation) C:\windows\system32\itss.dll
2019-07-20 12:02 - 2018-10-26 22:04 - 000015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\dispex.dll
2019-07-20 12:02 - 2018-09-22 21:55 - 002319872 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000491520 _____ (Microsoft Corporation) C:\windows\system32\mssph.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000288256 _____ (Microsoft Corporation) C:\windows\system32\mssphtb.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000115200 _____ (Microsoft Corporation) C:\windows\system32\mssitlb.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000075264 _____ (Microsoft Corporation) C:\windows\system32\msscntrs.dll
2019-07-20 12:02 - 2018-09-22 21:54 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\msshooks.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 001549312 _____ (Microsoft Corporation) C:\windows\SysWOW64\tquery.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 001400320 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssrch.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000666624 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssvp.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssph.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000197120 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssphtb.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000104448 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssitlb.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000059392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscntrs.dll
2019-07-20 12:02 - 2018-09-22 21:37 - 000034816 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssprxy.dll
2019-07-20 12:02 - 2018-09-22 21:34 - 000591872 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2019-07-20 12:02 - 2018-09-22 21:34 - 000249856 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2019-07-20 12:02 - 2018-09-22 21:33 - 000113664 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe
2019-07-20 12:02 - 2018-09-22 21:22 - 000427520 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchIndexer.exe
2019-07-20 12:02 - 2018-09-22 21:22 - 000164352 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchProtocolHost.exe
2019-07-20 12:02 - 2018-09-22 21:21 - 000086528 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchFilterHost.exe
2019-07-20 12:02 - 2018-09-22 21:21 - 000009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\msshooks.dll
2019-07-20 12:02 - 2018-09-08 19:59 - 002851840 _____ (Microsoft Corporation) C:\windows\system32\themeui.dll
2019-07-20 12:02 - 2018-09-08 19:44 - 002755584 _____ (Microsoft Corporation) C:\windows\SysWOW64\themeui.dll
2019-07-20 12:02 - 2018-08-15 21:18 - 000041984 _____ (Microsoft Corporation) C:\windows\system32\UtcResources.dll
2019-07-20 12:02 - 2018-08-13 16:49 - 001391856 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2019-07-20 12:02 - 2018-06-27 10:55 - 000484864 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2019-07-20 12:02 - 2018-06-27 10:43 - 000363520 _____ (Microsoft Corporation) C:\windows\SysWOW64\StructuredQuery.dll
2019-07-20 12:02 - 2018-06-08 11:21 - 000369664 _____ (Microsoft Corporation) C:\windows\system32\zipfldr.dll
2019-07-20 12:02 - 2018-06-08 10:55 - 000330240 _____ (Microsoft Corporation) C:\windows\SysWOW64\zipfldr.dll
2019-07-20 12:02 - 2018-02-10 12:36 - 000007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\MsraLegacy.tlb
2019-07-20 12:02 - 2018-02-10 12:25 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\Drivers\errdev.sys
2019-07-20 12:02 - 2018-02-10 12:25 - 000007168 _____ (Microsoft Corporation) C:\windows\system32\MsraLegacy.tlb
2019-07-20 12:01 - 2019-06-20 21:44 - 003229696 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2019-07-20 12:01 - 2019-06-20 04:11 - 000396896 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2019-07-20 12:01 - 2019-06-20 03:15 - 000348976 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2019-07-20 12:01 - 2019-06-17 23:34 - 025730560 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2019-07-20 12:01 - 2019-06-17 23:21 - 000004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2019-07-20 12:01 - 2019-06-17 23:09 - 002903552 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2019-07-20 12:01 - 2019-06-17 23:08 - 000066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2019-07-20 12:01 - 2019-06-17 23:07 - 000578560 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2019-07-20 12:01 - 2019-06-17 23:07 - 000417280 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2019-07-20 12:01 - 2019-06-17 23:07 - 000088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2019-07-20 12:01 - 2019-06-17 23:00 - 000054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2019-07-20 12:01 - 2019-06-17 22:59 - 005775872 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2019-07-20 12:01 - 2019-06-17 22:59 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2019-07-20 12:01 - 2019-06-17 22:57 - 000615936 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2019-07-20 12:01 - 2019-06-17 22:56 - 020274688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2019-07-20 12:01 - 2019-06-17 22:56 - 000790528 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2019-07-20 12:01 - 2019-06-17 22:56 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2019-07-20 12:01 - 2019-06-17 22:55 - 000814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2019-07-20 12:01 - 2019-06-17 22:48 - 000969216 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2019-07-20 12:01 - 2019-06-17 22:45 - 000489984 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2019-07-20 12:01 - 2019-06-17 22:39 - 000496128 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2019-07-20 12:01 - 2019-06-17 22:39 - 000077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2019-07-20 12:01 - 2019-06-17 22:39 - 000062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2019-07-20 12:01 - 2019-06-17 22:38 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2019-07-20 12:01 - 2019-06-17 22:38 - 000107520 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2019-07-20 12:01 - 2019-06-17 22:37 - 000064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2019-07-20 12:01 - 2019-06-17 22:35 - 002297344 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2019-07-20 12:01 - 2019-06-17 22:35 - 000199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2019-07-20 12:01 - 2019-06-17 22:34 - 000092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2019-07-20 12:01 - 2019-06-17 22:32 - 000315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2019-07-20 12:01 - 2019-06-17 22:32 - 000047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2019-07-20 12:01 - 2019-06-17 22:30 - 000476160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2019-07-20 12:01 - 2019-06-17 22:30 - 000152064 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2019-07-20 12:01 - 2019-06-17 22:29 - 000663040 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2019-07-20 12:01 - 2019-06-17 22:29 - 000620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2019-07-20 12:01 - 2019-06-17 22:29 - 000115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2019-07-20 12:01 - 2019-06-17 22:21 - 000416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2019-07-20 12:01 - 2019-06-17 22:21 - 000262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2019-07-20 12:01 - 2019-06-17 22:20 - 000809472 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2019-07-20 12:01 - 2019-06-17 22:20 - 000728064 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2019-07-20 12:01 - 2019-06-17 22:19 - 015311872 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2019-07-20 12:01 - 2019-06-17 22:17 - 002136064 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2019-07-20 12:01 - 2019-06-17 22:17 - 001359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2019-07-20 12:01 - 2019-06-17 22:13 - 000168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2019-07-20 12:01 - 2019-06-17 22:13 - 000076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2019-07-20 12:01 - 2019-06-17 22:11 - 000279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2019-07-20 12:01 - 2019-06-17 22:10 - 000130048 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2019-07-20 12:01 - 2019-06-17 22:07 - 004494336 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2019-07-20 12:01 - 2019-06-17 22:06 - 004858880 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2019-07-20 12:01 - 2019-06-17 22:04 - 000230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2019-07-20 12:01 - 2019-06-17 22:03 - 013706752 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2019-07-20 12:01 - 2019-06-17 22:03 - 002060288 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2019-07-20 12:01 - 2019-06-17 22:03 - 000696320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2019-07-20 12:01 - 2019-06-17 22:02 - 001155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2019-07-20 12:01 - 2019-06-17 21:55 - 001557504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2019-07-20 12:01 - 2019-06-17 21:44 - 004386304 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2019-07-20 12:01 - 2019-06-17 21:43 - 000800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2019-07-20 12:01 - 2019-06-17 21:41 - 001323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2019-07-20 12:01 - 2019-06-17 21:39 - 000710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2019-07-20 12:01 - 2019-06-12 10:23 - 004057320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2019-07-20 12:01 - 2019-06-12 10:23 - 003964136 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2019-07-20 12:01 - 2019-06-12 10:22 - 001314104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 012574208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2019-07-20 12:01 - 2019-06-12 10:21 - 011411968 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 001114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000666112 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000275968 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000179712 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2019-07-20 12:01 - 2019-06-12 10:21 - 000005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 003207168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000555520 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000261632 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000254464 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000070144 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2019-07-20 12:01 - 2019-06-12 10:20 - 000022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 001177088 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 001005056 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptui.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000644096 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000373248 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000106496 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2019-07-20 12:01 - 2019-06-12 10:19 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:11 - 000262376 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2019-07-20 12:01 - 2019-06-12 10:11 - 000153832 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2019-07-20 12:01 - 2019-06-12 10:11 - 000094440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mountmgr.sys
2019-07-20 12:01 - 2019-06-12 10:10 - 005550824 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2019-07-20 12:01 - 2019-06-12 10:10 - 000095464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2019-07-20 12:01 - 2019-06-12 10:09 - 001664352 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 014637568 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 012574720 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2019-07-20 12:01 - 2019-06-12 10:08 - 000782848 _____ (Microsoft Corporation) C:\windows\system32\wmdrmsdk.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000361984 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000236032 _____ (Microsoft Corporation) C:\windows\system32\srvsvc.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000215552 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000210432 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000135680 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000094208 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000028672 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2019-07-20 12:01 - 2019-06-12 10:08 - 000013312 _____ (Microsoft Corporation) C:\windows\system32\sscore.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 004120576 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001574400 _____ (Microsoft Corporation) C:\windows\system32\quartz.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001484800 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001472512 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001211392 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001202176 _____ (Microsoft Corporation) C:\windows\system32\drmv2clt.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001162752 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 001068544 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000733184 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000641024 _____ (Microsoft Corporation) C:\windows\system32\msscp.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000632320 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000499712 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000497664 _____ (Microsoft Corporation) C:\windows\system32\drmmgrtn.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000433152 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000408576 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000345600 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000325632 _____ (Microsoft Corporation) C:\windows\system32\msnetobj.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000317440 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000312320 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000284672 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000206848 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000190976 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000190464 _____ (Microsoft Corporation) C:\windows\system32\rpchttp.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000187904 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000141824 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000081920 _____ (Microsoft Corporation) C:\windows\system32\cryptsp.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000044032 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000043520 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000037376 _____ (Microsoft Corporation) C:\windows\system32\pcadm.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2019-07-20 12:01 - 2019-06-12 10:07 - 000008704 _____ (Microsoft Corporation) C:\windows\system32\pcaevts.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000880640 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000842240 _____ (Microsoft Corporation) C:\windows\system32\blackbox.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000438784 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000123904 _____ (Microsoft Corporation) C:\windows\system32\bcrypt.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:06 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-07-20 12:01 - 2019-06-12 10:05 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\rrinstaller.exe
2019-07-20 12:01 - 2019-06-12 09:54 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2019-07-20 12:01 - 2019-06-12 09:50 - 000055808 _____ (Microsoft Corporation) C:\windows\system32\rrinstaller.exe
2019-07-20 12:01 - 2019-06-12 09:49 - 000024576 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2019-07-20 12:01 - 2019-06-12 09:47 - 000036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptbase.dll
2019-07-20 12:01 - 2019-06-12 09:42 - 000148480 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2019-07-20 12:01 - 2019-06-12 09:42 - 000062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2019-07-20 12:01 - 2019-06-12 09:42 - 000017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2019-07-20 12:01 - 2019-06-12 09:39 - 000338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2019-07-20 12:01 - 2019-06-12 09:39 - 000129024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\videoprt.sys
2019-07-20 12:01 - 2019-06-12 09:37 - 000274944 _____ (Microsoft Corporation) C:\windows\system32\Dism.exe
2019-07-20 12:01 - 2019-06-12 09:37 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\pcalua.exe
2019-07-20 12:01 - 2019-06-12 09:36 - 000464384 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000406016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000291328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000169472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000160768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2019-07-20 12:01 - 2019-06-12 09:36 - 000129536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2019-07-20 12:01 - 2019-06-12 09:35 - 000064512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\amdk8.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\intelppm.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\processr.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\amdppm.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000044544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\npfs.sys
2019-07-20 12:01 - 2019-06-12 09:35 - 000030720 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2019-07-20 12:01 - 2019-06-10 21:59 - 002863104 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2019-07-20 12:01 - 2019-06-07 10:18 - 001425920 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll
2019-07-20 12:01 - 2019-06-07 10:08 - 002072576 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2019-07-20 12:01 - 2019-06-07 10:08 - 000516096 _____ (Microsoft Corporation) C:\windows\system32\rpcss.dll
2019-07-20 12:01 - 2019-06-03 18:11 - 001110528 _____ (Microsoft Corporation) C:\windows\system32\schedsvc.dll
2019-07-20 12:01 - 2019-06-03 18:11 - 000474112 _____ (Microsoft Corporation) C:\windows\system32\taskcomp.dll
2019-07-20 12:01 - 2019-06-03 18:10 - 000304640 _____ (Microsoft Corporation) C:\windows\SysWOW64\taskcomp.dll
2019-07-20 12:01 - 2019-05-24 19:04 - 014185984 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2019-07-20 12:01 - 2019-05-24 19:03 - 001867776 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll
2019-07-20 12:01 - 2019-05-24 18:59 - 012880384 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2019-07-20 12:01 - 2019-05-24 18:58 - 001499648 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2019-07-20 12:01 - 2019-05-22 21:06 - 000405504 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2019-07-20 12:01 - 2019-05-22 21:06 - 000008192 _____ (Microsoft Corporation) C:\windows\system32\msimg32.dll
2019-07-20 12:01 - 2019-05-22 20:58 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2019-07-20 12:01 - 2019-05-22 20:58 - 000004608 _____ (Microsoft Corporation) C:\windows\SysWOW64\msimg32.dll
2019-07-20 12:01 - 2019-05-22 19:31 - 001988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2019-07-20 12:01 - 2019-05-17 13:21 - 000372456 _____ (Microsoft Corporation) C:\windows\system32\clfs.sys
2019-07-20 12:01 - 2019-05-13 09:44 - 001311744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msjet40.dll
2019-07-20 12:01 - 2019-05-13 09:44 - 000241152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msltus40.dll
2019-07-20 12:01 - 2019-05-09 10:18 - 002368000 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2019-07-20 12:01 - 2019-05-09 10:18 - 000337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2019-07-20 12:01 - 2019-05-09 10:18 - 000025088 _____ (Microsoft Corporation) C:\windows\SysWOW64\msimsg.dll
2019-07-20 12:01 - 2019-05-09 10:17 - 001806848 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2019-07-20 12:01 - 2019-05-09 10:09 - 000114400 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2019-07-20 12:01 - 2019-05-09 10:07 - 003247616 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2019-07-20 12:01 - 2019-05-09 10:07 - 000504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2019-07-20 12:01 - 2019-05-09 10:07 - 000025088 _____ (Microsoft Corporation) C:\windows\system32\msimsg.dll
2019-07-20 12:01 - 2019-05-09 10:06 - 001942016 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2019-07-20 12:01 - 2019-05-09 10:06 - 000070144 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll
2019-07-20 12:01 - 2019-05-09 09:51 - 000073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msiexec.exe
2019-07-20 12:01 - 2019-05-09 09:40 - 000128512 _____ (Microsoft Corporation) C:\windows\system32\msiexec.exe
2019-07-20 12:01 - 2019-04-25 10:18 - 000083968 _____ (Microsoft Corporation) C:\windows\SysWOW64\userenv.dll
2019-07-20 12:01 - 2019-04-25 10:06 - 000110592 _____ (Microsoft Corporation) C:\windows\system32\userenv.dll
2019-07-20 12:01 - 2019-04-24 10:11 - 001893096 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2019-07-20 12:01 - 2019-04-24 10:09 - 000377064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys
2019-07-20 12:01 - 2019-04-24 10:09 - 000287976 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2019-07-20 12:01 - 2019-04-18 21:44 - 000185064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pci.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000064232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ULIAGPKX.SYS
2019-07-20 12:01 - 2019-04-18 21:43 - 000063208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\termdd.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000060648 _____ (Microsoft Corporation) C:\windows\system32\Drivers\AGP440.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000031976 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mssmbios.sys
2019-07-20 12:01 - 2019-04-18 21:43 - 000020200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\isapnp.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000122600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\NV_AGP.SYS
2019-07-20 12:01 - 2019-04-18 21:42 - 000068328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\volmgr.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000036064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vdrvroot.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000015080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msisadrv.sys
2019-07-20 12:01 - 2019-04-18 21:42 - 000012136 _____ (Microsoft Corporation) C:\windows\system32\Drivers\swenum.sys
2019-07-20 12:01 - 2019-04-16 10:17 - 000583680 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2019-07-20 12:01 - 2019-04-16 10:05 - 000878080 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2019-07-20 12:01 - 2019-04-14 00:42 - 000309480 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2019-07-20 12:01 - 2019-04-14 00:40 - 000025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2019-07-20 12:01 - 2019-04-14 00:28 - 000383720 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2019-07-20 12:01 - 2019-04-14 00:26 - 000041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2019-07-20 12:01 - 2019-04-14 00:26 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000994384 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000064248 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000017656 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000016120 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000914584 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000065784 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000015608 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-07-20 12:01 - 2019-04-12 08:04 - 000011512 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-07-20 12:01 - 2019-04-09 10:17 - 000174080 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 003165184 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000192512 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000098816 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000093696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2019-07-20 12:01 - 2019-04-09 10:05 - 000035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2019-07-20 12:01 - 2019-04-09 10:03 - 000091136 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2019-07-20 12:01 - 2019-04-09 09:53 - 002651136 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2019-07-20 12:01 - 2019-04-09 09:52 - 000709120 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2019-07-20 12:01 - 2019-04-09 09:52 - 000140288 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2019-07-20 12:01 - 2019-04-07 10:17 - 000382976 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2019-07-20 12:01 - 2019-04-07 10:03 - 001281536 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2019-07-20 12:01 - 2019-04-07 10:03 - 000486400 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2019-07-20 12:01 - 2019-04-07 09:42 - 000475648 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxbde40.dll
2019-07-20 12:01 - 2019-04-07 09:42 - 000376320 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspbde40.dll
2019-07-20 12:01 - 2019-04-04 19:34 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\cryptdll.dll
2019-07-20 12:01 - 2019-03-28 20:36 - 000114688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\luafv.sys
2019-07-20 12:01 - 2019-03-20 21:10 - 000032768 _____ (Microsoft Corporation) C:\windows\system32\sxssrv.dll
2019-07-20 12:01 - 2019-03-11 16:41 - 002009600 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2019-07-20 12:01 - 2019-03-11 16:41 - 001894912 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2019-07-20 12:01 - 2019-03-11 16:41 - 000688128 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2019-07-20 12:01 - 2019-03-04 21:44 - 000076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2019-07-20 12:01 - 2019-03-04 21:44 - 000033280 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2019-07-20 12:01 - 2019-03-04 21:44 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidusb.sys
2019-07-20 12:01 - 2019-02-21 10:48 - 000025088 _____ (Microsoft Corporation) C:\windows\system32\netbtugc.exe
2019-07-20 12:01 - 2019-02-21 10:43 - 000026624 _____ (Microsoft Corporation) C:\windows\SysWOW64\netbtugc.exe
2019-07-20 12:01 - 2019-02-21 10:37 - 000262656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netbt.sys
2019-07-20 12:01 - 2019-02-16 01:02 - 000972288 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2019-07-20 12:01 - 2019-02-16 01:02 - 000443904 _____ (Microsoft Corporation) C:\windows\system32\winspool.drv
2019-07-20 12:01 - 2019-02-10 11:10 - 001680104 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2019-07-20 12:01 - 2019-02-10 10:36 - 000328192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\udfs.sys
2019-07-20 12:01 - 2019-02-10 10:36 - 000205312 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2019-07-20 12:01 - 2019-02-10 10:36 - 000195584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\exfat.sys
2019-07-20 12:01 - 2019-02-10 10:35 - 000092672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cdfs.sys
2019-07-20 12:01 - 2019-02-07 11:01 - 000095232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bridge.sys
2019-07-20 12:01 - 2019-02-03 10:36 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msfs.sys
2019-07-20 12:01 - 2018-12-07 21:56 - 000061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasdiag.dll
2019-07-20 12:01 - 2018-12-07 21:47 - 000088576 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wanarp.sys
2019-07-20 12:01 - 2018-12-07 21:47 - 000058368 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndproxy.sys
2019-07-20 12:01 - 2018-12-07 21:47 - 000024064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndistapi.sys
2019-07-20 12:01 - 2018-12-07 21:41 - 000033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasmxs.dll
2019-07-20 12:01 - 2018-12-07 21:41 - 000022528 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasser.dll
2019-07-20 12:01 - 2018-12-04 10:55 - 000158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\itircl.dll
2019-07-20 12:01 - 2018-12-04 10:55 - 000142848 _____ (Microsoft Corporation) C:\windows\SysWOW64\itss.dll
2019-07-20 12:01 - 2018-11-17 21:57 - 002565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2019-07-20 12:01 - 2018-11-13 14:26 - 000467856 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2019-07-20 12:01 - 2018-11-11 12:01 - 000366824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msrpc.sys
2019-07-20 12:01 - 2018-10-26 22:42 - 000230400 _____ (Microsoft Corporation) C:\windows\system32\scrobj.dll
2019-07-20 12:01 - 2018-10-26 22:42 - 000202752 _____ (Microsoft Corporation) C:\windows\system32\scrrun.dll
2019-07-20 12:01 - 2018-10-26 22:42 - 000150016 _____ (Microsoft Corporation) C:\windows\system32\wshom.ocx
2019-07-20 12:01 - 2018-10-26 22:41 - 000018944 _____ (Microsoft Corporation) C:\windows\system32\dispex.dll
2019-07-20 12:01 - 2018-10-26 22:27 - 000173568 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrobj.dll
2019-07-20 12:01 - 2018-10-26 22:27 - 000164352 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrrun.dll
2019-07-20 12:01 - 2018-10-26 22:27 - 000121856 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshom.ocx
2019-07-20 12:01 - 2018-10-26 22:04 - 000126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscript.exe
2019-07-20 12:01 - 2018-10-26 22:04 - 000025088 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshcon.dll
2019-07-20 12:01 - 2018-09-22 21:54 - 002222080 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2019-07-20 12:01 - 2018-09-22 21:54 - 000778240 _____ (Microsoft Corporation) C:\windows\system32\mssvp.dll
2019-07-20 12:01 - 2018-09-22 21:54 - 000099840 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2019-07-20 12:01 - 2018-09-08 20:02 - 000986824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2019-07-20 12:01 - 2018-09-08 20:02 - 000265416 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2019-07-20 12:01 - 2018-09-08 19:57 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\cdd.dll
2019-07-20 12:01 - 2018-08-28 00:50 - 000243200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ks.sys
2019-07-20 12:01 - 2018-08-10 10:55 - 000022528 _____ (Microsoft Corporation) C:\windows\system32\wfapigp.dll
2019-07-20 12:01 - 2018-08-10 10:54 - 000828928 _____ (Microsoft Corporation) C:\windows\system32\MPSSVC.dll
2019-07-20 12:01 - 2018-08-10 10:54 - 000749568 _____ (Microsoft Corporation) C:\windows\system32\FirewallAPI.dll
2019-07-20 12:01 - 2018-08-10 10:54 - 000108544 _____ (Microsoft Corporation) C:\windows\system32\icfupgd.dll
2019-07-20 12:01 - 2018-08-10 10:40 - 000463360 _____ (Microsoft Corporation) C:\windows\SysWOW64\FirewallAPI.dll
2019-07-20 12:01 - 2018-08-10 10:27 - 000077312 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mpsdrv.sys
2019-07-20 12:01 - 2018-08-10 10:20 - 000018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wfapigp.dll
2019-07-20 12:01 - 2018-08-03 10:39 - 000084992 _____ (Microsoft Corporation) C:\windows\SysWOW64\hlink.dll
2019-07-20 12:01 - 2018-07-18 10:18 - 000090112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bowser.sys
2019-07-20 12:01 - 2018-07-06 11:09 - 000947904 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2019-07-20 12:01 - 2018-06-29 10:55 - 000045568 _____ (Microsoft Corporation) C:\windows\system32\cscapi.dll
2019-07-20 12:01 - 2018-06-29 10:55 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\cscdll.dll
2019-07-20 12:01 - 2018-06-29 10:40 - 000023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscdll.dll
2019-07-20 12:01 - 2018-06-29 10:09 - 000034304 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscapi.dll
2019-07-20 12:01 - 2018-06-08 11:19 - 000357888 _____ (Microsoft Corporation) C:\windows\system32\dnsapi.dll
2019-07-20 12:01 - 2018-06-08 11:19 - 000182272 _____ (Microsoft Corporation) C:\windows\system32\dnsrslvr.dll
2019-07-20 12:01 - 2018-06-08 10:54 - 000269824 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnsapi.dll
2019-07-20 12:01 - 2018-06-08 10:28 - 000030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnscacheugc.exe
2019-07-20 12:01 - 2018-05-14 22:44 - 001159680 _____ (Microsoft Corporation) C:\windows\system32\webservices.dll
2019-07-20 12:01 - 2018-05-14 22:13 - 000782848 _____ (Microsoft Corporation) C:\windows\SysWOW64\webservices.dll
2019-07-20 12:01 - 2018-05-11 16:19 - 000977408 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2019-07-20 12:01 - 2018-05-11 16:19 - 000084480 _____ (Microsoft Corporation) C:\windows\system32\INETRES.dll
2019-07-20 12:01 - 2018-05-10 19:40 - 000741888 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2019-07-20 12:01 - 2018-05-10 19:40 - 000084480 _____ (Microsoft Corporation) C:\windows\SysWOW64\INETRES.dll
2019-07-20 12:01 - 2018-05-02 10:32 - 000056320 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2019-07-20 12:01 - 2018-05-02 10:32 - 000030720 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2019-07-20 12:01 - 2018-05-02 10:32 - 000025600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2019-07-20 12:01 - 2018-04-25 11:02 - 000124416 _____ (Microsoft Corporation) C:\windows\system32\wkssvc.dll
2019-07-20 12:01 - 2018-04-25 10:18 - 000115200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dfsc.sys
2019-07-20 12:01 - 2018-04-18 10:51 - 000523776 _____ (Microsoft Corporation) C:\windows\SysWOW64\hhctrl.ocx
2019-07-20 12:01 - 2018-04-18 10:51 - 000043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\hhsetup.dll
2019-07-20 12:01 - 2018-04-18 10:35 - 000015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\hh.exe
2019-07-20 12:01 - 2018-04-10 11:35 - 001735168 _____ (Microsoft Corporation) C:\windows\system32\comsvcs.dll
2019-07-20 12:01 - 2018-04-10 11:34 - 000525824 _____ (Microsoft Corporation) C:\windows\system32\catsrvut.dll
2019-07-20 12:01 - 2018-04-10 11:33 - 001241600 _____ (Microsoft Corporation) C:\windows\SysWOW64\comsvcs.dll
2019-07-20 12:01 - 2018-04-10 11:32 - 000487936 _____ (Microsoft Corporation) C:\windows\SysWOW64\catsrvut.dll
2019-07-20 12:01 - 2018-03-06 13:13 - 000148160 _____ (Microsoft Corporation) C:\windows\SysWOW64\basecsp.dll
2019-07-20 12:01 - 2018-03-06 13:11 - 000184320 _____ (Microsoft Corporation) C:\windows\SysWOW64\scksp.dll
2019-07-20 12:01 - 2018-03-06 13:11 - 000052224 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsnmp32.dll
2019-07-20 12:01 - 2018-03-06 13:10 - 000170176 _____ (Microsoft Corporation) C:\windows\system32\basecsp.dll
2019-07-20 12:01 - 2018-03-06 13:07 - 000229376 _____ (Microsoft Corporation) C:\windows\system32\scksp.dll
2019-07-20 12:01 - 2018-03-06 13:07 - 000067072 _____ (Microsoft Corporation) C:\windows\system32\wsnmp32.dll
2019-07-20 12:01 - 2018-02-21 22:28 - 000217600 _____ (Microsoft Corporation) C:\windows\system32\WinSCard.dll
2019-07-20 12:01 - 2018-02-21 22:06 - 000134656 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinSCard.dll
2019-07-20 12:01 - 2018-02-10 13:35 - 000334528 _____ (Microsoft Corporation) C:\windows\system32\Drivers\acpi.sys
2019-07-20 12:01 - 2018-02-10 13:23 - 002292224 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVidCtl.dll
2019-07-20 12:01 - 2018-02-10 13:23 - 000111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\racpldlg.dll
2019-07-20 12:01 - 2018-02-10 13:11 - 003665920 _____ (Microsoft Corporation) C:\windows\system32\MSVidCtl.dll
2019-07-20 12:01 - 2018-02-10 13:11 - 000119296 _____ (Microsoft Corporation) C:\windows\system32\racpldlg.dll
2019-07-20 12:01 - 2018-02-10 12:36 - 000040960 _____ (Microsoft Corporation) C:\windows\SysWOW64\sdchange.exe
2019-07-20 12:01 - 2018-02-10 12:26 - 000051712 _____ (Microsoft Corporation) C:\windows\system32\sdchange.exe
2019-07-20 12:01 - 2018-02-10 12:25 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wmiacpi.sys
2019-07-20 12:01 - 2018-01-12 11:40 - 000407040 _____ (Microsoft Corporation) C:\windows\system32\scesrv.dll
2019-07-20 12:01 - 2018-01-12 11:27 - 004834816 _____ (Microsoft Corporation) C:\windows\system32\xpsrchvw.exe
2019-07-20 12:01 - 2018-01-12 11:26 - 000308224 _____ (Microsoft Corporation) C:\windows\SysWOW64\scesrv.dll
2019-07-20 12:01 - 2018-01-12 11:16 - 003405824 _____ (Microsoft Corporation) C:\windows\SysWOW64\xpsrchvw.exe
2019-07-20 12:00 - 2019-06-28 00:24 - 000887808 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000448512 _____ (Microsoft Corporation) C:\windows\system32\wlansec.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000414208 _____ (Microsoft Corporation) C:\windows\system32\wlanmsm.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000118784 _____ (Microsoft Corporation) C:\windows\system32\wlanhlp.dll
2019-07-20 12:00 - 2019-06-28 00:24 - 000113664 _____ (Microsoft Corporation) C:\windows\system32\wlanapi.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000428032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanmsm.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000392704 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlansec.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000083968 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanhlp.dll
2019-07-20 12:00 - 2019-06-28 00:23 - 000080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanapi.dll
2019-07-20 12:00 - 2019-06-20 22:09 - 000806400 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2019-07-20 12:00 - 2019-06-20 22:05 - 000628224 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2019-07-20 12:00 - 2019-06-20 20:41 - 001251840 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2019-07-20 12:00 - 2019-06-18 01:41 - 001649664 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2019-07-20 12:00 - 2019-06-17 22:38 - 000047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2019-07-20 12:00 - 2019-06-12 22:25 - 000160488 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2019-07-20 12:00 - 2019-06-12 22:21 - 000732160 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpchttp.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000046592 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssign32.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2019-07-20 12:00 - 2019-06-12 10:20 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\mferror.dll
2019-07-20 12:00 - 2019-06-12 10:19 - 000690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2019-07-20 12:00 - 2019-06-12 10:19 - 000080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsp.dll
2019-07-20 12:00 - 2019-06-12 10:19 - 000017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2019-07-20 12:00 - 2019-06-12 10:15 - 000631680 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2019-07-20 12:00 - 2019-06-12 10:11 - 000708328 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2019-07-20 12:00 - 2019-06-12 10:08 - 000503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\mssign32.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2019-07-20 12:00 - 2019-06-12 10:07 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\mferror.dll
2019-07-20 12:00 - 2019-06-12 10:06 - 000690688 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2019-07-20 12:00 - 2019-06-12 10:01 - 000663552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\PEAuth.sys
2019-07-20 12:00 - 2019-06-12 09:49 - 000205312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Dism.exe
2019-07-20 12:00 - 2019-06-12 09:49 - 000125952 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2019-07-20 12:00 - 2019-06-12 09:48 - 000025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2019-07-20 12:00 - 2019-06-12 09:48 - 000014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2019-07-20 12:00 - 2019-06-12 09:42 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2019-07-20 12:00 - 2019-06-12 09:37 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\pcawrk.exe
2019-07-20 12:00 - 2019-06-10 21:59 - 001712640 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000801792 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000634368 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000501760 _____ (Microsoft Corporation) C:\windows\system32\centel.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000456192 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000315904 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2019-07-20 12:00 - 2019-06-10 21:59 - 000257024 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2019-07-20 12:00 - 2019-06-09 10:20 - 003229184 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2019-07-20 12:00 - 2019-06-09 10:19 - 000131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2019-07-20 12:00 - 2019-06-09 10:08 - 003730432 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2019-07-20 12:00 - 2019-06-09 10:07 - 000158720 _____ (Microsoft Corporation) C:\windows\system32\aaclient.dll
2019-07-20 12:00 - 2019-06-09 10:04 - 001053184 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2019-07-20 12:00 - 2019-06-09 10:04 - 000036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll
2019-07-20 12:00 - 2019-06-09 09:49 - 001120768 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2019-07-20 12:00 - 2019-06-09 09:49 - 000249344 _____ (Microsoft Corporation) C:\windows\system32\wksprt.exe
2019-07-20 12:00 - 2019-06-07 10:18 - 000026112 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleres.dll
2019-07-20 12:00 - 2019-06-07 10:08 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\oleres.dll
2019-07-20 12:00 - 2019-05-22 21:06 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\mf3216.dll
2019-07-20 12:00 - 2019-05-22 20:58 - 000046080 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf3216.dll
2019-07-20 12:00 - 2019-05-22 19:05 - 001182208 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2019-07-20 12:00 - 2019-05-09 10:17 - 000805376 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdosys.dll
2019-07-20 12:00 - 2019-05-09 10:06 - 001133568 _____ (Microsoft Corporation) C:\windows\system32\cdosys.dll
2019-07-20 12:00 - 2019-04-29 21:07 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2019-07-20 12:00 - 2019-04-29 20:56 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2019-07-20 12:00 - 2019-04-18 21:43 - 000023784 _____ (Microsoft Corporation) C:\windows\system32\streamci.dll
2019-07-20 12:00 - 2019-04-16 08:15 - 000419648 _____ C:\windows\SysWOW64\locale.nls
2019-07-20 12:00 - 2019-04-16 08:15 - 000419648 _____ C:\windows\system32\locale.nls
2019-07-20 12:00 - 2019-04-14 00:40 - 000111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\t2embed.dll
2019-07-20 12:00 - 2019-04-14 00:39 - 000071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2019-07-20 12:00 - 2019-04-14 00:26 - 000151552 _____ (Microsoft Corporation) C:\windows\system32\t2embed.dll
2019-07-20 12:00 - 2019-04-14 00:26 - 000101376 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2019-07-20 12:00 - 2019-04-14 00:26 - 000046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2019-07-20 12:00 - 2019-04-14 00:12 - 000034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2019-07-20 12:00 - 2019-04-09 09:52 - 000036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2019-07-20 12:00 - 2019-04-07 10:17 - 000160256 _____ (Microsoft Corporation) C:\windows\SysWOW64\werui.dll
2019-07-20 12:00 - 2019-04-07 10:03 - 000174080 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2019-07-20 12:00 - 2019-04-07 10:03 - 000086016 _____ (Microsoft Corporation) C:\windows\system32\wercplsupport.dll
2019-07-20 12:00 - 2019-04-07 10:03 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\werdiagcontroller.dll
2019-07-20 12:00 - 2019-04-07 09:49 - 000054272 _____ (Microsoft Corporation) C:\windows\SysWOW64\wermgr.exe
2019-07-20 12:00 - 2019-04-07 09:48 - 000028672 _____ (Microsoft Corporation) C:\windows\SysWOW64\werdiagcontroller.dll
2019-07-20 12:00 - 2019-04-07 09:38 - 000407040 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2019-07-20 12:00 - 2019-04-07 09:35 - 000050688 _____ (Microsoft Corporation) C:\windows\system32\wermgr.exe
2019-07-20 12:00 - 2019-04-07 08:05 - 000634312 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2019-07-20 12:00 - 2019-03-11 16:41 - 001032192 _____ (Microsoft Corporation) C:\windows\system32\rdpcore.dll
2019-07-20 12:00 - 2019-03-11 16:41 - 000129536 _____ (Microsoft Corporation) C:\windows\system32\oleprn.dll
2019-07-20 12:00 - 2019-03-11 16:41 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2019-07-20 12:00 - 2019-03-11 16:41 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2019-07-20 12:00 - 2019-03-11 16:33 - 000827904 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpcore.dll
2019-07-20 12:00 - 2019-03-11 16:33 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2019-07-20 12:00 - 2019-03-11 16:33 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2019-07-20 12:00 - 2019-02-15 11:09 - 000355328 _____ (Microsoft Corporation) C:\windows\system32\Faultrep.dll
2019-07-20 12:00 - 2019-02-15 10:58 - 000320512 _____ (Microsoft Corporation) C:\windows\SysWOW64\Faultrep.dll
2019-07-20 12:00 - 2019-02-15 10:40 - 000415744 _____ (Microsoft Corporation) C:\windows\system32\WerFault.exe
2019-07-20 12:00 - 2019-02-15 10:40 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\WerFaultSecure.exe
2019-07-20 12:00 - 2019-02-15 10:38 - 000360960 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFault.exe
2019-07-20 12:00 - 2019-02-15 10:38 - 000028672 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFaultSecure.exe
2019-07-20 12:00 - 2019-02-07 11:06 - 000027648 _____ (Microsoft Corporation) C:\windows\system32\brdgcfg.dll
2019-07-20 12:00 - 2019-02-07 11:06 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\bridgeres.dll
2019-07-20 12:00 - 2019-02-07 10:46 - 000020992 _____ (Microsoft Corporation) C:\windows\system32\bridgeunattend.exe
2019-07-20 12:00 - 2018-12-07 22:08 - 000095744 _____ (Microsoft Corporation) C:\windows\system32\rascfg.dll
2019-07-20 12:00 - 2018-12-07 22:08 - 000076288 _____ (Microsoft Corporation) C:\windows\system32\rasdiag.dll
2019-07-20 12:00 - 2018-12-07 22:08 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\ndptsp.tsp
2019-07-20 12:00 - 2018-12-07 22:08 - 000047104 _____ (Microsoft Corporation) C:\windows\system32\kmddsp.tsp
2019-07-20 12:00 - 2018-12-07 22:08 - 000041472 _____ (Microsoft Corporation) C:\windows\system32\rasmxs.dll
2019-07-20 12:00 - 2018-12-07 22:08 - 000029696 _____ (Microsoft Corporation) C:\windows\system32\rasser.dll
2019-07-20 12:00 - 2018-12-07 21:56 - 000050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\ndptsp.tsp
2019-07-20 12:00 - 2018-12-07 21:41 - 000038912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kmddsp.tsp
2019-07-20 12:00 - 2018-12-04 11:07 - 000194048 _____ (Microsoft Corporation) C:\windows\system32\itircl.dll
2019-07-20 12:00 - 2018-11-13 14:41 - 000459632 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2019-07-20 12:00 - 2018-10-26 22:42 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\wshcon.dll
2019-07-20 12:00 - 2018-10-26 22:11 - 000168960 _____ (Microsoft Corporation) C:\windows\system32\wscript.exe
2019-07-20 12:00 - 2018-10-26 22:11 - 000156160 _____ (Microsoft Corporation) C:\windows\system32\cscript.exe
2019-07-20 12:00 - 2018-10-26 22:04 - 000141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscript.exe
2019-07-20 12:00 - 2018-08-29 20:47 - 001230848 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2019-07-20 12:00 - 2018-08-29 20:10 - 001424896 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2019-07-20 12:00 - 2018-08-12 15:28 - 000018944 _____ (Microsoft Corporation) C:\windows\system32\netevent.dll
2019-07-20 12:00 - 2018-08-12 15:14 - 000018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\netevent.dll
2019-07-20 12:00 - 2018-08-03 10:55 - 000109568 _____ (Microsoft Corporation) C:\windows\system32\hlink.dll
2019-07-20 12:00 - 2018-06-08 10:44 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\dnscacheugc.exe
2019-07-20 12:00 - 2018-05-02 10:32 - 000344064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2019-07-20 12:00 - 2018-05-02 10:32 - 000325632 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2019-07-20 12:00 - 2018-05-02 10:32 - 000099840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2019-07-20 12:00 - 2018-05-02 10:32 - 000007808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2019-07-20 12:00 - 2018-04-18 11:03 - 000701952 _____ (Microsoft Corporation) C:\windows\system32\hhctrl.ocx
2019-07-20 12:00 - 2018-04-18 11:03 - 000053248 _____ (Microsoft Corporation) C:\windows\system32\hhsetup.dll
2019-07-20 12:00 - 2018-04-18 10:41 - 000016896 _____ (Microsoft Corporation) C:\windows\hh.exe
2019-07-20 12:00 - 2018-02-10 13:11 - 000133120 _____ (Microsoft Corporation) C:\windows\system32\msrahc.dll
2019-07-20 12:00 - 2018-02-10 12:36 - 000108032 _____ (Microsoft Corporation) C:\windows\SysWOW64\msra.exe
2019-07-20 12:00 - 2018-02-10 12:26 - 000653312 _____ (Microsoft Corporation) C:\windows\system32\msra.exe
2019-07-20 12:00 - 2017-12-05 12:36 - 000092160 _____ (Microsoft Corporation) C:\windows\system32\TabSvc.dll
2019-07-20 12:00 - 2017-12-05 11:04 - 000404992 _____ (Microsoft Corporation) C:\windows\system32\wisptis.exe
2019-07-10 14:34 - 2019-07-17 17:51 - 000000000 ____D C:\Users\Tami\Desktop\Patio curtains
2019-07-10 12:25 - 2019-07-10 12:28 - 000000000 ____D C:\Users\Tami\Desktop\Irrigation setup
 
==================== One month (modified) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-08-03 21:59 - 2018-01-10 20:27 - 000000000 ____D C:\FRST
2019-08-03 21:57 - 2011-12-15 00:23 - 000000000 ____D C:\Program Files (x86)\WildTangent
2019-08-03 21:57 - 2011-12-15 00:05 - 000000000 ____D C:\ProgramData\Dell
2019-08-03 21:57 - 2011-12-15 00:05 - 000000000 ____D C:\Program Files\Dell
2019-08-03 21:53 - 2009-07-13 23:45 - 000020928 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-08-03 21:53 - 2009-07-13 23:45 - 000020928 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-08-03 21:52 - 2013-09-27 10:18 - 000000000 ____D C:\AdwCleaner
2019-08-03 21:49 - 2009-07-14 00:13 - 000797868 _____ C:\windows\system32\PerfStringBackup.INI
2019-08-03 21:49 - 2009-07-13 22:20 - 000000000 ____D C:\windows\inf
2019-08-03 21:46 - 2011-12-31 17:46 - 000000000 ____D C:\Users\Tami\AppData\Local\SoftThinks
2019-08-03 21:44 - 2009-07-14 00:08 - 000000006 ____H C:\windows\Tasks\SA.DAT
2019-07-31 19:30 - 2012-02-04 10:30 - 000000000 ____D C:\Users\Tami\AppData\Roaming\SoftGrid Client
2019-07-31 19:07 - 2013-03-21 15:46 - 000002226 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-07-31 19:06 - 2013-11-07 11:50 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-07-30 12:05 - 2011-11-16 14:25 - 000797868 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2019-07-30 11:58 - 2011-12-15 00:17 - 000000000 ____D C:\ProgramData\Sonic
2019-07-29 21:06 - 2018-01-10 20:29 - 000044203 _____ C:\Users\Tami\Downloads\Addition.txt
2019-07-29 21:06 - 2018-01-10 20:28 - 000120734 _____ C:\Users\Tami\Downloads\FRST.txt
2019-07-29 20:56 - 2014-01-09 14:30 - 000000000 ____D C:\windows\Minidump
2019-07-29 19:12 - 2018-01-12 13:36 - 000000000 ____D C:\ProgramData\Avg
2019-07-29 19:12 - 2015-03-25 09:49 - 000000000 ____D C:\Users\Tami\AppData\Local\Avg
2019-07-29 19:12 - 2012-02-03 20:29 - 000000000 ____D C:\Program Files (x86)\AVG
2019-07-29 18:06 - 2019-06-17 09:33 - 000000000 ____D C:\Users\Tami\Desktop\Boston
2019-07-29 18:04 - 2011-12-31 17:46 - 000000000 ____D C:\Users\Tami
2019-07-29 17:35 - 2013-12-12 19:35 - 000000000 ____D C:\Users\TEMP.Tami-PC
2019-07-29 17:35 - 2009-07-13 22:20 - 000000000 ____D C:\windows\rescache
2019-07-29 17:35 - 2009-07-13 22:20 - 000000000 ____D C:\windows\registration
2019-07-22 17:18 - 2009-07-13 22:20 - 000000000 ____D C:\windows\AppCompat
2019-07-20 21:09 - 2014-02-08 12:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2019-07-20 21:09 - 2014-02-08 12:31 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2019-07-20 21:09 - 2011-12-15 00:27 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2019-07-20 21:09 - 2009-07-13 22:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\SysWOW64\ras
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\SysWOW64\Dism
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\system32\ras
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\system32\Dism
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\servicing
2019-07-20 21:08 - 2009-07-13 22:20 - 000000000 ____D C:\windows\PolicyDefinitions
2019-07-20 19:18 - 2019-01-10 13:30 - 000000000 _____ C:\windows\system32\last.dump
2019-07-20 15:03 - 2016-12-31 16:57 - 000000000 ____D C:\ProgramData\boost_interprocess
2019-07-20 14:26 - 2009-07-13 23:45 - 004882496 _____ C:\windows\system32\FNTCACHE.DAT
2019-07-20 12:08 - 2018-01-12 15:25 - 000000000 ____D C:\windows\system32\MRT
2019-07-20 12:03 - 2018-01-12 15:24 - 136618864 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2019-07-17 16:53 - 2019-03-30 19:34 - 000000000 ____D C:\Users\Tami\Desktop\Side of house
2019-07-16 11:33 - 2009-07-13 22:20 - 000000000 ____D C:\windows\system32\NDF
2019-07-10 09:59 - 2018-09-10 11:39 - 000000000 ____D C:\windows\System32\Tasks\AVAST Software
2019-07-10 09:00 - 2018-03-02 13:47 - 000000000 ____D C:\Users\Tami\Desktop\Recipes
 
==================== FLock ================
 
2011-12-15 03:12 C:\System Recovery
 
==================== SigCheck ===============================
 
(There is no automatic fix for files that do not pass verification.)
 
 
LastRegBack: 2019-07-29 13:02
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-07-2019 01
Ran by [removed] (03-08-2019 22:01:45)
Running from C:\Users\[removed]\Desktop\Fix
Windows 7 Home Premium Service Pack 1 (X64) (2011-12-31 22:46:11)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3101223633-2765994983-3815756064-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3101223633-2765994983-3815756064-1003 - Limited - Enabled)
Guest (S-1-5-21-3101223633-2765994983-3815756064-501 - Limited - Disabled)
Tami (S-1-5-21-3101223633-2765994983-3815756064-1000 - Administrator - Enabled) => C:\Users\Tami
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: AVG Antivirus (Enabled - Up to date) {4FC75CA5-1654-5411-7CFB-1893D506BCF4}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Accidental Damage Services Agreement (HKLM-x32\…\{EF85FEF4-EB92-4075-A6D2-5F519BB30A2C}) (Version: 2.0.0 - Dell Inc.)
Adobe Acrobat Reader DC (HKLM-x32\…\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 19.010.20099 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\…\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\…\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.0.6 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX 64-bit (HKLM\…\Adobe Flash Player ActiveX) (Version: 11.0.1.152 - Adobe Systems Incorporated)
Adobe Photoshop CS5.1 (HKLM-x32\…\{9158FF30-78D7-40EF-B83E-451AC5334640}) (Version: 12.1 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM-x32\…\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
AiO_Scan (HKLM-x32\…\{092eeeee-9fdd-4895-a568-0818c96beb6c}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
AIOMinimal (HKLM-x32\…\{ec7d7a6a-31cb-4810-826f-74171bef44f1}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
AiOSoftware (HKLM-x32\…\{c330461f-c4a9-4fc7-af5d-c158e0b56aa7}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Amazon MP3 Downloader 1.0.18 (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Amazon MP3 Downloader) (Version: 1.0.18 - Amazon Services LLC)
ANT Drivers Installer x64 (HKLM\…\{CAED120A-1F05-4B8F-B76E-A3EA5C328AB8}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (32-bit) (HKLM-x32\…\{C56BA005-F02C-461B-ACA5-A0CE3E32578F}) (Version: 6.5 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\…\{C8087B7C-8496-45BE-92FB-91D31EB73969}) (Version: 6.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\…\{64695C4A-C68F-46B5-A734-50EBF124A68E}) (Version: 11.3.3.4 - Apple Inc.)
Apple Software Update (HKLM-x32\…\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
AVG AntiVirus FREE (HKLM-x32\…\AVG Antivirus) (Version: 19.6.3098 - AVG Technologies)
Banctec Service Agreement (HKLM-x32\…\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}) (Version: 2.0.0 - Dell Inc.)
Bonjour (HKLM\…\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Canon Auto Update Service (HKLM-x32\…\Auto Update Service) (Version: 1.1.0.13 - Canon Inc.)
Canon DIGITAL CAMERA Solution Disk Software Guide (HKLM-x32\…\Software Guide) (Version: 1.6.0.1 - Canon Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\…\MyCamera Download Plugin) (Version: 3.1.1.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\…\CANON iMAGE GATEWAY Task) (Version: 1.9.0.9 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\…\Canon MOV Decoder) (Version: 1.9.0.8 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\…\Canon MOV Encoder) (Version: 1.8.0.1 - Canon Inc.)
Canon Personal Printing Guide (HKLM-x32\…\Personal Printing Guide) (Version: 1.1.1.3 - Canon Inc.)
Canon PowerShot SX130 IS Camera User Guide (HKLM-x32\…\CameraUserGuide-PSSX130IS) (Version: 1.0.0.1 - Canon Inc.)
Canon PowerShot SX40 HS Camera User Guide (HKLM-x32\…\CameraUserGuide-PSSX40HS) (Version: 1.0.0.1 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (HKLM-x32\…\CameraWindowDC8) (Version: 8.6.0.11 - Canon Inc.)
Canon Utilities CameraWindow Launcher (HKLM-x32\…\CameraWindowLauncher) (Version: 7.6.0.1 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\…\MovieUploaderForYouTube) (Version: 1.3.0.3 - Canon Inc.)
Canon Utilities MyCamera (HKLM-x32\…\MyCamera) (Version: 7.5.0.1 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\…\ZoomBrowser EX) (Version: 6.8.0.10 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\…\ZoomBrowser EX Memory Card Utility) (Version: 1.6.0.15 - Canon Inc.)
Citrix online plug-in - web (HKLM-x32\…\CitrixOnlinePluginPackWeb) (Version: 12.1.44.1 - Citrix Systems, Inc.)
Complete Care Business Service Agreement (HKLM-x32\…\{0ECFCB07-9BFE-4970-ACA1-D568D982760B}) (Version: 2.0.0 - Dell Inc.)
Consumer In-Home Service Agreement (HKLM-x32\…\{F47C37A4-7189-430A-B81D-739FF8A7A554}) (Version: 2.0.0 - Dell Inc.)
Copy (HKLM-x32\…\{D1D8C9C4-89BE-4f37-9EC4-B80E3C239C41}) (Version: 5.31.0.150 - Hewlett-Packard) Hidden
CreativeProjects (HKLM-x32\…\{A363B66C-1547-47bf-90F0-3834E70A841A}) (Version: 5.31.0.150 - Hewlett-Packard) Hidden
D3DX10 (HKLM-x32\…\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Dell DataSafe Local Backup - Support Software (HKLM-x32\…\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version:  - Dell)
Dell DataSafe Local Backup (HKLM-x32\…\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.47 - Dell)
Dell DataSafe Online (HKLM-x32\…\{7EC66A95-AC2D-4127-940B-0445A526AB2F}) (Version: 2.1.19634 - Dell)
Dell Edoc Viewer (HKLM\…\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Getting Started Guide (HKLM-x32\…\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
Dell Home Systems Service Agreement (HKLM-x32\…\{AB2FDE4F-6BED-4E9E-B676-3DCCEBB1FBFE}) (Version: 2.0.0 - Dell Inc.)
Dell Resource CD (HKLM-x32\…\{42929F0F-CE14-47AF-9FC7-FF297A603021}) (Version: 1.00.0000 - Dell Inc.)
Dell Stage (HKLM-x32\…\{FE182796-F6BA-486A-8590-89B7E8D1D60F}) (Version: 1.7.209.0 - Fingertapps)
Dell System Detect (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\9204f5692a8faf3b) (Version: 3.3.2.1 - Dell)
Dell Touchpad (HKLM\…\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1209.101.204 - ALPS ELECTRIC CO., LTD.)
Dell VideoStage  (HKLM-x32\…\{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}) (Version: 1.2.0.1712 - CyberLink Corp.) Hidden
Dell VideoStage  (HKLM-x32\…\InstallShield_{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}) (Version: 1.2.0.1712 - CyberLink Corp.)
Director (HKLM-x32\…\{829698DE-9EAC-475E-9A05-B7BA807CA1EF}) (Version: 5.31.0.154 - Hewlett-Packard) Hidden
DirectX 9 Runtime (HKLM-x32\…\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden
DocProc (HKLM-x32\…\{2F1FD032-67D1-4569-923F-47EAF132BF0F}) (Version: 3.1.0.0 - Hewlett-Packard) Hidden
Fax (HKLM-x32\…\{bb6cac2a-1fa0-471a-bc3c-ade699c39f3c}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Google Chrome (HKLM-x32\…\Google Chrome) (Version: 76.0.3809.87 - Google LLC)
Google Update Helper (HKLM-x32\…\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
HP ENVY 5000 series Basic Device Software (HKLM\…\{959CC4D2-B16C-4DFC-965A-B9FAFEAA4139}) (Version: 44.3.2218.18109 - HP Inc.)
HP Photo & Imaging 3.1 (HKLM-x32\…\HP Photo & Imaging) (Version: 3.1 - HP)
HP Photo Creations (HKLM-x32\…\HP Photo Creations) (Version: 1.0.0.5192 - HP Photo Creations)
HP Photosmart 5510 series Basic Device Software (HKLM\…\{424E8E17-A7B7-45B5-8C79-D58F04D9D920}) (Version: 25.0.621.0 - Hewlett-Packard Co.)
HP Photosmart 5510 series Help (HKLM-x32\…\{E02964EA-0E1B-4620-A26E-CBAB0341B1BB}) (Version: 140.0.2.2 - Hewlett Packard)
HP PSC & OfficeJet 3.0 (HKLM-x32\…\{F38FA38A-7E5A-4209-88ED-4DE21CD20EEF}) (Version: 3.0 - HP)
hpmdtab (HKLM-x32\…\{9F4EEA0C-7174-4BD3-89AF-7AB2F9F6AEDD}) (Version: 2.0.470.1598 - Hewlett-Packard) Hidden
HPSystemDiagnostics (HKLM-x32\…\{3CF78481-FB7B-4B51-99A2-D5E0CD0B3AAF}) (Version: 1.5.0.0 - Your Company Name) Hidden
IDT Audio (HKLM-x32\…\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6324.0 - IDT)
InstantShare (HKLM-x32\…\{745A92AF-53B4-41A7-91C3-9B026B1D5897}) (Version: 3.1.0.13 - Hewlett-Packard) Hidden
Intel PROSet Wireless (HKLM-x32\…\ProInst) (Version:  - ) Hidden
Intel(R) Control Center (HKLM-x32\…\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\…\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\…\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2361 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\…\{7CE8BE79-ABC3-4B2C-9543-28ED2B0A9EA8}) (Version: 1.2.0.0587 - Intel Corporation)
Intel(R) PROSet/Wireless WiFi Software (HKLM\…\{295AEB79-B53A-4F1B-860F-7800BB7E3681}) (Version: 14.2.1000 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\…\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation)
Intel(R) Turbo Boost Technology Monitor 2.0 (HKLM\…\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel)
Intel(R) WiDi (HKLM-x32\…\{781A93CD-1608-427D-B7F0-D05C07795B25}) (Version: 2.1.41.0 - Intel Corporation)
iTunes (HKLM\…\{BE065D5C-5EB5-4F39-A112-32897C297935}) (Version: 12.7.5.9 - Apple Inc.)
Java(TM) 6 Update 24 (64-bit) (HKLM\…\{26A24AE4-039D-4CA4-87B4-2F86416024F0}) (Version: 6.0.240 - Oracle)
Java(TM) 6 Update 27 (64-bit) (HKLM\…\{26A24AE4-039D-4CA4-87B4-2F86416027FF}) (Version: 6.0.270 - Oracle)
Java(TM) 6 Update 27 (HKLM-x32\…\{26A24AE4-039D-4CA4-87B4-2F83216027FF}) (Version: 6.0.270 - Oracle)
Junk Mail filter update (HKLM-x32\…\{400C31E4-796F-4E86-8FDC-C3C4FACC6847}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Malwarebytes version 3.8.3.2965 (HKLM\…\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
Memories Disc Creator 2.0 (HKLM-x32\…\{2E132061-C78A-48D4-A899-1D13B9D189FA}) (Version: 2.0.470.1598 - Memories Disc Creator 2.0)
Microsoft .NET Framework 1.1 (HKLM-x32\…\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.6 (HKLM\…\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\…\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\…\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\…\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\…\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\…\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\…\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\…\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\…\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\…\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\…\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\…\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (HKLM-x32\…\{5BABDA39-61CF-41EE-992D-4054B6649A9B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\…\{ED6C77F9-4D7E-447C-9EC0-9A212D075535}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\…\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
Overland (HKLM-x32\…\{1CAD83B0-87A3-4206-BF70-644546808731}) (Version: 1.76.0 - Hewlett-Packard) Hidden
Paprika Recipe Manager (HKLM-x32\…\{B1465B7D-CC75-4950-836B-8697055E9D7F}) (Version: 1.2.2 - Hindsight Labs LLC)
PDF Settings CS5 (HKLM-x32\…\{A78FE97A-C0C8-49CE-89D0-EDD524A17392}) (Version: 10.0 - Adobe Systems Incorporated) Hidden
PhotoGallery (HKLM-x32\…\{C38BC5B7-62D3-4880-82DD-A4803FD81921}) (Version: 5.31.0.158 - Hewlett-Packard) Hidden
PhotoShowExpress (HKLM-x32\…\{3250260C-7A95-4632-893B-89657EB5545B}) (Version: 2.0.063 - Sonic Solutions) Hidden
Picasa 3 (HKLM-x32\…\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayReady PC Runtime x86 (HKLM-x32\…\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Premium Service Agreement (HKLM-x32\…\{C33AA6D6-F5EC-48F3-AFDC-8141345D473A}) (Version: 2.0.0 - Dell Inc.)
PrintScreen (HKLM-x32\…\{CFD1B282-555D-494d-8231-4175C2AF08C2}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
QFolder (HKLM-x32\…\{8777AC6D-89F9-4793-8266-DE406F343E89}) (Version: 1.00.0000 - Hewlett-Packard) Hidden
QualxServ Service Agreement (HKLM-x32\…\{903679E8-44C8-4C07-9600-05C92654FC50}) (Version: 2.0.0 - Dell Inc.)
QuickProjects (HKLM-x32\…\{5ADF6293-D60F-4425-AFA7-CEB820DB872B}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Readme (HKLM-x32\…\{54e854d5-d5d4-452d-9c75-b39f5625b5fb}) (Version: 5.31.1.27 - Hewlett-Packard) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\…\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.31.1025.2010 - Realtek)
Realtek USB 2.0 Card Reader (HKLM-x32\…\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30126 - Realtek Semiconductor Corp.)
Roxio Creator Starter (HKLM-x32\…\{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}) (Version: 12.1.77.0 - Roxio)
Roxio File Backup (HKLM\…\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.2 - Roxio) Hidden
Roxio PhotoShow (HKLM-x32\…\Roxio PhotoShow) (Version: 6.0 - Sonic Solutions)
Scan (HKLM-x32\…\{939227BD-19D8-4684-8A04-31AC9F6A564C}) (Version: 3.1.0.0 - Hewlett-Packard) Hidden
SkinsHP1 (HKLM-x32\…\{4FB6F304-A91D-4919-98E5-D96E074EA9E5}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
SkinsHP2 (HKLM-x32\…\{D545BB81-DEB0-49f7-BE26-197BC31AAF57}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Sonic CinePlayer Decoder Pack (HKLM-x32\…\{9A00EC4E-27E1-42C4-98DD-662F32AC8870}) (Version: 4.3.0 - Sonic Solutions) Hidden
TI USB 3.0 Host Controller Driver (HKLM-x32\…\InstallShield_{B1EB7FFF-6E44-43D8-869D-B78E44CD3E0F}) (Version: 1.12.14.0 - Texas Instruments Inc.)
TI USB3 Host Driver (HKLM-x32\…\{B1EB7FFF-6E44-43D8-869D-B78E44CD3E0F}) (Version: 1.12.14.0 - Texas Instruments Inc.) Hidden
TrayApp (HKLM-x32\…\{CE4F8FFB-4063-4247-9F14-ECE61AFEFA25}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
TrustedID (HKLM-x32\…\{C16A92EF-017B-4839-9C75-FBADB5A1FA27}) (Version: 5.0 - TrustedID)
TrustedID IDMonitor Identity Protection (HKLM-x32\…\{0E74474A-1CDF-4249-A507-CE8C1DCEC8BC}) (Version: 1.1.0 - TrustedID Inc)
Tweaking.com - Windows Repair (HKLM-x32\…\Tweaking.com - Windows Repair) (Version: 4.5.3 - Tweaking.com)
Unity Web Player (HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\UnityWebPlayer) (Version: 4.5.3f3 - Unity Technologies ApS)
Unload (HKLM-x32\…\{E4ABB302-9D82-4D18-83D5-AD1DFE786AA8}) (Version: 3.1.0 - Hewlett-Packard) Hidden
Visual Studio 2008 x64 Redistributables (HKLM-x32\…\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2010 x64 Redistributables (HKLM\…\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\…\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\…\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
WebReg (HKLM-x32\…\{FBBF532A-47AC-457d-AC06-0D3163D8911E}) (Version: 5.31.0.147 - Hewlett-Packard) Hidden
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\…\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\…\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Live Essentials (HKLM-x32\…\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [BTMSentToExt] -> {0A7D34C2-E9DA-48A1-9E34-0CDFC2DE3B44} => C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-05-19] (Intel Corporation) [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2011-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-07-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
==================== Loaded Modules (Whitelisted) ==============
 
2012-02-01 12:44 - 2012-02-01 12:44 - 002278400 _____ () [File not signed] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtCore4.dll
2012-02-01 12:44 - 2012-02-01 12:44 - 008151040 _____ () [File not signed] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\QtGui4.dll
2011-12-15 00:00 - 2010-11-06 00:50 - 000058880 _____ () [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2011-09-15 18:46 - 2011-09-15 18:46 - 001501696 _____ () [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2019-07-20 15:34 - 2019-07-20 15:34 - 000169984 _____ () [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\6ac716341e20c0459e03ef1c3151953f\IsdiInterop.ni.dll
2011-12-15 00:00 - 2010-10-05 21:43 - 001892352 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\xerces-c_2_7.dll
2003-06-26 18:50 - 2003-06-26 18:50 - 000212992 _____ (Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe
2019-07-20 15:34 - 2019-07-20 15:34 - 000014336 _____ (Intel Corp.) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\e291b9fca9075d4bb3bb14576935a70c\IAStorCommon.ni.dll
2011-05-19 02:16 - 2011-05-19 02:16 - 010365952 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll
2011-05-19 02:16 - 2011-05-19 02:16 - 000839744 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
2011-05-19 02:16 - 2011-05-19 02:16 - 000921664 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
2011-05-19 02:16 - 2011-05-19 02:16 - 001335360 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
2011-05-19 02:16 - 2011-05-19 02:16 - 000995392 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
2011-12-15 00:00 - 2010-10-05 21:38 - 000069632 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\StatusStrings.dll
2011-12-15 00:00 - 2010-11-06 00:50 - 000164864 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorUIHelper.dll
2011-12-15 00:00 - 2010-11-06 00:50 - 001109504 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IntelVisualDesign.dll
2011-12-15 00:00 - 2010-11-06 00:46 - 000275456 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ISDI.dll
2010-08-16 13:01 - 2010-08-16 13:01 - 000333312 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\BluetoothHS\BTHSSupplicant.dll
2011-09-15 10:46 - 2011-09-15 10:46 - 000117248 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\BluetoothHS\UsR3IoPort.dll
2011-09-15 19:03 - 2011-09-15 19:03 - 000333312 _____ (Intel Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\P2PSupplicant.dll
2019-07-20 15:34 - 2019-07-20 15:34 - 000219136 _____ (Intel Corporation) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\6e8df879720824be12dde4a211a34107\IAStorDataMgr.ni.dll
2019-07-20 15:34 - 2019-07-20 15:34 - 000019968 _____ (Intel Corporation) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvc\1dc3ee64449cdc565694cd7377e8280a\IAStorDataMgrSvc.ni.exe
2019-07-20 15:34 - 2019-07-20 15:34 - 000475648 _____ (Intel Corporation) [File not signed] C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\db2460573643f47bddb4c2cc094569ca\IAStorUtil.ni.dll
2011-09-15 19:33 - 2011-09-15 19:33 - 001746432 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\FrameworkPlugins\PanTray.dll
2011-09-15 19:25 - 2011-09-15 19:25 - 001077248 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\PsRegApi.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 001047552 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Common Files\Intel\WirelessCommon\TraceApi.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 003719168 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\AmtWsMan.dll
2011-09-15 19:24 - 2011-09-15 19:24 - 000846336 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\DbEngine.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 000841728 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\IntStngs.dll
2011-09-15 19:26 - 2011-09-15 19:26 - 000336896 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\IWMSPROV.DLL
2011-09-15 19:47 - 2011-09-15 19:47 - 000094720 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\LangResources\ENU\PanTrENU.dll
2011-09-15 19:30 - 2011-09-15 19:30 - 001278976 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\MurocApi.dll
2011-09-15 19:31 - 2011-09-15 19:31 - 000570368 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\PanApi.dll
2011-09-15 19:29 - 2011-09-15 19:29 - 002072576 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\PfMgrApi.dll
2011-09-15 19:24 - 2011-09-15 19:24 - 000177152 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\S24MUDLL.dll
2011-09-15 19:24 - 2011-09-15 19:24 - 000234496 _____ (Intel(R) Corporation) [File not signed] C:\Program Files\Intel\WiFi\bin\WiMAXCoEx.dll
2011-09-15 19:36 - 2011-09-15 19:36 - 002354688 _____ (Intel(R) Corporation) [File not signed] C:\windows\System32\IWMSSvc.dll
2003-06-23 11:44 - 2003-06-23 11:44 - 000344064 ____R (Microsoft Corporation) [File not signed] C:\Program Files (x86)\HP\hpcoretech\HPVCR70.dll
2013-01-08 11:42 - 2013-01-08 11:42 - 001101824 _____ (Microsoft Corporation) [File not signed] C:\windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80.DLL
2013-01-08 11:42 - 2013-01-08 11:42 - 000057344 _____ (Microsoft Corporation) [File not signed] C:\windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3\MFC80ENU.DLL
2018-01-15 20:05 - 2018-01-15 20:05 - 000225280 _____ (Microsoft Corporation) [File not signed] C:\windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcm90.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000781536 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
2011-12-15 00:32 - 2010-08-11 19:19 - 001121504 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000113888 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\PSTVdsDisk.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000056544 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STCoreXml.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000232672 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000126176 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000119008 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000109792 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000072928 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000077024 ____N (SoftThinks -> ) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000330976 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STSCheduler.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000060640 ____N (SoftThinks -> SOFTTHINKS) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\CSTError.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000310496 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STDisks.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000122080 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STString.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000081120 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STStringArray.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000113888 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STSystems.dll
2011-12-15 00:32 - 2010-08-11 19:19 - 000122080 ____N (SoftThinks -> SoftThinks) [File not signed] C:\Program Files (x86)\Dell DataSafe Local Backup\STXml.dll
2012-02-01 12:44 - 2012-02-01 12:44 - 018858496 _____ (Unlimited Realities) [File not signed] C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\libumajin.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\dell.com -> dell.com
IE restricted site: HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\doubleclick.net -> hxxp://googleads.g.doubleclick.net
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 21:34 - 2019-05-10 10:01 - 000000824 _____ C:\windows\system32\drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;c:\Program Files (x86)\Common Files\Roxio Shared\OEM\DLLShared\;c:\Program Files (x86)\Common Files\Roxio Shared\OEM\DLLShared\;c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\DLLShared\;c:\Program Files (x86)\Roxio\OEM\AudioCore\;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Tami\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
If an entry is included in the fixlist, it will be removed.
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{72709570-0CEB-4421-B524-EA225B02CBC0}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation - Mobile Wireless Group -> )
FirewallRules: [{8A4FFE1A-415E-42BA-8A0E-C6582C544054}] => (Allow) C:\Program Files (x86)\Dell\VideoStage\VideoStage.exe (CyberLink -> CyberLink Corp.)
FirewallRules: [{2AE694EB-A0C1-4D67-AF8B-8E6586964D6A}] => (Allow) C:\Program Files (x86)\Intel Corporation\Intel WiDi\WiDiApp.exe (Intel Corporation -> Intel Corporation)
FirewallRules: [{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{391734FF-1051-4B3B-A74E-5E689B4ECF72}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7FC77117-4B0A-4DE7-AD2E-221CE18BD0BC}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{FDB309EA-4E8D-4FA3-8B39-86C8F68EA2F8}] => (Allow) C:\Users\Tami\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5451BF2A-ECA0-4031-9EEF-AD2389232985}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BF53FB2A-DED4-4400-83FC-64EABB1F5688}] => (Allow) LPort=2869
FirewallRules: [{70F6A9A9-6027-4B87-9852-814FFB32E9AE}] => (Allow) LPort=1900
FirewallRules: [{3D7F9820-0347-4FB4-AA44-F91FD0457A39}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}] => (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File
FirewallRules: [{2D785FF4-5E02-45A7-AABE-25DB10B2AE9A}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{76608A9A-CB0E-45E7-8B08-E30140EABF6A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D9169C53-D9FC-4493-A2B4-A63CEADB5ABB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EB3EC78A-3EAD-4FE6-990B-AAEA5F1FDB2D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8C879029-4230-485D-80C6-4692C8B15CA1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2535B1AA-E938-44E8-BBEA-B1BC8AEB656D}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{98B940D4-0D20-4530-AABE-11CD9EFF026F}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS5A2D\HP.EasyStart.exe No File
FirewallRules: [{89B8A42D-5DB0-4CAD-97FA-F4690516E14E}] => (Allow) C:\Program Files\HP\HP ENVY 5000 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{3DDA7EDD-A484-4567-8738-4E40D52D8CAB}] => (Allow) LPort=5357
FirewallRules: [{7F378E4C-16CE-4C30-865A-31E6A798C532}] => (Allow) C:\Program Files\HP\HP ENVY 5000 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{B82E7603-E4BE-4A3B-B75F-2073047536E3}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe No File
FirewallRules: [{7D4C30B2-24C1-4FBE-847D-4DF80B2E6FE2}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe No File
FirewallRules: [{0C5C3C03-FB18-4E9F-AB7A-D9D5C2FA25D6}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe No File
FirewallRules: [{F98B8967-CE82-4875-B99D-490EED72234E}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe No File
FirewallRules: [{64F8AE0D-6E45-4D4F-A832-FB269401AC13}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
 
==================== Restore Points =========================
 
20-07-2019 15:00:22 Removed MSXML 4.0 SP2 (KB973688)
20-07-2019 15:02:08 Removed Fitbit Connect
20-07-2019 15:03:44 Removed Bonjour
20-07-2019 20:34:27 Restore Operation
21-07-2019 19:00:24 Windows Backup
22-07-2019 19:00:26 Windows Backup
29-07-2019 08:39:57 Windows Backup
29-07-2019 19:11:36 Windows Backup
31-07-2019 19:00:32 Windows Backup
03-08-2019 21:55:36 Windows Backup
03-08-2019 21:55:37 AdwCleaner_BeforeCleaning_03/08/2019_21:55:37
 
==================== Faulty Device Manager Devices =============
 
Name: Integrated Webcam
Description: USB Video Device
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Microsoft
Service: usbvideo
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (08/03/2019 09:48:42 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
(Stream product id=0x0066): Streaming Failed
 
Error: (08/03/2019 09:47:42 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Too many failures while downloading ranges: 2
 
Error: (08/03/2019 09:46:32 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Tami\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 63.0.3235.0,language="*",type="win32",version="63.0.3235.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (08/03/2019 09:56:42 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-3101223633-2765994983-3815756064-1000.bak).  hr = 0x80070539, The security ID structure is invalid.
.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {f42a27be-4c2f-4589-bd4f-8b5d97c3278d}
 
Error: (08/03/2019 09:55:36 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-3101223633-2765994983-3815756064-1000.bak).  hr = 0x80070539, The security ID structure is invalid.
.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {f42a27be-4c2f-4589-bd4f-8b5d97c3278d}
 
Error: (08/01/2019 06:17:17 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
(Stream product id=0x0066): Streaming Failed
 
Error: (08/01/2019 06:16:40 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Tami\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 63.0.3235.0,language="*",type="win32",version="63.0.3235.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (08/01/2019 06:16:31 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
Too many failures while downloading ranges: 2
 
 
System errors:
=============
Error: (08/03/2019 09:47:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dell Digital Delivery Service service failed to start due to the following error: 
The system cannot find the file specified.
 
Error: (08/03/2019 09:45:42 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
AFS
 
Error: (08/03/2019 09:58:33 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
 
Module Path: C:\windows\System32\IWMSSvc.dll
 
Error: (08/03/2019 09:58:33 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
 
Module Path: C:\windows\System32\IWMSSvc.dll
 
Error: (08/03/2019 09:58:33 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
 
Module Path: C:\windows\System32\IWMSSvc.dll
 
Error: (08/03/2019 09:58:22 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
 
Module Path: C:\windows\System32\IWMSSvc.dll
 
Error: (08/03/2019 09:56:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Application Virtualization Client service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (08/03/2019 09:56:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel(R) Management and Security Application User Notification Service service terminated unexpectedly.  It has done this 1 time(s).
 
 
==================== Memory info =========================== 
 
BIOS: Dell Inc. A09 09/30/2011
Motherboard: Dell Inc. 034W60
Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz
Percentage of memory in use: 63%
Total physical RAM: 6050.05 MB
Available physical RAM: 2208.9 MB
Total Virtual: 12098.25 MB
Available Virtual: 8177.13 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:451.01 GB) (Free:297.61 GB) NTFS
 
\\?\Volume{5396aac6-26d8-11e1-a13f-806e6f6e6963}\ (Recovery) (Fixed) (Total:14.65 GB) (Free:5.3 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 7905EDEF)
Partition 1: (Not Active) - (Size=100 MB) - (Type=DE)
Partition 2: (Active) - (Size=14.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=451 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

Hi thoran

 

I'm afraid a family issue has cropped up and I won't be able to reply until Monday.

 

There is no threat to your computer, just some issues that are needed to resolve the slowness so there is no need to concern yourslf until I reply.

 

Apologies for the delay

 

Satchfan

Thanks for your patience.
 

C:\Users\Tami\Desktop\Fix


You need to stop renaming tools otherwise fixes will not work. Please rename the ‘fix’ file to FRST64.

 

================================================

Run Farbar Recovery Scan Tool

Open notepad. Please copy the contents of the code box below and paste it into Notepad.

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [Chromium] => c:\users\tami\appdata\local\chromium\application\chrome.exe [4195328 2017-10-06] (The Chromium Authors) [File not signed]
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {21baa9b2-b7cf-11e1-9847-4c80934c276d} - E:\ToolLauncher-Bootstrap.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {37ee0435-6edd-11e9-bd6a-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {65ee1464-f310-11e2-a1ea-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {9DE19BB1-F752-4480-8DBE-96793D7E9A97} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
S2 DellDigitalDelivery; "C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe" [X]
2019-07-29 21:11 - 2019-07-29 21:11 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (3).exe
2019-07-29 20:56 - 2019-07-29 20:56 - 000266288 _____ C:\windows\Minidump\072919-40513-01.dmp
2019-07-29 20:56 - 2019-07-29 20:56 - 000262144 _____ C:\windows\Minidump\072919-37502-01.dmp
2019-07-29 20:14 - 2019-07-29 20:14 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (2).exe
FirewallRules: [{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}] => (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File
FirewallRules: [{98B940D4-0D20-4530-AABE-11CD9EFF026F}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS5A2D\HP.EasyStart.exe No File
FirewallRules: [{B82E7603-E4BE-4A3B-B75F-2073047536E3}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe No File
FirewallRules: [{7D4C30B2-24C1-4FBE-847D-4DF80B2E6FE2}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe No File
FirewallRules: [{0C5C3C03-FB18-4E9F-AB7A-D9D5C2FA25D6}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe No File
FirewallRules: [{F98B8967-CE82-4875-B99D-490EED72234E}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe No File
C:\Program Files (x86)\Anvsoft
EmptyTemp:

NOTE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

  • save the files as fixlist.txt in the same folder as FRST – NOTE: It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work
  • run FRST64 then click Fix just once and wait
  • it will create a log on your desktop, (Fixlog.txt); please post it to your reply.

================================================

Let’s run an online scan to be sure nothing is left.

Download ESET Online Scanner and save it to your desktop.

  • right-click on esetonlinescanner_enu.exe and select Run as Administrator.
  • when the tool opens, click Get Started.
  • read and accept the license agreement.
  • at the Welcome to ESET Online Scanner window, click Get Started.
  • select whether you would like to send anonymous data to ESET.
  • Note: if you see the "Welcome Back to ESET Online Scanner" screen, click Computer Scan > Full Scan.
  • click on the Full Scan option.
  • select Enable ESET to detect and remove potentially unwanted applications, then click Start scan.
  • ESET will now begin scanning your computer. This may take some time.
  • when the scan is finished and if threats have been detected, select Save scan log. Save it to your desktop as eset.txt. Click on Continue.
  • ESET Online Scanner may ask if you'd like to turn on the Periodic Scan feature: click on Continue.
  • on the next screen, you can leave feedback about the program if you wish. Check the box for Delete application data on closing. If you left feedback, click Submit and continue. If not, Close without feedback.
  • open the scan log on your desktop (eset.txt) and copy and paste its contents into your next reply.

Logs to include with next post:

Fixlog.txt
eset.txt


Thanks

Satchfan

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-08-2019
Ran by [removed] (05-08-2019 18:55:54) Run:2
Running from C:\Users\[removed]\Desktop
[removed]
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\Run: [Chromium] => c:\users\tami\appdata\local\chromium\application\chrome.exe [4195328 2017-10-06] (The Chromium Authors) [File not signed]
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {21baa9b2-b7cf-11e1-9847-4c80934c276d} - E:\ToolLauncher-Bootstrap.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {37ee0435-6edd-11e9-bd6a-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\…\MountPoints2: {65ee1464-f310-11e2-a1ea-4c80934c276d} - E:\VZW_Software_upgrade_assistant.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {9DE19BB1-F752-4480-8DBE-96793D7E9A97} - System32\Tasks\Tweaking.com
- Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com)
S2 DellDigitalDelivery; "C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe" [X]
2019-07-29 21:11 - 2019-07-29 21:11 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (3).exe
2019-07-29 20:56 - 2019-07-29 20:56 - 000266288 _____ C:\windows\Minidump\072919-40513-01.dmp
2019-07-29 20:56 - 2019-07-29 20:56 - 000262144 _____ C:\windows\Minidump\072919-37502-01.dmp
2019-07-29 20:14 - 2019-07-29 20:14 - 005198336 _____ (AVAST Software) C:\Users\Tami\Downloads\aswMBR (2).exe
FirewallRules: [{D822F178-BD08-4B92-9ABC-9243C7AC43BB}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe No File
FirewallRules: [{5837CAAA-2109-430B-AD3D-2B7620F542DE}] => (Allow) C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe No File
FirewallRules:
[{98B940D4-0D20-4530-AABE-11CD9EFF026F}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS5A2D\HP.EasyStart.exe No File
FirewallRules: [{B82E7603-E4BE-4A3B-B75F-2073047536E3}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe No File
FirewallRules: [{7D4C30B2-24C1-4FBE-847D-4DF80B2E6FE2}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS7B54\HPDiagnosticCoreUI.exe No File
FirewallRules: [{0C5C3C03-FB18-4E9F-AB7A-D9D5C2FA25D6}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe No File
FirewallRules: [{F98B8967-CE82-4875-B99D-490EED72234E}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS02CC\HPDiagnosticCoreUI.exe No File
C:\Program Files (x86)\Anvsoft
EmptyTemp:
*****************
 
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
"HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Chromium" => removed successfully
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{21baa9b2-b7cf-11e1-9847-4c80934c276d} => removed successfully
HKLM\Software\Classes\CLSID\{21baa9b2-b7cf-11e1-9847-4c80934c276d} => not found
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{37ee0435-6edd-11e9-bd6a-4c80934c276d} => removed successfully
HKLM\Software\Classes\CLSID\{37ee0435-6edd-11e9-bd6a-4c80934c276d} => not found
HKU\S-1-5-21-3101223633-2765994983-3815756064-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{65ee1464-f310-11e2-a1ea-4c80934c276d} => removed successfully
HKLM\Software\Classes\CLSID\{65ee1464-f310-11e2-a1ea-4c80934c276d} => not found
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9DE19BB1-F752-4480-8DBE-96793D7E9A97}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9DE19BB1-F752-4480-8DBE-96793D7E9A97}" => removed successfully
"C:\windows\System32\Tasks\Tweaking.com" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tweaking.com" => not found
- Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [218336 2017-05-02] (Tweaking LLC -> Tweaking.com) => Error: No automatic fix found for this entry.
HKLM\System\CurrentControlSet\Services\DellDigitalDelivery => removed successfully
DellDigitalDelivery => service removed successfully
C:\Users\Tami\Downloads\aswMBR (3).exe => moved successfully
C:\windows\Minidump\072919-40513-01.dmp => moved successfully
C:\windows\Minidump\072919-37502-01.dmp => moved successfully
C:\Users\Tami\Downloads\aswMBR (2).exe => moved successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D822F178-BD08-4B92-9ABC-9243C7AC43BB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5837CAAA-2109-430B-AD3D-2B7620F542DE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\FirewallRules:" => not found
[{98B940D4-0D20-4530-AABE-11CD9EFF026F}] => (Allow) C:\Users\Tami\AppData\Local\Temp\7zS5A2D\HP.EasyStart.exe No File => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B82E7603-E4BE-4A3B-B75F-2073047536E3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7D4C30B2-24C1-4FBE-847D-4DF80B2E6FE2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0C5C3C03-FB18-4E9F-AB7A-D9D5C2FA25D6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F98B8967-CE82-4875-B99D-490EED72234E}" => removed successfully
C:\Program Files (x86)\Anvsoft => moved successfully
 
=========== EmptyTemp: ==========
 
BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 45629578 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 2383027 B
Edge => 0 B
Chrome => 402477935 B
Firefox => 0 B
Opera => 0 B
 
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 0 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 0 B
Tami => 29804146 B
TEMP.Tami-PC => 0 B
 
RecycleBin => 2773592138 B
EmptyTemp: => 3 GB temporary data Removed.
 
================================
 
 
The system needed a reboot.
 
==== End of Fixlog 18:56:47 ====
 
8/5/2019 19:33:15 PM
Files scanned: 238103
Infected files: 8
Cleaned threats: 6
Total scan time 00:07:50
Scan status: Finished
C:\FRST\Quarantine\C\Users\Tami\AppData\Local\Temp\scpE65A.tmp.exe.xBAD a variant of Win32/Slimware.D potentially unwanted application cleaned by deleting
 
C:\Program Files\AVG\Antivirus\setup\aswOfferTool.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application error while deleting (Access denied)
 
C:\Program Files\AVG\Antivirus\setup\offertool_x64_ais-c1a.vpx Win32/Bundled.Toolbar.Google.D potentially unsafe application error while deleting (Access denied)
 
C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\hstart.exe a variant of Win32/HiddenStart.A potentially unsafe application cleaned by deleting
 
C:\Program Files (x86)\Dell DataSafe Local Backup\hstart.exe a variant of Win32/HiddenStart.A potentially unsafe application cleaned by deleting
 
C:\Users\Tami\Downloads\motochopper_1.1\motochopper_1.1\pwn Android/Exploit.Lotoor.EP trojan cleaned by deleting
 
C:\Users\Tami\Downloads\motochopper_1.1 (1)\motochopper_1.1\pwn Android/Exploit.Lotoor.EP trojan cleaned by deleting
 
C:\Users\Tami\Downloads\motochopper_1.1 (2)\motochopper_1.1\pwn Android/Exploit.Lotoor.EP trojan cleaned by deleting
 

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI