Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-09-2017 01
- Ran by Kenny (administrator) on METAL-GEAR (27-09-2017 18:59:48)
- Running from C:\Users\Kenny\Downloads
- Loaded Profiles: Kenny (Available Profiles: Kenny)
- Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
- Internet Explorer Version 11 (Default browser: Chrome)
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (AMD) C:\Windows\System32\atiesrxx.exe
- (TOSHIBA CORPORATION) C:\Windows\System32\wmabnocsvc.exe
- (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
- (AMD) C:\Windows\System32\atieclxx.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
- (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
- (Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
- (DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
- (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
- (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
- (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
- () C:\Windows\System32\PnkBstrA.exe
- (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
- (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
- (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
- (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
- (Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
- (Discord Inc.) C:\Users\Kenny\AppData\Local\Discord\app-0.0.298\Discord.exe
- (Comfort Software Group) C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe
- (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
- (Spotify Ltd) C:\Users\Kenny\AppData\Roaming\Spotify\SpotifyWebHelper.exe
- () C:\Program Files (x86)\catchword\cottons.exe
- () C:\Program Files (x86)\ds4windows\DS4Windows.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
- (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
- (Discord Inc.) C:\Users\Kenny\AppData\Local\Discord\app-0.0.298\Discord.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
- (Discord Inc.) C:\Users\Kenny\AppData\Local\Discord\app-0.0.298\Discord.exe
- () C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
- (Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
- (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe
- (Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Microsoft Corporation) C:\Windows\System32\wbengine.exe
- (Microsoft Corporation) C:\Windows\System32\vds.exe
- (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online_cnet_2 (1).exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- (AVAST Software) C:\Users\Kenny\AppData\Local\Temp\_av_iup.tm~a04220\Instup.exe
- () C:\Users\Kenny\AppData\Local\atkrzhg\atkrzhg.exe
- () C:\Users\Kenny\AppData\Local\atkrzhg\svrzotx.exe
- () C:\Users\Kenny\AppData\Local\atkrzhg\svrzotx.exe
- () C:\Users\Kenny\AppData\Local\atkrzhg\svrzotx.exe
- () C:\Users\Kenny\AppData\Local\atkrzhg\svrzotx.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- () C:\Users\Kenny\AppData\Local\atkrzhg\svrzotx.exe
- ==================== Registry (Whitelisted) ===========================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8491888 2015-06-15] (Realtek Semiconductor)
- HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
- HKLM\...\Run: [MouseDriver] => C:\Windows\SYSTEM32\TiltWheelMouse.exe [241152 2012-12-19] (Pixart Imaging Inc)
- HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880 2015-04-28] (Realtek Semiconductor)
- HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-06-15] (Intel Corporation)
- HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5885352 2017-06-29] (LogMeIn Inc.)
- HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-09-20] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [booster] => "C:\Users\Kenny\AppData\Local\PCBooster\booster.exe" -o pool.minemonero.pro:5555 --user=49YfoE2xWHG1vywX2xTV8XZzBzB1E2QHEF9GtzPKSPRdK5TEkxXGRxVdAq8LwbA2Pz7jNQ9gYBxeFPHcqiiqaGJM2QyW64C --pass=WORKER64- (the data entry has 45 more characters).
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3074336 2017-09-27] (Valve Corporation)
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [Discord] => C:\Users\Kenny\AppData\Local\Discord\app-0.0.298\Discord.exe [57477112 2017-08-08] (Discord Inc.)
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [FreeAC] => C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe [3015072 2016-01-19] (Comfort Software Group)
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4701888 2017-02-06] (Disc Soft Ltd)
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [Spotify] => C:\Users\Kenny\AppData\Roaming\Spotify\Spotify.exe [20449904 2017-09-02] (Spotify Ltd)
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [Spotify Web Helper] => C:\Users\Kenny\AppData\Roaming\Spotify\SpotifyWebHelper.exe [777840 2017-09-02] (Spotify Ltd)
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [mvgate] => rundll32.exe "C:\Users\Kenny\AppData\Local\mvgate.dll",mvgate <==== ATTENTION
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [cottons] => C:\Program Files (x86)\catchword\cottons.exe [69004 2017-09-26] ()
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\Run: [mutable] => "C:\Program Files (x86)\Hypnotize\preens.exe"
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\MountPoints2: {2fcbc72a-710f-11e5-9262-d8cb8a9ba377} - G:\setup.exe
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\MountPoints2: {843325c8-c268-11e5-af62-806e6f6e6963} - D:\.\Bin\Instv2.exe
- HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\...\MountPoints2: {9710c048-6a33-11e5-9cbf-d8cb8a9ba377} - F:\setup.exe
- Startup: C:\Users\Kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DS4Windows.lnk [2015-10-12]
- ShortcutTarget: DS4Windows.lnk -> C:\Program Files (x86)\ds4windows\DS4Windows.exe ()
- Startup: C:\Users\Kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\middlemen.lnk [2017-09-27]
- ShortcutTarget: middlemen.lnk -> C:\Program Files (x86)\Hypnotize\preens.exe (No File)
- GroupPolicy: Restriction - Chrome <==== ATTENTION
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Tcpip\Parameters: [NameServer] 8.8.8.8
- Tcpip\..\Interfaces\{533953CD-CD97-49AB-8682-AD1E286826E2}: [NameServer] 8.8.8.8
- Tcpip\..\Interfaces\{533953CD-CD97-49AB-8682-AD1E286826E2}: [DhcpNameServer] 8.8.8.8
- Tcpip\..\Interfaces\{7724F0BF-761C-4D6C-9248-106E91BACEBB}: [NameServer] 8.8.8.8
- Tcpip\..\Interfaces\{7724F0BF-761C-4D6C-9248-106E91BACEBB}: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Tcpip\..\Interfaces\{C719918B-72D2-4D48-8C36-B661FACB8A45}: [NameServer] 8.8.8.8
- Internet Explorer:
- ==================
- HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
- SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
- SearchScopes: HKLM-x32 -> DefaultScope value is missing
- BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
- BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
- StartMenuInternet: IEXPLORE.EXE - iexplore.exe
- FireFox:
- ========
- FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-09-20] (Adobe Systems)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll [2016-09-26] ()
- FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
- FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)
- FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-09-20] (Adobe Systems)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR HomePage: Default -> hxxp://goog/
- CHR StartupUrls: Default -> "hxxp://entec.mdc.edu/"
- CHR Profile: C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default [2017-09-27]
- CHR Extension: (Google Slides) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-03]
- CHR Extension: (Google Docs) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-03]
- CHR Extension: (Google Drive) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
- CHR Extension: (YouTube) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-03]
- CHR Extension: (uBlock Origin) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2017-09-08]
- CHR Extension: (Back to Backspace) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\cldokedgmomhbifmiiogjjkgffhcbaec [2016-09-02]
- CHR Extension: (Google Search) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
- CHR Extension: (Google Sheets) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-03]
- CHR Extension: (Google Docs Offline) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
- CHR Extension: (Essentials for KissAnime) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\jaicfjhjlblbkhejmkfimkafjchdnafm [2017-09-08]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
- CHR Extension: (Gmail) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-03]
- CHR Extension: (Chrome Media Router) - C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-27]
- CHR Profile: C:\Users\Kenny\AppData\Local\Google\Chrome\User Data\System Profile [2017-09-27]
- CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
- CHR HKU\S-1-5-21-2277922815-1140674523-2033412317-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
- ==================== Services (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760 2017-09-20] (Adobe Systems Incorporated)
- R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated)
- R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2017-07-04] (Advanced Micro Devices) [File not signed]
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-07-19] ()
- R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168 2017-02-06] (Disc Soft Ltd)
- R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240576 2013-10-06] (DTS, Inc)
- R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3418024 2017-06-29] (LogMeIn Inc.)
- R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [350312 2015-07-10] (Intel Corporation)
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008 2015-06-02] (Intel Corporation)
- R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc.)
- R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
- S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2119688 2016-12-22] (Electronic Arts)
- S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2180624 2016-12-22] (Electronic Arts)
- S3 PAExec; C:\Windows\PAExec.exe [189112 2016-01-20] (Power Admin LLC)
- R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-10-06] ()
- R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-10-06] ()
- S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
- S2 PCOptimize; "C:\Users\Kenny\AppData\Local\Temp\PCOptimize\PCOptimize.exe" [X] <==== ATTENTION
- ===================== Drivers (Whitelisted) ======================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [305544 2017-07-04] (Advanced Micro Devices)
- R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-08] ()
- S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-03-31] (Broadcom Corporation.)
- R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-04-17] (Disc Soft Ltd)
- R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-04-17] (Disc Soft Ltd)
- R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [501216 2015-06-17] (Intel Corporation)
- R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [31144 2015-06-21] (Intel Corporation)
- S3 libusbK; C:\Windows\System32\DRIVERS\libusbK.sys [47200 2015-12-22] (hxxp://libusb-win32.sourceforge.net)
- R4 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [253888 2017-09-27] (Malwarebytes)
- R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [172832 2015-05-09] (Intel Corporation)
- R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
- R3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [6144 2012-12-19] ()
- S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [34016 2014-05-28] (Microsoft Corporation)
- S3 btwampfl; system32\DRIVERS\btwampfl.sys [X]
- S3 btwaudio; system32\drivers\btwaudio.sys [X]
- S3 btwavdt; system32\DRIVERS\btwavdt.sys [X]
- S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [X]
- S3 btwrchid; system32\DRIVERS\btwrchid.sys [X]
- S3 MSICDSetup; \??\D:\CDriver64.sys [X]
- S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2017-09-27 18:59 - 2017-09-27 18:59 - 002399744 _____ (Farbar) C:\Users\Kenny\Downloads\FRST64.exe
- 2017-09-27 18:59 - 2017-09-27 18:59 - 000020618 _____ C:\Users\Kenny\Downloads\FRST.txt
- 2017-09-27 18:59 - 2017-09-27 18:59 - 000000000 ____D C:\FRST
- 2017-09-27 18:58 - 2017-09-27 18:59 - 001795584 _____ (Farbar) C:\Users\Kenny\Downloads\FRST.exe
- 2017-09-27 18:47 - 2017-09-27 18:47 - 000003802 _____ C:\Users\Kenny\Desktop\Rkill.txt
- 2017-09-27 18:45 - 2017-09-27 18:45 - 000116560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\snilpsvy.sys
- 2017-09-27 18:30 - 2017-09-27 18:31 - 035910920 _____ (Adlice Software ) C:\Users\Kenny\Downloads\RogueKiller_setup_ref3.exe
- 2017-09-27 18:20 - 2017-09-27 18:20 - 009366048 _____ ( ) C:\Users\Kenny\Downloads\DLLEscort_Setup.exe
- 2017-09-27 18:10 - 2017-09-27 18:11 - 000000000 ____D C:\Users\Kenny\Desktop\Because of Virus
- 2017-09-27 18:10 - 2017-09-27 18:11 - 000000000 ____D C:\ProgramData\AVAST Software
- 2017-09-27 18:10 - 2017-09-27 18:10 - 006654960 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online_cnet_2 (1).exe
- 2017-09-27 18:10 - 2017-09-27 18:10 - 006654960 _____ (AVAST Software) C:\Users\Kenny\Downloads\Unconfirmed 373435.crdownload
- 2017-09-27 18:10 - 2017-09-27 18:10 - 006654960 _____ (AVAST Software) C:\Users\Kenny\Downloads\avast_free_antivirus_setup_online_cnet_2 (1).exe
- 2017-09-27 10:27 - 2017-09-27 10:27 - 000002271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2017-09-27 10:27 - 2017-09-27 10:27 - 000002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2017-09-27 10:26 - 2017-09-27 10:26 - 001130328 _____ (Google Inc.) C:\Users\Kenny\Downloads\ChromeSetup.exe
- 2017-09-27 09:30 - 2017-09-27 09:30 - 000000222 _____ C:\Users\Kenny\Desktop\Total War WARHAMMER II.url
- 2017-09-27 08:47 - 2017-09-27 08:47 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsignbb9d57f7ff3dc215
- 2017-09-27 08:47 - 2017-09-27 08:47 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsign24c8ccb4d171775b
- 2017-09-27 08:47 - 2017-09-27 08:47 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsign10260173646fe34b
- 2017-09-27 06:03 - 2017-09-27 06:03 - 000001537 _____ C:\Users\Kenny\Desktop\iexplore - Shortcut.lnk
- 2017-09-27 05:46 - 2017-09-27 05:46 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\Mozilla
- 2017-09-27 05:46 - 2017-09-27 05:46 - 000000000 ____D C:\Users\Kenny\AppData\Local\Mozilla
- 2017-09-27 05:33 - 2017-09-27 18:39 - 000000000 ____D C:\AdwCleaner
- 2017-09-27 05:32 - 2017-09-27 05:32 - 008182736 _____ (Malwarebytes) C:\Users\Kenny\Desktop\AdwCleaner.exe
- 2017-09-27 05:30 - 2017-09-27 18:46 - 000253888 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
- 2017-09-27 05:30 - 2017-09-27 06:06 - 000077440 _____ C:\Windows\system32\Drivers\mbae64.sys
- 2017-09-27 05:30 - 2017-09-27 05:31 - 000002024 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
- 2017-09-27 05:30 - 2017-09-27 05:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
- 2017-09-27 05:28 - 2017-09-27 05:29 - 068408664 _____ (Malwarebytes ) C:\Users\Kenny\Downloads\mb3-setup-consumer-3.2.2.2029 (2).exe
- 2017-09-27 05:24 - 2017-09-27 05:46 - 000012872 _____ (SurfRight B.V.) C:\Windows\system32\bootdelete.exe
- 2017-09-27 05:19 - 2017-09-27 05:19 - 000001108 _____ C:\Windows\system32\.crusader
- 2017-09-27 05:10 - 2017-09-27 05:11 - 055915216 _____ (Microsoft Corporation) C:\Users\Kenny\Downloads\IE11-Windows6.1-x64-en-us.exe
- 2017-09-27 04:44 - 2017-09-27 04:44 - 000245720 _____ (Mozilla) C:\Users\Kenny\Downloads\Firefox Installer.exe
- 2017-09-27 04:43 - 2017-09-27 04:44 - 068408664 _____ (Malwarebytes ) C:\Users\Kenny\Downloads\mb3-setup-consumer-3.2.2.2029 (1).exe
- 2017-09-27 03:00 - 2017-09-27 03:00 - 000001897 _____ C:\Users\Public\Desktop\HitmanPro.lnk
- 2017-09-27 03:00 - 2017-09-27 03:00 - 000000000 ____D C:\Program Files\HitmanPro
- 2017-09-27 02:59 - 2017-09-27 05:19 - 000000000 ____D C:\ProgramData\HitmanPro
- 2017-09-27 02:59 - 2017-09-27 02:59 - 011584088 _____ (SurfRight B.V.) C:\Users\Kenny\Downloads\hitmanpro_x64.exe
- 2017-09-27 02:55 - 2017-09-27 02:56 - 068408664 _____ (Malwarebytes ) C:\Users\Kenny\Downloads\mb3-setup-consumer-3.2.2.2029.exe
- 2017-09-27 02:49 - 2017-09-27 03:09 - 000000000 ____D C:\Users\Kenny\Desktop\rkill
- 2017-09-27 02:48 - 2017-09-27 02:48 - 001792640 _____ (Bleeping Computer, LLC) C:\Users\Kenny\Desktop\rkill.exe
- 2017-09-27 02:40 - 2017-09-27 02:40 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsignf63a8ce8b841f916
- 2017-09-27 02:40 - 2017-09-27 02:40 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsignebcbb1b4407ed5cd
- 2017-09-27 02:40 - 2017-09-27 02:40 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsignb2d62a5507d4974c
- 2017-09-27 01:54 - 2017-09-27 18:46 - 000000000 ___RD C:\Users\Kenny\Creative Cloud Files
- 2017-09-27 01:47 - 2017-09-27 05:30 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2017-09-27 01:47 - 2017-09-27 01:47 - 000000000 ____D C:\Program Files\Malwarebytes
- 2017-09-27 01:42 - 2017-09-27 01:42 - 050850200 _____ (Malwarebytes ) C:\Users\Kenny\Downloads\Unconfirmed 547384.crdownload
- 2017-09-27 01:32 - 2017-09-27 18:50 - 000000000 ____D C:\Users\Kenny\AppData\Local\uscmlko
- 2017-09-27 01:32 - 2017-09-27 18:50 - 000000000 ____D C:\Users\Kenny\AppData\Local\atkrzhg
- 2017-09-27 00:47 - 2017-09-27 18:55 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC
- 2017-09-27 00:42 - 2017-09-27 05:58 - 000000000 ____D C:\ProgramData\Windows
- 2017-09-27 00:42 - 2017-09-27 05:36 - 000000034 _____ C:\Users\Public\Documents\{DE764086-1C0A-4DD3-90BA-0B93BDD794BE}
- 2017-09-27 00:42 - 2017-09-27 03:29 - 000000000 __SHD C:\Users\Kenny\AppData\Roaming\FolderN
- 2017-09-27 00:42 - 2017-09-27 03:07 - 000016738 _____ C:\Windows\System32\Tasks\VideoScan 2007 patch
- 2017-09-27 00:42 - 2017-09-27 00:42 - 000002069 ___RS C:\Users\Public\Desktop\Вattlе.nеt.lnk
- 2017-09-27 00:42 - 2017-09-27 00:42 - 000001829 ___RS C:\Users\Public\Desktop\DАEMОN Toоls Lite.lnk
- 2017-09-27 00:42 - 2017-09-27 00:42 - 000001399 ___RS C:\Users\Kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Intеrnеt Еxрlorer.lnk
- 2017-09-27 00:42 - 2017-09-27 00:42 - 000000000 ____D C:\Windows\system32\tmp
- 2017-09-27 00:38 - 2017-09-27 18:45 - 002797056 _____ (TOSHIBA CORPORATION) C:\Windows\system32\wmabnocsvc.exe
- 2017-09-27 00:38 - 2017-09-27 00:38 - 000003568 _____ C:\Windows\System32\Tasks\{84EBD092-B221-4EF5-A536-154B1AC292E5}
- 2017-09-27 00:38 - 2017-09-27 00:38 - 000000000 ____D C:\Windows\SysWOW64\mbbkhzp
- 2017-09-27 00:38 - 2017-09-27 00:38 - 000000000 ____D C:\Windows\system32\mbbkhzp
- 2017-09-27 00:38 - 2017-09-27 00:38 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\et
- 2017-09-27 00:35 - 2017-09-27 03:57 - 000000000 ___HD C:\Program Files (x86)\Downers
- 2017-09-27 00:35 - 2017-09-27 00:35 - 000000020 _____ C:\Windows\b41736423
- 2017-09-27 00:35 - 2017-09-27 00:35 - 000000000 ___HD C:\Program Files (x86)\catchword
- 2017-09-27 00:35 - 2017-09-27 00:35 - 000000000 ____D C:\Program Files (x86)\iberia
- 2017-09-27 00:35 - 2017-09-27 00:35 - 000000000 _____ C:\Windows\SysWOW64\__02072C4B__C0000005.dmp
- 2017-09-27 00:33 - 2017-09-27 00:33 - 000021532 _____ C:\Windows\System32\Tasks\YAtJuVRw7spi
- 2017-09-27 00:32 - 2017-09-27 00:32 - 000140800 _____ C:\Users\Kenny\AppData\Local\installer.dat
- 2017-09-27 00:30 - 2017-09-27 00:32 - 048706801 _____ C:\Users\Kenny\Downloads\Sonic Adventure DX - Director's Cut (Europe) (En,Ja,Fr,De,Es).7z.crdownload
- 2017-09-27 00:27 - 2017-09-27 00:27 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsignf503fa948ffc7337
- 2017-09-27 00:27 - 2017-09-27 00:27 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsign9513a3c9d56285d7
- 2017-09-27 00:27 - 2017-09-27 00:27 - 000000000 ____D C:\Users\Kenny\AppData\Local\Tempzxpsign0bf163ea31e472af
- 2017-09-27 00:16 - 2017-09-27 00:16 - 000003506 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Metal-Gear-Kenny
- 2017-09-27 00:16 - 2017-09-27 00:16 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2017.lnk
- 2017-09-27 00:16 - 2017-09-27 00:16 - 000000000 ____D C:\Users\Kenny\Documents\Adobe
- 2017-09-27 00:16 - 2017-09-27 00:16 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
- 2017-09-27 00:10 - 2017-09-27 00:15 - 000000000 ____D C:\Program Files\Common Files\Adobe
- 2017-09-27 00:09 - 2017-09-27 00:09 - 000000000 ____D C:\Program Files\Adobe
- 2017-09-27 00:08 - 2017-09-27 00:08 - 000001225 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
- 2017-09-27 00:08 - 2017-09-27 00:08 - 000001213 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
- 2017-09-27 00:05 - 2017-09-27 00:05 - 001907752 _____ (Adobe Systems Incorporated) C:\Users\Kenny\Downloads\Photoshop_Set-Up.exe
- 2017-09-27 00:03 - 2017-09-27 00:03 - 000147520 _____ C:\Users\Kenny\Desktop\8P-GFZE-fzc.dat.gci
- 2017-09-26 21:42 - 2017-09-26 21:42 - 000032832 _____ C:\Users\Kenny\Downloads\01-GKYE-KA030621_0100_T030529_2154.gci
- 2017-09-26 21:40 - 2017-09-26 21:40 - 008388608 _____ C:\Users\Kenny\Downloads\ninmem.raw
- 2017-09-26 21:38 - 2017-09-26 21:38 - 000032832 _____ C:\Users\Kenny\Desktop\01-GKYE-KA030621_0100_T030529_2154.gci
- 2017-09-26 21:31 - 2017-09-26 21:31 - 000032832 _____ C:\Users\Kenny\Downloads\kirby-air-ride.24767.gcs
- 2017-09-26 21:29 - 2017-09-26 21:35 - 1367762584 _____ C:\Users\Kenny\Downloads\Kirby Air Ride (USA).7z
- 2017-09-26 21:26 - 2017-09-26 21:26 - 000008528 _____ C:\Users\Kenny\Downloads\sonic-adventure-dx-directors-cut.12062.gcs
- 2017-09-26 21:23 - 2017-09-26 21:23 - 006909356 _____ C:\Users\Kenny\Downloads\Net64 Hack Collection.zip
- 2017-09-26 21:21 - 2017-09-26 21:21 - 003772834 _____ C:\Users\Kenny\Downloads\Wario SFX.rar
- 2017-09-26 05:34 - 2017-09-26 05:34 - 000035757 _____ C:\Windows\uninstaller.dat
- 2017-09-24 17:17 - 2017-09-24 17:17 - 000000396 _____ C:\Users\Kenny\Downloads\cos.rar
- 2017-09-24 05:46 - 2017-09-24 05:46 - 000140222 _____ C:\Users\Kenny\Downloads\Paper_Mario_Color_Splash_WiiU-WiiERD.torrent
- 2017-09-24 05:46 - 2017-09-24 05:46 - 000140222 _____ C:\Users\Kenny\Downloads\Paper_Mario_Color_Splash_WiiU-WiiERD (1).torrent
- 2017-09-24 05:37 - 2017-09-24 05:37 - 011337688 _____ C:\Users\Kenny\Downloads\0005001b10056000.rar
- 2017-09-24 05:37 - 2017-09-24 05:37 - 011337688 _____ C:\Users\Kenny\Downloads\0005001b10056000 (1).rar
- 2017-09-24 05:35 - 2017-09-24 05:35 - 000000108 _____ C:\Users\Kenny\Desktop\settings.bin
- 2017-09-24 05:24 - 2017-09-24 05:24 - 007561676 _____ C:\Users\Kenny\Downloads\content.zip
- 2017-09-24 04:57 - 2017-09-24 04:57 - 007496523 _____ C:\Users\Kenny\Downloads\New Super Mario Bros U Files.rar
- 2017-09-24 04:53 - 2017-09-24 04:59 - 000000000 ____D C:\Users\Kenny\Desktop\shaderCache
- 2017-09-24 04:41 - 2017-09-24 04:41 - 000024461 _____ C:\Users\Kenny\Downloads\New Super Mario Bros U [USA] Loadiine READY2PLAY (1).torrent
- 2017-09-24 04:36 - 2017-09-24 04:36 - 000024461 _____ C:\Users\Kenny\Downloads\New Super Mario Bros U [USA] Loadiine READY2PLAY.torrent
- 2017-09-23 15:10 - 2017-09-24 05:18 - 000000000 ____D C:\Users\Kenny\Desktop\controllerProfiles
- 2017-09-23 15:10 - 2017-09-23 15:10 - 000000272 _____ C:\Users\Kenny\Desktop\keys.txt
- 2017-09-23 15:10 - 2017-09-23 15:10 - 000000000 ____D C:\Users\Kenny\Desktop\memorySearcher
- 2017-09-23 15:10 - 2017-08-22 22:13 - 007933952 _____ C:\Users\Kenny\Desktop\Cemu.exe
- 2017-09-23 15:06 - 2017-09-23 15:06 - 002999745 _____ C:\Users\Kenny\Downloads\cemu_1.9.1.zip
- 2017-09-23 15:01 - 2017-09-23 15:01 - 000000222 _____ C:\Users\Kenny\Desktop\Outlast.url
- 2017-09-20 21:44 - 2017-09-20 21:44 - 012894919 _____ C:\Users\Kenny\Downloads\SM64- Last Impact V1.1 Widescreen.rar
- 2017-09-20 21:25 - 2017-09-20 21:25 - 000000218 _____ C:\Users\Kenny\AppData\Local\recently-used.xbel
- 2017-09-20 21:24 - 2017-09-20 21:24 - 002854912 _____ C:\Users\Kenny\Downloads\xb1usb.11059.0.140526x64.msi
- 2017-09-20 21:24 - 2017-09-20 21:24 - 000000983 _____ C:\Users\Public\Desktop\Deluge.lnk
- 2017-09-20 21:24 - 2017-09-20 21:24 - 000000000 ____D C:\Program Files\Microsoft Xbox One Controller for Windows
- 2017-09-20 21:24 - 2017-09-20 21:24 - 000000000 ____D C:\Program Files (x86)\Deluge
- 2017-09-20 21:21 - 2017-09-20 21:21 - 000256148 _____ C:\Users\Kenny\Downloads\Super_Mario_64_Online.rar
- 2017-09-17 13:59 - 2017-09-17 00:06 - 008388608 _____ C:\Users\Kenny\Desktop\Wario voice.z64
- 2017-09-17 13:58 - 2017-09-17 13:58 - 006507343 _____ C:\Users\Kenny\Downloads\Wariostuff.rar
- 2017-09-17 13:56 - 2017-09-17 13:56 - 000279368 _____ C:\Users\Kenny\Downloads\SM64_Online_1.3.1_Hotfix.zip
- 2017-09-17 12:27 - 2017-09-18 04:28 - 000000000 ____D C:\Users\Kenny\Desktop\SM64 Online 1.3.1 Hotfix
- 2017-09-14 17:39 - 2017-02-20 19:25 - 000001053 _____ C:\Users\Kenny\Desktop\Project64.lnk
- 2017-09-13 19:49 - 2017-09-27 18:46 - 000000000 ____D C:\Users\Kenny\AppData\Local\LogMeIn Hamachi
- 2017-09-13 19:48 - 2017-09-13 19:48 - 000000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
- 2017-09-13 19:48 - 2017-09-13 19:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
- 2017-09-13 19:48 - 2017-09-13 19:48 - 000000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
- 2017-09-13 19:27 - 2017-08-19 11:28 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
- 2017-09-13 19:27 - 2017-08-19 11:10 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
- 2017-09-13 19:27 - 2017-08-16 11:29 - 000806912 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
- 2017-09-13 19:27 - 2017-08-16 11:10 - 000629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
- 2017-09-13 19:27 - 2017-08-16 10:57 - 003224576 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
- 2017-09-13 19:27 - 2017-08-15 21:10 - 000395976 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
- 2017-09-13 19:27 - 2017-08-15 20:25 - 000347336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
- 2017-09-13 19:27 - 2017-08-15 11:29 - 014182400 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
- 2017-09-13 19:27 - 2017-08-15 11:29 - 001867264 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
- 2017-09-13 19:27 - 2017-08-15 11:10 - 012880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
- 2017-09-13 19:27 - 2017-08-15 11:10 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
- 2017-09-13 19:27 - 2017-08-15 10:06 - 015260160 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
- 2017-09-13 19:27 - 2017-08-15 10:01 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
- 2017-09-13 19:27 - 2017-08-15 10:01 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
- 2017-09-13 19:27 - 2017-08-15 10:01 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
- 2017-09-13 19:27 - 2017-08-15 09:58 - 013673984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 003203584 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 002150912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 000303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
- 2017-09-13 19:27 - 2017-08-14 13:35 - 000128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll
- 2017-09-13 19:27 - 2017-08-14 13:34 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
- 2017-09-13 19:27 - 2017-08-13 17:37 - 002144256 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
- 2017-09-13 19:27 - 2017-08-13 17:30 - 001401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
- 2017-09-13 19:27 - 2017-08-13 14:58 - 025730560 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
- 2017-09-13 19:27 - 2017-08-13 13:24 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
- 2017-09-13 19:27 - 2017-08-13 13:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
- 2017-09-13 19:27 - 2017-08-13 13:06 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
- 2017-09-13 19:27 - 2017-08-13 13:05 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
- 2017-09-13 19:27 - 2017-08-13 13:05 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
- 2017-09-13 19:27 - 2017-08-13 13:05 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
- 2017-09-13 19:27 - 2017-08-13 13:05 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
- 2017-09-13 19:27 - 2017-08-13 13:04 - 002899968 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
- 2017-09-13 19:27 - 2017-08-13 12:56 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
- 2017-09-13 19:27 - 2017-08-13 12:55 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
- 2017-09-13 19:27 - 2017-08-13 12:54 - 020269056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
- 2017-09-13 19:27 - 2017-08-13 12:52 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
- 2017-09-13 19:27 - 2017-08-13 12:51 - 005981696 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
- 2017-09-13 19:27 - 2017-08-13 12:51 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
- 2017-09-13 19:27 - 2017-08-13 12:51 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
- 2017-09-13 19:27 - 2017-08-13 12:50 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
- 2017-09-13 19:27 - 2017-08-13 12:50 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
- 2017-09-13 19:27 - 2017-08-13 12:46 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
- 2017-09-13 19:27 - 2017-08-13 12:41 - 000968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
- 2017-09-13 19:27 - 2017-08-13 12:38 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
- 2017-09-13 19:27 - 2017-08-13 12:30 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
- 2017-09-13 19:27 - 2017-08-13 12:29 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
- 2017-09-13 19:27 - 2017-08-13 12:29 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
- 2017-09-13 19:27 - 2017-08-13 12:29 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
- 2017-09-13 19:27 - 2017-08-13 12:29 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
- 2017-09-13 19:27 - 2017-08-13 12:29 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
- 2017-09-13 19:27 - 2017-08-13 12:28 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
- 2017-09-13 19:27 - 2017-08-13 12:27 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
- 2017-09-13 19:27 - 2017-08-13 12:24 - 002291200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
- 2017-09-13 19:27 - 2017-08-13 12:24 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
- 2017-09-13 19:27 - 2017-08-13 12:23 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
- 2017-09-13 19:27 - 2017-08-13 12:22 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
- 2017-09-13 19:27 - 2017-08-13 12:21 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
- 2017-09-13 19:27 - 2017-08-13 12:20 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
- 2017-09-13 19:27 - 2017-08-13 12:19 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
- 2017-09-13 19:27 - 2017-08-13 12:18 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
- 2017-09-13 19:27 - 2017-08-13 12:17 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
- 2017-09-13 19:27 - 2017-08-13 12:17 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
- 2017-09-13 19:27 - 2017-08-13 12:17 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
- 2017-09-13 19:27 - 2017-08-13 12:07 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
- 2017-09-13 19:27 - 2017-08-13 12:04 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
- 2017-09-13 19:27 - 2017-08-13 12:04 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
- 2017-09-13 19:27 - 2017-08-13 12:02 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
- 2017-09-13 19:27 - 2017-08-13 12:01 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
- 2017-09-13 19:27 - 2017-08-13 12:01 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
- 2017-09-13 19:27 - 2017-08-13 12:01 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
- 2017-09-13 19:27 - 2017-08-13 12:00 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
- 2017-09-13 19:27 - 2017-08-13 11:57 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
- 2017-09-13 19:27 - 2017-08-13 11:53 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
- 2017-09-13 19:27 - 2017-08-13 11:48 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
- 2017-09-13 19:27 - 2017-08-13 11:46 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
- 2017-09-13 19:27 - 2017-08-13 11:44 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
- 2017-09-13 19:27 - 2017-08-13 11:43 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
- 2017-09-13 19:27 - 2017-08-13 11:43 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
- 2017-09-13 19:27 - 2017-08-13 11:40 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
- 2017-09-13 19:27 - 2017-08-13 11:27 - 001544704 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
- 2017-09-13 19:27 - 2017-08-13 11:18 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
- 2017-09-13 19:27 - 2017-08-13 11:17 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
- 2017-09-13 19:27 - 2017-08-13 11:14 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
- 2017-09-13 19:27 - 2017-08-13 11:13 - 001314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
- 2017-09-13 19:27 - 2017-08-11 02:42 - 000631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
- 2017-09-13 19:27 - 2017-08-11 02:38 - 005547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
- 2017-09-13 19:27 - 2017-08-11 02:38 - 000706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
- 2017-09-13 19:27 - 2017-08-11 02:38 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
- 2017-09-13 19:27 - 2017-08-11 02:38 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
- 2017-09-13 19:27 - 2017-08-11 02:36 - 001732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 002065408 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 001212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000757248 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
- 2017-09-13 19:27 - 2017-08-11 02:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 001460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:34 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:24 - 004001000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
- 2017-09-13 19:27 - 2017-08-11 02:24 - 003945704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
- 2017-09-13 19:27 - 2017-08-11 02:21 - 001314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
- 2017-09-13 19:27 - 2017-08-11 02:20 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
- 2017-09-13 19:27 - 2017-08-11 02:20 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
- 2017-09-13 19:27 - 2017-08-11 02:19 - 001417728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000299008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 02:12 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
- 2017-09-13 19:27 - 2017-08-11 02:09 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
- 2017-09-13 19:27 - 2017-08-11 02:07 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
- 2017-09-13 19:27 - 2017-08-11 02:07 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
- 2017-09-13 19:27 - 2017-08-11 02:07 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
- 2017-09-13 19:27 - 2017-08-11 02:06 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
- 2017-09-13 19:27 - 2017-08-11 02:03 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
- 2017-09-13 19:27 - 2017-08-11 02:03 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
- 2017-09-13 19:27 - 2017-08-11 02:02 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
- 2017-09-13 19:27 - 2017-08-11 02:01 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
- 2017-09-13 19:27 - 2017-08-11 02:00 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
- 2017-09-13 19:27 - 2017-08-11 02:00 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
- 2017-09-13 19:27 - 2017-08-11 02:00 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
- 2017-09-13 19:27 - 2017-08-11 01:59 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
- 2017-09-13 19:27 - 2017-08-11 01:59 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
- 2017-09-13 19:27 - 2017-08-11 01:59 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
- 2017-09-13 19:27 - 2017-08-11 01:59 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
- 2017-09-13 19:27 - 2017-08-11 01:59 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
- 2017-09-13 19:27 - 2017-08-11 01:58 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
- 2017-09-13 19:27 - 2017-08-11 01:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
- 2017-09-13 19:27 - 2017-08-11 01:58 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
- 2017-09-13 19:27 - 2017-08-11 01:56 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
- 2017-09-13 19:27 - 2017-08-11 01:56 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
- 2017-09-13 19:27 - 2017-08-11 01:56 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
- 2017-09-13 19:27 - 2017-08-11 01:56 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
- 2017-09-13 19:27 - 2017-08-11 01:55 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
- 2017-09-13 19:27 - 2017-08-11 01:55 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 01:55 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 01:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
- 2017-09-13 19:27 - 2017-08-11 01:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
- 2017-09-13 19:27 - 2017-07-07 11:29 - 001143296 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
- 2017-09-13 19:27 - 2017-07-07 11:10 - 000973312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
- 2017-09-13 19:01 - 2017-09-13 19:01 - 000000439 _____ C:\Windows\system32\Drivers\etc\hosts.ics
- 2017-09-13 17:23 - 2017-09-13 17:23 - 000000000 ____D C:\Users\Kenny\Desktop\Docs
- 2017-09-13 16:11 - 2017-09-13 16:11 - 000621969 _____ C:\Users\Kenny\Downloads\Super_Mario_64_Online_1.2.rar
- 2017-09-13 15:38 - 2017-09-13 15:38 - 000001244 _____ C:\Users\Kenny\Desktop\SM64O.lnk
- 2017-09-08 14:44 - 2017-09-08 14:44 - 000000222 _____ C:\Users\Kenny\Desktop\DARK SOULS Prepare To Die Edition.url
- 2017-08-29 10:06 - 2017-09-23 15:10 - 000000000 ____D C:\Program Files\cemu_1.9.1
- 2017-08-29 03:08 - 2017-08-29 03:08 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\Shooter
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2017-09-27 18:59 - 2009-07-13 22:34 - 028573696 _____ C:\Windows\system32\config\HARDWARE
- 2017-09-27 18:52 - 2009-07-14 01:13 - 000781790 _____ C:\Windows\system32\PerfStringBackup.INI
- 2017-09-27 18:52 - 2009-07-14 00:45 - 000022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2017-09-27 18:52 - 2009-07-14 00:45 - 000022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2017-09-27 18:52 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\inf
- 2017-09-27 18:46 - 2016-02-03 00:19 - 000000000 ____D C:\Users\Kenny\AppData\Local\Adobe
- 2017-09-27 18:46 - 2016-01-24 16:43 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
- 2017-09-27 18:46 - 2015-10-03 04:10 - 000000000 ____D C:\Program Files (x86)\ds4windows
- 2017-09-27 18:46 - 2015-10-03 02:47 - 000000000 ____D C:\Program Files (x86)\Steam
- 2017-09-27 18:45 - 2015-10-03 03:37 - 000065536 _____ C:\Windows\system32\spu_storage.bin
- 2017-09-27 18:45 - 2009-07-14 01:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2017-09-27 10:27 - 2015-10-03 01:07 - 000000000 ____D C:\Program Files (x86)\Google
- 2017-09-27 10:26 - 2015-10-03 02:48 - 000003330 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
- 2017-09-27 10:26 - 2015-10-03 02:48 - 000003202 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
- 2017-09-27 05:35 - 2015-10-03 12:30 - 000001375 ____H C:\Users\Kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
- 2017-09-27 05:26 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\registration
- 2017-09-27 04:40 - 2016-06-15 10:44 - 000000000 ____D C:\Program Files\OBS
- 2017-09-27 04:40 - 2016-06-15 10:44 - 000000000 ____D C:\Program Files (x86)\OBS
- 2017-09-27 04:30 - 2016-04-15 12:41 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\discord
- 2017-09-27 04:25 - 2015-11-25 17:21 - 000923950 _____ C:\Windows\ntbtlog.txt
- 2017-09-27 01:54 - 2015-10-03 12:30 - 000000000 ____D C:\Users\Kenny
- 2017-09-27 00:49 - 2015-10-06 14:51 - 000000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
- 2017-09-27 00:42 - 2017-06-19 20:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XCOM - Enemy Within
- 2017-09-27 00:42 - 2017-04-15 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Citizen Launcher
- 2017-09-27 00:42 - 2016-02-12 12:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
- 2017-09-27 00:42 - 2016-01-24 16:40 - 000000000 ____D C:\ProgramData\Intel
- 2017-09-27 00:42 - 2016-01-13 21:45 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks
- 2017-09-27 00:42 - 2015-11-20 17:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BioShock Infinite
- 2017-09-27 00:42 - 2015-11-20 12:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft DirectX SDK (June 2010)
- 2017-09-27 00:27 - 2015-10-04 11:13 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\Adobe
- 2017-09-27 00:16 - 2016-02-03 00:20 - 000000000 ____D C:\ProgramData\Adobe
- 2017-09-27 00:09 - 2016-02-03 00:20 - 000000000 ____D C:\Program Files (x86)\Adobe
- 2017-09-24 04:36 - 2015-10-03 21:07 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\deluge
- 2017-09-23 15:29 - 2015-10-03 03:31 - 000000000 ____D C:\Users\Kenny\Documents\My Games
- 2017-09-20 21:24 - 2015-10-03 21:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge
- 2017-09-14 15:40 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\rescache
- 2017-09-13 19:53 - 2009-07-14 00:45 - 000328232 _____ C:\Windows\system32\FNTCACHE.DAT
- 2017-09-13 19:50 - 2015-10-03 12:38 - 000773912 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
- 2017-09-13 18:56 - 2016-03-03 17:34 - 000000000 ____D C:\Users\Kenny\AppData\Local\Spotify
- 2017-09-13 18:53 - 2016-03-03 17:34 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\Spotify
- 2017-09-13 18:53 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\system32\NDF
- 2017-09-13 18:53 - 2009-07-13 23:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
- 2017-09-13 18:46 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\tracing
- 2017-09-13 03:39 - 2015-10-08 23:09 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\vlc
- 2017-08-31 02:30 - 2016-02-03 00:20 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
- 2017-08-29 22:53 - 2017-06-25 13:30 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\FiraxisLive
- 2017-08-29 22:13 - 2017-06-25 13:29 - 000000000 ____D C:\Users\Kenny\AppData\Roaming\ModLauncherWPF
- 2017-08-28 18:06 - 2016-02-12 12:18 - 000000000 ____D C:\Program Files (x86)\Battle.net
- 2017-08-28 18:05 - 2016-02-12 12:19 - 000000000 ____D C:\Users\Kenny\AppData\Local\Battle.net
- 2017-08-28 17:59 - 2015-10-03 04:04 - 000000000 ____D C:\Users\Kenny\AppData\Local\Ubisoft Game Launcher
- ==================== Files in the root of some directories =======
- 2017-09-27 00:32 - 2017-09-27 00:32 - 000140800 _____ () C:\Users\Kenny\AppData\Local\installer.dat
- 2017-09-20 21:25 - 2017-09-20 21:25 - 000000218 _____ () C:\Users\Kenny\AppData\Local\recently-used.xbel
- 2015-10-03 00:39 - 2015-10-03 00:39 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
- 2016-11-05 00:22 - 2016-11-05 00:22 - 000000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
- 2017-02-27 00:57 - 2017-07-24 16:06 - 000000060 _____ () C:\ProgramData\SoftwareUpdateTemp.xml
- Files to move or delete:
- ====================
- C:\Users\Kenny\WowMatrix.exe
- Some files in TEMP:
- ====================
- 2017-09-27 00:28 - 2017-09-27 00:28 - 000045056 _____ (Sc00bz inc.) C:\Users\Kenny\AppData\Local\Temp\capi.exe
- 2017-09-27 00:41 - 2017-09-27 00:41 - 000016384 _____ (noOrg) C:\Users\Kenny\AppData\Local\Temp\cuinsta.exe
- 2015-10-03 12:36 - 2010-12-30 23:07 - 000086880 ____R (Microsoft Corporation) C:\Users\Kenny\AppData\Local\Temp\devcon64.exe
- 2015-06-17 04:34 - 2015-06-17 04:34 - 003583952 ____R (MSI) C:\Users\Kenny\AppData\Local\Temp\DVDChangeDisc.exe
- 2017-09-27 00:44 - 2017-09-27 00:44 - 000000000 _____ () C:\Users\Kenny\AppData\Local\Temp\hpo26.exe
- 2017-09-27 00:42 - 2017-09-27 00:42 - 010466222 _____ ( ) C:\Users\Kenny\AppData\Local\Temp\jg3.6.0.exe
- 2016-06-25 14:32 - 2016-06-25 14:32 - 006359496 _____ (Black Tree Gaming ) C:\Users\Kenny\AppData\Local\Temp\Nexus Mod Manager-0.61.23.exe
- 2017-06-03 15:10 - 2017-06-03 15:10 - 006441096 _____ (Black Tree Gaming ) C:\Users\Kenny\AppData\Local\Temp\Nexus Mod Manager-0.63.14.exe
- 2016-04-25 17:03 - 2016-04-25 17:03 - 059162424 _____ () C:\Users\Kenny\AppData\Local\Temp\playstv_patch.exe
- 2016-01-28 03:52 - 2016-01-28 03:52 - 012910000 _____ (AMD Inc.) C:\Users\Kenny\AppData\Local\Temp\radeon-crimson-15.12-minimalsetup.exe
- 2015-10-03 03:02 - 2016-09-27 14:28 - 059392056 _____ () C:\Users\Kenny\AppData\Local\Temp\raptrpatch.exe
- 2015-10-03 03:02 - 2016-09-27 14:28 - 000221632 _____ () C:\Users\Kenny\AppData\Local\Temp\raptr_stub.exe
- 2016-05-10 14:27 - 2016-05-10 14:27 - 045196928 _____ (Skype Technologies S.A.) C:\Users\Kenny\AppData\Local\Temp\SkypeSetup.exe
- 2011-11-03 10:13 - 2011-11-03 10:13 - 001786688 _____ () C:\Users\Kenny\AppData\Local\Temp\sonarinst.exe
- 2017-09-27 00:42 - 2009-06-10 17:14 - 000087888 _____ (Microsoft Corporation) C:\Users\Kenny\AppData\Local\Temp\svhost.exe
- 2015-12-02 10:19 - 2015-12-02 10:20 - 263289648 _____ (AMD Inc.) C:\Users\Kenny\AppData\Local\Temp\tmp7B66.exe
- ==================== Bamital & volsnap ======================
- (There is no automatic fix for files that do not pass verification.)
- C:\Windows\system32\winlogon.exe => File is digitally signed
- C:\Windows\system32\wininit.exe => File is digitally signed
- C:\Windows\SysWOW64\wininit.exe => File is digitally signed
- C:\Windows\explorer.exe => File is digitally signed
- C:\Windows\SysWOW64\explorer.exe => File is digitally signed
- C:\Windows\system32\svchost.exe => File is digitally signed
- C:\Windows\SysWOW64\svchost.exe => File is digitally signed
- C:\Windows\system32\services.exe => File is digitally signed
- C:\Windows\system32\User32.dll => File is digitally signed
- C:\Windows\SysWOW64\User32.dll => File is digitally signed
- C:\Windows\system32\userinit.exe => File is digitally signed
- C:\Windows\SysWOW64\userinit.exe => File is digitally signed
- C:\Windows\system32\rpcss.dll => File is digitally signed
- C:\Windows\system32\dnsapi.dll => File is digitally signed
- C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
- C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2017-09-20 03:35
- ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement