Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:06-09-2015 01
- Ran by Connor (administrator) on GAMINGPC (07-09-2015 16:55:32)
- Running from C:\Users\Connor\Desktop
- Loaded Profiles: Connor (Available Profiles: Connor)
- Platform: Windows 10 Pro (X64) Language: English (United Kingdom)
- Internet Explorer Version 11 (Default browser: Chrome)
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (AMD) C:\Windows\System32\atiesrxx.exe
- (AMD) C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpertService.exe
- (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
- (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
- (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
- (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe
- (Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe
- (Ralink Technology, Corp.) C:\Program Files (x86)\NETGEAR\WNDA4100\Service\RaRegistry64.exe
- (Ralink Technology, Corp.) C:\Program Files (x86)\NETGEAR\WNDA4100\Service\RaRegistry.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- (AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
- (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.exe
- (AMD) C:\Windows\System32\atieclxx.exe
- (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
- (AMD) C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpert.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler64.exe
- (AMD) C:\Windows\SysWOW64\WinMsgBalloonServer.exe
- (AMD) C:\Windows\SysWOW64\WinMsgBalloonClient.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- (AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
- (Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
- (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
- (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
- (Microsoft Corporation) C:\Users\Connor\AppData\Local\Microsoft\OneDrive\OneDrive.exe
- (NETGEAR) C:\Program Files (x86)\NETGEAR\WNDA4100\WNDA4100.EXE
- (Repkasoft) C:\Program Files (x86)\YoWindow\yowindow.exe
- (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
- (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
- (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
- (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
- () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
- (Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
- (Razer, Inc.) C:\Users\Connor\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\RzCefRenderProcess.exe
- (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Spotify Ltd) C:\Users\Connor\AppData\Roaming\Spotify\Spotify.exe
- (Spotify Ltd) C:\Users\Connor\AppData\Roaming\Spotify\SpotifyCrashService.exe
- (Spotify Ltd) C:\Users\Connor\AppData\Roaming\Spotify\Spotify.exe
- (Spotify Ltd) C:\Users\Connor\AppData\Roaming\Spotify\SpotifyWebHelper.exe
- (Spotify Ltd) C:\Users\Connor\AppData\Roaming\Spotify\Spotify.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
- (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
- (Oracle Corporation) C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\java.exe
- (Oracle Corporation) C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
- (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
- (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
- (Oracle Corporation) C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\java.exe
- (Oracle Corporation) C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
- (Microsoft Corporation) C:\Windows\System32\SndVol.exe
- (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
- ==================== Registry (Whitelisted) ===========================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13513288 2014-12-30] (Realtek Semiconductor)
- HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
- HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [12697368 2014-10-14] (Logitech Inc.)
- HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-08-13] (Apple Inc.)
- HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-03] (Advanced Micro Devices, Inc.)
- HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2010-06-28] (cyberlink)
- HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2010-06-20] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [976832 2010-06-09] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3775912 2015-08-24] (AVG Technologies CZ, s.r.o.)
- HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2014-12-08] (Raptr, Inc)
- HKLM-x32\...\Run: [] => [X]
- HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [593216 2015-08-11] (Razer Inc.)
- HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [884440 2015-05-28] (BlueStack Systems, Inc.)
- HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe [2620728 2015-07-22] (Malwarebytes Corporation)
- HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1139624 2015-08-20] (AVG Technologies CZ, s.r.o.)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53661824 2015-07-28] (Skype Technologies S.A.)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 5\CyberGhost.EXE [410216 2014-11-03] (CyberGhost S.R.L.)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [GoogleChromeAutoLaunch_CCDB8FD1E8F45E73D3BAD8AE404EACB5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944 2015-08-28] (Google Inc.)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [Spotify Web Helper] => C:\Users\Connor\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-09-04] (Spotify Ltd)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [NetLimiter] => C:\Program Files\Locktime Software\NetLimiter 4\nlclientapp.exe [51840 2015-03-04] (Locktime Software)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [ooVoo.exe] => C:\Program Files (x86)\ooVoo\oovoo.exe [36207136 2015-02-08] (ooVoo LLC)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [OneDrive] => C:\Users\Connor\AppData\Local\Microsoft\OneDrive\OneDrive.exe [404064 2015-08-19] (Microsoft Corporation)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [MurGee.com Auto Clicker] => C:\Users\Connor\AppData\Roaming\Auto Clicker\AutoClicker.exe [120304 2015-03-29] (MurGee.com)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\Run: [Spotify] => C:\Users\Connor\AppData\Roaming\Spotify\Spotify.exe [7535672 2015-09-04] (Spotify Ltd)
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\...\RunOnce: [Uninstall C:\Users\Connor\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Connor\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_1\amd64"
- Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WNDA4100 Genie.lnk [2014-12-30]
- ShortcutTarget: NETGEAR WNDA4100 Genie.lnk -> C:\Program Files (x86)\NETGEAR\WNDA4100\WNDA4100.EXE (NETGEAR)
- Startup: C:\Users\Connor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-04-17]
- ShortcutTarget: Curse.lnk -> C:\Users\Connor\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc)
- Startup: C:\Users\Connor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\YoWindow.lnk [2015-07-04]
- ShortcutTarget: YoWindow.lnk -> C:\Program Files (x86)\YoWindow\yowindow.exe (Repkasoft)
- CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{983cd77b-36f3-446d-8380-82a8ead713e4}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{B2121A63-8D43-4164-BCD6-31710CB3D53D}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{f8714387-ff26-4ac7-a863-1a366dca7678}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{FAE1FB39-63ED-4D64-B129-606709131B48}: [DhcpNameServer] 192.168.0.1
- Internet Explorer:
- ==================
- HKU\S-1-5-21-2369221340-1240712346-4143902593-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-gb/?ocid=iehp
- SearchScopes: HKU\S-1-5-21-2369221340-1240712346-4143902593-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
- BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2015-01-18] (Oracle Corporation)
- BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
- BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2015-01-18] (Oracle Corporation)
- BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19] (Adobe Systems Incorporated)
- BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2015-01-18] (Oracle Corporation)
- BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2015-01-18] (Oracle Corporation)
- FireFox:
- ========
- FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2015-01-18] (Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2015-01-18] (Oracle Corporation)
- FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-07-30] ()
- FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
- FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2015-01-18] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2015-01-18] (Oracle Corporation)
- FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-31] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-31] (Google Inc.)
- FF Plugin HKU\S-1-5-21-2369221340-1240712346-4143902593-1001: SkypePlugin -> C:\Users\Connor\AppData\Local\SkypePlugin\7.1.0.63\npSkypePlugin.dll [2014-11-27] (Skype Technologies S.A.)
- FF Plugin HKU\S-1-5-21-2369221340-1240712346-4143902593-1001: SkypePlugin64 -> C:\Users\Connor\AppData\Local\SkypePlugin\7.1.0.63\npSkypePlugin-x64.dll [2014-11-27] (Skype Technologies S.A.)
- Chrome:
- =======
- CHR dev: Chrome dev build detected! <======= ATTENTION
- CHR HomePage: Default -> hxxp://www.yahoo.co.uk/
- CHR StartupUrls: Default -> "hxxp://www.youtube.com/","hxxp://www.facebook.com/","hxxp://www.twitter.com/","hxxp://www.google.com/","hxxp://www.google.com/ig/redirectdomain?brand=TEUA&bmod=TEUA","hxxp://vosteran.com/?f=7&a=vst_wnzp01_15_01_ch&cd=2XzuyEtN2Y1L1Qzu0B0CyD0F0FyEyCzytByEzz0CyDyC0F0DtN0D0Tzu0StCtDzyzztN1L2XzutAtFyBtFtCtFtAtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StBtC0BtAzztD0B0CtGyEzyzyyDtGyDtByByEtGtCtAtBtAtGtDyEzztBtDzy0B0AzytB0C0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyE0Azy0CtDtBtCtBtGyDyDyC0DtGyEtD0CzytG0Azyzy0CtGyEzytDzy0FyEtAzy0B0ByE0B2Q&cr=381156147&ir=","hxxp://www.search.ask.com/?tpid=ORJ-V7C&o=APN11412&pf=V7&trgb=CR&p2=%5EBBK%5EOSJ000%5EYY%5EGB&gct=hp&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EGB&apn_dbr=cr_34.0.1847.116&apn_uid=CFDE2514-66D1-421D-AB74-84A403904294&itbv=12.10.6.48&doi=2014-04-26&psv="
- CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
- CHR Profile: C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default
- CHR Extension: (Google Slides) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-02]
- CHR Extension: (Bejeweled) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm [2015-03-02]
- CHR Extension: (1 Click Proxy) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\angbhbjbplfpkbcijbkhecjfcfgjbjoc [2015-03-02]
- CHR Extension: (Google Docs) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-02]
- CHR Extension: (Google Drive) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-02]
- CHR Extension: (YouTube) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-02]
- CHR Extension: (Adblock Plus) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-02]
- CHR Extension: (Spotify - Music for every moment) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2015-03-02]
- CHR Extension: (Google Search) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-02]
- CHR Extension: (Google Calendar) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-03-02]
- CHR Extension: (YoWindow Free Weather) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef [2015-07-05]
- CHR Extension: (Google Sheets) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-02]
- CHR Extension: (Google Docs Offline) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-02]
- CHR Extension: (AdBlock) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-05-06]
- CHR Extension: (Crackle) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic [2015-03-02]
- CHR Extension: (Zalmos SSL Web Proxy for Free) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\idefjamndcpplnamdlbodoebjgkpdmpn [2015-03-02]
- CHR Extension: (Night Time In New York City) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnimonidkipnhnpgkhgliocfnnpgkhek [2015-08-20]
- CHR Extension: (Adblock Super) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2015-03-02]
- CHR Extension: (Build with Chrome) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbbbhbjeecagnlfgggogfclkdjamoapf [2015-03-02]
- CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-04]
- CHR Extension: (https://twitter.com/) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lddagfjihimnacaabfnfagjcokfmnekc [2015-03-02]
- CHR Extension: (AVG Secure Search) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2015-03-02]
- CHR Extension: (Google Wallet) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-07]
- CHR Extension: (Deezer) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\npfkoakaabdallkcdbpkkhfilkkngakh [2015-03-02]
- CHR Extension: (Click&Clean App) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2015-03-02]
- CHR Extension: (Dog licking your screen) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjhihnddiockkgohnmohphemdljdojih [2015-03-02]
- CHR Extension: (Gmail) - C:\Users\Connor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-02]
- ==================== Services (Whitelisted) ========================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-03] (Advanced Micro Devices, Inc.) [File not signed]
- R2 AMD_RAIDXpert; C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpertService.exe [61440 2012-09-06] (AMD) [File not signed]
- R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
- S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3637160 2015-08-24] (AVG Technologies CZ, s.r.o.)
- R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1059240 2015-08-20] (AVG Technologies CZ, s.r.o.)
- R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [335656 2015-08-24] (AVG Technologies CZ, s.r.o.)
- S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [433880 2015-05-28] (BlueStack Systems, Inc.)
- S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413400 2015-05-28] (BlueStack Systems, Inc.)
- S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [806616 2015-05-28] (BlueStack Systems, Inc.)
- S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64616 2014-11-03] (CyberGhost S.R.L)
- S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2015-03-12] (Hi-Rez Studios) [File not signed]
- R2 MbaeSvc; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe [713016 2015-07-22] (Malwarebytes Corporation)
- S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
- R2 nlsvc; C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe [329344 2015-03-04] (Locktime Software)
- R2 RalinkRegistryWriter; C:\Program Files (x86)\NETGEAR\WNDA4100\Service\RaRegistry.exe [377088 2012-09-04] (Ralink Technology, Corp.)
- R2 RalinkRegistryWriter64; C:\Program Files (x86)\NETGEAR\WNDA4100\Service\RaRegistry64.exe [455424 2012-09-04] (Ralink Technology, Corp.)
- S2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] ()
- S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1050904 2013-12-11] () [File not signed]
- R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5611280 2015-08-07] (TeamViewer GmbH)
- R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2973400 2015-08-04] (AVG Technologies)
- S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
- S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
- ===================== Drivers (Whitelisted) ==========================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
- R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
- R0 AsrRamDisk; C:\Windows\System32\drivers\AsrRamDisk.sys [34640 2012-08-09] (ASRock Inc.)
- R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
- S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21152 2015-03-27] (AVG Technologies CZ, s.r.o.)
- R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162784 2015-03-11] (AVG Technologies CZ, s.r.o.)
- R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313264 2015-08-19] (AVG Technologies CZ, s.r.o.)
- R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [297904 2015-08-19] (AVG Technologies CZ, s.r.o.)
- R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [259040 2015-06-16] (AVG Technologies CZ, s.r.o.)
- R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [378336 2015-05-07] (AVG Technologies CZ, s.r.o.)
- R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [250800 2015-08-04] (AVG Technologies CZ, s.r.o.)
- R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [40928 2015-03-20] (AVG Technologies CZ, s.r.o.)
- R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [304560 2015-08-04] (AVG Technologies CZ, s.r.o.)
- S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [145112 2015-05-28] (BlueStack Systems)
- R3 CMUSBDAC; C:\Windows\system32\DRIVERS\CMUSBDAC.sys [595456 2014-09-19] (C-MEDIA)
- R1 ESProtectionDriver; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.sys [63064 2015-07-22] ()
- R3 i8042HDR; C:\Windows\system32\DRIVERS\i8042HDR.sys [15920 2009-08-14] (Windows (R) Codename Longhorn DDK provider)
- R3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.)
- R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
- R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-07] (Malwarebytes Corporation)
- S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
- R2 nldrv; C:\Program Files\Locktime Software\NetLimiter 4\nldrv.sys [125360 2015-03-04] (Locktime Software)
- R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
- R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
- R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
- R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [129472 2015-06-27] (Razer, Inc.)
- S3 Secdrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [14304 1999-05-14] () [File not signed]
- S3 taphss6; C:\Windows\System32\drivers\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.)
- R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-07-23] (TuneUp Software)
- S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
- U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [39936 2015-07-10] (Microsoft Corporation)
- S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
- S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
- S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
- S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2015-09-07 16:55 - 2015-09-07 16:56 - 00027593 _____ C:\Users\Connor\Desktop\FRST.txt
- 2015-09-07 16:55 - 2015-09-07 16:55 - 00000000 ____D C:\FRST
- 2015-09-07 16:54 - 2015-09-07 16:54 - 02190336 _____ (Farbar) C:\Users\Connor\Desktop\FRST64.exe
- 2015-09-07 15:48 - 2015-09-07 15:48 - 00000000 ___HD C:\OneDriveTemp
- 2015-09-07 15:47 - 2015-09-07 15:47 - 00016148 _____ C:\WINDOWS\system32\GAMINGPC_Connor_HistoryPrediction.bin
- 2015-09-05 22:58 - 2015-09-06 22:02 - 00002688 _____ C:\WINDOWS\PFRO.log
- 2015-09-05 22:36 - 2015-09-05 22:36 - 00001239 _____ C:\Users\Public\Desktop\Free Mouse Auto Clicker.lnk
- 2015-09-05 22:36 - 2015-09-05 22:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMouseAutoClicker
- 2015-09-05 22:36 - 2015-09-05 22:36 - 00000000 ____D C:\Program Files (x86)\FreeMouseAutoClicker
- 2015-09-05 22:35 - 2015-09-05 22:35 - 00478776 _____ (Advanced Mouse Auto Clicker ltd. ) C:\Users\Connor\Downloads\FreeMouseAutoClicker.exe
- 2015-09-05 22:33 - 2015-09-05 22:33 - 00001062 _____ C:\Users\Connor\Desktop\Auto Clicker for Games.lnk
- 2015-09-05 22:32 - 2015-09-05 22:32 - 00822248 _____ (MurGee.com ) C:\Users\Connor\Downloads\setup (1).exe
- 2015-09-05 22:05 - 2015-09-05 22:05 - 00002187 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015.lnk
- 2015-09-05 22:05 - 2015-09-05 22:05 - 00000000 ____D C:\Users\Connor\AppData\Roaming\AVG
- 2015-09-05 22:05 - 2015-08-04 14:25 - 00041688 _____ (AVG Technologies) C:\WINDOWS\system32\TURegOpt.exe
- 2015-09-05 17:44 - 2015-09-05 17:44 - 00063755 _____ C:\Users\Connor\Downloads\Addition.txt
- 2015-09-05 17:15 - 2015-09-05 17:18 - 212507304 _____ C:\Users\Connor\Downloads\MCMagicAudioPack1.4b.zip
- 2015-09-05 16:39 - 2015-09-05 16:39 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\Connor\Downloads\SpyHunter-Installer (2).exe
- 2015-09-05 16:34 - 2015-09-05 16:34 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\Connor\Downloads\SpyHunter-Installer (1).exe
- 2015-09-05 16:20 - 2015-09-05 16:20 - 00000954 _____ C:\Users\Public\Desktop\AVG.lnk
- 2015-09-05 16:20 - 2015-09-05 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
- 2015-09-05 16:19 - 2015-09-05 22:06 - 00000000 ____D C:\ProgramData\Avg
- 2015-09-05 16:19 - 2015-09-05 22:05 - 00000000 ____D C:\Program Files (x86)\AVG
- 2015-09-05 16:18 - 2015-09-05 16:20 - 00000000 ____D C:\Users\Connor\AppData\Local\AvgSetupLog
- 2015-09-05 16:02 - 2015-09-05 16:02 - 16902256 _____ (AVG Technologies) C:\Users\Connor\Downloads\avg_gsr_stb_all_ltst_94.exe
- 2015-09-04 22:54 - 2015-09-04 22:54 - 01293704 _____ (Mojang) C:\Users\Connor\Downloads\Minecraft.exe
- 2015-09-04 22:54 - 2015-09-04 22:54 - 00000000 ____D C:\Users\Connor\Downloads\runtime
- 2015-09-04 22:54 - 2015-09-04 22:54 - 00000000 ____D C:\Users\Connor\Downloads\game
- 2015-09-04 21:28 - 2015-09-04 22:19 - 00000000 ____D C:\Users\Connor\AppData\Local\whatpulse
- 2015-09-04 21:28 - 2015-09-04 21:28 - 00000000 ____D C:\Users\Connor\AppData\Local\CrashRpt
- 2015-09-04 20:55 - 2015-09-04 20:55 - 10058908 _____ (WhatPulse ) C:\Users\Connor\Downloads\whatpulse-win-2.6.3.exe
- 2015-09-04 20:17 - 2015-09-04 21:07 - 00000000 ____D C:\Users\Connor\AppData\Roaming\Apple Computer
- 2015-09-04 20:17 - 2015-09-04 20:17 - 00001822 _____ C:\Users\Public\Desktop\iTunes.lnk
- 2015-09-04 20:17 - 2015-09-04 20:17 - 00000000 ____D C:\Users\Connor\AppData\Local\Apple Computer
- 2015-09-04 20:17 - 2015-09-04 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
- 2015-09-04 20:15 - 2015-09-04 20:16 - 00000000 ____D C:\Program Files\iTunes
- 2015-09-04 20:15 - 2015-09-04 20:15 - 00000000 ____D C:\ProgramData\Apple Computer
- 2015-09-04 20:15 - 2015-09-04 20:15 - 00000000 ____D C:\Program Files\iPod
- 2015-09-04 20:15 - 2015-09-04 20:15 - 00000000 ____D C:\Program Files (x86)\iTunes
- 2015-09-04 20:14 - 2015-09-04 20:14 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
- 2015-09-04 20:14 - 2015-09-04 20:14 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
- 2015-09-04 20:14 - 2015-09-04 20:14 - 00000000 ____D C:\Users\Connor\AppData\Local\Apple
- 2015-09-04 20:14 - 2015-09-04 20:14 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
- 2015-09-04 20:13 - 2015-09-04 20:15 - 00000000 ____D C:\Program Files\Common Files\Apple
- 2015-09-04 20:10 - 2015-09-04 20:12 - 155835672 _____ (Apple Inc.) C:\Users\Connor\Downloads\iTunes6464Setup.exe
- 2015-09-04 20:09 - 2015-09-04 20:23 - 00001762 _____ C:\WINDOWS\setupact.log
- 2015-09-04 20:09 - 2015-09-04 20:09 - 00000000 _____ C:\WINDOWS\setuperr.log
- 2015-09-04 18:33 - 2015-09-04 18:41 - 00146680 _____ C:\WINDOWS\DPINST.LOG
- 2015-09-03 18:58 - 2015-09-03 18:59 - 00000000 ____D C:\Users\Connor\Downloads\libraries
- 2015-09-03 18:58 - 2015-09-03 18:58 - 00000000 ____D C:\Users\Connor\Downloads\versions
- 2015-09-02 19:38 - 2015-09-06 01:22 - 00000000 ____D C:\ProgramData\Malwarebytes Anti-Exploit
- 2015-09-02 19:38 - 2015-09-02 19:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Exploit
- 2015-09-02 19:38 - 2015-09-02 19:38 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Exploit
- 2015-09-02 19:04 - 2015-09-02 19:04 - 02865192 _____ (Malwarebytes ) C:\Users\Connor\Downloads\mbae-setup-1.07.1.1015.exe
- 2015-09-01 21:48 - 2015-09-01 21:48 - 02449376 _____ (Megaify Software ) C:\Users\Connor\Downloads\DriverToolkitInstaller.exe
- 2015-09-01 15:49 - 2015-09-01 15:49 - 00006041 _____ C:\Users\Connor\Downloads\OreGeneratorRevolution.jar
- 2015-08-31 20:28 - 2015-08-31 20:28 - 03255120 _____ C:\Users\Connor\Downloads\Football70500s Modified Faithful v3.0.zip
- 2015-08-31 20:22 - 2015-08-31 20:22 - 07291524 _____ C:\Users\Connor\Downloads\faithful64pack-v1.4.0-2.zip
- 2015-08-29 18:42 - 2015-09-07 16:47 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
- 2015-08-29 17:32 - 2015-08-29 17:32 - 00135865 _____ C:\Users\Connor\Downloads\Super Smelter.zip
- 2015-08-29 12:18 - 2015-08-29 18:01 - 00021288 _____ (RW-Everything) C:\WINDOWS\SysWOW64\Drivers\ArdDrv.sys
- 2015-08-29 12:18 - 2015-08-29 12:18 - 00021288 _____ (RW-Everything) C:\WINDOWS\SysWOW64\Drivers\AxtuDrv.sys
- 2015-08-28 23:42 - 2015-08-20 07:07 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
- 2015-08-28 23:42 - 2015-08-20 07:06 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
- 2015-08-28 23:42 - 2015-08-20 07:02 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
- 2015-08-28 23:42 - 2015-08-20 06:57 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
- 2015-08-28 23:42 - 2015-08-20 06:26 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
- 2015-08-28 23:42 - 2015-08-20 06:21 - 21875200 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
- 2015-08-28 23:42 - 2015-08-20 06:21 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
- 2015-08-28 23:42 - 2015-08-20 06:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
- 2015-08-28 23:42 - 2015-08-20 06:13 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
- 2015-08-28 23:42 - 2015-08-20 05:31 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
- 2015-08-28 23:42 - 2015-08-18 08:56 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
- 2015-08-28 23:42 - 2015-08-18 08:55 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
- 2015-08-28 23:42 - 2015-08-18 08:54 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
- 2015-08-28 23:42 - 2015-08-18 08:27 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
