Advertisement
Guest User

FRST

a guest
Feb 17th, 2018
9,659
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 68.77 KB | None | 0 0
  1. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.02.2018
  2. Ran by zeph (administrator) on ADELE (17-02-2018 18:58:57)
  3. Running from C:\Users\zeph\Desktop
  4. Loaded Profiles: zeph & postgres (Available Profiles: melissa.parton & zeph & Bubbles & Zachariah & postgres & Guest)
  5. Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
  6. Internet Explorer Version 11 (Default browser: FF)
  7. Boot Mode: Normal
  8. Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Processes (Whitelisted) =================
  11.  
  12. (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
  13.  
  14. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  15. (AMD) C:\Windows\System32\atiesrxx.exe
  16. (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE
  17. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  18. (AMD) C:\Windows\System32\atieclxx.exe
  19. (Dell, Inc.) C:\Windows\Temp\3582-490\NOBUAG~1.EXE
  20. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  21. (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
  22. () C:\Windows\SysWOW64\PnkBstrA.exe
  23. () C:\Windows\SysWOW64\PnkBstrB.exe
  24. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe
  25. (SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
  26. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  27. (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
  28. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  29. (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
  30. (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
  31. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  32. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  33. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  34. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  35. (PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
  36. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
  37. (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
  38. (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
  39. () C:\Program Files (x86)\Gaming Mouse\Monitor.exe
  40. (Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
  41. (Microsoft Corporation) C:\Windows\System32\dllhost.exe
  42. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
  43. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  44. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  45. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  46. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  47. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  48. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  49. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  50.  
  51. ==================== Registry (Whitelisted) ===========================
  52.  
  53. (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
  54.  
  55. HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10920552 2010-06-22] (Realtek Semiconductor)
  56. HKLM\...\Run: [RunDLLEntry_THXCfg] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64
  57. HKLM\...\Run: [RunDLLEntry_EptMon] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\EptMon64.dll,RunDLLEntry EptMon64
  58. HKLM\...\Run: [DellStage] => C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe [2137960 2018-02-17] ()
  59. HKLM\...\Run: [corruptly] => "C:\Program Files (x86)\looming\eydie.exe"
  60. HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
  61. HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
  62. HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
  63. HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2220688 2018-02-17] (Wondershare)
  64. HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
  65. HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [179000 2018-02-17] (Hewlett-Packard)
  66. HKLM-x32\...\Run: [] => [X]
  67. HKLM-x32\...\Run: [Gaming Mouse Driver] => C:\Program Files (x86)\Gaming Mouse\Monitor.exe [213504 2018-02-17] ()
  68. HKLM\...\Policies\Explorer: [HideSCAHealth] 1
  69. HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
  70. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3277600 2018-02-17] ()
  71. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Run: [Discord] => C:\Users\zeph\AppData\Local\Discord\app-0.0.300\Discord.exe [57821176 2018-01-08] (Discord Inc.)
  72. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Policies\system: [LogonHoursAction] 2
  73. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
  74. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {0cc4d481-c726-11e7-8813-180373c4c04d} - E:\LaunchU3.exe -a
  75. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {0da92fca-9c1d-11e1-8745-180373c4c04d} - "J:\WD SmartWare.exe" autoplay=true
  76. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {43d3d11a-30b0-11e5-b061-180373c4c04d} - M:\VZW_Software_upgrade_assistant.exe
  77. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {674aebc8-e66a-11e0-b21a-806e6f6e6963} - D:\Autorun.exe
  78. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb9985-9210-11e2-836d-180373c4c04d} - E:\autorun.exe
  79. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb9989-9210-11e2-836d-180373c4c04d} - M:\RunGame.exe
  80. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb998e-9210-11e2-836d-180373c4c04d} - N:\RunGame.exe
  81. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\...\MountPoints2: {82bb9992-9210-11e2-836d-180373c4c04d} - O:\RunGame.exe
  82. Startup: C:\Users\Bubbles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-10-18]
  83. ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\zeph\AppData\Local\Facebook\Games\FacebookGameroom.exe (No File)
  84. Startup: C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\agatha.lnk [2017-06-15]
  85. BootExecute: autocheck autochk /k:C *
  86. GroupPolicyUsers\S-1-5-21-3803275921-3941053817-2581775902-1006\User: Restriction <==== ATTENTION
  87. GroupPolicyUsers\S-1-5-21-3803275921-3941053817-2581775902-1005\User: Restriction <==== ATTENTION
  88. CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
  89.  
  90. ==================== Internet (Whitelisted) ====================
  91.  
  92. (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
  93.  
  94. Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
  95. Tcpip\Parameters: [DhcpNameServer] 216.110.192.1 216.110.192.9
  96. Tcpip\..\Interfaces\{4766E8F9-DFA1-4E5E-9802-2CD3A5A91D32}: [DhcpNameServer] 216.110.192.1 216.110.192.9
  97.  
  98. Internet Explorer:
  99. ==================
  100. HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
  101. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
  102. HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
  103. HKU\S-1-5-21-3803275921-3941053817-2581775902-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/USCON/1
  104. SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
  105. SearchScopes: HKLM -> {31090377-0740-419E-BEFC-A56E50500D5B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
  106. SearchScopes: HKLM-x32 -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL =
  107. SearchScopes: HKU\.DEFAULT -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL =
  108. SearchScopes: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1
  109. SearchScopes: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> {31090377-0740-419E-BEFC-A56E50500D5B} URL =
  110. BHO: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111213161601.dll [2011-12-13] (McAfee, Inc.)
  111. BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
  112. BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
  113. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-04-02] (Oracle Corporation)
  114. BHO-x32: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111213161601.dll => No File
  115. BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
  116. BHO-x32: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
  117. BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
  118. BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-04-02] (Oracle Corporation)
  119. Toolbar: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} - No File
  120. Toolbar: HKU\S-1-5-21-3803275921-3941053817-2581775902-1005 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
  121. Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
  122. StartMenuInternet: IEXPLORE.EXE - iexplore.exe
  123.  
  124. FireFox:
  125. ========
  126. FF ProfilePath: C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default [2018-02-17]
  127. FF Homepage: Mozilla\Firefox\Profiles\2pyzg0v5.default -> about:home
  128. FF Extension: (RooyalCCouuponn) - C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default\Extensions\9tgz422m@snssmaiyu.net [2015-07-08] [Legacy] [not signed]
  129. FF Extension: (SofattCoup) - C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default\Extensions\e4tzc@eaiyyaiiw.com [2015-07-08] [Legacy] [not signed]
  130. FF Extension: (TicTaCouupon) - C:\Users\zeph\AppData\Roaming\Mozilla\Firefox\Profiles\2pyzg0v5.default\Extensions\k37cpfz@d-u.org [2015-07-08] [Legacy] [not signed]
  131. FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore => not found
  132. FF HKLM-x32\...\Firefox\Extensions: [netsight@nielsen.com] - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\netsight@nielsen.xpi => not found
  133. FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_28_0_0_161.dll [2018-02-07] ()
  134. FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-07-13] (Oracle Corporation)
  135. FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre1.8.0_40\bin\new_plugin\npjp2.dll [No File]
  136. FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-04-02] (Oracle Corporation)
  137. FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
  138. FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
  139. FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
  140. FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_161.dll [2018-02-07] ()
  141. FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
  142. FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-04-02] (Oracle Corporation)
  143. FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-04-02] (Oracle Corporation)
  144. FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
  145. FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
  146. FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
  147. FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
  148. FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-09] (Microsoft Corporation)
  149. FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-09] (Microsoft Corporation)
  150. FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-12] (NVIDIA Corporation)
  151. FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-12] (NVIDIA Corporation)
  152. FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
  153. FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
  154. FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
  155. FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
  156. FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-11] (Adobe Systems Inc.)
  157. FF Plugin HKU\S-1-5-21-3803275921-3941053817-2581775902-1005: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\zeph\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-07-08] (Unity Technologies ApS)
  158. StartMenuInternet: FIREFOX.EXE - C:\Users\Bubbles\AppData\Local\Mozilla Firefox\firefox.exe
  159.  
  160. Chrome:
  161. =======
  162. CHR HomePage: Default -> hxxps://www.google.com/
  163. CHR StartupUrls: Default -> "hxxp://test.nillysrealm.com/"
  164. CHR Session Restore: Default -> is enabled.
  165. CHR Profile: C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default [2018-02-17]
  166. CHR Extension: (Docs) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-11]
  167. CHR Extension: (Google Drive) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-23]
  168. CHR Extension: (YouTube) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-19]
  169. CHR Extension: (Slither.io Mods) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnlenmmkifnhllnjfoangnjokeadhbbk [2016-04-30]
  170. CHR Extension: (Google Search) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-23]
  171. CHR Extension: (Lamborghini Sesto Elemento Theme) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\dappigdjllcnkkoacaoolciaolaaiemb [2018-02-06]
  172. CHR Extension: (Adobe Acrobat) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-04]
  173. CHR Extension: (Google Docs Offline) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
  174. CHR Extension: (Chrome Web Store Payments) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-23]
  175. CHR Extension: (Gmail) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-01]
  176. CHR Extension: (Chrome Media Router) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-20]
  177. CHR Profile: C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile [2015-07-15]
  178. CHR Extension: (Google Slides) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-15]
  179. CHR Extension: (Google Docs) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-15]
  180. CHR Extension: (Google Drive) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-15]
  181. CHR Extension: (YouTube) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-15]
  182. CHR Extension: (Google Search) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-15]
  183. CHR Extension: (Ads ext) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\dddohfllflmcpghepofcicinmkceappc [2015-07-15] [UpdateUrl: hxxp://ads-api.new-minecraft.com/updates/chrome/update] <==== ATTENTION
  184. CHR Extension: (Google Sheets) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-15]
  185. CHR Extension: (Chrome Hotword Shared Module) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-15]
  186. CHR Extension: (Google Wallet) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-15]
  187. CHR Extension: (Gmail) - C:\Users\zeph\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-15]
  188. CHR HKLM-x32\...\Chrome\Extension: [dddohfllflmcpghepofcicinmkceappc] - C:\Program Files (x86)\MineCraft DLInstaller\extension_0.0.15.crx <not found>
  189. CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
  190.  
  191. ==================== Services (Whitelisted) ====================
  192.  
  193. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  194.  
  195. S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7054344 2018-02-17] () [File not signed]
  196. S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1128200 2018-02-17] () [File not signed]
  197. S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [149320 2018-02-17] () [File not signed]
  198. S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [149320 2018-02-17] () [File not signed]
  199. S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
  200. S3 MozillaMaintenance; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [277456 2018-02-17] () [File not signed]
  201. S3 mracsvc; C:\Windows\System32\mracsvc.exe [7409368 2018-01-05] (LLC Mail.Ru)
  202. R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
  203. S2 NOBU; C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2905944 2018-02-17] () [File not signed]
  204. S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [5560840 2016-05-11] (INCA Internet Co., Ltd.)
  205. R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-10] (NVIDIA Corporation)
  206. S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-10] (NVIDIA Corporation)
  207. S3 odserv; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [482168 2018-02-17] () [File not signed]
  208. S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [186656 2018-02-17] () [File not signed]
  209. R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
  210. R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2017-08-16] ()
  211. R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2017-08-16] ()
  212. S3 RoxMediaDB12OEM; C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [1199600 2018-02-17] () [File not signed]
  213. S2 RoxWatch12; C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [302576 2018-02-17] () [File not signed]
  214. S2 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [358872 2018-02-17] () [File not signed]
  215. S3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [1727776 2018-02-17] () [File not signed]
  216. S3 stllssvr; C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe [157336 2018-02-17] () [File not signed]
  217. R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10945776 2017-12-15] (TeamViewer GmbH)
  218. S2 VMUSBArbService; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [957512 2018-02-17] () [File not signed]
  219. S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
  220. S3 ACTION_SVC; C:\Program Files (x86)\Mirillis\Action!\action_svc.exe [X]
  221. S2 Ds3Service; "C:\Users\Zachariah\Desktop\SCP-DS3-Driver-Package-1.0.0.103\ScpServer\bin\ScpService.exe" [X]
  222. S2 LMIGuardianSvc; "C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe" [X]
  223. S2 mfevtp; "C:\Windows\system32\mfevtps.exe" [X]
  224. R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
  225. R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
  226. S3 OpenVPNService; "C:\Program Files\OpenVPN\bin\openvpnserv2.exe" [X]
  227. S2 OpenVPNServiceInteractive; "C:\Program Files\OpenVPN\bin\openvpnserv.exe" [X]
  228. S3 OpenVPNServiceLegacy; "C:\Program Files\OpenVPN\bin\openvpnserv.exe" [X]
  229. R2 postgresql-x64-9.5; "C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe" runservice -N "postgresql-x64-9.5" -D "C:\Program Files\PostgreSQL\9.5\data" -w
  230. S2 VMAuthdService; "C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe" [X]
  231.  
  232. ===================== Drivers (Whitelisted) ======================
  233.  
  234. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  235.  
  236. S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [96256 2015-07-15] (Advanced Micro Devices) [File not signed]
  237. S3 CV2K1; C:\Windows\System32\DRIVERS\cv2k1.sys [32616 2016-08-02] (TamoSoft)
  238. S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
  239. S3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-11-18] (Symantec Corporation)
  240. S3 libusbK; C:\Windows\System32\DRIVERS\libusbK.sys [47200 2017-04-13] (hxxp://libusb-win32.sourceforge.net)
  241. R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253880 2018-02-17] (Malwarebytes)
  242. S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [158712 2011-12-13] (McAfee, Inc.)
  243. R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [228752 2011-12-13] (McAfee, Inc.)
  244. R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [642952 2011-12-13] (McAfee, Inc.)
  245. S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100904 2011-12-13] (McAfee, Inc.)
  246. R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [283744 2011-12-13] (McAfee, Inc.)
  247. S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-10-10] (NVIDIA Corporation)
  248. R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-10-10] (NVIDIA Corporation)
  249. R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-10-12] (NVIDIA Corporation)
  250. S3 PCDSRVC{1E208CE0-FB7451FF-06020101}_0; c:\program files\dell support center\pcdsrvc_x64.pkms [25072 2011-03-17] (PC-Doctor, Inc.)
  251. R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-05] (Scarlet.Crush Productions)
  252. R3 TSCOMM; C:\Windows\System32\DRIVERS\tscomm.sys [57176 2017-11-27] (TamoSoft)
  253. S3 TsVlb; C:\Windows\System32\DRIVERS\tsvlb.sys [33128 2016-08-03] (TamoSoft)
  254. R1 TsVp; C:\Windows\System32\DRIVERS\tsvp.sys [37224 2016-08-03] (TamoSoft)
  255. U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
  256. R3 VBAudioVMVAIOMME; C:\Windows\System32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2018-01-15] (Windows (R) Win 7 DDK provider)
  257. R3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [200832 2018-01-15] (Oracle Corporation)
  258. R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [211704 2018-01-15] (Oracle Corporation)
  259. R3 vjoy; C:\Windows\System32\DRIVERS\vjoy.sys [57976 2017-03-09] (Shaul Eizikovich)
  260. R1 vmkbd3; C:\Windows\System32\DRIVERS\vmkbd.sys [52288 2016-11-11] (VMware, Inc.)
  261. R0 vsock; C:\Windows\System32\DRIVERS\vsock.sys [93248 2016-09-30] (VMware, Inc.)
  262. S3 AppObserver; \??\C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys [X]
  263. S2 hcmon; system32\DRIVERS\hcmon.sys [X]
  264. S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
  265. S2 VMnetBridge; system32\DRIVERS\vmnetbridge.sys [X]
  266. S2 VMnetUserif; system32\DRIVERS\vmnetuserif.sys [X]
  267. S2 vmx86; system32\DRIVERS\vmx86.sys [X]
  268.  
  269. ==================== NetSvcs (Whitelisted) ===================
  270.  
  271. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  272.  
  273.  
  274. ==================== One Month Created files and folders ========
  275.  
  276. (If an entry is included in the fixlist, the file/folder will be moved.)
  277.  
  278. 2018-02-17 18:51 - 2018-02-17 18:52 - 000108536 _____ C:\Users\zeph\Desktop\Addition.txt
  279. 2018-02-17 18:49 - 2018-02-17 18:59 - 000027530 _____ C:\Users\zeph\Desktop\FRST.txt
  280. 2018-02-17 18:49 - 2018-02-17 18:58 - 000000000 ____D C:\FRST
  281. 2018-02-17 18:38 - 2018-02-17 18:58 - 002403840 _____ (Farbar) C:\Users\zeph\Desktop\FRST64.exe
  282. 2018-02-17 18:24 - 2018-02-17 18:36 - 000000000 ____D C:\AdwCleaner
  283. 2018-02-17 18:23 - 2018-02-17 18:58 - 008305440 _____ C:\Users\zeph\Desktop\AdwCleaner.exe
  284. 2018-02-17 18:15 - 2018-02-17 18:15 - 000041472 _____ C:\Windows\svchost.com
  285. 2018-02-17 16:56 - 2018-02-17 16:56 - 000001208 _____ C:\Users\zeph\Desktop\Subnautica.lnk
  286. 2018-02-17 15:12 - 2018-02-17 15:12 - 000002052 _____ C:\Windows\epplauncher.mif
  287. 2018-02-17 14:59 - 2018-02-17 15:04 - 015065792 _____ (Microsoft Corporation) C:\Users\Zachariah\Downloads\mseinstall.exe
  288. 2018-02-17 14:50 - 2018-02-17 18:15 - 000000000 ____D C:\ProgramData\SecTaskMan
  289. 2018-02-17 14:50 - 2018-02-17 14:50 - 000001104 _____ C:\Users\Public\Desktop\Security Task Manager.lnk
  290. 2018-02-17 14:50 - 2018-02-17 14:50 - 000000000 ____D C:\Program Files (x86)\Security Task Manager
  291. 2018-02-17 14:49 - 2018-02-17 14:50 - 003038672 _____ C:\Users\Zachariah\Downloads\SecurityTaskManager_Setup.exe
  292. 2018-02-17 14:48 - 2018-02-17 14:48 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
  293. 2018-02-17 14:48 - 2018-02-17 14:48 - 000000000 ____D C:\Program Files\Unlocker
  294. 2018-02-17 14:47 - 2018-02-17 16:48 - 001161535 _____ C:\Users\Zachariah\Downloads\Unlocker1.9.2.exe
  295. 2018-02-17 12:45 - 2018-02-17 12:45 - 000000000 ____D C:\Users\Zachariah\Documents\AutomaticSolution Software
  296. 2018-02-17 12:44 - 2018-02-17 13:23 - 000824647 _____ C:\Users\Zachariah\Desktop\AutoClicker.exe
  297. 2018-02-17 12:33 - 2018-02-17 12:33 - 000000000 ____D C:\Users\Zachariah\AppData\Local\Apple
  298. 2018-02-17 12:30 - 2018-02-17 12:30 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\McAfee
  299. 2018-02-17 12:00 - 2018-02-17 12:00 - 000001191 _____ C:\Users\Bubbles\Desktop\Kerbal Space Program.lnk
  300. 2018-02-17 11:48 - 2018-02-17 11:57 - 000000000 ____D C:\Users\Bubbles\Desktop\Kerbal Space Program
  301. 2018-02-17 04:26 - 2018-02-17 12:56 - 000000926 _____ C:\Users\Public\Desktop\Minecraft.lnk
  302. 2018-02-17 04:26 - 2018-02-17 04:26 - 002314240 _____ C:\Users\Zachariah\Downloads\MinecraftInstaller(1).msi
  303. 2018-02-17 02:56 - 2018-02-17 02:56 - 000028272 _____ C:\Windows\system32\Drivers\TrueSight.sys
  304. 2018-02-17 02:54 - 2018-02-17 02:55 - 036393136 _____ (Adlice Software ) C:\Users\Zachariah\Downloads\setup(1).exe
  305. 2018-02-17 02:24 - 2018-02-17 02:24 - 000253880 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
  306. 2018-02-17 01:20 - 2018-02-17 18:58 - 000000087 _____ C:\Windows\directx.sys
  307. 2018-02-17 01:20 - 2018-02-17 01:20 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\IntelliVoid
  308. 2018-02-17 01:17 - 2018-02-17 01:23 - 054335127 _____ C:\Users\Zachariah\Downloads\vpngate-client-2018.02.17-build-9656.140635.zip
  309. 2018-02-16 18:05 - 2018-02-16 18:05 - 000001591 _____ C:\Users\zeph\Desktop\GettingOverIt.lnk
  310. 2018-02-16 18:05 - 2018-02-16 18:05 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Bennett Foddy
  311. 2018-02-16 17:19 - 2018-02-16 17:19 - 000000000 ____D C:\Users\zeph\Documents\Black Ops 2 - GSC Studio
  312. 2018-02-16 17:19 - 2018-02-16 17:19 - 000000000 ____D C:\Users\zeph\AppData\Local\iMCS_Productions
  313. 2018-02-16 17:15 - 2018-02-17 16:56 - 000000000 ____D C:\Users\zeph\Desktop\Games
  314. 2018-02-16 17:15 - 2018-02-16 18:57 - 000001834 _____ C:\Users\zeph\Desktop\OxygenNotIncluded.lnk
  315. 2018-02-15 23:50 - 2018-02-16 17:40 - 000001573 _____ C:\Users\zeph\Desktop\Clustertruck.lnk
  316. 2018-02-15 23:11 - 2018-02-15 23:11 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Landfall
  317. 2018-02-15 18:40 - 2018-02-15 18:40 - 000031636 _____ C:\Users\Zachariah\Untitled Project.osp
  318. 2018-02-15 18:40 - 2018-02-15 18:40 - 000000000 ____D C:\Users\Zachariah\thumbnail
  319. 2018-02-15 18:38 - 2018-02-15 18:40 - 080423770 _____ C:\Users\Zachariah\Desktop\Untitled Project.mp4
  320. 2018-02-14 15:43 - 2018-02-14 15:44 - 000170167 _____ C:\Users\Zachariah\Downloads\PerfectBackup.jar
  321. 2018-02-13 22:11 - 2018-02-13 22:11 - 000000000 ____D C:\Users\Zachariah\Desktop\Resource pack
  322. 2018-02-13 19:32 - 2018-02-13 19:32 - 000006610 _____ C:\Users\Zachariah\Downloads\AutoBroadcaster_1.4.6.zip
  323. 2018-02-13 18:00 - 2018-02-15 18:02 - 000000000 ____D C:\Users\Zachariah\Desktop\SERVER BACKUP
  324. 2018-02-12 17:25 - 2018-02-12 18:27 - 000000000 ____D C:\Program Files (x86)\Simple Port Forwarding
  325. 2018-02-12 17:25 - 2018-02-12 17:25 - 000001939 _____ C:\Users\Zachariah\Desktop\Simple Port Forwarding.lnk
  326. 2018-02-12 17:25 - 2018-02-12 17:25 - 000000000 ____D C:\Windows\Simple Port Forwarding
  327. 2018-02-12 17:25 - 2018-02-12 17:25 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Simple Port Forwarding
  328. 2018-02-12 17:24 - 2018-02-17 02:43 - 007035934 _____ C:\Users\Zachariah\Downloads\simple_port_forwarding_setup.exe
  329. 2018-02-12 17:24 - 2018-02-12 17:25 - 000025884 _____ C:\Windows\Simple Port Forwarding Setup Log.txt
  330. 2018-02-11 17:45 - 2018-02-11 17:45 - 001073654 _____ C:\Users\Zachariah\Downloads\Asian KitPvP.rar
  331. 2018-02-11 14:02 - 2018-02-11 14:02 - 001550014 _____ C:\Users\Zachariah\Downloads\187k+.rar
  332. 2018-02-11 13:45 - 2018-02-11 13:45 - 001313077 _____ C:\Users\Zachariah\Downloads\111k+.rar
  333. 2018-02-10 23:42 - 2018-02-10 23:42 - 000000000 ____D C:\Users\Public\Documents\Steam
  334. 2018-02-10 23:42 - 2018-02-10 23:42 - 000000000 ____D C:\ProgramData\Unknown Worlds
  335. 2018-02-10 23:33 - 2018-02-10 23:33 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Unknown Worlds
  336. 2018-02-10 18:54 - 2018-02-17 12:38 - 000001114 _____ C:\Users\Public\Desktop\Firefox.lnk
  337. 2018-02-10 18:47 - 2018-02-17 02:43 - 000354992 _____ C:\Users\Zachariah\Downloads\Firefox Installer(1).exe
  338. 2018-02-10 13:11 - 2018-02-10 13:12 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Opera Software
  339. 2018-02-10 13:10 - 2018-02-16 18:52 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\uTorrent
  340. 2018-02-10 13:09 - 2018-02-17 00:00 - 000000000 ____D C:\Users\zeph\AppData\Roaming\uTorrent
  341. 2018-02-10 13:09 - 2018-02-10 13:09 - 000000851 _____ C:\Users\zeph\Desktop\µTorrent.lnk
  342. 2018-02-10 02:26 - 2018-02-10 02:26 - 012034935 _____ C:\Users\Zachariah\Downloads\Flux B4.zip
  343. 2018-02-10 02:22 - 2018-02-10 03:47 - 000000000 ____D C:\Users\Zachariah\Desktop\MCLeaksAuthenticator(1)
  344. 2018-02-10 02:22 - 2018-02-10 02:22 - 000043633 _____ C:\Users\Zachariah\Downloads\MCLeaksAuthenticator(1).zip
  345. 2018-02-07 19:40 - 2018-02-07 19:40 - 000000000 ____D C:\Users\zeph\AppData\Roaming\HpUpdate
  346. 2018-02-06 00:22 - 2018-02-06 00:57 - 000000258 __RSH C:\ProgramData\ntuser.pol
  347. 2018-02-05 23:01 - 2018-02-17 01:55 - 000002029 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
  348. 2018-02-05 23:01 - 2018-02-05 23:01 - 000000000 ____D C:\ProgramData\Malwarebytes
  349. 2018-02-05 23:01 - 2018-02-05 23:01 - 000000000 ____D C:\Program Files\Malwarebytes
  350. 2018-02-05 23:01 - 2017-11-29 09:11 - 000077432 _____ C:\Windows\system32\Drivers\mbae64.sys
  351. 2018-02-05 22:57 - 2018-02-05 23:00 - 077935224 _____ (Malwarebytes ) C:\Users\Zachariah\Downloads\mb3-setup-consumer-3.3.1.2183-1.0.262-1.0.3872.exe
  352. 2018-02-03 02:41 - 2018-02-03 02:42 - 000678119 _____ C:\Users\Zachariah\Downloads\50k.rar
  353. 2018-02-03 02:31 - 2018-02-03 02:33 - 007108688 _____ C:\Users\Zachariah\Downloads\2.2_MinecraftBruTe_-_c0d3d_by_julia_pcret1.rar
  354. 2018-02-02 20:56 - 2018-02-02 20:56 - 003096761 _____ C:\Users\Zachariah\Downloads\u.zip
  355. 2018-02-02 20:56 - 2018-02-02 20:56 - 000000600 _____ C:\Users\Zachariah\PUTTY.RND
  356. 2018-02-02 18:37 - 2017-08-08 13:45 - 2794307584 _____ C:\kali-linux-2017.1-amd64.iso
  357. 2018-02-02 12:06 - 2018-02-02 12:06 - 000054005 _____ C:\Users\Zachariah\Downloads\4k+.rar
  358. 2018-02-01 21:43 - 2018-02-01 21:44 - 000868640 _____ C:\Users\Zachariah\Downloads\Paypal_Valid_Email_Checker_v1.3__Stable_.rar
  359. 2018-02-01 21:35 - 2018-02-01 21:35 - 000244814 _____ C:\Users\Zachariah\Downloads\PayPal Brute&Checker [Cracked.rar
  360. 2018-02-01 21:16 - 2018-02-01 21:16 - 000797930 _____ C:\Users\Zachariah\Downloads\Amazon_Valid_Email_Checker.rar
  361. 2018-02-01 19:23 - 2018-02-11 14:10 - 000000000 ____D C:\Users\Zachariah\Desktop\Account Checker Crap
  362. 2018-02-01 19:22 - 2018-02-01 19:22 - 000092776 _____ C:\Users\Zachariah\Downloads\μProxy Tool 1.71.zip
  363. 2018-02-01 19:13 - 2018-02-01 19:13 - 000000000 ____D C:\Users\Zachariah\AppData\Local\SkinSoft
  364. 2018-02-01 19:08 - 2018-02-01 19:08 - 003285033 _____ C:\Users\Zachariah\Downloads\GatherProxy.rar
  365. 2018-02-01 19:06 - 2018-02-01 19:07 - 003822439 _____ C:\Users\Zachariah\Downloads\GPTool.rar
  366. 2018-01-29 15:58 - 2018-01-29 15:58 - 000000011 _____ C:\Users\Zachariah\Downloads\talkingslug ip.txt
  367. 2018-01-29 15:57 - 2018-01-29 15:57 - 000000012 _____ C:\Users\Zachariah\Downloads\FLAKEY IP.txt
  368. 2018-01-28 21:05 - 2018-01-28 21:05 - 000000033 _____ C:\Users\Zachariah\Downloads\juniorgallardo2.txt
  369. 2018-01-28 03:03 - 2018-02-05 16:47 - 000000000 ____D C:\Users\zeph\Desktop\Stuff
  370. 2018-01-28 02:30 - 2018-01-28 02:30 - 000000000 ____D C:\Users\zeph\VirtualBox VMs
  371. 2018-01-28 02:24 - 2018-02-05 16:47 - 000000000 ____D C:\Users\zeph\.VirtualBox
  372. 2018-01-28 02:23 - 2018-01-28 02:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\J9\Oracle VM VirtualBox
  373. 2018-01-28 02:23 - 2018-01-15 15:59 - 000972192 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
  374. 2018-01-28 02:23 - 2018-01-15 15:59 - 000157672 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
  375. 2018-01-28 02:21 - 2018-01-28 02:21 - 000000000 ____D C:\Program Files\Oracle
  376. 2018-01-27 23:50 - 2018-01-27 23:50 - 000000013 _____ C:\Users\Zachariah\Desktop\ninjakn ip.txt
  377. 2018-01-27 22:44 - 2018-02-06 00:20 - 000000000 __SHD C:\ProgramData\AFHAHK
  378. 2018-01-27 22:44 - 2018-02-05 23:11 - 000000000 ____D C:\ProgramData\DFX
  379. 2018-01-27 20:25 - 2018-01-27 20:25 - 000003770 _____ C:\Windows\System32\Tasks\CommView Update
  380. 2018-01-27 20:25 - 2018-01-27 20:25 - 000000000 ____D C:\Users\Zachariah\Documents\CommView
  381. 2018-01-27 20:25 - 2018-01-27 20:25 - 000000000 ____D C:\ProgramData\TamoSoft
  382. 2018-01-27 20:24 - 2018-01-27 23:33 - 000000000 ____D C:\Program Files (x86)\CommView
  383. 2018-01-27 20:08 - 2018-01-27 20:09 - 031354875 _____ C:\Users\Zachariah\Downloads\cv6.zip
  384. 2018-01-23 18:02 - 2018-01-23 18:02 - 005789374 _____ C:\Users\Zachariah\Desktop\Whoop Case.zcode
  385. 2018-01-23 17:46 - 2018-01-23 17:47 - 001559824 _____ C:\Users\Zachariah\Downloads\Yet_another_Tiny_Whoop_Case_and_Battery_Holder.zip
  386. 2018-01-23 16:25 - 2018-01-23 16:28 - 046610376 _____ C:\Users\Zachariah\Downloads\PICT0037.AVI
  387. 2018-01-22 18:15 - 2018-01-22 18:15 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01011.Wdf
  388. 2018-01-22 17:59 - 2018-01-22 18:15 - 001795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
  389. 2018-01-22 17:59 - 2018-01-22 18:15 - 000000000 ____D C:\Users\Zachariah\usb_driver
  390. 2018-01-22 17:50 - 2018-01-22 17:50 - 000000000 ____D C:\Program Files (x86)\STMicroelectronics
  391. 2018-01-22 17:49 - 2018-01-22 17:49 - 000000000 ____D C:\Users\Zachariah\AppData\Local\Downloaded Installations
  392. 2018-01-22 17:48 - 2018-01-22 17:48 - 002256502 _____ C:\Users\Zachariah\Downloads\en.stsw-stm32102.zip
  393. 2018-01-22 17:24 - 2018-01-22 17:24 - 007176026 _____ C:\Users\Zachariah\Downloads\CP210x_Windows_Drivers(1).zip
  394. 2018-01-22 17:24 - 2018-01-22 17:24 - 000000000 ____D C:\Program Files\DIFX
  395. 2018-01-22 17:17 - 2018-01-22 17:18 - 007176026 _____ C:\Users\Zachariah\Downloads\CP210x_Windows_Drivers.zip
  396. 2018-01-21 19:17 - 2018-01-21 19:17 - 000000950 _____ C:\Users\zeph\Desktop\Steam.lnk
  397. 2018-01-21 16:26 - 2018-02-17 02:43 - 003368448 _____ C:\Users\Zachariah\Desktop\Ultimate Tool - Protected.exe
  398. 2018-01-21 16:20 - 2018-01-21 16:22 - 003110962 _____ C:\Users\Zachariah\Downloads\Tool_Protected_mpgh.net_1_1.zip
  399. 2018-01-21 14:06 - 2018-01-21 14:06 - 000315292 _____ C:\Users\Zachariah\Downloads\Project TCM V11.7z
  400. 2018-01-19 22:42 - 2018-01-19 22:42 - 000001301 _____ C:\Users\Zachariah\Desktop\Betaflight Configurator.lnk
  401. 2018-01-19 22:42 - 2018-01-19 22:42 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Betaflight
  402. 2018-01-19 22:42 - 2018-01-19 22:42 - 000000000 ____D C:\Users\Zachariah\AppData\Local\betaflight-configurator
  403. 2018-01-19 22:42 - 2018-01-19 22:42 - 000000000 ____D C:\Program Files (x86)\Betaflight
  404. 2018-01-19 21:37 - 2018-01-19 21:45 - 064889587 _____ C:\Users\Zachariah\Downloads\betaflight-configurator-installer_10.1.0_win32.exe
  405. 2018-01-19 21:16 - 2018-01-19 21:16 - 002155727 _____ C:\Users\Zachariah\Downloads\BeeBrainV.2-Manual.pdf
  406.  
  407. ==================== One Month Modified files and folders ========
  408.  
  409. (If an entry is included in the fixlist, the file/folder will be moved.)
  410.  
  411. 2018-02-17 18:59 - 2011-12-08 16:45 - 000000564 _____ C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
  412. 2018-02-17 18:49 - 2011-12-08 16:45 - 000000422 _____ C:\Windows\Tasks\SystemToolsDailyTest.job
  413. 2018-02-17 18:38 - 2009-07-13 20:45 - 000021296 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  414. 2018-02-17 18:38 - 2009-07-13 20:45 - 000021296 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  415. 2018-02-17 18:37 - 2014-02-07 21:11 - 000000904 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1004UA.job
  416. 2018-02-17 18:35 - 2011-12-29 17:46 - 000000944 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1003UA.job
  417. 2018-02-17 18:33 - 2017-03-04 14:14 - 000000000 ____D C:\Users\zeph\AppData\LocalLow\Mozilla
  418. 2018-02-17 18:30 - 2015-12-03 06:37 - 000000000 ____D C:\Users\zeph\AppData\Local\CrashDumps
  419. 2018-02-17 18:30 - 2015-05-01 10:30 - 000000911 _____ C:\Windows\Tasks\EPSON WF-2650 Series Update {95D371A6-1461-4163-B204-53754B67D0AC}.job
  420. 2018-02-17 18:29 - 2017-10-26 14:42 - 000000000 ____D C:\ProgramData\NVIDIA
  421. 2018-02-17 18:28 - 2017-09-27 15:18 - 000000000 ____D C:\Users\postgres
  422. 2018-02-17 18:28 - 2011-09-23 19:19 - 000000000 ____D C:\Program Files (x86)\Dell DataSafe Local Backup
  423. 2018-02-17 18:27 - 2009-07-13 21:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
  424. 2018-02-17 18:12 - 2016-11-03 17:07 - 000000924 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1010UA.job
  425. 2018-02-17 18:12 - 2016-11-03 17:07 - 000000872 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1010Core.job
  426. 2018-02-17 17:45 - 2009-07-13 21:09 - 000000000 ____D C:\Windows\System32\Tasks\WPD
  427. 2018-02-17 17:40 - 2017-03-04 14:21 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Curse Client
  428. 2018-02-17 17:14 - 2011-12-09 19:53 - 000000000 ____D C:\Users\zeph
  429. 2018-02-17 16:54 - 2011-12-09 19:54 - 000104592 _____ C:\Users\zeph\AppData\Local\GDIPFONTCACHEV1.DAT
  430. 2018-02-17 16:54 - 2009-07-13 20:57 - 000001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\J9\Windows Media Player.lnk
  431. 2018-02-17 16:54 - 2009-07-13 19:20 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\J9
  432. 2018-02-17 16:36 - 2011-12-29 17:46 - 000000892 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1003Core.job
  433. 2018-02-17 16:32 - 2016-09-24 20:35 - 000000000 ____D C:\Users\Zachariah\AppData\Local\CrashDumps
  434. 2018-02-17 16:31 - 2016-09-17 19:05 - 000000000 ____D C:\Users\Zachariah\AppData\Local\SoftThinks
  435. 2018-02-17 16:08 - 2009-07-13 20:45 - 000400528 _____ C:\Windows\system32\FNTCACHE.DAT
  436. 2018-02-17 15:44 - 2017-02-24 17:18 - 000000000 ____D C:\Users\Zachariah\AppData\LocalLow\Mozilla
  437. 2018-02-17 15:42 - 2017-09-13 14:40 - 000007596 _____ C:\Users\Zachariah\AppData\Local\Resmon.ResmonCfg
  438. 2018-02-17 15:34 - 2018-01-09 19:48 - 000001209 _____ C:\Users\Zachariah\Desktop\nativelog.txt
  439. 2018-02-17 15:21 - 2016-10-01 17:11 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\.minecraft
  440. 2018-02-17 14:56 - 2016-09-17 22:48 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\OBS
  441. 2018-02-17 14:39 - 2016-09-18 19:58 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\vlc
  442. 2018-02-17 14:19 - 2011-12-09 20:04 - 000000000 ____D C:\Users\zach
  443. 2018-02-17 14:18 - 2016-09-04 12:12 - 000000000 ____D C:\Users\zach\Desktop\All my Crap
  444. 2018-02-17 14:14 - 2015-10-05 20:35 - 000000000 ____D C:\Users\Zachariah\Desktop\Servers
  445. 2018-02-17 13:58 - 2017-08-28 19:56 - 000000000 ____D C:\Program Files\Mozilla Firefox
  446. 2018-02-17 13:46 - 2017-09-05 09:10 - 000000000 ____D C:\Users\TEMP
  447. 2018-02-17 13:14 - 2016-12-14 11:06 - 000104592 _____ C:\Users\Zachariah\AppData\Local\GDIPFONTCACHEV1.DAT
  448. 2018-02-17 13:11 - 2017-08-30 17:59 - 000027250 _____ C:\Windows\SysWOW64\nativelog.txt
  449. 2018-02-17 13:02 - 2014-05-10 12:08 - 000000000 ____D C:\Program Files (x86)\Minecraft
  450. 2018-02-17 12:56 - 2017-06-20 21:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\J9\Minecraft
  451. 2018-02-17 12:31 - 2011-12-13 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\J9\McAfee
  452. 2018-02-17 12:21 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\inf
  453. 2018-02-17 11:37 - 2014-02-07 21:11 - 000000852 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3803275921-3941053817-2581775902-1004Core.job
  454. 2018-02-17 11:10 - 2016-09-18 13:22 - 000000000 ____D C:\Program Files (x86)\Steam
  455. 2018-02-17 11:08 - 2017-08-27 18:09 - 000000000 ____D C:\Users\Bubbles\AppData\LocalLow\Mozilla
  456. 2018-02-17 08:41 - 2015-11-25 15:21 - 000000000 ____D C:\Users\Bubbles\AppData\Local\CrashDumps
  457. 2018-02-17 04:38 - 2017-11-03 19:15 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\J9\Epic Games Launcher.lnk
  458. 2018-02-17 04:34 - 2017-11-18 23:09 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\nhm2
  459. 2018-02-17 04:09 - 2015-10-21 17:56 - 000000000 ____D C:\ProgramData\PMS
  460. 2018-02-17 02:49 - 2016-07-01 12:16 - 004776136 _____ C:\Users\zeph\Desktop\TechnicLauncher.exe
  461. 2018-02-17 02:49 - 2015-05-19 15:36 - 001653328 _____ C:\Users\zeph\Documents\ATLauncher.exe
  462. 2018-02-17 02:48 - 2015-04-20 08:19 - 007745261 _____ C:\Users\zeph\Desktop\FTB_Launcher.exe
  463. 2018-02-17 02:43 - 2018-01-15 18:54 - 006048547 _____ C:\Users\Zachariah\Downloads\LAN_allWin7_7.031_PV_RTL.exe
  464. 2018-02-17 02:43 - 2018-01-15 00:56 - 009224728 _____ C:\Users\Zachariah\Downloads\VoicemeeterSetup.exe
  465. 2018-02-17 02:43 - 2017-12-19 23:05 - 008002424 _____ C:\Users\Zachariah\Downloads\Xbox360_64Eng(2).exe
  466. 2018-02-17 02:43 - 2017-11-16 15:56 - 003169640 _____ C:\Users\Zachariah\Downloads\instspeedfan452.exe
  467. 2018-02-17 02:43 - 2017-11-11 15:58 - 001921614 _____ C:\Users\Zachariah\Downloads\YUMI-2.0.5.1.exe
  468. 2018-02-17 02:43 - 2017-11-09 08:51 - 000860680 _____ C:\Users\Zachariah\Downloads\UnityDownloadAssistant-2017.2.0f3.exe
  469. 2018-02-17 02:43 - 2017-11-03 17:20 - 000460808 _____ C:\Users\Zachariah\Downloads\Autodesk_3ds_Max_2018_EFGJKPS_Win_64bit_wi_en-US_Setup_webinstall.exe
  470. 2018-02-17 02:43 - 2017-09-28 16:46 - 000935616 _____ C:\Users\Zachariah\Downloads\RobloxPlayerLauncher(1).exe
  471. 2018-02-17 02:43 - 2017-09-28 16:16 - 001297120 _____ C:\Users\Zachariah\Downloads\filmora_setup_full1901.exe
  472. 2018-02-17 02:43 - 2017-09-22 18:05 - 000610367 _____ C:\Users\Zachariah\Downloads\Lame_v3.99.3_for_Windows.exe
  473. 2018-02-17 02:43 - 2017-09-22 17:31 - 000894520 _____ C:\Users\Zachariah\Downloads\RobloxPlayerLauncher.exe
  474. 2018-02-17 02:43 - 2017-09-04 22:58 - 008776096 _____ C:\Users\Zachariah\Downloads\CyberGhost_6.0.8.2959.exe
  475. 2018-02-17 02:43 - 2017-09-04 18:55 - 000328664 _____ C:\Users\Zachariah\Downloads\Firefox Installer.exe
  476. 2018-02-17 02:43 - 2017-08-28 11:29 - 009542113 _____ C:\Users\Zachariah\Downloads\CWClient_Install.exe
  477. 2018-02-17 02:43 - 2017-08-18 19:03 - 003268424 _____ C:\Users\Zachariah\Downloads\netsight_setup_7.5.0.1050_mp_production_mid60986962292.exe
  478. 2018-02-17 02:43 - 2017-08-15 17:35 - 005638089 _____ C:\Users\Zachariah\Downloads\UserBenchMark.exe
  479. 2018-02-17 02:43 - 2017-08-13 10:59 - 002579744 _____ C:\Users\Zachariah\Downloads\setup.exe
  480. 2018-02-17 02:43 - 2017-03-19 15:38 - 007919480 _____ C:\Users\Zachariah\Downloads\Xbox360_64Eng(1).exe
  481. 2018-02-17 02:43 - 2017-03-11 11:44 - 007960952 _____ C:\Users\Zachariah\Downloads\Xbox360_64Eng.exe
  482. 2018-02-17 02:43 - 2017-03-08 15:59 - 002324160 _____ C:\Users\Zachariah\Downloads\FileZilla_Server-0_9_60_2.exe
  483. 2018-02-17 02:43 - 2017-02-28 19:40 - 003760988 _____ C:\Users\Zachariah\Downloads\forge-1.8-11.14.4.1563-installer-win.exe
  484. 2018-02-17 01:52 - 2017-09-28 16:47 - 000002263 _____ C:\Users\Zachariah\Desktop\Roblox Studio.lnk
  485. 2018-02-17 01:46 - 2017-08-28 19:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
  486. 2018-02-17 01:40 - 2015-07-09 10:48 - 000717460 _____ C:\Users\melissa.parton\Downloads\Minecraft.exe
  487. 2018-02-17 01:40 - 2014-06-25 22:04 - 000724832 _____ C:\Users\melissa.parton\Downloads\MediaCodec (1).exe
  488. 2018-02-17 01:40 - 2014-06-25 22:03 - 000724832 _____ C:\Users\melissa.parton\Downloads\MediaCodec.exe
  489. 2018-02-17 01:40 - 2013-11-22 16:36 - 001091984 _____ C:\Users\melissa.parton\Downloads\UnityWebPlayer.exe
  490. 2018-02-17 01:40 - 2013-05-28 16:19 - 002178320 _____ C:\Users\melissa.parton\Downloads\install_flashplayer11x32_gdrd_aih.exe
  491. 2018-02-17 01:40 - 2013-05-28 15:37 - 002178320 _____ C:\Users\melissa.parton\Downloads\install_flashplayer11x32_gdra_aih.exe
  492. 2018-02-17 01:40 - 2011-12-29 17:46 - 000648024 _____ C:\Users\melissa.parton\Downloads\GoogleVoiceAndVideoSetup.exe
  493. 2018-02-17 01:40 - 2011-12-24 18:42 - 000648024 _____ C:\Users\melissa.parton\Downloads\GoogleEarthPluginSetup.exe
  494. 2018-02-16 23:42 - 2013-11-16 06:45 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Skype
  495. 2018-02-16 23:32 - 2017-11-26 17:46 - 000000000 ____D C:\Users\zeph\AppData\Roaming\HexChat
  496. 2018-02-16 19:49 - 2017-05-09 20:36 - 000000000 ____D C:\GOG Games
  497. 2018-02-16 19:13 - 2017-05-05 17:19 - 000000000 ____D C:\Users\zeph\Desktop\ROTMG Pservers
  498. 2018-02-16 19:11 - 2015-11-12 06:43 - 000000000 ____D C:\Games
  499. 2018-02-16 19:03 - 2016-04-11 17:45 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
  500. 2018-02-16 17:35 - 2013-06-05 10:07 - 000000464 ____H C:\Windows\Tasks\Norton Security Scan for erik.parton.job
  501. 2018-02-16 13:01 - 2017-10-08 16:30 - 000000000 ____D C:\Users\Bubbles\Documents\BeamNG.drive
  502. 2018-02-16 08:13 - 2015-05-24 16:00 - 000000000 ____D C:\Users\Bubbles\AppData\Roaming\Mozilla
  503. 2018-02-16 03:22 - 2014-05-14 13:25 - 000000470 ____H C:\Windows\Tasks\Norton Security Scan for melissa.parton.job
  504. 2018-02-15 23:11 - 2017-08-08 21:24 - 000000000 ____D C:\Users\zeph\Documents\My Games
  505. 2018-02-15 22:48 - 2017-10-29 12:19 - 000000000 ____D C:\Users\zeph\AppData\Local\ArmA 2 OA
  506. 2018-02-15 20:03 - 2016-10-02 18:12 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Skype
  507. 2018-02-15 18:40 - 2017-12-30 21:05 - 000000000 ____D C:\Users\Zachariah\.openshot_qt
  508. 2018-02-15 18:40 - 2016-09-17 19:05 - 000000000 ____D C:\Users\Zachariah
  509. 2018-02-15 16:06 - 2018-01-01 23:17 - 000000000 ____D C:\Users\Zachariah\Desktop\Server
  510. 2018-02-14 21:04 - 2017-10-06 17:52 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\discord
  511. 2018-02-14 17:47 - 2015-06-23 14:42 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
  512. 2018-02-14 17:45 - 2015-11-15 22:03 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\J9\Acrobat Reader DC.lnk
  513. 2018-02-11 18:35 - 2017-01-31 16:46 - 000000000 ____D C:\Users\zeph\AppData\Roaming\discord
  514. 2018-02-11 03:37 - 2017-07-03 20:53 - 000000000 ____D C:\Users\Zachariah\AppData\Local\ElevatedDiagnostics
  515. 2018-02-10 22:36 - 2011-12-09 19:54 - 000000000 ____D C:\Users\zeph\AppData\Roaming\Mozilla
  516. 2018-02-10 18:54 - 2016-09-17 19:07 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Mozilla
  517. 2018-02-07 00:16 - 2013-05-28 16:16 - 000004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
  518. 2018-02-07 00:16 - 2013-02-21 09:36 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
  519. 2018-02-07 00:16 - 2013-02-21 09:36 - 000000000 ____D C:\Windows\system32\Macromed
  520. 2018-02-07 00:16 - 2011-09-23 19:08 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
  521. 2018-02-07 00:16 - 2011-09-23 19:08 - 000000000 ____D C:\Windows\SysWOW64\Macromed
  522. 2018-02-06 00:22 - 2014-05-21 19:02 - 000002255 _____ C:\Users\melissa.parton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
  523. 2018-02-06 00:22 - 2011-12-09 19:54 - 000001426 _____ C:\Users\zeph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
  524. 2018-02-06 00:20 - 2011-09-23 19:20 - 000000000 ____D C:\Temp
  525. 2018-02-06 00:16 - 2015-04-24 14:38 - 000000000 ____D C:\Users\Bubbles
  526. 2018-02-06 00:16 - 2011-12-09 11:18 - 000000000 ____D C:\Users\melissa.parton
  527. 2018-02-06 00:12 - 2014-05-21 19:05 - 000000000 ____D C:\Users\melissa.parton\AppData\Local\com
  528. 2018-02-02 18:36 - 2018-01-11 22:13 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\U3
  529. 2018-02-02 18:13 - 2011-09-23 19:32 - 000000000 ____D C:\ProgramData\Sonic
  530. 2018-02-01 19:58 - 2018-01-12 15:46 - 000000000 ____D C:\Users\Zachariah\Desktop\Money Accounts
  531. 2018-02-01 16:01 - 2016-09-17 19:05 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Adobe
  532. 2018-01-28 02:17 - 2016-11-09 16:45 - 000006422 _____ C:\Windows\system32\PerfStringBackup.TMP
  533. 2018-01-26 08:46 - 2018-01-09 21:46 - 000000000 ____D C:\Program Files (x86)\TeamViewer
  534. 2018-01-24 20:04 - 2011-12-09 19:53 - 000000000 ____D C:\Users\zeph\AppData\Local\SoftThinks
  535. 2018-01-21 22:52 - 2016-06-19 14:42 - 000000000 ____D C:\Users\zeph\AppData\Local\Warframe
  536. 2018-01-21 16:19 - 2017-10-06 17:52 - 000002185 _____ C:\Users\Zachariah\Desktop\Discord.lnk
  537. 2018-01-21 16:19 - 2017-10-06 17:52 - 000000000 ____D C:\Users\Zachariah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
  538. 2018-01-21 16:18 - 2017-10-06 17:52 - 000000000 ____D C:\Users\Zachariah\AppData\Local\Discord
  539. 2018-01-21 14:09 - 2018-01-12 15:45 - 000000000 ____D C:\Users\Zachariah\Desktop\Mod Menus
  540. 2018-01-19 21:16 - 2009-07-13 21:32 - 000000000 ____D C:\Windows\system32\FxsTmp
  541.  
  542. ==================== Files in the root of some directories =======
  543.  
  544. 2015-04-17 13:25 - 2015-04-17 13:25 - 000040960 ___SH () C:\Users\zeph\AppData\Roaming\Thumbs.db
  545. 2015-12-09 08:02 - 2016-04-09 23:02 - 000000184 _____ () C:\Users\zeph\AppData\Roaming\WB.CFG
  546. 2015-04-14 16:28 - 2016-07-25 18:08 - 000005632 _____ () C:\Users\zeph\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
  547. 2017-05-30 20:14 - 2017-05-30 20:14 - 000000856 _____ () C:\Users\zeph\AppData\Local\recently-used.xbel
  548. 2018-01-13 23:38 - 2018-01-13 23:38 - 000000017 _____ () C:\Users\zeph\AppData\Local\resmon.resmoncfg
  549.  
  550. Some files in TEMP:
  551. ====================
  552. 2015-05-04 18:42 - 2015-05-04 18:42 - 000017408 _____ () C:\Users\Bubbles\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.2-R0.3-66-g43d8943-b3078jnks.dll
  553. 2015-05-06 14:14 - 2015-05-06 14:14 - 000017408 _____ () C:\Users\Bubbles\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.9-R0.1-10-g8688bd4-b3092jnks.dll
  554. 2017-12-09 08:41 - 2017-12-09 08:41 - 000196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Bubbles\AppData\Local\Temp\jna1617238922989721212.dll
  555. 2017-12-09 08:41 - 2017-12-09 08:41 - 000196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Bubbles\AppData\Local\Temp\jna3310035401192232061.dll
  556. 2017-12-09 08:41 - 2017-12-09 08:41 - 000196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Bubbles\AppData\Local\Temp\jna5728183482496861583.dll
  557. 2015-05-04 18:42 - 2015-05-04 18:42 - 000515584 _____ () C:\Users\Bubbles\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll
  558. 2015-08-10 09:35 - 2018-02-17 01:40 - 004130632 _____ () C:\Users\melissa.parton\AppData\Local\Temp\A7DA.exe
  559. 2014-05-27 19:07 - 2014-05-27 19:07 - 000043008 _____ () C:\Users\melissa.parton\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpp3lpj7.dll
  560. 2013-02-15 21:00 - 2018-02-17 01:40 - 000938920 _____ () C:\Users\melissa.parton\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
  561. 2013-07-22 11:39 - 2013-03-06 02:38 - 000421200 _____ (Microsoft Corporation) C:\Users\melissa.parton\AppData\Local\Temp\msvcp100.dll
  562. 2013-07-22 11:39 - 2013-03-06 02:38 - 000770384 _____ (Microsoft Corporation) C:\Users\melissa.parton\AppData\Local\Temp\msvcr100.dll
  563. 2015-08-30 06:42 - 2018-02-17 01:40 - 001062144 _____ () C:\Users\melissa.parton\AppData\Local\Temp\Setup.exe
  564. 2018-02-17 02:55 - 2017-09-13 07:31 - 001732864 _____ (Microsoft Corporation) C:\Users\Zachariah\AppData\Local\Temp\dllnt_dump.dll
  565. 2018-02-11 17:50 - 2018-02-11 17:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-1003605761318495508.dll
  566. 2018-02-13 19:28 - 2018-02-13 19:28 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-1057330346268973887.dll
  567. 2018-02-15 15:57 - 2018-02-15 15:57 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-1842874117193007213.dll
  568. 2018-02-16 02:54 - 2018-02-16 02:54 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2071120878683048659.dll
  569. 2018-02-15 18:03 - 2018-02-15 18:03 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2217262156111852724.dll
  570. 2018-02-13 18:14 - 2018-02-13 18:14 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2256941796770265941.dll
  571. 2018-02-15 00:06 - 2018-02-15 00:06 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2480380032324251564.dll
  572. 2018-02-13 19:59 - 2018-02-13 19:59 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2927619004224897280.dll
  573. 2018-02-15 00:10 - 2018-02-15 00:10 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-2981994602449113615.dll
  574. 2018-02-15 17:02 - 2018-02-15 17:02 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-3139518187486773948.dll
  575. 2018-02-13 23:27 - 2018-02-13 23:27 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-3994561292159906205.dll
  576. 2018-02-16 00:17 - 2018-02-16 00:17 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4165678412746639491.dll
  577. 2018-02-12 15:36 - 2018-02-12 15:36 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4190637169983638646.dll
  578. 2018-02-16 14:17 - 2018-02-16 14:17 - 000019968 _____ (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4579273629588291838.dll
  579. 2018-02-14 21:08 - 2018-02-14 21:08 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4628707564687501445.dll
  580. 2018-02-11 17:51 - 2018-02-11 17:51 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4874385576508486361.dll
  581. 2018-02-15 16:36 - 2018-02-15 16:36 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-4905798434903190392.dll
  582. 2018-02-15 00:33 - 2018-02-15 00:33 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5026259207108659686.dll
  583. 2018-02-11 17:46 - 2018-02-11 17:46 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5343479210821923330.dll
  584. 2018-02-11 17:51 - 2018-02-11 17:51 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5684925725831587375.dll
  585. 2018-02-17 04:36 - 2018-02-17 04:36 - 000019968 _____ (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-5889873260634635178.dll
  586. 2018-02-13 16:03 - 2018-02-13 16:03 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-6515611782637987041.dll
  587. 2018-02-14 16:12 - 2018-02-14 16:12 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-6617258911062253659.dll
  588. 2018-02-15 18:03 - 2018-02-15 18:03 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7073176509125067587.dll
  589. 2018-02-14 21:09 - 2018-02-14 21:09 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7243677420355586330.dll
  590. 2018-02-12 17:50 - 2018-02-12 17:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7312781173370008574.dll
  591. 2018-02-12 18:06 - 2018-02-12 18:06 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-7768724583859828051.dll
  592. 2018-02-15 15:26 - 2018-02-15 15:26 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-8101248351030677499.dll
  593. 2018-02-14 15:34 - 2018-02-14 15:34 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-8604223002900086251.dll
  594. 2018-02-15 18:02 - 2018-02-15 18:02 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-8863087648413024877.dll
  595. 2018-02-13 07:18 - 2018-02-13 07:18 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Zachariah\AppData\Local\Temp\jansi-64-git-Bukkit-18fbb24-9033035293128066467.dll
  596. 2016-04-21 05:41 - 2018-02-17 02:38 - 000339184 _____ () C:\Users\Zachariah\AppData\Local\Temp\tap-windows.exe
  597. 2016-09-02 07:54 - 2018-02-17 02:46 - 000243320 _____ () C:\Users\zeph\AppData\Local\Temp\gface_swap.exe
  598. 2013-05-28 06:10 - 2018-02-17 02:46 - 002219792 _____ () C:\Users\zeph\AppData\Local\Temp\install_flashplayer11x32_gdra_aih.exe
  599. 2013-07-12 19:40 - 2018-02-17 02:46 - 001151976 _____ () C:\Users\zeph\AppData\Local\Temp\install_flashplayer11x32_mssa_aaa_aih.exe
  600. 2017-10-02 19:09 - 2017-10-02 19:09 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1279469796728839946.dll
  601. 2017-07-28 11:40 - 2017-07-28 11:40 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1570865730745932328.dll
  602. 2017-06-02 19:30 - 2017-06-02 19:30 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1661423960941769511.dll
  603. 2017-03-06 15:49 - 2017-03-06 15:49 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1804081909174317813.dll
  604. 2017-10-04 18:33 - 2017-10-04 18:33 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-1935534085753146713.dll
  605. 2017-07-15 14:48 - 2017-07-15 14:48 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2214057964422071831.dll
  606. 2017-04-25 16:36 - 2017-04-25 16:36 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2632939777295665827.dll
  607. 2017-07-15 14:52 - 2017-07-15 14:52 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2761186562994651708.dll
  608. 2017-07-31 13:30 - 2017-07-31 13:30 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2810543338407117130.dll
  609. 2017-07-15 14:43 - 2017-07-15 14:43 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-2818344121858843627.dll
  610. 2017-04-25 16:59 - 2017-04-25 16:59 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-3364091806545352185.dll
  611. 2017-07-15 15:03 - 2017-07-15 15:03 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-3518931876719614200.dll
  612. 2017-08-01 10:40 - 2017-08-01 10:40 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-3801572160609146640.dll
  613. 2017-05-11 16:44 - 2017-05-11 16:44 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-4028541498233498839.dll
  614. 2017-06-05 17:04 - 2017-06-05 17:04 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-4813197152696114506.dll
  615. 2017-07-15 14:45 - 2017-07-15 14:45 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-4896992834246006637.dll
  616. 2017-05-11 16:50 - 2017-05-11 16:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-5407797662631504046.dll
  617. 2017-06-09 18:49 - 2017-06-09 18:49 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6104821504690773423.dll
  618. 2017-06-04 19:26 - 2017-06-04 19:26 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6181485709077095614.dll
  619. 2017-06-11 12:25 - 2017-06-11 12:25 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6252108445546095604.dll
  620. 2017-07-31 12:31 - 2017-07-31 12:31 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6686702784296936476.dll
  621. 2017-06-06 18:35 - 2017-06-06 18:35 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-6989821538298088208.dll
  622. 2017-07-15 14:41 - 2017-07-15 14:41 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7272963730153137478.dll
  623. 2017-06-02 19:17 - 2017-06-02 19:17 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7423266792299993430.dll
  624. 2017-04-14 17:55 - 2017-04-14 17:55 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7452499988640859056.dll
  625. 2017-07-27 19:29 - 2017-07-27 19:29 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7935104901988008237.dll
  626. 2017-07-27 09:46 - 2017-07-27 09:46 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-7985500139610608052.dll
  627. 2017-07-15 14:49 - 2017-07-15 14:49 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-813009440097658610.dll
  628. 2017-03-06 15:54 - 2017-03-06 15:54 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-8152169603195586303.dll
  629. 2017-06-02 19:50 - 2017-06-02 19:50 - 000019968 ____N (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-8872571410451042491.dll
  630. 2017-07-15 14:44 - 2017-07-15 14:44 - 000019968 _____ (Red Hat®, Inc.) C:\Users\zeph\AppData\Local\Temp\jansi-64-907908814173914628.dll
  631. 2016-05-19 19:10 - 2016-05-19 19:10 - 000017408 _____ () C:\Users\zeph\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.9-R0.2-10-ge6cd8c0-b3096jnks.dll
  632. 2015-06-05 19:37 - 2018-02-17 02:46 - 000603744 _____ () C:\Users\zeph\AppData\Local\Temp\jre-8u45-windows-au.exe
  633. 2013-07-29 14:35 - 2013-03-06 02:38 - 000421200 _____ (Microsoft Corporation) C:\Users\zeph\AppData\Local\Temp\msvcp100.dll
  634. 2013-07-29 14:35 - 2013-03-06 02:38 - 000770384 _____ (Microsoft Corporation) C:\Users\zeph\AppData\Local\Temp\msvcr100.dll
  635. 2018-02-10 13:11 - 2018-02-10 13:11 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_20182101143938.dll
  636. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_20182101211525.dll
  637. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_20182101213105.dll
  638. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210121470.dll
  639. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210122030.dll
  640. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210122617.dll
  641. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210127472.dll
  642. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210127799.dll
  643. 2018-02-10 13:12 - 2018-02-10 13:12 - 002156544 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210128131.dll
  644. 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944161.dll
  645. 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944202.dll
  646. 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944405.dll
  647. 2018-02-10 13:09 - 2018-02-10 13:09 - 001862144 _____ (Opera Software) C:\Users\zeph\AppData\Local\Temp\Opera_installer_2018210944449.dll
  648. 2017-05-12 21:11 - 2018-02-17 02:46 - 001425736 _____ () C:\Users\zeph\AppData\Local\Temp\RemoveTemp.exe
  649. 2012-06-13 14:00 - 2018-02-17 02:46 - 000268568 _____ () C:\Users\zeph\AppData\Local\Temp\Shockwave_Installer_FF.exe
  650. 2016-02-14 14:18 - 2017-11-24 13:37 - 058804680 _____ (Skype Technologies S.A.) C:\Users\zeph\AppData\Local\Temp\SkypeSetup.exe
  651. 2016-05-19 19:10 - 2016-05-19 19:10 - 000515584 _____ () C:\Users\zeph\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll
  652. 2014-05-10 12:12 - 2018-02-17 02:46 - 000110725 _____ () C:\Users\zeph\AppData\Local\Temp\Uninstall.exe
  653.  
  654. ==================== Bamital & volsnap ======================
  655.  
  656. (There is no automatic fix for files that do not pass verification.)
  657.  
  658. C:\Windows\system32\winlogon.exe => File is digitally signed
  659. C:\Windows\system32\wininit.exe => File is digitally signed
  660. C:\Windows\SysWOW64\wininit.exe => File is digitally signed
  661. C:\Windows\explorer.exe => File is digitally signed
  662. C:\Windows\SysWOW64\explorer.exe => File is digitally signed
  663. C:\Windows\system32\svchost.exe => File is digitally signed
  664. C:\Windows\SysWOW64\svchost.exe => File is digitally signed
  665. C:\Windows\system32\services.exe => File is digitally signed
  666. C:\Windows\system32\User32.dll => File is digitally signed
  667. C:\Windows\SysWOW64\User32.dll => File is digitally signed
  668. C:\Windows\system32\userinit.exe => File is digitally signed
  669. C:\Windows\SysWOW64\userinit.exe => File is digitally signed
  670. C:\Windows\system32\rpcss.dll => File is digitally signed
  671. C:\Windows\system32\dnsapi.dll => File is digitally signed
  672. C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
  673. C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
  674.  
  675. LastRegBack: 2018-02-17 06:25
  676.  
  677. ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement