Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017 Ran by TAHER (administrator) on TITO (09-04-2017 11:54:18) Running from C:\Users\TAHER\Desktop Loaded Profiles: TAHER (Available Profiles: TAHER) Platform: Windows 8.1 Pro (Update) (X64) Language: العربية (السعودية)‏ Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (ESET) C:\Program Files\ESET\ESET Internet Security\ekrn.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ESET) C:\Program Files\ESET\ESET Internet Security\egui.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe ==================== Registry (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes) HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9364696 2017-03-03] (Piriform Ltd) HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4005944 2017-02-13] (Tonec Inc.) HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-08-14] (Tonec Inc.) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\TAHER\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\TAHER\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\TAHER\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\TAHER\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\TAHER\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\TAHER\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] Tcpip\..\Interfaces\{62857839-62F3-4A1A-A628-07796BA66EB4}: [DhcpNameServer] Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION SearchScopes: HKU\S-1-5-21-2422561113-3094125170-2170945475-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://{searchTerms} BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2016-12-10] (Internet Download Manager, Tonec Inc.) BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2017-03-28] (IObit) BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2016-12-10] (Internet Download Manager, Tonec Inc.) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation) BHO-x32: No Name -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> No File FireFox: ======== FF DefaultProfile: veyh7hoy.default FF ProfilePath: C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default [2017-04-09] FF Session Restore: Mozilla\Firefox\Profiles\veyh7hoy.default -> is enabled. FF Extension: (anonymoX) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\ [2017-01-30] FF Extension: (EagleGet Free Downloader) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\ [2016-03-16] FF Extension: (ZenMate Security, Privacy & Unblock VPN) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\ [2016-09-29] FF Extension: (VTzilla) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\ [2016-09-01] FF Extension: (Awesome Screenshot - Capture, Annotate & More) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack.xpi [2017-03-19] FF Extension: (AdBlocker for YouTube™) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2016-12-06] FF Extension: (S3.Google Translator) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\s3google@translator.xpi [2017-04-02] FF Extension: (LastPass) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\ [2017-03-23] FF Extension: (iMEGA) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\{065ee92a-ad57-42a2-b6d5-466b6fd8e24d}.xpi [2016-05-26] FF Extension: (SettingSanity) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\{12A60D0F-0077-4F41-81B2-1286DDD278BB}.xpi [2017-03-04] FF Extension: (Adblock Plus) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-24] FF Extension: (Disable Prefetch) - C:\Users\TAHER\AppData\Roaming\Mozilla\Firefox\Profiles\veyh7hoy.default\features\{1e8aa3a7-7639-405f-9dc4-1b39110e06cd}\ [2017-04-06] FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-01-26] FF Extension: (Site Deployment Checker) - C:\Program Files\Mozilla Firefox\browser\features\ [2017-03-28] [not signed] FF HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\Firefox\Extensions: [] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\SeaMonkey\Extensions: [] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\...\SeaMonkey\Extensions: [] - C:\Users\TAHER\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\TAHER\AppData\Roaming\IDM\idmmzcc5 [2017-04-09] [not signed] FF Plugin: -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll [2017-04-02] () FF Plugin:,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin-x32: -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll [2017-04-02] () FF Plugin-x32: Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin HKU\S-1-5-21-2422561113-3094125170-2170945475-1001: -> C:\Program Files (x86)\EagleGet\npEagleget.dll [2016-03-12] (EagleGet) FF Plugin HKU\S-1-5-21-2422561113-3094125170-2170945475-1001: -> C:\Program Files (x86)\EagleGet\npEagleget64.dll [2016-03-12] (EagleGet) Chrome: ======= CHR DefaultSearchKeyword: Default -> lp CHR Session Restore: Default -> is enabled. CHR Profile: C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default [2017-04-09] CHR Extension: (ترجمة Google) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2016-08-12] CHR Extension: (Mogicons) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2017-03-21] CHR Extension: (VTchromizer) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\efbjojhplkelaegfbieplglfidafgoka [2016-08-21] CHR Extension: (تخطي الإعلانات يوتيوب تلقائيا) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\endbgkekkonhloepcdnkgoipkabpapda [2017-02-12] CHR Extension: (ZenMate VPN - Best Cyber Security & Unblock) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2017-03-14] CHR Extension: (آدبلوك بلس) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-04-08] CHR Extension: (LastPass: Free Password Manager) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2017-04-01] CHR Extension: (ZenMate Web Firewall (Free, Plus Ad Blocker)) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hphffohcfcaeoekbkfibilcmmoakhmfc [2016-04-21] CHR Extension: (SpellBook - Execute Bookmarklets from Right Click) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihckioenbbjedpocnnennnehjaacojil [2017-03-20] CHR Extension: (Emoji Keyboard (2016) by EmojiOne™) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipdjnhgkpapgippgcgkfcbpdpcgifncb [2017-04-06] CHR Extension: (Save to Facebook) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfikkaogpplgnfjmbjdpalkhclendgd [2016-12-22] CHR Extension: (The Great Suspender) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2017-04-08] CHR Extension: (SmoothScroll) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbokbjkabcmbfdlbddjidfmibcpneigj [2016-12-31] CHR Extension: (Chrome Web Store Payments) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Chrome Media Router) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-08] CHR Extension: (RightToCopy) - C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmcimdddlobkphnofejmeidjblideca [2017-03-04] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2017-02-13] CHR HKU\S-1-5-21-2422561113-3094125170-2170945475-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - Opera: ======= OPR Extension: (AdBlock) - C:\Users\TAHER\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2017-02-16] OPR Extension: (ZenMate VPN - Best Cyber Security & Unblock) - C:\Users\TAHER\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnhbkkedmelfmalgjpkngiaoifpdfcnl [2017-04-07] OPR Extension: (LastPass: Free Password Manager) - C:\Users\TAHER\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2017-04-07] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 ApHidMonitorService; C:\Program Files\DellTPad\HidMonitorSvc.exe [87384 2015-09-16] (Alps Electric Co., Ltd.) S3 egGetSvc; C:\Program Files (x86)\EagleGet\EGMonitor.exe [238592 2016-03-12] () [File not signed] R2 ekrn; C:\Program Files\ESET\ESET Internet Security\ekrn.exe [2836296 2016-12-14] (ESET) R2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2017-03-28] (IObit) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed] S3 TechSmith Uploader Service; C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3661096 2015-09-14] (TechSmith Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) S2 QQLiveService; %SystemRoot%\system32\svchost -k QQLiveService [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 eagleGet; C:\Windows\System32\Drivers\eagleGet.sys [77624 2016-01-06] (eagleGet) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [132272 2017-01-17] (ESET) R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [106768 2017-01-17] (ESET) S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15488 2017-01-17] (ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [180544 2017-01-17] (ESET) R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [49672 2017-01-17] (ESET) R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [77616 2017-01-17] (ESET) R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [61568 2016-11-13] (ESET) R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [96856 2017-01-17] (ESET) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77440 2017-03-24] () R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-07-17] (REALiX(tm)) S3 Impcd; C:\Windows\System32\drivers\Impcd.sys [158976 2015-11-29] (Intel Corporation) [File not signed] R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [186304 2017-04-06] (Malwarebytes) R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [111544 2017-04-08] (Malwarebytes) R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-04-08] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [251832 2017-04-08] (Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [92096 2017-04-09] (Malwarebytes) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew01.sys [3354384 2015-09-16] (Intel Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 2016-07-09] (Synaptics Incorporated) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) U0 Compbatt; no ImagePath U2 ERSvc; no ImagePath U2 IAStorDataMgrsvc; no ImagePath U2 NIHardwareService; no ImagePath U2 Parvdm; no ImagePath U2 srService; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2017-04-09 11:53 - 2017-04-09 11:54 - 00027886 _____ C:\Users\TAHER\Desktop\Addition.txt 2017-04-09 11:50 - 2017-04-09 11:54 - 00016506 _____ C:\Users\TAHER\Desktop\FRST.txt 2017-04-09 11:50 - 2017-04-09 11:54 - 00000000 ____D C:\FRST 2017-04-09 11:39 - 2017-04-09 11:40 - 02424832 _____ (Farbar) C:\Users\TAHER\Desktop\FRST64.exe 2017-04-09 10:43 - 2017-04-09 11:28 - 292746464 _____ C:\Users\TAHER\Desktop\EmsisoftEmergencyKit.exe 2017-04-08 23:28 - 2017-04-08 23:28 - 00048651 _____ C:\Windows\system32\epfwdata.bin 2017-04-08 23:22 - 2017-01-30 21:16 - 00444531 _____ C:\Windows\system32\zoom_index.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00137454 _____ C:\Windows\system32\hmcontent.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00115706 _____ C:\Windows\system32\zoom_pageinfo.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00095931 _____ C:\Windows\system32\jquery.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00074353 _____ C:\Windows\system32\hmkwindex.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00058256 _____ C:\Windows\system32\zoom_search.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00037724 _____ C:\Windows\system32\advanced_cmd.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00037414 _____ C:\Windows\system32\sitemap.xml 2017-04-08 23:22 - 2017-01-30 21:16 - 00034780 _____ C:\Windows\system32\idh_config_epfw_advanced_settings.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00034025 _____ C:\Windows\system32\idh_config_threat_sense.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00029642 _____ C:\Windows\system32\sinsp_shortcuts.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00023887 _____ C:\Windows\system32\idh_hips_editor_single_rule.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00020118 _____ C:\Windows\system32\which_product_do_i_have.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00017899 _____ C:\Windows\system32\idh_page_logs.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00017645 _____ C:\Windows\system32\idh_page_scheduler.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00017394 _____ C:\Windows\system32\sinsp_service_script_structure.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00016849 _____ C:\Windows\system32\idh_config_epfw_known_networks_editor.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00016531 _____ C:\Windows\system32\idh_page_setting_parental.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00016503 _____ C:\Windows\system32\idh_config_devmon_rule_edit_dlg.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00016460 _____ C:\Windows\system32\helpman_topicinit.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00013819 _____ C:\Windows\system32\idh_hips_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00013378 _____ C:\Windows\system32\idh_page_advanced_settings.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00013025 _____ C:\Windows\system32\idh_page_status.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00013023 _____ C:\Windows\system32\idh_unwanted_application.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00012862 _____ C:\Windows\system32\hmcontextids.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00012755 _____ C:\Windows\system32\idh_page_cloud.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00012724 _____ C:\Windows\system32\idh_config_smon_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00012022 _____ C:\Windows\system32\idh_config_epfw_basic_group.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011948 _____ C:\Windows\system32\idh_home.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011622 _____ C:\Windows\system32\idh_logfilter_filter.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011517 _____ C:\Windows\system32\idh_page_update.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011509 _____ C:\Windows\system32\idh_config_notice.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011449 _____ C:\Windows\system32\idh_logfilter_find.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011408 _____ C:\Windows\system32\sinsp_compare.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011404 _____ C:\Windows\system32\sinsp_faq.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011252 _____ C:\Windows\system32\idh_config_devmon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00011170 _____ C:\Windows\system32\idh_config_emon_clients.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010973 _____ C:\Windows\system32\idh_scan_clean.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010910 _____ C:\Windows\system32\idh_config_logs.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010808 _____ C:\Windows\system32\idh_dialog_epfw_rule_create_general.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010712 _____ C:\Windows\system32\introduction.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010699 _____ C:\Windows\system32\idh_config_amon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010571 _____ C:\Windows\system32\idh_page_sysinspector.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010288 _____ C:\Windows\system32\idh_scheduler_task.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010156 _____ C:\Windows\system32\idh_config_charon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00010153 _____ C:\Windows\system32\idh_config_alert.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009952 _____ C:\Windows\system32\idh_config_epfw_ssl.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009951 _____ C:\Windows\system32\idh_config_exclude.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009819 _____ C:\Windows\system32\idh_scan_target.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009803 _____ C:\Windows\system32\prevention.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009623 _____ C:\Windows\system32\sinsp_navigating.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009456 _____ C:\Windows\system32\idh_config_update_connection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009408 _____ C:\Windows\system32\sinsp_prg_controls.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009388 _____ C:\Windows\system32\idh_page_scan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009382 _____ C:\Windows\system32\idh_config_antiphish.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009210 _____ C:\Windows\system32\idh_startup_app.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009197 _____ C:\Windows\system32\idh_config_epfw_learning_mode.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009194 _____ C:\Windows\system32\idh_page_epfw_settings.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009090 _____ C:\Windows\system32\idh_charon_file.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00009026 _____ C:\Windows\system32\solving_problems_protocol_filtering.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008836 _____ C:\Windows\system32\idh_config_epfw_scan_http_address_list.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008672 _____ C:\Windows\system32\idh_config_mail.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008581 _____ C:\Windows\system32\idh_config_update_source.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008558 _____ C:\Windows\system32\idh_page_homenetwork_protection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008534 _____ C:\Windows\system32\idh_config_devmon_vendor_group_editor.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008199 _____ C:\Windows\system32\idh_page_utilities.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008074 _____ C:\Windows\system32\email.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00008024 _____ C:\Windows\system32\idh_profile_manager.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007932 _____ C:\Windows\system32\idh_format_notice.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007872 _____ C:\Windows\system32\idh_config_antivirus.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007846 _____ C:\Windows\system32\idh_page_epfw_network_connections.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007813 _____ C:\Windows\system32\idh_config_parental_dialog_account.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007792 _____ C:\Windows\system32\idh_page_help.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007773 _____ C:\Windows\system32\idh_config_update_advanced.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007759 _____ C:\Windows\system32\idh_config_epfw_ssl_known.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007743 _____ C:\Windows\system32\idh_dialog_epfw_url_address_list.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007720 _____ C:\Windows\system32\sinsp_service_script.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007695 _____ C:\Windows\system32\idh_page_quarantine.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007543 _____ C:\Windows\system32\idh_scan_window.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007537 _____ C:\Windows\system32\idh_config_smon_addrlists.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007489 _____ C:\Windows\system32\idh_page_settings_antispam.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007453 _____ C:\Windows\system32\idh_config_epfw_ids_exceptions.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007451 _____ C:\Windows\system32\idh_config_epfw_known_networks_group.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007450 _____ C:\Windows\system32\idh_dialog_epfw_app_tree_rules_page.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007419 _____ C:\Windows\system32\idh_config_emon_protocols.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007417 _____ C:\Windows\system32\idh_config_gamer.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007392 _____ C:\Windows\system32\idh_config_diagnostics.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007226 _____ C:\Windows\system32\sinsp_command_line.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007220 _____ C:\Windows\system32\idh_config_connection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007206 _____ C:\Windows\system32\logging.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007119 _____ C:\Windows\system32\idh_dialog_epfw_ids_exception.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007053 _____ C:\Windows\system32\idh_page_activity.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00007022 _____ C:\Windows\system32\howto_enable_parental.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006935 _____ C:\Windows\system32\idh_page_statistic.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006879 _____ C:\Windows\system32\technology_online_protection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006873 _____ C:\Windows\system32\work_epfw_detection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006868 _____ C:\Windows\system32\idh_config_rem_media_amon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006839 _____ C:\Windows\system32\idh_faq.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006776 _____ C:\Windows\system32\idh_parental_acount_exception.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006765 _____ C:\Windows\system32\idh_config_tools.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006720 _____ C:\Windows\system32\idh_menu.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006713 _____ C:\Windows\system32\trojan_horses.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006687 _____ C:\Windows\system32\how_schedule_task.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006670 _____ C:\Windows\system32\idh_config_update_lan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006577 _____ C:\Windows\system32\technology_sbap.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006555 _____ C:\Windows\system32\recognizing_spam_scams.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006542 _____ C:\Windows\system32\idh_config_advanced_alert.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006482 _____ C:\Windows\system32\beginner_trusted.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006456 _____ C:\Windows\system32\idh_wizard_activation_failure.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006433 _____ C:\Windows\system32\idh_config_web.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006397 _____ C:\Windows\system32\idh_config_epfw_profiles_group.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006385 _____ C:\Windows\system32\idh_log_filter.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006334 _____ C:\Windows\system32\idh_scan_adv_settings.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006270 _____ C:\Windows\system32\idh_config_shellext.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006239 _____ C:\Windows\system32\idh_config_epfw_ssl_app.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006221 _____ C:\Windows\system32\work_avas_realtime_cleaning.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006205 _____ C:\Windows\system32\idh_config_epfw_scan_pop3.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006204 _____ C:\Windows\system32\idh_config_extension.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006169 _____ C:\Windows\system32\installation.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006166 _____ C:\Windows\system32\idh_config_windows_update.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006157 _____ C:\Windows\system32\solving_problems.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006155 _____ C:\Windows\system32\idh_scheduler_event.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006144 _____ C:\Windows\system32\advanced_shortcuts.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006111 _____ C:\Windows\system32\idh_config_epfw_ssl_cert_set.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006106 _____ C:\Windows\system32\whats_new.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006072 _____ C:\Windows\system32\idh_config_epfw_view_rule.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006056 _____ C:\Windows\system32\idh_dialog_epfw_add_url_addr_mask.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00006027 _____ C:\Windows\system32\idh_config_devmon_rule_dlg.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005994 _____ C:\Windows\system32\idh_config_epfw_url_set_manager.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005983 _____ C:\Windows\system32\installation_live.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005943 _____ C:\Windows\system32\idh_config_epfw_profiles_assigned.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005907 _____ C:\Windows\system32\rules.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005895 _____ C:\Windows\system32\idh_config_idle_scan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005860 _____ C:\Windows\system32\idh_hips_editor_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005855 _____ C:\Windows\system32\idh_panel_smon_edit_wlbl.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005851 _____ C:\Windows\system32\idh_scheduler_repeat.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005828 _____ C:\Windows\system32\idh_page_scan_logs.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005819 _____ C:\Windows\system32\work_avas_ondemand_profiles.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005804 _____ C:\Windows\system32\idh_importexport_config.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005796 _____ C:\Windows\system32\idh_wizard_activation_type.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005792 _____ C:\Windows\system32\installation_activation.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005767 _____ C:\Windows\system32\solving_problems_advanced_pcap_logging.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005749 _____ C:\Windows\system32\idh_config_epfw_browsers.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005743 _____ C:\Windows\system32\work_avas_realtime_setup_nowork.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005730 _____ C:\Windows\system32\idh_config_advanced_amon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005711 _____ C:\Windows\system32\idh_config_epfw_scan_http.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005700 _____ C:\Windows\system32\idh_charon_exclude.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005695 _____ C:\Windows\system32\idh_config_scanner.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005686 _____ C:\Windows\system32\solving_problems_creating_exceptions_from_personal_firewall_notifications.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005663 _____ C:\Windows\system32\idh_dialog_epfw_rule_create_local.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005662 _____ C:\Windows\system32\idh_config_computer_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005658 _____ C:\Windows\system32\idh_config_opp_rule_dlg.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005591 _____ C:\Windows\system32\sinsp_service_script_executing.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005589 _____ C:\Windows\system32\idh_dialog_epfw_new_connection_out_trusted.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005583 _____ C:\Windows\system32\solving_problems_logging_and_creating_rules_or_exceptions_from_log.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005573 _____ C:\Windows\system32\idh_dialog_epfw_new_connection_in_trusted.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005567 _____ C:\Windows\system32\idh_exclude_format.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005565 _____ C:\Windows\system32\idh_page_training.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005479 _____ C:\Windows\system32\idh_config_mailplugins.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005475 _____ C:\Windows\system32\idh_config_nap.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005458 _____ C:\Windows\system32\technology_livegrid.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005456 _____ C:\Windows\system32\idh_profile_target.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005432 _____ C:\Windows\system32\idh_charon_urla.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005401 _____ C:\Windows\system32\idh_page_epfw_network_adapters.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005400 _____ C:\Windows\system32\idh_charon_fileb.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005399 _____ C:\Windows\system32\idh_dialog_epfw_new_connection_out_general.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005354 _____ C:\Windows\system32\spyware.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005307 _____ C:\Windows\system32\idh_scheduler_type.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005287 _____ C:\Windows\system32\how_to_uninstall.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005285 _____ C:\Windows\system32\work_update_tasks.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005258 _____ C:\Windows\system32\idh_dialog_epfw_new_connection_in_general.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005254 _____ C:\Windows\system32\idh_customer_care_submit_dialog.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005251 _____ C:\Windows\system32\idh_parental_acount_category.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005223 _____ C:\Windows\system32\idh_wizard_epfw_troubleshooting_type.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005222 _____ C:\Windows\system32\smb_relay.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005221 _____ C:\Windows\system32\idh_dialog_epfw_zone_create.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005202 _____ C:\Windows\system32\how_release_connection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005161 _____ C:\Windows\system32\idh_config_internet_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005135 _____ C:\Windows\system32\how_to_clean_pc_from_virus.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005123 _____ C:\Windows\system32\idh_dialog_epfw_trusted_zone.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005123 _____ C:\Windows\system32\idh_config_epfw_scan_main_page.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005070 _____ C:\Windows\system32\idh_config_parental_account.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005054 _____ C:\Windows\system32\idh_oe_toolbar.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005051 _____ C:\Windows\system32\idh_config_epfw_app_content_checking.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005035 _____ C:\Windows\system32\idh_page_settings_antivirus.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00005017 _____ C:\Windows\system32\idh_config_password.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004990 _____ C:\Windows\system32\viruses.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004971 _____ C:\Windows\system32\idh_hips_drivers.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004966 _____ C:\Windows\system32\adware.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004941 _____ C:\Windows\system32\idh_dialog_epfw_zones_page.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004941 _____ C:\Windows\system32\idh_config_update_mode.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004939 _____ C:\Windows\system32\idh_esi_menu_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004929 _____ C:\Windows\system32\rootkits.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004908 _____ C:\Windows\system32\idh_charon_sample.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004905 _____ C:\Windows\system32\hips_interactive.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004899 _____ C:\Windows\system32\installation_upgrade.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004861 _____ C:\Windows\system32\idh_dialog_epfw_ids_alert.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004857 _____ C:\Windows\system32\worms.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004846 _____ C:\Windows\system32\idh_config_dmon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004839 _____ C:\Windows\system32\installation_offline.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004806 _____ C:\Windows\system32\idh_dialog_epfw_new_certificate.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004794 _____ C:\Windows\system32\idh_config_environment.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004738 _____ C:\Windows\system32\work_epfw_zones_auth_server.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004738 _____ C:\Windows\system32\work_avas_realtime_setup_check.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004736 _____ C:\Windows\system32\sysreq.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004731 _____ C:\Windows\system32\idh_page_epfw_blacklist.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004715 _____ C:\Windows\system32\idh_config_epfw_connections_view_page.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004695 _____ C:\Windows\system32\idh_page_tools.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004660 _____ C:\Windows\system32\idh_support_request.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004623 _____ C:\Windows\system32\beginner_update.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004610 _____ C:\Windows\system32\installation_username.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004600 _____ C:\Windows\system32\solving_problems_create_rule_from_log.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004577 _____ C:\Windows\system32\index.html 2017-04-08 23:22 - 2017-01-30 21:16 - 00004575 _____ C:\Windows\system32\idh_charon_filea.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004542 _____ C:\Windows\system32\idh_dialog_epfw_add_ipv4_addr.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004504 _____ C:\Windows\system32\technology_ransomware_protection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004484 _____ C:\Windows\system32\hoaxes.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004477 _____ C:\Windows\system32\phishing.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004464 _____ C:\Windows\system32\idh_config_webcam_rule_dlg.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004459 _____ C:\Windows\system32\port_scanning.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004455 _____ C:\Windows\system32\idh_config_scan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004450 _____ C:\Windows\system32\idh_scheduler_notstart.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004398 _____ C:\Windows\system32\idh_config_kernel.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004367 _____ C:\Windows\system32\icmp_attacks.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004347 _____ C:\Windows\system32\idh_hips_editor_add_path.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004346 _____ C:\Windows\system32\idh_dialog_epfw_rule_create_remote.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004344 _____ C:\Windows\system32\idh_config_epfw_excluded_apps_editor.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004338 _____ C:\Windows\system32\whitelist.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004325 _____ C:\Windows\system32\idh_config_startup_scan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004305 _____ C:\Windows\system32\server-side_control.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004291 _____ C:\Windows\system32\technology_ams.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004290 _____ C:\Windows\system32\idh_dialog_smon_edit_wlbl_item.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004287 _____ C:\Windows\system32\idh_config_system.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004242 _____ C:\Windows\system32\advertisements.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004240 _____ C:\Windows\system32\botnet.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004236 _____ C:\Windows\system32\idh_config_web_basic.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004232 _____ C:\Windows\system32\tcp_desynchronization.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004193 _____ C:\Windows\system32\idh_hips_advanced.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004170 _____ C:\Windows\system32\idh_dialog_epfw_auth_server_http.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004163 _____ C:\Windows\system32\idh_exclude.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004160 _____ C:\Windows\system32\idh_page_networks.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004154 _____ C:\Windows\system32\idh_settings_update_username.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004153 _____ C:\Windows\system32\idh_unsafe_application.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004148 _____ C:\Windows\system32\blacklist.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004124 _____ C:\Windows\system32\idh_outlook_toolbar.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004117 _____ C:\Windows\system32\idh_safemode.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004104 _____ C:\Windows\system32\installation_custom.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004067 _____ C:\Windows\system32\technology_exploit_blocker.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004057 _____ C:\Windows\system32\idh_config_update_rollback.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004038 _____ C:\Windows\system32\work_update_setup_profiles.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004033 _____ C:\Windows\system32\idh_wizard_activation_us.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004032 _____ C:\Windows\system32\beginner_parental.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004031 _____ C:\Windows\system32\idh_config_gui.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004031 _____ C:\Windows\system32\idh_config_epfw_content_scan_excl_zone.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004027 _____ C:\Windows\system32\idh_wizard_activation_eu.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004026 _____ C:\Windows\system32\work_avas_realtime_setup_when.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004022 _____ C:\Windows\system32\idh_wizard_activation_trial.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004021 _____ C:\Windows\system32\idh_page_settings_security_tools.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004020 _____ C:\Windows\system32\idh_dialog_mailplugins_processing_messages.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00004004 _____ C:\Windows\system32\idh_config_update_sched.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003979 _____ C:\Windows\system32\worm_attacks.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003955 _____ C:\Windows\system32\sinsp_usage.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003942 _____ C:\Windows\system32\idh_exec_app.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003939 _____ C:\Windows\system32\idh_config_epfw_content_scan_exclude.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003938 _____ C:\Windows\system32\idh_default2.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003937 _____ C:\Windows\system32\on-demand_computer_scan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003902 _____ C:\Windows\system32\idh_charon_urlb.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003886 _____ C:\Windows\system32\solving_problems_trobleshooting_wizard.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003881 _____ C:\Windows\system32\idh_about.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003871 _____ C:\Windows\system32\idh_dialog_epfw_add_ipv6_addr.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003856 _____ C:\Windows\system32\idh_wizard_activation_us_reseller.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003851 _____ C:\Windows\system32\idh_config_opp.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003851 _____ C:\Windows\system32\eset_sysrescue.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003849 _____ C:\Windows\system32\idh_hips_alert_dialog_generic.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003788 _____ C:\Windows\system32\hmftsearch.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003761 _____ C:\Windows\system32\idh_config_emon_scan.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003751 _____ C:\Windows\system32\idh_config_hidden_message.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003745 _____ C:\Windows\system32\idh_config_save.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003741 _____ C:\Windows\system32\technology_network_attack_protection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003741 _____ C:\Windows\system32\idh_change_password.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003736 _____ C:\Windows\system32\dns_poisoning.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003729 _____ C:\Windows\system32\idh_dialog_epfw_add_profile.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003729 _____ C:\Windows\system32\how_can_update.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003727 _____ C:\Windows\system32\idh_timeout.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003711 _____ C:\Windows\system32\sinsp_service_script_generating.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003701 _____ C:\Windows\system32\idh_usb_devices_amon.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003696 _____ C:\Windows\system32\idh_config_quarantine.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003676 _____ C:\Windows\system32\technology_botnet_protection.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003674 _____ C:\Windows\system32\idh_dialog_epfw_app_changing.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003650 _____ C:\Windows\system32\idh_resetdefault_section.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003647 _____ C:\Windows\system32\idh_page_spying.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003646 _____ C:\Windows\system32\idh_config_devmon_rule_populate.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003627 _____ C:\Windows\system32\dos_attacks.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003604 _____ C:\Windows\system32\packer.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003594 _____ C:\Windows\system32\exception_list.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003563 _____ C:\Windows\system32\idh_config_update_pcu_ask.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003541 _____ C:\Windows\system32\idh_windows_update.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003531 _____ C:\Windows\system32\idh_page_news.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003516 _____ C:\Windows\system32\idh_dialog_epfw_auth_local_settings.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003508 _____ C:\Windows\system32\technology_java_exploit_blocker.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003496 _____ C:\Windows\system32\idh_config_disabled_statuses_dialog.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003483 _____ C:\Windows\system32\idh_config_parental.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003472 _____ C:\Windows\system32\idh_sysinspector_add.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003406 _____ C:\Windows\system32\idh_wizard_activation_success.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003404 _____ C:\Windows\system32\idh_config_network_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003401 _____ C:\Windows\system32\idh_config_update_main.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003378 _____ C:\Windows\system32\idh_scheduler_info.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003376 _____ C:\Windows\system32\idh_wizard_activation_attributes.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003369 _____ C:\Windows\system32\sinsp_starting.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003362 _____ C:\Windows\system32\idh_scheduler_overview.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003334 _____ C:\Windows\system32\idh_dialog_mailplugins_confirmation.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003333 _____ C:\Windows\system32\idh_config_disabled_messages_dialog.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003325 _____ C:\Windows\system32\idh_config_desktop.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003312 _____ C:\Windows\system32\installation_problems.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003305 _____ C:\Windows\system32\idh_charon_filec.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003291 _____ C:\Windows\system32\idh_profile_new.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003287 _____ C:\Windows\system32\idh_config_customer_care.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003284 _____ C:\Windows\system32\idh_page_settings_setup.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003271 _____ C:\Windows\system32\idh_resetdefault_all.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003251 _____ C:\Windows\system32\idh_parental_account_init.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003237 _____ C:\Windows\system32\idh_wizard_activation_progress.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003231 _____ C:\Windows\system32\idh_config_parental_exception_copy.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003228 _____ C:\Windows\system32\idh_config_parental_category_copy.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003214 _____ C:\Windows\system32\update_advanced.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003212 _____ C:\Windows\system32\idh_windows_update_info.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003206 _____ C:\Windows\system32\idh_parental_age.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003196 _____ C:\Windows\system32\idh_scheduler_once.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003196 _____ C:\Windows\system32\idh_premium_wizard.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003184 _____ C:\Windows\system32\idh_scheduler_finish.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003154 _____ C:\Windows\system32\types_of_remote_attacks.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003148 _____ C:\Windows\system32\idh_default1.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003122 _____ C:\Windows\system32\idh_password.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003116 _____ C:\Windows\system32\types_of_infiltration.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003095 _____ C:\Windows\system32\beginner.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003094 _____ C:\Windows\system32\idh_scheduler_weekly.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003093 _____ C:\Windows\system32\idh_scheduler_daily.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003078 _____ C:\Windows\system32\idh_scan_pause_scheduled.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00003074 _____ C:\Windows\system32\idh_anymonth.htm 2017-04-08 23:22 - 2017-01-30 21:16 - 00002437 _____ C:\Windows\system32\settings.js 2017-04-08 23:22 - 2017-01-30 21:16 - 00001636 _____ C:\Windows\system32\helpman_settings.js 2017-04-08 23:22 - 2017-01-30 21:15 - 00009958 _____ C:\Windows\system32\highlight.js 2017-04-08 23:22 - 2015-10-07 16:49 - 00005313 _____ C:\Windows\system32\default.css 2017-04-08 23:22 - 2015-02-03 10:01 - 00001838 _____ C:\Windows\system32\additionalLayout.js 2017-04-08 23:22 - 2014-05-09 10:57 - 00000336 _____ C:\Windows\system32\print.css 2017-04-08 23:22 - 2014-05-09 10:53 - 00016187 _____ C:\Windows\system32\helpman_navigation.js 2017-04-08 23:08 - 2017-04-08 23:08 - 00000000 ____D C:\ProgramData\ProductData 2017-04-08 23:02 - 2017-04-08 23:02 - 00015571 _____ C:\Users\TAHER\Desktop\ZHPCleaner.txt 2017-04-08 22:47 - 2017-04-08 22:47 - 00000840 _____ C:\Users\TAHER\Desktop\ZHPCleaner.lnk 2017-04-08 22:46 - 2017-04-08 22:46 - 00002563 _____ C:\Users\TAHER\Desktop\JRT.txt 2017-04-08 22:37 - 2017-04-08 22:37 - 06476440 _____ C:\Windows\system32\FNTCACHE.DAT 2017-04-08 22:26 - 2017-04-08 22:35 - 00000000 ____D C:\AdwCleaner 2017-04-08 22:21 - 2017-04-08 22:22 - 02758656 _____ C:\Users\TAHER\Desktop\ZHPCleaner.exe 2017-04-08 22:19 - 2017-04-08 22:19 - 01663904 _____ (Malwarebytes) C:\Users\TAHER\Desktop\JRT.exe 2017-04-08 22:14 - 2017-04-08 22:15 - 04089296 _____ C:\Users\TAHER\Desktop\adwcleaner_6.045.exe 2017-04-08 19:59 - 2017-04-08 20:04 - 35171128 _____ (Adlice Software ) C:\Users\TAHER\Desktop\setup.exe 2017-04-08 19:25 - 2017-04-08 19:25 - 00001456 _____ C:\Users\TAHER\Desktop\UsbFix.lnk 2017-04-08 19:25 - 2017-04-08 19:25 - 00000000 ____D C:\UsbFix 2017-04-08 19:23 - 2017-04-08 19:23 - 03820152 _____ (SOSVirus) C:\Users\TAHER\Desktop\UsbFix_9.042.exe 2017-04-08 12:11 - 2017-04-08 12:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2017-04-08 10:04 - 2017-04-08 10:05 - 02716672 _____ C:\Users\TAHER\Desktop\ZHPDiag3.exe 2017-04-08 09:46 - 2017-04-09 10:28 - 00000000 ____D C:\Users\TAHER\AppData\Local\ZHP 2017-04-08 09:43 - 2017-04-08 09:43 - 00000000 ____D C:\Users\TAHER\Desktop\تجارب اسك 2017-04-05 10:01 - 2017-04-05 10:01 - 00000000 ____D C:\Users\TAHER\Desktop\تحليل الشخصية 2017-04-03 09:54 - 2017-04-03 09:54 - 00001026 _____ C:\Users\TAHER\Desktop\تجارب اسك.lnk 2017-04-03 09:26 - 2017-04-03 09:26 - 00151055 _____ C:\Users\TAHER\Documents\تقرير.txt 2017-04-03 09:26 - 2017-04-03 09:26 - 00001404 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk 2017-04-03 09:26 - 2017-04-03 09:26 - 00001392 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk 2017-04-02 20:39 - 2017-04-02 20:39 - 08847544 _____ C:\Users\TAHER\Documents\منة2.psd 2017-04-02 19:39 - 2017-04-09 09:42 - 00092096 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2017-04-02 19:39 - 2017-04-08 23:38 - 00251832 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2017-04-02 19:39 - 2017-04-08 23:38 - 00111544 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2017-04-02 19:39 - 2017-04-08 23:38 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2017-04-02 19:39 - 2017-04-06 09:50 - 00186304 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys 2017-04-02 19:39 - 2017-04-02 19:39 - 00001891 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-04-02 19:39 - 2017-04-02 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-04-02 19:38 - 2017-04-02 19:38 - 00000000 ____D C:\Program Files\Malwarebytes 2017-04-02 19:38 - 2017-03-24 04:10 - 00077440 _____ C:\Windows\system32\Drivers\mbae64.sys 2017-04-02 12:20 - 2017-04-02 12:20 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook 2017-04-02 12:20 - 2017-04-02 12:20 - 00000000 ____D C:\Users\TAHER\AppData\Local\Facebook 2017-04-02 12:20 - 2017-04-02 12:20 - 00000000 ____D C:\Users\TAHER\AppData\Local\CEF 2017-04-02 11:09 - 2017-03-08 22:24 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-04-02 11:09 - 2017-03-08 11:44 - 03714048 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-04-02 11:09 - 2017-03-08 11:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-04-02 11:09 - 2017-03-08 11:36 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-04-02 11:09 - 2017-03-08 11:32 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2017-04-02 11:09 - 2017-03-08 11:32 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-04-02 11:09 - 2017-03-08 11:30 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-04-02 11:09 - 2017-03-08 11:28 - 02240512 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-04-02 11:09 - 2017-03-08 11:08 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2017-04-02 11:09 - 2017-03-08 11:08 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2017-04-02 11:09 - 2017-03-08 11:05 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2017-04-02 11:09 - 2017-03-08 11:04 - 00726528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2017-04-02 11:09 - 2017-02-11 20:18 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2017-04-02 11:09 - 2017-02-11 19:00 - 00865792 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-04-02 11:09 - 2017-02-11 18:49 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2017-04-02 11:09 - 2017-02-11 18:42 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2017-04-02 11:09 - 2017-02-10 21:06 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-04-02 11:09 - 2017-02-10 16:37 - 00046600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2017-04-02 11:09 - 2017-02-04 19:53 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2017-04-02 11:09 - 2017-02-04 19:51 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2017-04-02 11:09 - 2017-02-04 19:19 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2017-04-02 11:09 - 2017-02-01 21:44 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-04-02 11:09 - 2017-02-01 21:42 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2017-04-02 11:09 - 2017-01-21 21:22 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys 2017-04-02 11:09 - 2017-01-19 04:18 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2017-04-02 11:09 - 2017-01-18 16:35 - 00994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2017-04-02 11:09 - 2017-01-18 16:34 - 00922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2017-04-02 11:09 - 2017-01-14 22:32 - 00955016 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2017-04-02 11:09 - 2017-01-14 21:18 - 00787688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2017-04-02 11:09 - 2017-01-14 16:37 - 00447095 _____ C:\Windows\system32\ApnDatabase.xml 2017-04-02 11:09 - 2017-01-12 18:51 - 00274776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2017-04-02 11:09 - 2017-01-12 18:51 - 00117592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2017-04-02 11:09 - 2017-01-12 08:12 - 00990040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2017-04-02 11:09 - 2017-01-11 21:12 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2017-04-02 11:09 - 2017-01-11 19:28 - 00422744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2017-04-02 11:09 - 2017-01-11 17:09 - 00296960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2017-04-02 11:09 - 2017-01-11 00:37 - 00138752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2017-04-02 11:09 - 2017-01-10 23:06 - 00840192 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2017-04-02 11:09 - 2017-01-10 22:46 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2017-04-02 11:09 - 2017-01-10 21:20 - 00696832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2017-04-02 11:09 - 2017-01-10 21:09 - 01108480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2017-04-02 11:09 - 2017-01-06 19:25 - 02513408 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2017-04-02 11:09 - 2017-01-06 19:04 - 01495552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2017-04-02 11:09 - 2016-12-25 03:21 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys 2017-04-02 11:09 - 2016-12-25 03:14 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2017-04-02 11:09 - 2016-12-25 02:48 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll 2017-04-02 11:09 - 2016-12-25 02:19 - 00170496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2017-04-02 11:09 - 2016-12-25 01:39 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll 2017-04-02 11:09 - 2016-12-09 10:08 - 00379736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2017-03-31 22:56 - 2017-03-31 22:56 - 04861102 _____ C:\Users\TAHER\Documents\Untitled-2.psd 2017-03-29 22:07 - 2017-03-29 22:07 - 00001380 _____ C:\Users\Public\Desktop\Driver Booster 4.lnk 2017-03-28 20:26 - 2017-03-28 20:26 - 00490115 _____ C:\Users\TAHER\Documents\1353435504.0057الفصل السابع -تنظيم وادارة المحفوظات.pdf 2017-03-28 16:32 - 2017-03-28 16:32 - 00000000 ____D C:\Program Files\Mozilla Firefox 2017-03-24 13:29 - 2017-03-24 13:29 - 00002078 _____ C:\Users\Public\Desktop\حماية الدفع المصرفي.lnk 2017-03-23 15:54 - 2017-03-23 15:54 - 19162322 _____ C:\Users\TAHER\Documents\---Mayssam Nahas Enta Etaraft ميسم نحاس - انت اتعرفت - YouTube.mp4 2017-03-20 18:20 - 2017-03-20 18:21 - 05239922 _____ C:\Users\TAHER\Documents\تحرش.mp4 2017-03-19 00:52 - 2017-03-19 00:52 - 01139103 _____ C:\Users\TAHER\Documents\giphy.mp4 2017-03-15 14:10 - 2017-03-10 06:34 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-03-15 14:10 - 2017-03-10 06:34 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-15 14:04 - 2017-03-04 09:59 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2017-03-15 14:04 - 2017-03-02 19:55 - 02287104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2017-03-15 14:04 - 2017-02-11 07:12 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2017-03-15 14:04 - 2017-02-10 07:09 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2017-03-15 14:03 - 2017-03-04 10:01 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2017-03-15 14:03 - 2017-03-04 09:48 - 25746944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-03-15 14:03 - 2017-03-04 09:45 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2017-03-15 14:03 - 2017-03-04 09:44 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2017-03-15 14:03 - 2017-03-04 09:31 - 06045696 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-03-15 14:03 - 2017-03-04 09:05 - 01033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-03-15 14:03 - 2017-03-04 08:54 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2017-03-15 14:03 - 2017-03-04 08:26 - 15259648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2017-03-15 14:03 - 2017-03-04 08:25 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2017-03-15 14:03 - 2017-03-04 08:12 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2017-03-15 14:03 - 2017-03-04 08:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2017-03-15 14:03 - 2017-03-04 06:18 - 20281856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2017-03-15 14:03 - 2017-03-02 20:01 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2017-03-15 14:03 - 2017-03-02 19:49 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2017-03-15 14:03 - 2017-03-02 19:25 - 00880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2017-03-15 14:03 - 2017-03-02 19:22 - 04604416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2017-03-15 14:03 - 2017-03-02 19:19 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2017-03-15 14:03 - 2017-03-02 19:11 - 13654528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2017-03-15 14:03 - 2017-03-02 18:53 - 02767360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2017-03-15 14:03 - 2017-03-02 18:50 - 01312768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2017-03-15 14:03 - 2017-03-02 18:50 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2017-03-15 14:03 - 2017-02-11 21:25 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-03-15 14:03 - 2017-02-11 07:12 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2017-03-15 14:03 - 2017-02-11 07:00 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2017-03-15 14:03 - 2017-02-11 06:58 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2017-03-15 14:03 - 2017-02-11 06:56 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2017-03-15 14:03 - 2017-02-10 21:09 - 04169728 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2017-03-15 14:03 - 2017-02-10 07:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2017-03-15 14:03 - 2017-02-10 07:10 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2017-03-15 14:03 - 2017-02-10 07:08 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2017-03-15 14:03 - 2017-02-10 07:01 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2017-03-15 14:03 - 2017-02-10 07:00 - 00330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2017-03-15 14:03 - 2017-02-10 06:59 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2017-03-15 14:03 - 2017-02-10 03:31 - 01549144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-03-15 14:03 - 2017-02-10 02:12 - 01375960 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2017-03-15 14:03 - 2017-02-09 17:28 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2017-03-15 14:03 - 2017-02-09 17:19 - 01377792 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2017-03-15 14:03 - 2017-02-09 17:16 - 01560064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2017-03-15 14:03 - 2017-02-09 17:16 - 01094656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2017-03-15 14:03 - 2017-02-09 16:59 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2017-03-15 14:03 - 2017-02-09 16:58 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2017-03-15 14:03 - 2017-02-09 16:58 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2017-03-15 14:03 - 2017-02-04 22:32 - 07444832 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-03-15 14:03 - 2017-02-04 22:30 - 01663184 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2017-03-15 14:03 - 2017-02-04 22:30 - 01523216 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2017-03-15 14:03 - 2017-02-04 22:30 - 01490128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2017-03-15 14:03 - 2017-02-04 22:30 - 01358960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2017-03-15 14:03 - 2017-02-04 21:32 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll 2017-03-15 14:03 - 2017-02-04 21:30 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2017-03-15 14:03 - 2017-02-04 20:14 - 01001472 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2017-03-15 14:03 - 2017-02-04 19:50 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2017-03-15 14:03 - 2017-02-04 19:40 - 01754112 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2017-03-15 14:03 - 2017-02-04 19:32 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2017-03-15 14:03 - 2017-02-04 19:17 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll 2017-03-15 14:03 - 2017-02-04 19:10 - 01491456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2017-03-15 14:03 - 2017-02-04 19:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2017-03-15 14:03 - 2017-01-21 23:37 - 00567152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2017-03-15 14:03 - 2017-01-21 21:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2017-03-15 14:03 - 2017-01-21 21:27 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\auditpolmsg.dll 2017-03-15 14:03 - 2017-01-21 21:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2017-03-15 14:03 - 2017-01-21 20:40 - 00756736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2017-03-15 14:03 - 2017-01-21 20:40 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpolmsg.dll 2017-03-15 14:03 - 2017-01-21 20:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2017-03-15 14:03 - 2017-01-21 20:37 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2017-03-15 14:03 - 2017-01-21 19:58 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2017-03-15 14:03 - 2017-01-21 19:48 - 01437696 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-03-15 14:03 - 2017-01-14 19:49 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2017-03-15 14:03 - 2017-01-11 21:37 - 02345984 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-03-15 14:03 - 2017-01-10 21:08 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2017-03-15 14:03 - 2017-01-05 20:20 - 01697792 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2017-03-15 14:03 - 2017-01-05 20:09 - 07076864 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2017-03-15 14:03 - 2017-01-05 19:36 - 01501184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2017-03-15 14:03 - 2017-01-05 19:29 - 05273600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2017-03-15 14:03 - 2017-01-05 19:13 - 07796224 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2017-03-15 14:03 - 2017-01-05 18:57 - 05268480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2017-03-15 14:03 - 2016-11-09 21:22 - 00681472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-03-15 13:48 - 2017-02-23 16:50 - 00093360 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2017-03-15 13:48 - 2017-02-22 16:35 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2017-03-15 13:48 - 2017-02-22 16:35 - 00646656 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2017-04-09 10:59 - 2015-09-22 04:34 - 00000000 ____D C:\KMPlayer 2017-04-09 10:43 - 2016-02-13 16:29 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\IDM 2017-04-09 10:43 - 2015-09-14 13:01 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\DMCache 2017-04-09 10:30 - 2015-09-18 03:41 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\ZHP 2017-04-09 10:20 - 2015-09-14 02:22 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2422561113-3094125170-2170945475-1001 2017-04-08 23:43 - 2016-01-28 20:02 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\MPC-HC 2017-04-08 23:37 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-04-08 23:32 - 2016-11-18 17:57 - 00000000 ____D C:\Users\TAHER\AppData\LocalLow\Mozilla 2017-04-08 23:30 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf 2017-04-08 23:29 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\ELAMBKUP 2017-04-08 23:19 - 2015-12-19 19:53 - 00000000 ____D C:\Users\TAHER\AppData\LocalLow\LastPass 2017-04-08 22:34 - 2015-11-29 17:11 - 00000000 ____D C:\Program Files (x86)\Yahoo! 2017-04-08 22:34 - 2015-09-15 20:19 - 00000000 ____D C:\Users\TAHER\AppData\LocalLow\IObit 2017-04-08 22:34 - 2015-09-15 20:16 - 00000000 ____D C:\ProgramData\IObit 2017-04-08 20:24 - 2015-09-14 12:47 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\ESET 2017-04-08 12:49 - 2015-09-15 20:09 - 00000000 ____D C:\Program Files\CCleaner 2017-04-08 12:33 - 2015-09-15 14:56 - 00002215 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-04-08 12:33 - 2015-09-15 14:56 - 00002203 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-04-08 12:32 - 2015-10-03 19:46 - 00000000 ____D C:\Users\TAHER\Documents\My Downloads 2017-04-08 12:11 - 2015-09-15 20:09 - 00000834 _____ C:\Users\Public\Desktop\CCleaner.lnk 2017-04-07 02:20 - 2015-10-21 21:05 - 00000000 ____D C:\Users\TAHER\AppData\Local\CrashDumps 2017-04-06 20:37 - 2015-09-14 02:15 - 00000000 ____D C:\Users\TAHER 2017-04-04 11:13 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2017-04-03 10:12 - 2015-10-01 00:26 - 00000000 ____D C:\ProgramData\Adobe 2017-04-03 10:12 - 2015-10-01 00:26 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-04-03 09:35 - 2015-09-15 20:19 - 00000000 ____D C:\Users\TAHER\AppData\Roaming\IObit 2017-04-03 09:33 - 2015-09-15 20:16 - 00000000 ____D C:\Program Files (x86)\IObit 2017-04-03 09:26 - 2016-02-06 20:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2017-04-03 08:50 - 2015-12-01 16:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4shared Desktop 2017-04-02 22:57 - 2015-12-01 16:24 - 00000000 ____D C:\Program Files (x86)\4shared Desktop 2017-04-02 22:50 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2017-04-02 22:32 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2017-04-02 19:38 - 2015-09-14 21:36 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-04-02 12:04 - 2014-11-21 05:12 - 02269806 _____ C:\Windows\system32\PerfStringBackup.INI 2017-04-02 12:04 - 2014-11-21 04:31 - 00775572 _____ C:\Windows\system32\perfh00C.dat 2017-04-02 12:04 - 2014-11-21 04:31 - 00430594 _____ C:\Windows\system32\perfh001.dat 2017-04-02 12:04 - 2014-11-21 04:31 - 00148756 _____ C:\Windows\system32\perfc00C.dat 2017-04-02 12:04 - 2014-11-21 04:31 - 00064760 _____ C:\Windows\system32\perfc001.dat 2017-04-02 11:54 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData 2017-04-02 11:54 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2017-04-02 11:53 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-04-02 11:50 - 2015-10-16 12:44 - 00004290 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-04-02 11:50 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-04-02 11:50 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Macromed 2017-04-02 11:47 - 2015-09-14 22:44 - 00000000 ____D C:\Users\TAHER\AppData\Local\Adobe 2017-04-02 11:12 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2017-04-02 11:00 - 2016-05-01 11:22 - 00004420 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2017-03-29 22:07 - 2016-10-12 17:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4 2017-03-29 21:57 - 2015-10-22 13:39 - 89288704 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2017-03-29 21:57 - 2015-10-22 13:39 - 00364544 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2017-03-29 21:57 - 2015-10-22 13:39 - 00028672 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2017-03-29 21:57 - 2015-10-22 13:39 - 00024576 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2017-03-24 14:41 - 2015-10-17 13:36 - 00000000 ____D C:\Program Files\ESET 2017-03-24 13:30 - 2015-09-14 12:47 - 00000000 ____D C:\Users\TAHER\AppData\Local\ESET 2017-03-24 13:29 - 2015-10-17 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2017-03-24 13:29 - 2015-10-17 13:36 - 00000000 ____D C:\ProgramData\ESET 2017-03-18 01:38 - 2016-10-25 13:37 - 00000000 ____D C:\Users\TAHER\Documents\استايلات ذهبية 2017-03-18 01:25 - 2016-10-25 12:29 - 00000000 ____D C:\Users\TAHER\Documents\التدرج الذهبي - استايلات اس واي 2017-03-15 14:10 - 2015-09-14 21:08 - 00000000 ____D C:\Windows\system32\appraiser 2017-03-15 14:10 - 2015-09-14 13:15 - 00000000 ____D C:\Windows\system32\MRT 2017-03-15 14:05 - 2015-09-14 13:14 - 138634176 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-03-14 21:04 - 2015-11-05 20:53 - 04792320 _____ C:\Windows\system32\config\DRIVERS.iodefrag.bak ==================== Files in the root of some directories ======= 2016-02-20 19:32 - 2016-02-20 19:32 - 0000056 _____ () C:\Users\TAHER\AppData\Roaming\coreavc.ini ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2017-04-09 10:21 ==================== End of FRST.txt ============================