1. #1

    Join Date
    Sep 2015
    Location
    Leeds, UK
    Posts
    21
    • specs System Specs
      • Manufacturer:
        Packard Bell
      • Model Number:
        ipower G5800
      • Motherboard:
        ipower G5800
      • CPU:
        Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
      • Memory:
        8GB
      • Graphics:
        NVIDIA GeForce GT 330
      • Sound Card:
        Creatuiive SB X-Fi Titanium
      • Hard Drives:
        1 x 1.5 TB(WD I think - as supplied) (configured as C:\ and D:\ drives), 1 x 3TB (WD)
      • Operating System:
        Windows 7 Home Premium SP1

    Severe PC performance degradation

    I posted a general message (Hi - forced upon netwrk/pc administrator in the home) asking for a steer and Brian Drab suggested that I post here and pointing to instructions to run Farbar Recovery Sacn Tool (FRST) and Security Check and paste the outputs.
    So I supply them after a preamble on how I got here

    A few weeks ago, with my PC suddenly showing a noticeable drop in performance following applying a round of Windows 7 updates.

    Operating System: Windows 7 Home Premium 64-bit
    Packard Bell: ipower G5800
    Processor: Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz (8 CPUs), ~2.9GHz
    Memory: 8192MB RAM

    By an large it has been a pretty reliable piece of kit and I use it for
    a) media streaming around the house (Plex for video and Sonos for audio)
    b) online gaming *(Elder Scrolls online, Star Wars The Old Republic etc)
    c) surfing
    d) general light home use (office etc)

    I have two NAS drives (WD "MyBookLiveDuo") which ran fine, but a few weeks ago they suddenly become inaccessible. No idea why, but seemed to resolve it by loading Windows updates. It was actually my wife that found that solution before I did, by doing that on her laptop.
    Not long after that I began to sense a general degradation in performance but not too noticeable. It began to get more persistent problems (when playing online i started to get and distortion on sound). This wasn't just on line, I began to have local sound issues (through Itunes and Foobar2000). Then over this weekend, when I tried to use Sonos, i got "network connection speed insufficient to support playback buffering". The sonos devices are all wired rather than wireless. BTW the sonos devise playback 'internet based radio ok' ( a route which would cut the PC itself out). A similar effect is experienced with Plex, albeit there is no errors just continual buffering.
    I did some research online and loaded Malwarebytes to do a check for malware which indicated some signbs of PuP, but no real issue of any significence (or at least that’s how I assessed it). I removed the offending PuP references but (as I suspected) this didn’t show any marked change in machine behaviour.
    Looking at the running service (in Task Manager) there appeared to be three ‘high CPU consumers’ running when I replicated local sound distortions; these being AVGnsa, Firefox and NT System & Kernel. The approach to trigger the sound distortion was simply opening Firefox and surfing. The more intense the surfing, the more noticeable the distortion was.
    I installed LatencyMon to investigate further which immediately looked horribly red all over (never having used it before). For the following shot, the scenario was Firefox (not open), AVG Internet Security (enabled) and Network card (enabled)

    Attachment 16341


    Investigation on ndis.sys suggested a possible NIC issue (but most posts seem to relate to wi-fi rather than Ethernet issues). Nevertheless, I disabled the NIC device and saw a change. For this shot, the scenario was Firefox (not open), AVG Internet Security (enabled), Network card (disabled)

    Attachment 16342

    At this point I needed to get help from the wider community and have come to Sysnative as it seems to be extremely thorough as a community. So before posting anything I decided to have a look around and see what information I would need – the first problem I had was considering where to post my problem.
    I ran Perfmon and SFCApp (on 4th September) before doing any post at all. I paste the SFS output below (but I judge the Perfmon too large to past – happy to be told otherwise)
    SFC output
    SFCFix version 2.4.5.0 by niemiro.
    Start time: 2015-09-04 16:32:28.162
    Microsoft Windows 7 Service Pack 1 - amd64
    Not using a script file.

    AutoAnalysis::
    SUMMARY: No corruptions were detected.
    AutoAnalysis:: directive completed successfully.

    Successfully processed all directives.
    SFCFix version 2.4.5.0 by niemiro has completed.
    Currently storing 0 datablocks.
    Finish time: 2015-09-04 16:37:59.748
    ----------------------EOF-----------------------


    Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-09-2015 01
    Ran by Alan (administrator) on WESTRAY-GAMER (11-09-2015 10:08:32)
    Running from C:\Users\Alan\Desktop
    Loaded Profiles: Alan (Available Profiles: Alan)
    Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
    Internet Explorer Version 11 (Default browser: FF)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgrsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe
    (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
    (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
    (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
    (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgfws.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (Storage Appliance Corp.) C:\ProgramData\Clickfree\HDDV2USB3\UACProxy.exe
    (devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
    () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
    (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
    (Acer Incorporated) C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
    () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe
    (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgemca.exe
    () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
    (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
    (Team MediaPortal) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TvService.exe
    (Acer Group) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
    () C:\OEM\USBDECTION\USBS3S4Detection.exe
    (WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
    (Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
    (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
    (Storage Appliance Corp.) C:\ProgramData\Clickfree\cfagent.exe
    (SAC) C:\ProgramData\Clickfree\HDDV2USB3\reminder\SacReminder.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe
    (Curse) C:\Users\Alan\AppData\Local\Apps\2.0\TNKPEZT0.63Z\LJK14KEJ.VBZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe
    () C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe
    (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
    (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe
    (Creative Technology Ltd) C:\Windows\SysWOW64\Ctxfihlp.exe
    (Creative Technology Ltd) C:\Windows\SysWOW64\CTxfispi.exe
    (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
    (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
    (Intel Corporation) C:\Program Files (x86)\IAStorIcon.exe
    (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
    (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
    (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
    (Microsoft Corporation) C:\Windows\System32\taskmgr.exe
    (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe
    (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    (Intel Corporation) C:\Program Files (x86)\IAStorDataMgrSvc.exe
    (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
    (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe


    ==================== Registry (Whitelisted) ===========================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [WD Quick View] => C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [4244888 2011-12-06] (Western Digital Technologies, Inc.)
    HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
    HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10060320 2010-02-09] (Realtek Semiconductor)
    HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
    HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
    HKLM\...\Run: [IAStorIcon] => C:\Program Files (x86)\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation)
    HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-10-13] (Intel Corporation)
    HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4430824 2015-07-10] (AVG Technologies CZ, s.r.o.)
    HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
    HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe [611872 2010-08-04] ()
    HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863848 2013-10-18] (SEIKO EPSON CORPORATION)
    HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [642664 2013-10-18] (SEIKO EPSON CORPORATION)
    HKLM-x32\...\Run: [CTxfiHlp] => CTXFIHLP.EXE
    HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [6274184 2015-08-23] (Plex, Inc.)
    HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\Run: [ClickfreeMonitor] => c:\programdata\Clickfree\cfagent.exe [354632 2013-11-29] (Storage Appliance Corp.)
    HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\Run: [SacReminderHDDV2] => C:\ProgramData\Clickfree\HDDV2USB3\reminder\SacReminder.exe [444744 2013-11-29] (SAC)
    HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-05-10] (Microsoft Corporation)
    ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
    Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2015-09-02] ()
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    CHR HKU\S-1-5-21-860982889-626927112-2967376064-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
    Tcpip\..\Interfaces\{A6AADE8D-DE3D-4CF7-896A-77252F48602F}: [DhcpNameServer] 192.168.1.1 192.168.1.1
    Tcpip\..\Interfaces\{D422C659-4CEF-49F7-AA96-8AB8BC01DCF2}: [DhcpNameServer] 192.168.1.254

    Internet Explorer:
    ==================
    HKU\S-1-5-21-860982889-626927112-2967376064-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://packardbell.msn.com
    SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
    SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
    SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
    SearchScopes: HKU\S-1-5-21-860982889-626927112-2967376064-1000 -> DefaultScope {0432BF48-7B9D-4A7F-A209-FD7B9F70C2D3} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=base2013&Lan=en&q={searchTerms}&gu=79a4a6c0016b4a9a91d69cb7690eb485&tu=11JL0008H2B000s&sku=&tstsId=&ver=&&r=95
    SearchScopes: HKU\S-1-5-21-860982889-626927112-2967376064-1000 -> {0432BF48-7B9D-4A7F-A209-FD7B9F70C2D3} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=base2013&Lan=en&q={searchTerms}&gu=79a4a6c0016b4a9a91d69cb7690eb485&tu=11JL0008H2B000s&sku=&tstsId=&ver=&&r=95
    SearchScopes: HKU\S-1-5-21-860982889-626927112-2967376064-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
    BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22] (Microsoft Corporation)
    BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> D:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
    DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
    DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
    DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab

    FireFox:
    ========
    FF ProfilePath: C:\Users\Alan\AppData\Roaming\Mozilla\Firefox\Profiles\pa11176p.default
    FF Homepage: hxxps://www.google.co.uk
    FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2011-01-20] (Microsoft Corporation)
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation)
    FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
    FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-07-30] ()
    FF Plugin-x32: @checkpoint.com/FFApi -> C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll [No File]
    FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
    FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
    FF Plugin-x32: @gametap.com/npdd,version=1.0 -> D:\Program Files\Games\npdd.dll [2010-02-19] (Metaboli)
    FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2011-01-20] (Microsoft Corporation)
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> D:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> D:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-04-16] (Microsoft Corporation)
    FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-17] (NVIDIA Corporation)
    FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-17] (NVIDIA Corporation)
    FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] ()
    FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker

    ==================== Services (Whitelisted) ========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
    R2 avgfws; C:\Program Files (x86)\AVG\AVG2013\avgfws.exe [1442344 2015-07-09] (AVG Technologies CZ, s.r.o.)
    R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4948456 2015-05-26] (AVG Technologies CZ, s.r.o.)
    R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-11-20] (AVG Technologies CZ, s.r.o.)
    R2 CFUACProxy_hddv2usb3; C:\ProgramData\Clickfree\HDDV2USB3\UACProxy.exe [83792 2010-12-16] (Storage Appliance Corp.)
    S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2013-07-02] (Creative Labs) [File not signed]
    S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2013-07-02] (Creative Labs) [File not signed]
    R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
    S3 DAUpdaterSvc; D:\Program Files\Games\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [25832 2009-12-15] (BioWare)
    R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [3736520 2015-01-29] (devolo AG)
    R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [11776 2012-05-19] () [File not signed]
    R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation)
    S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [240736 2013-09-06] (WildTangent)
    R2 GREGService; C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [23584 2010-01-08] (Acer Incorporated)
    R2 IAStorDataMgrSvc; C:\Program Files (x86)\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation)
    R2 MySQL; C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe [12907520 2013-02-01] () [File not signed]
    R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
    R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
    R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2010-01-08] () [File not signed]
    R2 TVService; C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TVService.exe [233472 2014-04-26] (Team MediaPortal) [File not signed]
    R2 Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
    R2 USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [76320 2009-12-09] ()
    R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [319384 2011-12-06] (WDC)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

    ===================== Drivers (Whitelisted) ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [73688 2015-06-03] (AVG Technologies CZ, s.r.o.)
    R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-11-25] (AVG Technologies CZ, s.r.o.)
    R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [158160 2015-05-21] (AVG Technologies CZ, s.r.o.)
    R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [209720 2014-11-04] (AVG Technologies CZ, s.r.o.)
    R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360400 2015-05-21] (AVG Technologies CZ, s.r.o.)
    R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [204704 2015-07-03] (AVG Technologies CZ, s.r.o.)
    R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-10-23] (AVG Technologies CZ, s.r.o.)
    R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [249296 2015-05-26] (AVG Technologies CZ, s.r.o.)
    R1 Capsax64Drv0; C:\Windows\System32\Drivers\Capsax64Drv0.sys [35976 2014-08-15] (Colasoft Co., Ltd.)
    R1 CSN5PDTS82x64; C:\Windows\System32\Drivers\CSN5PDTS82x64.sys [34840 2012-10-24] (Colasoft Co., Ltd.)
    R2 Dokan; C:\Windows\system32\drivers\dokan.sys [106888 2012-05-19] (Windows (R) Win 7 DDK provider)
    S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
    R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-03-22] (Intel Corporation)
    S3 massfilter; C:\Windows\SysWOW64\drivers\massfilter.sys [9216 2009-09-07] (ZTE Incorporated)
    R2 NPF_devolo; C:\Windows\sysWOW64\drivers\npf_devolo.sys [34048 2013-03-04] (CACE Technologies)
    R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
    R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
    S3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Resplendence Software Projects Sp.)
    R3 TBS6985_64; C:\Windows\System32\DRIVERS\TBS6985_64.sys [1934128 2014-06-03] (TBS Technologies -Your IPTV solution partner providing Linux mini PC, IPTV streamer and DVB tuner of different standards.)
    S3 ZTEusbmdm6k; C:\Windows\SysWOW64\DRIVERS\ZTEusbmdm6k.sys [119680 2009-09-07] (ZTE Incorporated)
    S3 ZTEusbnmea; C:\Windows\SysWOW64\DRIVERS\ZTEusbnmea.sys [119680 2009-09-07] (ZTE Incorporated)
    S3 ZTEusbser6k; C:\Windows\SysWOW64\DRIVERS\ZTEusbser6k.sys [119680 2009-09-07] (ZTE Incorporated)
    S3 BCMH43XX; system32\DRIVERS\bcmwlhigh664.sys [X]
    S1 CSN5PDTS82; System32\Drivers\CSN5PDTS82.sys [X]
    S1 CsNdisLWF; System32\Drivers\CsNdisLWF.sys [X]
    S3 NANMp50; System32\Drivers\NANMp50.sys [X]
    S3 NANSp50; System32\Drivers\NANSp50.sys [X]

    ==================== NetSvcs (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== One Month Created files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2015-09-11 10:08 - 2015-09-11 10:08 - 00021077 _____ C:\Users\Alan\Desktop\FRST.txt
    2015-09-11 10:07 - 2015-09-11 10:08 - 00000000 ____D C:\FRST
    2015-09-11 10:07 - 2015-09-11 10:07 - 00000000 ____D C:\Users\Alan\Desktop\FRST-OlderVersion
    2015-09-11 10:06 - 2015-09-11 10:07 - 02190848 _____ (Farbar) C:\Users\Alan\Desktop\FRST64.exe
    2015-09-11 10:05 - 2015-09-11 10:04 - 00852704 _____ C:\Users\Alan\Desktop\SecurityCheck.exe
    2015-09-11 10:04 - 2015-09-11 10:04 - 00852704 _____ C:\Users\Alan\Downloads\SecurityCheck.exe
    2015-09-06 12:31 - 2015-09-06 12:31 - 02188800 _____ (Farbar) C:\Users\Alan\Downloads\FRST64.exe
    2015-09-05 03:01 - 2015-09-06 12:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
    2015-09-04 23:46 - 2015-09-04 23:46 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Clickfree
    2015-09-04 23:46 - 2015-09-04 23:46 - 00000000 ____D C:\Users\Alan\AppData\Local\kooboodle
    2015-09-04 23:34 - 2015-09-04 23:46 - 00000000 ____D C:\ProgramData\Clickfree
    2015-09-04 22:52 - 2015-09-04 22:52 - 00121069 _____ C:\Users\Alan\Downloads\memtest86+-5.01.usb.installer.zip
    2015-09-04 21:24 - 2015-09-04 21:24 - 00291136 _____ C:\Windows\Minidump\090415-47237-01.dmp
    2015-09-04 17:35 - 2015-09-04 17:35 - 01636641 _____ C:\Users\Alan\Documents\SysnativeFileCollectionApp.zip
    2015-09-04 17:24 - 2015-09-04 22:39 - 00000000 ____D C:\Users\Alan\Documents\SysnativeFileCollectionApp
    2015-09-04 17:24 - 2015-09-04 17:24 - 00158720 _____ (Sysnative) C:\Users\Alan\Downloads\SysnativeBSODCollectionApp.exe
    2015-09-04 16:55 - 2015-09-04 16:56 - 76690963 _____ C:\Users\Alan\Desktop\CBS large.zip
    2015-09-04 16:55 - 2015-09-04 16:55 - 00247169 _____ C:\Users\Alan\Desktop\CBS small.zip
    2015-09-04 16:48 - 2015-09-04 16:56 - 00000000 ____D C:\Users\Alan\Desktop\CBS
    2015-09-04 16:38 - 2015-09-04 16:43 - 00000000 ____D C:\Users\Alan\Documents\PC Investigations
    2015-09-04 16:37 - 2015-09-04 16:37 - 00000950 _____ C:\Users\Alan\Desktop\SFCFix.txt
    2015-09-04 16:37 - 2015-09-04 16:37 - 00000000 ____D C:\SFCFix
    2015-09-04 16:31 - 2015-09-04 16:31 - 01319424 _____ (niemiro) C:\Users\Alan\Downloads\SFCFix.exe
    2015-09-04 15:50 - 2015-09-04 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
    2015-09-04 15:50 - 2015-09-04 15:50 - 00000000 ____D C:\Program Files (x86)\Windows Kits
    2015-09-04 14:33 - 2015-09-06 12:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
    2015-09-04 14:33 - 2015-09-04 14:33 - 00001131 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
    2015-09-04 14:33 - 2015-09-04 14:33 - 00001119 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
    2015-09-04 14:33 - 2015-09-04 14:33 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Mozilla
    2015-09-04 14:31 - 2015-09-04 14:32 - 42750816 _____ C:\Users\Alan\Downloads\Firefox Setup 41.0b6.exe
    2015-09-04 14:05 - 2015-09-04 14:05 - 00000000 ___DC C:\Users\Alan\AppData\Local\MigWiz
    2015-09-04 13:50 - 2015-09-04 14:09 - 00000000 ____D C:\Users\Alan\Documents\Firefox backup stuff
    2015-09-04 11:48 - 2015-09-04 11:50 - 00000000 _____ C:\Users\Alan\sfcdetails.txt
    2015-09-04 08:49 - 2015-09-04 08:49 - 00001272 _____ C:\Users\Alan\Desktop\Snipping Tool.lnk
    2015-09-04 01:47 - 2015-09-04 01:47 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
    2015-09-04 00:38 - 2015-08-24 03:11 - 00987888 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
    2015-09-04 00:38 - 2015-08-24 03:11 - 00101520 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
    2015-09-04 00:33 - 2015-09-04 00:34 - 06243710 _____ C:\Users\Alan\Downloads\0008-Install_Win7_7092_08242015.zip
    2015-09-04 00:04 - 2015-09-04 00:04 - 00000058 _____ C:\Users\Alan\Downloads\RestoreNDISSystemDriverWindows7.bat
    2015-09-03 23:05 - 2015-09-03 23:05 - 00000826 _____ C:\Users\Alan\Desktop\LatencyMon.lnk
    2015-09-03 23:05 - 2015-09-03 23:05 - 00000814 _____ C:\Users\Alan\Desktop\In Depth Latency Tests.lnk
    2015-09-03 23:05 - 2015-09-03 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
    2015-09-03 23:05 - 2015-09-03 23:05 - 00000000 ____D C:\Program Files\LatencyMon
    2015-09-03 23:05 - 2015-07-13 11:16 - 00026368 _____ (Resplendence Software Projects Sp.) C:\Windows\system32\Drivers\rspLLL64.sys
    2015-09-03 23:03 - 2015-09-11 10:05 - 00000000 ____D C:\Users\Alan\Downloads\PC Problem & Investigation Software
    2015-09-03 18:54 - 2015-09-04 16:38 - 00000000 ____D C:\Users\Alan\Documents\Sevens Forum folder
    2015-08-31 16:13 - 2015-08-31 16:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plex Media Server
    2015-08-31 16:13 - 2015-08-31 16:13 - 00000000 ____D C:\Program Files (x86)\Plex
    2015-08-31 15:35 - 2015-09-01 08:51 - 00001080 _____ C:\Windows\system32\settingsbkup.sfm
    2015-08-31 15:35 - 2015-09-01 08:51 - 00001080 _____ C:\Windows\system32\settings.sfm
    2015-08-31 15:04 - 2015-08-31 15:04 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Creative
    2015-08-31 15:03 - 2015-08-31 15:04 - 55099016 _____ (Creative Technology Ltd) C:\Users\Alan\Downloads\XFTI_PCDRV_L11_2_40_0008.exe
    2015-08-31 14:46 - 2015-08-31 14:47 - 00004908 _____ C:\Windows\DPINST.LOG
    2015-08-31 14:46 - 2015-08-31 14:46 - 00715038 _____ C:\Windows\unins000.exe
    2015-08-31 14:46 - 2014-06-03 14:30 - 01934128 _____ (TBS Technologies -Your IPTV solution partner providing Linux mini PC, IPTV streamer and DVB tuner of different standards.) C:\Windows\system32\Drivers\TBS6985_64.sys
    2015-08-31 14:44 - 2015-08-31 14:44 - 03428199 _____ C:\Users\Alan\Downloads\tbs6985-windows-driver_v1.0.0.5.zip
    2015-08-30 17:45 - 2015-08-30 17:46 - 00262144 _____ C:\Windows\Minidump\083015-62369-01.dmp
    2015-08-30 17:34 - 2015-08-11 02:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
    2015-08-30 17:34 - 2015-08-11 02:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
    2015-08-30 17:34 - 2015-08-11 01:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
    2015-08-30 17:34 - 2015-08-11 01:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
    2015-08-30 17:33 - 2015-07-16 20:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
    2015-08-30 17:33 - 2015-07-16 20:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
    2015-08-30 17:33 - 2015-07-11 14:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
    2015-08-30 17:33 - 2015-06-09 19:03 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
    2015-08-30 17:33 - 2015-06-09 19:03 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
    2015-08-30 17:33 - 2015-06-03 21:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
    2015-08-30 17:32 - 2015-07-16 20:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
    2015-08-30 17:32 - 2015-07-16 20:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
    2015-08-30 17:32 - 2015-07-16 20:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
    2015-08-30 17:32 - 2015-07-16 20:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
    2015-08-30 17:32 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
    2015-08-30 17:32 - 2011-02-25 07:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
    2015-08-30 17:32 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
    2015-08-30 17:29 - 2012-02-11 07:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
    2015-08-30 17:29 - 2012-02-11 07:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
    2015-08-29 19:43 - 2015-08-29 19:43 - 01388544 ____N (Microsoft Corporation) C:\Windows\msvbvm60.dll
    2015-08-29 19:43 - 2015-08-29 19:43 - 00327680 ____N (Microsoft Corporation) C:\Windows\Setup1.exe
    2015-08-29 19:43 - 2015-08-29 19:43 - 00151622 ____N (Microsoft Corporation) C:\Windows\modcas.dll
    2015-08-29 19:43 - 2015-08-29 19:43 - 00101888 ____N (Microsoft Corporation) C:\Windows\odestkit.dll
    2015-08-29 19:43 - 2015-08-29 19:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\ODEUNST.EXE
    2015-08-29 19:43 - 2015-08-29 19:43 - 00003945 ____N C:\Windows\SysWOW64\ospfilelist.txt
    2015-08-28 22:26 - 2015-09-04 21:24 - 1183889892 _____ C:\Windows\MEMORY.DMP
    2015-08-28 22:26 - 2015-08-28 22:27 - 00291176 _____ C:\Windows\Minidump\082815-74038-01.dmp
    2015-08-28 08:52 - 2015-08-28 08:52 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\16223D22.sys
    2015-08-27 21:45 - 2015-08-27 21:45 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Colasoft Packet Builder
    2015-08-27 21:28 - 2015-08-27 21:33 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Colasoft Capsa 8 - Free Edition
    2015-08-27 21:28 - 2015-08-27 21:33 - 00000000 ____D C:\ProgramData\Colasoft Capsa 8 Free
    2015-08-27 21:21 - 2015-08-30 19:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Colasoft Capsa 8 Free
    2015-08-27 21:21 - 2015-08-30 19:05 - 00000000 ____D C:\Program Files (x86)\Colasoft Capsa 8 Free Edition
    2015-08-27 21:21 - 2015-08-27 21:21 - 00001107 _____ C:\Users\Alan\Desktop\Colasoft Capsa 8 Free.lnk
    2015-08-27 21:21 - 2014-08-15 13:05 - 00035976 _____ (Colasoft Co., Ltd.) C:\Windows\system32\Drivers\Capsax64Drv3.sys
    2015-08-27 21:21 - 2014-08-15 13:05 - 00035976 _____ (Colasoft Co., Ltd.) C:\Windows\system32\Drivers\Capsax64Drv2.sys
    2015-08-27 21:21 - 2014-08-15 13:05 - 00035976 _____ (Colasoft Co., Ltd.) C:\Windows\system32\Drivers\Capsax64Drv1.sys
    2015-08-27 21:21 - 2014-08-15 13:05 - 00035976 _____ (Colasoft Co., Ltd.) C:\Windows\system32\Drivers\Capsax64Drv0.sys
    2015-08-27 21:21 - 2012-10-24 14:49 - 00034840 _____ (Colasoft Co., Ltd.) C:\Windows\system32\Drivers\CSN5PDTS82x64.sys
    2015-08-27 21:18 - 2015-08-27 21:19 - 49492616 _____ (Colasoft ) C:\Users\Alan\Downloads\capsa_free_8.0.0.8053.exe
    2015-08-27 20:40 - 2015-08-27 20:40 - 00117832 _____ C:\Users\Alan\AppData\Local\GDIPFONTCACHEV1.DAT
    2015-08-27 20:36 - 2015-09-11 09:56 - 00008392 _____ C:\Windows\setupact.log
    2015-08-27 20:36 - 2015-09-06 12:57 - 00275924 _____ C:\Windows\PFRO.log
    2015-08-27 20:36 - 2015-08-27 20:36 - 00428536 _____ C:\Windows\system32\FNTCACHE.DAT
    2015-08-27 20:36 - 2015-08-27 20:36 - 00000000 _____ C:\Windows\setuperr.log
    2015-08-27 19:00 - 2015-08-27 19:00 - 00000000 ____D C:\Users\Alan\AppData\Local\GWX
    2015-08-27 02:47 - 2015-08-30 19:04 - 00000000 ___SD C:\Windows\system32\CompatTel
    2015-08-27 02:47 - 2015-08-30 19:04 - 00000000 ____D C:\Windows\system32\appraiser
    2015-08-27 00:19 - 2015-01-09 00:44 - 00419936 _____ C:\Windows\SysWOW64\locale.nls
    2015-08-27 00:19 - 2015-01-09 00:43 - 00419936 _____ C:\Windows\system32\locale.nls
    2015-08-27 00:12 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
    2015-08-27 00:12 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
    2015-08-27 00:12 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
    2015-08-27 00:12 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
    2015-08-27 00:12 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
    2015-08-27 00:12 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
    2015-08-27 00:12 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
    2015-08-27 00:12 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
    2015-08-27 00:12 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
    2015-08-27 00:12 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
    2015-08-26 23:54 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
    2015-08-26 23:54 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
    2015-08-26 23:54 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
    2015-08-26 23:46 - 2012-07-26 04:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
    2015-08-26 23:46 - 2012-07-26 04:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
    2015-08-26 23:46 - 2012-07-26 04:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
    2015-08-26 23:46 - 2012-07-26 04:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
    2015-08-26 23:46 - 2012-07-26 04:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
    2015-08-26 23:46 - 2012-07-26 03:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
    2015-08-26 23:46 - 2012-07-26 03:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
    2015-08-26 23:46 - 2012-06-02 15:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
    2015-08-26 23:42 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
    2015-08-26 23:42 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
    2015-08-26 23:39 - 2015-07-28 21:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
    2015-08-26 23:39 - 2015-07-28 21:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
    2015-08-26 23:39 - 2015-07-28 21:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
    2015-08-26 23:39 - 2015-07-28 21:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
    2015-08-26 23:39 - 2015-07-28 21:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
    2015-08-26 23:39 - 2015-07-28 21:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
    2015-08-26 23:39 - 2015-07-28 21:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
    2015-08-26 23:39 - 2015-07-28 20:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
    2015-08-26 23:39 - 2015-07-23 01:06 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
    2015-08-26 23:39 - 2015-07-23 01:03 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
    2015-08-26 23:39 - 2015-07-23 01:02 - 01390592 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
    2015-08-26 23:39 - 2015-07-22 17:48 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
    2015-08-26 23:39 - 2015-07-21 01:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
    2015-08-26 23:39 - 2015-07-21 01:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
    2015-08-26 23:39 - 2015-07-16 21:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
    2015-08-26 23:39 - 2015-07-16 21:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
    2015-08-26 23:39 - 2015-07-16 21:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
    2015-08-26 23:39 - 2015-07-16 21:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
    2015-08-26 23:39 - 2015-07-16 21:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
    2015-08-26 23:39 - 2015-07-16 21:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
    2015-08-26 23:39 - 2015-07-16 21:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
    2015-08-26 23:39 - 2015-07-16 21:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
    2015-08-26 23:39 - 2015-07-16 21:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
    2015-08-26 23:39 - 2015-07-16 21:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
    2015-08-26 23:39 - 2015-07-16 21:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
    2015-08-26 23:39 - 2015-07-16 21:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
    2015-08-26 23:39 - 2015-07-16 21:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
    2015-08-26 23:39 - 2015-07-16 21:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
    2015-08-26 23:39 - 2015-07-16 21:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
    2015-08-26 23:39 - 2015-07-16 21:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
    2015-08-26 23:39 - 2015-07-16 21:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
    2015-08-26 23:39 - 2015-07-16 21:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
    2015-08-26 23:39 - 2015-07-16 20:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
    2015-08-26 23:39 - 2015-07-16 20:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
    2015-08-26 23:39 - 2015-07-16 20:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
    2015-08-26 23:39 - 2015-07-16 20:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
    2015-08-26 23:39 - 2015-07-16 20:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
    2015-08-26 23:39 - 2015-07-16 20:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
    2015-08-26 23:39 - 2015-07-16 20:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
    2015-08-26 23:39 - 2015-07-16 20:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
    2015-08-26 23:39 - 2015-07-16 20:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
    2015-08-26 23:39 - 2015-07-16 20:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
    2015-08-26 23:39 - 2015-07-16 20:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
    2015-08-26 23:39 - 2015-07-16 20:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
    2015-08-26 23:39 - 2015-07-16 20:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
    2015-08-26 23:39 - 2015-07-16 20:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
    2015-08-26 23:39 - 2015-07-16 20:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
    2015-08-26 23:39 - 2015-07-16 20:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
    2015-08-26 23:39 - 2015-07-16 20:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
    2015-08-26 23:39 - 2015-07-16 20:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
    2015-08-26 23:39 - 2015-07-16 20:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
    2015-08-26 23:39 - 2015-07-16 20:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
    2015-08-26 23:39 - 2015-07-16 20:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
    2015-08-26 23:39 - 2015-07-16 20:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
    2015-08-26 23:39 - 2015-07-16 20:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
    2015-08-26 23:39 - 2015-07-16 20:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
    2015-08-26 23:39 - 2015-07-16 20:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
    2015-08-26 23:39 - 2015-07-16 20:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
    2015-08-26 23:39 - 2015-07-16 20:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
    2015-08-26 23:39 - 2015-07-16 20:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
    2015-08-26 23:39 - 2015-07-16 20:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
    2015-08-26 23:39 - 2015-07-16 20:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
    2015-08-26 23:39 - 2015-07-16 20:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
    2015-08-26 23:39 - 2015-07-16 20:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
    2015-08-26 23:39 - 2015-07-16 19:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
    2015-08-26 23:39 - 2015-07-16 19:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
    2015-08-26 23:39 - 2015-07-16 19:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
    2015-08-26 23:39 - 2015-07-16 19:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
    2015-08-26 23:39 - 2015-06-03 21:16 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
    2015-08-26 23:39 - 2015-06-03 21:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
    2015-08-26 23:39 - 2015-05-25 19:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
    2015-08-26 23:39 - 2015-05-25 19:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
    2015-08-26 23:39 - 2015-05-25 19:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
    2015-08-26 23:39 - 2015-05-25 19:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
    2015-08-26 23:39 - 2015-05-25 19:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
    2015-08-26 23:39 - 2015-05-25 19:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
    2015-08-26 23:39 - 2015-05-25 19:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
    2015-08-26 23:39 - 2015-05-25 19:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
    2015-08-26 23:39 - 2015-05-25 19:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
    2015-08-26 23:39 - 2015-05-25 19:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
    2015-08-26 23:39 - 2015-05-25 19:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
    2015-08-26 23:39 - 2015-05-25 19:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
    2015-08-26 23:39 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
    2015-08-26 23:39 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
    2015-08-26 23:38 - 2015-07-30 19:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
    2015-08-26 23:38 - 2015-07-30 19:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
    2015-08-26 23:38 - 2015-07-30 19:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
    2015-08-26 23:38 - 2015-07-30 18:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
    2015-08-26 23:38 - 2015-07-30 18:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
    2015-08-26 23:38 - 2015-07-23 01:06 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
    2015-08-26 23:38 - 2015-07-23 01:06 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
    2015-08-26 23:38 - 2015-07-23 01:03 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
    2015-08-26 23:38 - 2015-07-23 01:03 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
    2015-08-26 23:38 - 2015-07-23 01:03 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
    2015-08-26 23:38 - 2015-07-23 01:03 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
    2015-08-26 23:38 - 2015-07-23 01:02 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
    2015-08-26 23:38 - 2015-07-23 01:02 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
    2015-08-26 23:38 - 2015-07-23 01:02 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
    2015-08-26 23:38 - 2015-07-23 01:01 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
    2015-08-26 23:38 - 2015-07-23 01:01 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
    2015-08-26 23:38 - 2015-07-23 01:01 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
    2015-08-26 23:38 - 2015-07-23 00:58 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
    2015-08-26 23:38 - 2015-07-23 00:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:52 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-23 00:51 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
    2015-08-26 23:38 - 2015-07-22 18:57 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
    2015-08-26 23:38 - 2015-07-22 18:57 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
    2015-08-26 23:38 - 2015-07-22 18:54 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
    2015-08-26 23:38 - 2015-07-22 18:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
    2015-08-26 23:38 - 2015-07-22 18:52 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
    2015-08-26 23:38 - 2015-07-22 18:52 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
    2015-08-26 23:38 - 2015-07-22 18:52 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
    2015-08-26 23:38 - 2015-07-22 18:52 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
    2015-08-26 23:38 - 2015-07-22 18:52 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
    2015-08-26 23:38 - 2015-07-22 18:52 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
    2015-08-26 23:38 - 2015-07-22 18:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
    2015-08-26 23:38 - 2015-07-22 18:47 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
    2015-08-26 23:38 - 2015-07-22 18:46 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 18:42 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 17:45 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
    2015-08-26 23:38 - 2015-07-22 17:44 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
    2015-08-26 23:38 - 2015-07-22 17:44 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
    2015-08-26 23:38 - 2015-07-22 17:34 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
    2015-08-26 23:38 - 2015-07-22 17:34 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
    2015-08-26 23:38 - 2015-07-22 17:31 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 17:31 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 17:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
    2015-08-26 23:38 - 2015-07-22 17:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
    2015-08-26 23:38 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
    2015-08-26 23:38 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
    2015-08-26 23:38 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
    2015-08-26 23:38 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
    2015-08-26 23:38 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
    2015-08-26 23:38 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
    2015-08-26 23:38 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
    2015-08-26 23:38 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
    2015-08-26 23:38 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
    2015-08-26 23:38 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
    2015-08-26 23:38 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
    2015-08-26 23:38 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
    2015-08-26 23:38 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
    2015-08-26 23:38 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
    2015-08-26 23:38 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
    2015-08-26 23:38 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
    2015-08-26 23:38 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
    2015-08-26 23:38 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
    2015-08-26 23:38 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
    2015-08-26 23:38 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
    2015-08-26 23:38 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
    2015-08-26 23:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
    2015-08-26 23:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
    2015-08-26 23:38 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
    2015-08-26 23:38 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
    2015-08-26 23:38 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
    2015-08-26 23:38 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
    2015-08-26 23:38 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
    2015-08-26 23:38 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
    2015-08-26 23:38 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
    2015-08-26 23:37 - 2015-03-04 05:41 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
    2015-08-26 23:37 - 2015-03-04 05:41 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
    2015-08-26 23:37 - 2015-03-04 05:41 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
    2015-08-26 23:37 - 2015-03-04 05:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
    2015-08-26 23:37 - 2015-03-04 05:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
    2015-08-26 23:37 - 2015-03-04 05:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
    2015-08-26 23:37 - 2015-03-04 05:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
    2015-08-26 23:37 - 2012-12-07 14:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
    2015-08-26 23:37 - 2012-12-07 14:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
    2015-08-26 23:37 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
    2015-08-26 23:37 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
    2015-08-26 23:37 - 2012-12-07 12:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
    2015-08-26 23:37 - 2012-12-07 12:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
    2015-08-26 23:37 - 2012-12-07 12:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
    2015-08-26 23:37 - 2012-12-07 12:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
    2015-08-26 23:37 - 2012-12-07 12:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
    2015-08-26 23:37 - 2012-12-07 12:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
    2015-08-26 23:37 - 2012-12-07 12:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
    2015-08-26 23:37 - 2012-12-07 12:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
    2015-08-26 23:37 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
    2015-08-26 23:37 - 2012-01-04 11:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
    2015-08-26 23:37 - 2012-01-04 09:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
    2015-08-26 23:36 - 2015-02-03 04:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
    2015-08-26 23:36 - 2015-02-03 04:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
    2015-08-26 23:36 - 2014-08-01 12:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
    2015-08-26 23:36 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
    2015-08-26 23:36 - 2014-01-24 03:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
    2015-08-26 23:36 - 2012-10-03 18:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
    2015-08-26 23:36 - 2012-10-03 18:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
    2015-08-26 23:36 - 2012-10-03 18:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
    2015-08-26 23:36 - 2012-10-03 17:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
    2015-08-26 23:36 - 2012-10-03 17:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
    2015-08-26 23:36 - 2012-10-03 17:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
    2015-08-26 23:36 - 2011-05-04 06:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
    2015-08-26 23:36 - 2011-05-04 06:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
    2015-08-26 23:36 - 2011-05-04 06:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
    2015-08-26 23:36 - 2011-05-04 06:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
    2015-08-26 23:36 - 2011-05-04 06:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
    2015-08-26 23:36 - 2011-05-04 06:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
    2015-08-26 23:36 - 2011-05-04 06:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
    2015-08-26 23:36 - 2011-05-04 06:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
    2015-08-26 23:36 - 2011-05-04 06:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
    2015-08-26 23:36 - 2011-05-04 05:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
    2015-08-26 23:36 - 2011-05-04 05:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
    2015-08-26 23:36 - 2011-05-04 05:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
    2015-08-26 23:36 - 2011-05-04 05:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
    2015-08-26 23:36 - 2011-05-04 05:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
    2015-08-26 23:36 - 2011-05-04 05:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
    2015-08-26 23:36 - 2011-05-04 05:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
    2015-08-26 23:36 - 2011-05-04 05:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
    2015-08-26 23:36 - 2011-05-04 05:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
    2015-08-26 23:36 - 2011-03-11 07:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
    2015-08-26 23:36 - 2011-03-11 07:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
    2015-08-26 23:36 - 2011-03-11 07:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
    2015-08-26 23:36 - 2011-03-11 07:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
    2015-08-26 23:36 - 2011-03-11 07:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
    2015-08-26 23:36 - 2011-03-11 07:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
    2015-08-26 23:36 - 2011-03-11 07:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
    2015-08-26 23:36 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
    2015-08-26 23:36 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
    2015-08-26 23:36 - 2011-03-11 05:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
    2015-08-26 23:35 - 2015-09-02 18:40 - 00000000 ____D C:\Windows\pss
    2015-08-26 23:35 - 2015-06-25 11:06 - 00115136 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
    2015-08-26 23:35 - 2015-06-25 11:01 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
    2015-08-26 23:35 - 2015-06-25 11:01 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
    2015-08-26 23:35 - 2015-06-25 10:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
    2015-08-26 23:35 - 2015-04-11 04:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
    2015-08-26 23:35 - 2015-01-09 04:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
    2015-08-26 23:35 - 2015-01-09 04:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
    2015-08-26 23:35 - 2015-01-09 04:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
    2015-08-26 23:35 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
    2015-08-26 23:35 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
    2015-08-26 23:35 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
    2015-08-26 23:35 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
    2015-08-26 23:35 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
    2015-08-26 23:35 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
    2015-08-26 23:35 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
    2015-08-26 23:35 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
    2015-08-26 23:35 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
    2015-08-26 23:35 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
    2015-08-26 23:35 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
    2015-08-26 23:35 - 2014-02-04 03:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
    2015-08-26 23:35 - 2014-02-04 03:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
    2015-08-26 23:35 - 2014-02-04 03:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
    2015-08-26 23:35 - 2014-02-04 03:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
    2015-08-26 23:35 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
    2015-08-26 23:35 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
    2015-08-26 23:35 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
    2015-08-26 23:35 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
    2015-08-26 23:35 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
    2015-08-26 23:35 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
    2015-08-26 23:35 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
    2015-08-26 23:35 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
    2015-08-26 23:35 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
    2015-08-26 23:35 - 2012-10-09 19:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
    2015-08-26 23:35 - 2012-10-09 19:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
    2015-08-26 23:35 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
    2015-08-26 23:35 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
    2015-08-26 23:35 - 2012-08-21 22:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
    2015-08-26 23:34 - 2015-07-15 04:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
    2015-08-26 23:34 - 2015-07-15 03:54 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
    2015-08-26 23:34 - 2015-07-09 18:58 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
    2015-08-26 23:34 - 2015-07-09 18:58 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
    2015-08-26 23:34 - 2015-07-09 18:42 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
    2015-08-26 23:34 - 2015-07-09 18:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
    2015-08-26 23:34 - 2015-04-27 20:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
    2015-08-26 23:34 - 2015-04-27 20:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
    2015-08-26 23:34 - 2015-04-27 20:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
    2015-08-26 23:34 - 2015-04-27 20:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
    2015-08-26 23:34 - 2015-04-27 20:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
    2015-08-26 23:34 - 2015-04-27 20:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
    2015-08-26 23:34 - 2015-04-27 20:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
    2015-08-26 23:34 - 2015-04-27 20:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
    2015-08-26 23:34 - 2015-01-29 04:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
    2015-08-26 23:34 - 2015-01-29 04:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
    2015-08-26 23:34 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
    2015-08-26 23:34 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
    2015-08-26 23:34 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
    2015-08-26 23:34 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
    2015-08-26 23:34 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
    2015-08-26 23:34 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
    2015-08-26 23:34 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
    2015-08-26 23:34 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
    2015-08-26 23:34 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
    2015-08-26 23:34 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
    2015-08-26 23:34 - 2012-08-22 19:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
    2015-08-26 23:34 - 2012-07-04 21:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
    2015-08-26 23:34 - 2011-12-30 07:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
    2015-08-26 23:34 - 2011-12-30 06:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
    2015-08-26 23:34 - 2011-06-16 06:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
    2015-08-26 23:34 - 2011-06-16 05:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
    2015-08-26 23:34 - 2011-02-18 11:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
    2015-08-26 23:34 - 2011-02-18 06:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
    2015-08-26 23:03 - 2015-02-04 04:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
    2015-08-26 23:03 - 2015-02-04 03:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
    2015-08-26 22:35 - 2015-08-30 19:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
    2015-08-26 22:35 - 2015-08-26 22:35 - 00001765 _____ C:\Users\Public\Desktop\iTunes.lnk
    2015-08-26 22:34 - 2015-08-26 22:35 - 00000000 ____D C:\Program Files\iTunes
    2015-08-26 22:34 - 2015-08-26 22:34 - 00000000 ____D C:\Program Files\iPod
    2015-08-26 22:34 - 2015-08-26 22:34 - 00000000 ____D C:\Program Files (x86)\iTunes
    2015-08-26 22:33 - 2015-08-26 22:33 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
    2015-08-26 22:32 - 2015-08-30 19:05 - 00000000 ____D C:\Program Files\Bonjour
    2015-08-26 22:32 - 2015-08-30 19:05 - 00000000 ____D C:\Program Files (x86)\Bonjour
    2015-08-25 09:36 - 2015-08-17 22:43 - 00608048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
    2015-08-25 09:34 - 2015-08-18 09:48 - 31515256 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 24200312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 22992048 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 15294072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 13916600 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 12896432 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
    2015-08-25 09:34 - 2015-08-18 09:48 - 11272048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 11209376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 04245808 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 03987760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 01908528 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434181.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 01556656 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434181.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 00945456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 00908592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 00903472 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
    2015-08-25 09:34 - 2015-08-18 09:48 - 00870008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
    2015-08-16 20:07 - 2015-07-30 14:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
    2015-08-16 20:07 - 2015-07-30 14:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
    2015-08-16 20:07 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
    2015-08-16 20:05 - 2015-08-16 20:05 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
    2015-08-16 20:05 - 2015-08-16 20:05 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
    2015-08-16 20:05 - 2015-08-16 20:05 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
    2015-08-16 20:05 - 2015-08-16 20:05 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
    2015-08-16 20:05 - 2015-08-16 20:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
    2015-08-16 20:05 - 2015-08-16 20:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
    2015-08-16 20:05 - 2015-08-16 20:05 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
    2015-08-16 20:02 - 2015-08-16 20:02 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
    2015-08-16 20:02 - 2015-08-16 20:02 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
    2015-08-16 20:01 - 2015-08-16 20:01 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
    2015-08-16 20:01 - 2015-08-16 20:01 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
    2015-08-16 19:39 - 2015-07-15 19:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
    2015-08-16 19:39 - 2015-07-15 19:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
    2015-08-16 19:39 - 2015-07-15 19:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
    2015-08-16 19:39 - 2015-04-18 04:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
    2015-08-16 19:39 - 2015-04-18 03:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
    2015-08-16 19:39 - 2015-02-18 08:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
    2015-08-16 19:39 - 2015-02-18 08:04 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
    2015-08-16 19:39 - 2015-02-03 04:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
    2015-08-16 19:39 - 2015-02-03 04:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
    2015-08-16 19:39 - 2015-02-03 04:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
    2015-08-16 19:39 - 2015-02-03 04:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
    2015-08-16 19:39 - 2015-02-03 04:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
    2015-08-16 19:39 - 2015-02-03 04:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
    2015-08-16 19:39 - 2015-02-03 04:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
    2015-08-16 19:39 - 2015-02-03 04:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
    2015-08-16 19:39 - 2015-02-03 04:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
    2015-08-16 19:39 - 2015-02-03 04:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
    2015-08-16 19:39 - 2015-02-03 04:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
    2015-08-16 19:39 - 2015-02-03 04:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
    2015-08-16 19:39 - 2015-02-03 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
    2015-08-16 19:39 - 2015-02-03 04:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
    2015-08-16 19:39 - 2015-02-03 04:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
    2015-08-16 19:39 - 2015-02-03 04:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
    2015-08-16 19:39 - 2015-02-03 04:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
    2015-08-16 19:39 - 2015-02-03 04:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
    2015-08-16 19:39 - 2015-02-03 04:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
    2015-08-16 19:39 - 2015-02-03 03:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
    2015-08-16 19:39 - 2014-10-31 23:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
    2015-08-16 19:39 - 2014-06-28 01:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
    2015-08-16 19:39 - 2014-06-28 01:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
    2015-08-16 19:38 - 2015-07-30 19:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
    2015-08-16 19:38 - 2015-07-30 19:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
    2015-08-16 19:38 - 2015-07-30 19:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
    2015-08-16 19:38 - 2015-07-30 19:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
    2015-08-16 19:38 - 2015-07-30 18:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
    2015-08-16 19:38 - 2015-07-30 18:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
    2015-08-16 19:38 - 2015-07-30 18:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
    2015-08-16 19:38 - 2015-07-30 18:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
    2015-08-16 19:38 - 2015-07-30 17:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
    2015-08-16 19:38 - 2015-07-30 17:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
    2015-08-16 19:38 - 2015-07-30 17:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
    2015-08-16 19:38 - 2015-07-15 04:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
    2015-08-16 19:38 - 2015-07-15 04:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
    2015-08-16 19:38 - 2015-07-15 04:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
    2015-08-16 19:38 - 2015-07-10 18:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
    2015-08-16 19:38 - 2015-07-10 18:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
    2015-08-16 19:38 - 2015-07-09 18:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
    2015-08-16 19:38 - 2015-07-09 18:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
    2015-08-16 19:38 - 2015-07-09 18:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
    2015-08-16 19:38 - 2015-07-04 19:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
    2015-08-16 19:38 - 2015-07-04 18:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
    2015-08-16 19:38 - 2015-07-01 21:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
    2015-08-16 19:38 - 2015-07-01 21:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
    2015-08-16 19:38 - 2015-07-01 21:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
    2015-08-16 19:38 - 2015-07-01 21:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
    2015-08-16 19:38 - 2015-06-15 22:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
    2015-08-16 19:38 - 2015-06-15 22:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
    2015-08-16 19:38 - 2015-06-15 22:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
    2015-08-16 19:38 - 2015-06-15 22:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
    2015-08-16 19:38 - 2015-06-15 22:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
    2015-08-16 19:38 - 2015-06-15 22:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
    2015-08-16 19:38 - 2015-06-15 22:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
    2015-08-16 19:38 - 2015-06-15 22:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
    2015-08-16 19:38 - 2015-06-03 21:17 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
    2015-08-16 19:38 - 2015-06-02 01:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
    2015-08-16 19:38 - 2015-06-02 00:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
    2015-08-16 19:38 - 2015-04-29 19:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
    2015-08-16 19:38 - 2015-04-29 19:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
    2015-08-16 19:38 - 2015-04-29 19:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
    2015-08-16 19:38 - 2015-04-29 19:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
    2015-08-16 19:38 - 2015-04-29 19:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
    2015-08-16 19:38 - 2015-04-29 19:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
    2015-08-16 19:38 - 2015-04-29 19:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
    2015-08-16 19:38 - 2015-04-29 19:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
    2015-08-16 19:38 - 2015-04-29 19:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
    2015-08-16 19:38 - 2015-04-29 19:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
    2015-08-16 19:38 - 2015-04-08 04:29 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
    2015-08-16 19:38 - 2015-04-08 04:29 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
    2015-08-16 19:38 - 2015-04-08 04:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
    2015-08-16 19:38 - 2015-02-25 04:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
    2015-08-16 19:38 - 2015-02-03 04:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
    2015-08-16 19:38 - 2015-02-03 04:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
    2015-08-16 19:38 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
    2015-08-16 19:38 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
    2015-08-16 19:37 - 2015-07-15 04:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
    2015-08-16 19:37 - 2015-07-15 04:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
    2015-08-16 19:37 - 2015-07-15 03:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
    2015-08-16 19:37 - 2015-07-15 03:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
    2015-08-16 19:37 - 2015-07-15 03:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
    2015-08-16 19:37 - 2015-07-15 03:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
    2015-08-16 19:37 - 2015-06-17 18:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
    2015-08-16 19:37 - 2015-06-17 18:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
    2015-08-16 19:37 - 2015-04-24 19:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
    2015-08-16 19:37 - 2015-04-24 18:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
    2015-08-16 19:37 - 2015-04-13 04:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
    2015-08-16 19:37 - 2015-03-04 05:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
    2015-08-16 19:37 - 2015-03-04 05:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
    2015-08-16 19:37 - 2015-03-04 05:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
    2015-08-16 19:37 - 2015-01-17 03:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
    2015-08-16 19:37 - 2015-01-17 03:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
    2015-08-16 19:31 - 2015-07-20 19:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
    2015-08-16 19:31 - 2015-07-20 19:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
    2015-08-16 19:31 - 2015-07-20 19:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
    2015-08-16 19:31 - 2015-07-20 18:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
    2015-08-16 19:31 - 2015-07-20 18:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
    2015-08-16 19:31 - 2015-07-20 18:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
    2015-08-16 19:31 - 2015-07-20 18:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
    2015-08-16 19:31 - 2015-07-20 18:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll

    ==================== One Month Modified files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2015-09-11 10:06 - 2009-07-14 05:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2015-09-11 10:06 - 2009-07-14 05:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2015-09-11 10:02 - 2010-10-19 22:11 - 01474566 _____ C:\Windows\WindowsUpdate.log
    2015-09-11 09:58 - 2011-01-14 23:01 - 00000000 ____D C:\Users\Alan\AppData\Local\Deployment
    2015-09-11 09:56 - 2010-10-19 22:15 - 00000000 ____D C:\ProgramData\NVIDIA
    2015-09-11 09:56 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
    2015-09-11 09:40 - 2015-07-27 23:29 - 00000914 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-860982889-626927112-2967376064-1000UA.job
    2015-09-11 09:28 - 2014-10-19 15:28 - 00000911 _____ C:\Windows\Tasks\EPSON WF-3640 Series Update {FB25DD45-6167-43B5-B6A1-C628088E9F76}.job
    2015-09-11 09:28 - 2014-10-19 15:28 - 00000725 _____ C:\Windows\Tasks\EPSON WF-3640 Series Invitation {FB25DD45-6167-43B5-B6A1-C628088E9F76}.job
    2015-09-11 09:05 - 2011-01-02 19:22 - 00000000 ____D C:\ProgramData\MFAData
    2015-09-10 23:40 - 2015-07-27 23:29 - 00000862 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-860982889-626927112-2967376064-1000Core.job
    2015-09-09 21:11 - 2014-09-15 22:36 - 00000000 ____D C:\Users\Alan\AppData\Roaming\foobar2000
    2015-09-09 17:57 - 2009-07-14 06:13 - 00787694 _____ C:\Windows\system32\PerfStringBackup.INI
    2015-09-07 23:01 - 2015-03-03 23:18 - 00000000 ___RD C:\Users\Alan\Dropbox
    2015-09-07 23:01 - 2015-03-03 23:15 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Dropbox
    2015-09-06 12:10 - 2011-01-27 21:25 - 00006794 _____ C:\Windows\WinInit.Ini
    2015-09-05 00:02 - 2013-10-02 00:39 - 00792444 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
    2015-09-05 00:02 - 2012-01-04 22:13 - 00000000 ____D C:\Users\Alan\Documents\Outlook Files
    2015-09-04 22:48 - 2012-10-01 00:19 - 02567680 ___SH C:\Users\Alan\Documents\Thumbs.db
    2015-09-04 21:24 - 2011-05-02 12:50 - 00000000 ____D C:\Windows\Minidump
    2015-09-04 15:50 - 2013-08-19 20:18 - 00000000 ____D C:\ProgramData\Package Cache
    2015-09-04 15:36 - 2012-10-20 13:21 - 01925632 ___SH C:\Users\Alan\Downloads\Thumbs.db
    2015-09-04 13:06 - 2012-09-10 21:22 - 00007629 _____ C:\Users\Alan\AppData\Local\resmon.resmoncfg
    2015-09-04 11:48 - 2011-01-02 17:01 - 00000000 ____D C:\Users\Alan
    2015-09-04 00:38 - 2010-08-31 05:07 - 00000000 ____D C:\Program Files (x86)\Realtek
    2015-09-03 23:54 - 2013-07-02 21:46 - 00000000 ____D C:\Program Files (x86)\Creative
    2015-09-03 23:49 - 2013-07-02 21:48 - 00000000 ___HD C:\Program Files (x86)\Creative Installation Information
    2015-09-03 23:49 - 2013-07-02 21:48 - 00000000 ____D C:\ProgramData\Creative
    2015-09-03 23:49 - 2013-07-02 21:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
    2015-09-03 23:43 - 2010-08-31 05:07 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
    2015-09-01 21:25 - 2013-12-07 13:14 - 00000000 ____D C:\Users\Alan\Documents\CCleaner Backups
    2015-09-01 19:18 - 2009-07-14 06:08 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT
    2015-08-31 15:12 - 2013-07-02 21:46 - 00000000 ____D C:\Program Files\Creative
    2015-08-31 15:09 - 2013-07-02 21:48 - 00466520 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
    2015-08-31 15:09 - 2013-07-02 21:48 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
    2015-08-31 15:09 - 2013-07-02 21:48 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
    2015-08-31 15:09 - 2013-07-02 21:48 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
    2015-08-31 15:08 - 2013-07-02 21:47 - 00000000 ____D C:\Windows\system32\Data
    2015-08-31 14:47 - 2014-06-01 11:23 - 00005374 _____ C:\Windows\unins000.dat
    2015-08-31 00:49 - 2013-09-06 12:16 - 00000000 ____D C:\ProgramData\Sonos,_Inc
    2015-08-30 23:32 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
    2015-08-30 23:32 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration
    2015-08-30 19:05 - 2014-08-23 08:15 - 00000000 ____D C:\Users\Alan\AppData\Local\NVIDIA
    2015-08-30 19:05 - 2013-09-30 00:10 - 00000000 ____D C:\Users\Alan\AppData\Local\Sonos,_Inc
    2015-08-30 19:05 - 2009-07-14 04:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
    2015-08-30 19:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\schemas
    2015-08-30 19:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\AppCompat
    2015-08-30 19:05 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
    2015-08-30 19:04 - 2012-04-14 10:26 - 00000000 ____D C:\Windows\system32\Macromed
    2015-08-30 19:04 - 2010-08-31 05:26 - 00000000 ____D C:\Windows\SysWOW64\Macromed
    2015-08-30 19:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
    2015-08-30 19:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Dism
    2015-08-30 19:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
    2015-08-30 19:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\servicing
    2015-08-29 19:43 - 2008-11-13 17:25 - 00198656 ____N (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
    2015-08-27 23:55 - 2012-03-22 23:45 - 00000000 ____D C:\ProgramData\Skype
    2015-08-27 23:54 - 2012-03-22 23:45 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Skype
    2015-08-27 23:51 - 2010-08-31 05:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support
    2015-08-27 23:51 - 2010-08-31 05:15 - 00000000 ____D C:\Program Files (x86)\Packard Bell
    2015-08-27 23:48 - 2010-08-31 05:48 - 00000000 ___HD C:\OEM
    2015-08-27 20:33 - 2014-05-11 17:09 - 00001425 _____ C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
    2015-08-27 20:03 - 2007-07-12 02:49 - 00000000 ____D C:\Windows\Panther
    2015-08-27 02:47 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\tracing
    2015-08-27 02:47 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
    2015-08-26 23:28 - 2015-03-16 16:47 - 00000000 ____D C:\Program Files (x86)\Karen's Power Tools
    2015-08-26 22:47 - 2011-01-03 13:09 - 00000000 ____D C:\Users\Alan\Downloads\iTunes
    2015-08-26 22:37 - 2011-01-03 13:04 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Apple Computer
    2015-08-26 22:34 - 2011-01-03 12:57 - 00000000 ____D C:\Program Files\Common Files\Apple
    2015-08-26 22:33 - 2011-01-03 12:57 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
    2015-08-26 22:31 - 2011-01-03 12:57 - 00000000 ____D C:\ProgramData\Apple
    2015-08-25 09:37 - 2013-05-15 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
    2015-08-25 09:35 - 2010-10-19 22:11 - 00000000 ____D C:\Program Files\NVIDIA Corporation
    2015-08-24 23:17 - 2011-01-02 23:07 - 00000000 ____D C:\Users\Alan\AppData\Local\Adobe
    2015-08-24 03:11 - 2010-08-31 05:07 - 00135272 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
    2015-08-23 00:45 - 2014-04-12 00:21 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Awesomium
    2015-08-18 09:48 - 2014-08-23 08:13 - 14497760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
    2015-08-18 09:48 - 2013-05-15 11:03 - 17559240 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
    2015-08-18 09:48 - 2013-05-15 11:03 - 02824176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
    2015-08-18 09:48 - 2010-08-31 05:49 - 18634264 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
    2015-08-18 09:48 - 2010-08-31 05:49 - 03209736 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
    2015-08-18 09:48 - 2010-08-31 05:49 - 00026155 _____ C:\Windows\system32\nvinfo.pb
    2015-08-18 09:48 - 2010-07-10 06:38 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
    2015-08-18 01:07 - 2010-07-09 17:27 - 06783280 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
    2015-08-18 01:07 - 2010-07-09 17:27 - 03522168 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
    2015-08-18 01:07 - 2010-07-09 17:27 - 00933168 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
    2015-08-18 01:07 - 2010-07-09 17:27 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
    2015-08-18 01:07 - 2010-02-17 10:47 - 02558768 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
    2015-08-18 01:07 - 2010-02-17 10:47 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
    2015-08-18 01:06 - 2014-08-23 08:14 - 05147024 _____ C:\Windows\system32\nvcoproc.bin
    2015-08-16 22:19 - 2009-07-14 08:45 - 00000000 ____D C:\Program Files\Windows Journal
    2015-08-16 22:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK
    2015-08-16 22:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
    2015-08-16 22:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\zh-HK
    2015-08-16 22:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR
    2015-08-16 19:48 - 2014-05-10 19:05 - 00000000 ____D C:\Windows\system32\MRT

    ==================== Files in the root of some directories =======

    2013-03-22 08:38 - 2013-03-22 08:38 - 0011264 _____ (Intel Corporation) C:\Program Files (x86)\IAStorCommon.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0031744 _____ (Intel Corporation) C:\Program Files (x86)\IAStorDataMgr.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0000121 _____ () C:\Program Files (x86)\IAStorDataMgr.dll.config
    2013-03-22 08:38 - 2013-03-22 08:38 - 0014832 _____ (Intel Corporation) C:\Program Files (x86)\IAStorDataMgrApp.exe
    2013-03-22 08:38 - 2013-03-22 08:38 - 0001252 _____ () C:\Program Files (x86)\IAStorDataMgrApp.exe.config
    2013-03-22 08:38 - 2013-03-22 08:38 - 0015344 _____ (Intel Corporation) C:\Program Files (x86)\IAStorDataMgrSvc.exe
    2013-03-22 08:38 - 2013-03-22 08:38 - 0001310 _____ () C:\Program Files (x86)\IAStorDataMgrSvc.exe.config
    2013-03-22 08:38 - 2013-03-22 08:38 - 0009216 _____ (Intel Corporation) C:\Program Files (x86)\IAStorDataMgrSvcInterfaces.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0013824 _____ (Intel Corporation) C:\Program Files (x86)\IAStorDialogControl.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 1101296 _____ (Intel Corporation) C:\Program Files (x86)\IAStorHelp.exe
    2013-03-22 08:38 - 2013-03-22 08:38 - 0000595 _____ () C:\Program Files (x86)\IAStorHelp.exe.config
    2013-03-22 08:38 - 2013-03-22 08:38 - 0286704 _____ (Intel Corporation) C:\Program Files (x86)\IAStorIcon.exe
    2013-03-22 08:38 - 2013-03-22 08:38 - 0001064 _____ () C:\Program Files (x86)\IAStorIcon.exe.config
    2013-03-22 08:39 - 2013-03-22 08:39 - 0036352 _____ (Intel Corporation) C:\Program Files (x86)\IAStorIconLaunch.exe
    2013-03-22 08:38 - 2013-03-22 08:38 - 0665072 _____ (Intel Corporation) C:\Program Files (x86)\IAStorUI.exe
    2013-03-22 08:38 - 2013-03-22 08:38 - 0000554 _____ () C:\Program Files (x86)\IAStorUI.exe.config
    2013-03-22 08:38 - 2013-03-22 08:38 - 0115712 _____ (Intel Corporation) C:\Program Files (x86)\IAStorUtil.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0374784 _____ (Intel Corporation) C:\Program Files (x86)\IAStorViewModel.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 1560064 _____ (Intel Corporation) C:\Program Files (x86)\IntelVisualDesign.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0049152 _____ ( ) C:\Program Files (x86)\Interop.IWshRuntimeLibrary.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0049152 _____ ( ) C:\Program Files (x86)\Interop.Shell32.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0531456 _____ (Intel Corporation) C:\Program Files (x86)\ISDI2.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0022644 _____ () C:\Program Files (x86)\license.txt
    2013-03-22 08:38 - 2013-03-22 08:38 - 0424448 _____ (Intel Corporation) C:\Program Files (x86)\PSI.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0008192 _____ (Intel Corporation) C:\Program Files (x86)\PSIClient.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0286720 _____ (Intel Corporation) C:\Program Files (x86)\PsiData.dll
    2013-03-22 08:38 - 2013-03-22 08:38 - 0056954 _____ () C:\Program Files (x86)\readmeFRA.txt
    2013-03-22 08:38 - 2013-03-22 08:38 - 0075330 _____ () C:\Program Files (x86)\readmeIRST.txt
    2013-03-22 08:38 - 2013-03-22 08:38 - 0062698 _____ () C:\Program Files (x86)\readmeJPN.txt
    2013-03-22 08:38 - 2013-03-22 08:38 - 0024848 _____ () C:\Program Files (x86)\removdrv.txt
    2012-10-14 22:55 - 2012-10-14 23:28 - 0006144 _____ () C:\Users\Alan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2012-09-10 21:22 - 2015-09-04 13:06 - 0007629 _____ () C:\Users\Alan\AppData\Local\resmon.resmoncfg
    2014-10-19 14:46 - 2014-10-19 14:46 - 0000057 _____ () C:\ProgramData\Ament.ini

    Some files in TEMP:
    ====================
    C:\Users\Alan\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpu0kzjl.dll


    ==================== Bamital & volsnap =================

    (There is no automatic fix for files that do not pass verification.)

    C:\Windows\system32\winlogon.exe => File is digitally signed
    C:\Windows\system32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\system32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\system32\services.exe => File is digitally signed
    C:\Windows\system32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\system32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\system32\rpcss.dll => File is digitally signed
    C:\Windows\system32\dnsapi.dll => File is digitally signed
    C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
    C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


    LastRegBack: 2015-09-11 00:31

    ==================== End of FRST.txt ============================


    Additional scan result of Farbar Recovery Scan Tool (x64) Version:10-09-2015 01
    Ran by Alan (2015-09-11 10:09:35)
    Running from C:\Users\Alan\Desktop
    Windows 7 Home Premium Service Pack 1 (X64) (2011-01-02 16:01:29)
    Boot Mode: Normal
    ==========================================================


    ==================== Accounts: =============================

    Administrator (S-1-5-21-860982889-626927112-2967376064-500 - Administrator - Disabled)
    Alan (S-1-5-21-860982889-626927112-2967376064-1000 - Administrator - Enabled) => C:\Users\Alan
    Guest (S-1-5-21-860982889-626927112-2967376064-501 - Limited - Disabled)
    HomeGroupUser$ (S-1-5-21-860982889-626927112-2967376064-1002 - Limited - Enabled)
    Sonos (S-1-5-21-860982889-626927112-2967376064-1005 - Limited - Enabled)

    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)

    AV: AVG Internet Security 2013 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
    AV: AVG update module (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
    AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: AVG update module (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
    AS: AVG Internet Security 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
    FW: AVG update module (Disabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}
    FW: AVG Internet Security 2013 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}

    ==================== Installed Programs ======================

    (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    AceMoney (HKLM-x32\...\AceMoney_is1) (Version: - MechCAD Software)
    Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.273 - Adobe Systems Incorporated)
    Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
    Agatha Christie - Death on the Nile (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Apple Application Support (32-bit) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.)
    Apple Application Support (64-bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.)
    Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.)
    Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
    Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team)
    AVG 2013 (HKLM\...\AVG) (Version: 2013.0.3532 - AVG Technologies)
    AVG 2013 (Version: 13.0.3532 - AVG Technologies) Hidden
    AVG 2013 (Version: 13.0.4365 - AVG Technologies) Hidden
    Avidemux 2.6 - 64bits (HKLM-x32\...\Avidemux 2.6 - 64bits (64-bit)) (Version: 2.6.6.8941 - )
    Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
    Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
    Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
    CCleaner (HKLM\...\CCleaner) (Version: 4.08 - Piriform)
    Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Colasoft Capsa 8 Free (HKLM-x32\...\Colasoft Capsa 8 Free_is1) (Version: 8.0.0.8053 - Colasoft)
    Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.43 - Creative Technology Limited)
    Creative Audio Control Panel (HKLM-x32\...\AudioCS) (Version: 3.00 - Creative Technology Limited)
    Creative Diagnostics (HKLM-x32\...\Diagnostics 4_5) (Version: 5.11 - Creative Technology Limited)
    Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited)
    Creative Sound Blaster Properties x64 Edition (HKLM-x32\...\Creative Sound Blaster Properties x64 Edition) (Version: 1.03 - Creative Technology Limited)
    Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited)
    Curse Client (HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
    CyberLink MediaShow (HKLM-x32\...\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}) (Version: 5.0.1308 - CyberLink Corp.)
    CyberLink PhotoNow (HKLM-x32\...\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.7717 - CyberLink Corp.)
    CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.4110d - CyberLink Corp.)
    DAPlayer 1.0.1.7 (HKLM-x32\...\DAPlayer_is1) (Version: - Digiarty Software,Inc.)
    dBpoweramp CD Writer (HKLM-x32\...\dBpoweramp CD Writer) (Version: Release 4 - Illustrate)
    dBpoweramp DSP Effects (HKLM-x32\...\dBpoweramp DSP Effects) (Version: Release 9 - Illustrate)
    dBpoweramp Music Converter (HKLM-x32\...\dBpoweramp Music Converter) (Version: Release 14.4 - Illustrate)
    devolo Cockpit (HKLM-x32\...\dlancockpit) (Version: 4.3.0.0 - devolo AG)
    Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Dokan Library 0.5.3 (HKLM-x32\...\DokanLibrary) (Version: - )
    Downloader (HKLM-x32\...\Downloader) (Version: - )
    Dragon Age: Origins (HKLM-x32\...\{AEC81925-9C76-4707-84A9-40696C613ED3}) (Version: 1.04 - Electronic Arts, Inc.)
    Dropbox (HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.)
    DTS Connect Pack (HKLM-x32\...\DTS Connect Pack) (Version: 1.00 - Creative Technology Limited)
    DVB Dream version 2.3b OEM (HKLM-x32\...\DVB Dream_is1) (Version: - )
    Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.45.00 - SEIKO EPSON CORPORATION)
    EPSON Manuals (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.30.0.0 - SEIKO EPSON CORPORATION)
    EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
    EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 2.00.0000 - SEIKO EPSON Corp.)
    EPSON Scan PDF Extensions (HKLM-x32\...\{F9956472-6E16-4F83-BF9A-F887EF4A45B7}) (Version: 1.03.0001 - SEIKO EPSON Corp.)
    EPSON WF-3640 Series Printer Uninstall (HKLM\...\EPSON WF-3640 Series) (Version: - SEIKO EPSON Corporation)
    EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION)
    Exact Audio Copy 1.0beta3 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta3 - Andre Wiethoff)
    Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
    FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Final Drive Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
    foobar2000 v1.3.3 (HKLM-x32\...\foobar2000) (Version: 1.3.3 - Peter Pawlowski)
    Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.0.6.722 - Foxit Corporation)
    Gtk# for .Net 2.12.20 (HKLM-x32\...\{39514A5A-326F-40E4-92C4-668F8D0CE8BD}) (Version: 2.12.20 - Xamarin, Inc.)
    Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.)
    HandBrake 0.10.0 (HKLM-x32\...\HandBrake) (Version: 0.10.0 - )
    Hotkey Utility (HKLM-x32\...\Hotkey Utility) (Version: 2.05.3009 - Packard Bell)
    HP Deskjet 3050 J610 series Basic Device Software (HKLM\...\{6457BD83-98CF-4267-93D7-F173FF3E7C25}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
    HP Deskjet 3050 J610 series Help (HKLM-x32\...\{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}) (Version: 140.0.63.63 - Hewlett Packard)
    Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Packard Bell)
    ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
    Insaniquarium Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation)
    Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
    iTunes (HKLM\...\{BFEAB774-C7DC-4032-B05A-DA5F7CB7B365}) (Version: 12.2.2.25 - Apple Inc.)
    Jewel Quest Solitaire 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
    John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
    jZip (HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\jZip) (Version: 2.0.0.133556 - Bandoo Media Inc) <==== ATTENTION
    Kits Configuration Installer (x32 Version: 8.100.25984 - Microsoft) Hidden
    LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
    LatencyMon 6.50 (HKLM\...\LatencyMon_is1) (Version: - Resplendence Software Projects Sp.)
    LAV Filters 0.61.2 (HKLM-x32\...\lavfilters_is1) (Version: 0.61.2 - Hendrik Leppkes)
    MakeMKV v1.9.2 (HKLM-x32\...\MakeMKV) (Version: v1.9.2 - GuinpinSoft inc)
    Mass Effect (HKLM-x32\...\{1B0FBB9A-995D-47cd-87CD-13E68B676E4F}) (Version: 1.00 - Electronic Arts, Inc.)
    MediaInfo 0.7.64 (HKLM\...\MediaInfo) (Version: 0.7.64 - MediaArea.net)
    MediaPortal (HKLM-x32\...\MediaPortal) (Version: 1.7.1 - Team MediaPortal)
    MediaPortal TV Server / Client (HKLM-x32\...\MediaPortal TV Server) (Version: 1.7.1 - Team MediaPortal)
    Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
    Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.4763.1000 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    MKVToolNix 6.0.0 (HKLM-x32\...\MKVToolNix) (Version: 6.0.0 - Moritz Bunkus)
    Mozilla Firefox 41.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 en-US)) (Version: 41.0 - Mozilla)
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.0.5724 - Mozilla)
    MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
    MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
    Mumble 1.2.3 (HKLM-x32\...\{B4E343DD-BAAB-4D59-AD9C-DEA0AFE09DF1}) (Version: 1.2.3 - Thorvald Natvig)
    MySQL Server 5.6 (HKLM\...\{56DA0CB5-ABD2-4318-BEAB-62FDBC9B12CC}) (Version: 5.6.10 - Oracle Corporation)
    Nero 9 Essentials (HKLM-x32\...\{8b714796-fa65-4ea5-87cb-84231e87806f}) (Version: - Nero AG)
    NVIDIA 3D Vision Controller Driver 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
    NVIDIA 3D Vision Driver 341.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.81 - NVIDIA Corporation)
    NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation)
    NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
    NVIDIA Graphics Driver 341.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.81 - NVIDIA Corporation)
    NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
    OpenAL (HKLM-x32\...\OpenAL) (Version: - )
    Origin (HKLM-x32\...\Origin) (Version: 8.3.7.3619 - Electronic Arts, Inc.)
    Packard Bell Games (HKLM-x32\...\WildTangent packardbell Master Uninstall) (Version: 1.0.1.3 - WildTangent)
    Packard Bell InfoCentre (HKLM-x32\...\Packard Bell InfoCentre) (Version: 3.02.3000 - Packard Bell)
    Packard Bell Recovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Packard Bell)
    Packard Bell Registration (HKLM-x32\...\Packard Bell Registration) (Version: 1.03.3003 - Packard Bell)
    Packard Bell ScreenSaver (HKLM-x32\...\Packard Bell Screensaver) (Version: 1.1.0825.2010 - Packard Bell )
    Packard Bell Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3001 - Packard Bell)
    Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Plex (HKU\S-1-5-21-860982889-626927112-2967376064-1000\...\Plex) (Version: 0.9.504 - Plex, Inc)
    Plex Media Server (HKLM-x32\...\{ca5910de-4c30-4f28-b6bd-5dd8edff922d}) (Version: 0.9.1211 - Plex, Inc.)
    Plex Media Server (x32 Version: 0.9.1211 - Plex, Inc.) Hidden
    Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Power Tab Editor 1.7 (HKLM-x32\...\{6B3CA80E-6AC0-4725-BABF-9B0FEF880CB3}) (Version: 1.7.0 - Power Tab Software)
    PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
    QuickTime (HKLM-x32\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.)
    Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.92.115.2015 - Realtek)
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6045 - Realtek Semiconductor Corp.)
    SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
    SmartControlCenter (HKLM-x32\...\{63CE935C-03E3-4EB4-B194-792CB2F91C87}) (Version: 1.1.3.2 - Netgear)
    Software Updater (HKLM-x32\...\{B307472F-7BD9-4040-9255-CE6D6A1196A3}) (Version: 4.3.1 - SEIKO EPSON CORPORATION)
    Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 29.5.90191 - Sonos, Inc.)
    Sound Blaster X-Fi (HKLM-x32\...\{20288888-A7AF-4B24-8AEB-398D20CD563C}) (Version: 1.0 - Creative Technology Limited)
    Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
    Suunto USB Driver (HKLM\...\SuuntoUSBFTDIVista_is1) (Version: 2.08.28.0 - Suunto Oy)
    TBS 6985 Quad DVBS/S2 Tuner driver 1.0.0.5 for windows (HKLM\...\TBS 6985 Quad DVBS/S2 Tuners driver for windows_is1) (Version: - TBS Technologies)
    TBSViewer (HKLM-x32\...\TBSViewer_is1) (Version: - CM&V)
    TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.41110 - TeamViewer)
    TeraCopy 2.27 (HKLM\...\TeraCopy_is1) (Version: - Code Sector)
    The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 1.0.0.0 - Zenimax Online Studios)
    Toolkit Documentation (x32 Version: 8.100.26866 - Microsoft) Hidden
    Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
    USB Video/Audio Device Driver (HKLM-x32\...\{3717C4F2-7412-4793-9BB8-D73D2817B3D6}) (Version: 1.00.0000 - EETI)
    Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
    Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
    WD SmartWare Quick View (HKLM\...\{0A860ACF-0534-46B9-A17E-8A791CABA282}) (Version: 1.5.3 - Western Digital)
    Welcome Center (HKLM-x32\...\Packard Bell Welcome Center) (Version: 1.02.3004 - Packard Bell)
    WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell) (Version: 4.0.10.25 - WildTangent)
    Windows Assessment and Deployment Kit for Windows 8.1 (HKLM-x32\...\{e9e06304-a604-434b-b35f-d9beb94dc06d}) (Version: 8.100.26866 - Microsoft Corporation)
    Windows Driver Package - TBSDTV TECHNOLOGY (TBS6985_64) MEDIA (06/03/2014 1.0.0.5) (HKLM\...\18578B706750712D4533D27F0C5E241D0E728D9E) (Version: 06/03/2014 1.0.0.5 - TBSDTV TECHNOLOGY)
    Windows Driver Package - TBSDTV TECHNOLOGY (TBS6985_64) MEDIA (11/13/2013 1.0.0.4) (HKLM\...\1108725C0BC47A86DCAB5F453F7A46EA2157F6A9) (Version: 11/13/2013 1.0.0.4 - TBSDTV TECHNOLOGY)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
    Windows Live Sign-in Assistant (HKLM-x32\...\{45338B07-A236-4270-9A77-EBB4115517B5}) (Version: 5.000.818.5 - Microsoft Corporation)
    Windows Live Sync (HKLM-x32\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation)
    Windows Live Upload Tool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
    Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
    World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
    WPT Redistributables (x32 Version: 8.100.26866 - Microsoft) Hidden
    WPTx64 (x32 Version: 8.100.26837 - Microsoft) Hidden
    ZoneAlarm LTD Toolbar (HKLM\...\ZoneAlarm LTD Toolbar) (Version: - Check Point Software Technologies)
    ZTE_MF627_USB_MODEM_1.2059.0.4 (HKLM-x32\...\ZTE_MF627_LEGACY_DRIVER_1.2059.0.4) (Version: - )
    Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
    Zuma's Revenge (x32 Version: 2.2.0.95 - WildTangent) Hidden

    ==================== Custom CLSID (Whitelisted): ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{895572d6-3aee-4795-8ea8-37e3baf7bcd8}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{e64a86a1-22df-43a1-b0b5-941a8adef4a7}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-860982889-626927112-2967376064-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Alan\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)

    ==================== Restore Points =========================

    03-09-2015 23:42:56 Removed NETGEAR WNA3100 wireless USB 2.0 adapter
    03-09-2015 23:47:47 Removed Creative Media Toolbox 6
    04-09-2015 00:37:48 Installed Realtek Ethernet Controller Driver
    04-09-2015 17:07:04 2015-09-04 (pre driver verifier)
    06-09-2015 17:43:51 Windows Backup
    07-09-2015 19:02:03 Windows Backup
    09-09-2015 17:56:09 Windows Backup

    ==================== Hosts content: ===============================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

    ==================== Scheduled Tasks (Whitelisted) =============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    Task: {0EDD7F8A-7869-473B-AB9F-9691E6D20431} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-860982889-626927112-2967376064-1000UA => C:\Users\Alan\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-27] (Dropbox, Inc.)
    Task: {342AB523-4C6F-4A17-B42B-019819612F17} - System32\Tasks\EPSON WF-3640 Series Invitation {FB25DD45-6167-43B5-B6A1-C628088E9F76} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKDE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
    Task: {3BA58B20-CED1-4455-99CA-B71B14A1A47D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-11-22] (Piriform Ltd)
    Task: {4E6C13B6-9642-41B3-AE0B-3CC0D998EB62} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
    Task: {543AEA72-BACF-4226-8CF5-69202D4DA342} - System32\Tasks\{CB46AFCB-E0A2-4F51-966D-521869F2BD7B} => pcalua.exe -a C:\Users\Alan\Downloads\MassEffect_EFIGS_1.02.exe -d C:\Windows\system32
    Task: {7088FE40-4C44-4043-AA02-ED92A8D116F6} - System32\Tasks\{A4F08B55-8B77-4CA6-8F0A-DFA84E27E8CA} => pcalua.exe -a "C:\Users\Alan\Downloads\PLEX\Unsupported Apps\Windows\Plex_UnSupportedAppStore_Installer_Win.exe" -d "C:\Users\Alan\Downloads\PLEX\Unsupported Apps\Windows"
    Task: {91A15CA6-FF91-4F61-8039-37687D161C57} - System32\Tasks\EPSON WF-3640 Series Update {FB25DD45-6167-43B5-B6A1-C628088E9F76} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKDE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
    Task: {FBDC07A5-A173-4E8D-AE6D-00A32B4C1378} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-860982889-626927112-2967376064-1000Core => C:\Users\Alan\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-27] (Dropbox, Inc.)
    Task: {FEF43A8F-F020-42D3-87C9-B70C37E38A71} - System32\Tasks\{929FA919-BF20-4FF3-8B3A-263E1D56340C} => pcalua.exe -a "C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\SetupTv.exe" -d "C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server"

    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

    Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-860982889-626927112-2967376064-1000Core.job => C:\Users\Alan\AppData\Local\Dropbox\Update\DropboxUpdate.exe
    Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-860982889-626927112-2967376064-1000UA.job => C:\Users\Alan\AppData\Local\Dropbox\Update\DropboxUpdate.exe
    Task: C:\Windows\Tasks\EPSON WF-3640 Series Invitation {FB25DD45-6167-43B5-B6A1-C628088E9F76}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKDE.EXE
    Task: C:\Windows\Tasks\EPSON WF-3640 Series Update {FB25DD45-6167-43B5-B6A1-C628088E9F76}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKDE.EXE:/EXE:{FB25DD45-6167-43B5-B6A1-C628088E9F76} /F:UpdateSYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

    ==================== Loaded Modules (Whitelisted) ==============

    2013-05-15 11:04 - 2015-08-18 01:07 - 00115376 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
    2015-05-15 16:26 - 2015-05-15 16:26 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
    2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
    2012-05-19 01:03 - 2012-05-19 01:03 - 00011776 _____ () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
    2013-02-01 15:09 - 2013-02-01 15:09 - 12907520 _____ () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe
    2010-08-31 05:24 - 2010-01-08 08:00 - 00244904 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
    2013-09-23 12:52 - 2011-10-26 17:41 - 00318976 _____ () C:\Program Files\TeraCopy\TeraCopyExt64.dll
    2009-12-14 03:19 - 2009-12-09 10:24 - 00076320 _____ () C:\OEM\USBDECTION\USBS3S4Detection.exe
    2015-07-08 10:20 - 2015-07-08 10:20 - 00016384 ____N () C:\Users\Alan\AppData\Local\Apps\2.0\TNKPEZT0.63Z\LJK14KEJ.VBZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.WowDb.dll
    2015-07-08 10:20 - 2015-07-08 10:20 - 00035840 ____N () C:\Users\Alan\AppData\Local\Apps\2.0\TNKPEZT0.63Z\LJK14KEJ.VBZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.Advertising.dll
    2015-07-08 10:20 - 2015-07-08 10:20 - 00099840 ____N () C:\Users\Alan\AppData\Local\Apps\2.0\TNKPEZT0.63Z\LJK14KEJ.VBZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.CMOD2.dll
    2010-08-04 13:40 - 2010-08-04 13:40 - 00611872 _____ () C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe
    2014-04-26 11:52 - 2014-04-26 11:52 - 00130048 _____ () C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\StreamingServer.dll
    2014-05-11 17:38 - 2014-04-08 16:29 - 00238736 _____ () C:\Program Files (x86)\LAV Filters\x86\libbluray.dll
    2014-04-22 18:38 - 2014-04-22 18:38 - 00057344 _____ () C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TeVii.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00072840 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00196232 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00838792 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00049800 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3-vc80-3_0.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00086664 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_core-vc80-3_0.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 02092680 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_core249.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 01883272 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_imgproc249.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00502920 _____ () C:\Program Files (x86)\Plex\Plex Media Server\tag.dll
    2010-08-04 10:47 - 2010-08-04 10:47 - 00144896 _____ () C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyHook.dll
    2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll
    2014-02-28 19:14 - 2014-02-28 19:14 - 00002560 _____ () C:\Windows\system32\CTXFIRES.DLL
    2013-07-02 21:48 - 2009-12-29 16:49 - 00177664 _____ () C:\Windows\SysWOW64\APOMngr.DLL
    2015-08-23 03:27 - 2015-08-23 03:27 - 00044680 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00027784 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00018568 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00034952 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00836232 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00062600 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00166024 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll
    2015-08-23 03:27 - 2015-08-23 03:27 - 00192136 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00016520 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00081544 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00111240 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd
    2015-08-23 03:27 - 2015-08-23 03:27 - 00689800 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd

    ==================== Alternate Data Streams (Whitelisted) =========

    (If an entry is included in the fixlist, only the ADS will be removed.)

    AlternateDataStreams: C:\Users\Alan\Downloads\St Andrews Court.eml:OECustomProperty

    ==================== Safe Mode (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


    ==================== EXE Association (Whitelisted) ===============

    (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


    ==================== Internet Explorer trusted/restricted ===============

    (If an entry is included in the fixlist, it will be removed from the registry.)


    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-860982889-626927112-2967376064-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
    DNS Servers: 192.168.1.254
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    mpsdrv Firewall Service is not running.
    MpsSvc Firewall Service is not running.

    ==================== MSCONFIG/TASK MANAGER disabled items ==

    (Currently there is no automatic fix for this section.)

    MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR WNA3100 Genie.lnk => C:\Windows\pss\NETGEAR WNA3100 Genie.lnk.CommonStartup
    MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Photo Frame.lnk => C:\Windows\pss\Photo Frame.lnk.CommonStartup
    MSCONFIG\startupreg: Dropbox Update => "C:\Users\Alan\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
    MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
    MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    MSCONFIG\startupreg: Software Suite SE => "C:\Program Files (x86)\Packard Bell\Software Suite SE\SoftSuiteSE.exe" /run

    ==================== FirewallRules (Whitelisted) ===============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    FirewallRules: [{E0CE962F-FDF7-4C0A-BDE3-47D640258439}] => (Allow) svchost.exe
    FirewallRules: [{790727C6-2CD9-4C05-B138-604657DB4CE5}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
    FirewallRules: [{442D990D-6E40-4A44-A53D-7C0B121C37B4}] => (Allow) D:\Program Files\AVG\AVG10\avgmfapx.exe
    FirewallRules: [{8B39B00B-AC41-4179-BC81-DD317789E8DA}] => (Allow) D:\Program Files\AVG\AVG10\avgmfapx.exe
    FirewallRules: [{B19A8427-2DDB-43B5-9077-26BA3845CCC8}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    FirewallRules: [{BCCE5906-CB73-4806-9888-9FE00478F247}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    FirewallRules: [{6F1F9F77-774E-4CE2-A7BF-EA95F1EB8E13}] => (Allow) D:\Program Files\Games\Dragon Age\bin_ship\daorigins.exe
    FirewallRules: [{D1A42E7B-D634-49BB-9AC7-02373B02A320}] => (Allow) D:\Program Files\Games\Dragon Age\bin_ship\daorigins.exe
    FirewallRules: [{8688DF98-A0D2-4D67-8A42-3F1757ED58B2}] => (Allow) D:\Program Files\Games\Dragon Age\DAOriginsLauncher.exe
    FirewallRules: [{995662CE-6E7E-47C7-9D42-83C0DF4DA5CF}] => (Allow) D:\Program Files\Games\Dragon Age\DAOriginsLauncher.exe
    FirewallRules: [{69AEC14C-68FF-4C97-8077-74672CCC1170}] => (Allow) D:\Program Files\Games\Mass Effect\Binaries\MassEffect.exe
    FirewallRules: [{7BD94855-974C-40F4-9C30-E477EC678F93}] => (Allow) D:\Program Files\Games\Mass Effect\Binaries\MassEffect.exe
    FirewallRules: [{E0869DA2-F016-4841-870C-41AEBF0396F9}] => (Allow) D:\Program Files\Games\Mass Effect\MassEffectLauncher.exe
    FirewallRules: [{A70FCC2B-C586-4482-996D-76B3804AAC0C}] => (Allow) D:\Program Files\Games\Mass Effect\MassEffectLauncher.exe
    FirewallRules: [{8D4B963A-9C06-4055-8A48-20F76EBCC02A}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\swtor\retailclient\swtor.exe
    FirewallRules: [{F1092F2C-FE6F-40B8-B854-F1A4E67AAD02}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\swtor\retailclient\swtor.exe
    FirewallRules: [{65023310-CD28-4EB7-B305-54153F3395AA}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\swtor\retailclient\swtor.exe
    FirewallRules: [{646B1788-2887-4B78-8848-19652CF30177}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\swtor\retailclient\swtor.exe
    FirewallRules: [{193C5880-2560-4C39-8359-885A26B57EFF}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\launcher.exe
    FirewallRules: [{F5F5305E-9ED8-41DE-8126-D58E99149D03}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\launcher.exe
    FirewallRules: [{D06A09BE-A706-4877-B65A-DA41B00F25D0}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\launcher.exe
    FirewallRules: [{23875D0B-C781-4778-A6D0-B18B9E076622}] => (Allow) D:\Personal\Games\Star Wars-The Old Republic\launcher.exe
    DomainProfile\GloballyOpenPorts: [9000:TCP] => Enabled:Logitech Media Server 9000 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9001:TCP] => Enabled:Logitech Media Server 9001 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9002:TCP] => Enabled:Logitech Media Server 9002 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9003:TCP] => Enabled:Logitech Media Server 9003 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9004:TCP] => Enabled:Logitech Media Server 9004 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9005:TCP] => Enabled:Logitech Media Server 9005 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9006:TCP] => Enabled:Logitech Media Server 9006 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9007:TCP] => Enabled:Logitech Media Server 9007 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9008:TCP] => Enabled:Logitech Media Server 9008 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9009:TCP] => Enabled:Logitech Media Server 9009 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9010:TCP] => Enabled:Logitech Media Server 9010 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9100:TCP] => Enabled:Logitech Media Server 9100 tcp (UI)
    DomainProfile\GloballyOpenPorts: [8000:TCP] => Enabled:Logitech Media Server 8000 tcp (UI)
    DomainProfile\GloballyOpenPorts: [10000:TCP] => Enabled:Logitech Media Server 10000 tcp (UI)
    DomainProfile\GloballyOpenPorts: [9090:TCP] => Enabled:Logitech Media Server 9090 tcp (UI)
    DomainProfile\GloballyOpenPorts: [3483:UDP] => Enabled:Logitech Media Server 3483 udp
    DomainProfile\GloballyOpenPorts: [3483:TCP] => Enabled:Logitech Media Server 3483 tcp
    StandardProfile\GloballyOpenPorts: [9000:TCP] => Enabled:Logitech Media Server 9000 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9001:TCP] => Enabled:Logitech Media Server 9001 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9002:TCP] => Enabled:Logitech Media Server 9002 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9003:TCP] => Enabled:Logitech Media Server 9003 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9004:TCP] => Enabled:Logitech Media Server 9004 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9005:TCP] => Enabled:Logitech Media Server 9005 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9006:TCP] => Enabled:Logitech Media Server 9006 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9007:TCP] => Enabled:Logitech Media Server 9007 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9008:TCP] => Enabled:Logitech Media Server 9008 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9009:TCP] => Enabled:Logitech Media Server 9009 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9010:TCP] => Enabled:Logitech Media Server 9010 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9100:TCP] => Enabled:Logitech Media Server 9100 tcp (UI)
    StandardProfile\GloballyOpenPorts: [8000:TCP] => Enabled:Logitech Media Server 8000 tcp (UI)
    StandardProfile\GloballyOpenPorts: [10000:TCP] => Enabled:Logitech Media Server 10000 tcp (UI)
    StandardProfile\GloballyOpenPorts: [9090:TCP] => Enabled:Logitech Media Server 9090 tcp (UI)
    StandardProfile\GloballyOpenPorts: [3483:UDP] => Enabled:Logitech Media Server 3483 udp
    StandardProfile\GloballyOpenPorts: [3483:TCP] => Enabled:Logitech Media Server 3483 tcp

    ==================== Faulty Device Manager Devices =============

    Name: NativeWiFi Filter
    Description: NativeWiFi Filter
    Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
    Manufacturer:
    Service: NativeWifiP
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

    Name: Realtek High Definition Audio
    Description: Realtek High Definition Audio
    Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
    Manufacturer: Realtek
    Service: IntcAzAudAddService
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

    Name: Microsoft PS/2 Mouse
    Description: Microsoft PS/2 Mouse
    Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
    Manufacturer: Microsoft
    Service: i8042prt
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

    Name: Windows Firewall Authorization Driver
    Description: Windows Firewall Authorization Driver
    Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
    Manufacturer:
    Service: mpsdrv
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

    Could not list Devices. Check "winmgmt" service or repair WMI.


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (09/09/2015 07:03:45 PM) (Source: Application Hang) (EventID: 1002) (User: )
    Description: The program firefox.exe version 41.0.0.5724 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

    Process ID: 12d4

    Start Time: 01d0eb27a66358f6

    Termination Time: 957

    Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

    Report Id:

    Error: (09/07/2015 07:28:29 PM) (Source: Windows Backup) (EventID: 4104) (User: )
    Description: The backup was not successful. The error is: One of the backup files could not be created. (0x8078002A).

    Error: (09/07/2015 07:28:21 PM) (Source: Microsoft-Windows-Backup) (EventID: 517) (User: NT AUTHORITY)
    Description: The backup operation that started at '2015-09-07T18:02:03.564444600Z' has failed with following error code '2155348010' (%%2155348010). Please review the event details for a solution, and then rerun the backup operation once the issue is resolved.

    Error: (09/07/2015 02:58:10 AM) (Source: Windows Backup) (EventID: 4104) (User: )
    Description: The backup was not successful. The error is: One of the backup files could not be created. (0x8078002A).

    Error: (09/07/2015 02:57:57 AM) (Source: Microsoft-Windows-Backup) (EventID: 517) (User: NT AUTHORITY)
    Description: The backup operation that started at '2015-09-06T16:43:51.256256400Z' has failed with following error code '2155348010' (%%2155348010). Please review the event details for a solution, and then rerun the backup operation once the issue is resolved.

    Error: (09/06/2015 12:46:07 PM) (Source: Windows Backup) (EventID: 4104) (User: )
    Description: The backup was not successful. The error is: Windows Backup failed while determining libraries location of one of the users included in backup. (0x81000031).

    Error: (09/05/2015 05:10:01 AM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: CompatTelRunner.exe, version: 10.0.10208.0, time stamp: 0x55b5cf7a
    Faulting module name: ntdll.dll, version: 6.1.7601.18939, time stamp: 0x55b02e88
    Exception code: 0xc0000005
    Fault offset: 0x000000000004ac04
    Faulting process id: 0x1db4
    Faulting application start time: 0xCompatTelRunner.exe0
    Faulting application path: CompatTelRunner.exe1
    Faulting module path: CompatTelRunner.exe2
    Report Id: CompatTelRunner.exe3

    Error: (08/30/2015 11:36:16 PM) (Source: System Restore) (EventID: 8210) (User: )
    Description: An unspecified error occurred during System Restore: (Restore Operation). Additional information: 0x80070005.

    Error: (08/30/2015 11:20:20 PM) (Source: System Restore) (EventID: 8210) (User: )
    Description: An unspecified error occurred during System Restore: (Windows Update). Additional information: 0x80070005.

    Error: (08/30/2015 06:46:23 PM) (Source: System Restore) (EventID: 8210) (User: )
    Description: An unspecified error occurred during System Restore: (Windows Update). Additional information: 0x80070005.


    System errors:
    =============
    Error: (09/11/2015 09:58:42 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
    Description: The HomeGroup Listener service terminated with service-specific error %%-2147023143.

    Error: (09/11/2015 09:57:50 AM) (Source: VDS Basic Provider) (EventID: 1) (User: )
    Description: Unexpected failure. Error code: D@01010004

    Error: (09/11/2015 09:57:43 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
    Description: The following boot-start or system-start driver(s) failed to load:
    CSN5PDTS82
    CsNdisLWF

    Error: (09/11/2015 09:56:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
    Description: The Windows Firewall service depends on the Windows Firewall Authorization Driver service which failed to start because of the following error:
    %%1058

    Error: (09/11/2015 09:56:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Windows Firewall Authorization Driver service failed to start due to the following error:
    %%1058

    Error: (09/11/2015 09:56:22 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
    Description: The WLAN AutoConfig service depends on the NativeWiFi Filter service which failed to start because of the following error:
    %%1058

    Error: (09/11/2015 09:56:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The NativeWiFi Filter service failed to start due to the following error:
    %%1058

    Error: (09/11/2015 09:53:45 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
    Description: The TVService service did not shut down properly after receiving a preshutdown control.

    Error: (09/11/2015 09:53:19 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
    Description: The ScRegSetValueExW call failed for FailureActions with the following error:
    %%5

    Error: (09/11/2015 12:58:14 AM) (Source: Disk) (EventID: 11) (User: )
    Description: The driver detected a controller error on \Device\Harddisk6\DR6.


    Microsoft Office:
    =========================
    Error: (09/09/2015 07:03:45 PM) (Source: Application Hang) (EventID: 1002) (User: )
    Description: firefox.exe41.0.0.572412d401d0eb27a66358f6957C:\Program Files (x86)\Mozilla Firefox\firefox.exe

    Error: (09/07/2015 07:28:29 PM) (Source: Windows Backup) (EventID: 4104) (User: )
    Description: One of the backup files could not be created. (0x8078002A)

    Error: (09/07/2015 07:28:21 PM) (Source: Microsoft-Windows-Backup) (EventID: 517) (User: NT AUTHORITY)
    Description: 2015-09-07T18:02:03.564444600Z2155348010%%2155348010

    Error: (09/07/2015 02:58:10 AM) (Source: Windows Backup) (EventID: 4104) (User: )
    Description: One of the backup files could not be created. (0x8078002A)

    Error: (09/07/2015 02:57:57 AM) (Source: Microsoft-Windows-Backup) (EventID: 517) (User: NT AUTHORITY)
    Description: 2015-09-06T16:43:51.256256400Z2155348010%%2155348010

    Error: (09/06/2015 12:46:07 PM) (Source: Windows Backup) (EventID: 4104) (User: )
    Description: Windows Backup failed while determining libraries location of one of the users included in backup. (0x81000031)

    Error: (09/05/2015 05:10:01 AM) (Source: Application Error) (EventID: 1000) (User: )
    Description: CompatTelRunner.exe10.0.10208.055b5cf7antdll.dll6.1.7601.1893955b02e88c0000005000000000004ac041db401d0e78ddcbb38eaC:\Windows\system32\CompatTelRunner.exeC:\Windows\SYSTEM32\ntdll.dllfa35354b-5383-11e5-9cac-1078d2701eb1

    Error: (08/30/2015 11:36:16 PM) (Source: System Restore) (EventID: 8210) (User: )
    Description: Restore Operation0x80070005

    Error: (08/30/2015 11:20:20 PM) (Source: System Restore) (EventID: 8210) (User: )
    Description: Windows Update0x80070005

    Error: (08/30/2015 06:46:23 PM) (Source: System Restore) (EventID: 8210) (User: )
    Description: Windows Update0x80070005


    CodeIntegrity:
    ===================================
    Date: 2015-08-16 20:03:44.910
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\Temp\FCE7AC1C-6EF8-4EDA-B9AA-4AD04475133F\amd64_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22436_none_b5e7f8ade1f2fff4\appid.sys because the set of per-page image hashes could not be found on the system.

    Date: 2015-08-16 20:03:44.688
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\Temp\FCE7AC1C-6EF8-4EDA-B9AA-4AD04475133F\amd64_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22436_none_b5e7f8ade1f2fff4\appid.sys because the set of per-page image hashes could not be found on the system.

    Date: 2015-08-16 20:03:44.166
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\Temp\FCE7AC1C-6EF8-4EDA-B9AA-4AD04475133F\wow64_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22436_none_c03ca3001653c1ef\appidapi.dll because the set of per-page image hashes could not be found on the system.

    Date: 2015-08-16 20:03:43.982
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\Temp\FCE7AC1C-6EF8-4EDA-B9AA-4AD04475133F\wow64_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22436_none_c03ca3001653c1ef\appidapi.dll because the set of per-page image hashes could not be found on the system.


    ==================== Memory info ===========================

    Processor: Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
    Percentage of memory in use: 30%
    Total physical RAM: 8183.11 MB
    Available physical RAM: 5721.24 MB
    Total Virtual: 16366.22 MB
    Available Virtual: 13088.14 MB

    ==================== Drives ================================

    Drive c: (Packard Bell) (Fixed) (Total:690.95 GB) (Free:183.33 GB) NTFS
    Drive d: (DATA) (Fixed) (Total:691.21 GB) (Free:321.45 GB) NTFS
    Drive e: (Repair disc Windows 7 64-bit) (CDROM) (Total:0.26 GB) (Free:0 GB) UDF
    Drive m: (Beta-3TB) (Fixed) (Total:2794.39 GB) (Free:347.63 GB) NTFS

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: CD03BA10)
    Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
    Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
    Partition 3: (Not Active) - (Size=691 GB) - (Type=07 NTFS)
    Partition 4: (Not Active) - (Size=691.2 GB) - (Type=07 NTFS)
    Could not read MBR for disk 1.

    ========================================================
    Disk: 2 (Size: 2794.5 GB) (Disk ID: 135C8CAA)

    Partition: GPT.

    ==================== End of Addition.txt ============================

    esults of screen317's Security Check version 1.008
    Windows 7 Service Pack 1 x64 (UAC is enabled)
    Internet Explorer 11
    ``````````````Antivirus/Firewall Check:``````````````
    AVG Internet Security 2013
    AVG update module
    Antivirus up to date! (On Access scanning disabled!)
    `````````Anti-malware/Other Utilities Check:`````````
    Mozilla Firefox (41.0)
    ````````Process Check: objlist.exe by Laurent````````
    AVG avgwdsvc.exe
    `````````````````System Health check`````````````````
    Total Fragmentation on Drive C: 0%
    ````````````````````End of Log``````````````````````


    • Ad Bot

      advertising
      Beep.

        
       

  2. #2
    Corrine's Avatar
    Join Date
    Feb 2012
    Location
    Upstate, NY
    Posts
    8,470

    Re: Severe PC performance degradation

    Hi, beranim. Welcome to Sysnative.

    Your logs are essentially clean. In fact after researching the four drivers suggested for removal in the log, they are legitimate. I'm not seeing anything that would point to the performance degradation you are experiencing.

    I did note that you have AVG Internet Security 2013 installed and haven't upgraded to the 2015 version.

    I'm surprised Malwarebytes didn't tag jZip, which is includes a toolbar/browser hijack, installed in background without user consent. "The toolbar displays advertising and adds itself to the Internet Explorer, Firefox and Opera. It also changes the start page and runs a so called Datamanager in background". It is a clone of the popular 7Zip, available from Download. Since I saw no signs of the toolbar, I'll leave it up to you if you wish to continue using it and it isn't giving you any problems.

    For the minor issues and to clear temp files, please do the following:

    Please do the following to run FRST:

    Note: If the tool warns you about the version you're using being an outdated version please download and run the updated version.

    NOTICE: This script was written specifically for this user. Running it on another machine may cause damage to your operating system
    • Open Notepad (Start =>All Programs => Accessories => Notepad).
    • Copy/Paste the entire contents of the code box below into Notepad.
    Code:
    start
    CreateRestorePoint:
    CloseProcesses:
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    CHR HKU\S-1-5-21-860982889-626927112-2967376064-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    EmptyTemp:
    end
    • Click Format and ensure Wordwrap is unchecked.
    • Important: Save the code to the same folder/directory that FRST.exe is located in, naming it as fixlist.txt
    • Start FRST in a similar manner to when you ran a scan earlier, but this time when it opens ....
      • Press the Fix button once and wait.
      • FRST will process fixlist.txt
      • When finished, it will produce a log fixlog.txt in the same folder/directory as FRST64.exe
      • Please post the log in your next reply.


    Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

    Remember - A day without laughter is a day wasted.
    May the wind sing to you and the sun rise in your heart.

  3. #3

    Join Date
    Sep 2015
    Location
    Leeds, UK
    Posts
    21
    • specs System Specs
      • Manufacturer:
        Packard Bell
      • Model Number:
        ipower G5800
      • Motherboard:
        ipower G5800
      • CPU:
        Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
      • Memory:
        8GB
      • Graphics:
        NVIDIA GeForce GT 330
      • Sound Card:
        Creatuiive SB X-Fi Titanium
      • Hard Drives:
        1 x 1.5 TB(WD I think - as supplied) (configured as C:\ and D:\ drives), 1 x 3TB (WD)
      • Operating System:
        Windows 7 Home Premium SP1

    Re: Severe PC performance degradation

    Hello Corrine,

    Thank you for your input. Regarding AVG, there seems to be a wide range of views over internet security protection. Some say AVG is good, bad, bloaty etc. I am happy to take advice & guidance, but to be fair to AVG it has been 'pretty' effective and I am not sure if its performance has changed (not having any logs) regarding overheads when the PC performance was ok. I don't rule it out as having some impact, I haven't seen any damning evidence to make it the main culprit. I guess what I am saying (in a long roundabout way) is that I may stick with AVG (upgrading) or move to alternatives as part of the complete resolution.

    With regards to jZip, I would agree that whilst it might not be causing a problem, I am not so keen on software going beyond the remit for which I installed, so will have a look at 7Zip. I will leave any changes until a bit later though (unless evidence does come out to show jZip is a problem).

    Back to the main thread then, here is a paste of the fixlog

    Fix result of Farbar Recovery Scan Tool (x64) Version:10-09-2015 01
    Ran by Alan (2015-09-12 12:13:41) Run:1
    Running from C:\Users\Alan\Desktop
    Loaded Profiles: Alan (Available Profiles: Alan)
    Boot Mode: Normal
    ==============================================

    fixlist content:
    *****************
    start
    CreateRestorePoint:
    CloseProcesses:
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    CHR HKU\S-1-5-21-860982889-626927112-2967376064-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    EmptyTemp:
    end
    *****************

    Restore point was successfully created.
    Processes closed successfully.
    "HKLM\SOFTWARE\Policies\Google" => key removed successfully
    "HKU\S-1-5-21-860982889-626927112-2967376064-1000\SOFTWARE\Policies\Google" => key removed successfully
    EmptyTemp: => 17.4 GB temporary data Removed.


    The system needed a reboot..

    ==== End of Fixlog 12:15:33 ====

    Look forward to next steps and thank you again for your time,

  4. #4
    Corrine's Avatar
    Join Date
    Feb 2012
    Location
    Upstate, NY
    Posts
    8,470

    Re: Severe PC performance degradation

    Hi, beranim.

    As long as you are happy with AVG Internet Security, there is no need to change. You may, however, want to take a look at updated features in the more recent version.

    1. Since the issues you are having are not malware related, let's take care of removing the tools used:

    Please download Delfix from here.

    Ensure the following boxes are checked:
    • Remove disinfection tools
    • Create registry backup
    • Purge system restore
    • Click Run

    The program will run for a few moments and then notepad will open with a log. Please paste the log in your next reply.

    2. Regarding the latency issues, this is most definitely not my area of expertise. Although you have run LatencyMon, you may see different results with the DPC Latency Checker suggested in this tutorial: How to Diagnose and Fix High DPC Latency Issues with WPA (Windows Vista/7/8). Regardless of whether you elect to run the DPC Latency Checker or not, I suggest you follow the instructions in "Step II (if necessary): Identifying the Cause".


    Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

    Remember - A day without laughter is a day wasted.
    May the wind sing to you and the sun rise in your heart.

  5. #5

    Join Date
    Sep 2015
    Location
    Leeds, UK
    Posts
    21
    • specs System Specs
      • Manufacturer:
        Packard Bell
      • Model Number:
        ipower G5800
      • Motherboard:
        ipower G5800
      • CPU:
        Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
      • Memory:
        8GB
      • Graphics:
        NVIDIA GeForce GT 330
      • Sound Card:
        Creatuiive SB X-Fi Titanium
      • Hard Drives:
        1 x 1.5 TB(WD I think - as supplied) (configured as C:\ and D:\ drives), 1 x 3TB (WD)
      • Operating System:
        Windows 7 Home Premium SP1

    Re: Severe PC performance degradation

    Hi, Corrine

    I have executed Delfix and here is the log. I have noticed today that the machine has crashed twice and having looked into the system files, I see that there was a crash yesterday as well (on the basis of system.dmp files being present)


    # DelFix v1.011 - Logfile created 12/09/2015 at 17:58:42
    # Updated 18/08/2015 by Xplode
    # Username : Alan - WESTRAY-GAMER
    # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

    ~ Removing disinfection tools ...

    Deleted : C:\FRST
    Deleted : C:\Users\Alan\Desktop\FRST-OlderVersion
    Deleted : C:\Users\Alan\Desktop\Fixlog.txt
    Deleted : C:\Users\Alan\Desktop\FRST64.exe
    Deleted : C:\Users\Alan\Desktop\SecurityCheck.exe
    Deleted : C:\Users\Public\Desktop\mkvmerge GUI.lnk
    Deleted : C:\Users\Alan\Downloads\FRST64.exe
    Deleted : C:\Users\Alan\Downloads\SecurityCheck.exe

    ~ Creating registry backup ... OK

    ~ Cleaning system restore ...

    Deleted : RP #325 [Removed Creative Media Toolbox 6 | 09/03/2015 22:47:47]
    Deleted : RP #326 [Installed Realtek Ethernet Controller Driver | 09/03/2015 23:37:48]
    Deleted : RP #327 [2015-09-04 (pre driver verifier) | 09/04/2015 16:07:04]
    Deleted : RP #328 [Windows Backup | 09/06/2015 16:43:51]
    Deleted : RP #329 [Windows Backup | 09/07/2015 18:02:03]
    Deleted : RP #330 [Windows Backup | 09/09/2015 16:56:09]
    Deleted : RP #332 [Restore Point Created by FRST | 09/12/2015 11:14:00]

    New restore point created !

    ########## - EOF - ##########

    Thanks

  6. #6
    Corrine's Avatar
    Join Date
    Feb 2012
    Location
    Upstate, NY
    Posts
    8,470

    Re: Severe PC performance degradation

    Since you are now seeing dump files, I suggest you move on to the next step and have one of the BSOD Kernel Dump Experts take a look. The instructions are here: Blue Screen of Death (BSOD) Posting Instructions - Windows 10, 8.1, 8, 7 & Vista. Good luck!


    Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

    Remember - A day without laughter is a day wasted.
    May the wind sing to you and the sun rise in your heart.

Similar Threads

  1. High Latency, Severe Audio/Video Buzz/Lag
    By nosch455 in forum Windows 7 | Windows Vista
    Replies: 7
    Last Post: 01-20-2016, 06:29 AM
  2. Samsung 840/840 EVO Performance Degredation
    By Tekno Venus in forum Hardware
    Replies: 3
    Last Post: 10-16-2014, 05:29 PM
  3. DDR4 Next-gen memory. Next-gen performance.
    By JMH in forum News You Can Use
    Replies: 0
    Last Post: 11-17-2013, 07:53 PM
  4. Replies: 0
    Last Post: 10-01-2013, 10:34 PM

Log in

Log in