Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.02.2018
- Ran by zeph (administrator) on ADELE (17-02-2018 18:58:57)
- Running from C:\Users\zeph\Desktop
- Loaded Profiles: zeph & postgres (Available Profiles: melissa.parton & zeph & Bubbles & Zachariah & postgres & Guest)
- Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
- Internet Explorer Version 11 (Default browser: FF)
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (AMD) C:\Windows\System32\atiesrxx.exe
- (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (AMD) C:\Windows\System32\atieclxx.exe
- (Dell, Inc.) C:\Windows\Temp\3582-490\NOBUAG~1.EXE
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
- () C:\Windows\SysWOW64\PnkBstrA.exe
- () C:\Windows\SysWOW64\PnkBstrB.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe
- (SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
- (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
- (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
- (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
- () C:\Program Files (x86)\Gaming Mouse\Monitor.exe
- (Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- ==================== Registry (Whitelisted) ===========================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10920552 2010-06-22] (Realtek Semiconductor)
- HKLM\...\Run: [RunDLLEntry_THXCfg] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64
- HKLM\...\Run: [RunDLLEntry_EptMon] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\EptMon64.dll,RunDLLEntry EptMon64
- HKLM\...\Run: [DellStage] => C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe [2137960 2018-02-17] ()
- HKLM\...\Run: [corruptly] => "C:\Program Files (x86)\looming\eydie.exe"
- HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
- HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
- HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
- HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2220688 2018-02-17] (Wondershare)
- HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
- HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [179000 2018-02-17] (Hewlett-Packard)
- HKLM-x32\...\Run: [] => [X]
- HKLM-x32\...\Run: [Gaming Mouse Driver] => C:\Program Files (x86)\Gaming Mouse\Monitor.exe [213504 2018-02-17] ()
- HKLM\...\Policies\Explorer: [HideSCAHealth] 1
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3277600 2018-02-17] ()
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Run: [Discord] => C:\Users\zeph\AppData\Local\Discord\app-0.0.300\Discord.exe [57821176 2018-01-08] (Discord Inc.)
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Policies\system: [LogonHoursAction] 2
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {0cc4d481-c726-11e7-8813-180373c4c04d} - E:\LaunchU3.exe -a
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {0da92fca-9c1d-11e1-8745-180373c4c04d} - "J:\WD SmartWare.exe" autoplay=true
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {43d3d11a-30b0-11e5-b061-180373c4c04d} - M:\VZW_Software_upgrade_assistant.exe
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {674aebc8-e66a-11e0-b21a-806e6f6e6963} - D:\Autorun.exe
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb9985-9210-11e2-836d-180373c4c04d} - E:\autorun.exe
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb9989-9210-11e2-836d-180373c4c04d} - M:\RunGame.exe
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb998e-9210-11e2-836d-180373c4c04d} - N:\RunGame.exe
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb9992-9210-11e2-836d-180373c4c04d} - O:\RunGame.exe
- Startup: C:\Users\Bubbles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-10-18]
- ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\zeph\AppData\Local\Facebook\Games\FacebookGameroom.exe (No File)
- Startup: C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\agatha.lnk [2017-06-15]
- BootExecute: autocheck autochk /k:C *
- GroupPolicyUsers\S-1-5-21-3803275921-3941053817-2581775902-1006\User: Restriction <==== ATTENTION
- GroupPolicyUsers\S-1-5-21-3803275921-3941053817-2581775902-1005\User: Restriction <==== ATTENTION
- CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 216.110.192.1 216.110.192.9
- Tcpip\..\Interfaces\{4766E8F9-DFA1-4E5E-9802-2CD3A5A91D32}: [DhcpNameServer] 216.110.192.1 216.110.192.9
- Internet Explorer:
- ==================
- HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
- HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
- HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/USCON/1
- SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
- SearchScopes: HKLM -> {31090377-0740-419E-BEFC-A56E50500D5B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
- SearchScopes: HKLM-x32 -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL =
- SearchScopes: HKU\.DEFAULT -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL =
- SearchScopes: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1
- SearchScopes: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> {31090377-0740-419E-BEFC-A56E50500D5B} URL =
- BHO: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111213161601.dll [2011-12-13] (McAfee, Inc.)
- BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
- BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-04-02] (Oracle Corporation)
- BHO-x32: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111213161601.dll => No File
- BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
- BHO-x32: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
- BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-04-02] (Oracle Corporation)
- Toolbar: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} - No File
- Toolbar: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
- Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
- StartMenuInternet: IEXPLORE.EXE - iexplore.exe
- FireFox:
- ========
- FF ProfilePath: C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default [2018-02-17]
- FF Homepage: Mozilla\Firefox\Profiles\2pyzg0v5.default -> about:home
- FF Extension: (RooyalCCouuponn) - C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default\Extensions\9tgz422m@snssmaiyu.net [2015-07-08] [Legacy] [not signed]
- FF Extension: (SofattCoup) - C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default\Extensions\e4tzc@eaiyyaiiw.com [2015-07-08] [Legacy] [not signed]
- FF Extension: (TicTaCouupon) - C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default\Extensions\k37cpfz@d-u.org [2015-07-08] [Legacy] [not signed]
- FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore => not found
- FF HKLM-x32\...\Firefox\Extensions: [netsight@nielsen.com] - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\netsight@nielsen.xpi => not found
- FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_28_0_0_161.dll [2018-02-07] ()
- FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-07-13] (Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre1.8.0_40\bin\new_plugin\npjp2.dll [No File]
- FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-04-02] (Oracle Corporation)
- FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
- FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
- FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_161.dll [2018-02-07] ()
- FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
- FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-04-02] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-04-02] (Oracle Corporation)
- FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-09] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-09] (Microsoft Corporation)
- FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-12] (NVIDIA Corporation)
- FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-12] (NVIDIA Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-11] (Adobe Systems Inc.)
- FF Plugin HKU\S-1-5-21-3803275921-3941053817-2581775902-1005: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\zeph\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-07-08] (Unity Technologies ApS)
- StartMenuInternet: FIREFOX.EXE - C:\Users\Bubbles\AppData\Local\Mozilla Firefox\firefox.exe
- Chrome:
- =======
- CHR HomePage: Default -> hxxps://www.google.com/
- CHR StartupUrls: Default -> "hxxp://test.nillysrealm.com/"
- CHR Session Restore: Default -> is enabled.
- CHR Profile: C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default [2018-02-17]
- CHR Extension: (Docs) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-11]
- CHR Extension: (Google Drive) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-23]
- CHR Extension: (YouTube) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-19]
- CHR Extension: (Slither.io Mods) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnlenmmkifnhllnjfoangnjokeadhbbk [2016-04-30]
- CHR Extension: (Google Search) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-23]
- CHR Extension: (Lamborghini Sesto Elemento Theme) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\dappigdjllcnkkoacaoolciaolaaiemb [2018-02-06]
- CHR Extension: (Adobe Acrobat) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-04]
- CHR Extension: (Google Docs Offline) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-23]
- CHR Extension: (Gmail) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-01]
- CHR Extension: (Chrome Media Router) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-20]
- CHR Profile: C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile [2015-07-15]
- CHR Extension: (Google Slides) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-15]
- CHR Extension: (Google Docs) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-15]
- CHR Extension: (Google Drive) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-15]
- CHR Extension: (YouTube) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-15]
- CHR Extension: (Google Search) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-15]
- CHR Extension: (Ads ext) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\dddohfllflmcpghepofcicinmkceappc [2015-07-15] [UpdateUrl: hxxp://ads-api.new-minecraft.com/updates/chrome/update] <==== ATTENTION
- CHR Extension: (Google Sheets) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-15]
- CHR Extension: (Chrome Hotword Shared Module) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-15]
- CHR Extension: (Google Wallet) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-15]
- CHR Extension: (Gmail) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-15]
- CHR HKLM-x32\...\Chrome\Extension: [dddohfllflmcpghepofcicinmkceappc] - C:\Program Files (x86)\MineCraft DLInstaller\extension_0.0.15.crx <not found>
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- ==================== Services (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7054344 2018-02-17] () [File not signed]
- S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1128200 2018-02-17] () [File not signed]
- S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [149320 2018-02-17] () [File not signed]
- S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [149320 2018-02-17] () [File not signed]
- S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
- S3 MozillaMaintenance; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [277456 2018-02-17] () [File not signed]
- S3 mracsvc; C:\Windows\System32\mracsvc.exe [7409368 2018-01-05] (LLC Mail.Ru)
- R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
- S2 NOBU; C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2905944 2018-02-17] () [File not signed]
- S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [5560840 2016-05-11] (INCA Internet Co., Ltd.)
- R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-10] (NVIDIA Corporation)
- S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-10] (NVIDIA Corporation)
- S3 odserv; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [482168 2018-02-17] () [File not signed]
- S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [186656 2018-02-17] () [File not signed]
- R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
- R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2017-08-16] ()
- R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2017-08-16] ()
- S3 RoxMediaDB12OEM; C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [1199600 2018-02-17] () [File not signed]
- S2 RoxWatch12; C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [302576 2018-02-17] () [File not signed]
- S2 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [358872 2018-02-17] () [File not signed]
- S3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [1727776 2018-02-17] () [File not signed]
- S3 stllssvr; C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe [157336 2018-02-17] () [File not signed]
- R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10945776 2017-12-15] (TeamViewer GmbH)
- S2 VMUSBArbService; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [957512 2018-02-17] () [File not signed]
- S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
- S3 ACTION_SVC; C:\Program Files (x86)\Mirillis\Action!\action_svc.exe [X]
- S2 Ds3Service; "C:\Users\Zachariah\Desktop\SCP-DS3-Driver-Package-1.0.0.103\ScpServer\bin\ScpService.exe" [X]
- S2 LMIGuardianSvc; "C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe" [X]
- S2 mfevtp; "C:\Windows\system32\mfevtps.exe" [X]
- R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
- R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
- S3 OpenVPNService; "C:\Program Files\OpenVPN\bin\openvpnserv2.exe" [X]
- S2 OpenVPNServiceInteractive; "C:\Program Files\OpenVPN\bin\openvpnserv.exe" [X]
- S3 OpenVPNServiceLegacy; "C:\Program Files\OpenVPN\bin\openvpnserv.exe" [X]
- R2 postgresql-x64-9.5; "C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe" runservice -N "postgresql-x64-9.5" -D "C:\Program Files\PostgreSQL\9.5\data" -w
- S2 VMAuthdService; "C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe" [X]
- ===================== Drivers (Whitelisted) ======================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [96256 2015-07-15] (Advanced Micro Devices) [File not signed]
- S3 CV2K1; C:\Windows\System32\DRIVERS\cv2k1.sys [32616 2016-08-02] (TamoSoft)
- S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
- S3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-11-18] (Symantec Corporation)
- S3 libusbK; C:\Windows\System32\DRIVERS\libusbK.sys [47200 2017-04-13] (hxxp://libusb-win32.sourceforge.net)
- R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253880 2018-02-17] (Malwarebytes)
- S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [158712 2011-12-13] (McAfee, Inc.)
- R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [228752 2011-12-13] (McAfee, Inc.)
- R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [642952 2011-12-13] (McAfee, Inc.)
- S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100904 2011-12-13] (McAfee, Inc.)
- R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [283744 2011-12-13] (McAfee, Inc.)
- S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-10-10] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-10-10] (NVIDIA Corporation)
- R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-10-12] (NVIDIA Corporation)
- S3 PCDSRVC{1E208CE0-FB7451FF-06020101}_0; c:\program files\dell support center\pcdsrvc_x64.pkms [25072 2011-03-17] (PC-Doctor, Inc.)
- R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-05] (Scarlet.Crush Productions)
- R3 TSCOMM; C:\Windows\System32\DRIVERS\tscomm.sys [57176 2017-11-27] (TamoSoft)
- S3 TsVlb; C:\Windows\System32\DRIVERS\tsvlb.sys [33128 2016-08-03] (TamoSoft)
- R1 TsVp; C:\Windows\System32\DRIVERS\tsvp.sys [37224 2016-08-03] (TamoSoft)
- U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
- R3 VBAudioVMVAIOMME; C:\Windows\System32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2018-01-15] (Windows (R) Win 7 DDK provider)
- R3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [200832 2018-01-15] (Oracle Corporation)
- R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [211704 2018-01-15] (Oracle Corporation)
- R3 vjoy; C:\Windows\System32\DRIVERS\vjoy.sys [57976 2017-03-09] (Shaul Eizikovich)
- R1 vmkbd3; C:\Windows\System32\DRIVERS\vmkbd.sys [52288 2016-11-11] (VMware, Inc.)
- R0 vsock; C:\Windows\System32\DRIVERS\vsock.sys [93248 2016-09-30] (VMware, Inc.)
- S3 AppObserver; \??\C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys [X]
- S2 hcmon; system32\DRIVERS\hcmon.sys [X]
- S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
- S2 VMnetBridge; system32\DRIVERS\vmnetbridge.sys [X]
- S2 VMnetUserif; system32\DRIVERS\vmnetuserif.sys [X]
- S2 vmx86; system32\DRIVERS\vmx86.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2018-02-17 18:51 - 2018-02-17 18:52 - 000108536 _____ C:\Users\zeph\Desktop\Addition.txt
- 2018-02-17 18:49 - 2018-02-17 18:59 - 000027530 _____ C:\Users\zeph\Desktop\FRST.txt
- 2018-02-17 18:49 - 2018-02-17 18:58 - 000000000 ____D C:\FRST
- 2018-02-17 18:38 - 2018-02-17 18:58 - 002403840 _____ (Farbar) C:\Users\zeph\Desktop\FRST64.exe
- 2018-02-17 18:24 - 2018-02-17 18:36 - 000000000 ____D C:\AdwCleaner
- 2018-02-17 18:23 - 2018-02-17 18:58 - 008305440 _____ C:\Users\zeph\Desktop\AdwCleaner.exe
- 2018-02-17 18:15 - 2018-02-17 18:15 - 000041472 _____ C:\Windows\svchost.com
- 2018-02-17 16:56 - 2018-02-17 16:56 - 000001208 _____ C:\Users\zeph\Desktop\Subnautica.lnk
- 2018-02-17 15:12 - 2018-02-17 15:12 - 000002052 _____ C:\Windows\epplauncher.mif
- 2018-02-17 14:59 - 2018-02-17 15:04 - 015065792 _____ (Microsoft Corporation) C:\Users\Zachariah\Downloads\mseinstall.exe
- 2018-02-17 14:50 - 2018-02-17 18:15 - 000000000 ____D C:\ProgramData\SecTaskMan
- 2018-02-17 14:50 - 2018-02-17 14:50 - 000001104 _____ C:\Users\Public\Desktop\Security Task Manager.lnk
- 2018-02-17 14:50 - 2018-02-17 14:50 - 000000000 ____D C:\Program Files (x86)\Security Task Manager
- 2018-02-17 14:49 - 2018-02-17 14:50 - 003038672 _____ C:\Users\Zachariah\Downloads\SecurityTaskManager_Setup.exe
- 2018-02-17 14:48 - 2018-02-17 14:48 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
- 2018-02-17 14:48 - 2018-02-17 14:48 - 000000000 ____D C:\Program Files\Unlocker
- 2018-02-17 14:47 - 2018-02-17 16:48 - 001161535 _____ C:\Users\Zachariah\Downloads\Unlocker1.9.2.exe
- 2018-02-17 12:45 - 2018-02-17 12:45 - 000000000 ____D C:\Users\Zachariah\Documents\AutomaticSolution Software
- 2018-02-17 12:44 - 2018-02-17 13:23 - 000824647 _____ C:\Users\Zachariah\Desktop\AutoClicker.exe
- 2018-02-17 12:33 - 2018-02-17 12:33 - 000000000 ____D C:\Users\Zachariah\AppData\Local\Apple
- 2018-02-17 12:30 - 2018-02-17 12:30 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\McAfee
- 2018-02-17 12:00 - 2018-02-17 12:00 - 000001191 _____ C:\Users\Bubbles\Desktop\Kerbal Space Program.lnk
- 2018-02-17 11:48 - 2018-02-17 11:57 - 000000000 ____D C:\Users\Bubbles\Desktop\Kerbal Space Program
- 2018-02-17 04:26 - 2018-02-17 12:56 - 000000926 _____ C:\Users\Public\Desktop\Minecraft.lnk
- 2018-02-17 04:26 - 2018-02-17 04:26 - 002314240 _____ C:\Users\Zachariah\Downloads\MinecraftInstaller(1).msi
- 2018-02-17 02:56 - 2018-02-17 02:56 - 000028272 _____ C:\Windows\system32\Drivers\TrueSight.sys
- 2018-02-17 02:54 - 2018-02-17 02:55 - 036393136 _____ (Adlice Software ) C:\Users\Zachariah\Downloads\setup(1).exe
- 2018-02-17 02:24 - 2018-02-17 02:24 - 000253880 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
- 2018-02-17 01:20 - 2018-02-17 18:58 - 000000087 _____ C:\Windows\directx.sys
- 2018-02-17 01:20 - 2018-02-17 01:20 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\IntelliVoid
- 2018-02-17 01:17 - 2018-02-17 01:23 - 054335127 _____ C:\Users\Zachariah\Downloads\vpngate-client-2018.02.17-build-9656.140635.zip
- 2018-02-16 18:05 - 2018-02-16 18:05 - 000001591 _____ C:\Users\zeph\Desktop\GettingOverIt.lnk
- 2018-02-16 18:05 - 2018-02-16 18:05 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Bennett Foddy
- 2018-02-16 17:19 - 2018-02-16 17:19 - 000000000 ____D C:\Users\zeph\Documents\Black Ops 2 - GSC Studio
- 2018-02-16 17:19 - 2018-02-16 17:19 - 000000000 ____D C:\Users\zeph\AppData\Local\iMCS_Productions
- 2018-02-16 17:15 - 2018-02-17 16:56 - 000000000 ____D C:\Users\zeph\Desktop\Games
- 2018-02-16 17:15 - 2018-02-16 18:57 - 000001834 _____ C:\Users\zeph\Desktop\OxygenNotIncluded.lnk
- 2018-02-15 23:50 - 2018-02-16 17:40 - 000001573 _____ C:\Users\zeph\Desktop\Clustertruck.lnk
- 2018-02-15 23:11 - 2018-02-15 23:11 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Landfall
- 2018-02-15 18:40 - 2018-02-15 18:40 - 000031636 _____ C:\Users\Zachariah\Untitled Project.osp
- 2018-02-15 18:40 - 2018-02-15 18:40 - 000000000 ____D C:\Users\Zachariah\thumbnail
- 2018-02-15 18:38 - 2018-02-15 18:40 - 080423770 _____ C:\Users\Zachariah\Desktop\Untitled Project.mp4
- 2018-02-14 15:43 - 2018-02-14 15:44 - 000170167 _____ C:\Users\Zachariah\Downloads\PerfectBackup.jar
- 2018-02-13 22:11 - 2018-02-13 22:11 - 000000000 ____D C:\Users\Zachariah\Desktop\Resource pack
- 2018-02-13 19:32 - 2018-02-13 19:32 - 000006610 _____ C:\Users\Zachariah\Downloads\AutoBroadcaster_1.4.6.zip
- 2018-02-13 18:00 - 2018-02-15 18:02 - 000000000 ____D C:\Users\Zachariah\Desktop\SERVER BACKUP
- 2018-02-12 17:25 - 2018-02-12 18:27 - 000000000 ____D C:\Program Files (x86)\Simple Port Forwarding
- 2018-02-12 17:25 - 2018-02-12 17:25 - 000001939 _____ C:\Users\Zachariah\Desktop\Simple Port Forwarding.lnk
- 2018-02-12 17:25 - 2018-02-12 17:25 - 000000000 ____D C:\Windows\Simple Port Forwarding
- 2018-02-12 17:25 - 2018-02-12 17:25 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Simple Port Forwarding
- 2018-02-12 17:24 - 2018-02-17 02:43 - 007035934 _____ C:\Users\Zachariah\Downloads\simple_port_forwarding_setup.exe
- 2018-02-12 17:24 - 2018-02-12 17:25 - 000025884 _____ C:\Windows\Simple Port Forwarding Setup Log.txt
- 2018-02-11 17:45 - 2018-02-11 17:45 - 001073654 _____ C:\Users\Zachariah\Downloads\Asian KitPvP.rar
- 2018-02-11 14:02 - 2018-02-11 14:02 - 001550014 _____ C:\Users\Zachariah\Downloads\187k+.rar
- 2018-02-11 13:45 - 2018-02-11 13:45 - 001313077 _____ C:\Users\Zachariah\Downloads\111k+.rar
- 2018-02-10 23:42 - 2018-02-10 23:42 - 000000000 ____D C:\Users\Public\Documents\Steam
- 2018-02-10 23:42 - 2018-02-10 23:42 - 000000000 ____D C:\ProgramData\Unknown Worlds
- 2018-02-10 23:33 - 2018-02-10 23:33 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Unknown Worlds
- 2018-02-10 18:54 - 2018-02-17 12:38 - 000001114 _____ C:\Users\Public\Desktop\Firefox.lnk
- 2018-02-10 18:47 - 2018-02-17 02:43 - 000354992 _____ C:\Users\Zachariah\Downloads\Firefox Installer(1).exe
- 2018-02-10 13:11 - 2018-02-10 13:12 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Opera Software
- 2018-02-10 13:10 - 2018-02-16 18:52 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\uTorrent
- 2018-02-10 13:09 - 2018-02-17 00:00 - 000000000 ____D C:\Users\zeph\AppData\Roaming\uTorrent
- 2018-02-10 13:09 - 2018-02-10 13:09 - 000000851 _____ C:\Users\zeph\Desktop\µTorrent.lnk
- 2018-02-10 02:26 - 2018-02-10 02:26 - 012034935 _____ C:\Users\Zachariah\Downloads\Flux B4.zip
- 2018-02-10 02:22 - 2018-02-10 03:47 - 000000000 ____D C:\Users\Zachariah\Desktop\MCLeaksAuthenticator(1)
- 2018-02-10 02:22 - 2018-02-10 02:22 - 000043633 _____ C:\Users\Zachariah\Downloads\MCLeaksAuthenticator(1).zip
- 2018-02-07 19:40 - 2018-02-07 19:40 - 000000000 ____D C:\Users\zeph\AppData\Roaming\HpUpdate
- 2018-02-06 00:22 - 2018-02-06 00:57 - 000000258 __RSH C:\ProgramData\ntuser.pol
- 2018-02-05 23:01 - 2018-02-17 01:55 - 000002029 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
- 2018-02-05 23:01 - 2018-02-05 23:01 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2018-02-05 23:01 - 2018-02-05 23:01 - 000000000 ____D C:\Program Files\Malwarebytes
- 2018-02-05 23:01 - 2017-11-29 09:11 - 000077432 _____ C:\Windows\system32\Drivers\mbae64.sys
- 2018-02-05 22:57 - 2018-02-05 23:00 - 077935224 _____ (Malwarebytes ) C:\Users\Zachariah\Downloads\mb3-setup-consumer-3.3.1.2183-1.0.262-1.0.3872.exe
- 2018-02-03 02:41 - 2018-02-03 02:42 - 000678119 _____ C:\Users\Zachariah\Downloads\50k.rar
- 2018-02-03 02:31 - 2018-02-03 02:33 - 007108688 _____ C:\Users\Zachariah\Downloads\2.2_MinecraftBruTe_-_c0d3d_by_julia_pcret1.rar
- 2018-02-02 20:56 - 2018-02-02 20:56 - 003096761 _____ C:\Users\Zachariah\Downloads\u.zip
- 2018-02-02 20:56 - 2018-02-02 20:56 - 000000600 _____ C:\Users\Zachariah\PUTTY.RND
- 2018-02-02 18:37 - 2017-08-08 13:45 - 2794307584 _____ C:\kali-linux-2017.1-amd64.iso
- 2018-02-02 12:06 - 2018-02-02 12:06 - 000054005 _____ C:\Users\Zachariah\Downloads\4k+.rar
- 2018-02-01 21:43 - 2018-02-01 21:44 - 000868640 _____ C:\Users\Zachariah\Downloads\Paypal_Valid_Email_Checker_v1.3__Stable_.rar
- 2018-02-01 21:35 - 2018-02-01 21:35 - 000244814 _____ C:\Users\Zachariah\Downloads\PayPal Brute&Checker [Cracked.rar
- 2018-02-01 21:16 - 2018-02-01 21:16 - 000797930 _____ C:\Users\Zachariah\Downloads\Amazon_Valid_Email_Checker.rar
- 2018-02-01 19:23 - 2018-02-11 14:10 - 000000000 ____D C:\Users\Zachariah\Desktop\Account Checker Crap
- 2018-02-01 19:22 - 2018-02-01 19:22 - 000092776 _____ C:\Users\Zachariah\Downloads\μProxy Tool 1.71.zip
- 2018-02-01 19:13 - 2018-02-01 19:13 - 000000000 ____D C:\Users\Zachariah\AppData\Local\SkinSoft
- 2018-02-01 19:08 - 2018-02-01 19:08 - 003285033 _____ C:\Users\Zachariah\Downloads\GatherProxy.rar
- 2018-02-01 19:06 - 2018-02-01 19:07 - 003822439 _____ C:\Users\Zachariah\Downloads\GPTool.rar
- 2018-01-29 15:58 - 2018-01-29 15:58 - 000000011 _____ C:\Users\Zachariah\Downloads\talkingslug ip.txt
- 2018-01-29 15:57 - 2018-01-29 15:57 - 000000012 _____ C:\Users\Zachariah\Downloads\FLAKEY IP.txt
- 2018-01-28 21:05 - 2018-01-28 21:05 - 000000033 _____ C:\Users\Zachariah\Downloads\juniorgallardo2.txt
- 2018-01-28 03:03 - 2018-02-05 16:47 - 000000000 ____D C:\Users\zeph\Desktop\Stuff
- 2018-01-28 02:30 - 2018-01-28 02:30 - 000000000 ____D C:\Users\zeph\VirtualBox VMs
- 2018-01-28 02:24 - 2018-02-05 16:47 - 000000000 ____D C:\Users\zeph\.VirtualBox
- 2018-01-28 02:23 - 2018-01-28 02:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\J9\Oracle VM VirtualBox
- 2018-01-28 02:23 - 2018-01-15 15:59 - 000972192 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
- 2018-01-28 02:23 - 2018-01-15 15:59 - 000157672 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
- 2018-01-28 02:21 - 2018-01-28 02:21 - 000000000 ____D C:\Program Files\Oracle
- 2018-01-27 23:50 - 2018-01-27 23:50 - 000000013 _____ C:\Users\Zachariah\Desktop\ninjakn ip.txt
- 2018-01-27 22:44 - 2018-02-06 00:20 - 000000000 __SHD C:\ProgramData\AFHAHK
- 2018-01-27 22:44 - 2018-02-05 23:11 - 000000000 ____D C:\ProgramData\DFX
- 2018-01-27 20:25 - 2018-01-27 20:25 - 000003770 _____ C:\Windows\System32\Tasks\CommView Update
- 2018-01-27 20:25 - 2018-01-27 20:25 - 000000000 ____D C:\Users\Zachariah\Documents\CommView
- 2018-01-27 20:25 - 2018-01-27 20:25 - 000000000 ____D C:\ProgramData\TamoSoft
- 2018-01-27 20:24 - 2018-01-27 23:33 - 000000000 ____D C:\Program Files (x86)\CommView
- 2018-01-27 20:08 - 2018-01-27 20:09 - 031354875 _____ C:\Users\Zachariah\Downloads\cv6.zip
- 2018-01-23 18:02 - 2018-01-23 18:02 - 005789374 _____ C:\Users\Zachariah\Desktop\Whoop Case.zcode
- 2018-01-23 17:46 - 2018-01-23 17:47 - 001559824 _____ C:\Users\Zachariah\Downloads\Yet_another_Tiny_Whoop_Case_and_Battery_Holder.zip
- 2018-01-23 16:25 - 2018-01-23 16:28 - 046610376 _____ C:\Users\Zachariah\Downloads\PICT0037.AVI
- 2018-01-22 18:15 - 2018-01-22 18:15 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01011.Wdf
- 2018-01-22 17:59 - 2018-01-22 18:15 - 001795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
- 2018-01-22 17:59 - 2018-01-22 18:15 - 000000000 ____D C:\Users\Zachariah\usb_driver
- 2018-01-22 17:50 - 2018-01-22 17:50 - 000000000 ____D C:\Program Files (x86)\STMicroelectronics
- 2018-01-22 17:49 - 2018-01-22 17:49 - 000000000 ____D C:\Users\Zachariah\AppData\Local\Downloaded Installations
- 2018-01-22 17:48 - 2018-01-22 17:48 - 002256502 _____ C:\Users\Zachariah\Downloads\en.stsw-stm32102.zip
- 2018-01-22 17:24 - 2018-01-22 17:24 - 007176026 _____ C:\Users\Zachariah\Downloads\CP210x_Windows_Drivers(1).zip
- 2018-01-22 17:24 - 2018-01-22 17:24 - 000000000 ____D C:\Program Files\DIFX
- 2018-01-22 17:17 - 2018-01-22 17:18 - 007176026 _____ C:\Users\Zachariah\Downloads\CP210x_Windows_Drivers.zip
- 2018-01-21 19:17 - 2018-01-21 19:17 - 000000950 _____ C:\Users\zeph\Desktop\Steam.lnk
- 2018-01-21 16:26 - 2018-02-17 02:43 - 003368448 _____ C:\Users\Zachariah\Desktop\Ultimate Tool - Protected.exe
- 2018-01-21 16:20 - 2018-01-21 16:22 - 003110962 _____ C:\Users\Zachariah\Downloads\Tool_Protected_mpgh.net_1_1.zip
- 2018-01-21 14:06 - 2018-01-21 14:06 - 000315292 _____ C:\Users\Zachariah\Downloads\Project TCM V11.7z
- 2018-01-19 22:42 - 2018-01-19 22:42 - 000001301 _____ C:\Users\Zachariah\Desktop\Betaflight Configurator.lnk
- 2018-01-19 22:42 - 2018-01-19 22:42 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Betaflight
- 2018-01-19 22:42 - 2018-01-19 22:42 - 000000000 ____D C:\Users\Zachariah\AppData\Local\betaflight-configurator
- 2018-01-19 22:42 - 2018-01-19 22:42 - 000000000 ____D C:\Program Files (x86)\Betaflight
- 2018-01-19 21:37 - 2018-01-19 21:45 - 064889587 _____ C:\Users\Zachariah\Downloads\betaflight-configurator-installer_10.1.0_win32.exe
- 2018-01-19 21:16 - 2018-01-19 21:16 - 002155727 _____ C:\Users\Zachariah\Downloads\BeeBrainV.2-Manual.pdf
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2018-02-17 18:59 - 2011-12-08 16:45 - 000000564 _____ C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
- 2018-02-17 18:49 - 2011-12-08 16:45 - 000000422 _____ C:\Windows\Tasks\SystemToolsDailyTest.job
- 2018-02-17 18:38 - 2009-07-13 20:45 - 000021296 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2018-02-17 18:38 - 2009-07-13 20:45 - 000021296 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2018-02-17 18:37 - 2014-02-07 21:11 - 000000904 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1004UA.job
- 2018-02-17 18:35 - 2011-12-29 17:46 - 000000944 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1003UA.job
- 2018-02-17 18:33 - 2017-03-04 14:14 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Mozilla
- 2018-02-17 18:30 - 2015-12-03 06:37 - 000000000 ____D C:\Users\zeph\AppData\Local\CrashDumps
- 2018-02-17 18:30 - 2015-05-01 10:30 - 000000911 _____ C:\Windows\Tasks\EPSON WF-2650 Series Update {95D371A6-1461-4163-B204-53754B67D0AC}.job
- 2018-02-17 18:29 - 2017-10-26 14:42 - 000000000 ____D C:\ProgramData\NVIDIA
- 2018-02-17 18:28 - 2017-09-27 15:18 - 000000000 ____D C:\Users\postgres
- 2018-02-17 18:28 - 2011-09-23 19:19 - 000000000 ____D C:\Program Files (x86)\Dell DataSafe Local Backup
- 2018-02-17 18:27 - 2009-07-13 21:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2018-02-17 18:12 - 2016-11-03 17:07 - 000000924 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1010UA.job
- 2018-02-17 18:12 - 2016-11-03 17:07 - 000000872 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1010Core.job
- 2018-02-17 17:45 - 2009-07-13 21:09 - 000000000 ____D C:\Windows\System32\Tasks\WPD
- 2018-02-17 17:40 - 2017-03-04 14:21 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Curse Client
- 2018-02-17 17:14 - 2011-12-09 19:53 - 000000000 ____D C:\Users\zeph
- 2018-02-17 16:54 - 2011-12-09 19:54 - 000104592 _____ C:\Users\zeph\AppData\Local\GDIPFONTCACHEV1.DAT
- 2018-02-17 16:54 - 2009-07-13 20:57 - 000001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\J9\Windows Media Player.lnk
- 2018-02-17 16:54 - 2009-07-13 19:20 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\J9
- 2018-02-17 16:36 - 2011-12-29 17:46 - 000000892 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1003Core.job
- 2018-02-17 16:32 - 2016-09-24 20:35 - 000000000 ____D C:\Users\Zachariah\AppData\Local\CrashDumps
- 2018-02-17 16:31 - 2016-09-17 19:05 - 000000000 ____D C:\Users\Zachariah\AppData\Local\SoftThinks
- 2018-02-17 16:08 - 2009-07-13 20:45 - 000400528 _____ C:\Windows\system32\FNTCACHE.DAT
- 2018-02-17 15:44 - 2017-02-24 17:18 - 000000000 ____D C:\Users\Zachariah\AppData\LocalLow\Mozilla
- 2018-02-17 15:42 - 2017-09-13 14:40 - 000007596 _____ C:\Users\Zachariah\AppData\Local\Resmon.ResmonCfg
- 2018-02-17 15:34 - 2018-01-09 19:48 - 000001209 _____ C:\Users\Zachariah\Desktop\nativelog.txt
- 2018-02-17 15:21 - 2016-10-01 17:11 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\.minecraft
- 2018-02-17 14:56 - 2016-09-17 22:48 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\OBS
- 2018-02-17 14:39 - 2016-09-18 19:58 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\vlc
- 2018-02-17 14:19 - 2011-12-09 20:04 - 000000000 ____D C:\Users\zach
- 2018-02-17 14:18 - 2016-09-04 12:12 - 000000000 ____D C:\Users\zach\Desktop\All my Crap
- 2018-02-17 14:14 - 2015-10-05 20:35 - 000000000 ____D C:\Users\Zachariah\Desktop\Servers
- 2018-02-17 13:58 - 2017-08-28 19:56 - 000000000 ____D C:\Program Files\Mozilla Firefox
- 2018-02-17 13:46 - 2017-09-05 09:10 - 000000000 ____D C:\Users\TEMP
- 2018-02-17 13:14 - 2016-12-14 11:06 - 000104592 _____ C:\Users\Zachariah\AppData\Local\GDIPFONTCACHEV1.DAT
- 2018-02-17 13:11 - 2017-08-30 17:59 - 000027250 _____ C:\Windows\SysWOW64\nativelog.txt
- 2018-02-17 13:02 - 2014-05-10 12:08 - 000000000 ____D C:\Program Files (x86)\Minecraft
- 2018-02-17 12:56 - 2017-06-20 21:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\J9\Minecraft
- 2018-02-17 12:31 - 2011-12-13 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\J9\McAfee
- 2018-02-17 12:21 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\inf
- 2018-02-17 11:37 - 2014-02-07 21:11 - 000000852 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1004Core.job
- 2018-02-17 11:10 - 2016-09-18 13:22 - 000000000 ____D C:\Program Files (x86)\Steam
- 2018-02-17 11:08 - 2017-08-27 18:09 - 000000000 ____D C:\Users\Bubbles\AppData\LocalLow\Mozilla
- 2018-02-17 08:41 - 2015-11-25 15:21 - 000000000 ____D C:\Users\Bubbles\AppData\Local\CrashDumps
- 2018-02-17 04:38 - 2017-11-03 19:15 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\J9\Epic Games Launcher.lnk
- 2018-02-17 04:34 - 2017-11-18 23:09 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\nhm2
- 2018-02-17 04:09 - 2015-10-21 17:56 - 000000000 ____D C:\ProgramData\PMS
- 2018-02-17 02:49 - 2016-07-01 12:16 - 004776136 _____ C:\Users\zeph\Desktop\TechnicLauncher.exe
- 2018-02-17 02:49 - 2015-05-19 15:36 - 001653328 _____ C:\Users\zeph\Documents\ATLauncher.exe
- 2018-02-17 02:48 - 2015-04-20 08:19 - 007745261 _____ C:\Users\zeph\Desktop\FTB_Launcher.exe
- 2018-02-17 02:43 - 2018-01-15 18:54 - 006048547 _____ C:\Users\Zachariah\Downloads\LAN_allWin7_7.031_PV_RTL.exe
- 2018-02-17 02:43 - 2018-01-15 00:56 - 009224728 _____ C:\Users\Zachariah\Downloads\VoicemeeterSetup.exe
- 2018-02-17 02:43 - 2017-12-19 23:05 - 008002424 _____ C:\Users\Zachariah\Downloads\Xbox360_64Eng(2).exe
- 2018-02-17 02:43 - 2017-11-16 15:56 - 003169640 _____ C:\Users\Zachariah\Downloads\instspeedfan452.exe
- 2018-02-17 02:43 - 2017-11-11 15:58 - 001921614 _____ C:\Users\Zachariah\Downloads\YUMI-2.0.5.1.exe
- 2018-02-17 02:43 - 2017-11-09 08:51 - 000860680 _____ C:\Users\Zachariah\Downloads\UnityDownloadAssistant-2017.2.0f3.exe
- 2018-02-17 02:43 - 2017-11-03 17:20 - 000460808 _____ C:\Users\Zachariah\Downloads\Autodesk_3ds_Max_2018_EFGJKPS_Win_64bit_wi_en-US_Setup_webinstall.exe
- 2018-02-17 02:43 - 2017-09-28 16:46 - 000935616 _____ C:\Users\Zachariah\Downloads\RobloxPlayerLauncher(1).exe
- 2018-02-17 02:43 - 2017-09-28 16:16 - 001297120 _____ C:\Users\Zachariah\Downloads\filmora_setup_full1901.exe
- 2018-02-17 02:43 - 2017-09-22 18:05 - 000610367 _____ C:\Users\Zachariah\Downloads\Lame_v3.99.3_for_Windows.exe
- 2018-02-17 02:43 - 2017-09-22 17:31 - 000894520 _____ C:\Users\Zachariah\Downloads\RobloxPlayerLauncher.exe
- 2018-02-17 02:43 - 2017-09-04 22:58 - 008776096 _____ C:\Users\Zachariah\Downloads\CyberGhost_6.0.8.2959.exe
- 2018-02-17 02:43 - 2017-09-04 18:55 - 000328664 _____ C:\Users\Zachariah\Downloads\Firefox Installer.exe
- 2018-02-17 02:43 - 2017-08-28 11:29 - 009542113 _____ C:\Users\Zachariah\Downloads\CWClient_Install.exe
- 2018-02-17 02:43 - 2017-08-18 19:03 - 003268424 _____ C:\Users\Zachariah\Downloads\netsight_setup_7.5.0.1050_mp_production_mid60986962292.exe
- 2018-02-17 02:43 - 2017-08-15 17:35 - 005638089 _____ C:\Users\Zachariah\Downloads\UserBenchMark.exe
- 2018-02-17 02:43 - 2017-08-13 10:59 - 002579744 _____ C:\Users\Zachariah\Downloads\setup.exe
- 2018-02-17 02:43 - 2017-03-19 15:38 - 007919480 _____ C:\Users\Zachariah\Downloads\Xbox360_64Eng(1).exe
- 2018-02-17 02:43 - 2017-03-11 11:44 - 007960952 _____ C:\Users\Zachariah\Downloads\Xbox360_64Eng.exe
- 2018-02-17 02:43 - 2017-03-08 15:59 - 002324160 _____ C:\Users\Zachariah\Downloads\FileZilla_Server-0_9_60_2.exe
- 2018-02-17 02:43 - 2017-02-28 19:40 - 003760988 _____ C:\Users\Zachariah\Downloads\forge-1.8-11.14.4.1563-installer-win.exe
- 2018-02-17 01:52 - 2017-09-28 16:47 - 000002263 _____ C:\Users\Zachariah\Desktop\Roblox Studio.lnk
- 2018-02-17 01:46 - 2017-08-28 19:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2018-02-17 01:40 - 2015-07-09 10:48 - 000717460 _____ C:\Users\melissa.parton\Downloads\Minecraft.exe
- 2018-02-17 01:40 - 2014-06-25 22:04 - 000724832 _____ C:\Users\melissa.parton\Downloads\MediaCodec (1).exe
- 2018-02-17 01:40 - 2014-06-25 22:03 - 000724832 _____ C:\Users\melissa.parton\Downloads\MediaCodec.exe
- 2018-02-17 01:40 - 2013-11-22 16:36 - 001091984 _____ C:\Users\melissa.parton\Downloads\UnityWebPlayer.exe
- 2018-02-17 01:40 - 2013-05-28 16:19 - 002178320 _____ C:\Users\melissa.parton\Downloads\install_flashplayer11x32_gdrd_aih.exe
- 2018-02-17 01:40 - 2013-05-28 15:37 - 002178320 _____ C:\Users\melissa.parton\Downloads\install_flashplayer11x32_gdra_aih.exe
- 2018-02-17 01:40 - 2011-12-29 17:46 - 000648024 _____ C:\Users\melissa.parton\Downloads\GoogleVoiceAndVideoSetup.exe
- 2018-02-17 01:40 - 2011-12-24 18:42 - 000648024 _____ C:\Users\melissa.parton\Downloads\GoogleEarthPluginSetup.exe
- 2018-02-16 23:42 - 2013-11-16 06:45 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Skype
- 2018-02-16 23:32 - 2017-11-26 17:46 - 000000000 ____D C:\Users\zeph\AppData\Roaming\HexChat
- 2018-02-16 19:49 - 2017-05-09 20:36 - 000000000 ____D C:\GOG Games
- 2018-02-16 19:13 - 2017-05-05 17:19 - 000000000 ____D C:\Users\zeph\Desktop\ROTMG Pservers
- 2018-02-16 19:11 - 2015-11-12 06:43 - 000000000 ____D C:\Games
- 2018-02-16 19:03 - 2016-04-11 17:45 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2018-02-16 17:35 - 2013-06-05 10:07 - 000000464 ____H C:\Windows\Tasks\Norton Security Scan for erik.parton.job
- 2018-02-16 13:01 - 2017-10-08 16:30 - 000000000 ____D C:\Users\Bubbles\Documents\BeamNG.drive
- 2018-02-16 08:13 - 2015-05-24 16:00 - 000000000 ____D C:\Users\Bubbles\AppData\Roaming\Mozilla
- 2018-02-16 03:22 - 2014-05-14 13:25 - 000000470 ____H C:\Windows\Tasks\Norton Security Scan for melissa.parton.job
- 2018-02-15 23:11 - 2017-08-08 21:24 - 000000000 ____D C:\Users\zeph\Documents\My Games
- 2018-02-15 22:48 - 2017-10-29 12:19 - 000000000 ____D C:\Users\zeph\AppData\Local\ArmA 2 OA
- 2018-02-15 20:03 - 2016-10-02 18:12 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Skype
- 2018-02-15 18:40 - 2017-12-30 21:05 - 000000000 ____D C:\Users\Zachariah\.openshot_qt
- 2018-02-15 18:40 - 2016-09-17 19:05 - 000000000 ____D C:\Users\Zachariah
- 2018-02-15 16:06 - 2018-01-01 23:17 - 000000000 ____D C:\Users\Zachariah\Desktop\Server
- 2018-02-14 21:04 - 2017-10-06 17:52 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\discord
- 2018-02-14 17:47 - 2015-06-23 14:42 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
- 2018-02-14 17:45 - 2015-11-15 22:03 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\J9\Acrobat Reader DC.lnk
- 2018-02-11 18:35 - 2017-01-31 16:46 - 000000000 ____D C:\Users\zeph\AppData\Roaming\discord
- 2018-02-11 03:37 - 2017-07-03 20:53 - 000000000 ____D C:\Users\Zachariah\AppData\Local\ElevatedDiagnostics
- 2018-02-10 22:36 - 2011-12-09 19:54 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Mozilla
- 2018-02-10 18:54 - 2016-09-17 19:07 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Mozilla
- 2018-02-07 00:16 - 2013-05-28 16:16 - 000004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
- 2018-02-07 00:16 - 2013-02-21 09:36 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
- 2018-02-07 00:16 - 2013-02-21 09:36 - 000000000 ____D C:\Windows\system32\Macromed
- 2018-02-07 00:16 - 2011-09-23 19:08 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
- 2018-02-07 00:16 - 2011-09-23 19:08 - 000000000 ____D C:\Windows\SysWOW64\Macromed
- 2018-02-06 00:22 - 2014-05-21 19:02 - 000002255 _____ C:\Users\melissa.parton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
- 2018-02-06 00:22 - 2011-12-09 19:54 - 000001426 _____ C:\Users\zeph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
- 2018-02-06 00:20 - 2011-09-23 19:20 - 000000000 ____D C:\Temp
- 2018-02-06 00:16 - 2015-04-24 14:38 - 000000000 ____D C:\Users\Bubbles
- 2018-02-06 00:16 - 2011-12-09 11:18 - 000000000 ____D C:\Users\melissa.parton
- 2018-02-06 00:12 - 2014-05-21 19:05 - 000000000 ____D C:\Users\melissa.parton\AppData\Local\com
- 2018-02-02 18:36 - 2018-01-11 22:13 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\U3
- 2018-02-02 18:13 - 2011-09-23 19:32 - 000000000 ____D C:\ProgramData\Sonic
- 2018-02-01 19:58 - 2018-01-12 15:46 - 000000000 ____D C:\Users\Zachariah\Desktop\Money Accounts
- 2018-02-01 16:01 - 2016-09-17 19:05 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Adobe
- 2018-01-28 02:17 - 2016-11-09 16:45 - 000006422 _____ C:\Windows\system32\PerfStringBackup.TMP
- 2018-01-26 08:46 - 2018-01-09 21:46 - 000000000 ____D C:\Program Files (x86)\TeamViewer
- 2018-01-24 20:04 - 2011-12-09 19:53 - 000000000 ____D C:\Users\zeph\AppData\Local\SoftThinks
- 2018-01-21 22:52 - 2016-06-19 14:42 - 000000000 ____D C:\Users\zeph\AppData\Local\Warframe
- 2018-01-21 16:19 - 2017-10-06 17:52 - 000002185 _____ C:\Users\Zachariah\Desktop\Discord.lnk
- 2018-01-21 16:19 - 2017-10-06 17:52 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
- 2018-01-21 16:18 - 2017-10-06 17:52 - 000000000 ____D C:\Users\Zachariah\AppData\Local\Discord
- 2018-01-21 14:09 - 2018-01-12 15:45 - 000000000 ____D C:\Users\Zachariah\Desktop\Mod Menus
- 2018-01-19 21:16 - 2009-07-13 21:32 - 000000000 ____D C:\Windows\system32\FxsTmp
- ==================== Files in the root of some directories =======
- 2015-04-17 13:25 - 2015-04-17 13:25 - 000040960 ___SH () C:\Users\zeph\AppData\Roaming\Thumbs.db
- 2015-12-09 08:02 - 2016-04-09 23:02 - 000000184 _____ () C:\Users\zeph\AppData\Roaming\WB.CFG
- 2015-04-14 16:28 - 2016-07-25 18:08 - 000005632 _____ () C:\Users\zeph\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- 2017-05-30 20:14 - 2017-05-30 20:14 - 000000856 _____ () C:\Users\zeph\AppData\Local\recently-used.xbel
- 2018-01-13 23:38 - 2018-01-13 23:38 - 000000017 _____ () C:\Users\zeph\AppData\Local\resmon.resmoncfg
- Some files in TEMP:
- ====================
- 2015-05-04 18:42 - 2015-05-04 18:42 - 000017408 _____ () C:\Users\Bubbles\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.2-R0.3-66-g43d8943-b3078jnks.dll
- 2015-05-06 14:14 - 2015-05-06 14:14 - 000017408 _____ () C:\Users\Bubbles\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.9-R0.1-10-g8688bd4-b3092jnks.dll
- 2017-12-09 08:41 - 2017-12-09 08:41 - 000196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Bubbles\AppData\Local\Temp\jna1617238922989721212.dll
- 2017-12-09 08:41 - 2017-12-09 08:41 - 000196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Bubbles\AppData\Local\Temp\jna3310035401192232061.dll
- 2017-12-09 08:41 - 2017-12-09 08:41 - 000196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Bubbles\AppData\Local\Temp\jna5728183482496861583.dll
- 2015-05-04 18:42 - 2015-05-04 18:42 - 000515584 _____ () C:\Users\Bubbles\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll
- 2015-08-10 09:35 - 2018-02-17 01:40 - 004130632 _____ () C:\Users\melissa.parton\AppData\Local\Temp\A7DA.exe
- 2014-05-27 19:07 - 2014-05-27 19:07 - 000043008 _____ () C:\Users\melissa.parton\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpp3lpj7.dll
- 2013-02-15 21:00 - 2018-02-17 01:40 - 000938920 _____ () C:\Users\melissa.parton\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
- 2013-07-22 11:39 - 2013-03-06 02:38 - 000421200 _____ (Microsoft Corporation) C:\Users\melissa.parton\AppData\Local\Temp\msvcp100.dll
- 2013-07-22 11:39 - 2013-03-06 02:38 - 000770384 _____ (Microsoft Corporation) C:\Users\melissa.parton\AppData\Local\Temp\msvcr100.dll
- 2015-08-30 06:42 - 2018-02-17 01:40 - 001062144 _____ () C:\Users\melissa.parton\AppData\Local\Temp\Setup.exe
- 2018-02-17 02:55 - 2017-09-13 07:31 - 001732864 _____ (Microsoft Corporation) C:\Users\Zachariah\AppData\Local\Temp\dllnt_dump.dll
- 2018-02-11 17:50 - 2018-02-11 17:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-1003605761318495508.dll
- 2018-02-13 19:28 - 2018-02-13 19:28 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-1057330346268973887.dll
- 2018-02-15 15:57 - 2018-02-15 15:57 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-1842874117193007213.dll
- 2018-02-16 02:54 - 2018-02-16 02:54 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2071120878683048659.dll
- 2018-02-15 18:03 - 2018-02-15 18:03 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2217262156111852724.dll
- 2018-02-13 18:14 - 2018-02-13 18:14 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2256941796770265941.dll
- 2018-02-15 00:06 - 2018-02-15 00:06 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2480380032324251564.dll
- 2018-02-13 19:59 - 2018-02-13 19:59 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2927619004224897280.dll
- 2018-02-15 00:10 - 2018-02-15 00:10 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2981994602449113615.dll
- 2018-02-15 17:02 - 2018-02-15 17:02 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-3139518187486773948.dll
- 2018-02-13 23:27 - 2018-02-13 23:27 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-3994561292159906205.dll
- 2018-02-16 00:17 - 2018-02-16 00:17 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4165678412746639491.dll
- 2018-02-12 15:36 - 2018-02-12 15:36 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4190637169983638646.dll
- 2018-02-16 14:17 - 2018-02-16 14:17 - 000019968 _____ (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4579273629588291838.dll
- 2018-02-14 21:08 - 2018-02-14 21:08 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4628707564687501445.dll
- 2018-02-11 17:51 - 2018-02-11 17:51 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4874385576508486361.dll
- 2018-02-15 16:36 - 2018-02-15 16:36 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4905798434903190392.dll
- 2018-02-15 00:33 - 2018-02-15 00:33 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5026259207108659686.dll
- 2018-02-11 17:46 - 2018-02-11 17:46 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5343479210821923330.dll
- 2018-02-11 17:51 - 2018-02-11 17:51 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5684925725831587375.dll
- 2018-02-17 04:36 - 2018-02-17 04:36 - 000019968 _____ (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5889873260634635178.dll
- 2018-02-13 16:03 - 2018-02-13 16:03 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-6515611782637987041.dll
- 2018-02-14 16:12 - 2018-02-14 16:12 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-6617258911062253659.dll
- 2018-02-15 18:03 - 2018-02-15 18:03 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7073176509125067587.dll
- 2018-02-14 21:09 - 2018-02-14 21:09 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7243677420355586330.dll
- 2018-02-12 17:50 - 2018-02-12 17:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7312781173370008574.dll
- 2018-02-12 18:06 - 2018-02-12 18:06 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7768724583859828051.dll
- 2018-02-15 15:26 - 2018-02-15 15:26 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-8101248351030677499.dll
- 2018-02-14 15:34 - 2018-02-14 15:34 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-8604223002900086251.dll
- 2018-02-15 18:02 - 2018-02-15 18:02 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-8863087648413024877.dll
- 2018-02-13 07:18 - 2018-02-13 07:18 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-9033035293128066467.dll
- 2016-04-21 05:41 - 2018-02-17 02:38 - 000339184 _____ () C:\Users\Zachariah\AppData\Local\Temp\tap-windows.exe
- 2016-09-02 07:54 - 2018-02-17 02:46 - 000243320 _____ () C:\Users\zeph\AppData\Local\Temp\gface_swap.exe
- 2013-05-28 06:10 - 2018-02-17 02:46 - 002219792 _____ () C:\Users\zeph\AppData\Local\Temp\install_flashplayer11x32_gdra_aih.exe
- 2013-07-12 19:40 - 2018-02-17 02:46 - 001151976 _____ () C:\Users\zeph\AppData\Local\Temp\install_flashplayer11x32_mssa_aaa_aih.exe
- 2017-10-02 19:09 - 2017-10-02 19:09 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1279469796728839946.dll
- 2017-07-28 11:40 - 2017-07-28 11:40 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1570865730745932328.dll
- 2017-06-02 19:30 - 2017-06-02 19:30 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1661423960941769511.dll
- 2017-03-06 15:49 - 2017-03-06 15:49 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1804081909174317813.dll
- 2017-10-04 18:33 - 2017-10-04 18:33 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1935534085753146713.dll
- 2017-07-15 14:48 - 2017-07-15 14:48 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2214057964422071831.dll
- 2017-04-25 16:36 - 2017-04-25 16:36 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2632939777295665827.dll
- 2017-07-15 14:52 - 2017-07-15 14:52 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2761186562994651708.dll
- 2017-07-31 13:30 - 2017-07-31 13:30 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2810543338407117130.dll
- 2017-07-15 14:43 - 2017-07-15 14:43 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2818344121858843627.dll
- 2017-04-25 16:59 - 2017-04-25 16:59 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-3364091806545352185.dll
- 2017-07-15 15:03 - 2017-07-15 15:03 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-3518931876719614200.dll
- 2017-08-01 10:40 - 2017-08-01 10:40 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-3801572160609146640.dll
- 2017-05-11 16:44 - 2017-05-11 16:44 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-4028541498233498839.dll
- 2017-06-05 17:04 - 2017-06-05 17:04 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-4813197152696114506.dll
- 2017-07-15 14:45 - 2017-07-15 14:45 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-4896992834246006637.dll
- 2017-05-11 16:50 - 2017-05-11 16:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-5407797662631504046.dll
- 2017-06-09 18:49 - 2017-06-09 18:49 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6104821504690773423.dll
- 2017-06-04 19:26 - 2017-06-04 19:26 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6181485709077095614.dll
- 2017-06-11 12:25 - 2017-06-11 12:25 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6252108445546095604.dll
- 2017-07-31 12:31 - 2017-07-31 12:31 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6686702784296936476.dll
- 2017-06-06 18:35 - 2017-06-06 18:35 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6989821538298088208.dll
- 2017-07-15 14:41 - 2017-07-15 14:41 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7272963730153137478.dll
- 2017-06-02 19:17 - 2017-06-02 19:17 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7423266792299993430.dll
- 2017-04-14 17:55 - 2017-04-14 17:55 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7452499988640859056.dll
- 2017-07-27 19:29 - 2017-07-27 19:29 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7935104901988008237.dll
- 2017-07-27 09:46 - 2017-07-27 09:46 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7985500139610608052.dll
- 2017-07-15 14:49 - 2017-07-15 14:49 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-813009440097658610.dll
- 2017-03-06 15:54 - 2017-03-06 15:54 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-8152169603195586303.dll
- 2017-06-02 19:50 - 2017-06-02 19:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-8872571410451042491.dll
- 2017-07-15 14:44 - 2017-07-15 14:44 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-907908814173914628.dll
- 2016-05-19 19:10 - 2016-05-19 19:10 - 000017408 _____ () C:\Users\zeph\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.9-R0.2-10-ge6cd8c0-b3096jnks.dll
- 2015-06-05 19:37 - 2018-02-17 02:46 - 000603744 _____ () C:\Users\zeph\AppData\Local\Temp\jre-8u45-windows-au.exe
- 2013-07-29 14:35 - 2013-03-06 02:38 - 000421200 _____ (Microsoft Corporation) C:\Users\zeph\AppData\Local\Temp\msvcp100.dll
- 2013-07-29 14:35 - 2013-03-06 02:38 - 000770384 _____ (Microsoft Corporation) C:\Users\zeph\AppData\Local\Temp\msvcr100.dll
- 2018-02-10 13:11 - 2018-02-10 13:11 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_20182101143938.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_20182101211525.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_20182101213105.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210121470.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210122030.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210122617.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210127472.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210127799.dll
- 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210128131.dll
- 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944161.dll
- 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944202.dll
- 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944405.dll
- 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944449.dll
- 2017-05-12 21:11 - 2018-02-17 02:46 - 001425736 _____ () C:\Users\zeph\AppData\Local\Temp\RemoveTemp.exe
- 2012-06-13 14:00 - 2018-02-17 02:46 - 000268568 _____ () C:\Users\zeph\AppData\Local\Temp\Shockwave_Installer_FF.exe
- 2016-02-14 14:18 - 2017-11-24 13:37 - 058804680 _____ (Skype Technologies S.A.) C:\Users\zeph\AppData\Local\Temp\SkypeSetup.exe
- 2016-05-19 19:10 - 2016-05-19 19:10 - 000515584 _____ () C:\Users\zeph\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll
- 2014-05-10 12:12 - 2018-02-17 02:46 - 000110725 _____ () C:\Users\zeph\AppData\Local\Temp\Uninstall.exe
- ==================== Bamital & volsnap ======================
- (There is no automatic fix for files that do not pass verification.)
- C:\Windows\system32\winlogon.exe => File is digitally signed
- C:\Windows\system32\wininit.exe => File is digitally signed
- C:\Windows\SysWOW64\wininit.exe => File is digitally signed
- C:\Windows\explorer.exe => File is digitally signed
- C:\Windows\SysWOW64\explorer.exe => File is digitally signed
- C:\Windows\system32\svchost.exe => File is digitally signed
- C:\Windows\SysWOW64\svchost.exe => File is digitally signed
- C:\Windows\system32\services.exe => File is digitally signed
- C:\Windows\system32\User32.dll => File is digitally signed
- C:\Windows\SysWOW64\User32.dll => File is digitally signed
- C:\Windows\system32\userinit.exe => File is digitally signed
- C:\Windows\SysWOW64\userinit.exe => File is digitally signed
- C:\Windows\system32\rpcss.dll => File is digitally signed
- C:\Windows\system32\dnsapi.dll => File is digitally signed
- C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
- C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2018-02-17 06:25
- ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement