Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:16-08-2015
Ran by Alvaro (administrator) on G7 (16-08-2015 23:18:34)
Running from C:\Users\Alvar_000\Desktop\Fake BSOD
Loaded Profiles: Alvaro (Available Profiles: Alvaro)
Platform: Windows 10 Pro (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Sandboxie Holdings, LLC) D:\Security\SandBoxie\SbieSvc.exe
(Stardock Software, Inc) D:\System\Start 8\Ver 1.5\Start8Srv.exe
(Stardock Software, Inc) D:\System\Start 8\Ver 1.5\Start8_64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
() D:\Storage\ADrive\Desktop\mounter.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Tablet Driver) C:\Windows\System32\drivers\WTSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
() C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
(Microsoft) C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBorders.exe
(Microsoft) C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBorders.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Skype Technologies S.A.) D:\Online\Skype\Phone\Skype.exe
(Dropbox, Inc.) C:\Users\Alvar_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe
(Sandboxie Holdings, LLC) D:\Security\SandBoxie\SbieCtrl.exe
(Microsoft Corporation) C:\Users\Alvar_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Dropbox, Inc.) C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Piriform Ltd) D:\Maintenance\Cleaners\CCleaner\Ver 5.06.5219\CCleaner64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exe
() C:\Users\Alvar_000\Desktop\New folder\3. FRST64.exe
() C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBordersHelper.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-07-17] (Synaptics Incorporated)
HKLM-x32\...\Run: [EaseUS EPM tray] => D:\System\EaseUS\Partition Master Ver 10.2\EaseUS Partition Master 10.2\bin\EpmNews.exe [2089056 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd)
HKLM-x32\...\Run: [EaseUS EPM Tray Agent] => D:\System\EaseUS\Partition Master Ver 10.2\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe [255072 2014-11-18] ()
HKLM-x32\...\Run: [EaseUS TB Tray Agent] => C:\Program Files (x86)\EaseUS\TrayPopup\TrayTipAgent.exe [253992 2014-12-15] ()
HKLM-x32\...\Run: [OpwareSE2] => D:\Images\Scanning\CanoScan 8400 F\OpwareSE2.exe [49152 2003-05-08] (ScanSoft, Inc.)
HKLM-x32\...\Run: [OPSE reminder] => D:\Images\Scanning\CanoScan 8400 F\EregEng\Ereg.exe [729088 2003-07-07] (ScanSoft, Inc.)
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2068856 2011-10-12] (Flexera Software LLC.)
HKLM-x32\...\Run: [DNS7reminder] => D:\Office\Dragon\Ereg\Ereg.exe [328992 2010-10-27] (Nuance Communications, Inc.)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 5\CyberGhost.exe [430048 2015-05-21] (CyberGhost S.R.L.)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [Spotify] => C:\Users\Alvar_000\AppData\Roaming\Spotify\Spotify.exe [6162488 2014-07-27] (Spotify Ltd)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [Spotify Web Helper] => C:\Users\Alvar_000\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1178168 2014-07-27] (Spotify Ltd)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [CCleaner Monitoring] => D:\Maintenance\Cleaners\CCleaner\Ver 5.06.5219\CCleaner64.exe [8322328 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [Skype] => D:\Online\Skype\Phone\Skype.exe [53282944 2015-06-29] (Skype Technologies S.A.)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [Boxcryptor.exe] => D:\Security\Boxcryptor\Boxcryptor.exe [1063168 2014-02-19] (Secomba GmbH)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [Spybot-S&D Cleaning] => D:\Security\Spybot\Ver 2.4\Spybot - Search & Destroy 2\SDCleaner.exe [4566952 2014-06-24] (Safer-Networking Ltd.)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2068856 2011-10-12] (Flexera Software LLC.)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [Dropbox Update] => C:\Users\Alvar_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-17] (Dropbox, Inc.)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [SandboxieControl] => D:\Security\SandBoxie\SbieCtrl.exe [787592 2015-06-23] (Sandboxie Holdings, LLC)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\Run: [OneDrive] => C:\Users\Alvar_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe [402632 2015-08-01] (Microsoft Corporation)
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\...\RunOnce: [Uninstall C:\Users\Alvar_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Alvar_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2014-04-30]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-06-17]
ShortcutTarget: Dropbox.lnk -> C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
SSODL: EldosMountNotificator-cbfs4 - {D5C905A3-7EE6-4ABF-BD67-D41F5E96D4EF} - C:\WINDOWS\system32\cbfsMntNtf4.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator-cbfs4 - {D5C905A3-7EE6-4ABF-BD67-D41F5E96D4EF} - C:\WINDOWS\SysWOW64\cbfsMntNtf4.dll (EldoS Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Alvar_000\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [EldosIconOverlay-cbfs4] -> {3808E0B8-D504-496D-93BD-35E76180E006} => C:\WINDOWS\system32\cbfsMntNtf4.dll [2013-11-15] (EldoS Corporation)
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay-cbfs4] -> {3808E0B8-D504-496D-93BD-35E76180E006} => C:\WINDOWS\SysWOW64\cbfsMntNtf4.dll [2013-11-15] (EldoS Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
HKU\S-1-5-21-4177520706-2818649810-840986709-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.my.msn.com/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> D:\Security\LastPass\LPToolbar_x64.dll [2015-05-11] (LastPass)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> D:\Security\LastPass\LPToolbar.dll [2015-05-11] (LastPass)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Toolbar: HKLM - No Name - {9A87E478-A2BD-44C4-9F8C-D3989A5271B1} - No File
Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - D:\Security\LastPass\LPToolbar_x64.dll [2015-05-11] (LastPass)
Toolbar: HKLM-x32 - No Name - {9A87E478-A2BD-44C4-9F8C-D3989A5271B1} - No File
Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - D:\Security\LastPass\LPToolbar.dll [2015-05-11] (LastPass)
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll [2013-04-16] (Belarc, Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8ddeaaf6-9c2a-4b13-9dbc-ddf863405d85}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Alvar_000\AppData\Roaming\Mozilla\Firefox\Profiles\d1jrku5i.default-1431271501302
FF DefaultSearchEngine.US: Google
FF Homepage: https://news.google.com/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-16] ()
FF Plugin: @lastpass.com/NPLastPass -> D:\Security\LastPass\nplastpass64.dll [2015-05-11] (LastPass)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-16] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Music\Apple\iTunes\Mozilla Plugins\npitunes.dll [2014-02-21] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> D:\Office\PDF\FoxIt\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> D:\Office\PDF\FoxIt\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @lastpass.com/NPLastPass -> D:\Security\LastPass\nplastpass.dll [2015-05-11] (LastPass)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @playon.tv/PlayOnToolbar -> C:\Program Files (x86)\MediaMall\toolbar\npVT.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> D:\Images\VLC\VLC\npvlc.dll [No File]
FF Plugin-x32: nuance.com/DragonRIAPlugin -> D:\Office\Dragon\Program\npDgnRia.dll [2013-02-11] (Nuance Communications Inc.)