- 2015-08-28 23:42 - 2015-08-18 08:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
- 2015-08-28 23:42 - 2015-08-18 08:13 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
- 2015-08-28 23:42 - 2015-08-18 08:13 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
- 2015-08-28 23:42 - 2015-08-18 08:12 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
- 2015-08-28 23:42 - 2015-08-18 08:07 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
- 2015-08-28 23:42 - 2015-08-18 08:04 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
- 2015-08-28 23:42 - 2015-08-18 08:04 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
- 2015-08-28 23:42 - 2015-08-18 07:59 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
- 2015-08-28 23:42 - 2015-08-18 07:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
- 2015-08-28 23:42 - 2015-08-18 07:58 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
- 2015-08-28 23:42 - 2015-08-18 07:58 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
- 2015-08-28 23:42 - 2015-08-18 07:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
- 2015-08-28 23:42 - 2015-08-18 07:58 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
- 2015-08-28 23:42 - 2015-08-18 07:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
- 2015-08-28 23:42 - 2015-08-18 07:56 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
- 2015-08-28 23:42 - 2015-08-18 07:55 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
- 2015-08-28 23:42 - 2015-08-18 07:54 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
- 2015-08-28 23:42 - 2015-08-18 07:54 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll
- 2015-08-28 23:42 - 2015-08-18 07:52 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
- 2015-08-28 23:42 - 2015-08-18 07:50 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
- 2015-08-28 23:42 - 2015-08-18 07:49 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
- 2015-08-28 23:42 - 2015-08-18 07:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
- 2015-08-28 23:42 - 2015-08-18 07:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
- 2015-08-28 23:42 - 2015-08-18 07:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
- 2015-08-28 23:42 - 2015-08-18 07:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
- 2015-08-28 23:42 - 2015-08-18 07:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
- 2015-08-28 23:42 - 2015-08-18 07:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
- 2015-08-28 23:42 - 2015-08-18 07:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
- 2015-08-28 23:42 - 2015-08-18 07:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
- 2015-08-28 23:42 - 2015-08-18 05:44 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList
- 2015-08-28 13:40 - 2015-08-28 13:40 - 00954523 _____ C:\Users\Connor\Downloads\OptiFine_1.8.8_HD_U_E2.jar
- 2015-08-27 12:49 - 2015-08-27 12:49 - 00272673 _____ C:\Users\Connor\Downloads\Wheat Farm.zip
- 2015-08-25 16:17 - 2015-08-25 16:18 - 00000000 ____D C:\Users\Connor\Downloads\patterns
- 2015-08-25 16:17 - 2015-08-25 16:17 - 00356019 _____ C:\Users\Connor\Downloads\patterns.zip
- 2015-08-25 01:36 - 2015-08-25 01:36 - 00225817 _____ C:\Users\Connor\Downloads\InventoryTweaks-1.59-176.jar
- 2015-08-25 01:32 - 2015-08-25 01:32 - 00000000 ____D C:\Users\Connor\Documents\mmc-stable-win32 (1)
- 2015-08-25 01:32 - 2015-08-25 01:31 - 13206934 _____ C:\Users\Connor\Documents\mmc-stable-win32 (1).zip
- 2015-08-25 01:31 - 2015-08-25 01:31 - 13206934 _____ C:\Users\Connor\Downloads\mmc-stable-win32 (1).zip
- 2015-08-25 01:31 - 2015-08-25 01:31 - 00000000 ____D C:\Users\Connor\Downloads\mmc-stable-win32 (1)
- 2015-08-22 13:08 - 2015-08-22 13:08 - 00000000 ____D C:\ProgramData\ATI
- 2015-08-21 21:01 - 2015-08-21 21:07 - 00000000 ____D C:\Users\Connor\Downloads\Poltergeist.2015.720p.HDTV.x264.AAC-ETRG
- 2015-08-21 21:01 - 2015-08-21 21:01 - 00015095 _____ C:\Users\Connor\Downloads\E10EB99684D47D56CE832E8995460AB23813DC0E.torrent
- 2015-08-21 20:53 - 2015-08-21 20:53 - 01008608 _____ (Microsoft Corp.) C:\Users\Connor\Downloads\Pandora10a.exe
- 2015-08-21 20:48 - 1999-05-14 17:03 - 00014304 ____R C:\WINDOWS\SysWOW64\Drivers\SECDRV.SYS
- 2015-08-21 20:34 - 2015-08-21 20:34 - 00003210 _____ C:\WINDOWS\System32\Tasks\{A8B1D55B-6806-4FC8-99F0-69D1D6327737}
- 2015-08-21 18:37 - 2015-08-21 18:37 - 00061917 _____ C:\WINDOWS\SysWOW64\CCCInstall_201508211837030562.log
- 2015-08-21 18:36 - 2015-08-21 18:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
- 2015-08-21 18:36 - 2015-08-21 18:36 - 00000000 ____D C:\Program Files\ATI Technologies
- 2015-08-21 18:33 - 2015-08-21 18:33 - 00061037 _____ C:\WINDOWS\SysWOW64\CCCInstall_201508211833448639.log
- 2015-08-21 18:33 - 2015-08-21 18:33 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
- 2015-08-21 18:33 - 2015-08-21 18:33 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
- 2015-08-21 18:33 - 2015-08-21 18:33 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
- 2015-08-21 18:33 - 2015-08-21 18:33 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
- 2015-08-21 18:30 - 2015-08-21 18:30 - 25308656 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
- 2015-08-21 18:30 - 2015-08-21 18:30 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00341488 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00243696 _____ C:\WINDOWS\system32\clinfo.exe
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00201184 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00136176 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00122352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00111600 _____ C:\WINDOWS\system32\hsa-thunk64.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00111088 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00102384 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00099296 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00095216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00091104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00061408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00012784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
- 2015-08-21 18:30 - 2015-08-21 18:30 - 00012784 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 47795680 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 39723504 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 27544560 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 22328800 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 15727072 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 14312416 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 09191312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 07575664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 06486000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 05076976 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 01196032 _____ C:\WINDOWS\system32\amdocl_as64.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 01070592 _____ C:\WINDOWS\system32\amdocl_ld64.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 01005552 _____ C:\WINDOWS\SysWOW64\amdocl_as32.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00807424 _____ C:\WINDOWS\SysWOW64\amdocl_ld32.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00660928 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00660928 _____ C:\WINDOWS\system32\atiapfxx.blb
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00472832 _____ C:\WINDOWS\system32\amdmiracast.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00377312 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00213488 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00198640 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00170464 _____ C:\WINDOWS\system32\atieah64.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00153456 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00152560 _____ C:\WINDOWS\SysWOW64\atieah32.exe
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00152032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00143344 _____ C:\WINDOWS\system32\amdhdl64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00132080 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00117600 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00111832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00089520 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00082680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00073712 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00071152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00069600 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00064496 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00062432 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00059360 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00052208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00049632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
- 2015-08-21 18:29 - 2015-08-21 18:29 - 00039904 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
- 2015-08-21 02:11 - 2015-08-21 02:11 - 00000000 _____ C:\autoexec.bat
- 2015-08-21 02:09 - 2015-08-21 02:09 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\Connor\Downloads\SpyHunter-Installer.exe
- 2015-08-20 00:58 - 2015-08-20 11:47 - 00000000 ____D C:\Users\Connor\AppData\Local\FluxSoftware
- 2015-08-20 00:57 - 2015-08-20 00:57 - 00597304 _____ C:\Users\Connor\Downloads\flux-setup.exe
- 2015-08-20 00:03 - 2015-08-20 00:03 - 00000000 ____D C:\Users\Connor\AppData\Local\Blizzard
- 2015-08-19 23:44 - 2015-08-20 00:12 - 00000000 ____D C:\Program Files (x86)\Hearthstone
- 2015-08-19 23:44 - 2015-08-19 23:44 - 00001254 _____ C:\Users\Public\Desktop\Hearthstone.lnk
- 2015-08-19 23:44 - 2015-08-19 23:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
- 2015-08-19 22:28 - 2015-08-20 18:04 - 00000000 ____D C:\Users\Connor\AppData\Local\Battle.net
- 2015-08-19 22:28 - 2015-08-19 23:43 - 00000000 ____D C:\Users\Connor\AppData\Roaming\Battle.net
- 2015-08-19 22:28 - 2015-08-19 22:28 - 00001217 _____ C:\Users\Public\Desktop\Battle.net.lnk
- 2015-08-19 22:28 - 2015-08-19 22:28 - 00000000 ____D C:\Users\Connor\AppData\Local\Blizzard Entertainment
- 2015-08-19 22:28 - 2015-08-19 22:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
- 2015-08-19 22:28 - 2015-08-19 22:28 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
- 2015-08-19 22:28 - 2015-08-19 22:28 - 00000000 ____D C:\Program Files (x86)\Battle.net
- 2015-08-19 22:07 - 2015-08-19 22:07 - 00000000 ____D C:\ProgramData\Battle.net
- 2015-08-19 22:06 - 2015-08-19 22:07 - 03056696 _____ (Blizzard Entertainment) C:\Users\Connor\Downloads\Hearthstone-Setup-enUS.exe
- 2015-08-19 20:05 - 2015-08-19 20:05 - 00320806 _____ C:\Users\Connor\Downloads\MirArcadia_Installer (1).exe
- 2015-08-19 19:20 - 2015-08-13 05:33 - 24593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
- 2015-08-19 19:20 - 2015-08-13 05:22 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
- 2015-08-19 19:20 - 2015-08-13 05:20 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
- 2015-08-19 19:20 - 2015-08-13 05:07 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
- 2015-08-19 19:20 - 2015-08-13 04:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
- 2015-08-19 19:20 - 2015-08-11 11:04 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
- 2015-08-19 19:20 - 2015-08-11 11:04 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
- 2015-08-19 19:20 - 2015-08-11 11:04 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
- 2015-08-19 19:20 - 2015-08-11 11:03 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
- 2015-08-19 19:20 - 2015-08-11 11:02 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
- 2015-08-19 19:20 - 2015-08-11 11:02 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
- 2015-08-19 19:20 - 2015-08-11 11:02 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
- 2015-08-19 19:20 - 2015-08-11 10:57 - 03622256 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
- 2015-08-19 19:20 - 2015-08-11 10:52 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
- 2015-08-19 19:20 - 2015-08-11 10:50 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
- 2015-08-19 19:20 - 2015-08-11 10:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
- 2015-08-19 19:20 - 2015-08-11 10:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
- 2015-08-19 19:20 - 2015-08-11 10:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
- 2015-08-19 19:20 - 2015-08-11 10:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
- 2015-08-19 19:20 - 2015-08-11 10:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
- 2015-08-19 19:20 - 2015-08-11 10:31 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
- 2015-08-19 19:20 - 2015-08-11 10:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
- 2015-08-19 19:20 - 2015-08-11 10:23 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
- 2015-08-19 19:20 - 2015-08-11 10:21 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
- 2015-08-19 19:20 - 2015-08-11 10:21 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
- 2015-08-19 19:20 - 2015-08-11 10:20 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
- 2015-08-19 19:20 - 2015-08-11 10:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
- 2015-08-19 19:20 - 2015-08-11 10:18 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
- 2015-08-19 19:20 - 2015-08-11 10:16 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
- 2015-08-19 19:20 - 2015-08-11 10:14 - 00404480 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
- 2015-08-19 19:20 - 2015-08-11 10:13 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll
- 2015-08-19 19:20 - 2015-08-11 10:11 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
- 2015-08-19 19:20 - 2015-08-11 10:11 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
- 2015-08-19 19:20 - 2015-08-11 10:10 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
- 2015-08-19 19:20 - 2015-08-11 10:10 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
- 2015-08-19 19:20 - 2015-08-11 10:10 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll
- 2015-08-19 19:20 - 2015-08-11 10:09 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
- 2015-08-19 19:20 - 2015-08-11 10:08 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
- 2015-08-19 19:20 - 2015-08-11 10:08 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
- 2015-08-19 19:20 - 2015-08-11 10:07 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
- 2015-08-19 19:20 - 2015-08-11 10:07 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
- 2015-08-19 19:20 - 2015-08-11 10:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
- 2015-08-19 19:20 - 2015-08-11 10:06 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
- 2015-08-19 19:20 - 2015-08-11 10:06 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
- 2015-08-19 19:20 - 2015-08-11 10:05 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
- 2015-08-19 19:20 - 2015-08-11 10:05 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
- 2015-08-19 19:20 - 2015-08-11 10:05 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll
- 2015-08-19 19:20 - 2015-08-11 10:05 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
- 2015-08-19 19:20 - 2015-08-11 10:05 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
- 2015-08-19 19:20 - 2015-08-11 10:05 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
- 2015-08-19 19:20 - 2015-08-11 10:03 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
- 2015-08-19 19:20 - 2015-08-11 10:02 - 03588096 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
- 2015-08-19 19:20 - 2015-08-11 10:02 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
- 2015-08-19 19:20 - 2015-08-11 10:02 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
- 2015-08-19 19:20 - 2015-08-11 10:01 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
- 2015-08-19 19:20 - 2015-08-11 10:00 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
- 2015-08-19 19:20 - 2015-08-11 10:00 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
- 2015-08-19 19:20 - 2015-08-11 09:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
- 2015-08-19 19:20 - 2015-08-11 09:59 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
- 2015-08-19 19:20 - 2015-08-11 09:59 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
- 2015-08-19 19:20 - 2015-08-11 09:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll
- 2015-08-19 19:20 - 2015-08-11 09:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
- 2015-08-19 19:20 - 2015-08-11 09:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
- 2015-08-19 19:20 - 2015-08-11 09:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
- 2015-08-19 19:20 - 2015-08-11 09:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
- 2015-08-19 19:20 - 2015-08-11 09:51 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
- 2015-08-19 19:20 - 2015-08-11 09:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
- 2015-08-19 19:20 - 2015-08-11 09:50 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll
- 2015-08-19 19:20 - 2015-08-11 09:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
- 2015-08-19 19:20 - 2015-08-11 09:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
- 2015-08-19 19:20 - 2015-08-11 09:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
- 2015-08-19 19:20 - 2015-08-11 09:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
- 2015-08-19 19:20 - 2015-08-11 09:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
- 2015-08-19 19:20 - 2015-08-11 09:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
- 2015-08-19 19:20 - 2015-08-11 09:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
- 2015-08-19 19:20 - 2015-08-11 09:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
- 2015-08-19 19:20 - 2015-08-11 09:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
- 2015-08-19 19:20 - 2015-08-11 09:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
- 2015-08-19 19:20 - 2015-08-11 09:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
- 2015-08-19 19:20 - 2015-08-11 09:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
- 2015-08-19 12:13 - 2015-08-19 12:13 - 00000000 ____D C:\Users\Connor\Downloads\Hyperion Sounds V6
- 2015-08-19 12:12 - 2015-08-19 12:12 - 20704579 _____ C:\Users\Connor\Downloads\Hyperion Sounds V6.zip
- 2015-08-14 15:44 - 2015-08-14 15:44 - 00000000 ____D C:\Users\Connor\Downloads\RainbowBeacon
- 2015-08-14 15:43 - 2015-08-14 15:43 - 00268701 _____ C:\Users\Connor\Downloads\RainbowBeacon.zip
- 2015-08-13 21:28 - 2015-08-13 21:28 - 00000000 ____D C:\Users\Connor\Downloads\Sky NY
- 2015-08-13 21:26 - 2015-08-13 21:27 - 03388435 _____ C:\Users\Connor\Downloads\Sky NY.zip
- 2015-08-13 21:22 - 2015-08-13 21:22 - 15067744 _____ C:\Users\Connor\Downloads\yosetup (1).exe
- 2015-08-13 16:36 - 2015-08-13 16:36 - 01731848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll
- 2015-08-12 20:47 - 2015-08-08 08:19 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
- 2015-08-12 20:47 - 2015-08-08 07:48 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
- 2015-08-12 20:47 - 2015-08-08 07:40 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
- 2015-08-12 20:47 - 2015-08-08 07:24 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
- 2015-08-12 20:47 - 2015-08-08 07:24 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
- 2015-08-12 20:47 - 2015-08-08 07:15 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
- 2015-08-12 20:47 - 2015-08-08 07:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
- 2015-08-12 20:47 - 2015-08-06 04:17 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
- 2015-08-12 20:47 - 2015-08-06 04:17 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
- 2015-08-12 20:47 - 2015-08-06 03:22 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
- 2015-08-12 20:47 - 2015-08-05 05:49 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
- 2015-08-12 20:47 - 2015-08-05 05:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
- 2015-08-12 20:47 - 2015-08-05 05:00 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
- 2015-08-12 20:47 - 2015-08-05 04:54 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
- 2015-08-12 20:47 - 2015-08-05 04:47 - 01383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
- 2015-08-12 20:47 - 2015-08-05 04:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
- 2015-08-12 20:47 - 2015-08-04 05:07 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
- 2015-08-12 20:47 - 2015-08-04 05:06 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
- 2015-08-12 20:47 - 2015-08-04 05:06 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
- 2015-08-12 20:47 - 2015-08-04 04:23 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
- 2015-08-12 20:47 - 2015-08-04 03:59 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
- 2015-08-12 20:47 - 2015-08-04 03:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
- 2015-08-12 20:47 - 2015-08-03 03:32 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
- 2015-08-12 20:47 - 2015-08-03 03:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
- 2015-08-12 20:47 - 2015-08-03 03:19 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
- 2015-08-12 20:47 - 2015-08-03 03:18 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
- 2015-08-12 20:47 - 2015-08-03 03:18 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
- 2015-08-12 20:47 - 2015-08-03 03:17 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
- 2015-08-12 20:47 - 2015-08-03 03:12 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
- 2015-08-12 20:47 - 2015-08-03 02:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
- 2015-08-12 20:47 - 2015-08-03 02:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
- 2015-08-12 20:47 - 2015-08-03 02:22 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
- 2015-08-12 20:47 - 2015-08-03 02:22 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
- 2015-08-12 20:47 - 2015-08-03 02:22 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
- 2015-08-12 20:47 - 2015-08-03 02:18 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
- 2015-08-12 20:47 - 2015-08-03 02:18 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
- 2015-08-12 20:47 - 2015-08-03 02:18 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
- 2015-08-12 20:47 - 2015-08-03 02:18 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
- 2015-08-12 20:47 - 2015-08-03 02:15 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
- 2015-08-12 20:47 - 2015-08-03 02:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
- 2015-08-12 20:47 - 2015-08-03 02:15 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
- 2015-08-12 20:47 - 2015-08-03 02:14 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
- 2015-08-12 20:47 - 2015-08-03 02:11 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
- 2015-08-12 20:47 - 2015-08-03 02:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
- 2015-08-12 20:47 - 2015-08-03 02:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
- 2015-08-12 20:47 - 2015-08-03 02:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
- 2015-08-12 20:47 - 2015-08-03 02:01 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
- 2015-08-12 20:47 - 2015-08-03 01:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
- 2015-08-12 20:46 - 2015-08-08 08:29 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
- 2015-08-12 20:46 - 2015-08-08 08:01 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
- 2015-08-12 20:46 - 2015-08-03 03:19 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
- 2015-08-12 20:46 - 2015-08-03 03:18 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
- 2015-08-12 20:46 - 2015-08-03 03:18 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
- 2015-08-12 20:46 - 2015-08-03 03:17 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
- 2015-08-12 20:46 - 2015-08-03 02:31 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
- 2015-08-12 20:46 - 2015-08-03 02:30 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
- 2015-08-12 20:46 - 2015-08-03 02:24 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
- 2015-08-12 20:46 - 2015-08-03 02:24 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
- 2015-08-12 20:46 - 2015-08-03 02:24 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
- 2015-08-12 20:46 - 2015-08-03 02:23 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
- 2015-08-12 20:46 - 2015-08-03 02:21 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
- 2015-08-12 20:46 - 2015-08-03 02:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
- 2015-08-12 20:46 - 2015-08-03 02:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
- 2015-08-12 20:46 - 2015-08-03 02:15 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
- 2015-08-12 20:46 - 2015-08-03 02:15 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
- 2015-08-12 20:46 - 2015-08-03 02:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
- 2015-08-12 20:46 - 2015-08-03 02:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
- 2015-08-12 20:46 - 2015-08-03 02:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
- 2015-08-12 20:46 - 2015-08-03 02:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
- 2015-08-12 20:11 - 2015-08-12 20:11 - 37418659 _____ C:\Users\Connor\Downloads\world (1).zip
- 2015-08-11 23:03 - 2015-08-11 23:03 - 00000000 ____D C:\Users\Connor\Downloads\Knight and Day (2010)
- 2015-08-11 23:02 - 2015-08-11 23:02 - 00015231 _____ C:\Users\Connor\Downloads\1A541F0937F8F177336AD0D5A016CA1507E403EE.torrent
- 2015-08-11 15:27 - 2015-08-11 15:27 - 53634128 _____ C:\Users\Connor\Downloads\IGG-Poly.Bridge.0.70.r1b.rar
- 2015-08-11 12:53 - 2015-08-11 12:53 - 01178272 _____ (Magical Jelly Bean ) C:\Users\Connor\Downloads\KeyFinderInstaller.exe
- 2015-08-11 12:08 - 2015-08-11 12:08 - 01197568 _____ (Razer Inc) C:\WINDOWS\SysWOW64\rzdevicedll.dll
- 2015-08-11 12:08 - 2015-08-11 12:08 - 00421888 _____ (Razer Inc) C:\WINDOWS\SysWOW64\rzaudiodll.dll
- 2015-08-11 12:08 - 2015-08-11 12:08 - 00155648 _____ (Razer Inc) C:\WINDOWS\SysWOW64\rztouchdll.dll
- 2015-08-11 12:08 - 2015-08-11 12:08 - 00117248 _____ (Razer Inc) C:\WINDOWS\SysWOW64\rzdisplaydll.dll
- 2015-08-11 12:08 - 2015-08-11 12:08 - 00090112 _____ (Razer Inc) C:\WINDOWS\SysWOW64\rzdevinfo.dll
- 2015-08-10 22:11 - 2015-08-10 22:11 - 00000000 ____D C:\Users\Connor\AppData\Roaming\WorldPainter
- 2015-08-10 22:11 - 2015-08-10 22:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldPainter
- 2015-08-10 22:10 - 2015-08-10 22:11 - 00000000 ____D C:\Program Files\WorldPainter
- 2015-08-10 22:10 - 2015-08-10 22:10 - 04404336 _____ (pepsoft.org) C:\Users\Connor\Downloads\worldpainter_64_1.11.1.exe
- 2015-08-10 22:08 - 2015-08-10 22:26 - 00000000 ____D C:\Users\Connor\Downloads\Jack Reacher (2012) [1080p]
- 2015-08-10 22:07 - 2015-08-10 22:07 - 00021380 _____ C:\Users\Connor\Downloads\FBAAB19E3B96BF5E32D3857E3A4A67F1D79AAD37.torrent
- 2015-08-09 21:54 - 2015-08-09 23:07 - 00000000 ____D C:\Users\Connor\Downloads\Mission.Impossible.5-Rogue.Nation.2015.FULL.720P.HDTS.x264.AC3.HQ.Hive-CM8
- 2015-08-09 21:53 - 2015-08-09 21:54 - 00237013 _____ C:\Users\Connor\Downloads\AB4A1E5DA73B8695F7E3E95873BECB76BBC153ED.torrent
- 2015-08-08 22:19 - 2015-08-08 22:19 - 02953338 _____ C:\Users\Connor\Downloads\Hyperion Hauntings Sounds 2015.zip
- 2015-08-08 13:06 - 2015-08-08 13:06 - 00000645 _____ C:\Users\Connor\Downloads\server.properties
- 2015-08-08 13:06 - 2015-08-08 13:06 - 00000109 _____ C:\Users\Connor\Downloads\banned-players.txt
- 2015-08-08 13:06 - 2015-08-08 13:06 - 00000109 _____ C:\Users\Connor\Downloads\banned-ips.txt
- 2015-08-08 13:06 - 2015-08-08 13:06 - 00000000 ____D C:\Users\Connor\Downloads\world
- 2015-08-08 13:06 - 2015-08-08 13:06 - 00000000 _____ C:\Users\Connor\Downloads\white-list.txt
- 2015-08-08 13:06 - 2015-08-08 13:06 - 00000000 _____ C:\Users\Connor\Downloads\ops.txt
- 2015-08-08 13:05 - 2015-08-08 13:06 - 09163955 _____ C:\Users\Connor\Downloads\minecraft_server.1.7.2.jar
- 2015-08-08 12:59 - 2015-08-08 12:59 - 00000000 ____D C:\Users\Connor\AppData\Local\CEF
- 2015-08-08 12:22 - 2015-08-08 12:22 - 00887415 _____ C:\Users\Connor\Downloads\OptiFine_1.7.2_HD_U_D5.jar
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2015-09-07 16:51 - 2014-12-30 19:01 - 00000000 ____D C:\Users\Connor\AppData\Roaming\Skype
- 2015-09-07 16:47 - 2015-05-14 16:02 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
- 2015-09-07 16:44 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\sru
- 2015-09-07 16:30 - 2014-12-30 19:04 - 00000924 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
- 2015-09-07 16:30 - 2014-12-30 19:04 - 00000920 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
- 2015-09-07 16:25 - 2014-12-30 19:09 - 00000000 ____D C:\Users\Connor\AppData\Roaming\.minecraft
- 2015-09-07 16:20 - 2014-12-30 21:37 - 00000000 ____D C:\Users\Connor\AppData\Roaming\Spotify
- 2015-09-07 15:58 - 2015-05-14 16:02 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
- 2015-09-07 15:50 - 2014-12-30 21:38 - 00000000 ____D C:\Users\Connor\AppData\Local\Spotify
- 2015-09-07 15:49 - 2015-07-30 11:32 - 00003130 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
- 2015-09-07 15:48 - 2014-12-30 18:59 - 00000000 ___DO C:\Users\Connor\OneDrive
- 2015-09-07 15:48 - 2014-12-30 14:22 - 00000000 ____D C:\ProgramData\MFAData
- 2015-09-06 22:02 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2015-09-06 22:01 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
- 2015-09-06 20:31 - 2014-12-30 18:50 - 00004156 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{4D1F06FF-E226-416D-B3D6-DBA044974BAC}
- 2015-09-06 14:13 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
- 2015-09-06 03:20 - 2015-01-02 16:53 - 00000000 ____D C:\Program Files (x86)\SpeedFan
- 2015-09-05 22:58 - 2015-07-10 13:20 - 00340848 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2015-09-05 22:57 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
- 2015-09-05 22:33 - 2015-04-09 16:33 - 00001022 _____ C:\Users\Connor\Desktop\Auto Clicker.lnk
- 2015-09-05 22:33 - 2015-04-09 16:33 - 00000000 ____D C:\Users\Connor\AppData\Roaming\Auto Clicker
- 2015-09-05 22:33 - 2015-04-09 16:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto Clicker
- 2015-09-05 22:16 - 2015-07-30 16:22 - 00000000 ___DC C:\WINDOWS\Panther
- 2015-09-05 17:54 - 2015-06-03 19:23 - 00000000 ____D C:\Program Files (x86)\BlueStacks
- 2015-09-05 16:26 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
- 2015-09-05 16:24 - 2015-06-13 10:59 - 00000000 ____D C:\Program Files\Common Files\AV
- 2015-09-05 16:23 - 2014-12-30 15:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
- 2015-09-05 16:18 - 2015-02-14 15:50 - 00000000 ____D C:\Users\Connor\AppData\Local\Avg
- 2015-09-04 20:14 - 2015-01-17 20:03 - 00000000 ____D C:\ProgramData\Apple
- 2015-09-04 18:59 - 2015-01-09 23:13 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
- 2015-09-03 20:11 - 2014-12-30 19:21 - 00000000 ____D C:\Users\Connor\AppData\Local\ftblauncher
- 2015-09-03 18:55 - 2014-12-30 19:21 - 07552083 _____ () C:\Users\Connor\Downloads\FTB_Launcher.exe
- 2015-09-03 18:55 - 2014-12-30 19:21 - 00000000 ____D C:\Users\Connor\AppData\Roaming\ftblauncher
- 2015-09-03 00:51 - 2015-03-09 18:35 - 00000000 ____D C:\Users\Connor\AppData\Roaming\TS3Client
- 2015-09-02 06:31 - 2015-03-02 19:45 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2015-09-02 02:11 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
- 2015-08-31 16:25 - 2014-12-30 19:04 - 00003982 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
- 2015-08-31 16:25 - 2014-12-30 19:04 - 00003750 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
- 2015-08-31 15:59 - 2015-04-23 20:52 - 00000000 ____D C:\Program Files (x86)\TeamViewer
- 2015-08-30 01:36 - 2015-07-30 15:33 - 00000000 ____D C:\Users\Connor
- 2015-08-29 18:14 - 2015-06-01 20:19 - 00000000 ____D C:\ProgramData\BlueStacksSetup
- 2015-08-29 18:14 - 2014-12-30 21:44 - 00000000 ____D C:\Program Files (x86)\Steam
- 2015-08-29 17:56 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\oobe
- 2015-08-29 17:56 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
- 2015-08-29 13:18 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
- 2015-08-29 11:58 - 2014-12-31 12:04 - 00000000 ____D C:\Program Files\Core Temp
- 2015-08-28 17:36 - 2015-03-09 18:34 - 00000000 ____D C:\Users\Connor\AppData\Local\TeamSpeak 3 Client
- 2015-08-28 11:48 - 2015-07-30 15:51 - 00875126 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2015-08-25 01:32 - 2015-05-31 23:56 - 05795935 _____ (MultiMC Contributors) C:\Users\Connor\Desktop\MultiMC.exe
- 2015-08-24 17:26 - 2014-12-31 12:34 - 00007598 _____ C:\Users\Connor\AppData\Local\Resmon.ResmonCfg
- 2015-08-21 21:12 - 2015-04-22 17:07 - 00000000 ____D C:\Users\Connor\AppData\Roaming\vlc
- 2015-08-21 18:36 - 2015-07-30 15:30 - 00000000 ____D C:\ProgramData\AMD
- 2015-08-21 18:36 - 2015-07-30 15:29 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
- 2015-08-21 18:30 - 2015-07-16 02:12 - 00162240 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 08979760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 08865496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 08009344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 07482560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 00143048 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 00131592 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
- 2015-08-21 18:30 - 2015-07-16 02:11 - 00113880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
- 2015-08-21 18:30 - 2015-07-16 01:28 - 30760944 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
- 2015-08-21 18:30 - 2015-07-16 01:12 - 00874480 _____ (AMD) C:\WINDOWS\system32\coinst_15.20.dll
- 2015-08-21 18:29 - 2015-07-16 02:12 - 00138384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
- 2015-08-21 18:29 - 2015-07-16 02:11 - 12062040 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
- 2015-08-21 18:29 - 2015-07-16 02:11 - 10191264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
- 2015-08-21 18:29 - 2015-07-16 02:11 - 01468224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
- 2015-08-21 18:29 - 2015-07-16 02:11 - 01213192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
- 2015-08-21 18:29 - 2015-07-16 02:06 - 21632992 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
- 2015-08-21 18:29 - 2015-07-16 01:17 - 00681456 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
- 2015-08-21 18:29 - 2015-07-16 01:17 - 00452576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
- 2015-08-21 18:29 - 2015-07-16 01:17 - 00256992 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
- 2015-08-21 18:29 - 2015-07-16 01:13 - 01257952 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
- 2015-08-21 18:29 - 2015-07-16 01:13 - 00675296 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
- 2015-08-21 18:29 - 2015-07-16 01:13 - 00165360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
- 2015-08-21 18:29 - 2015-07-16 01:13 - 00085472 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
- 2015-08-21 18:28 - 2015-04-23 20:52 - 00001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
- 2015-08-21 18:28 - 2015-04-23 20:52 - 00001028 _____ C:\Users\Public\Desktop\TeamViewer 10.lnk
- 2015-08-21 15:24 - 2015-07-10 12:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
- 2015-08-21 15:24 - 2015-07-10 12:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
- 2015-08-21 15:24 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
- 2015-08-21 15:24 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
- 2015-08-21 15:24 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\en-GB
- 2015-08-21 15:24 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\Provisioning
- 2015-08-19 21:22 - 2015-06-18 18:27 - 00001118 _____ C:\Users\Connor\Desktop\Arcadia Mir.lnk
- 2015-08-19 21:22 - 2015-06-18 18:27 - 00000000 ____D C:\Program Files (x86)\Arcadia Mir
- 2015-08-19 20:05 - 2015-06-18 18:27 - 00001148 _____ C:\Users\Connor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Arcadia Mir.lnk
- 2015-08-19 19:38 - 2015-07-30 16:12 - 00002341 _____ C:\Users\Connor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2015-08-19 11:53 - 2015-05-12 14:36 - 00297904 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsha.sys
- 2015-08-19 11:52 - 2015-06-26 09:49 - 00313264 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsdrivera.sys
- 2015-08-13 16:36 - 2015-07-13 09:34 - 00202952 _____ (Razer Inc) C:\WINDOWS\system32\Drivers\rzudd.sys
- 2015-08-13 16:36 - 2015-07-13 09:34 - 00050392 _____ (Razer Inc) C:\WINDOWS\system32\Drivers\rzendpt.sys
- 2015-08-12 21:11 - 2014-12-30 00:25 - 00000000 ____D C:\WINDOWS\system32\MRT
- 2015-08-12 21:02 - 2014-12-30 00:25 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2015-08-12 21:01 - 2014-12-30 13:22 - 00000000 ____D C:\ProgramData\Microsoft Help
- 2015-08-12 20:56 - 2013-08-22 14:25 - 00000167 _____ C:\WINDOWS\win.ini
- 2015-08-09 12:05 - 2015-06-13 20:30 - 37382612 _____ C:\Users\Connor\Desktop\world.zip
- 2015-08-09 11:23 - 2014-12-30 19:01 - 00000000 ____D C:\ProgramData\Skype
- 2015-08-08 16:38 - 2015-07-10 12:06 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
- 2015-08-08 16:38 - 2015-07-10 12:06 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
- ==================== Files in the root of some directories =======
- 2015-02-09 17:21 - 2015-02-09 17:21 - 0000143 _____ () C:\Users\Connor\AppData\Roaming\default.rss
- 2015-01-04 12:05 - 2015-01-05 18:05 - 0000065 _____ () C:\Users\Connor\AppData\Roaming\WB.CFG
- 2014-12-31 12:34 - 2015-08-24 17:26 - 0007598 _____ () C:\Users\Connor\AppData\Local\Resmon.ResmonCfg
- Some files in TEMP:
- ====================
- C:\Users\Connor\AppData\Local\Temp\sfamcc00001.dll
- C:\Users\Connor\AppData\Local\Temp\sfamcc00002.dll
- C:\Users\Connor\AppData\Local\Temp\sfamcc00003.dll
- C:\Users\Connor\AppData\Local\Temp\sfareca00001.dll
- C:\Users\Connor\AppData\Local\Temp\sfareca00002.dll
- ==================== Bamital & volsnap =================
- (There is no automatic fix for files that do not pass verification.)
- C:\WINDOWS\system32\winlogon.exe => File is digitally signed
- C:\WINDOWS\system32\wininit.exe => File is digitally signed
- C:\WINDOWS\explorer.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
- C:\WINDOWS\system32\svchost.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
- C:\WINDOWS\system32\services.exe => File is digitally signed
- C:\WINDOWS\system32\User32.dll => File is digitally signed
- C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
- C:\WINDOWS\system32\userinit.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
- C:\WINDOWS\system32\rpcss.dll => File is digitally signed
- C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
- C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
- C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2015-09-04 23:02
- ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement