View Single Post
  #12  
Old September 9th, 2017, 05:53 PM
Sonic Feathers Sonic Feathers is offline
Member
 
Join Date: Sep 2017
Posts: 53
5 of 5 (at last. Sorry soo much mate):

2017-07-14 11:46 - 2010-11-20 14:18 - 000179200 _____ (Microsoft Corporation) C:\windows\system32\ActionQueue.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000146944 _____ (Microsoft Corporation) C:\windows\system32\autoplay.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000145920 _____ (Microsoft Corporation) C:\windows\system32\cfgmgr32.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000133632 _____ (Microsoft Corporation) C:\windows\system32\bcdsrv.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000132608 _____ (Microsoft Corporation) C:\windows\system32\cabview.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000128512 _____ (Microsoft Corporation) C:\windows\system32\EhStorAPI.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000115200 _____ (Microsoft Corporation) C:\windows\system32\dot3msm.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000109056 _____ (Microsoft Corporation) C:\windows\system32\dnscmmc.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000094208 _____ (Microsoft Corporation) C:\windows\system32\eappgnui.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000091648 _____ (Microsoft Corporation) C:\windows\system32\avifil32.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000088064 _____ (Microsoft Corporation) C:\windows\system32\AxInstSv.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000082432 _____ (Microsoft Corporation) C:\windows\system32\dot3cfg.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000073216 _____ (Microsoft Corporation) C:\windows\system32\cabinet.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000070656 _____ (Microsoft Corporation) C:\windows\system32\amstream.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000067584 _____ (Microsoft Corporation) C:\windows\system32\certprop.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000066560 _____ (Microsoft Corporation) C:\windows\system32\cca.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000065024 _____ (Microsoft Corporation) C:\windows\system32\CertPolEng.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000045568 _____ (Microsoft Corporation) C:\windows\system32\acppage.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000034816 _____ (Microsoft Corporation) C:\windows\system32\cscapi.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000030208 _____ (Microsoft Corporation) C:\windows\system32\dsauth.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\AzSqlExt.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000023040 _____ (Microsoft Corporation) C:\windows\system32\cscdll.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000022528 _____ (Microsoft Corporation) C:\windows\system32\elsTrans.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000019456 _____ (Microsoft Corporation) C:\windows\system32\bitsperf.dll
2017-07-14 11:46 - 2010-11-20 14:18 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\C_ISCII.DLL
2017-07-14 11:46 - 2010-11-20 14:18 - 000010752 _____ (Microsoft Corporation) C:\windows\system32\browseui.dll
2017-07-14 11:46 - 2010-11-20 14:17 - 000941568 _____ (Microsoft Corporation) C:\windows\system32\mblctr.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000586752 _____ (Microsoft Corporation) C:\windows\system32\dfrgui.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000327680 _____ (Microsoft Corporation) C:\windows\system32\wimserv.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000327168 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000325632 _____ (Microsoft Corporation) C:\windows\system32\slui.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000314880 _____ (Microsoft Corporation) C:\windows\system32\wusa.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000314368 _____ (Microsoft Corporation) C:\windows\system32\SndVol.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000292864 _____ (Microsoft Corporation) C:\windows\system32\WindowsAnytimeUpgradeResults.e xe
2017-07-14 11:46 - 2010-11-20 14:17 - 000288256 _____ (Microsoft Corporation) C:\windows\system32\eudcedit.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000276480 _____ (Microsoft Corporation) C:\windows\system32\diskraid.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000270336 _____ (Microsoft Corporation) C:\windows\system32\sethc.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000257536 _____ (Microsoft Corporation) C:\windows\system32\WindowsAnytimeUpgrade.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000254976 _____ (Microsoft Corporation) C:\windows\system32\wsqmcons.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000233984 _____ (Microsoft Corporation) C:\windows\system32\msconfig.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000227328 _____ (Microsoft Corporation) C:\windows\system32\taskmgr.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000219648 _____ (Microsoft Corporation) C:\windows\system32\fsquirt.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000210432 _____ (Microsoft Corporation) C:\windows\system32\recdisc.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000209920 _____ (Microsoft Corporation) C:\windows\system32\PkgMgr.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000197632 _____ (Microsoft Corporation) C:\windows\system32\ocsetup.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000182784 _____ (Microsoft Corporation) C:\windows\system32\RelPost.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000144896 _____ (Microsoft Corporation) C:\windows\system32\iscsicli.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000133632 _____ (Microsoft Corporation) C:\windows\system32\diskpart.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000132608 _____ (Microsoft Corporation) C:\windows\system32\MdSched.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000113152 _____ (Microsoft Corporation) C:\windows\system32\setupugc.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000101376 _____ (Microsoft Corporation) C:\windows\system32\mobsync.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000098304 _____ (Microsoft Corporation) C:\windows\system32\nslookup.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000095232 _____ (Microsoft Corporation) C:\windows\system32\logagent.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000086528 _____ (Microsoft Corporation) C:\windows\system32\isoburn.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000084992 _____ (Microsoft Corporation) C:\windows\system32\cmstp.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000074240 _____ (Microsoft Corporation) C:\windows\system32\tabcal.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000070656 _____ (Microsoft Corporation) C:\windows\system32\MuiUnattend.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000066048 _____ (Microsoft Corporation) C:\windows\system32\w32tm.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000062976 _____ (Microsoft Corporation) C:\windows\system32\findstr.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000061952 _____ (Microsoft Corporation) C:\windows\system32\manage-bde.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000061952 _____ (Microsoft Corporation) C:\windows\system32\lpremove.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000061440 _____ (Microsoft Corporation) C:\windows\system32\PnPUnattend.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\djoin.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000057344 _____ (Microsoft Corporation) C:\windows\system32\repair-bde.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000053248 _____ (Microsoft Corporation) C:\windows\system32\MultiDigiMon.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000051200 _____ (Microsoft Corporation) C:\windows\system32\takeown.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000050688 _____ (Microsoft Corporation) C:\windows\system32\runonce.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000047616 _____ (Microsoft Corporation) C:\windows\system32\tzutil.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000042496 _____ (Microsoft Corporation) C:\windows\system32\ftp.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\unlodctr.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000028672 _____ (Microsoft Corporation) C:\windows\system32\WerFaultSecure.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000026624 _____ (Microsoft Corporation) C:\windows\system32\userinit.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000025600 _____ (Microsoft Corporation) C:\windows\system32\netiougc.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000025600 _____ (Microsoft Corporation) C:\windows\system32\netcfg.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000022016 _____ (Microsoft Corporation) C:\windows\system32\ReAgentc.exe
2017-07-14 11:46 - 2010-11-20 14:17 - 000010752 _____ (Microsoft Corporation) C:\windows\system32\LogonUI.exe
2017-07-14 11:46 - 2010-11-20 14:16 - 000878592 _____ (Microsoft Corporation) C:\windows\system32\Bubbles.scr
2017-07-14 11:46 - 2010-11-20 14:16 - 000692736 _____ (Microsoft Corporation) C:\windows\system32\bthprops.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000649216 _____ (Microsoft Corporation) C:\windows\system32\appwiz.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000600576 _____ (Microsoft Corporation) C:\windows\system32\TabletPC.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000516096 _____ (Microsoft Corporation) C:\windows\system32\main.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000413696 _____ (Microsoft Corporation) C:\windows\system32\PhotoScreensaver.scr
2017-07-14 11:46 - 2010-11-20 14:16 - 000345088 _____ (Microsoft Corporation) C:\windows\system32\intl.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000326656 _____ (Microsoft Corporation) C:\windows\system32\sysdm.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000293888 _____ (Microsoft Corporation) C:\windows\system32\ssText3d.scr
2017-07-14 11:46 - 2010-11-20 14:16 - 000281088 _____ (Microsoft Corporation) C:\windows\system32\unimdm.tsp
2017-07-14 11:46 - 2010-11-20 14:16 - 000221184 _____ (Microsoft Corporation) C:\windows\system32\Mystify.scr
2017-07-14 11:46 - 2010-11-20 14:16 - 000220672 _____ (Microsoft Corporation) C:\windows\system32\Ribbons.scr
2017-07-14 11:46 - 2010-11-20 14:16 - 000186368 _____ (Microsoft Corporation) C:\windows\system32\bitsadmin.exe
2017-07-14 11:46 - 2010-11-20 14:16 - 000172032 _____ (Microsoft Corporation) C:\windows\system32\wdmaud.drv
2017-07-14 11:46 - 2010-11-20 14:16 - 000153600 _____ (Microsoft Corporation) C:\windows\system32\VBICodec.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000146944 _____ (Microsoft Corporation) C:\windows\system32\bcdboot.exe
2017-07-14 11:46 - 2010-11-20 14:16 - 000142336 _____ (Microsoft Corporation) C:\windows\system32\powercfg.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000128000 _____ (Microsoft Corporation) C:\windows\system32\desk.cpl
2017-07-14 11:46 - 2010-11-20 14:16 - 000107008 _____ (Microsoft Corporation) C:\windows\system32\Kswdmcap.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000084480 _____ (Microsoft Corporation) C:\windows\system32\kstvtune.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000072704 _____ (Microsoft Corporation) C:\windows\system32\Mpeg2Data.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000068608 _____ (Microsoft Corporation) C:\windows\system32\WSTPager.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000065024 _____ (Microsoft Corporation) C:\windows\bfsvc.exe
2017-07-14 11:46 - 2010-11-20 14:16 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\MSDvbNP.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000048640 _____ (Microsoft Corporation) C:\windows\system32\ksxbar.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000045568 _____ (Microsoft Corporation) C:\windows\system32\g711codc.ax
2017-07-14 11:46 - 2010-11-20 14:16 - 000033792 _____ (Microsoft Corporation) C:\windows\system32\vbisurf.ax
2017-07-14 11:46 - 2010-11-20 14:07 - 001164800 _____ (Microsoft Corporation) C:\windows\system32\UIRibbonRes.dll
2017-07-14 11:46 - 2010-11-20 14:07 - 000007680 _____ (Microsoft Corporation) C:\windows\system32\spwizres.dll
2017-07-14 11:46 - 2010-11-20 14:05 - 000121856 _____ (Microsoft Corporation) C:\windows\system32\RDPENCDD.dll
2017-07-14 11:46 - 2010-11-20 14:05 - 000035328 _____ (Microsoft Corporation) C:\windows\system32\pifmgr.dll
2017-07-14 11:46 - 2010-11-20 14:00 - 000007168 _____ (Microsoft Corporation) C:\windows\system32\KBDSG.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000007168 _____ (Microsoft Corporation) C:\windows\system32\kbdlk41a.dll
2017-07-14 11:46 - 2010-11-20 14:00 - 000007168 _____ (Microsoft Corporation) C:\windows\system32\KBDCZ1.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDTUQ.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDTUF.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDSF.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDPO.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDNEPR.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDINBEN.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDGR1.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\KBDGKL.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDUS.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDUGHR1.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDTURME.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDTAJIK.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDMON.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDMAORI.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDLT1.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDINTEL.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDINTAM.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDINORI.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDINMAR.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDINKAN.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDINHIN.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDBULG.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000006144 _____ (Microsoft Corporation) C:\windows\system32\KBDBLR.DLL
2017-07-14 11:46 - 2010-11-20 14:00 - 000005632 _____ (Microsoft Corporation) C:\windows\system32\KBDGEO.DLL
2017-07-14 11:46 - 2010-11-20 13:57 - 000002560 _____ (Microsoft Corporation) C:\windows\system32\dpnaddr.dll
2017-07-14 11:46 - 2010-11-20 13:56 - 000052736 _____ (Microsoft Corporation) C:\windows\system32\BlbEvents.dll
2017-07-14 11:46 - 2010-11-20 12:52 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbrpm.sys
2017-07-14 11:46 - 2010-11-20 12:22 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\RDPCDD.sys
2017-07-14 11:46 - 2010-11-20 12:21 - 000026624 _____ (Microsoft Corporation) C:\windows\system32\RDPREFDD.dll
2017-07-14 11:46 - 2010-11-20 12:21 - 000018432 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdpipe.sys
2017-07-14 11:46 - 2010-11-20 12:07 - 000118784 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndiswan.sys
2017-07-14 11:46 - 2010-11-20 12:07 - 000063488 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wanarp.sys
2017-07-14 11:46 - 2010-11-20 12:07 - 000048640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndproxy.sys
2017-07-14 11:46 - 2010-11-20 12:06 - 000108544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tunnel.sys
2017-07-14 11:46 - 2010-11-20 12:06 - 000046080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndisuio.sys
2017-07-14 11:46 - 2010-11-20 12:00 - 000304128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\HdAudio.sys
2017-07-14 11:46 - 2010-11-20 12:00 - 000039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\umbus.sys
2017-07-14 11:46 - 2010-11-20 12:00 - 000025856 _____ (Microsoft Corporation) C:\windows\system32\Drivers\USBCAMD2.sys
2017-07-14 11:46 - 2010-11-20 12:00 - 000025856 _____ (Microsoft Corporation) C:\windows\system32\Drivers\USBCAMD.sys
2017-07-14 11:46 - 2010-11-20 11:59 - 000108544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hdaudbus.sys
2017-07-14 11:46 - 2010-11-20 11:59 - 000024064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidusb.sys
2017-07-14 11:46 - 2010-11-20 11:50 - 000190976 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ks.sys
2017-07-14 11:46 - 2010-11-20 11:50 - 000031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\CompositeBus.sys
2017-07-14 11:46 - 2010-11-20 11:50 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\Drivers\kbdhid.sys
2017-07-14 11:46 - 2010-11-20 11:50 - 000012800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\sffp_sd.sys
2017-07-14 11:46 - 2010-11-20 11:24 - 000026624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\scfilter.sys
2017-07-14 11:46 - 2010-11-20 11:19 - 000065536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\IPMIDrv.sys
2017-07-14 11:46 - 2010-11-20 10:47 - 000010240 _____ (Microsoft Corporation) C:\windows\system32\Drivers\acpipmi.sys
2017-07-14 11:46 - 2010-11-20 10:39 - 000021504 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdi.sys
2017-07-14 11:46 - 2010-11-20 10:38 - 000108544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cdrom.sys
2017-07-14 11:46 - 2010-11-20 07:23 - 000053600 _____ C:\windows\system32\dosx.exe
2017-07-14 11:46 - 2010-11-10 03:45 - 000010429 _____ C:\windows\system32\ScavengeSpace.xml
2017-07-14 11:46 - 2010-11-05 04:20 - 000105559 _____ C:\windows\system32\RacRules.xml
2017-07-14 11:46 - 2010-11-05 04:11 - 000312168 _____ (Microsoft Corporation) C:\windows\system32\MCEWMDRMNDBootstrap.dll
2017-07-14 10:53 - 2017-09-04 16:01 - 000002101 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-07-14 10:53 - 2017-09-04 16:01 - 000002089 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-07-14 10:52 - 2017-07-15 16:50 - 000000000 ____D C:\Users\Darryl\AppData\Local\Google
2017-07-14 10:52 - 2017-07-14 10:53 - 000000000 ____D C:\Program Files\Google
2017-07-14 10:52 - 2017-07-14 10:52 - 000000000 ____D C:\Users\Darryl\AppData\Local\Deployment
2017-07-14 10:52 - 2017-07-14 10:52 - 000000000 ____D C:\Users\Darryl\AppData\Local\Apps\2.0
2017-07-14 10:48 - 2017-07-15 19:45 - 000000000 ____D C:\Users\Darryl\AppData\Roaming\Adobe
2017-07-14 10:41 - 2017-08-12 18:06 - 000000000 ____D C:\windows\system32\MRT
2017-07-14 10:41 - 2017-08-12 18:01 - 137505280 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-07-14 10:40 - 2017-07-14 10:40 - 000000000 ____D C:\windows\system32\x64
2017-07-14 10:39 - 2017-07-14 10:39 - 000000000 ____D C:\Program Files\MSXML 4.0
2017-07-14 10:38 - 2016-06-25 17:43 - 000301056 _____ (Microsoft Corporation) C:\windows\system32\EOSNotify.exe
2017-07-14 10:22 - 2017-09-09 16:23 - 000064824 _____ C:\Users\Darryl\AppData\Local\GDIPFONTCACHEV1.DAT
2017-07-14 10:20 - 2017-07-14 10:20 - 000000000 ____D C:\Users\Darryl\Documents\Bluetooth Exchange Folder
2017-07-14 10:15 - 2017-07-14 10:15 - 000001413 _____ C:\Users\Darryl\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\Internet Explorer.lnk
2017-07-14 10:14 - 2017-07-14 10:14 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows \Start Menu\Programs\CyberLink YouCam
2017-07-14 10:14 - 2017-07-14 10:14 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
2017-07-14 10:14 - 2017-07-14 10:14 - 000000000 ____D C:\Users\Darryl\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\CyberLink YouCam
2017-07-14 10:14 - 2017-07-14 10:14 - 000000000 ____D C:\Program Files\CyberLink
2017-07-14 10:13 - 2017-07-14 10:13 - 000000000 ____D C:\Users\Darryl\AppData\Local\Broadcom
2017-07-14 10:13 - 2017-07-14 10:13 - 000000000 ____D C:\ProgramData\Temp
2017-07-14 10:13 - 2017-07-14 10:13 - 000000000 ____D C:\Program Files\Elantech
2017-07-14 10:11 - 2010-07-20 08:26 - 000111656 _____ (Broadcom Corporation.) C:\windows\system32\Drivers\btwavdt.sys
2017-07-14 10:11 - 2010-07-20 08:26 - 000088616 _____ (Broadcom Corporation.) C:\windows\system32\Drivers\btwaudio.sys
2017-07-14 10:11 - 2010-07-20 08:26 - 000018728 _____ (Broadcom Corporation.) C:\windows\system32\Drivers\btwrchid.sys
2017-07-14 10:11 - 2010-07-14 01:25 - 000297000 _____ (Broadcom Corporation.) C:\windows\system32\Drivers\btwampfl.sys
2017-07-14 10:11 - 2010-03-02 09:37 - 000033320 _____ (Broadcom Corporation.) C:\windows\system32\Drivers\btwl2cap.sys
2017-07-14 10:10 - 2017-07-14 10:10 - 000000000 ____D C:\Program Files\WIDCOMM
2017-07-14 10:09 - 2017-08-25 21:13 - 000000000 ____D C:\Users\Darryl
2017-07-14 10:09 - 2017-07-15 21:17 - 000000000 ____D C:\Users\Darryl\AppData\Local\VirtualStore
2017-07-14 10:09 - 2017-07-14 10:09 - 000000020 ___SH C:\Users\Darryl\ntuser.ini
2017-07-14 10:09 - 2017-07-14 10:09 - 000000000 _____ C:\windows\system32\Drivers\144D_SAMSUNG_N_V410_03 UC.mrk

==================== Three Months Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-09-09 17:43 - 2009-07-26 22:06 - 000781790 _____ C:\windows\system32\PerfStringBackup.INI
2017-09-09 17:43 - 2009-07-14 04:37 - 000000000 ____D C:\windows\inf
2017-09-09 16:59 - 2009-07-14 06:34 - 000014512 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-09-09 16:59 - 2009-07-14 06:34 - 000014512 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-09-09 16:26 - 2009-07-14 04:37 - 000000000 ____D C:\windows\system32\NDF
2017-09-09 16:22 - 2009-07-14 06:53 - 000000006 ____H C:\windows\Tasks\SA.DAT
2017-09-09 16:22 - 2009-07-14 06:33 - 000300080 _____ C:\windows\system32\FNTCACHE.DAT
2017-09-04 00:02 - 2009-07-14 04:37 - 000000000 ____D C:\windows\ModemLogs
2017-08-25 21:13 - 2011-04-06 04:27 - 000000000 ____D C:\ProgramData\Skype
2017-08-13 19:40 - 2009-07-14 04:37 - 000000000 ____D C:\windows\rescache

==================== Files in the root of some directories =======

2017-07-15 22:40 - 2017-07-15 22:40 - 000026269 _____ () C:\ProgramData\agent.1500151240.5692.bin
2017-07-15 22:40 - 2017-07-15 22:40 - 000001146 _____ () C:\ProgramData\agent.1500151240.5696.bin
2017-07-15 22:40 - 2017-07-15 22:40 - 000001509 _____ () C:\ProgramData\agent.1500151240.5952.bin
2017-07-15 22:40 - 2017-07-15 22:40 - 000018534 _____ () C:\ProgramData\agent.1500151240.6004.bin
2017-07-15 23:55 - 2017-07-15 23:55 - 001758436 _____ () C:\ProgramData\cl.1500155237.bdinstall.bin
2017-07-15 23:55 - 2017-07-15 23:55 - 000074691 _____ () C:\ProgramData\cl.kit.1500155180.bdinstall.bin
2017-07-16 00:01 - 2017-07-16 00:01 - 000057575 _____ () C:\ProgramData\dm.1500155999.bdinstall.bin

Some files in TEMP:
====================
2017-07-16 19:10 - 2012-11-09 13:50 - 000023040 _____ (Windows (R) 2000 DDK provider) C:\Users\Darryl\AppData\Local\Temp\DeviceSetup.exe
2017-08-19 14:08 - 2017-08-22 21:12 - 000023040 _____ (Windows (R) 2000 DDK provider) C:\Users\Darryl\AppData\Local\Temp\DeviceSetup32.e xe
2017-08-12 14:20 - 2017-08-12 14:20 - 000740416 _____ (Oracle Corporation) C:\Users\Darryl\AppData\Local\Temp\jre-8u144-windows-au.exe
2017-08-19 14:07 - 2017-08-22 21:12 - 003118041 _____ () C:\Users\Darryl\AppData\Local\Temp\runsetup.exe
2017-07-16 13:25 - 2017-07-16 13:26 - 014456872 _____ (Microsoft Corporation) C:\Users\Darryl\AppData\Local\Temp\vc_redist.x86.e xe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed

==================== BCD ================================

Windows Boot Manager
--------------------
identifier {bootmgr}
device partition=\Device\HarddiskVolume1
description Windows Boot Manager
locale en-US
inherit {globalsettings}
default {current}
resumeobject {eef897b7-6081-11e0-a77f-002454bb62d6}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30

Windows Boot Loader
-------------------
identifier {current}
device partition=C:
path \windows\system32\winload.exe
description Windows 7
locale en-US
inherit {bootloadersettings}
recoverysequence {eef897b9-6081-11e0-a77f-002454bb62d6}
recoveryenabled Yes
osdevice partition=C:
systemroot \windows
resumeobject {eef897b7-6081-11e0-a77f-002454bb62d6}
nx OptIn
numproc 2

Windows Boot Loader
-------------------
identifier {eef897b9-6081-11e0-a77f-002454bb62d6}
device ramdisk=[C:]\Recovery\eef897b9-6081-11e0-a77f-002454bb62d6\Winre.wim,{eef897ba-6081-11e0-a77f-002454bb62d6}
path \windows\system32\winload.exe
description Windows Recovery Environment
inherit {bootloadersettings}
osdevice ramdisk=[C:]\Recovery\eef897b9-6081-11e0-a77f-002454bb62d6\Winre.wim,{eef897ba-6081-11e0-a77f-002454bb62d6}
systemroot \windows
nx OptIn
winpe Yes

Resume from Hibernate
---------------------
identifier {eef897b7-6081-11e0-a77f-002454bb62d6}
device partition=C:
path \windows\system32\winresume.exe
description Windows Resume Application
locale en-US
inherit {resumeloadersettings}
filedevice partition=C:
filepath \hiberfil.sys
pae No
debugoptionenabled No

Windows Memory Tester
---------------------
identifier {memdiag}
device partition=\Device\HarddiskVolume1
path \boot\memtest.exe
description Windows Memory Diagnostic
locale en-US
inherit {globalsettings}
badmemoryaccess Yes

EMS Settings
------------
identifier {emssettings}
bootems Yes

Debugger Settings
-----------------
identifier {dbgsettings}
debugtype Serial
debugport 1
baudrate 115200

RAM Defects
-----------
identifier {badmemory}

Global Settings
---------------
identifier {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}

Boot Loader Settings
--------------------
identifier {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}

Hypervisor Settings
-------------------
identifier {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200

Resume Loader Settings
----------------------
identifier {resumeloadersettings}
inherit {globalsettings}

Device options
--------------
identifier {eef897ba-6081-11e0-a77f-002454bb62d6}
description Ramdisk Options
ramdisksdidevice partition=C:
ramdisksdipath \Recovery\eef897b9-6081-11e0-a77f-002454bb62d6\boot.sdi


LastRegBack: 2017-08-31 18:52

==================== End of FRST.txt ============================