Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21.01.2018 Ran by Janice (administrator) on JANICE-PC (27-01-2018 12:22:32) Running from C:\Users\Janice\Downloads\Farbar Loaded Profiles: Janice (Available Profiles: Janice & DefaultAppPool) Platform: Windows 10 Home Version 1709 16299.192 (X64) Language: English (United States) Internet Explorer Version 11 (Default browser: Edge) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Stardock Corporation) C:\Program Files\Dell\DellDock\DockLogin.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2\UACProxy.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpui.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.274.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (SAC) C:\ProgramData\OfficeGuardianV2\reminder\SacReminder.exe (Dropbox, Inc.) C:\Users\Janice\AppData\Local\Dropbox\Update\DropboxUpdate.exe (HP Inc.) C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.) C:\Program Files (x86)\Intuit\QuickBooks 2017\QBW32.EXE (Stardock Corporation) C:\Program Files\Dell\DellDock\DellDock.exe (Dropbox, Inc.) C:\Users\Janice\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) C:\Users\Janice\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) C:\Users\Janice\AppData\Roaming\Dropbox\bin\Dropbox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (HP Inc.) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe (Microsoft Corporation) C:\Program Files\internet explorer\iexplore.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [3179288 2010-01-06] (Dell Inc.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-06-17] (IDT, Inc.) HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [5712896 2010-02-02] (Dell Inc.) HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [409744 2009-06-24] (Creative Technology Ltd) HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X] Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2151132770-2338251114-259933141-1000\...\Run: [SacReminderHDDV2] => C:\ProgramData\OfficeGuardianV2\reminder\SacReminder.exe [523304 2010-11-16] (SAC) HKU\S-1-5-21-2151132770-2338251114-259933141-1000\...\Run: [Dropbox Update] => C:\Users\Janice\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.) HKU\S-1-5-21-2151132770-2338251114-259933141-1000\...\Run: [HP ENVY 7640 series (NET)] => C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe [3769992 2017-05-23] (HP Inc.) HKU\S-1-5-21-2151132770-2338251114-259933141-1000\...\Policies\Explorer: [NoDesktopCleanupWizard] 1 Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2013-05-09] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Intuit Data Protect.lnk [2017-09-26] ShortcutTarget: Intuit Data Protect.lnk -> C:\Program Files (x86)\Common Files\Intuit\DataProtect\IntuitDataProtect.exe (Intuit Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PastaQuotes.lnk.disabled [2014-03-24] ShortcutTarget: PastaQuotes.lnk.disabled -> C:\Program Files (x86)\pastaleads\PastaLeadsWinApp.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk [2017-09-26] ShortcutTarget: QuickBooks Update Agent.lnk -> C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks_Standard_21.lnk [2017-09-26] ShortcutTarget: QuickBooks_Standard_21.lnk -> C:\Program Files (x86)\Intuit\QuickBooks 2017\QBW32.EXE (Intuit Inc.) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk [2011-01-12] ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk [2011-01-12] ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk [2011-01-12] ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk [2011-01-12] ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation) Startup: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Best Buy pc app.lnk [2011-01-12] ShortcutTarget: Best Buy pc app.lnk -> C:\ProgramData\Best Buy pc app\ClickOnceSetup.exe (Microsoft) Startup: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk [2011-01-12] ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation) Startup: C:\Users\Janice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk [2012-11-17] ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation) Startup: C:\Users\Janice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2018-01-24] ShortcutTarget: Dropbox.lnk -> C:\Users\Janice\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{010dd32b-defc-49c1-ac1b-c7c9c07115e4}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://us.search.yahoo.com/yhs/web?hspart=itm&hsimp=yhs-001&type=jmb_sngwb_16_11¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dus%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0CtD0C0BtAzzyBtD0DtA0FyBtD0Czy0FtN0D0Tzu0StCyDtAyEtN1L2XzutAtFtCyBtFtCyEtFtBtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyD0D0EtAyE0DtDtDtGyCyDyEyCtGtA0EzztCtGyE0CyEtDtGtD0B0C0CyE0D0CtBtAtCtDtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzyyD0E0Dzz0Czz0CtGtDyD0BzytGyEtBtDyEtGzytCyBtCtGtAyCyC0E0B0BtCyCyEtC0A0B2QtN0A0LzutB%26cr%3D1253195289%26a%3Djmb_sngwb_16_11%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=itm&hsimp=yhs-001&type=jmb_sngwb_16_11¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0CtD0C0BtAzzyBtD0DtA0FyBtD0Czy0FtN0D0Tzu0StCyDtAyEtN1L2XzutAtFtCyBtFtCyEtFtBtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyD0D0EtAyE0DtDtDtGyCyDyEyCtGtA0EzztCtGyE0CyEtDtGtD0B0C0CyE0D0CtBtAtCtDtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzyyD0E0Dzz0Czz0CtGtDyD0BzytGyEtBtDyEtGzytCyBtCtGtAyCyC0E0B0BtCyCyEtC0A0B2QtN0A0LzutB%26cr%3D1253195289%26a%3Djmb_sngwb_16_11%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=itm&hsimp=yhs-001&type=jmb_sngwb_16_11¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0CtD0C0BtAzzyBtD0DtA0FyBtD0Czy0FtN0D0Tzu0StCyDtAyEtN1L2XzutAtFtCyBtFtCyEtFtBtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyD0D0EtAyE0DtDtDtGyCyDyEyCtGtA0EzztCtGyE0CyEtDtGtD0B0C0CyE0D0CtBtAtCtDtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzyyD0E0Dzz0Czz0CtGtDyD0BzytGyEtBtDyEtGzytCyBtCtGtAyCyC0E0B0BtCyCyEtC0A0B2QtN0A0LzutB%26cr%3D1253195289%26a%3Djmb_sngwb_16_11%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms} SearchScopes: HKLM -> {2F1E335A-858A-4BE9-8F6B-D0AF1D018B53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {3F9EE943-B2C1-40F7-997C-546DB47BE6E2} URL = SearchScopes: HKU\S-1-5-21-2151132770-2338251114-259933141-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=itm&hsimp=yhs-001&type=jmb_sngwb_16_11¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0CtD0C0BtAzzyBtD0DtA0FyBtD0Czy0FtN0D0Tzu0StCyDtAyEtN1L2XzutAtFtCyBtFtCyEtFtBtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyD0D0EtAyE0DtDtDtGyCyDyEyCtGtA0EzztCtGyE0CyEtDtGtD0B0C0CyE0D0CtBtAtCtDtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzyyD0E0Dzz0Czz0CtGtDyD0BzytGyEtBtDyEtGzytCyBtCtGtAyCyC0E0B0BtCyCyEtC0A0B2QtN0A0LzutB%26cr%3D1253195289%26a%3Djmb_sngwb_16_11%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms} BHO: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-30] (AO Kaspersky Lab) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-01-12] (Sun Microsystems, Inc.) BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20] (Hewlett-Packard Co.) BHO-x32: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-30] (AO Kaspersky Lab) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-08-14] (RealDownloader) BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-22] (Microsoft Corporation) BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20] (Hewlett-Packard Co.) Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-30] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-30] (AO Kaspersky Lab) Handler-x32: intu-help-qb10 - {E795042F-8A29-42E4-B265-2C7AB38E8AEE} - C:\Program Files (x86)\Intuit\QuickBooks 2017\HelpAsyncPluggableProtocol.dll [2016-08-23] (Intuit, Inc.) Handler-x32: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\WINDOWS\system32\mscoree.dll [2017-09-29] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) FireFox: ======== FF DefaultProfile: l35e9eoo.default-1516331806613 FF ProfilePath: C:\Users\Janice\AppData\Roaming\Mozilla\Firefox\Profiles\l35e9eoo.default-1516331806613 [2018-01-25] FF Homepage: Mozilla\Firefox\Profiles\l35e9eoo.default-1516331806613 -> hxxps://www.msn.com FF HKLM\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2017-10-14] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-05-09] [Legacy] [not signed] FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-02-04] [Legacy] [not signed] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi FF HKU\S-1-5-21-2151132770-2338251114-259933141-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @bestbuy.com/npBestBuyPcAppDetector,version=1.0 -> C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll [2010-10-13] (Best Buy) FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll [2011-01-12] (Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2013-10-01] () FF Plugin-x32: @bestbuy.com/npBestBuyPcAppDetector,version=1.0 -> C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll [2010-10-13] (Best Buy) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-22] (Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2014-02-04] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2013-08-14] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2013-08-14] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2013-08-14] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2014-02-04] (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2013-08-14] (RealDownloader) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-25] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-25] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems Inc.) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin HKU\S-1-5-21-2151132770-2338251114-259933141-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Janice\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2013-07-02] (Google) FF Plugin HKU\S-1-5-21-2151132770-2338251114-259933141-1000: @talk.google.com/O1DPlugin -> C:\Users\Janice\AppData\Roaming\Mozilla\plugins\npo1d.dll [2013-07-02] (Google) FF Plugin HKU\S-1-5-21-2151132770-2338251114-259933141-1000: @talk.google.com/O3DPlugin -> C:\Users\Janice\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll [2013-07-02] () FF Plugin HKU\S-1-5-21-2151132770-2338251114-259933141-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Janice\AppData\Local\Google\Update\1.3.21.149\npGoogleUpdate3.dll [No File] FF Plugin HKU\S-1-5-21-2151132770-2338251114-259933141-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Janice\AppData\Local\Google\Update\1.3.21.149\npGoogleUpdate3.dll [No File] FF Plugin ProgramFiles/Appdata: C:\Users\Janice\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2013-07-02] (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Janice\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll [2013-07-02] () FF Plugin ProgramFiles/Appdata: C:\Users\Janice\AppData\Roaming\mozilla\plugins\npo1d.dll [2013-07-02] (Google) Chrome: ======= CHR DefaultSearchURL: Default -> hxxp://srchbar.com/?q={searchTerms} CHR DefaultSuggestURL: Default -> hxxp://srchbar.com/?s={searchTerms} CHR Profile: C:\Users\Janice\AppData\Local\Google\Chrome\User Data\Default [2018-01-27] CHR Extension: (Kaspersky Protection) - C:\Users\Janice\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhoibnponjcgjgcnfacekaijdbbplhib [2018-01-25] CHR Extension: (RealDownloader) - C:\Users\Janice\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2018-01-25] CHR Extension: (Skype) - C:\Users\Janice\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2018-01-25] CHR Extension: (Chrome Web Store Payments) - C:\Users\Janice\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-01-25] CHR Extension: (Chrome Media Router) - C:\Users\Janice\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-01-25] CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib CHR HKU\S-1-5-21-2151132770-2338251114-259933141-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation) [File not signed] R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab) R4 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [155648 2009-06-09] (Stardock Corporation) [File not signed] R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed] R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed] R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2010-10-22] (Hewlett-Packard Co.) [File not signed] S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company) S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab) S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] S3 QBFCService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [65536 2016-08-22] (Intuit Inc.) [File not signed] R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () S2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [258048 2010-06-17] (IDT, Inc.) [File not signed] R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [263264 2017-02-24] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [5088256 2010-02-02] (Dell Inc.) [File not signed] R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [672024 2014-12-12] (Wacom Technology, Corp.) R2 CFUACProxy_officeguardianv2; "C:\ProgramData\OfficeGuardianV2\UACProxy.exe" -s "-pC:\ProgramData\OfficeGuardianV2" ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab) R0 KL1; C:\WINDOWS\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab) R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-07] (AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [86352 2016-06-15] (AO Kaspersky Lab) R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [78216 2016-05-31] (AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [28792 2016-03-31] (AO Kaspersky Lab) R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [197344 2017-10-14] (AO Kaspersky Lab) R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [592088 2017-10-14] (AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys [190832 2018-01-24] (AO Kaspersky Lab) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1021656 2017-10-14] (AO Kaspersky Lab) R1 KLIM6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57424 2017-01-30] (AO Kaspersky Lab) R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [52136 2016-05-19] (AO Kaspersky Lab) R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [45488 2016-05-31] (AO Kaspersky Lab) R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [230280 2018-01-24] (AO Kaspersky Lab) R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [87584 2018-01-24] (AO Kaspersky Lab) R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [253200 2018-01-23] (AO Kaspersky Lab) R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [107680 2018-01-24] (AO Kaspersky Lab) R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [173664 2018-01-24] (AO Kaspersky Lab) R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [85320 2016-06-18] (AO Kaspersky Lab) R1 Klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [136416 2017-03-13] (AO Kaspersky Lab) R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [199640 2017-07-19] (AO Kaspersky Lab) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2017-09-29] (Realtek ) S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [23552 2014-12-01] (Silicon Laboratories) [File not signed] S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [13920 2016-03-14] () S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2016-06-15] (SplitmediaLabs Limited) U3 idsvc; no ImagePath U5 REALPLAYERUPDATESVC; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-01-27 12:19 - 2018-01-27 12:22 - 000000000 ____D C:\FRST 2018-01-27 12:17 - 2018-01-27 12:22 - 000000000 ____D C:\Users\Janice\Downloads\Farbar 2018-01-25 12:40 - 2018-01-25 12:41 - 001129816 _____ (Google Inc.) C:\Users\Janice\Downloads\ChromeSetup.exe 2018-01-25 12:11 - 2018-01-26 17:15 - 000000000 ____D C:\Users\Janice\AppData\Local\Google 2018-01-25 12:00 - 2018-01-25 12:00 - 000014445 _____ C:\Users\Janice\Desktop\Chrome bookmarks_1_25_18.html 2018-01-25 10:48 - 2018-01-26 10:17 - 000003580 _____ C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2151132770-2338251114-259933141-1000 2018-01-25 10:48 - 2018-01-26 10:17 - 000003518 _____ C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2151132770-2338251114-259933141-1000 2018-01-24 23:12 - 2018-01-24 23:12 - 000001141 _____ C:\Users\Public\Desktop\VLC media player.lnk 2018-01-24 19:59 - 2018-01-24 21:07 - 000000000 ____D C:\Users\Janice\AppData\Roaming\Malwarebytes 2018-01-24 11:35 - 2018-01-24 11:37 - 000173664 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys 2018-01-24 11:35 - 2018-01-24 11:35 - 000230280 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys 2018-01-24 11:35 - 2018-01-24 11:35 - 000087584 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys 2018-01-24 11:25 - 2018-01-24 11:26 - 000000000 ____D C:\Users\Janice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2018-01-23 23:51 - 2018-01-23 23:51 - 000253200 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys 2018-01-23 23:50 - 2018-01-24 11:35 - 000107680 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys 2018-01-18 19:16 - 2018-01-18 19:16 - 000000000 ____D C:\Users\Janice\Desktop\Old Firefox Data 2018-01-16 20:43 - 2018-01-16 20:43 - 000273156 _____ C:\Users\Janice\Documents\Scan_0043.pdf 2018-01-09 20:35 - 2018-01-09 20:35 - 000741703 _____ C:\Users\Janice\Documents\Scan_0042.pdf 2018-01-09 20:28 - 2018-01-09 20:28 - 000405568 _____ C:\Users\Janice\Documents\Scan_0041.pdf 2018-01-09 20:27 - 2018-01-09 20:27 - 000165306 _____ C:\Users\Janice\Documents\Scan_0040.pdf 2018-01-09 20:26 - 2018-01-09 20:26 - 000153052 _____ C:\Users\Janice\Documents\Scan_0039.pdf 2018-01-09 20:25 - 2018-01-09 20:25 - 000157472 _____ C:\Users\Janice\Documents\Scan_0038.pdf 2018-01-09 20:24 - 2018-01-09 20:24 - 000295073 _____ C:\Users\Janice\Documents\Scan_0037.pdf 2018-01-09 18:28 - 2017-12-22 05:45 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-01-09 18:28 - 2017-12-22 05:45 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-01-09 14:35 - 2018-01-01 09:15 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe 2018-01-09 14:35 - 2018-01-01 04:51 - 001055128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-01-09 14:35 - 2018-01-01 04:51 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys 2018-01-09 14:35 - 2018-01-01 04:50 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2018-01-09 14:35 - 2018-01-01 04:49 - 008605080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-01-09 14:35 - 2018-01-01 04:49 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2018-01-09 14:35 - 2018-01-01 04:48 - 007831760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2018-01-09 14:35 - 2018-01-01 04:48 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-01-09 14:35 - 2018-01-01 04:47 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys 2018-01-09 14:35 - 2018-01-01 04:46 - 002709704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-01-09 14:35 - 2018-01-01 04:46 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2018-01-09 14:35 - 2018-01-01 04:45 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2018-01-09 14:35 - 2018-01-01 04:45 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2018-01-09 14:35 - 2018-01-01 04:45 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2018-01-09 14:35 - 2018-01-01 04:42 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2018-01-09 14:35 - 2018-01-01 04:42 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2018-01-09 14:35 - 2018-01-01 04:41 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-01-09 14:35 - 2018-01-01 04:40 - 001206680 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-01-09 14:35 - 2018-01-01 04:39 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2018-01-09 14:35 - 2018-01-01 04:39 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2018-01-09 14:35 - 2018-01-01 04:39 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys 2018-01-09 14:35 - 2018-01-01 04:38 - 003904808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2018-01-09 14:35 - 2018-01-01 04:37 - 001426664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2018-01-09 14:35 - 2018-01-01 04:36 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2018-01-09 14:35 - 2018-01-01 04:35 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2018-01-09 14:35 - 2018-01-01 04:34 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-01-09 14:35 - 2018-01-01 04:33 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2018-01-09 14:35 - 2018-01-01 04:32 - 004481240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2018-01-09 14:35 - 2018-01-01 04:27 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2018-01-09 14:35 - 2018-01-01 04:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2018-01-09 14:35 - 2018-01-01 04:25 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2018-01-09 14:35 - 2018-01-01 04:25 - 000147864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2018-01-09 14:35 - 2018-01-01 04:23 - 021352144 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-01-09 14:35 - 2018-01-01 04:03 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2018-01-09 14:35 - 2018-01-01 03:53 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2018-01-09 14:35 - 2018-01-01 03:46 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2018-01-09 14:35 - 2018-01-01 03:45 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2018-01-09 14:35 - 2018-01-01 03:45 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2018-01-09 14:35 - 2018-01-01 03:45 - 002192624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2018-01-09 14:35 - 2018-01-01 03:43 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-01-09 14:35 - 2018-01-01 03:42 - 006479552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-01-09 14:35 - 2018-01-01 03:42 - 004644912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2018-01-09 14:35 - 2018-01-01 03:42 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2018-01-09 14:35 - 2018-01-01 03:42 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2018-01-09 14:35 - 2018-01-01 03:37 - 025247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-01-09 14:35 - 2018-01-01 03:34 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2018-01-09 14:35 - 2018-01-01 03:25 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-01-09 14:35 - 2018-01-01 03:25 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2018-01-09 14:35 - 2018-01-01 03:24 - 003668480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-01-09 14:35 - 2018-01-01 03:24 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2018-01-09 14:35 - 2018-01-01 03:23 - 000536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2018-01-09 14:35 - 2018-01-01 03:23 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2018-01-09 14:35 - 2018-01-01 03:21 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys 2018-01-09 14:35 - 2018-01-01 03:20 - 019337216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-01-09 14:35 - 2018-01-01 03:20 - 018917888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-01-09 14:35 - 2018-01-01 03:19 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2018-01-09 14:35 - 2018-01-01 03:19 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2018-01-09 14:35 - 2018-01-01 03:19 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2018-01-09 14:35 - 2018-01-01 03:19 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2018-01-09 14:35 - 2018-01-01 03:18 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2018-01-09 14:35 - 2018-01-01 03:18 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2018-01-09 14:35 - 2018-01-01 03:18 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2018-01-09 14:35 - 2018-01-01 03:17 - 011923968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-01-09 14:35 - 2018-01-01 03:17 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-01-09 14:35 - 2018-01-01 03:17 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-01-09 14:35 - 2018-01-01 03:17 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 003676672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 000812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-01-09 14:35 - 2018-01-01 03:16 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-01-09 14:35 - 2018-01-01 03:15 - 012687872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-01-09 14:35 - 2018-01-01 03:15 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-01-09 14:35 - 2018-01-01 03:15 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2018-01-09 14:35 - 2018-01-01 03:14 - 023655936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-01-09 14:35 - 2018-01-01 03:14 - 002465280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2018-01-09 14:35 - 2018-01-01 03:13 - 013657600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-01-09 14:35 - 2018-01-01 03:13 - 012830208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-01-09 14:35 - 2018-01-01 03:13 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2018-01-09 14:35 - 2018-01-01 03:13 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2018-01-09 14:35 - 2018-01-01 03:12 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-01-09 14:35 - 2018-01-01 03:12 - 001547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2018-01-09 14:35 - 2018-01-01 03:12 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2018-01-09 14:35 - 2018-01-01 03:11 - 008108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-01-09 14:35 - 2018-01-01 03:11 - 004748288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-01-09 14:35 - 2018-01-01 03:11 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-01-09 14:35 - 2018-01-01 03:11 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-01-09 14:35 - 2018-01-01 03:11 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-01-09 14:35 - 2018-01-01 03:09 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2018-01-09 14:35 - 2018-01-01 03:09 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2018-01-09 14:35 - 2018-01-01 03:08 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2018-01-09 14:35 - 2018-01-01 03:08 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2018-01-09 14:34 - 2018-01-01 04:54 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-01-09 14:34 - 2018-01-01 04:53 - 001090984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-01-09 14:34 - 2018-01-01 04:52 - 000066712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll 2018-01-09 14:34 - 2018-01-01 04:51 - 001414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-01-09 14:34 - 2018-01-01 04:51 - 001209240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-01-09 14:34 - 2018-01-01 04:51 - 000191816 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2018-01-09 14:34 - 2018-01-01 04:50 - 000780464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2018-01-09 14:34 - 2018-01-01 04:50 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll 2018-01-09 14:34 - 2018-01-01 04:50 - 000077208 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2018-01-09 14:34 - 2018-01-01 04:49 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2018-01-09 14:34 - 2018-01-01 04:49 - 000292376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2018-01-09 14:34 - 2018-01-01 04:48 - 000382360 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2018-01-09 14:34 - 2018-01-01 04:47 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2018-01-09 14:34 - 2018-01-01 04:46 - 000898216 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-01-09 14:34 - 2018-01-01 04:46 - 000733592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2018-01-09 14:34 - 2018-01-01 04:43 - 001173576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-01-09 14:34 - 2018-01-01 04:43 - 000367336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2018-01-09 14:34 - 2018-01-01 04:43 - 000062872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys 2018-01-09 14:34 - 2018-01-01 04:42 - 001029016 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2018-01-09 14:34 - 2018-01-01 04:42 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2018-01-09 14:34 - 2018-01-01 04:42 - 000109976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys 2018-01-09 14:34 - 2018-01-01 04:41 - 000559512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2018-01-09 14:34 - 2018-01-01 04:41 - 000549552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2018-01-09 14:34 - 2018-01-01 04:39 - 000677784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-01-09 14:34 - 2018-01-01 04:39 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2018-01-09 14:34 - 2018-01-01 04:38 - 000727448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2018-01-09 14:34 - 2018-01-01 04:38 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2018-01-09 14:34 - 2018-01-01 04:38 - 000103320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2018-01-09 14:34 - 2018-01-01 04:38 - 000038808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Diskdump.sys 2018-01-09 14:34 - 2018-01-01 04:37 - 000461720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2018-01-09 14:34 - 2018-01-01 04:36 - 000413888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2018-01-09 14:34 - 2018-01-01 04:36 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe 2018-01-09 14:34 - 2018-01-01 04:36 - 000113560 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll 2018-01-09 14:34 - 2018-01-01 04:36 - 000057752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys 2018-01-09 14:34 - 2018-01-01 04:35 - 000075160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll 2018-01-09 14:34 - 2018-01-01 04:34 - 001336344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2018-01-09 14:34 - 2018-01-01 04:34 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2018-01-09 14:34 - 2018-01-01 04:34 - 000087384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2018-01-09 14:34 - 2018-01-01 04:33 - 002773400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-01-09 14:34 - 2018-01-01 04:32 - 000617304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2018-01-09 14:34 - 2018-01-01 04:27 - 000163736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2018-01-09 14:34 - 2018-01-01 04:26 - 000081304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys 2018-01-09 14:34 - 2018-01-01 04:21 - 001103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2018-01-09 14:34 - 2018-01-01 04:21 - 000614296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2018-01-09 14:34 - 2018-01-01 04:06 - 000311192 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2018-01-09 14:34 - 2018-01-01 04:03 - 000777904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2018-01-09 14:34 - 2018-01-01 04:03 - 000650328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2018-01-09 14:34 - 2018-01-01 04:03 - 000566664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-01-09 14:34 - 2018-01-01 03:49 - 000481464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll 2018-01-09 14:34 - 2018-01-01 03:49 - 000258808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2018-01-09 14:34 - 2018-01-01 03:46 - 000289816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2018-01-09 14:34 - 2018-01-01 03:45 - 000450928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2018-01-09 14:34 - 2018-01-01 03:42 - 001003152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2018-01-09 14:34 - 2018-01-01 03:42 - 000386424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2018-01-09 14:34 - 2018-01-01 03:42 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2018-01-09 14:34 - 2018-01-01 03:42 - 000074992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2018-01-09 14:34 - 2018-01-01 03:25 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2018-01-09 14:34 - 2018-01-01 03:25 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2018-01-09 14:34 - 2018-01-01 03:25 - 000097792 _____ C:\WINDOWS\system32\runexehelper.exe 2018-01-09 14:34 - 2018-01-01 03:24 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll 2018-01-09 14:34 - 2018-01-01 03:24 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2018-01-09 14:34 - 2018-01-01 03:23 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2018-01-09 14:34 - 2018-01-01 03:23 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2018-01-09 14:34 - 2018-01-01 03:23 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2018-01-09 14:34 - 2018-01-01 03:23 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2018-01-09 14:34 - 2018-01-01 03:23 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys 2018-01-09 14:34 - 2018-01-01 03:22 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys 2018-01-09 14:34 - 2018-01-01 03:21 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2018-01-09 14:34 - 2018-01-01 03:21 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2018-01-09 14:34 - 2018-01-01 03:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll 2018-01-09 14:34 - 2018-01-01 03:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys 2018-01-09 14:34 - 2018-01-01 03:21 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys 2018-01-09 14:34 - 2018-01-01 03:21 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys 2018-01-09 14:34 - 2018-01-01 03:20 - 000524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2018-01-09 14:34 - 2018-01-01 03:20 - 000212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll 2018-01-09 14:34 - 2018-01-01 03:20 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 008014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalAuth.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2018-01-09 14:34 - 2018-01-01 03:19 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2018-01-09 14:34 - 2018-01-01 03:19 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys 2018-01-09 14:34 - 2018-01-01 03:19 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2018-01-09 14:34 - 2018-01-01 03:19 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll 2018-01-09 14:34 - 2018-01-01 03:19 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll 2018-01-09 14:34 - 2018-01-01 03:18 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 006564864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll 2018-01-09 14:34 - 2018-01-01 03:17 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 005833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 004839424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000956928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2018-01-09 14:34 - 2018-01-01 03:16 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 002349568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 001381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2018-01-09 14:34 - 2018-01-01 03:15 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2018-01-09 14:34 - 2018-01-01 03:14 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-01-09 14:34 - 2018-01-01 03:14 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2018-01-09 14:34 - 2018-01-01 03:14 - 001003008 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2018-01-09 14:34 - 2018-01-01 03:14 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2018-01-09 14:34 - 2018-01-01 03:14 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2018-01-09 14:34 - 2018-01-01 03:14 - 000870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2018-01-09 14:34 - 2018-01-01 03:13 - 002013184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2018-01-09 14:34 - 2018-01-01 03:13 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-01-09 14:34 - 2018-01-01 03:13 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2018-01-09 14:34 - 2018-01-01 03:13 - 000897024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2018-01-09 14:34 - 2018-01-01 03:12 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-01-09 14:34 - 2018-01-01 03:12 - 001573376 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2018-01-09 14:34 - 2018-01-01 03:12 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 003165696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 002082304 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2018-01-09 14:34 - 2018-01-01 03:11 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 001597952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 001231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2018-01-09 14:34 - 2018-01-01 03:11 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2018-01-09 14:34 - 2018-01-01 03:10 - 003126272 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2018-01-09 14:34 - 2018-01-01 03:10 - 002528256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2018-01-09 14:34 - 2018-01-01 03:09 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll 2018-01-09 14:34 - 2018-01-01 03:09 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2018-01-09 14:34 - 2018-01-01 03:08 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2018-01-09 14:34 - 2018-01-01 03:08 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2018-01-09 14:34 - 2018-01-01 03:06 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2018-01-09 14:34 - 2018-01-01 03:05 - 002510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2018-01-09 14:34 - 2018-01-01 03:05 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2018-01-09 14:33 - 2018-01-01 03:24 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2018-01-09 14:33 - 2018-01-01 03:23 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe 2018-01-09 14:33 - 2018-01-01 03:23 - 000047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2018-01-09 14:33 - 2018-01-01 03:22 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2018-01-09 14:33 - 2018-01-01 03:22 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll 2018-01-09 14:33 - 2018-01-01 03:21 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2018-01-09 14:33 - 2018-01-01 03:21 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll 2018-01-09 14:33 - 2018-01-01 03:20 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2018-01-09 14:33 - 2018-01-01 03:20 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2018-01-09 14:33 - 2018-01-01 03:20 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2018-01-09 14:33 - 2018-01-01 03:20 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2018-01-09 14:33 - 2018-01-01 03:20 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll 2018-01-09 14:33 - 2018-01-01 03:20 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys 2018-01-09 14:33 - 2018-01-01 03:19 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-01-09 14:33 - 2018-01-01 03:19 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2018-01-09 14:33 - 2018-01-01 03:19 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2018-01-09 14:33 - 2018-01-01 03:19 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoert2.dll 2018-01-09 14:33 - 2018-01-01 03:19 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2018-01-09 14:33 - 2018-01-01 03:18 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2018-01-09 14:33 - 2018-01-01 03:18 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2018-01-09 14:33 - 2018-01-01 03:18 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2018-01-09 14:33 - 2018-01-01 03:18 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2018-01-09 14:33 - 2018-01-01 03:18 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2018-01-09 14:33 - 2018-01-01 03:17 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2018-01-09 14:33 - 2018-01-01 03:16 - 000966656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2018-01-09 14:33 - 2018-01-01 03:12 - 000760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2018-01-09 14:33 - 2018-01-01 03:10 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscproxystub.dll 2018-01-09 14:33 - 2018-01-01 03:08 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll 2018-01-09 14:33 - 2018-01-01 03:05 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2017-12-28 23:22 - 2017-12-28 23:22 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2017-12-28 23:20 - 2017-12-28 23:20 - 000000000 ___HD C:\Users\Janice\MicrosoftEdgeBackups 2017-12-28 23:17 - 2018-01-09 18:30 - 000000000 ___RD C:\Users\Janice\3D Objects 2017-12-28 23:15 - 2017-12-28 23:15 - 000000020 ___SH C:\Users\Janice\ntuser.ini 2017-12-28 23:12 - 2018-01-27 10:08 - 000004156 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F47C3411-9A44-428D-AE75-661522D40BD8} 2017-12-28 23:12 - 2018-01-25 12:44 - 000003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-12-28 23:12 - 2018-01-25 12:44 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-12-28 23:12 - 2018-01-24 22:55 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-12-28 23:12 - 2018-01-24 13:28 - 000003366 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2151132770-2338251114-259933141-1000 2017-12-28 23:12 - 2018-01-17 19:50 - 000003814 _____ C:\WINDOWS\System32\Tasks\G2MUploadTask-S-1-5-21-2151132770-2338251114-259933141-1000 2017-12-28 23:12 - 2018-01-17 19:50 - 000003718 _____ C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-2151132770-2338251114-259933141-1000 2017-12-28 23:12 - 2017-12-28 23:13 - 000003380 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2151132770-2338251114-259933141-1000Core1d237822f9b2b46 2017-12-28 23:12 - 2017-12-28 23:13 - 000003280 _____ C:\WINDOWS\System32\Tasks\{6373806D-D4D8-37C6-6B33-B2515CEEDBDE} 2017-12-28 23:12 - 2017-12-28 23:13 - 000003254 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2151132770-2338251114-259933141-1000Core 2017-12-28 23:12 - 2017-12-28 23:13 - 000003082 _____ C:\WINDOWS\System32\Tasks\{CCD26546-5B8E-7BA3-4925-110259BE1461} 2017-12-28 23:12 - 2017-12-28 23:12 - 000022906 _____ C:\WINDOWS\System32\Tasks\DNSLOCKINGTON 2017-12-28 23:12 - 2017-12-28 23:12 - 000004542 _____ C:\WINDOWS\System32\Tasks\Plus-HD-4.5-firefoxinstaller 2017-12-28 23:12 - 2017-12-28 23:12 - 000004376 _____ C:\WINDOWS\System32\Tasks\Plus-HD-4.5-chromeinstaller 2017-12-28 23:12 - 2017-12-28 23:12 - 000003766 _____ C:\WINDOWS\System32\Tasks\Plus-HD-4.5-updater 2017-12-28 23:12 - 2017-12-28 23:12 - 000003668 _____ C:\WINDOWS\System32\Tasks\Plus-HD-4.5-codedownloader 2017-12-28 23:12 - 2017-12-28 23:12 - 000003648 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2151132770-2338251114-259933141-1000UA1d237822fcfa072 2017-12-28 23:12 - 2017-12-28 23:12 - 000003568 _____ C:\WINDOWS\System32\Tasks\Plus-HD-4.5-enabler 2017-12-28 23:12 - 2017-12-28 23:12 - 000003526 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2151132770-2338251114-259933141-1000UA 2017-12-28 23:12 - 2017-12-28 23:12 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2017-12-28 23:12 - 2017-12-28 23:12 - 000003280 _____ C:\WINDOWS\System32\Tasks\{A2E4AF55-154F-18FE-9F73-75B9EE402854} 2017-12-28 23:12 - 2017-12-28 23:12 - 000003280 _____ C:\WINDOWS\System32\Tasks\{6BA7E79D-DC0C-5036-9C3C-700321FAB434} 2017-12-28 23:12 - 2017-12-28 23:12 - 000003280 _____ C:\WINDOWS\System32\Tasks\{4010C010-F7BB-77BB-C8FA-B75F9A65D1ED} 2017-12-28 23:12 - 2017-12-28 23:12 - 000003280 _____ C:\WINDOWS\System32\Tasks\{17A42FCC-A00F-9867-509F-4EC6F169084D} 2017-12-28 23:12 - 2017-12-28 23:12 - 000003280 _____ C:\WINDOWS\System32\Tasks\{127A9A06-A5D1-2DAD-1F58-F5841C93C78C} 2017-12-28 23:12 - 2017-12-28 23:12 - 000002634 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP ENVY 7640 series 2017-12-28 23:12 - 2017-12-28 23:12 - 000002198 _____ C:\WINDOWS\System32\Tasks\HPCustPartic.exe_{BC39F3AA-47F7-42E0-9492-B6882CF6B202} 2017-12-28 23:12 - 2017-12-28 23:12 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD 2017-12-28 23:12 - 2017-12-28 23:12 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple 2017-12-28 23:10 - 2017-12-28 23:12 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2017-12-28 23:10 - 2017-12-28 23:12 - 000011433 _____ C:\WINDOWS\diagerr.xml 2017-12-28 22:41 - 2017-12-28 22:41 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2017-12-28 22:38 - 2017-12-28 23:37 - 000000000 ____D C:\Users\Janice\AppData\Local\Packages 2017-12-28 22:37 - 2017-12-28 22:37 - 000000000 ____D C:\ProgramData\USOShared 2017-12-28 22:36 - 2018-01-24 00:46 - 000000000 ____D C:\Users\Janice 2017-12-28 22:36 - 2017-12-28 23:03 - 000000000 ____D C:\Users\DefaultAppPool 2017-12-28 22:31 - 2018-01-13 09:56 - 001117788 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-12-28 22:28 - 2017-09-29 05:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-12-28 22:25 - 2018-01-27 11:34 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2017-12-28 22:25 - 2018-01-09 18:27 - 000427952 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-12-28 22:18 - 2018-01-10 18:39 - 000000000 ____D C:\Windows.old 2017-12-28 22:10 - 2017-12-28 22:18 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2017-12-28 22:10 - 2017-12-28 22:10 - 000000000 ___DL C:\Users\Public\Recorded TV (1) 2017-12-28 22:10 - 2017-12-28 22:10 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines 2017-12-28 22:07 - 2017-12-28 22:09 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2017-12-28 22:07 - 2017-12-28 22:07 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2017-12-28 22:03 - 2017-12-28 22:03 - 006791472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 006015200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 002717392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 002465848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 002269080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001970520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001507736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001454568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001377080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 001015008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2017-12-28 22:03 - 2017-12-28 22:03 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002972672 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001806336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 001554216 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001463856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001323840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001280000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001261864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000975872 _____ C:\WINDOWS\system32\FaceProcessor.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000768512 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000612760 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000610712 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000555416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2017-12-28 22:02 - 2017-12-28 22:02 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2017-12-28 22:02 - 2017-12-28 22:02 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000418712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000362176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000353688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000269696 _____ C:\WINDOWS\system32\FaceProcessorCore.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx 2017-12-28 22:02 - 2017-12-28 22:02 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000060824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urscx01000.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcSpecfc.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrleakdiag.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000045464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdrleakdiag.exe 2017-12-28 22:02 - 2017-12-28 22:02 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-12-28 22:02 - 2017-12-28 22:02 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcVSp1res.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcVSp1res.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2017-12-28 22:02 - 2017-12-28 22:02 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2017-12-28 21:57 - 2017-12-28 21:57 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2017-12-28 21:57 - 2017-12-28 21:57 - 000000000 ____D C:\WINDOWS\system32\msmq 2017-12-28 21:57 - 2017-12-28 21:57 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2017-12-28 21:57 - 2017-12-28 21:57 - 000000000 ____D C:\inetpub 2017-12-28 21:56 - 2017-12-28 21:56 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2017-12-28 21:56 - 2017-12-28 21:56 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2017-12-28 21:56 - 2017-12-28 21:56 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2017-12-28 21:56 - 2017-12-28 21:56 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-12-28 21:56 - 2017-12-28 21:56 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2017-12-28 21:56 - 2017-12-28 21:56 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2017-12-28 21:56 - 2017-12-28 21:56 - 000000000 ____D C:\Program Files\Reference Assemblies 2017-12-28 21:56 - 2017-12-28 21:56 - 000000000 ____D C:\Program Files\MSBuild 2017-12-28 21:56 - 2017-12-28 21:56 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-12-28 21:56 - 2017-12-28 21:56 - 000000000 ____D C:\Program Files (x86)\MSBuild ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-01-27 12:26 - 2012-11-28 11:16 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2018-01-27 12:07 - 2014-02-04 19:26 - 000000000 ____D C:\Program Files (x86)\Google 2018-01-26 17:21 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-01-25 12:37 - 2017-06-23 14:54 - 000000000 ____D C:\Users\Janice\AppData\LocalLow\Mozilla 2018-01-25 12:35 - 2014-05-02 17:25 - 000000000 ____D C:\Users\Janice\Desktop\Desktop Items 2018-01-24 22:54 - 2017-09-29 00:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2018-01-24 21:38 - 2017-09-29 05:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-01-24 21:38 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2018-01-24 16:03 - 2014-08-04 14:16 - 000000000 ____D C:\Users\Janice\AppData\Local\ElevatedDiagnostics 2018-01-24 13:28 - 2016-03-07 18:00 - 000002409 _____ C:\Users\Janice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-01-24 13:28 - 2016-03-07 18:00 - 000000000 ___RD C:\Users\Janice\OneDrive 2018-01-24 13:09 - 2017-06-12 19:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2018-01-24 13:09 - 2014-03-24 19:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-01-24 12:09 - 2014-05-05 18:20 - 000001161 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-01-24 12:02 - 2012-11-19 18:52 - 000000000 ____D C:\Users\Janice\AppData\Roaming\Mozilla 2018-01-24 11:27 - 2013-08-19 16:36 - 000000000 ____D C:\Users\Janice\AppData\Roaming\Dropbox 2018-01-23 23:56 - 2016-12-16 15:02 - 000000000 ____D C:\Program Files (x86)\SuperPCCleaner 2018-01-22 15:28 - 2016-11-25 20:09 - 000000000 ____D C:\ProgramData\02112549-4a61-0 2018-01-22 15:28 - 2016-11-25 20:09 - 000000000 ____D C:\ProgramData\02112549-2a97-1 2018-01-22 15:27 - 2016-04-05 11:35 - 000000000 ____D C:\Program Files (x86)\DNS Unlocker 2018-01-22 15:11 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-01-22 10:25 - 2017-01-30 18:06 - 000000000 ____D C:\Program Files\Common Files\AV 2018-01-20 13:59 - 2015-05-30 12:11 - 000000656 _____ C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-2151132770-2338251114-259933141-1000.job 2018-01-20 13:59 - 2014-01-23 18:39 - 000000560 _____ C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-2151132770-2338251114-259933141-1000.job 2018-01-17 19:50 - 2017-07-10 16:19 - 000000000 ____D C:\Users\Janice\AppData\Local\GoToMeeting 2018-01-13 10:34 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\rescache 2018-01-09 19:01 - 2017-09-29 05:44 - 000000000 ____D C:\WINDOWS\INF 2018-01-09 18:30 - 2016-03-07 17:54 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ___SD C:\WINDOWS\system32\F12 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\TextInput 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\migwiz 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-01-09 18:20 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\Provisioning 2018-01-09 18:20 - 2017-09-29 00:45 - 000000000 ____D C:\WINDOWS\system32\Dism 2018-01-09 15:09 - 2013-08-13 20:20 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-01-09 15:04 - 2017-10-10 12:48 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-01-09 15:04 - 2012-11-17 17:40 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-01-09 15:03 - 2017-09-29 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-01-09 14:45 - 2017-09-29 05:41 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2018-01-09 14:43 - 2017-09-29 05:41 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2018-01-09 14:43 - 2017-09-29 05:41 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2018-01-05 14:39 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-01-03 15:55 - 2012-11-17 14:09 - 000099584 _____ C:\Users\Janice\AppData\Local\GDIPFONTCACHEV1.DAT 2017-12-29 08:24 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\appcompat 2017-12-28 23:18 - 2016-03-07 17:53 - 000000000 ____D C:\Users\Janice\AppData\Local\TileDataLayer 2017-12-28 23:15 - 2017-12-18 21:09 - 000000000 ___DC C:\WINDOWS\Panther 2017-12-28 23:09 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\Registration 2017-12-28 23:09 - 2016-03-07 15:19 - 000022840 _____ C:\WINDOWS\system32\emptyregdb.dat 2017-12-28 23:08 - 2017-09-29 05:46 - 000000000 __RSD C:\WINDOWS\media 2017-12-28 22:51 - 2015-10-02 13:38 - 000000000 ____D C:\Users\Janice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Real Estate Success Software 2017-12-28 22:51 - 2015-01-05 14:36 - 000000000 ____D C:\Users\Janice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PropStream 2017-12-28 22:42 - 2017-09-29 05:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-12-28 22:41 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2017-12-28 22:37 - 2017-09-29 05:46 - 000000000 ____D C:\ProgramData\USOPrivate 2017-12-28 22:31 - 2017-09-29 00:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2017-12-28 22:31 - 2017-08-02 10:44 - 000972240 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2017-12-28 22:22 - 2017-09-29 05:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2017-12-28 22:18 - 2017-09-29 05:49 - 000000000 ____D C:\WINDOWS\Setup 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 __SHD C:\Program Files\Windows Sidebar 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 __RHD C:\Users\Public\Libraries 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\spool 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\IME 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\et-EE 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\schemas 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\Resources 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\Help 2017-12-28 22:18 - 2017-09-29 05:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2017-12-28 22:18 - 2017-09-26 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickBooks 2017-12-28 22:18 - 2017-07-17 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoDaddy 2017-12-28 22:18 - 2017-07-07 10:35 - 000000000 ____D C:\Program Files\UNP 2017-12-28 22:18 - 2017-03-27 20:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit 2017-12-28 22:18 - 2017-03-18 13:03 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2017-12-28 22:18 - 2017-01-30 18:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security 2017-12-28 22:18 - 2016-12-16 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super PC Cleaner 2017-12-28 22:18 - 2016-05-31 12:10 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablet 2017-12-28 22:18 - 2015-10-30 01:07 - 000000000 ____D C:\WINDOWS\ShellNew 2017-12-28 22:18 - 2015-04-14 21:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-12-28 22:18 - 2014-07-22 18:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2017-12-28 22:18 - 2014-03-24 18:03 - 000000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2017-12-28 22:18 - 2014-03-24 18:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2017-12-28 22:18 - 2014-02-04 19:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks 2017-12-28 22:18 - 2013-12-02 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2017-12-28 22:18 - 2013-05-09 13:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2017-12-28 22:18 - 2013-04-01 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quicken Rental Property Manager 2.0 2017-12-28 22:18 - 2013-03-13 20:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-12-28 22:18 - 2012-11-20 12:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2017-12-28 22:18 - 2012-11-17 15:49 - 000000000 ____D C:\WINDOWS\system32\SPReview 2017-12-28 22:18 - 2012-11-17 15:13 - 000000000 ____D C:\WINDOWS\system32\EventProviders 2017-12-28 22:18 - 2011-01-12 08:59 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2017-12-28 22:18 - 2011-01-12 08:59 - 000000000 ____D C:\WINDOWS\en 2017-12-28 22:18 - 2011-01-12 08:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell DataSafe 2017-12-28 22:18 - 2011-01-12 08:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2017-12-28 22:18 - 2011-01-12 08:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam 2017-12-28 22:18 - 2011-01-12 08:39 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DW WLAN 2017-12-28 22:18 - 2011-01-12 08:35 - 000000000 ____D C:\WINDOWS\system32\SRSLabs 2017-12-28 22:18 - 2011-01-12 08:29 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2017-12-28 22:17 - 2017-09-29 00:45 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2017-12-28 22:11 - 2013-05-09 13:19 - 000000000 ____D C:\WINDOWS\SysWOW64\spool 2017-12-28 22:10 - 2017-08-02 10:43 - 000000000 ____D C:\Program Files\Synaptics 2017-12-28 22:10 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files\Microsoft Games 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\zu-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\yo-NG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\xh-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\wo-SN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ur-PK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ug-CN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\tt-RU 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\tn-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\tk-TM 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ti-ET 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\te-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ta-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\sw-KE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\sq-AL 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\si-LK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\rw-RW 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\quz-PE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\prs-AF 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\pa-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\or-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\nso-ZA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\nn-NO 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ne-NP 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\mt-MT 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\mr-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\mn-MN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ml-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\mk-MK 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\mi-NZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\lo-LA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\lb-LU 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ky-KG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\kok-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\kn-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\km-KH 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\kk-KZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ka-GE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\is-IS 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ig-NG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\id-ID 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\hy-AM 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\gu-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ga-IE 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\fil-PH 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\fa-IR 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\cy-GB 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\bn-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\bn-BD 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\be-BY 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\as-IN 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\am-ET 2017-12-28 22:04 - 2017-09-29 06:42 - 000000000 ____D C:\WINDOWS\system32\af-ZA 2017-12-28 22:04 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2017-12-28 22:04 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2017-12-28 22:04 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2017-12-28 22:04 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\ShellExperiences 2017-12-28 22:04 - 2017-09-29 05:46 - 000000000 ____D C:\Program Files\Windows Defender 2017-12-28 22:04 - 2017-09-29 05:46 - 000000000 ____D C:\PerfLogs 2017-12-28 21:57 - 2017-09-29 05:46 - 000000000 ____D C:\WINDOWS\system32\inetsrv ==================== Files in the root of some directories ======= 2015-06-24 11:44 - 2015-06-24 11:44 - 010395072 _____ (Webroot Software, Inc.) C:\Program Files (x86)\Common Files\wruninstall.exe 2014-04-21 18:57 - 2016-05-31 12:03 - 000003584 _____ () C:\Users\Janice\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2012-11-28 11:18 - 2012-11-28 11:18 - 000017408 _____ () C:\Users\Janice\AppData\Local\WebpageIcons.db ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2018-01-18 19:39 ==================== End of FRST.txt ============================