Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-06-2017
- Ran by Seth (administrator) on SETHSSEXYPC (01-06-2017 16:07:28)
- Running from C:\Users\Seth\Desktop\New folder (2)
- Loaded Profiles: Seth (Available Profiles: Seth)
- Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
- Internet Explorer Version 11 (Default browser: Chrome)
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
- (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
- () C:\Program Files (x86)\Kinoni\EpocCam_and_Barcode_drivers\KinoniSvc.exe
- (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
- (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
- (Alcatel-Lucent) C:\Program Files (x86)\Common Files\Motive\pcCMService.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
- (Copyright (c) 2017 Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
- () C:\Windows\SysWOW64\PnkBstrA.exe
- (Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
- (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
- (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
- (Alcatel-Lucent) C:\Program Files\Common Files\Motive\pcCMService.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
- (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
- (CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
- () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
- () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Hammer & Chisel, Inc.) C:\Users\Seth\AppData\Local\Discord\app-0.0.297\Discord.exe
- (Hammer & Chisel, Inc.) C:\Users\Seth\AppData\Local\Discord\app-0.0.297\Discord.exe
- (Hammer & Chisel, Inc.) C:\Users\Seth\AppData\Local\Discord\app-0.0.297\Discord.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- ==================== Registry (Whitelisted) ====================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-12-12] (Realtek Semiconductor)
- HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1368792 2013-12-12] (Realtek Semiconductor)
- HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation)
- HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
- HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
- HKLM\...\Run: [ATT_McciTrayApp] => C:\Program Files\ATT\8.5.1.16\ma\bin\pcTrayApp.exe [2943488 2015-12-11] (Alcatel-Lucent)
- HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-04-27] (Microsoft Corporation)
- HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.)
- HKLM-x32\...\Run: [] => [X]
- HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2016-08-04] (Razer Inc.)
- HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [888344 2016-01-07] (BlueStack Systems, Inc.)
- HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [CAM] => C:\Program Files (x86)\NZXT\CAM\CAMLauncher.exe -autostart
- HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [51416 2017-05-10] (Copyright (c) 2017 Plays.tv, LLC)
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
- HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [104128 2016-04-14] (VMware, Inc.)
- HKLM-x32\...\Run: [WNDA3100v3] => C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE [6243040 2015-01-15] (NETGEAR)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [5077792 2017-03-28] (Nota Inc.)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [Spotify Web Helper] => C:\Users\Seth\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1560176 2017-05-29] (Spotify Ltd)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [EvolveClient] => C:\Program Files\Echobit\Evolve\EvolveClient.exe [3334528 2017-02-09] (Echobit LLC)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 5\CyberGhost.exe [430048 2015-05-21] (CyberGhost S.R.L.)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [797328 2016-06-14] (Sandboxie Holdings, LLC)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [IMAP Service] => C:\Users\Seth\AppData\Roaming\BBC922B8-6249-4FD1-8326-CF9D32723028\IMAP Service\imapsv.exe [53248 2016-07-13] (Microsoft Corporation)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Run: [GoogleChromeAutoLaunch_DA2D0054FE14D9D6E6327476B1008C56] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1143640 2017-05-09] (Google Inc.)
- HKU\S-1-5-18\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe [2757880 2015-03-05] (ASUS)
- Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WNDA3100v3 Genie.lnk [2017-06-01]
- ShortcutTarget: NETGEAR WNDA3100v3 Genie.lnk -> C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE (NETGEAR)
- Startup: C:\Users\Seth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Discord (2).lnk [2017-01-18]
- ShortcutTarget: Discord (2).lnk -> C:\Users\Seth\AppData\Local\Discord\Update.exe (GitHub)
- Startup: C:\Users\Seth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Steam.lnk [2017-01-18]
- ShortcutTarget: Steam.lnk -> C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
- Tcpip\..\Interfaces\{7a5f9775-a95f-4d8d-9532-a72e34ac5bc9}: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{9349f903-9907-4592-af85-082bb4720319}: [DhcpNameServer] 8.8.8.8 8.8.4.4
- Tcpip\..\Interfaces\{a377889a-876e-4b95-a357-93811a4e7531}: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Tcpip\..\Interfaces\{d23fe94c-d750-45d6-a9fd-db9de9a3823d}: [DhcpNameServer] 192.168.1.1
- Internet Explorer:
- ==================
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-20] (Oracle Corporation)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-20] (Oracle Corporation)
- FireFox:
- ========
- FF DefaultProfile: 7i798k3t.default
- FF ProfilePath: C:\Users\Seth\AppData\Roaming\Mozilla\Firefox\Profiles\7i798k3t.default [2017-06-01]
- FF DefaultSearchEngine: Mozilla\Firefox\Profiles\7i798k3t.default -> Yahoo!
- FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\7i798k3t.default -> Google
- FF SelectedSearchEngine: Mozilla\Firefox\Profiles\7i798k3t.default -> Yahoo!
- FF Extension: (Adblock Plus) - C:\Users\Seth\AppData\Roaming\Mozilla\Firefox\Profiles\7i798k3t.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-01-02]
- FF Extension: (AT&T Extension) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\[email protected] [2016-07-07] [not signed]
- FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-20] ()
- FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-20] ()
- FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll [2016-02-19] (Adobe Systems, Inc.)
- FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
- FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-20] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-20] (Oracle Corporation)
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
- FF Plugin-x32: @Motive.com/NpMotive,version=1.1 -> C:\Program Files (x86)\ATT\8.5.1.16\ma\bin\npMotive.dll [2015-12-11] (AT&T)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-27] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-27] (Google Inc.)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-04] (Adobe Systems Inc.)
- FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
- FF Plugin HKU\S-1-5-21-1198041709-478224594-2316559523-1001: @nsroblox.roblox.com/launcher -> C:\Users\Seth\AppData\Local\Roblox\Versions\version-7d9c06d298534e0c\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation)
- FF Plugin HKU\S-1-5-21-1198041709-478224594-2316559523-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\Seth\AppData\Local\Roblox\Versions\version-7d9c06d298534e0c\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation)
- FF Plugin HKU\S-1-5-21-1198041709-478224594-2316559523-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Seth\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-07-11] (Unity Technologies ApS)
- FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np32dsw.dll [2007-04-30] (Adobe Systems, Inc.)
- FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2017-04-04] (Adobe Systems Inc.)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR HomePage: Default -> hxxp://www.youtube.com/
- CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3321742&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP6F2E31CF-918F-4277-A804-75673CB6B7A6&SSPV=","hxxp://search.conduit.com/?ctid=CT3321742&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP6F2E31CF-918F-4277-A804-75673CB6B7A6&SSPV=","hxxp://astromenda.com/?f=7&a=ast_ir_14_37_ch&cd=2XzuyEtN2Y1L1QzuyB0AyBzytCzy0DtCtByEtB0D0CtBtD0EtN0D0Tzu0SzyzzyCtN1L2XzutAtFtBtFyDtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyCtBtC0CzztAzy0BtGtAyCzyyDtGyDtA0DtBtGtC0FtB0FtGyEzztCyCtA0CtBzytBtCzzzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0BtDyByByE0DtDtGtCtA0EzytGyE0C0CyEtG0ByDyB0EtGtA0D0CyB0DtCtA0D0ByDtD0F2Q&cr=1706478041&ir=","hxxps://mysearch.avg.com?cid={D9C48A0C-33D6-486F-8414-804454E281CA}&mid=7ebf42276cf447d29509a9cd7a1856fb-46aa2754c66546d218bd10365d972653f3c15512&lang=en&ds=AVG&coid=avgtbavg&pr=fr&d=2014-09-16 17:14:06&v=3.2.0.15&pid=wtu&sg=&sap=hp"
- CHR Profile: C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default [2017-06-01]
- CHR Extension: (BetterTTV) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2017-04-22]
- CHR Extension: (Google Docs) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-14]
- CHR Extension: (Google Drive) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
- CHR Extension: (YouTube) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
- CHR Extension: (Adblock Plus) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22]
- CHR Extension: (Steam Inventory Helper) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2017-05-24]
- CHR Extension: (Google Search) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
- CHR Extension: (X2BOT) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\dflbgcldopokchaholbkafdelpdpjmcm [2016-02-01]
- CHR Extension: (true colors) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnafckfchfclgjlgjphdgajpnleoedce [2016-08-21]
- CHR Extension: (LoungeDestroyer) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghahcnmfjfckcedfajbhekgknjdplfcl [2017-01-31]
- CHR Extension: (Google Docs Offline) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
- CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2017-06-01]
- CHR Extension: (CS:GO Lounge Bump Bot) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhfkidfnhjcjjamcbdepeohblphlamgk [2016-02-07]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-08]
- CHR Extension: (Gmail) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-14]
- CHR Extension: (Chrome Media Router) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-13]
- CHR Extension: (OPDeals - Find the best deals on OPSkins.com) - C:\Users\Seth\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnmifmjgoddkicidifnaenlagjcofomn [2016-07-20]
- CHR HKLM\...\Chrome\Extension: [okccnkhldjgdpjclfpdnlhlofcpginnm] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
- CHR HKLM-x32\...\Chrome\Extension: [okccnkhldjgdpjclfpdnlhlofcpginnm] - hxxps://clients2.google.com/service/update2/crx
- Opera:
- =======
- OPR Extension: (2048 AI - bitcoin) - C:\Users\Seth\AppData\Roaming\Opera Software\Opera Stable\Extensions\chfnopmklmpinabemlmldefhbhgkglmc [2015-10-11]
- ==================== Services (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137584 2015-02-19] ()
- R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
- S2 AT&T Troubleshoot & Resolve; C:\Program Files (x86)\ATT\8.5.1.16\ma\bin\MAHostService.exe [321024 2015-12-11] (Alcatel-Lucent) [File not signed]
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-03-23] ()
- S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [433688 2016-01-07] (BlueStack Systems, Inc.)
- S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413208 2016-01-07] (BlueStack Systems, Inc.)
- S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [859672 2016-01-07] (BlueStack Systems, Inc.)
- S3 celavimushost; C:\Program Files (x86)\CEVO\CSGO Client Beta\CelavimusClientHelper.exe [124120 2015-10-22] (altPUG LLC)
- R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [63968 2015-05-21] (CyberGhost S.R.L)
- S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [235744 2015-06-26] (EasyAntiCheat Ltd)
- S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1583488 2015-07-12] (Echobit LLC)
- S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342240 2015-11-05] (Futuremark)
- R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2016-07-28] (Microsoft Corporation)
- R2 KinoniSvc; C:\Program Files (x86)\Kinoni\EpocCam_and_Barcode_drivers\KinoniSvc.exe [524800 2014-11-12] () [File not signed]
- R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation)
- R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation)
- S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2016-08-31] (Electronic Arts)
- R2 pcCMService; C:\Program Files (x86)\Common Files\Motive\pcCMService.exe [370176 2015-08-13] (Alcatel-Lucent) [File not signed]
- R2 pcCMService64; C:\Program Files\Common Files\Motive\pcCMService.exe [462336 2015-08-13] (Alcatel-Lucent) [File not signed]
- R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [55000 2017-05-10] (Copyright (c) 2017 Plays.tv, LLC)
- R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2015-01-03] ()
- R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [69760 2016-06-19] (Razer Inc.)
- R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-04] ()
- S3 RServer3; C:\WINDOWS\SysWOW64\rserver30\RServer3.exe [1154752 2012-12-19] (Famatech Corp.)
- R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [197264 2016-06-14] (Sandboxie Holdings, LLC)
- S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
- S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [139264 2016-07-27] (Microsoft Corporation) [File not signed]
- R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944 2017-04-25] (TeamViewer GmbH)
- R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [12471368 2016-04-14] ()
- S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-27] (Microsoft Corporation)
- R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-04-27] (Microsoft Corporation)
- S2 nvsvc; "C:\WINDOWS\system32\nvvsvc.exe" [X]
- ===================== Drivers (Whitelisted) ======================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 AODDriver4.3.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [60104 2015-02-19] (Advanced Micro Devices)
- R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [154680 2016-01-07] (BlueStack Systems)
- S3 CMUSBDAC; C:\WINDOWS\system32\DRIVERS\CMUSBDAC.sys [3778592 2015-11-26] (C-MEDIA)
- R3 CORK70; C:\WINDOWS\system32\drivers\CORK70.sys [25600 2012-10-31] ( )
- R3 EvolveVirtualAdapter; C:\WINDOWS\System32\drivers\evolve.sys [21656 2015-07-12] (Echobit, LLC)
- R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2014-10-22] (ASUSTeK Computer Inc.)
- R3 ManyCam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [49272 2014-12-28] (Visicom Media Inc.)
- R3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-28] (Visicom Media Inc.)
- R1 mirrorv3; C:\WINDOWS\system32\DRIVERS\rminiv3.sys [5632 2012-12-18] (Famatech International Corp.)
- S3 MREMP50; C:\Program Files (x86)\Common Files\Motive\MREMP50.sys [21248 2010-02-02] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
- S3 MREMP50a64; C:\Program Files\Common Files\Motive\MREMP50a64.sys [43008 2010-02-02] (Printing Communications Assoc., Inc. (PCAUSA))
- S3 MRESP50; C:\Program Files (x86)\Common Files\Motive\MRESP50.sys [20096 2010-02-02] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
- S3 MRESP50a64; C:\Program Files\Common Files\Motive\MRESP50a64.sys [40960 2010-02-02] (Printing Communications Assoc., Inc. (PCAUSA))
- S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
- S3 NPF; C:\WINDOWS\System32\drivers\NPF.sys [36600 2013-02-28] (Riverbed Technology, Inc.)
- R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_b67dc924fff8de6d\nvlddmkm.sys [14199224 2017-01-04] (NVIDIA Corporation)
- R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
- R1 raddrvv3; C:\WINDOWS\SysWOW64\rserver30\raddrvv3.sys [71576 2012-12-19] (Famatech Corp.)
- R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
- R3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [51736 2016-06-23] (Razer Inc)
- R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.)
- R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.)
- R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [204944 2016-06-14] (Sandboxie Holdings, LLC)
- R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation)
- S3 tap-tb-0901; C:\WINDOWS\system32\DRIVERS\tap-tb-0901.sys [38656 2015-08-10] (The OpenVPN Project)
- R1 VBoxUSBMon; C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [127432 2015-09-16] (BigNox Corporation)
- R3 VCSVADHWSer; C:\WINDOWS\system32\DRIVERS\vcsvad.sys [29320 2015-10-01] (AVSOFT Corp.)
- R3 voxaldriver; C:\WINDOWS\system32\DRIVERS\voxaldriverx64.sys [43472 2016-06-15] ()
- R0 vsock; C:\WINDOWS\System32\drivers\vsock.sys [75512 2015-11-05] (VMware, Inc.)
- R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-mntapi20-shared.sys [34520 2015-07-09] (VMware, Inc.)
- S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
- R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
- R3 WNDA3100v3; C:\WINDOWS\system32\DRIVERS\WNDA3100v3.sys [2222736 2014-12-08] (MediaTek Inc.)
- S3 GPUZ; \??\C:\Users\Seth\AppData\Local\Temp\GPUZ.sys [X] <==== ATTENTION
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2017-06-01 15:53 - 2017-06-01 16:04 - 00000000 ____D C:\Users\Seth\Desktop\New folder (2)
- 2017-06-01 15:53 - 2017-06-01 15:53 - 01663672 _____ (Malwarebytes) C:\Users\Seth\Downloads\JRT (1).exe
- 2017-06-01 13:28 - 2017-06-01 13:28 - 00002164 _____ C:\Users\Public\Desktop\NETGEAR WNDA3100v3 Genie.lnk
- 2017-06-01 13:28 - 2017-06-01 13:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR WNDA3100v3 Genie
- 2017-06-01 03:23 - 2017-06-01 16:07 - 00000000 ____D C:\FRST
- 2017-06-01 01:56 - 2017-06-01 01:56 - 00000000 ____D C:\Users\Seth\Desktop\SeNetPack
- 2017-06-01 01:45 - 2017-06-01 01:49 - 110971348 _____ C:\Users\Seth\Downloads\SeNetPack.rar
- 2017-06-01 00:51 - 2017-06-01 00:51 - 00614200 _____ (Shark Labs) C:\Users\Seth\Downloads\VoiceChanger64(0.60).exe
- 2017-05-31 12:37 - 2017-06-01 14:26 - 00000030 _____ C:\Users\Seth\Desktop\New Text Document.txt
- 2017-05-30 21:35 - 2017-05-30 21:35 - 07346969 _____ C:\Users\Seth\Downloads\359k userpass.txt
- 2017-05-30 21:33 - 2017-05-30 21:34 - 41637553 _____ C:\Users\Seth\Downloads\AccountReaperCracked.rar
- 2017-05-30 21:31 - 2017-05-30 21:31 - 00035594 _____ C:\Users\Seth\Downloads\By SeduFrangu23 ..txt
- 2017-05-30 21:31 - 2017-05-30 21:31 - 00000737 _____ C:\Users\Seth\Downloads\By SeduFrangu23.txt
- 2017-05-30 20:35 - 2017-05-30 23:52 - 00000000 ____D C:\Users\Seth\Desktop\New folder
- 2017-05-30 20:35 - 2017-05-30 20:35 - 10015995 _____ C:\Users\Seth\Downloads\Sentry_MBA.rar
- 2017-05-30 20:33 - 2017-05-30 20:33 - 00004335 _____ C:\Users\Seth\Downloads\igvault.ini
- 2017-05-29 23:45 - 2017-05-29 23:45 - 01189440 _____ C:\Users\Seth\Downloads\CPA ppd domination ww.ebookleaks.org.rar
- 2017-05-29 23:39 - 2017-05-29 23:39 - 01736083 _____ C:\Users\Seth\Downloads\SkinMine www.ebookleaks.org.rar
- 2017-05-29 23:38 - 2017-05-29 23:38 - 01924325 _____ C:\Users\Seth\Downloads\Sustainable E-Whoring www.ebookleaks.org.rar
- 2017-05-29 23:31 - 2017-05-29 23:31 - 01647905 _____ C:\Users\Seth\Downloads\SkinHeaven www.ebookleaks.org.rar
- 2017-05-29 23:26 - 2017-05-29 23:26 - 01097492 _____ C:\Users\Seth\Downloads\Ultimate Ewhoring Guide www.ebookleaks.org.rar
- 2017-05-28 00:57 - 2017-05-28 00:57 - 00005258 _____ C:\Users\Seth\AppData\Local\recently-used.xbel
- 2017-05-27 21:45 - 2017-05-27 21:45 - 00735396 _____ C:\Users\Seth\Downloads\video (2).mov
- 2017-05-22 12:36 - 2017-05-22 12:36 - 00000222 _____ C:\Users\Seth\Desktop\Rising Storm 2 Vietnam.url
- 2017-05-20 12:03 - 2017-05-20 12:04 - 00528052 _____ C:\WINDOWS\Minidump\052017-58406-01.dmp
- 2017-05-15 18:18 - 2017-05-15 18:18 - 00096440 _____ C:\Users\Seth\Downloads\Five.paragraph_essay.pptx
- 2017-05-12 17:16 - 2017-04-27 20:28 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
- 2017-05-12 17:16 - 2017-04-27 19:59 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
- 2017-05-12 17:16 - 2017-04-27 19:56 - 02048488 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
- 2017-05-12 17:16 - 2017-04-27 19:55 - 00088416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
- 2017-05-12 17:16 - 2017-04-27 19:53 - 00616048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
- 2017-05-12 17:16 - 2017-04-27 19:48 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
- 2017-05-12 17:16 - 2017-04-27 19:46 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
- 2017-05-12 17:16 - 2017-04-27 19:46 - 01504056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
- 2017-05-12 17:16 - 2017-04-27 19:46 - 01431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
- 2017-05-12 17:16 - 2017-04-27 19:45 - 02263832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
- 2017-05-12 17:16 - 2017-04-27 19:45 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
- 2017-05-12 17:16 - 2017-04-27 19:45 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
- 2017-05-12 17:16 - 2017-04-27 19:45 - 00781144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
- 2017-05-12 17:16 - 2017-04-27 19:45 - 00493920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
- 2017-05-12 17:16 - 2017-04-27 19:45 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
- 2017-05-12 17:16 - 2017-04-27 19:43 - 02168288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
- 2017-05-12 17:16 - 2017-04-27 19:43 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
- 2017-05-12 17:16 - 2017-04-27 19:43 - 01557224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
- 2017-05-12 17:16 - 2017-04-27 19:43 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
- 2017-05-12 17:16 - 2017-04-27 19:42 - 00601952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
- 2017-05-12 17:16 - 2017-04-27 19:41 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 06665952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 04023008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 01851696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 01277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 01202936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 00981888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
- 2017-05-12 17:16 - 2017-04-27 19:40 - 00352760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
- 2017-05-12 17:16 - 2017-04-27 19:39 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
- 2017-05-12 17:16 - 2017-04-27 19:39 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
- 2017-05-12 17:16 - 2017-04-27 19:39 - 00962760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
- 2017-05-12 17:16 - 2017-04-27 19:39 - 00715104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
- 2017-05-12 17:16 - 2017-04-27 19:38 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
- 2017-05-12 17:16 - 2017-04-27 19:35 - 01414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
- 2017-05-12 17:16 - 2017-04-27 19:35 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
- 2017-05-12 17:16 - 2017-04-27 19:29 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
- 2017-05-12 17:16 - 2017-04-27 19:23 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
- 2017-05-12 17:16 - 2017-04-27 19:23 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
- 2017-05-12 17:16 - 2017-04-27 19:22 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
- 2017-05-12 17:16 - 2017-04-27 19:22 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
- 2017-05-12 17:16 - 2017-04-27 19:21 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
- 2017-05-12 17:16 - 2017-04-27 19:21 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BthTelemetry.dll
- 2017-05-12 17:16 - 2017-04-27 19:20 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
- 2017-05-12 17:16 - 2017-04-27 19:20 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\virtdisk.dll
- 2017-05-12 17:16 - 2017-04-27 19:19 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
- 2017-05-12 17:16 - 2017-04-27 19:19 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
- 2017-05-12 17:16 - 2017-04-27 19:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
- 2017-05-12 17:16 - 2017-04-27 19:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
- 2017-05-12 17:16 - 2017-04-27 19:18 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
- 2017-05-12 17:16 - 2017-04-27 19:17 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
- 2017-05-12 17:16 - 2017-04-27 19:17 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
- 2017-05-12 17:16 - 2017-04-27 19:17 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
- 2017-05-12 17:16 - 2017-04-27 19:17 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
- 2017-05-12 17:16 - 2017-04-27 19:17 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
- 2017-05-12 17:16 - 2017-04-27 19:16 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
- 2017-05-12 17:16 - 2017-04-27 19:15 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
- 2017-05-12 17:16 - 2017-04-27 19:14 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
- 2017-05-12 17:16 - 2017-04-27 19:14 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
- 2017-05-12 17:16 - 2017-04-27 19:14 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
- 2017-05-12 17:16 - 2017-04-27 19:13 - 13873664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
- 2017-05-12 17:16 - 2017-04-27 19:13 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
- 2017-05-12 17:16 - 2017-04-27 19:12 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
- 2017-05-12 17:16 - 2017-04-27 19:12 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
- 2017-05-12 17:16 - 2017-04-27 19:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
- 2017-05-12 17:16 - 2017-04-27 19:12 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
- 2017-05-12 17:16 - 2017-04-27 19:11 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
- 2017-05-12 17:16 - 2017-04-27 19:11 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
- 2017-05-12 17:16 - 2017-04-27 19:11 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
- 2017-05-12 17:16 - 2017-04-27 19:10 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
- 2017-05-12 17:16 - 2017-04-27 19:09 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
- 2017-05-12 17:16 - 2017-04-27 19:09 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
- 2017-05-12 17:16 - 2017-04-27 19:09 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
- 2017-05-12 17:16 - 2017-04-27 19:09 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
- 2017-05-12 17:16 - 2017-04-27 19:09 - 00352256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
- 2017-05-12 17:16 - 2017-04-27 19:08 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
- 2017-05-12 17:16 - 2017-04-27 19:08 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
- 2017-05-12 17:16 - 2017-04-27 19:08 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
- 2017-05-12 17:16 - 2017-04-27 19:08 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
- 2017-05-12 17:16 - 2017-04-27 19:08 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
- 2017-05-12 17:16 - 2017-04-27 19:07 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
- 2017-05-12 17:16 - 2017-04-27 19:07 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
- 2017-05-12 17:16 - 2017-04-27 19:07 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
- 2017-05-12 17:16 - 2017-04-27 19:06 - 04614656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
- 2017-05-12 17:16 - 2017-04-27 19:06 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
- 2017-05-12 17:16 - 2017-04-27 19:06 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
- 2017-05-12 17:16 - 2017-04-27 19:06 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
- 2017-05-12 17:16 - 2017-04-27 19:05 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
- 2017-05-12 17:16 - 2017-04-27 19:05 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
- 2017-05-12 17:16 - 2017-04-27 19:05 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
- 2017-05-12 17:16 - 2017-04-27 19:05 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
- 2017-05-12 17:16 - 2017-04-27 19:04 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
- 2017-05-12 17:16 - 2017-04-27 19:03 - 01137152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
- 2017-05-12 17:16 - 2017-04-27 19:03 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
- 2017-05-12 17:16 - 2017-04-27 19:03 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
- 2017-05-12 17:16 - 2017-04-27 19:03 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
- 2017-05-12 17:16 - 2017-04-27 19:03 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsnt.dll
- 2017-05-12 17:16 - 2017-04-27 19:03 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
- 2017-05-12 17:16 - 2017-04-27 19:02 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
- 2017-05-12 17:16 - 2017-04-27 19:02 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
- 2017-05-12 17:16 - 2017-04-27 19:01 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
- 2017-05-12 17:16 - 2017-04-27 19:00 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
- 2017-05-12 17:16 - 2017-04-27 19:00 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
- 2017-05-12 17:16 - 2017-04-27 19:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll
- 2017-05-12 17:16 - 2017-04-27 19:00 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
- 2017-05-12 17:16 - 2017-04-27 18:59 - 02154496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
- 2017-05-12 17:16 - 2017-04-27 18:59 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
- 2017-05-12 17:16 - 2017-04-27 18:59 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
- 2017-05-12 17:16 - 2017-04-27 18:59 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
- 2017-05-12 17:16 - 2017-04-27 18:58 - 07468544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
- 2017-05-12 17:16 - 2017-04-27 18:58 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe
- 2017-05-12 17:16 - 2017-04-27 18:58 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
- 2017-05-12 17:16 - 2017-04-27 18:58 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
- 2017-05-12 17:16 - 2017-04-27 18:58 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
- 2017-05-12 17:16 - 2017-04-27 18:58 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
- 2017-05-12 17:16 - 2017-04-27 18:57 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
- 2017-05-12 17:16 - 2017-04-27 18:57 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
- 2017-05-12 17:16 - 2017-04-27 18:57 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
- 2017-05-12 17:16 - 2017-04-27 18:57 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
- 2017-05-12 17:16 - 2017-04-27 18:57 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
- 2017-05-12 17:16 - 2017-04-27 18:56 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
- 2017-05-12 17:16 - 2017-04-27 18:56 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
- 2017-05-12 17:16 - 2017-04-27 18:56 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
- 2017-05-12 17:16 - 2017-04-27 18:56 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
- 2017-05-12 17:16 - 2017-04-27 18:56 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01987584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
- 2017-05-12 17:16 - 2017-04-27 18:55 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 02747904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 02483200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
- 2017-05-12 17:16 - 2017-04-27 18:54 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
- 2017-05-12 17:16 - 2017-04-27 18:53 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
- 2017-05-12 17:16 - 2017-04-27 18:53 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
- 2017-05-12 17:16 - 2017-04-27 18:53 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
- 2017-05-12 17:16 - 2017-04-27 18:53 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
- 2017-05-12 17:16 - 2017-04-27 18:53 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
- 2017-05-12 17:16 - 2017-04-27 18:52 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
- 2017-05-12 17:16 - 2017-04-27 18:52 - 02994176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
- 2017-05-12 17:16 - 2017-04-27 18:52 - 02008576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
- 2017-05-12 17:16 - 2017-04-27 18:52 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
- 2017-05-12 17:16 - 2017-04-27 18:50 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
- 2017-05-12 17:16 - 2017-04-27 18:44 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
- 2017-05-12 17:16 - 2017-04-27 18:43 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
- 2017-05-12 17:16 - 2017-04-27 18:41 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
- 2017-05-12 17:16 - 2017-04-27 18:40 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
- 2017-05-12 17:16 - 2017-04-27 18:39 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
- 2017-05-12 17:16 - 2017-04-27 18:38 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
- 2017-05-12 17:16 - 2017-04-27 18:37 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
- 2017-05-12 17:16 - 2017-04-27 18:37 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
- 2017-05-12 17:16 - 2017-04-27 18:37 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
- 2017-05-12 17:16 - 2017-04-27 18:37 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
- 2017-05-12 17:16 - 2017-04-27 18:30 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
- 2017-05-12 17:16 - 2017-03-04 02:57 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
- 2017-05-12 17:16 - 2017-03-04 01:25 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
- 2017-05-12 17:16 - 2017-03-04 01:23 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
- 2017-05-12 17:16 - 2017-03-04 01:22 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
- 2017-05-12 17:16 - 2017-03-04 01:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
- 2017-05-12 17:16 - 2017-03-04 01:16 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
- 2017-05-12 17:16 - 2017-03-04 01:06 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
- 2017-05-12 17:16 - 2017-03-04 01:05 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
- 2017-05-12 17:16 - 2017-03-04 01:01 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
- 2017-05-12 17:16 - 2017-03-04 01:00 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
- 2017-05-12 17:15 - 2017-04-27 19:58 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
- 2017-05-12 17:15 - 2017-04-27 19:57 - 00794928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
- 2017-05-12 17:15 - 2017-04-27 19:53 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
- 2017-05-12 17:15 - 2017-04-27 19:53 - 00774224 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
- 2017-05-12 17:15 - 2017-04-27 19:40 - 07220184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
- 2017-05-12 17:15 - 2017-04-27 19:40 - 01860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
- 2017-05-12 17:15 - 2017-04-27 19:40 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
- 2017-05-12 17:15 - 2017-04-27 19:38 - 00847200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
- 2017-05-12 17:15 - 2017-04-27 19:36 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
- 2017-05-12 17:15 - 2017-04-27 19:36 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
- 2017-05-12 17:15 - 2017-04-27 19:35 - 08170600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
- 2017-05-12 17:15 - 2017-04-27 19:35 - 04260576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
- 2017-05-12 17:15 - 2017-04-27 19:35 - 01988048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
- 2017-05-12 17:15 - 2017-04-27 19:35 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
- 2017-05-12 17:15 - 2017-04-27 19:35 - 01302136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
- 2017-05-12 17:15 - 2017-04-27 19:35 - 00596040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
- 2017-05-12 17:15 - 2017-04-27 19:34 - 22220856 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
- 2017-05-12 17:15 - 2017-04-27 19:34 - 01072248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
- 2017-05-12 17:15 - 2017-04-27 19:34 - 00443232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
- 2017-05-12 17:15 - 2017-04-27 19:34 - 00244824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
- 2017-05-12 17:15 - 2017-04-27 19:28 - 00453536 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
- 2017-05-12 17:15 - 2017-04-27 19:28 - 00387864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
- 2017-05-12 17:15 - 2017-04-27 19:19 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
- 2017-05-12 17:15 - 2017-04-27 19:14 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
- 2017-05-12 17:15 - 2017-04-27 19:11 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
- 2017-05-12 17:15 - 2017-04-27 19:10 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
- 2017-05-12 17:15 - 2017-04-27 19:08 - 18365440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
- 2017-05-12 17:15 - 2017-04-27 19:07 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
- 2017-05-12 17:15 - 2017-04-27 19:06 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
- 2017-05-12 17:15 - 2017-04-27 19:05 - 19414016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
- 2017-05-12 17:15 - 2017-04-27 19:04 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
- 2017-05-12 17:15 - 2017-04-27 19:03 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspppoe.sys
- 2017-05-12 17:15 - 2017-04-27 19:02 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
- 2017-05-12 17:15 - 2017-04-27 19:02 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
- 2017-05-12 17:15 - 2017-04-27 19:00 - 12349440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
- 2017-05-12 17:15 - 2017-04-27 19:00 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
- 2017-05-12 17:15 - 2017-04-27 18:59 - 12187136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
- 2017-05-12 17:15 - 2017-04-27 18:59 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
- 2017-05-12 17:15 - 2017-04-27 18:58 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
- 2017-05-12 17:15 - 2017-04-27 18:58 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
- 2017-05-12 17:15 - 2017-04-27 18:58 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
- 2017-05-12 17:15 - 2017-04-27 18:58 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
- 2017-05-12 17:15 - 2017-04-27 18:57 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
- 2017-05-12 17:15 - 2017-04-27 18:57 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
- 2017-05-12 17:15 - 2017-04-27 18:57 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
- 2017-05-12 17:15 - 2017-04-27 18:57 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
- 2017-05-12 17:15 - 2017-04-27 18:57 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
- 2017-05-12 17:15 - 2017-04-27 18:56 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
- 2017-05-12 17:15 - 2017-04-27 18:56 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
- 2017-05-12 17:15 - 2017-04-27 18:56 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
- 2017-05-12 17:15 - 2017-04-27 18:56 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
- 2017-05-12 17:15 - 2017-04-27 18:56 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
- 2017-05-12 17:15 - 2017-04-27 18:56 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
- 2017-05-12 17:15 - 2017-04-27 18:55 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
- 2017-05-12 17:15 - 2017-04-27 18:55 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
- 2017-05-12 17:15 - 2017-04-27 18:54 - 02027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
- 2017-05-12 17:15 - 2017-04-27 18:54 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
- 2017-05-12 17:15 - 2017-04-27 18:54 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
- 2017-05-12 17:15 - 2017-04-27 18:53 - 06288384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
- 2017-05-12 17:15 - 2017-04-27 18:53 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
- 2017-05-12 17:15 - 2017-04-27 18:53 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
- 2017-05-12 17:15 - 2017-04-27 18:53 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
- 2017-05-12 17:15 - 2017-04-27 18:51 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
- 2017-05-12 17:15 - 2017-04-27 18:51 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
- 2017-05-12 17:15 - 2017-04-27 18:51 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
- 2017-05-12 17:15 - 2017-04-27 18:50 - 03778048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
- 2017-05-12 17:15 - 2017-04-27 18:50 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
- 2017-05-12 17:15 - 2017-04-27 18:49 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
- 2017-05-12 17:15 - 2017-04-27 18:47 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
- 2017-05-12 17:15 - 2017-04-27 18:47 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
- 2017-05-12 17:15 - 2017-04-27 18:47 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
- 2017-05-12 17:15 - 2017-04-27 18:47 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
- 2017-05-12 17:15 - 2017-04-27 18:45 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
- 2017-05-12 17:15 - 2017-04-27 18:45 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
- 2017-05-12 17:15 - 2017-04-27 18:44 - 13091328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
- 2017-05-12 17:15 - 2017-04-27 18:44 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
- 2017-05-12 17:15 - 2017-04-27 18:44 - 01145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
- 2017-05-12 17:15 - 2017-04-27 18:44 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
- 2017-05-12 17:15 - 2017-04-27 18:43 - 01184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
- 2017-05-12 17:15 - 2017-04-27 18:43 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
- 2017-05-12 17:15 - 2017-04-27 18:43 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
- 2017-05-12 17:15 - 2017-04-27 18:43 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
- 2017-05-12 17:15 - 2017-04-27 18:42 - 13441536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
- 2017-05-12 17:15 - 2017-04-27 18:42 - 08125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
- 2017-05-12 17:15 - 2017-04-27 18:42 - 08076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
- 2017-05-12 17:15 - 2017-04-27 18:42 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
- 2017-05-12 17:15 - 2017-04-27 18:42 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
- 2017-05-12 17:15 - 2017-04-27 18:41 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
- 2017-05-12 17:15 - 2017-04-27 18:41 - 00860160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
- 2017-05-12 17:15 - 2017-04-27 18:41 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
- 2017-05-12 17:15 - 2017-04-27 18:41 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
- 2017-05-12 17:15 - 2017-04-27 18:40 - 02096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
- 2017-05-12 17:15 - 2017-04-27 18:39 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
- 2017-05-12 17:15 - 2017-04-27 18:38 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
- 2017-05-12 17:15 - 2017-04-27 18:38 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
- 2017-05-12 17:15 - 2017-04-27 18:37 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
- 2017-05-12 17:15 - 2017-04-27 18:37 - 03134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
- 2017-05-12 17:15 - 2017-04-27 18:37 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
- 2017-05-12 17:15 - 2017-04-27 18:37 - 01783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
- 2017-05-12 17:15 - 2017-04-27 18:36 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
- 2017-05-12 17:15 - 2017-04-27 18:36 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
- 2017-05-12 17:15 - 2017-04-27 18:35 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
- 2017-05-12 17:15 - 2017-04-27 18:34 - 00999424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
- 2017-05-12 17:15 - 2017-04-27 18:34 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
- 2017-05-12 17:15 - 2017-04-27 18:34 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
- 2017-05-12 17:15 - 2017-03-04 02:09 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
- 2017-05-12 17:15 - 2017-03-04 01:27 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
- 2017-05-12 17:15 - 2017-03-04 01:19 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
- 2017-05-12 17:14 - 2017-04-27 19:57 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
- 2017-05-12 17:14 - 2017-04-27 19:53 - 07784288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
- 2017-05-12 17:14 - 2017-04-27 19:52 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
- 2017-05-12 17:14 - 2017-04-27 19:49 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
- 2017-05-12 17:14 - 2017-04-27 19:49 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
- 2017-05-12 17:14 - 2017-04-27 19:49 - 00700936 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
- 2017-05-12 17:14 - 2017-04-27 19:46 - 00410464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
- 2017-05-12 17:14 - 2017-04-27 19:42 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
- 2017-05-12 17:14 - 2017-04-27 19:40 - 02759704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
- 2017-05-12 17:14 - 2017-04-27 19:40 - 02187104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
- 2017-05-12 17:14 - 2017-04-27 19:40 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
- 2017-05-12 17:14 - 2017-04-27 19:40 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
- 2017-05-12 17:14 - 2017-04-27 19:40 - 00578400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
- 2017-05-12 17:14 - 2017-04-27 19:40 - 00402784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
- 2017-05-12 17:14 - 2017-04-27 19:40 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
- 2017-05-12 17:14 - 2017-04-27 19:40 - 00026976 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
- 2017-05-12 17:14 - 2017-04-27 19:39 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
- 2017-05-12 17:14 - 2017-04-27 19:38 - 02915704 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
- 2017-05-12 17:14 - 2017-04-27 19:38 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
- 2017-05-12 17:14 - 2017-04-27 19:38 - 01852200 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
- 2017-05-12 17:14 - 2017-04-27 19:38 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
- 2017-05-12 17:14 - 2017-04-27 19:38 - 00431968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
- 2017-05-12 17:14 - 2017-04-27 19:34 - 04674360 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
- 2017-05-12 17:14 - 2017-04-27 19:34 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
- 2017-05-12 17:14 - 2017-04-27 19:34 - 01277824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
- 2017-05-12 17:14 - 2017-04-27 19:34 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
- 2017-05-12 17:14 - 2017-04-27 19:30 - 01569184 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
- 2017-05-12 17:14 - 2017-04-27 19:21 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
- 2017-05-12 17:14 - 2017-04-27 19:19 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
- 2017-05-12 17:14 - 2017-04-27 19:15 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
- 2017-05-12 17:14 - 2017-04-27 19:15 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
- 2017-05-12 17:14 - 2017-04-27 19:14 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
- 2017-05-12 17:14 - 2017-04-27 19:12 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
- 2017-05-12 17:14 - 2017-04-27 19:12 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
- 2017-05-12 17:14 - 2017-04-27 19:10 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
- 2017-05-12 17:14 - 2017-04-27 19:06 - 22569472 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
- 2017-05-12 17:14 - 2017-04-27 19:05 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
- 2017-05-12 17:14 - 2017-04-27 19:03 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
- 2017-05-12 17:14 - 2017-04-27 19:03 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
- 2017-05-12 17:14 - 2017-04-27 19:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
- 2017-05-12 17:14 - 2017-04-27 19:01 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
- 2017-05-12 17:14 - 2017-04-27 19:01 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
- 2017-05-12 17:14 - 2017-04-27 19:01 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
- 2017-05-12 17:14 - 2017-04-27 19:01 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll
- 2017-05-12 17:14 - 2017-04-27 19:01 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
- 2017-05-12 17:14 - 2017-04-27 19:00 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
- 2017-05-12 17:14 - 2017-04-27 19:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
- 2017-05-12 17:14 - 2017-04-27 19:00 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
- 2017-05-12 17:14 - 2017-04-27 19:00 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
- 2017-05-12 17:14 - 2017-04-27 18:59 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
- 2017-05-12 17:14 - 2017-04-27 18:59 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
- 2017-05-12 17:14 - 2017-04-27 18:59 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
- 2017-05-12 17:14 - 2017-04-27 18:58 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
- 2017-05-12 17:14 - 2017-04-27 18:58 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
- 2017-05-12 17:14 - 2017-04-27 18:58 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
- 2017-05-12 17:14 - 2017-04-27 18:58 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
- 2017-05-12 17:14 - 2017-04-27 18:58 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
- 2017-05-12 17:14 - 2017-04-27 18:57 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00692224 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
- 2017-05-12 17:14 - 2017-04-27 18:56 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 06042624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 02084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
- 2017-05-12 17:14 - 2017-04-27 18:55 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 03664384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
- 2017-05-12 17:14 - 2017-04-27 18:54 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
- 2017-05-12 17:14 - 2017-04-27 18:53 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