FF Extension: LastPass - C:\Users\Alvar_000\AppData\Roaming\Mozilla\Firefox\Profiles\d1jrku5i.default-1431271501302\Extensions\support@lastpass.com [2015-07-17]
FF Extension: WOT - C:\Users\Alvar_000\AppData\Roaming\Mozilla\Firefox\Profiles\d1jrku5i.default-1431271501302\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-07-13]
FF Extension: Self-Destructing Cookies - C:\Users\Alvar_000\AppData\Roaming\Mozilla\Firefox\Profiles\d1jrku5i.default-1431271501302\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2015-05-17]
FF Extension: AdF.ly Skipper ★WORKING★ - C:\Users\Alvar_000\AppData\Roaming\Mozilla\Firefox\Profiles\d1jrku5i.default-1431271501302\Extensions\jid0-hyjN250ZzTOOX3evFwwAQBxE4ik@jetpack.xpi [2015-05-12]
FF Extension: Adblock Plus - C:\Users\Alvar_000\AppData\Roaming\Mozilla\Firefox\Profiles\d1jrku5i.default-1431271501302\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-05-17]
FF HKLM-x32\...\Firefox\Extensions: [jid0-lmZNVK7a82O8cufhdfB9dUDfA2w@jetpack] - D:\Office\Dragon\Program\ffShim.xpi
FF Extension: No Name - D:\Office\Dragon\Program\ffShim.xpi [2013-02-11]
StartMenuInternet: FIREFOX.EXE - D:\Online\Mozilla\Firefox\Ver 35.0.1\firefox.exe
Chrome:
=======
CHR Profile: C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-11]
CHR Extension: (Google Drive) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-11]
CHR Extension: (YouTube) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-11]
CHR Extension: (Google Search) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-11]
CHR Extension: (Dragon NaturallySpeaking Rich Internet Application Support) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mikhcaiakabeeokmenglcdebplfdjicn [2015-04-16]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-16]
CHR Extension: (Gmail) - C:\Users\Alvar_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-11]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
CHR HKLM-x32\...\Chrome\Extension: [mikhcaiakabeeokmenglcdebplfdjicn] - D:\Office\Dragon\Program\chromeShim.crx [2013-02-11]
Opera:
=======
OPR Extension: (WOT) - C:\Users\Alvar_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp [2015-05-17]
OPR Extension: (Disconnect) - C:\Users\Alvar_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\hciohocinlhbdkbjldffomiadmnhjnoj [2015-05-17]
OPR Extension: (µBlock) - C:\Users\Alvar_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2015-02-06]
OPR Extension: (SaveFrom.net helper) - C:\Users\Alvar_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\npdpplbicnmpoigidfdjadamgfkilaak [2014-10-22]
OPR Extension: (Adblock Plus) - C:\Users\Alvar_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2014-12-22]
OPR Extension: (Bookmarks Import & Export) - C:\Users\Alvar_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn [2015-07-31]
StartMenuInternet: (HKLM) OperaStable - D:\Online\Opera\Launcher.exe
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2255064 2013-10-28] (Broadcom Corporation.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [326144 2015-07-10] (Microsoft Corporation)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S3 CDPSvc; C:\Windows\System32\CDPSvc.dll [134144 2015-07-10] (Microsoft Corporation)
R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [63968 2015-05-21] (CyberGhost S.R.L)
R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [808856 2015-08-01] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [510976 2015-08-01] (Microsoft Corporation)
S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [27136 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [267776 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
R2 DokanMounter; D:\Storage\ADrive\Desktop\mounter.exe [14848 2014-07-09] () [File not signed]
R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [37416 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd)
S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [87040 2015-07-10] (Microsoft Corporation)
S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [275456 2015-07-10] (Microsoft Corporation)
S3 icssvc; C:\Windows\System32\tetheringservice.dll [148992 2015-08-01] (Microsoft Corporation)
R3 lfsvc; C:\Windows\SysWOW64\lfsvc.dll [22528 2015-07-10] (Microsoft Corporation)
R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [21504 2015-07-10] (Microsoft Corporation)
S2 MapsBroker; C:\Windows\System32\moshost.dll [62464 2015-07-10] (Microsoft Corporation)
S2 MouseWithoutBordersSvc; C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBordersSvc.exe [27872 2012-12-28] (Microsoft)
S2 OneSyncSvc; C:\Windows\System32\APHostService.dll [296960 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 PimIndexMaintenanceSvc; C:\Windows\System32\PimIndexMaintenance.dll [289280 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 RetailDemo; C:\Windows\system32\RDXService.dll [988672 2015-08-02] (Microsoft Corporation)
R2 SbieSvc; D:\Security\SandBoxie\SbieSvc.exe [175752 2015-06-23] (Sandboxie Holdings, LLC)
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia)
S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1031680 2015-08-01] (Microsoft Corporation)
S2 SkypeUpdate; D:\Online\Skype\Updater\Updater.exe [327296 2015-06-03] (Skype Technologies)
R2 Start8; D:\System\Start 8\Ver 1.5\Start8Srv.exe [143288 2014-06-12] (Stardock Software, Inc)
R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [2674176 2015-07-10] (Microsoft Corporation)
R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [2049024 2015-07-10] (Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-07-17] (Synaptics Incorporated)
S3 UnistoreSvc; C:\Windows\System32\unistore.dll [1203200 2015-08-01] (Microsoft Corporation)
S3 UnistoreSvc; C:\Windows\SysWOW64\unistore.dll [925696 2015-08-01] (Microsoft Corporation)
R3 UnistoreSvc_Session1; C:\WINDOWS\System32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UnistoreSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 UserDataSvc; C:\Windows\System32\userdataservice.dll [1420288 2015-07-29] (Microsoft Corporation)
R3 UserDataSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UserDataSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 vmicvmsession; C:\Windows\System32\ICSvc.dll [506880 2015-07-10] (Microsoft Corporation)
S3 WalletService; C:\Windows\system32\WalletService.dll [504320 2015-07-10] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 WinTabService; C:\WINDOWS\System32\Drivers\WTSRV.EXE [73728 2009-10-06] (Tablet Driver) [File not signed]
S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [918016 2015-07-10] (Microsoft Corporation)
S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1149440 2015-07-10] (Microsoft Corporation)
S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1019392 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-10-28] (Broadcom Corporation.)
R1 cbfs4; C:\WINDOWS\system32\drivers\cbfs4.sys [387776 2013-11-15] (EldoS Corporation)
R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys [39936 2015-07-10] (Microsoft Corporation)
R2 Dokan; C:\WINDOWS\system32\drivers\dokan.sys [120408 2014-07-09] (Windows (R) Win 7 DDK provider)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3436896 2015-07-10] (QLogic Corporation)
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [18528 2014-11-18] ()
S3 epmntdrv; C:\WINDOWS\SysWOW64\epmntdrv.sys [14944 2014-11-18] ()
R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [48168 2014-12-15] ()
S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [10848 2014-11-18] ()
S3 EuGdiDrv; C:\WINDOWS\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] ()
R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [83968 2015-07-10] (Microsoft Corporation)
S3 genericusbfn; C:\Windows\System32\drivers\genericusbfn.sys [20992 2015-07-10] (Microsoft Corporation)
R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8192 2015-07-10] (Microsoft Corporation)
R3 i8042HDR; C:\Windows\system32\DRIVERS\i8042HDR.sys [15920 2009-08-15] (Windows (R) Codename Longhorn DDK provider)
S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [424800 2015-07-10] (Mellanox)
S3 IoQos; C:\Windows\System32\drivers\ioqos.sys [26624 2015-07-10] (Microsoft Corporation)
S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [99168 2015-07-10] (Avago Technologies)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-16] (Malwarebytes Corporation)
S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [705376 2015-07-10] (Mellanox)
R3 msvad_simple; C:\Windows\system32\drivers\povrtdev.sys [28528 2013-12-17] (MediaMall Technologies, Inc.)
S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [76128 2015-07-10] (Mellanox)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
R3 SbieDrv; D:\Security\SandBoxie\SbieDrv.sys [190088 2015-06-23] (Sandboxie Holdings, LLC)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-07-17] (Synaptics Incorporated)
R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [61952 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys [17760 2015-07-10] (Microsoft Corporation)
S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [61952 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\Windows\System32\drivers\UcmUcsi.sys [46080 2015-08-01] (Microsoft Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
R3 vpnpbus; C:\Windows\System32\drivers\vpnpbus.sys [18624 2013-11-15] (EldoS Corporation)
R0 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [106520 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17944 2015-07-10] (Microsoft Corporation)
S3 WinMad; C:\Windows\System32\drivers\winmad.sys [26976 2015-07-10] (Mellanox)
S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [59232 2015-07-10] (Mellanox)
S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [222720 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [25600 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
NETSVC: XblGameSave -> C:\Windows\System32\XblGameSave.dll (Microsoft Corporation)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
NETSVC: UserManager -> C:\Windows\System32\usermgr.dll (Microsoft Corporation)
NETSVC: XblAuthManager -> C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation)
NETSVCx32: UserManager -> C:\Windows\SysWOW64\usermgr.dll ==> No File
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-16 23:16 - 2015-08-16 23:16 - 00017408 ___SH C:\Users\Alvar_000\Desktop\Thumbs.db
2015-08-16 23:15 - 2015-08-16 23:15 - 00016148 _____ C:\WINDOWS\system32\G7_Alvaro_HistoryPrediction.bin
2015-08-16 20:02 - 2015-08-16 20:02 - 00001068 _____ C:\Users\Alvar_000\Desktop\JRT.txt
2015-08-16 19:36 - 2015-08-16 23:17 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-16 18:51 - 2015-08-16 18:51 - 00000000 ___HD C:\OneDriveTemp
2015-08-16 17:32 - 2015-08-16 23:18 - 00000000 ____D C:\Users\Alvar_000\Desktop\Fake BSOD
2015-08-15 13:36 - 2015-08-12 04:57 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-15 13:36 - 2015-08-12 04:22 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-13 08:46 - 2015-08-13 08:47 - 04951180 _____ C:\Users\Alvar_000\Downloads\at-carla_cox_03_fgye_02.wmv
2015-08-12 16:31 - 2015-08-12 16:35 - 09636352 _____ C:\Users\Alvar_000\Downloads\tellegaru00E1unarosa-1.pps
2015-08-12 15:49 - 2015-08-12 15:49 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-08-12 12:58 - 2015-08-12 12:58 - 00597283 _____ C:\Users\Alvar_000\Documents\SysnativeFileCollectionApp.zip
2015-08-12 12:41 - 2015-08-12 12:58 - 00000000 ____D C:\Users\Alvar_000\Documents\SysnativeFileCollectionApp
2015-08-12 12:40 - 2015-08-12 12:40 - 00158720 _____ (Sysnative) C:\Users\Alvar_000\Downloads\SysnativeBSODCollectionApp (1).exe
2015-08-12 12:39 - 2015-08-12 12:40 - 00158720 _____ (Sysnative) C:\Users\Alvar_000\Downloads\SysnativeBSODCollectionApp.exe
2015-08-12 06:46 - 2015-08-12 06:46 - 00000000 ____D C:\WINDOWS\PCHEALTH
2015-08-12 05:44 - 2015-08-05 22:36 - 21874176 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-12 05:44 - 2015-08-03 23:21 - 16709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-12 05:44 - 2015-08-02 22:18 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-12 05:44 - 2015-08-02 21:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-12 05:44 - 2015-08-02 21:24 - 24592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-12 05:43 - 2015-08-08 03:30 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-12 05:43 - 2015-08-08 03:29 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-12 05:43 - 2015-08-08 03:19 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-12 05:43 - 2015-08-08 03:01 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-08-12 05:43 - 2015-08-08 02:48 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-08-12 05:43 - 2015-08-08 02:40 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-12 05:43 - 2015-08-08 02:24 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-12 05:43 - 2015-08-08 02:24 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-12 05:43 - 2015-08-08 02:22 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-12 05:43 - 2015-08-08 02:21 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-12 05:43 - 2015-08-08 02:15 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-08-12 05:43 - 2015-08-08 02:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-08-12 05:43 - 2015-08-05 23:18 - 00290768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-12 05:43 - 2015-08-05 23:17 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-08-12 05:43 - 2015-08-05 23:17 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-08-12 05:43 - 2015-08-05 22:22 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-08-12 05:43 - 2015-08-05 22:03 - 18805248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-08-12 05:43 - 2015-08-05 00:49 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-12 05:43 - 2015-08-05 00:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-08-12 05:43 - 2015-08-05 00:03 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-12 05:43 - 2015-08-05 00:00 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-08-12 05:43 - 2015-08-04 23:54 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-12 05:43 - 2015-08-04 23:47 - 03588096 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-12 05:43 - 2015-08-04 23:47 - 01383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-12 05:43 - 2015-08-04 23:43 - 01916416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-08-12 05:43 - 2015-08-04 23:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2015-08-12 05:43 - 2015-08-04 00:08 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-12 05:43 - 2015-08-04 00:07 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-12 05:43 - 2015-08-04 00:06 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-08-12 05:43 - 2015-08-04 00:06 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-08-12 05:43 - 2015-08-03 23:50 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-08-12 05:43 - 2015-08-03 23:23 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-12 05:43 - 2015-08-03 23:10 - 13025792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-08-12 05:43 - 2015-08-03 22:59 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-12 05:43 - 2015-08-03 22:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2015-08-12 05:43 - 2015-08-02 22:32 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-12 05:43 - 2015-08-02 22:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2015-08-12 05:43 - 2015-08-02 22:19 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-12 05:43 - 2015-08-02 22:19 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-12 05:43 - 2015-08-02 22:18 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-12 05:43 - 2015-08-02 22:18 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-12 05:43 - 2015-08-02 22:18 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-08-12 05:43 - 2015-08-02 22:17 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-12 05:43 - 2015-08-02 22:17 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-08-12 05:43 - 2015-08-02 22:13 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-12 05:43 - 2015-08-02 22:12 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-12 05:43 - 2015-08-02 21:50 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-08-12 05:43 - 2015-08-02 21:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-08-12 05:43 - 2015-08-02 21:31 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-12 05:43 - 2015-08-02 21:30 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-12 05:43 - 2015-08-02 21:24 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-12 05:43 - 2015-08-02 21:24 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-12 05:43 - 2015-08-02 21:24 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-12 05:43 - 2015-08-02 21:23 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2015-08-12 05:43 - 2015-08-02 21:23 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-12 05:43 - 2015-08-02 21:22 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-12 05:43 - 2015-08-02 21:22 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-08-12 05:43 - 2015-08-02 21:22 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-08-12 05:43 - 2015-08-02 21:22 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-12 05:43 - 2015-08-02 21:21 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-08-12 05:43 - 2015-08-02 21:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-12 05:43 - 2015-08-02 21:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-12 05:43 - 2015-08-02 21:18 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-12 05:43 - 2015-08-02 21:18 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-12 05:43 - 2015-08-02 21:18 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-12 05:43 - 2015-08-02 21:18 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-08-12 05:43 - 2015-08-02 21:15 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-12 05:43 - 2015-08-02 21:15 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-12 05:43 - 2015-08-02 21:15 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-12 05:43 - 2015-08-02 21:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-12 05:43 - 2015-08-02 21:15 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-12 05:43 - 2015-08-02 21:15 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-12 05:43 - 2015-08-02 21:14 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-12 05:43 - 2015-08-02 21:14 - 00247808 _____ C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-12 05:43 - 2015-08-02 21:12 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-08-12 05:43 - 2015-08-02 21:12 - 01890304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-12 05:43 - 2015-08-02 21:12 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2015-08-12 05:43 - 2015-08-02 21:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2015-08-12 05:43 - 2015-08-02 21:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2015-08-12 05:43 - 2015-08-02 21:11 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-08-12 05:43 - 2015-08-02 21:11 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-08-12 05:43 - 2015-08-02 21:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2015-08-12 05:43 - 2015-08-02 21:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2015-08-12 05:43 - 2015-08-02 21:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-08-12 05:43 - 2015-08-02 21:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2015-08-12 05:43 - 2015-08-02 21:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-12 05:43 - 2015-08-02 21:01 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-08-12 05:43 - 2015-08-02 21:00 - 01593856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-08-12 05:43 - 2015-08-02 20:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2015-08-10 23:18 - 2015-08-10 23:19 - 06781852 _____ C:\Users\Alvar_000\Downloads\MOTOCICLISTAS ITALIANOS.wmv
2015-08-09 11:09 - 2015-08-09 11:09 - 10854986 _____ C:\Users\Alvar_000\Downloads\VID-20150607-WA0000.mp4
2015-08-09 11:07 - 2015-08-09 11:07 - 01314056 _____ C:\Users\Alvar_000\Downloads\VID-20150805-WA000.mp4
2015-08-09 01:23 - 2015-08-09 01:23 - 09355004 _____ C:\Users\Alvar_000\Downloads\VID-20150703-WA0008.mp4
2015-08-07 11:24 - 2015-08-07 11:24 - 00007600 _____ C:\Users\Alvar_000\AppData\Local\Resmon.ResmonCfg
2015-08-05 23:34 - 2015-07-30 02:24 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-05 23:34 - 2015-07-30 02:21 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-05 23:34 - 2015-07-30 02:17 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-05 23:34 - 2015-07-30 02:17 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-05 23:34 - 2015-07-30 02:16 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-05 23:34 - 2015-07-30 02:09 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-05 23:34 - 2015-07-30 02:06 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-05 23:34 - 2015-07-30 02:05 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-05 23:34 - 2015-07-30 02:05 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-05 23:34 - 2015-07-30 02:04 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-05 23:34 - 2015-07-30 02:03 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-05 23:34 - 2015-07-30 00:29 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-08-05 23:34 - 2015-07-30 00:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-08-05 23:34 - 2015-07-30 00:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-08-05 23:34 - 2015-07-30 00:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-08-05 23:34 - 2015-07-30 00:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-08-05 23:34 - 2015-07-30 00:24 - 01769056 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-08-05 23:34 - 2015-07-30 00:21 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-08-05 23:34 - 2015-07-30 00:12 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-05 23:34 - 2015-07-29 23:52 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-05 23:34 - 2015-07-29 23:52 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-05 23:34 - 2015-07-29 23:49 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-05 23:34 - 2015-07-29 23:49 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-05 23:34 - 2015-07-29 23:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-05 23:34 - 2015-07-29 23:44 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-05 23:34 - 2015-07-29 23:42 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-05 23:34 - 2015-07-29 23:41 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-05 23:34 - 2015-07-29 23:40 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-05 23:34 - 2015-07-29 23:29 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-05 23:34 - 2015-07-29 23:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-08-05 23:34 - 2015-07-29 23:10 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-08-05 23:34 - 2015-07-29 23:06 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-08-05 23:34 - 2015-07-29 23:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-08-05 23:34 - 2015-07-29 23:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2015-08-05 23:33 - 2015-07-30 02:23 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-05 23:33 - 2015-07-30 02:15 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-05 23:33 - 2015-07-30 02:14 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-05 23:33 - 2015-07-30 01:24 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-05 23:33 - 2015-07-30 00:42 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-05 23:33 - 2015-07-30 00:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-08-05 23:33 - 2015-07-30 00:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-08-05 23:33 - 2015-07-30 00:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-08-05 23:33 - 2015-07-30 00:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-08-05 23:33 - 2015-07-30 00:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-08-05 23:33 - 2015-07-30 00:12 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-05 23:33 - 2015-07-30 00:09 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-05 23:33 - 2015-07-30 00:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-05 23:33 - 2015-07-30 00:08 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-05 23:33 - 2015-07-30 00:08 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-05 23:33 - 2015-07-29 23:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-05 23:33 - 2015-07-29 23:52 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-05 23:33 - 2015-07-29 23:49 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-05 23:33 - 2015-07-29 23:46 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-05 23:33 - 2015-07-29 23:46 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-05 23:33 - 2015-07-29 23:46 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-05 23:33 - 2015-07-29 23:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-05 23:33 - 2015-07-29 23:45 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-05 23:33 - 2015-07-29 23:44 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-05 23:33 - 2015-07-29 23:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-05 23:33 - 2015-07-29 23:44 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-05 23:33 - 2015-07-29 23:44 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-05 23:33 - 2015-07-29 23:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-05 23:33 - 2015-07-29 23:41 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-05 23:33 - 2015-07-29 23:38 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-05 23:33 - 2015-07-29 23:38 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-05 23:33 - 2015-07-29 23:34 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-05 23:33 - 2015-07-29 23:10 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-05 23:33 - 2015-07-29 23:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2015-08-05 23:33 - 2015-07-29 23:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-08-05 23:33 - 2015-07-29 23:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2015-08-05 23:33 - 2015-07-29 23:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll
2015-08-05 23:33 - 2015-07-29 22:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-08-05 23:33 - 2015-07-29 22:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-08-04 00:42 - 2015-08-04 00:42 - 01798176 _____ (Malwarebytes Corporation) C:\Users\Alvar_000\Desktop\JRT.exe
2015-08-03 13:22 - 2015-08-03 19:35 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-08-03 13:22 - 2015-08-03 13:22 - 00001535 _____ C:\Users\Alvar_000\Desktop\SDScan.exe - Shortcut.lnk
2015-08-03 07:34 - 2015-08-03 07:38 - 07493720 _____ C:\Users\Alvar_000\Downloads\VID-20150730-WA0004.mp4
2015-08-01 09:59 - 2015-08-01 09:59 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-01 09:39 - 2015-08-01 09:42 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\MicrosoftEdge
2015-08-01 07:35 - 2015-08-01 07:35 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\NetworkTiles
2015-08-01 04:15 - 2015-08-01 01:31 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-01 04:08 - 2015-08-01 04:09 - 00000000 ____D C:\Windows.old
2015-08-01 04:07 - 2015-08-01 04:07 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02878000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02224128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01773056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-01 04:07 - 2015-08-01 04:07 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01085776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-01 04:07 - 2015-08-01 04:07 - 00991584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-01 04:07 - 2015-08-01 04:07 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00607008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00412672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00403968 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00242264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-01 04:07 - 2015-08-01 04:07 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-01 04:07 - 2015-08-01 04:07 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-01 04:07 - 2015-08-01 04:07 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-08-01 04:04 - 2015-07-10 00:37 - 09565696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000a.dll
2015-08-01 04:04 - 2015-07-10 00:36 - 09893888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons000a.dll
2015-08-01 04:04 - 2015-07-10 00:26 - 09687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000a.dll
2015-08-01 04:04 - 2015-07-10 00:25 - 09893888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons000a.dll
2015-08-01 04:03 - 2015-08-01 04:03 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-01 04:01 - 2009-08-15 00:58 - 00015920 _____ (Windows (R) Codename Longhorn DDK provider) C:\WINDOWS\system32\Drivers\i8042HDR.sys
2015-08-01 04:00 - 2015-08-01 04:00 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-08-01 04:00 - 2015-08-01 04:00 - 00000000 ____D C:\Program Files\MSBuild
2015-08-01 04:00 - 2015-08-01 04:00 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-08-01 04:00 - 2015-08-01 04:00 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-01 04:00 - 2015-06-17 22:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-01 04:00 - 2015-05-30 01:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-08-01 04:00 - 2015-05-30 01:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-01 04:00 - 2015-05-30 01:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-08-01 03:59 - 2015-06-17 22:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-01 03:59 - 2015-06-17 22:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-01 01:43 - 2015-08-01 01:43 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\PeerDistRepub
2015-08-01 01:33 - 2015-08-01 01:33 - 00001053 _____ C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk
2015-08-01 01:30 - 2015-08-09 00:32 - 00002561 _____ C:\Users\Public\Desktop\Mouse without Borders.lnk
2015-08-01 01:25 - 2015-08-01 01:26 - 00002386 _____ C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-01 01:23 - 2015-08-01 01:23 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-01 01:22 - 2015-08-01 08:56 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\Comms
2015-08-01 01:20 - 2015-08-01 01:20 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\Publishers
2015-08-01 01:18 - 2015-08-01 01:18 - 00000020 ___SH C:\Users\Alvar_000\ntuser.ini
2015-08-01 01:18 - 2015-08-01 01:18 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\TileDataLayer
2015-08-01 00:43 - 2015-08-07 11:24 - 00875126 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-01 00:38 - 2015-07-10 06:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-08-01 00:32 - 2015-08-01 00:32 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-01 00:32 - 2015-08-01 00:32 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2008
2015-08-01 00:32 - 2015-08-01 00:32 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-08-01 00:32 - 2015-08-01 00:32 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2008
2015-08-01 00:32 - 2015-08-01 00:32 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-08-01 00:26 - 2015-08-01 00:26 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-08-01 00:24 - 2015-08-16 11:39 - 00000000 ____D C:\Users\Alvar_000
2015-08-01 00:24 - 2015-08-01 01:18 - 00000000 ___RD C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-01 00:24 - 2015-08-01 00:34 - 00000000 ___RD C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-01 00:24 - 2015-08-01 00:25 - 00000000 ___RD C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-01 00:24 - 2015-07-10 07:04 - 00000000 __RSD C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-01 00:24 - 2015-07-10 07:04 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-01 00:20 - 2015-08-01 00:26 - 00000000 ____D C:\ProgramData\Brother
2015-08-01 00:20 - 2015-08-01 00:20 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-08-01 00:19 - 2015-08-01 00:19 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-01 00:19 - 2015-08-01 00:19 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2015-08-01 00:19 - 2015-08-01 00:19 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2015-08-01 00:19 - 2015-08-01 00:19 - 00000000 ____D C:\Program Files\Synaptics
2015-08-01 00:17 - 2015-08-01 00:18 - 00037945 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-07-30 14:13 - 2015-07-30 14:13 - 00011264 _____ C:\8
2015-07-28 09:12 - 2015-08-14 10:19 - 00001576 _____ C:\WINDOWS\Sandboxie.ini
2015-07-28 09:12 - 2015-08-01 00:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
2015-07-28 09:12 - 2015-07-28 09:12 - 00000849 _____ C:\Users\Alvar_000\Desktop\Sandboxed Web Browser.lnk
2015-07-27 23:03 - 2015-07-27 23:03 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Auslogics
2015-07-26 07:09 - 2015-07-26 07:09 - 01996896 _____ (BitTorrent Inc.) C:\Users\Alvar_000\Downloads\uTorrent.exe
2015-07-26 06:44 - 2015-07-26 06:44 - 04614144 _____ C:\Users\Alvar_000\Downloads\msxml6_SDK.msi
2015-07-25 00:37 - 2015-08-13 23:55 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\meq5tzhtzei3lwf
2015-07-25 00:37 - 2015-08-02 10:31 - 00003370 _____ C:\WINDOWS\System32\Tasks\Maintenance Service-meq5tzhtzei3lwf
2015-07-18 01:01 - 2015-07-18 01:01 - 00028672 ___SH C:\Users\Alvar_000\Downloads\Thumbs.db
2015-07-17 07:51 - 2015-07-17 07:51 - 01804696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2015-07-17 07:51 - 2015-07-17 07:51 - 00764616 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2015-07-17 07:51 - 2015-07-17 07:51 - 00614088 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2015-07-17 07:51 - 2015-07-17 07:51 - 00419528 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2015-07-17 07:51 - 2015-07-17 07:51 - 00269000 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2015-07-17 07:51 - 2015-07-17 07:51 - 00255688 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo31.dll
2015-07-17 07:51 - 2015-07-17 07:51 - 00042696 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys
2015-07-17 07:51 - 2015-07-17 07:51 - 00042696 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2015-07-17 07:51 - 2015-07-17 07:51 - 00042184 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-16 23:18 - 2015-05-11 09:12 - 00000000 ____D C:\FRST
2015-08-16 23:17 - 2015-01-01 03:41 - 00000000 ___RD C:\Users\Alvar_000\Dropbox
2015-08-16 23:17 - 2015-01-01 03:34 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Dropbox
2015-08-16 23:17 - 2014-12-08 15:40 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Skype
2015-08-16 23:17 - 2014-04-30 11:50 - 00000000 __RDO C:\Users\Alvar_000\OneDrive
2015-08-16 23:16 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-08-16 23:16 - 2015-02-04 13:19 - 00000902 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-16 23:15 - 2015-05-09 14:25 - 00001034 _____ C:\WINDOWS\Tasks\scqArpeMw4fHYqQ18UzErMR.job
2015-08-16 23:15 - 2015-05-09 14:25 - 00001022 _____ C:\WINDOWS\Tasks\cKDeY9eRuMbjiUnpS.job
2015-08-16 23:13 - 2015-07-10 08:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-08-16 23:13 - 2015-07-10 05:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-08-16 23:12 - 2015-04-16 14:13 - 00000000 ____D C:\AdwCleaner
2015-08-16 20:40 - 2015-02-04 13:19 - 00000906 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-16 19:55 - 2015-06-17 14:44 - 00000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-4177520706-2818649810-840986709-1001UA.job
2015-08-16 19:00 - 2014-06-22 23:34 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-08-16 18:35 - 2014-05-01 21:47 - 00000000 ____D C:\ProgramData\Corel
2015-08-16 18:35 - 2014-05-01 21:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X6
2015-08-16 18:04 - 2015-02-20 19:13 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-08-16 18:04 - 2014-09-17 14:34 - 00000000 ____D C:\ProgramData\Adobe
2015-08-16 18:03 - 2015-02-22 01:54 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-08-16 17:27 - 2014-05-05 20:48 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\uTorrent
2015-08-16 03:33 - 2014-09-17 14:22 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\Adobe
2015-08-15 13:47 - 2015-07-16 01:37 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-08-15 13:42 - 2015-07-10 06:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-08-13 23:55 - 2015-07-10 07:04 - 00000000 __RSD C:\WINDOWS\Media
2015-08-13 23:51 - 2015-07-01 13:30 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\mew5bzhvzg43c2e
2015-08-13 10:20 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\rescache
2015-08-12 15:03 - 2015-07-10 08:20 - 00430928 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-12 15:02 - 2014-06-13 22:19 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-12 15:02 - 2014-06-13 22:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-12 15:00 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-12 15:00 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-12 14:59 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-12 14:59 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-08-12 14:59 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-12 13:09 - 2014-04-30 23:20 - 00115832 _____ C:\Users\Alvar_000\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-12 07:03 - 2014-06-13 22:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-12 07:03 - 2014-04-30 18:58 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-12 07:01 - 2014-04-29 00:58 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-12 06:51 - 2014-04-29 00:58 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-08-10 23:47 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-08-10 03:00 - 2015-04-02 21:42 - 00000000 ____D C:\ProgramData\TEMP
2015-08-10 02:54 - 2015-06-17 14:44 - 00000882 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-4177520706-2818649810-840986709-1001Core.job
2015-08-10 00:30 - 2014-04-30 23:54 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\CyberGhost
2015-08-09 00:32 - 2014-12-21 15:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Garage
2015-08-08 11:38 - 2015-07-10 07:06 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-08-08 11:38 - 2015-07-10 07:06 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-08-07 08:36 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-07 00:26 - 2014-05-03 17:22 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\vlc
2015-08-05 23:56 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\restore
2015-08-05 23:45 - 2015-06-10 11:31 - 00000802 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-08-03 19:40 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2015-08-03 19:35 - 2015-06-17 09:28 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\mfa5vtgtzek3bmf
2015-08-01 07:36 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-08-01 07:34 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\appcompat
2015-08-01 04:14 - 2015-07-10 07:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-01 04:08 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-08-01 04:08 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-01 04:08 - 2015-07-10 05:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-08-01 04:08 - 2015-07-10 05:05 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-08-01 01:38 - 2014-04-28 22:19 - 00000000 ____D C:\Users\Alvar_000\AppData\Local\Packages
2015-08-01 01:34 - 2014-04-30 06:34 - 00000405 _____ C:\Users\Alvar_000\Desktop\Control Panel.lnk
2015-08-01 01:33 - 2015-07-10 09:12 - 00000000 ____D C:\WINDOWS\OCR
2015-08-01 01:19 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-01 01:19 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-01 01:19 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-01 01:18 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-01 00:51 - 2014-04-30 06:34 - 00011433 _____ C:\WINDOWS\diagwrn.xml
2015-08-01 00:51 - 2014-04-30 06:34 - 00011433 _____ C:\WINDOWS\diagerr.xml
2015-08-01 00:49 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\Registration
2015-08-01 00:48 - 2015-07-16 01:40 - 00003324 _____ C:\WINDOWS\System32\Tasks\{4CD69DC4-9310-4B31-B3B1-04DAA76A4B5A}
2015-08-01 00:48 - 2015-07-16 01:37 - 00003956 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-08-01 00:48 - 2015-06-17 14:44 - 00003992 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-4177520706-2818649810-840986709-1001UA
2015-08-01 00:48 - 2015-06-17 14:44 - 00003612 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-4177520706-2818649810-840986709-1001Core
2015-08-01 00:48 - 2015-05-09 14:25 - 00004140 _____ C:\WINDOWS\System32\Tasks\scqArpeMw4fHYqQ18UzErMR
2015-08-01 00:48 - 2015-05-09 14:25 - 00004128 _____ C:\WINDOWS\System32\Tasks\cKDeY9eRuMbjiUnpS
2015-08-01 00:48 - 2015-04-08 06:57 - 00003270 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2015-08-01 00:48 - 2015-04-08 06:57 - 00003244 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2015-08-01 00:48 - 2015-04-08 06:57 - 00003242 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2015-08-01 00:48 - 2015-04-08 06:57 - 00003214 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2015-08-01 00:48 - 2015-04-08 06:57 - 00003212 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2015-08-01 00:48 - 2015-04-01 11:37 - 00003284 _____ C:\WINDOWS\System32\Tasks\{7CC9FD2E-7F31-4CAA-94E6-2A0CF60EC3BF}
2015-08-01 00:48 - 2015-02-04 13:19 - 00003988 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-01 00:48 - 2015-02-04 13:19 - 00003752 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-01 00:48 - 2014-12-08 15:35 - 00003292 _____ C:\WINDOWS\System32\Tasks\{3C662AA4-E3E5-4401-A537-DC0DF2824C1A}
2015-08-01 00:48 - 2014-09-11 19:33 - 00002932 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-08-01 00:48 - 2014-04-30 06:42 - 00022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-01 00:48 - 2014-04-28 22:43 - 00003708 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4177520706-2818649810-840986709-1001
2015-08-01 00:45 - 2015-07-10 07:04 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-01 00:34 - 2015-07-10 09:14 - 00000000 ____D C:\WINDOWS\ShellNew
2015-08-01 00:34 - 2015-07-10 05:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-01 00:34 - 2015-06-01 18:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CanoScan LiDE 600F
2015-08-01 00:34 - 2015-05-14 11:45 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MultiCommander
2015-08-01 00:34 - 2015-04-21 12:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-01 00:34 - 2015-04-08 06:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
2015-08-01 00:34 - 2015-04-02 21:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking 12.0
2015-08-01 00:34 - 2015-03-23 12:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScanSoft OmniPage SE 2.0
2015-08-01 00:34 - 2015-03-20 15:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup Free 8.2
2015-08-01 00:34 - 2015-03-20 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.2
2015-08-01 00:34 - 2015-03-12 11:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software995
2015-08-01 00:34 - 2015-02-20 19:18 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-08-01 00:34 - 2015-02-16 11:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Finder 2009
2015-08-01 00:34 - 2015-02-11 13:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX890 series Manual
2015-08-01 00:34 - 2015-02-11 13:40 - 00000000 ____D C:\WINDOWS\SysWOW64\STRING
2015-08-01 00:34 - 2015-02-11 13:35 - 00000000 ____D C:\WINDOWS\system32\STRING
2015-08-01 00:34 - 2015-02-04 13:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
2015-08-01 00:34 - 2015-02-02 23:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boxcryptor
2015-08-01 00:34 - 2015-01-14 21:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio 2.7
2015-08-01 00:34 - 2014-12-08 15:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-08-01 00:34 - 2014-11-30 09:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74
2015-08-01 00:34 - 2014-10-05 00:52 - 00000000 ____D C:\WINDOWS\en
2015-08-01 00:34 - 2014-09-11 19:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-08-01 00:34 - 2014-09-07 11:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExamDiff
2015-08-01 00:34 - 2014-08-16 16:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyMedia
2015-08-01 00:34 - 2014-08-03 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-08-01 00:34 - 2014-08-01 13:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaMonkey
2015-08-01 00:34 - 2014-07-16 11:12 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-01 00:34 - 2014-07-16 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-01 00:34 - 2014-07-03 14:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FotoSketcher
2015-08-01 00:34 - 2014-06-22 23:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-01 00:34 - 2014-06-01 01:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-08-01 00:34 - 2014-05-29 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhapsody
2015-08-01 00:34 - 2014-05-20 12:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet Software
2015-08-01 00:34 - 2014-05-20 12:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet
2015-08-01 00:34 - 2014-05-20 12:22 - 00000000 ____D C:\WINDOWS\SysWOW64\TabletPmt
2015-08-01 00:34 - 2014-05-01 01:54 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2015-08-01 00:34 - 2014-05-01 01:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2015-08-01 00:34 - 2014-05-01 01:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bonjour Print Services
2015-08-01 00:34 - 2014-04-30 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5
2015-08-01 00:34 - 2014-04-30 12:43 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
2015-08-01 00:32 - 2013-08-22 09:36 - 00000000 ____D C:\Users\Default.migrated
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\uk-UA
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\th-TH
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-RS
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sl-SI
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ro-RO
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2015-08-01 00:29 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\hr-HR
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\he-IL
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\bg-BG
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ar-SA
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\uk-UA
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\th-TH
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\spool
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\sl-SI
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\sk-SK
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\ro-RO
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\IME
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\hr-HR
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\he-IL
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\et-EE
2015-08-01 00:28 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\en-GB
2015-08-01 00:28 - 2013-08-22 11:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-01 00:28 - 2013-08-22 11:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-01 00:27 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\bg-BG
2015-08-01 00:27 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\ar-SA
2015-08-01 00:27 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\Speech
2015-08-01 00:27 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\Resources
2015-08-01 00:27 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-08-01 00:27 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\InputMethod
2015-08-01 00:27 - 2015-06-01 18:09 - 00000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information
2015-08-01 00:27 - 2014-06-22 10:36 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2015-08-01 00:27 - 2013-08-22 11:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-08-01 00:27 - 2013-08-22 11:36 - 00000000 ____D C:\WINDOWS\ADFS
2015-08-01 00:26 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-01 00:26 - 2015-07-10 07:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-01 00:26 - 2015-06-24 08:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-08-01 00:26 - 2015-04-22 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
2015-08-01 00:26 - 2015-03-24 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon
2015-08-01 00:26 - 2015-03-16 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Photo Software
2015-08-01 00:26 - 2014-10-22 00:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
2015-08-01 00:26 - 2014-09-17 16:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Geographic
2015-08-01 00:26 - 2014-05-03 07:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PolderbitS
2015-08-01 00:26 - 2014-04-28 22:19 - 00000000 ____D C:\ProgramData\PRICache
2015-08-01 00:25 - 2014-10-27 17:22 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-08-01 00:23 - 2015-07-10 05:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-08-01 00:23 - 2014-04-27 05:31 - 00000000 __SHD C:\Recovery
2015-08-01 00:16 - 2015-07-10 05:05 - 00000000 __RHD C:\Users\Default
2015-07-31 23:41 - 2015-07-10 09:39 - 00000000 ___HD C:\$Windows.~BT
2015-07-27 19:26 - 2014-05-01 21:54 - 00000000 ____D C:\Users\Alvar_000\AppData\Roaming\MediaMonkey
2015-07-26 06:47 - 2015-04-28 18:27 - 00000000 ____D C:\Program Files (x86)\Skype
2015-07-26 06:47 - 2014-12-08 15:39 - 00000000 ____D C:\ProgramData\Skype
2015-07-23 16:30 - 2015-02-25 11:17 - 00111068 _____ C:\WINDOWS\wininit.ini
==================== Files in the root of some directories =======
2015-04-01 11:36 - 2015-04-01 11:37 - 0000378 _____ () C:\Program Files (x86)\temp995.bat
2015-01-14 21:44 - 2015-01-14 21:44 - 0000046 _____ () C:\Users\Alvar_000\AppData\Roaming\Camdata.ini
2015-01-14 21:44 - 2015-01-14 21:44 - 0000408 _____ () C:\Users\Alvar_000\AppData\Roaming\CamLayout.ini
2015-01-14 21:44 - 2015-01-14 21:44 - 0000408 _____ () C:\Users\Alvar_000\AppData\Roaming\CamShapes.ini
2015-01-14 21:44 - 2015-01-14 21:44 - 0004535 _____ () C:\Users\Alvar_000\AppData\Roaming\CamStudio.cfg
2015-04-14 12:28 - 2015-04-14 12:28 - 0004387 _____ () C:\Users\Alvar_000\AppData\Roaming\cKDeY9eRuMbjiUnpS
2014-08-13 08:17 - 2014-12-10 21:11 - 0000307 _____ () C:\Users\Alvar_000\AppData\Roaming\FotoSketcher.ini
2014-06-01 16:16 - 2013-04-19 02:13 - 13492224 _____ () C:\Users\Alvar_000\AppData\Roaming\Sandra.mdb
2015-04-02 22:51 - 2015-04-02 22:51 - 0001555 _____ () C:\Users\Alvar_000\AppData\Roaming\SAS7_000.DAT
2015-04-19 08:20 - 2015-04-19 08:20 - 0005872 _____ () C:\Users\Alvar_000\AppData\Roaming\scqArpeMw4fHYqQ18UzErMR
2015-01-14 21:43 - 2015-01-14 21:43 - 0000096 _____ () C:\Users\Alvar_000\AppData\Roaming\version2.xml
2014-09-26 12:02 - 2015-02-02 18:19 - 0005632 _____ () C:\Users\Alvar_000\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-07 11:24 - 2015-08-07 11:24 - 0007600 _____ () C:\Users\Alvar_000\AppData\Local\Resmon.ResmonCfg
2015-04-01 11:35 - 2015-04-01 11:36 - 0011834 _____ () C:\Users\Alvar_000\AppData\Local\Temp-log.txt
Some files in TEMP:
====================
C:\Users\Alvar_000\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmplwgdhb.dll
C:\Users\Alvar_000\AppData\Local\Temp\Quarantine.exe
C:\Users\Alvar_000\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-12 06:37
==================== End of log ============================