DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 11.0.9600.18057 Run by [removed] at 9:52:11 on 2015-10-31 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.3037.1526 [GMT 0:00] . AV: AVG AntiVirus Free Edition *Enabled/Updated* {4D41356F-32AD-7C42-C820-63775EE4F413} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: AVG AntiVirus Free Edition *Enabled/Updated* {F620D48B-1497-73CC-F290-58052563BEAE} . ============== Running Processes =============== . c:\PROGRA~2\AVG\Av\avgrsa.exe C:\Program Files (x86)\AVG\Av\avgcsrva.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\System32\spoolsv.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe C:\Windows\system32\taskhost.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\AVG\Av\avgidsagent.exe C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe C:\Windows\System32\svchost.exe -k utcsvc C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Windows\System32\igfxpers.exe C:\Windows\System32\hkcmd.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe C:\Program Files (x86)\Packard Bell\Software Suite SE\SoftSuiteSE.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe C:\Program Files (x86)\AVG\Framework\Common\avguix.exe C:\Program Files (x86)\AVG\Av\avgui.exe C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Windows\system32\SearchIndexer.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Windows\system32\GWX\GWX.exe C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE C:\Program Files (x86)\AVG\Av\avgnsa.exe C:\Program Files (x86)\AVG\Av\avgemca.exe C:\Program Files (x86)\Packard Bell\Software Suite SE\SEDevDetect.exe C:\Windows\SysWOW64\ctfmon.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\System32\WUDFHost.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files (x86)\Nero\Update\NASvc.exe C:\Windows\servicing\TrustedInstaller.exe C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uSearch Bar = Preserve mWinlogon: Userinit = userinit.exe, BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll uRun: [Software Suite SE] "C:\Program Files (x86)\Packard Bell\Software Suite SE\SoftSuiteSE.exe" /run uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun mRun: [Malwarebytes Anti-Exploit] C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe mRun: [Hotkey Utility] C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW mRun: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguix.exe" /fmw.trayonly mRun: [AVG_UI] "C:\Program Files (x86)\AVG\Av\avgui.exe" /TRAYONLY uPolicies-Explorer: NoDrives = dword:0 uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-Explorer: NoDrives = dword:0 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 Trusted Zone: localhost Trusted Zone: webcompanion.com DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab TCP: NameServer = 192.168.1.1 0.0.0.0 TCP: Interfaces\{1A26F058-1574-459B-BDBF-951D9414B591} : DHCPNameServer = 192.168.1.1 0.0.0.0 mASetup: {A6EADE66-0000-0000-484E-7E8A45000000} - "C:\Windows\SysWOW64\Rundll32.exe" "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll",CreateReaderUserSettings x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" x64-Notify: igfxcui - igfxdev.dll . ============= SERVICES / DRIVERS =============== . R0 AVGIDSHA;AVGIDSHA;C:\Windows\System32\drivers\avgidsha.sys [2015-8-20 298416] R0 Avgloga;AVG Logging Driver;C:\Windows\System32\drivers\avgloga.sys [2015-8-14 398256] R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\drivers\avgmfx64.sys [2015-10-21 255408] R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\drivers\avgrkx64.sys [2015-8-10 42416] R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2011-7-18 55856] R1 Avgdiska;AVG Disk Driver;C:\Windows\System32\drivers\avgdiska.sys [2015-8-10 197040] R1 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\drivers\avgidsdrivera.sys [2015-10-19 313776] R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\drivers\avgldx64.sys [2015-10-21 284080] R1 Avgtdia;AVG TDI Driver;C:\Windows\System32\drivers\avgtdia.sys [2015-10-8 302000] R1 ESProtectionDriver;Malwarebytes Anti-Exploit;C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.sys [2015-10-16 63064] R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-9-30 169408] R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\Av\avgidsagent.exe [2015-10-23 3815648] R2 avgsvc;AVG Service;C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2015-10-16 1046952] R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [2015-10-23 579776] R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2015-3-18 822496] R2 DiagTrack;Diagnostics Tracking Service;C:\Windows\System32\svchost.exe -k utcsvc [2009-7-13 27136] R2 GREGService;GREGService;C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [2010-1-8 23584] R2 Live Updater Service;Live Updater Service;C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2011-3-16 244624] R2 MbaeSvc;Malwarebytes Anti-Exploit Service;C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe [2015-10-16 713016] R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2014-7-15 786256] R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-8 534184] R2 SSPORT;SSPORT;C:\Windows\System32\drivers\SSPORT.SYS [2011-10-12 11576] R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfswin7.sys [2014-10-8 767648] R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaywin7.sys [2014-10-8 273576] R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirwin7.sys [2014-10-8 29864] R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvolwin7.sys [2014-10-8 23208] R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-8 211104] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-4-11 103608] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-4-11 124088] S3 AvgAMPS;AvgAMPS;C:\Program Files (x86)\AVG\Av\avgamps.exe [2015-10-23 595376] S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2015-10-14 114688] S3 netr28x;Ralink 802.11n Wireless Driver for Windows Vista;C:\Windows\System32\drivers\netr28x.sys [2009-6-10 620544] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392] S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-9-7 1255736] . =============== File Associations =============== . FileExt: .txt: txtfile=C:\Windows\System32\NOTEPAD.EXE %1 [UserChoice] . =============== Created Last 30 ================ . 2015-10-30 15:55:03 -------- d-----w- C:\Users\Korby\AppData\Roaming\AVG 2015-10-30 15:53:39 -------- d--h--w- C:\$AVG 2015-10-30 15:51:16 -------- d-----w- C:\Users\Korby\AppData\Local\MFAData 2015-10-30 15:51:16 -------- d-----w- C:\ProgramData\MFAData 2015-10-30 15:49:23 -------- d-----w- C:\Program Files (x86)\AVG 2015-10-30 09:54:16 -------- d-----w- C:\Users\Korby\AppData\Local\CEF 2015-10-24 13:09:00 -------- d-----w- C:\Windows\System32\catroot2 2015-10-24 11:52:59 -------- d-----w- C:\Windows\SysWow64\wbem\Performance 2015-10-24 11:16:03 -------- d-----w- C:\RegBackup 2015-10-21 17:16:48 284080 ----a-w- C:\Windows\System32\drivers\avgldx64.sys 2015-10-21 17:15:02 255408 ----a-w- C:\Windows\System32\drivers\avgmfx64.sys 2015-10-19 09:03:24 313776 ----a-w- C:\Windows\System32\drivers\avgidsdrivera.sys 2015-10-16 15:42:38 -------- d-----w- C:\ProgramData\Malwarebytes Anti-Exploit 2015-10-16 15:42:37 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Exploit 2015-10-16 15:17:56 -------- d-----w- C:\$WINDOWS.~BT 2015-10-16 14:10:56 -------- d--h--w- C:\$Windows.~WS 2015-10-15 08:45:43 766464 ----a-w- C:\Windows\System32\generaltel.dll 2015-10-15 08:45:43 73216 ----a-w- C:\Windows\System32\acmigration.dll 2015-10-15 08:45:43 700416 ----a-w- C:\Windows\System32\invagent.dll 2015-10-15 08:45:43 503808 ----a-w- C:\Windows\System32\devinv.dll 2015-10-15 08:45:43 25432 ----a-w- C:\Windows\System32\CompatTelRunner.exe 2015-10-15 08:45:43 1291264 ----a-w- C:\Windows\System32\appraiser.dll 2015-10-15 08:45:43 1163776 ----a-w- C:\Windows\System32\aeinv.dll 2015-10-14 08:39:59 3990976 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2015-10-08 08:46:44 302000 ----a-w- C:\Windows\System32\drivers\avgtdia.sys . ==================== Find3M ==================== . 2015-10-17 14:26:13 780488 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2015-10-17 14:26:13 142536 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2015-10-01 18:06:49 692672 ----a-w- C:\Windows\System32\winload.efi 2015-10-01 18:04:11 616360 ----a-w- C:\Windows\System32\winresume.efi 2015-10-01 18:00:59 63488 ----a-w- C:\Windows\System32\setbcdlocale.dll 2015-10-01 18:00:43 59392 ----a-w- C:\Windows\System32\appidapi.dll 2015-10-01 18:00:43 32768 ----a-w- C:\Windows\System32\appidsvc.dll 2015-10-01 18:00:06 17920 ----a-w- C:\Windows\System32\appidcertstorecheck.exe 2015-10-01 18:00:06 147456 ----a-w- C:\Windows\System32\appidpolicyconverter.exe 2015-10-01 17:50:35 50688 ----a-w- C:\Windows\SysWow64\appidapi.dll 2015-10-01 17:00:54 61440 ----a-w- C:\Windows\System32\drivers\appid.sys 2015-09-29 03:16:51 5569472 ----a-w- C:\Windows\System32\ntoskrnl.exe 2015-09-29 03:13:50 1730496 ----a-w- C:\Windows\System32\ntdll.dll 2015-09-29 03:11:19 362496 ----a-w- C:\Windows\System32\wow64win.dll 2015-09-29 03:11:19 243712 ----a-w- C:\Windows\System32\wow64.dll 2015-09-29 03:11:19 215040 ----a-w- C:\Windows\System32\winsrv.dll 2015-09-29 03:11:19 13312 ----a-w- C:\Windows\System32\wow64cpu.dll 2015-09-29 03:11:06 210944 ----a-w- C:\Windows\System32\wdigest.dll 2015-09-29 03:11:03 86528 ----a-w- C:\Windows\System32\TSpkg.dll 2015-09-29 03:11:01 503808 ----a-w- C:\Windows\System32\srcore.dll 2015-09-29 03:11:01 50176 ----a-w- C:\Windows\System32\srclient.dll 2015-09-29 03:10:59 1216512 ----a-w- C:\Windows\System32\rpcrt4.dll 2015-09-29 03:10:56 16384 ----a-w- C:\Windows\System32\ntvdm64.dll 2015-09-29 03:10:55 315392 ----a-w- C:\Windows\System32\msv1_0.dll 2015-09-29 03:10:53 729088 ----a-w- C:\Windows\System32\kerberos.dll 2015-09-29 03:10:53 424960 ----a-w- C:\Windows\System32\KernelBase.dll 2015-09-29 03:10:47 44032 ----a-w- C:\Windows\System32\cryptbase.dll 2015-09-29 03:10:47 43520 ----a-w- C:\Windows\System32\csrsrv.dll 2015-09-29 03:10:47 22016 ----a-w- C:\Windows\System32\credssp.dll 2015-09-29 03:10:30 112640 ----a-w- C:\Windows\System32\smss.exe 2015-09-29 03:10:25 296960 ----a-w- C:\Windows\System32\rstrui.exe 2015-09-29 03:09:59 338432 ----a-w- C:\Windows\System32\conhost.exe 2015-09-29 03:09:53 64000 ----a-w- C:\Windows\System32\auditpol.exe 2015-09-29 03:05:56 60416 ----a-w- C:\Windows\System32\msobjs.dll 2015-09-29 03:05:36 146432 ----a-w- C:\Windows\System32\msaudite.dll 2015-09-29 03:05:01 3936192 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe 2015-09-29 03:02:09 1311768 ----a-w- C:\Windows\SysWow64\ntdll.dll 2015-09-29 02:59:20 172032 ----a-w- C:\Windows\SysWow64\wdigest.dll 2015-09-29 02:59:17 65536 ----a-w- C:\Windows\SysWow64\TSpkg.dll 2015-09-29 02:59:16 43008 ----a-w- C:\Windows\SysWow64\srclient.dll 2015-09-29 02:59:10 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll 2015-09-29 02:59:08 259584 ----a-w- C:\Windows\SysWow64\msv1_0.dll 2015-09-29 02:59:04 552960 ----a-w- C:\Windows\SysWow64\kerberos.dll 2015-09-29 02:58:57 36864 ----a-w- C:\Windows\SysWow64\cryptbase.dll 2015-09-29 02:58:57 17408 ----a-w- C:\Windows\SysWow64\credssp.dll 2015-09-29 02:58:52 44032 ----a-w- C:\Windows\apppatch\acwow64.dll 2015-09-29 02:58:36 25600 ----a-w- C:\Windows\SysWow64\setup16.exe 2015-09-29 02:58:05 50176 ----a-w- C:\Windows\SysWow64\auditpol.exe 2015-09-29 02:57:53 665088 ----a-w- C:\Windows\SysWow64\rpcrt4.dll 2015-09-29 02:57:53 5120 ----a-w- C:\Windows\SysWow64\wow32.dll 2015-09-29 02:57:52 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll 2015-09-29 02:53:44 60416 ----a-w- C:\Windows\SysWow64\msobjs.dll 2015-09-29 02:53:28 146432 ----a-w- C:\Windows\SysWow64\msaudite.dll 2015-09-29 01:50:29 159232 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2015-09-29 01:49:43 290816 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2015-09-29 01:49:31 129024 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2015-09-29 01:43:29 7680 ----a-w- C:\Windows\SysWow64\instnm.exe 2015-09-29 01:43:27 2048 ----a-w- C:\Windows\SysWow64\user.exe 2015-09-29 01:40:57 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll 2015-09-29 01:40:57 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll 2015-09-29 01:40:57 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll 2015-09-29 01:40:57 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll 2015-09-25 18:07:19 98816 ----a-w- C:\Windows\System32\wudriver.dll 2015-09-25 18:07:19 3168768 ----a-w- C:\Windows\System32\wucltux.dll 2015-09-25 18:07:19 192512 ----a-w- C:\Windows\System32\wuwebv.dll 2015-09-25 18:06:54 91136 ----a-w- C:\Windows\System32\WinSetupUI.dll 2015-09-25 18:06:44 12288 ----a-w- C:\Windows\System32\wu.upgrade.ps.dll 2015-09-25 18:06:40 37888 ----a-w- C:\Windows\System32\wuapp.exe 2015-09-25 17:59:08 93696 ----a-w- C:\Windows\SysWow64\wudriver.dll 2015-09-25 17:59:08 174080 ----a-w- C:\Windows\SysWow64\wuwebv.dll 2015-09-25 17:58:25 35328 ----a-w- C:\Windows\SysWow64\wuapp.exe 2015-09-16 04:36:53 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2015-09-16 04:36:43 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2015-09-16 04:22:21 66560 ----a-w- C:\Windows\System32\iesetup.dll 2015-09-16 04:21:39 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2015-09-16 04:21:33 417792 ----a-w- C:\Windows\System32\html.iec 2015-09-16 04:21:27 585728 ----a-w- C:\Windows\System32\vbscript.dll 2015-09-16 04:21:17 88064 ----a-w- C:\Windows\System32\MshtmlDac.dll 2015-09-16 04:09:30 5990912 ----a-w- C:\Windows\System32\jscript9.dll 2015-09-16 04:08:40 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe 2015-09-16 04:08:38 144384 ----a-w- C:\Windows\System32\ieUnatt.exe 2015-09-16 04:08:23 814080 ----a-w- C:\Windows\System32\jscript9diag.dll 2015-09-16 04:01:30 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2015-09-16 03:50:29 77824 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll 2015-09-16 03:45:19 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2015-09-16 03:33:26 504832 ----a-w- C:\Windows\SysWow64\vbscript.dll 2015-09-16 03:33:07 62464 ----a-w- C:\Windows\SysWow64\iesetup.dll 2015-09-16 03:32:33 47616 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll 2015-09-16 03:32:24 341504 ----a-w- C:\Windows\SysWow64\html.iec 2015-09-16 03:31:57 64000 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll 2015-09-16 03:28:33 1359360 ----a-w- C:\Windows\System32\mshtmlmedia.dll 2015-09-16 03:26:47 2126336 ----a-w- C:\Windows\System32\inetcpl.cpl 2015-09-16 03:23:01 115712 ----a-w- C:\Windows\SysWow64\ieUnatt.exe 2015-09-16 03:22:43 620032 ----a-w- C:\Windows\SysWow64\jscript9diag.dll 2015-09-16 03:11:12 2487808 ----a-w- C:\Windows\System32\wininet.dll 2015-09-16 03:10:46 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll 2015-09-16 03:05:51 4527616 ----a-w- C:\Windows\SysWow64\jscript9.dll 2015-09-16 02:55:49 1155072 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll 2015-09-16 02:55:45 2052608 ----a-w- C:\Windows\SysWow64\inetcpl.cpl 2015-09-16 02:37:26 2011136 ----a-w- C:\Windows\SysWow64\wininet.dll . ============= FINISH: 9:52:57.59 ===============