- 2017-05-12 17:14 - 2017-04-27 18:53 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
- 2017-05-12 17:14 - 2017-04-27 18:51 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
- 2017-05-12 17:14 - 2017-04-27 18:51 - 01913856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
- 2017-05-12 17:14 - 2017-04-27 18:51 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
- 2017-05-12 17:14 - 2017-04-27 18:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
- 2017-05-12 17:14 - 2017-04-27 18:51 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
- 2017-05-12 17:14 - 2017-04-27 18:49 - 17198592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
- 2017-05-12 17:14 - 2017-04-27 18:49 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
- 2017-05-12 17:14 - 2017-04-27 18:49 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
- 2017-05-12 17:14 - 2017-04-27 18:48 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
- 2017-05-12 17:14 - 2017-04-27 18:48 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
- 2017-05-12 17:14 - 2017-04-27 18:47 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
- 2017-05-12 17:14 - 2017-04-27 18:47 - 03290112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
- 2017-05-12 17:14 - 2017-04-27 18:47 - 01790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
- 2017-05-12 17:14 - 2017-04-27 18:47 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
- 2017-05-12 17:14 - 2017-04-27 18:46 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
- 2017-05-12 17:14 - 2017-04-27 18:46 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
- 2017-05-12 17:14 - 2017-04-27 18:46 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
- 2017-05-12 17:14 - 2017-04-27 18:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll
- 2017-05-12 17:14 - 2017-04-27 18:45 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
- 2017-05-12 17:14 - 2017-04-27 18:45 - 00946688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
- 2017-05-12 17:14 - 2017-04-27 18:45 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
- 2017-05-12 17:14 - 2017-04-27 18:45 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
- 2017-05-12 17:14 - 2017-04-27 18:45 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
- 2017-05-12 17:14 - 2017-04-27 18:45 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
- 2017-05-12 17:14 - 2017-04-27 18:44 - 04749824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
- 2017-05-12 17:14 - 2017-04-27 18:44 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
- 2017-05-12 17:14 - 2017-04-27 18:44 - 00937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
- 2017-05-12 17:14 - 2017-04-27 18:44 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
- 2017-05-12 17:14 - 2017-04-27 18:44 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
- 2017-05-12 17:14 - 2017-04-27 18:44 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
- 2017-05-12 17:14 - 2017-04-27 18:44 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
- 2017-05-12 17:14 - 2017-04-27 18:43 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
- 2017-05-12 17:14 - 2017-04-27 18:43 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
- 2017-05-12 17:14 - 2017-04-27 18:43 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
- 2017-05-12 17:14 - 2017-04-27 18:43 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
- 2017-05-12 17:14 - 2017-04-27 18:43 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
- 2017-05-12 17:14 - 2017-04-27 18:42 - 05850624 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
- 2017-05-12 17:14 - 2017-04-27 18:42 - 01692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
- 2017-05-12 17:14 - 2017-04-27 18:42 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
- 2017-05-12 17:14 - 2017-04-27 18:42 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
- 2017-05-12 17:14 - 2017-04-27 18:41 - 01359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
- 2017-05-12 17:14 - 2017-04-27 18:41 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
- 2017-05-12 17:14 - 2017-04-27 18:41 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
- 2017-05-12 17:14 - 2017-04-27 18:41 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
- 2017-05-12 17:14 - 2017-04-27 18:41 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 02914816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
- 2017-05-12 17:14 - 2017-04-27 18:40 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
- 2017-05-12 17:14 - 2017-04-27 18:38 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
- 2017-05-12 17:14 - 2017-04-27 18:38 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
- 2017-05-12 17:14 - 2017-04-27 18:38 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 04744192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 02895872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 02316288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 02216960 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 03613184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
- 2017-05-12 17:14 - 2017-04-27 18:36 - 02691072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 02478080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 01844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 00735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
- 2017-05-12 17:14 - 2017-04-27 18:35 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
- 2017-05-12 17:14 - 2017-04-27 18:35 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
- 2017-05-12 17:14 - 2017-03-04 01:26 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
- 2017-05-12 17:14 - 2017-03-04 01:25 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
- 2017-05-12 17:14 - 2016-12-21 02:09 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
- 2017-05-12 17:13 - 2017-04-27 19:56 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
- 2017-05-12 17:13 - 2017-04-27 19:47 - 00699744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
- 2017-05-12 17:13 - 2017-04-27 19:47 - 00501088 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
- 2017-05-12 17:13 - 2017-04-27 19:44 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys
- 2017-05-12 17:13 - 2017-04-27 19:42 - 00526176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
- 2017-05-12 17:13 - 2017-04-27 19:30 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
- 2017-05-12 17:13 - 2017-04-27 19:28 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
- 2017-05-12 17:13 - 2017-04-27 19:03 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthTelemetry.dll
- 2017-05-12 17:13 - 2017-04-27 19:02 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
- 2017-05-12 17:13 - 2017-04-27 19:01 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\virtdisk.dll
- 2017-05-12 17:13 - 2017-04-27 19:00 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
- 2017-05-12 17:13 - 2017-04-27 19:00 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
- 2017-05-12 17:13 - 2017-04-27 19:00 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
- 2017-05-12 17:13 - 2017-04-27 18:59 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
- 2017-05-12 17:13 - 2017-04-27 18:59 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
- 2017-05-12 17:13 - 2017-04-27 18:58 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
- 2017-05-12 17:13 - 2017-04-27 18:58 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUX.dll
- 2017-05-12 17:13 - 2017-04-27 18:57 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
- 2017-05-12 17:13 - 2017-04-27 18:56 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
- 2017-05-12 17:13 - 2017-04-27 18:55 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
- 2017-05-12 17:13 - 2017-04-27 18:50 - 01476608 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
- 2017-05-12 17:13 - 2017-04-27 18:50 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
- 2017-05-12 17:13 - 2017-04-27 18:50 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsnt.dll
- 2017-05-12 17:13 - 2017-04-27 18:48 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
- 2017-05-12 17:13 - 2017-04-27 18:47 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
- 2017-05-12 17:13 - 2017-04-27 18:46 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
- 2017-05-12 17:13 - 2017-04-27 18:46 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
- 2017-05-12 17:13 - 2017-04-27 18:46 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
- 2017-05-12 17:13 - 2017-04-27 18:45 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
- 2017-05-12 17:13 - 2017-04-27 18:43 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
- 2017-05-12 17:13 - 2017-04-27 18:43 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
- 2017-05-12 17:13 - 2017-04-27 18:41 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
- 2017-05-12 17:13 - 2017-04-27 18:40 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
- 2017-05-12 17:13 - 2017-04-27 18:39 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
- 2017-05-12 17:13 - 2017-04-27 18:34 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
- 2017-05-12 17:13 - 2017-04-27 18:33 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
- 2017-05-11 17:08 - 2017-05-11 17:08 - 00001252 _____ C:\Users\Seth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Update and Privacy Settings.lnk
- 2017-05-11 17:08 - 2017-05-11 17:08 - 00000000 ____D C:\Users\Seth\AppData\Local\UNP
- 2017-05-11 16:29 - 2017-05-11 16:30 - 00000000 ____D C:\Program Files\UNP
- 2017-05-11 16:29 - 2017-05-11 16:29 - 00000000 ____D C:\WINDOWS\system32\UNP
- 2017-05-04 16:44 - 2017-06-01 13:30 - 00003248 _____ C:\WINDOWS\System32\Tasks\GPU Tweak II
- 2017-05-04 16:30 - 2017-05-04 16:30 - 00544700 _____ C:\WINDOWS\Minidump\050417-45625-01.dmp
- 2017-05-03 15:31 - 2017-05-03 15:32 - 00452684 _____ C:\WINDOWS\Minidump\050317-30546-01.dmp
- 2017-05-03 06:43 - 2017-05-03 06:43 - 00000982 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk
- 2017-05-03 06:43 - 2017-05-03 06:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
- 2017-05-02 17:09 - 2017-05-22 18:34 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
- 2017-05-02 17:09 - 2017-05-03 16:14 - 00000000 ____D C:\Users\Seth\Documents\Heroes of the Storm
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2017-06-01 16:00 - 2014-11-29 21:29 - 00000000 ____D C:\Program Files (x86)\Steam
- 2017-06-01 13:47 - 2016-02-20 12:07 - 00000000 ____D C:\Users\Seth\AppData\Roaming\Skype
- 2017-06-01 13:32 - 2016-07-16 06:47 - 00000000 ___HD C:\Program Files\WindowsApps
- 2017-06-01 13:32 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\AppReadiness
- 2017-06-01 13:30 - 2015-07-21 13:24 - 00000000 ____D C:\Users\Seth\AppData\Local\CrashDumps
- 2017-06-01 13:28 - 2016-11-13 13:40 - 00000000 ____D C:\Program Files (x86)\NETGEAR
- 2017-06-01 13:28 - 2016-07-20 20:04 - 02545066 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2017-06-01 13:26 - 2016-11-13 13:40 - 00004512 _____ C:\WINDOWS\system32\Drivers\Ntgr3100PT.dat
- 2017-06-01 13:22 - 2016-08-25 20:02 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2017-06-01 13:22 - 2016-08-11 11:34 - 00000000 ____D C:\ProgramData\VMware
- 2017-06-01 13:21 - 2016-07-16 01:04 - 00786432 _____ C:\WINDOWS\system32\config\BBI
- 2017-06-01 13:18 - 2014-11-02 12:03 - 00000000 ____D C:\Users\Seth\AppData\LocalLow\Temp
- 2017-06-01 13:05 - 2016-06-11 23:05 - 00000000 ____D C:\Users\Seth\AppData\Roaming\PlaysTV
- 2017-06-01 02:34 - 2015-06-22 12:14 - 00000000 ____D C:\Users\Seth\AppData\Local\Spotify
- 2017-06-01 02:29 - 2015-06-17 20:33 - 00000000 ____D C:\Users\Seth\AppData\Roaming\Spotify
- 2017-06-01 02:19 - 2016-08-19 19:42 - 00000034 _____ C:\Users\Seth\AppData\Roaming\AdobeWLCMCache.dat
- 2017-06-01 02:00 - 2015-06-21 20:05 - 00000000 ____D C:\Users\Seth\AppData\Local\Adobe
- 2017-06-01 00:54 - 2017-01-22 03:13 - 00000276 _____ C:\Users\Seth\Documents\ClownfishVoiceChanger.ini
- 2017-06-01 00:52 - 2017-01-22 03:13 - 00002162 _____ C:\Users\Public\Desktop\ClownfishVoiceChanger.lnk
- 2017-06-01 00:39 - 2015-04-10 15:49 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2017-06-01 00:39 - 2015-04-10 15:49 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
- 2017-06-01 00:31 - 2016-08-25 19:39 - 00000000 ____D C:\Users\Seth
- 2017-06-01 00:31 - 2016-08-06 10:35 - 00000000 ____D C:\Users\Seth\AppData\Roaming\Nox
- 2017-06-01 00:31 - 2016-08-06 10:35 - 00000000 ____D C:\Users\Seth\AppData\Local\Nox
- 2017-06-01 00:31 - 2016-07-16 06:45 - 00000000 ____D C:\WINDOWS\INF
- 2017-06-01 00:30 - 2016-09-03 14:50 - 00000000 ____D C:\Users\Seth\AppData\Roaming\iFunbox_UserCache
- 2017-06-01 00:26 - 2016-08-31 18:49 - 00000000 ____D C:\ProgramData\Electronic Arts
- 2017-06-01 00:14 - 2015-02-09 18:26 - 00000000 ____D C:\Users\Seth\AppData\Local\Battle.net
- 2017-05-31 22:27 - 2016-08-25 19:32 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
- 2017-05-31 15:37 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
- 2017-05-31 15:37 - 2016-07-16 06:36 - 00000000 ____D C:\WINDOWS\CbsTemp
- 2017-05-31 15:36 - 2016-07-19 22:39 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
- 2017-05-31 13:43 - 2014-11-29 21:44 - 00000000 ____D C:\ProgramData\BlueStacksSetup
- 2017-05-31 13:13 - 2015-02-09 18:26 - 00000000 ____D C:\Program Files (x86)\Battle.net
- 2017-05-29 01:05 - 2017-02-14 17:02 - 00000000 ____D C:\Users\Seth\AppData\Local\Ubisoft Game Launcher
- 2017-05-28 01:01 - 2016-02-13 03:46 - 00000000 ____D C:\Users\Seth\.gimp-2.8
- 2017-05-28 00:57 - 2016-02-13 03:49 - 00000000 ____D C:\Users\Seth\AppData\Local\gtk-2.0
- 2017-05-26 00:05 - 2016-05-07 01:06 - 00000000 ____D C:\Program Files (x86)\Overwatch
- 2017-05-23 16:43 - 2016-05-07 09:31 - 00000000 ____D C:\Users\Seth\Documents\Overwatch
- 2017-05-23 10:45 - 2016-07-20 01:35 - 00000000 ____D C:\WINDOWS\system32\MRT
- 2017-05-23 10:42 - 2016-07-20 01:35 - 132223576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2017-05-20 12:06 - 2015-04-10 15:39 - 00000000 ____D C:\Program Files (x86)\TeamViewer
- 2017-05-20 12:03 - 2016-11-05 11:45 - 1084703582 _____ C:\WINDOWS\MEMORY.DMP
- 2017-05-20 12:03 - 2016-11-05 11:45 - 00000000 ____D C:\WINDOWS\Minidump
- 2017-05-17 16:08 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
- 2017-05-16 21:20 - 2016-03-22 15:34 - 00000000 ____D C:\Users\Seth\AppData\Roaming\Audacity
- 2017-05-16 16:42 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\rescache
- 2017-05-16 16:19 - 2015-06-14 13:47 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2017-05-13 10:00 - 2016-04-27 01:39 - 00000000 __RHD C:\Users\Public\AccountPictures
- 2017-05-13 09:57 - 2016-08-25 19:32 - 04824224 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ___SD C:\WINDOWS\system32\F12
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ___RD C:\Program Files\Windows Defender
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\system32\oobe
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\Provisioning
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
- 2017-05-13 00:44 - 2016-07-16 06:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
- 2017-05-13 00:44 - 2016-07-16 01:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
- 2017-05-09 16:17 - 2016-07-16 06:42 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
- 2017-05-05 15:48 - 2016-08-25 20:02 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
- 2017-05-04 16:36 - 2015-11-20 22:47 - 00000000 ____D C:\Users\Seth\AppData\Roaming\discord
- 2017-05-03 17:41 - 2016-12-29 22:47 - 00001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
- 2017-05-03 16:13 - 2015-02-09 18:26 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
- 2017-05-03 13:39 - 2014-09-27 13:54 - 00000000 ____D C:\Users\Seth\AppData\Local\Packages
- ==================== Files in the root of some directories =======
- 2016-08-11 22:08 - 2015-01-01 20:37 - 0006855 _____ () C:\Users\Seth\AppData\Roaming\13.jpg
- 2015-06-22 00:27 - 2016-07-22 21:00 - 0000132 _____ () C:\Users\Seth\AppData\Roaming\Adobe PNG Format CS6 Prefs
- 2016-08-19 19:42 - 2017-06-01 02:19 - 0000034 _____ () C:\Users\Seth\AppData\Roaming\AdobeWLCMCache.dat
- 2015-02-21 15:57 - 2015-02-22 13:46 - 0014507 _____ () C:\Users\Seth\AppData\Roaming\TMPsteam.txt
- 2016-06-15 18:55 - 2016-06-15 18:55 - 0001167 _____ () C:\Users\Seth\AppData\Roaming\trace_FilterInstaller.txt
- 2016-06-15 18:55 - 2016-06-15 18:55 - 0000000 _____ () C:\Users\Seth\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
- 2016-01-24 12:46 - 2016-02-05 23:09 - 0000600 _____ () C:\Users\Seth\AppData\Roaming\winscp.rnd
- 2016-01-23 01:19 - 2016-02-05 23:40 - 0000600 _____ () C:\Users\Seth\AppData\Local\PUTTY.RND
- 2017-05-28 00:57 - 2017-05-28 00:57 - 0005258 _____ () C:\Users\Seth\AppData\Local\recently-used.xbel
- 2014-12-22 19:58 - 2017-01-04 21:25 - 0007597 _____ () C:\Users\Seth\AppData\Local\Resmon.ResmonCfg
- 2016-01-30 00:36 - 2016-01-30 00:36 - 0000003 _____ () C:\Users\Seth\AppData\Local\updater.log
- 2016-01-30 00:36 - 2016-01-30 00:36 - 0000424 _____ () C:\Users\Seth\AppData\Local\UserProducts.xml
- 2016-08-25 19:35 - 2016-08-25 19:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
- Files to move or delete:
- ====================
- C:\Users\Seth\multibit-hd-windows-x64-0.1.4.exe
- ==================== Bamital & volsnap ======================
- (There is no automatic fix for files that do not pass verification.)
- C:\WINDOWS\system32\winlogon.exe => File is digitally signed
- C:\WINDOWS\system32\wininit.exe => File is digitally signed
- C:\WINDOWS\explorer.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
- C:\WINDOWS\system32\svchost.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
- C:\WINDOWS\system32\services.exe => File is digitally signed
- C:\WINDOWS\system32\User32.dll => File is digitally signed
- C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
- C:\WINDOWS\system32\userinit.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
- C:\WINDOWS\system32\rpcss.dll => File is digitally signed
- C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
- C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
- C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2017-05-27 15:26
- ==================== End of FRST.txt ============================
- Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-06-2017
- Ran by Seth (01-06-2017 16:08:35)
- Running from C:\Users\Seth\Desktop\New folder (2)
- Windows 10 Home Version 1607 (X64) (2016-08-26 01:13:24)
- Boot Mode: Normal
- ==========================================================
- ==================== Accounts: =============================
- Administrator (S-1-5-21-1198041709-478224594-2316559523-500 - Administrator - Disabled)
- DefaultAccount (S-1-5-21-1198041709-478224594-2316559523-503 - Limited - Disabled)
- Guest (S-1-5-21-1198041709-478224594-2316559523-501 - Limited - Disabled)
- Seth (S-1-5-21-1198041709-478224594-2316559523-1001 - Administrator - Enabled) => C:\Users\Seth
- ==================== Security Center ========================
- (If an entry is included in the fixlist, it will be removed.)
- AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- ==================== Installed Programs ======================
- (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
- µTorrent (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\uTorrent) (Version: 3.4.8.42449 - BitTorrent Inc.)
- 3DMark Demo (HKLM\...\Steam App 231350) (Version: - Futuremark)
- 3DMark Demo (HKLM-x32\...\Steam App 231350) (Version: - Futuremark)
- Active Directory Authentication Library for SQL Server (Version: 13.0.1601.5 - Microsoft Corporation) Hidden
- Active Directory Authentication Library for SQL Server (x86) (x32 Version: 13.0.1601.5 - Microsoft Corporation) Hidden
- Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
- Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated)
- Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
- Adobe Flash Player ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 9.0.45.0 - Adobe Systems Incorporated)
- Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.0 - Adobe Systems Incorporated)
- Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
- Adobe Shockwave Player (HKLM-x32\...\Adobe Shockwave Player) (Version: 10.2.0.22 - Adobe Systems, Inc.)
- AMD OverDrive (HKLM-x32\...\{5A613379-D3AA-43B9-A82B-EE47703FC2D7}) (Version: 4.3.2.0703 - Advanced Micro Devices, Inc.)
- Ansel (Version: 372.70 - NVIDIA Corporation) Hidden
- Apple Application Support (32-bit) (HKLM-x32\...\{D079CAAD-0C31-47A2-9AF5-A82F9CD9B221}) (Version: 5.2 - Apple Inc.)
- Apple Application Support (64-bit) (HKLM\...\{64E6007B-1DA9-42CD-BBE4-D5FA67A7C71D}) (Version: 5.2 - Apple Inc.)
- Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.)
- Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
- ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach)
- ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.8.3.0 - ASUSTek COMPUTER INC.)
- ASUS GPU Tweak (x32 Version: 2.8.3.0 - ASUSTek COMPUTER INC.) Hidden
- ASUS GPU TweakII (HKLM-x32\...\InstallShield_{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.3.7.0 - ASUSTek COMPUTER INC.)
- ASUS GPU TweakII (x32 Version: 1.3.7.0 - ASUSTek COMPUTER INC.) Hidden
- AT&T Troubleshoot & Resolve (HKLM-x32\...\ATT-AT&T Troubleshoot & Resolve) (Version: 8.5.1.16 - AT&T)
- Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team)
- Auto Clicker by Shocker (HKLM-x32\...\Auto Clicker by Shocker_is1) (Version: V3.0 - shockingsoft.com)
- AutoHotkey 1.1.24.04 (HKLM\...\AutoHotkey) (Version: 1.1.24.04 - Lexikos)
- Awesomenauts (HKLM-x32\...\Steam App 204300) (Version: - Ronimo Games)
- Bad Rats (HKLM-x32\...\Steam App 34900) (Version: - Invent4 Entertainment)
- Bandicam (HKLM-x32\...\Bandicam) (Version: 3.2.5.1125 - Bandisoft.com)
- Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com)
- Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
- BitTorrent (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\BitTorrent) (Version: 7.9.3.40299 - BitTorrent Inc.)
- Block N Load Beta (HKLM-x32\...\Steam App 299360) (Version: - Jagex)
- BlueStacks App Player (HKLM-x32\...\{4047E0FE-CBD8-4915-BBB1-45F6CBF417AC}) (Version: 2.0.4.5627 - BlueStack Systems, Inc.)
- Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
- Brawlhalla (HKLM\...\Steam App 291550) (Version: - Blue Mammoth Games)
- Call of Duty: Black Ops III (HKLM\...\Steam App 311210) (Version: - Treyarch)
- CEVO CS:GO Client Beta version 1.0 (HKLM-x32\...\CEVO CS:GO Client Beta_is1) (Version: 1.0 - )
- Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios)
- Classic Shell (HKLM\...\{D4B3454F-7529-4F5F-851D-2C36933F7D64}) (Version: 4.2.5 - IvoSoft)
- Clownfish Voice Changer (HKLM\...\ClownfishVoiceChanger) (Version: - )
- Corsair K70 Firmware Update Application (HKLM-x32\...\{8C9DA353-2101-4658-BAA7-53F88EA0D3AB}_is1) (Version: - )
- Counter-Strike (HKLM\...\Steam App 10) (Version: - Valve)
- Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
- Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)
- Creatures Of Darkness (x32 Version: 4.4.21 - Screaming Bee Inc.) Hidden
- Creatures of Darkness Voices for MorphVOX (HKLM-x32\...\{a11adeb7-c5f0-4f2f-83c4-96b107776cae}) (Version: 4.4.21 - Screaming Bee Inc.)
- CyberGhost 5 (HKLM\...\CyberGhost 5_is1) (Version: - CyberGhost S.R.L.)
- Dirty Bomb (HKLM-x32\...\Steam App 333930) (Version: - Splash Damage®)
- Discord (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
- Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.5.1.1 - Dolby Laboratories Inc)
- Dota 2 (HKLM\...\Steam App 570) (Version: - Valve)
- EA SPORTS online 2008 (HKLM-x32\...\82A44D22-9452-49FB-00FB-CEC7DCAF7E23) (Version: - )
- Entity Framework 6.1.3 Tools for Visual Studio 2015 Update 1 (HKLM-x32\...\{2A56910C-69C8-495D-8ED8-9080F0A14E58}) (Version: 14.0.41103.0 - Microsoft Corporation)
- Evolve (HKLM\...\{670B1B49-9FD3-4827-9B41-471EFF580AA8}) (Version: 1.8.18 - Echobit, LLC)
- FileZilla Client 3.19.0 (HKLM-x32\...\FileZilla Client) (Version: 3.19.0 - Tim Kosse)
- FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version: - Image-Line)
- FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
- foobar2000 v1.3.10 (HKLM-x32\...\foobar2000) (Version: 1.3.10 - Peter Pawlowski)
- Furry Voices (x32 Version: 4.4.21 - Screaming Bee Inc.) Hidden
- Furry Voices for MorphVOX (HKLM-x32\...\{4ef9d1d2-3383-4d9b-811f-2cae5f46528e}) (Version: 4.4.21 - Screaming Bee Inc.)
- Futuremark SystemInfo (HKLM-x32\...\{70690D9E-3D00-47D6-9CE9-BC3B6F900447}) (Version: 4.41.563.0 - Futuremark)
- GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
- GitHub (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\5f7eb300e2ea4ebf) (Version: 2.14.7.1 - GitHub, Inc.)
- Google Chrome (HKLM-x32\...\{FD78FCBB-B20E-370E-BA1C-FE6886D4214F}) (Version: 58.0.3029.110 - Google, Inc.)
- Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)
- Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
- Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
- Gyazo 3.3.1 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.)
- H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company)
- Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
- IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line)
- Intellisense Lang Pack Mobile Extension SDK 10.0.14393.0 (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Iron Snout (HKLM\...\Steam App 424280) (Version: - SnoutUp)
- iTunes (HKLM\...\{81C96689-EA5B-4B7D-A04F-16326EC51BC2}) (Version: 12.5.4.42 - Apple Inc.)
- Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
- KinoniDrivers 2.8.1 (HKLM-x32\...\KinoniDrivers) (Version: 2.8.1 - Kinoni)
- Kits Configuration Installer (x32 Version: 10.1.14393.33 - Microsoft) Hidden
- LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
- Lightshot-5.3.0.0 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.3.0.0 - Skillbrains)
- Madden NFL 08 (HKLM-x32\...\{4650F3BF-F9ED-45AB-00A3-C927351E177F}) (Version: - Electronic Arts)
- Male Voices (x32 Version: 4.4.21 - Screaming Bee Inc.) Hidden
- Male Voices for MorphVOX (HKLM-x32\...\{7df2e62e-f563-4575-9d08-80c00ccc87a2}) (Version: 4.4.21 - Screaming Bee Inc.)
- Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
- Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
- Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
- Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
- Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
- Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation)
- Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation)
- Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
- Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation)
- Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
- Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation)
- Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation)
- Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation)
- Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
- Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation)
- Microsoft OneDrive (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation)
- Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
- Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
- Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
- Microsoft SQL Server 2014 Express LocalDB (HKLM\...\{AB8DE9BA-19E1-446A-BCFA-6B3DA9751E21}) (Version: 12.0.2000.8 - Microsoft Corporation)
- Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
- Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
- Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
- Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation)
- Microsoft SQL Server 2016 LocalDB (HKLM\...\{E359515A-92E6-4FA3-A2C9-E1BA02D8DE6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
- Microsoft SQL Server 2016 Management Objects (HKLM-x32\...\{0F1C8E2F-199A-4946-B3BF-0906DACFD032}) (Version: 13.0.1601.5 - Microsoft Corporation)
- Microsoft SQL Server 2016 Management Objects (x64) (HKLM\...\{20EA85AA-2A1D-4F11-B09F-4BA2BF3C8989}) (Version: 13.0.1601.5 - Microsoft Corporation)
- Microsoft SQL Server 2016 T-SQL Language Service (HKLM-x32\...\{8BFDE775-C5B8-46DB-84EF-43FFC8A2E8AD}) (Version: 13.0.14500.10 - Microsoft Corporation)
- Microsoft SQL Server 2016 T-SQL ScriptDom (HKLM\...\{D091DE8C-EA0F-49AF-8DE3-BD6C79737C6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
- Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
- Microsoft SQL Server Data Tools - enu (14.0.60519.0) (HKLM-x32\...\{4E27B0EF-7BAB-432A-AF3D-3FC8F3F7353F}) (Version: 14.0.60519.0 - Microsoft Corporation)
- Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{68BA34E8-9B9D-4A74-83F0-7D366B532D75}) (Version: 12.0.2402.11 - Microsoft Corporation)
- Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation)
- Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation)
- Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{718FFB65-F6E4-4D62-861F-ED10ED32C936}) (Version: 12.0.2402.11 - Microsoft Corporation)
- Microsoft System CLR Types for SQL Server 2016 (HKLM\...\{96EB5054-C775-4BEF-B7B9-AA96A295EDCD}) (Version: 13.0.1601.5 - Microsoft Corporation)
- Microsoft System CLR Types for SQL Server 2016 (HKLM-x32\...\{84C23ECA-FE4D-494F-9247-3EBAD57E7F0C}) (Version: 13.0.1601.5 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
- Microsoft Visual Studio Express 2015 for Windows Desktop - ENU (HKLM-x32\...\{ad32eacb-d66f-472d-9af5-11278d461b28}) (Version: 14.0.23107.178 - Microsoft Corporation)
- Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation)
- Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
- Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
- Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
- Mozilla Firefox 47.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 47.0.1 (x86 en-US)) (Version: 47.0.1 - Mozilla)
- Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.1 - Mozilla)
- MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.25420 - Microsoft Corporation) Hidden
- NETGEAR WNDA3100v3 (x32 Version: 1.0.0.10 - NETGEAR) Hidden
- NETGEAR WNDA3100v3 Genie (HKLM-x32\...\InstallShield_{60C50FCC-545B-4D5D-B0D1-4A773143BCE7}) (Version: 1.0.0.10 - NETGEAR)
- Node.js (HKLM\...\{0A0387EF-9B43-4255-939B-AC8C8982F735}) (Version: 5.5.0 - Node.js Foundation)
- Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team)
- NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
- NVIDIA Graphics Driver 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.53 - NVIDIA Corporation)
- NVIDIA HD Audio Driver 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation)
- NVIDIA Miracast Virtual Audio 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 368.81 - NVIDIA Corporation)
- NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
- Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )
- Origin (HKLM-x32\...\Origin) (Version: 9.12.2.60376 - Electronic Arts, Inc.)
- Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
- Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC)
- PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
- PerformanceTest v9.0 (HKLM\...\PerformanceTest 9_is1) (Version: 9.0.1007.0 - Passmark Software)
- Personality Voices (x32 Version: 4.4.21 - Screaming Bee Inc.) Hidden
- Personality Voices for MorphVOX (HKLM-x32\...\{da9b1e64-24d5-4c4c-b687-270ea6065b14}) (Version: 4.4.21 - Screaming Bee Inc.)
- PLAYERUNKNOWN'S BATTLEGROUNDS (HKLM\...\Steam App 578080) (Version: - Bluehole, Inc.)
- PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.23.2-r122830-release - Plays.tv, LLC)
- Prerequisites for SSDT (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
- Prerequisites for SSDT (HKLM-x32\...\{B7E94916-7AE6-4F7F-A377-7A410A42BA19}) (Version: 13.0.1601.5 - Microsoft Corporation)
- PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.)
- QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
- Radmin Server 3.5 (HKLM-x32\...\{1B25B709-0909-4C30-8E85-BF3823DF7555}) (Version: 3.50.0000 - Famatech)
- Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 1.7.8 - Razer Inc.)
- Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.15.804 - Razer Inc.)
- Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7106 - Realtek Semiconductor Corp.)
- Rising Storm 2: Vietnam (HKLM\...\Steam App 418460) (Version: - Antimatter Games)
- Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive)
- ROBLOX Player for Seth (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - ROBLOX Corporation)
- Rocket League (HKLM-x32\...\Steam App 252950) (Version: - Psyonix)
- Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
- Roslyn Language Services - x86 (x32 Version: 14.0.25425 - Microsoft Corporation) Hidden
- Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios)
- Sandboxie 5.12 (64-bit) (HKLM\...\Sandboxie) (Version: 5.12 - Sandboxie Holdings, LLC)
- SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
- SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
- Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)
- Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
- Skypeâ„¢ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.)
- SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
- Spotify (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\Spotify) (Version: 1.0.55.487.g256699aa - Spotify AB)
- Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
- swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
- TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
- Team Explorer for Microsoft Visual Studio 2015 Update 3.1 (x32 Version: 14.102.25521 - Microsoft) Hidden
- TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
- TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.77242 - TeamViewer)
- Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic)
- Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
- Tom Clancy's Rainbow Six Siege (HKLM\...\Steam App 359550) (Version: - Ubisoft Montreal)
- Torchlight II (HKLM-x32\...\Steam App 200710) (Version: - Runic Games)
- TypeScript Power Tool (x32 Version: 1.8.34.0 - Microsoft Corporation) Hidden
- TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.8.36.0 - Microsoft Corporation) Hidden
- Unity (HKLM-x32\...\Unity) (Version: 5.1.2f1 - Unity Technologies ApS)
- Unity Web Player (HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\UnityWebPlayer) (Version: 5.1.2f1 - Unity Technologies ApS)
- Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
- Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
- Universal CRT Extension SDK (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
- Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
- Universal CRT Headers Libraries and Sources (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Universal CRT Redistributable (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Universal CRT Tools x64 (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Universal CRT Tools x86 (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Universal General MIDI DLS Extension SDK (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton)
- Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
- Uplay (HKLM-x32\...\Uplay) (Version: 27.0 - Ubisoft)
- Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony)
- Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
- Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
- Visual Studio 2015 Update 3 (KB3022398) (HKLM-x32\...\{7a68448b-9cf2-4049-bd73-5875f1aa7ba2}) (Version: 14.0.25420 - Microsoft Corporation)
- VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
- VMware Workstation (HKLM\...\{F4C0A853-FA3B-4404-954B-799299EB5A98}) (Version: 12.1.1 - VMware, Inc.)
- Voxal Voice Changer (HKLM-x32\...\Voxal) (Version: 1.31 - NCH Software)
- VS Update core components (x32 Version: 14.0.25425 - Microsoft Corporation) Hidden
- vs_update3notification (x32 Version: 14.0.25425 - Microsoft Corporation) Hidden
- Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
- WinAppDeploy (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
- Windows Driver Package - Bose Corporation (usbser) Ports (08/03/2012 1.2.0.0) (HKLM\...\7AFADC17CE5D176C218EB94F26AE53271142A857) (Version: 08/03/2012 1.2.0.0 - Bose Corporation)
- Windows Driver Package - Silicon Laboratories (silabenm) Ports (03/19/2014 6.7.0.0) (HKLM\...\B97004A400E30DCF940971EFA7A0C13C6B0A4B66) (Version: 03/19/2014 6.7.0.0 - Silicon Laboratories)
- Windows SDK AddOn (HKLM-x32\...\{45D392D2-5956-4646-9CA6-83CBF67507B6}) (Version: 10.1.0.0 - Microsoft Corporation)
- Windows Software Development Kit - Windows 10.0.14393.33 (HKLM-x32\...\{f23f94c5-8bba-4202-85ad-c83d4402cdc1}) (Version: 10.1.14393.33 - Microsoft Corporation)
- WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
- WinRT Intellisense Desktop - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense Desktop - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense IoT - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense IoT - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense PPI - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense PPI - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense UAP - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- WinRT Intellisense UAP - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden
- Wireshark 2.0.2 (64-bit) (HKLM-x32\...\Wireshark) (Version: 2.0.2 - The Wireshark developer community, hxxps://www.wireshark.org)
- ==================== Custom CLSID (Whitelisted): ==========================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- CustomCLSID: HKU\S-1-5-21-1198041709-478224594-2316559523-1001_Classes\CLSID\{DEE03C2B-0C0C-41A9-9877-FD4B4D7B6EA3}\InprocServer32 -> C:\Users\Seth\AppData\Local\Roblox\Versions\version-7d9c06d298534e0c\RobloxProxy64.dll (ROBLOX Corporation)
- ==================== Scheduled Tasks (Whitelisted) =============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {0A19CF80-D236-4835-B5FD-437C1646DF91} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
- Task: {0FC72EEC-304B-47E2-8372-FD946E017FD3} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
- Task: {1F3A81A7-6303-45F9-811E-C88B0CB6A37D} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
- Task: {2D6C4053-FD7A-4D6E-9CA6-EC46AE8DCD3D} - System32\Tasks\[email protected] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-04-28] (Adobe Systems Incorporated)
- Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => %SystemRoot%\System32\AutoWorkplace.exe
- Task: {40D12CEE-9775-4F36-83F9-6E1C1D532E16} - System32\Tasks\GPU Tweak II => C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe [2016-09-01] (TODO: <Company name>)
- Task: {4F0C9DA1-5A8F-45FF-896D-3D98B8B01487} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
- Task: {5FE19CDC-DEF8-4DAB-94F6-98BC589B6D3C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
- Task: {6043C250-7E02-481D-B316-80E5F79F804B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-14] (Google Inc.)
- Task: {6584256C-9AC3-4CD5-BD2A-82E5494F2215} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-03-28] ()
- Task: {7322C95A-D5F1-45FD-AD84-5EFD0D1FD19B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
- Task: {7671B521-62EC-43D2-8F8C-66B9CB6BD0FE} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
- Task: {79F53AAB-C80C-4B09-8C94-6D2B9FD664B5} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
- Task: {7B4B2254-E98B-4F02-935C-A75B8892BC21} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
- Task: {866C6C30-3755-41FE-A4C1-F0EAF0FB86C2} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
- Task: {9027CF6E-7E82-433D-B16B-26AE55A94F87} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
- Task: {94DE8346-7E4A-4BFD-85E5-A076CA528296} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
- Task: {9D93BDA7-900B-44B4-BBEF-CA2B3C188F1C} - \CCleanerSkipUAC -> No File <==== ATTENTION
- Task: {A4F4AB7F-B94D-471F-AF96-07CBED77AAEC} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-03-28] ()
- Task: {C04A7B3B-4DD3-47DF-9CD1-CDFD9F1D5BD0} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
- Task: {C51AF47E-269D-4B15-B4EF-2768D9DBB014} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe [2016-06-20] (Microsoft Corporation)
- Task: {CA67EC2E-73A8-4F48-8279-BB63CC853F13} - System32\Tasks\{4A6051F3-AF8B-4E1F-80D8-C7749ADB8C22} => Chrome.exe hxxp://ui.skype.com/ui/0/7.5.80.102/en/abandoninstall?page=tsProgressBar
- Task: {D4D52B53-7418-408D-AAF3-6279192BE01E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
- Task: {DCDCDB42-EBF5-4CAC-B0C1-05A720E2B348} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-14] (Google Inc.)
- Task: {E4FD6C19-A034-44B8-B4AE-A6875369C542} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
- Task: {E99A5BDE-DFAC-475E-9444-221B6318DECD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
- Task: {EBDF38F3-BCBD-456C-8B9F-E2C25CBEAFE4} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-20] (Adobe Systems Incorporated)
- Task: {EF604C97-47E8-4D5B-90A6-46B4566EE1C6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
- Task: {FE19DEEB-2EB2-429D-AF2E-80C9457903D7} - System32\Tasks\CAM => C:\Program Files (x86)\NZXT\CAM\CAM_Client_V3.exe
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
- ==================== Shortcuts =============================
- (The entries could be listed to be restored or removed.)
- Shortcut: C:\Users\Seth\Favorites\NCH Software Download Site.lnk -> hxxp://www.nch.com.au/index.htm
- ==================== Loaded Modules (Whitelisted) ==============
- 2016-07-16 06:42 - 2016-07-16 06:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
- 2017-05-12 17:14 - 2017-04-27 19:49 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
- 2016-11-17 02:28 - 2016-11-17 02:28 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
- 2016-11-17 02:28 - 2016-11-17 02:28 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
- 2014-11-12 04:20 - 2014-11-12 04:20 - 00524800 _____ () C:\Program Files (x86)\Kinoni\EpocCam_and_Barcode_drivers\KinoniSvc.exe
- 2016-05-05 20:29 - 2016-06-14 15:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
- 2016-04-29 17:17 - 2016-06-14 15:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
- 2015-01-03 21:06 - 2015-01-03 21:26 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
- 2015-11-04 18:11 - 2015-11-04 18:12 - 00188072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
- 2016-04-14 17:16 - 2016-04-14 17:16 - 12471368 _____ () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
- 2016-06-27 10:22 - 2016-06-27 10:22 - 00052912 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
- 2016-04-29 17:17 - 2016-06-14 15:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
- 2016-05-05 20:29 - 2016-06-14 15:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
- 2017-03-15 18:52 - 2017-03-04 01:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
- 2017-03-15 18:52 - 2017-03-04 01:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
- 2017-03-15 18:52 - 2017-03-04 01:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
- 2017-05-12 17:14 - 2017-04-27 18:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
- 2017-05-12 17:14 - 2017-04-27 18:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
- 2017-05-26 09:18 - 2017-05-26 09:20 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- 2017-05-26 09:18 - 2017-05-26 09:20 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
- 2017-05-26 09:18 - 2017-05-26 09:20 - 43202048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkyWrap.dll
- 2017-05-26 09:18 - 2017-05-26 09:20 - 02442752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\skypert.dll
- 2017-05-26 09:18 - 2017-05-26 09:20 - 00136192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.Proxies.dll
- 2017-05-22 05:03 - 2017-05-22 05:03 - 00250112 _____ () C:\Program Files (x86)\ClownfishVoiceChanger\ClownfshAPO64.dll
- 2016-09-14 16:35 - 2016-09-06 23:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
- 2017-03-15 18:52 - 2017-03-04 01:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
- 2017-05-16 16:19 - 2017-05-09 04:13 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libglesv2.dll
- 2017-05-16 16:19 - 2017-05-09 04:13 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libegl.dll
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00033280 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\cx_Logging.cp35-win32.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00103424 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00111616 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes35.dll
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00041984 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00405504 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom35.dll
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00173568 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 01934336 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 01780736 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 00505856 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
- 2017-05-10 15:43 - 2017-05-10 15:43 - 03812864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
- 2016-04-14 17:16 - 2016-04-14 17:16 - 01309768 _____ () C:\Program Files (x86)\VMware\VMware Workstation\libxml2.dll
- 2016-04-14 17:16 - 2016-04-14 17:16 - 00173128 _____ () C:\Program Files (x86)\VMware\VMware Workstation\nfc-types.dll
- 2016-04-14 17:16 - 2016-04-14 17:16 - 00199752 _____ () C:\Program Files (x86)\VMware\VMware Workstation\LIBEXPAT.dll
- 2016-04-14 17:16 - 2016-04-14 17:16 - 00396872 _____ () C:\Program Files (x86)\VMware\VMware Workstation\ssoClient.dll
- 2014-11-12 04:20 - 2014-11-12 04:20 - 00468480 _____ () C:\Program Files (x86)\Kinoni\EpocCam_and_Barcode_drivers\EpocCam.ax
- 2017-01-11 16:58 - 2017-01-04 15:28 - 01958912 _____ () C:\Users\Seth\AppData\Local\Discord\app-0.0.297\ffmpeg.dll
- 2017-01-11 16:59 - 2017-01-11 16:59 - 01082880 _____ () \\?\C:\Users\Seth\AppData\Roaming\discord\0.0.297\modules\discord_voice\discord_voice.node
- 2017-01-11 16:59 - 2017-01-11 16:59 - 03750400 _____ () \\?\C:\Users\Seth\AppData\Roaming\discord\0.0.297\modules\discord_voice\libdiscord.dll
- 2017-01-11 16:59 - 2017-01-11 16:59 - 00914432 _____ () \\?\C:\Users\Seth\AppData\Roaming\discord\0.0.297\modules\discord_utils\discord_utils.node
- 2017-01-11 16:59 - 2017-01-11 16:59 - 01127424 _____ () \\?\C:\Users\Seth\AppData\Roaming\discord\0.0.297\modules\discord_toaster\discord_toaster.node
- 2017-01-11 16:58 - 2017-01-04 15:28 - 02278912 _____ () C:\Users\Seth\AppData\Local\Discord\app-0.0.297\libglesv2.dll
- 2017-01-11 16:58 - 2017-01-04 15:28 - 00096768 _____ () C:\Users\Seth\AppData\Local\Discord\app-0.0.297\libegl.dll
- 2017-06-01 15:57 - 2017-06-01 15:57 - 00148992 _____ () \\?\C:\Users\Seth\AppData\Local\Temp\AFE4.tmp.node
- 2017-01-11 16:59 - 2017-04-26 16:29 - 02658296 _____ () \\?\C:\Users\Seth\AppData\Roaming\discord\0.0.297\modules\discord_rpc\discord_rpc.node
- 2017-01-11 16:59 - 2017-03-22 15:38 - 02665976 _____ () \\?\C:\Users\Seth\AppData\Roaming\discord\0.0.297\modules\discord_contact_import\discord_contact_import.node
- 2014-11-29 21:38 - 2017-05-16 20:54 - 00678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll
- 2015-01-20 17:20 - 2016-08-31 20:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
- 2014-11-29 21:38 - 2017-06-01 14:50 - 02485536 _____ () C:\Program Files (x86)\Steam\video.dll
- 2015-01-20 17:20 - 2016-08-31 20:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
- 2015-01-20 17:20 - 2016-08-31 20:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
- 2014-11-29 21:37 - 2016-01-27 02:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
- 2014-11-29 21:37 - 2016-01-27 02:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
- 2014-11-29 21:37 - 2016-01-27 02:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
- 2014-11-29 21:37 - 2016-01-27 02:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
- 2014-11-29 21:37 - 2016-01-27 02:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
- 2014-11-29 21:38 - 2017-06-01 14:50 - 00877856 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
- 2016-03-09 16:32 - 2016-07-04 17:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
- 2016-12-12 17:58 - 2017-05-08 14:45 - 69516064 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
- 2014-11-29 21:38 - 2017-06-01 14:50 - 00385312 _____ () C:\Program Files (x86)\Steam\steam.dll
- 2015-01-20 17:20 - 2015-09-24 18:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
- ==================== Alternate Data Streams (Whitelisted) =========
- (If an entry is included in the fixlist, only the ADS will be removed.)
- AlternateDataStreams: C:\Users\Seth:Heroes & Generals [38]
- ==================== Safe Mode (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
- ==================== Association (Whitelisted) ===============
- (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
- ==================== Internet Explorer trusted/restricted ===============
- (If an entry is included in the fixlist, it will be removed from the registry.)
- ==================== Hosts content: ==========================
- (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
- 2013-08-22 08:25 - 2016-09-08 18:10 - 00001019 _____ C:\WINDOWS\system32\Drivers\etc\hosts
- 0.0.0.0 pubads.g.doubleclick.net
- 0.0.0.0 securepubads.g.doubleclick.net
- 0.0.0.0 www.googletagservices.com
- 0.0.0.0 gads.pubmatic.com
- 0.0.0.0 ads.pubmatic.com
- 0.0.0.0 spclient.wg.spotify.com
- ==================== Other Areas ============================
- (Currently there is no automatic fix for this section.)
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Seth\Downloads\maxresdefault.jpg
- DNS Servers: 192.168.1.1
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
- Windows Firewall is enabled.
- ==================== MSCONFIG/TASK MANAGER disabled items ==
- HKLM\...\StartupApproved\Run: => "ShadowPlay"
- HKLM\...\StartupApproved\Run: => "NvBackend"
- HKLM\...\StartupApproved\Run: => "XboxStat"
- HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
- HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
- HKLM\...\StartupApproved\Run32: => "PerditiongmmouseRun"
- HKLM\...\StartupApproved\Run32: => "iTunesHelper"
- HKLM\...\StartupApproved\Run32: => "CAM"
- HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\StartupFolder: => "Curse.lnk"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\StartupFolder: => "VisualProtector.lnk"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\StartupFolder: => "RA4W VPN.exe"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "CyberGhost"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "ManyCam"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "Spotify"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "Spotify Web Helper"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "EvolveClient"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "Discord"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "SandboxieControl"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "EZBlocker"
- HKU\S-1-5-21-1198041709-478224594-2316559523-1001\...\StartupApproved\Run: => "iFunBox"
- ==================== FirewallRules (Whitelisted) ===============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- FirewallRules: [{567F0E41-CD53-458D-91FD-B17642717F80}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\WDExpress.exe
- FirewallRules: [{4B5E637A-C38F-49CF-9354-20414DCAD560}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
- FirewallRules: [{B3788647-7E94-4740-9E6B-91D87FCB756D}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
- FirewallRules: [{890ABA0B-1B5D-4EC2-8250-893626481BC7}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
- FirewallRules: [{8BA36027-F1B8-4ED7-BEE9-BF0D43F75695}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
- FirewallRules: [{AF2FB9B9-AC92-420E-BD06-D2D46FDFB6AF}] => (Block) C:\users\seth\desktop\nanocore 1.2.2.0_cracked by alcatraz3222\nanocore.exe
- FirewallRules: [{8F0B1213-1B89-490E-88B1-FF308D2F044B}] => (Block) C:\users\seth\desktop\nanocore 1.2.2.0_cracked by alcatraz3222\nanocore.exe
- FirewallRules: [UDP Query User{BF37DAE8-EA0F-48E9-8672-C62369DE502A}C:\users\seth\desktop\nanocore 1.2.2.0_cracked by alcatraz3222\nanocore.exe] => (Allow) C:\users\seth\desktop\nanocore 1.2.2.0_cracked by alcatraz3222\nanocore.exe
- FirewallRules: [TCP Query User{1BBB5EE9-7A66-4CFF-87AC-2DC02453018D}C:\users\seth\desktop\nanocore 1.2.2.0_cracked by alcatraz3222\nanocore.exe] => (Allow) C:\users\seth\desktop\nanocore 1.2.2.0_cracked by alcatraz3222\nanocore.exe
- FirewallRules: [UDP Query User{49143709-50A3-43D2-B171-C229D63BA2A8}C:\users\seth\desktop\release 8.8.2016\pokemobbot.exe] => (Allow) C:\users\seth\desktop\release 8.8.2016\pokemobbot.exe
- FirewallRules: [TCP Query User{A63100D1-B037-4CD6-ACEF-623B22382B80}C:\users\seth\desktop\release 8.8.2016\pokemobbot.exe] => (Allow) C:\users\seth\desktop\release 8.8.2016\pokemobbot.exe
- FirewallRules: [UDP Query User{8C63124B-FC1B-4E7B-A11B-4D258FC72C35}C:\users\seth\desktop\fivver\new folder (2)\new folder\pogolocationfeeder.gui.exe] => (Allow) C:\users\seth\desktop\fivver\new folder (2)\new folder\pogolocationfeeder.gui.exe
- FirewallRules: [TCP Query User{C7D1CB73-87E0-453B-9D5F-37DAD61AF2D1}C:\users\seth\desktop\fivver\new folder (2)\new folder\pogolocationfeeder.gui.exe] => (Allow) C:\users\seth\desktop\fivver\new folder (2)\new folder\pogolocationfeeder.gui.exe
- FirewallRules: [UDP Query User{3298096A-3883-4E13-A53D-0070A58D68BF}C:\users\seth\desktop\new folder\pogosnipe\pogolocationfeeder.gui.exe] => (Allow) C:\users\seth\desktop\new folder\pogosnipe\pogolocationfeeder.gui.exe
- FirewallRules: [TCP Query User{18A360E5-4172-4610-A6B0-911221EA1E8D}C:\users\seth\desktop\new folder\pogosnipe\pogolocationfeeder.gui.exe] => (Allow) C:\users\seth\desktop\new folder\pogosnipe\pogolocationfeeder.gui.exe
- FirewallRules: [UDP Query User{BFDBD0DF-E104-4E5C-AD21-4EC1F555C01D}C:\users\seth\desktop\pokefarmer\pokefarmer.patched.exe] => (Allow) C:\users\seth\desktop\pokefarmer\pokefarmer.patched.exe
- FirewallRules: [TCP Query User{AD0FE51B-E04F-48D7-AB5A-37DC857ED61E}C:\users\seth\desktop\pokefarmer\pokefarmer.patched.exe] => (Allow) C:\users\seth\desktop\pokefarmer\pokefarmer.patched.exe
- FirewallRules: [{5CC0CB27-544E-4A2A-80D0-540CB6E48828}] => (Allow) C:\Program Files\Bignox\BigNoxVM\RTNoxVMHandle.exe
- FirewallRules: [{20F7CB0E-B8CF-4A16-BAAD-F7C852E05FE5}] => (Allow) C:\Users\Seth\AppData\Roaming\Nox\bin\Nox.exe
- FirewallRules: [UDP Query User{41D77BB2-A40D-4AB9-893A-224B0FFA5964}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
- FirewallRules: [TCP Query User{D1B8981D-52C5-44BE-93A4-4CF1DFDDDD21}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
- FirewallRules: [UDP Query User{F4DFAFD0-D517-45F1-8273-1A4536D846F1}C:\users\seth\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\seth\appdata\roaming\spotify\spotify.exe
- FirewallRules: [TCP Query User{DE27FEA5-0DAF-4F1C-84FC-C455DDFF1C39}C:\users\seth\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\seth\appdata\roaming\spotify\spotify.exe
- FirewallRules: [UDP Query User{29ED87D6-33D9-4A24-9A72-EFA45A6AC37B}C:\users\seth\desktop\release\1\pogolocationfeeder.exe] => (Allow) C:\users\seth\desktop\release\1\pogolocationfeeder.exe
- FirewallRules: [TCP Query User{34672986-5B19-4737-84AD-90BBCE1ABBEB}C:\users\seth\desktop\release\1\pogolocationfeeder.exe] => (Allow) C:\users\seth\desktop\release\1\pogolocationfeeder.exe
- FirewallRules: [{C2FB8B9D-9501-4890-B516-28EBF950BA4A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
- FirewallRules: [{181E2B9C-BDA1-4630-94C7-E1762DF17781}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
- FirewallRules: [UDP Query User{DAF362BF-6FD2-41CF-95FF-759B0E07D1FC}C:\users\seth\desktop\release\pokemobbot.exe] => (Allow) C:\users\seth\desktop\release\pokemobbot.exe
- FirewallRules: [TCP Query User{0475B842-0799-4E93-9A52-5BA44A56AE17}C:\users\seth\desktop\release\pokemobbot.exe] => (Allow) C:\users\seth\desktop\release\pokemobbot.exe
- FirewallRules: [TCP Query User{396DA5E3-2CF5-4251-9743-95C36C80B9BA}C:\users\seth\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\seth\appdata\roaming\spotify\spotify.exe
- FirewallRules: [UDP Query User{3A9FF101-1066-429C-8774-5F2BBBA2CF2F}C:\users\seth\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\seth\appdata\roaming\spotify\spotify.exe
- FirewallRules: [TCP Query User{C1A513C9-C45C-45F2-BB84-B7D490F25799}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe
- FirewallRules: [UDP Query User{405DF263-E037-4F50-B7DB-71C3C90818D8}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe
- FirewallRules: [{9AD5B81A-92A2-4414-BE59-CB5C5F30966D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{47625618-2E44-4224-BFF4-CD7274272EE2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{5BE1DB65-9EF2-4CF0-952F-F44B8093BCDB}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
- FirewallRules: [{9151F332-0283-4E7E-B2C2-E80FCA58746B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
- FirewallRules: [{1447682A-140B-4608-AB9B-679795742FCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
- FirewallRules: [{472649F9-0D20-4798-B852-EADE425C398E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
- FirewallRules: [TCP Query User{EDC09C1A-BB61-4A34-A48F-B081FF7406D2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
- FirewallRules: [UDP Query User{55F024D6-2109-42DF-B569-6153FE32B3EF}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
- FirewallRules: [{553A9169-6AE6-41B5-AB29-E876E2A92F7C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- FirewallRules: [{084DB4B9-B2CD-4523-9197-D7A7298D3D00}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- FirewallRules: [{35466142-8DC3-46B5-B637-7C88828ADCA0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
- FirewallRules: [{3689B870-F23C-4D02-9E67-6E9BE9263317}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
- FirewallRules: [{1B9F6A8F-30CC-4F62-B999-180AE410AE14}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
- FirewallRules: [{5BF7B2E5-5B58-4A4C-8D1B-26AAEB79830F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
- FirewallRules: [{BCEBB983-3E50-4839-9F44-48C735A96DA5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
- FirewallRules: [{EEFBF6C0-C234-4100-BE32-73AA7936417F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
- FirewallRules: [{A3120AC3-9382-49A0-84AF-EAFB31402C69}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
- FirewallRules: [{27F4E5B5-9B55-459D-98BD-665491916E04}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
- FirewallRules: [{CD9A6786-0D17-4DBF-AFD9-217A498007E1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
- FirewallRules: [{56604F25-729A-4CFD-800E-3B54D1B0F69C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Iron Snout\IronSnout.exe
- FirewallRules: [{1EEB72E9-0FEE-4910-8811-E7974406F04B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Iron Snout\IronSnout.exe
- FirewallRules: [{D5D9CA4C-FE25-4560-AD5A-26EC309828FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
- FirewallRules: [{B1776031-6877-4D46-99EF-88DFD56FD812}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
- FirewallRules: [TCP Query User{E90F9AE5-9EB9-414F-A1F5-13076EC39EB8}C:\program files (x86)\java\jre1.8.0_101\bin\java.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_101\bin\java.exe
- FirewallRules: [UDP Query User{A855A7D8-6173-40F3-BACE-1EF106FFC79F}C:\program files (x86)\java\jre1.8.0_101\bin\java.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_101\bin\java.exe
- FirewallRules: [{CFCA1DD4-8395-4C13-84DE-04BAAD40DC62}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe
- FirewallRules: [{FCBACB87-682F-4FBE-AC27-1F1F343E26B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe
- FirewallRules: [{A69EFEB4-E07C-49EC-BD3F-EF086D26FD9F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BlockNLoad\Win64\BlockNLoad.exe
- FirewallRules: [{0A410D1C-667B-4286-A0C0-E1130994F2AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BlockNLoad\Win64\BlockNLoad.exe
- FirewallRules: [{9E4FD62E-1D6C-4C53-A01B-56145AC015CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned_BE.exe
- FirewallRules: [{5D7F1DDF-3734-461C-B325-BEB2FB9759F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned_BE.exe
- FirewallRules: [{934AC78C-4D9C-4918-A86D-D6F711CE7152}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
- FirewallRules: [{CE01AB14-47F3-4617-8036-F96FCDF2B98A}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
- FirewallRules: [TCP Query User{1F1974A8-18E3-4E9F-A968-B8448E51E736}C:\users\seth\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\seth\appdata\roaming\utorrent\utorrent.exe
- FirewallRules: [UDP Query User{4E7C37BF-0A99-414E-B0C1-E41590BE78A0}C:\users\seth\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\seth\appdata\roaming\utorrent\utorrent.exe
- FirewallRules: [TCP Query User{FD9F95DD-7502-4430-9646-55D5B96297CD}C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe
- FirewallRules: [UDP Query User{485E27BA-F478-4120-BFC8-9E739513C675}C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe
- FirewallRules: [TCP Query User{0FBD9371-D87B-4534-8F05-E8335C808252}C:\program files\multibit hd\multibit-hd.exe] => (Allow) C:\program files\multibit hd\multibit-hd.exe
- FirewallRules: [UDP Query User{7F73C853-B95E-45FD-ADC8-643B12C815CE}C:\program files\multibit hd\multibit-hd.exe] => (Allow) C:\program files\multibit hd\multibit-hd.exe
- FirewallRules: [{50C31118-B7E1-4218-98CC-AB6281DBDE6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
- FirewallRules: [{03A4A8FD-0A70-40F2-A14E-5B81202E0372}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
- FirewallRules: [{046001C6-D260-4E06-861B-A8DB4C618629}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
- FirewallRules: [{C030E452-842C-4D70-BD25-04F282AE9382}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
- FirewallRules: [TCP Query User{C053BD73-5B0A-4E61-BC83-FBF8B856F642}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
- FirewallRules: [UDP Query User{39C9ECA8-360E-4EB9-A200-3700CAC48B91}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
- FirewallRules: [{5B578F1C-0C99-4D66-B769-DABA58FB401F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{0F3D8B67-95A7-4EE6-9CF5-8B3916CCABB3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{4B0BC85C-0F2F-4B0D-BD66-770290422201}] => (Allow) C:\Program Files\iTunes\iTunes.exe
- FirewallRules: [TCP Query User{5D043612-0683-44E5-86B5-99EFC26C9921}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
- FirewallRules: [UDP Query User{1E3582D4-DED8-4C37-B4CC-1524B529E644}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
- FirewallRules: [{8CF37177-ACE2-4493-BED4-C35CCABA27A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
- FirewallRules: [{1F5DB94B-476F-4E49-A741-12B5C28E0A77}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
- FirewallRules: [{28AC71D1-EC95-4D7D-8379-EA7972E4CA42}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
- FirewallRules: [{C98E5C9A-B4CE-474E-A819-34410E88BEC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
- FirewallRules: [{109C2289-1CC2-4E7C-AC5C-E4C83E40E8ED}] => (Allow) C:\Program Files\Echobit\Evolve\EvoSvc.exe
- FirewallRules: [{E59D5498-08E0-432F-89C5-48EB7D90EFC9}] => (Allow) C:\Program Files\Echobit\Evolve\EvolveClient.exe
- FirewallRules: [{9B2A37FF-9474-4512-BD59-413C3319A67C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe
- FirewallRules: [{AFE02382-1DEF-4ACE-993E-40EC5781B427}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe
- FirewallRules: [{159A5FCE-E50F-44CF-A534-17CC91E4C530}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
- FirewallRules: [{5EDE5F80-1A30-49FA-8477-8EB073E72CB7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
- FirewallRules: [TCP Query User{F842A5A2-3255-412A-9776-A23B08C20C17}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
- FirewallRules: [UDP Query User{9496B26C-4944-4CB9-8401-7E45452AE20A}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
- FirewallRules: [TCP Query User{3CFA6481-26C8-4955-87F6-751EA4BA21CD}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
- FirewallRules: [UDP Query User{7FD199FF-AB8A-43B9-8B28-25363AAE31AA}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
- FirewallRules: [TCP Query User{62A3151F-CB23-4135-B7B1-3BB944D600A4}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
- FirewallRules: [UDP Query User{9CFDD4DC-B0B6-4F8B-95CB-792DC496CEEC}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
- FirewallRules: [TCP Query User{B60CD733-8508-4F36-8625-A391CD4434A9}C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe
- FirewallRules: [UDP Query User{E725ACA0-5D6C-47BC-B5F3-DA76F57F06BA}C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe
- FirewallRules: [{3C737A20-192C-49B8-B9C4-16A3A95B5AC4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
- FirewallRules: [{E920ED3E-6742-4AA5-844D-B4EA6D710E2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
- FirewallRules: [TCP Query User{D7421B80-FFD9-490C-9F5C-9B514B86332F}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
- FirewallRules: [UDP Query User{8017FA2F-DE34-4D5E-B812-F99D193FE4DF}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
- FirewallRules: [{2A39C2B6-11AC-4BBD-B3B4-528FCD61E84A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- FirewallRules: [{C963D0FC-A2D1-4771-ABDF-C9FFA1C4802D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- FirewallRules: [{88855A23-B360-4BB2-8BA2-CC692F64D985}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- FirewallRules: [{139A8835-016C-4494-B951-C53AFF442348}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- FirewallRules: [TCP Query User{B3F646BA-FA0F-4FBF-A62B-0D29540E1537}C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe
- FirewallRules: [UDP Query User{9FC8C344-D14A-4E14-8D9B-DE726A5E1DE9}C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe
- FirewallRules: [{64872963-9D68-4CA1-AE92-E6474865BA78}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
- FirewallRules: [{25B6BB9A-9BAC-499F-809D-B4F162C2F2CC}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
- FirewallRules: [{571B865D-04E7-419C-AA21-94FD6607CEEF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- FirewallRules: [TCP Query User{25223746-CD5A-41DB-8CA0-08A836E51DA6}C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
- FirewallRules: [UDP Query User{B2D5F604-1320-41C3-BA93-BEAB0F4725A8}C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
- FirewallRules: [{6783C8D3-703D-43EF-B582-515FAA66F6FC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
- FirewallRules: [{5E5349FA-F040-4414-959E-162783D8B396}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
- ==================== Restore Points =========================
- 22-05-2017 13:34:07 Scheduled Checkpoint
- 31-05-2017 15:37:04 Windows Update
- 01-06-2017 15:54:34 JRT Pre-Junkware Removal
- ==================== Faulty Device Manager Devices =============
- Name: Standard PS/2 Keyboard
- Description: Standard PS/2 Keyboard
- Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
- Manufacturer: (Standard keyboards)
- Service: i8042prt
- Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
- Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
- Devices stay in this state if they have been prepared for removal.
- After you remove the device, this error disappears.Remove the device, and this error should be resolved.
- ==================== Event log errors: =========================
- Application errors:
- ==================
- Error: (06/01/2017 03:54:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
- Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
- Details:
- AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
- System Error:
- Access is denied.
- .
- Error: (06/01/2017 01:30:31 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Faulting application name: Setup.exe_NETGEAR WNDA3100v3, version: 1.0.0.10, time stamp: 0x53723d9e
- Faulting module name: ntdll.dll, version: 10.0.14393.479, time stamp: 0x58256ca0
- Exception code: 0xc0000005
- Fault offset: 0x00048501
- Faulting process id: 0x2360
- Faulting application start time: 0x01d2db047cb514e6
- Faulting application path: C:\Users\Seth\Desktop\network adapter drivers\bin\driver\Setup.exe
- Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
- Report Id: d3818bbf-5d1d-43ec-8264-f0234b8fb86d
- Faulting package full name:
- Faulting package-relative application ID:
- Error: (06/01/2017 01:30:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
- Description: The program SkypeHost.exe version 11.16.595.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
- Process ID: 3108
- Start Time: 01d2db04c749d600
- Termination Time: 4294967295
- Application Path: C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- Report Id: 4cd6f54c-46f8-11e7-82e5-b07fb9f85afe
- Faulting package full name: Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c
- Faulting package-relative application ID: ppleae38af2e007f4358a809ac99a64a67c1
- Error: (06/01/2017 01:29:51 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SETHSSEXYPC)
- Description: Activation of app Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
- Error: (06/01/2017 01:24:49 PM) (Source: Bonjour Service) (EventID: 100) (User: )
- Description: Client application bug: DNSServiceResolve(mobile._epoccam._tcp.local.) active for over two minutes. This places considerable burden on the network.
- Error: (06/01/2017 01:16:58 PM) (Source: VSS) (EventID: 8193) (User: )
- Description: Volume Shadow Copy Service error: Unexpected error calling routine QueryFullProcessImageNameW. hr = 0x8007001f, A device attached to the system is not functioning.
- .
- Operation:
- Executing Asynchronous Operation
- Context:
- Current State: DoSnapshotSet
- Error: (06/01/2017 01:16:20 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
- Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
- Details:
- AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
- System Error:
- Access is denied.
- .
- Error: (06/01/2017 03:12:56 AM) (Source: SideBySide) (EventID: 33) (User: )
- Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\arm64\filetypeverifier.exe".
- Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
- Please use sxstrace.exe for detailed diagnosis.
- Error: (06/01/2017 03:12:56 AM) (Source: SideBySide) (EventID: 33) (User: )
- Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\arm64\oleview.exe".
- Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
- Please use sxstrace.exe for detailed diagnosis.
- Error: (06/01/2017 03:12:52 AM) (Source: SideBySide) (EventID: 33) (User: )
- Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\arm\signtool.exe.Manifest".
- Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version="0.0.0.0" could not be found.
- Please use sxstrace.exe for detailed diagnosis.
- System errors:
- =============
- Error: (06/01/2017 04:00:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
- Description: The Steam Client Service service failed to start due to the following error:
- The service did not respond to the start or control request in a timely fashion.
- Error: (06/01/2017 04:00:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
- Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
- Error: (06/01/2017 01:31:15 PM) (Source: DCOM) (EventID: 10016) (User: SETHSSEXYPC)
- Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
- {C2F03A33-21F5-47FA-B4BB-156362A2F239}
- and APPID
- {316CDED5-E4AE-4B15-9113-7055D84DCC97}
- to the user SethsSexyPC\Seth SID (S-1-5-21-1198041709-478224594-2316559523-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.Cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). This security permission can be modified using the Component Services administrative tool.
- Error: (06/01/2017 01:30:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
- Description: The Software Protection service hung on starting.
- Error: (06/01/2017 01:29:51 PM) (Source: DCOM) (EventID: 10010) (User: SETHSSEXYPC)
- Description: The server App.AppX85gcbw533amccd2rr8qswxymhfj649t2.mca did not register with DCOM within the required timeout.
- Error: (06/01/2017 01:25:16 PM) (Source: DCOM) (EventID: 10010) (User: SETHSSEXYPC)
- Description: The server {21F282D1-A881-49E1-9A3A-26E44E39B86C} did not register with DCOM within the required timeout.
- Error: (06/01/2017 01:22:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: The AT&T Troubleshoot & Resolve service terminated unexpectedly. It has done this 3 time(s).
- Error: (06/01/2017 01:22:58 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
- Description: The AT&T Troubleshoot & Resolve service terminated with the following error:
- %%4294967295
- Error: (06/01/2017 01:22:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The AT&T Troubleshoot & Resolve service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service.
- Error: (06/01/2017 01:22:57 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
- Description: The AT&T Troubleshoot & Resolve service terminated with the following error:
- %%4294967295
- CodeIntegrity:
- ===================================
- Date: 2017-06-01 13:26:39.526
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-06-01 02:16:23.037
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-06-01 01:57:55.599
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-31 23:11:53.699
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-31 23:11:53.407
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-30 20:31:02.194
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-30 20:30:54.735
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-29 23:33:14.912
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-29 23:32:06.215
- Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-122689.dll that did not meet the Store signing level requirements.
- Date: 2017-05-22 10:39:07.352
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
- ==================== Memory info ===========================
- Processor: Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz
- Percentage of memory in use: 27%
- Total physical RAM: 16332.84 MB
- Available physical RAM: 11899.92 MB
- Total Virtual: 23332.84 MB
- Available Virtual: 18511.68 MB
- ==================== Drives ================================
- Drive c: () (Fixed) (Total:930.73 GB) (Free:373.95 GB) NTFS
- ==================== MBR & Partition Table ==================
- ========================================================
- Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 32F700E0)
- Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
- Partition 2: (Not Active) - (Size=930.7 GB) - (Type=07 NTFS)
- Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
- ==================== End of Addition.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement