Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-12-2015
Ran by Royal (administrator) on GAMING_SSD (15-12-2015 16:46:06)
Running from C:\Users\Royal\Desktop
Loaded Profiles: Royal (Available Profiles: Royal)
Platform: Windows 10 Pro Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [13318424 2015-03-12] (Logitech Inc.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4859592 2015-11-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-21] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (CANON INC.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-02] (Raptr, Inc)
HKU\S-1-5-21-2906918697-159630706-1218816482-1001\...\Run: [GoogleChromeAutoLaunch_31BCA167C6A1D94CD79540471E40C82F] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704 2015-12-04] (Google Inc.)
HKU\S-1-5-21-2906918697-159630706-1218816482-1001\...\Run: [Amazon Cloud Drive] => C:\Users\Royal\AppData\Local\Amazon Cloud Drive\AmazonCloudDrive.exe [1939264 2015-12-10] (Amazon.com Inc.)
Startup: C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-04-29]
ShortcutTarget: Curse.lnk -> C:\Users\Royal\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc)
Startup: C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DS4Windows.lnk [2015-08-30]
ShortcutTarget: DS4Windows.lnk -> C:\Users\Royal\Downloads\DS4Windows\DS4Windows.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{3f4112eb-92d3-4114-966f-050b0d46f4b6}: [DhcpNameServer] 192.168.0.1 205.171.3.25
Tcpip\..\Interfaces\{f3f1860b-6cbf-4c63-a8f7-7c20804407bd}: [DhcpNameServer] 192.168.1.254
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
FireFox:
========
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32.dll [2015-08-20] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=LENN&bmod=LENN
CHR StartupUrls: Default -> "hxxp://www.google.com/ig/redirectdomain?brand=LENN&bmod=LENN"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Google Drive) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Google Search) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Google Docs Offline) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (AdBlock) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-08]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2015-01-22]
CHR Extension: (Skype Click to Call) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-10-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-23]
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2015-11-13]
CHR Extension: (Gmail) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2015-11-03] (Hi-Rez Studios) [File not signed]
S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-29] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-29] (Microsoft Corporation)
S2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-17] (Advanced Micro Devices)
S3 EMVSCARD; C:\Windows\System32\Drivers\EMVSCARD.sys [28544 2006-12-13] (USB Smart Card Reader)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-05-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-05-27] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-05-27] ()
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-29] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-29] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-29] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-15 16:46 - 2015-12-15 16:46 - 00011309 _____ C:\Users\Royal\Desktop\FRST.txt
2015-12-15 16:45 - 2015-12-15 16:46 - 00000000 ____D C:\FRST
2015-12-15 16:44 - 2015-12-15 16:45 - 02369536 _____ (Farbar) C:\Users\Royal\Desktop\FRST64.exe
2015-12-15 15:04 - 2015-12-15 15:05 - 01319424 _____ (niemiro) C:\Users\Royal\Desktop\SFCFix.exe
2015-12-15 15:04 - 2015-12-15 15:04 - 00009553 _____ C:\Users\Royal\Desktop\SFCFix.zip
2015-12-15 14:55 - 2015-12-15 14:55 - 00000000 ____D C:\Users\Royal\Downloads\SFCFix
2015-12-15 14:24 - 2015-12-15 14:17 - 02887190 _____ C:\Users\Royal\Desktop\cbs.txt
2015-12-15 14:11 - 2015-12-15 14:24 - 00185369 _____ C:\Users\Royal\Desktop\cbs.zip
2015-12-14 19:50 - 2015-12-14 19:50 - 00004342 _____ C:\Windows\System32\Tasks\ReimageUpdater
2015-12-14 19:50 - 2015-12-14 19:50 - 00003528 _____ C:\Windows\System32\Tasks\Reimage Reminder
2015-12-14 19:50 - 2015-12-14 19:50 - 00000000 ____D C:\ProgramData\Reimage Protector
2015-12-14 19:50 - 2015-12-14 19:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair
2015-12-14 19:49 - 2015-12-14 19:50 - 00000139 _____ C:\Windows\Reimage.ini
2015-12-14 19:39 - 2015-12-14 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-12-14 19:39 - 2015-12-14 19:39 - 00000000 ____D C:\Program Files\ATI Technologies
2015-12-14 19:38 - 2015-12-14 19:39 - 00000000 ____D C:\Windows\LastGood.Tmp
2015-12-14 19:18 - 2015-12-14 19:18 - 00000000 ____D C:\wim
2015-12-14 18:51 - 2015-12-14 18:51 - 00000000 ____D C:\Windows\system32\SleepStudy
2015-12-14 17:44 - 2015-12-14 16:15 - 4017000448 _____ C:\Win10_1511_English_x64.iso
2015-12-14 17:12 - 2015-12-14 18:20 - 00000000 ____D C:\IMAGE_HEALTH
2015-12-14 16:51 - 2015-12-14 16:34 - 01203015 _____ C:\IMAGE_HEALTH.zip
2015-12-13 20:18 - 2015-12-13 20:18 - 00000000 ___HD C:\$WINDOWS.~BT
2015-12-13 20:04 - 2015-12-15 07:29 - 00000000 ____D C:\Users\Royal\AppData\Local\niemiro
2015-12-13 18:26 - 2015-12-13 18:26 - 00000020 ___SH C:\Users\Royal\ntuser.ini
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\My Documents
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2015-12-13 18:25 - 2015-12-15 15:43 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-13 18:22 - 2015-12-13 18:22 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2015-12-13 18:22 - 2015-10-29 23:17 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-12-13 18:21 - 2015-12-14 15:23 - 00000000 ____D C:\Users\Royal
2015-12-13 18:21 - 2015-12-13 18:23 - 00000000 ____D C:\Windows\system32\config\bbimigrate
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\My Documents
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\Documents\My Videos
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\Documents\My Pictures
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\Documents\My Music
2015-12-13 18:20 - 2015-12-14 19:39 - 00000000 ____D C:\Program Files\AMD
2015-12-13 18:20 - 2015-12-13 18:21 - 00000000 ____D C:\Program Files\Intel
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Windows\system32\DAX2
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Program Files\Realtek
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-12-13 18:19 - 2015-12-13 18:28 - 00000000 ___DC C:\Windows\Panther
2015-12-13 18:19 - 2015-12-13 18:23 - 00189352 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-13 18:17 - 2015-12-13 18:18 - 00000000 ____D C:\Windows.old
2015-12-13 18:17 - 2015-12-13 18:17 - 24601600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 22572632 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 22393856 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 21125408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 19338240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 18678272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 16984576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 13381120 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 13017600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 12125184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 11545088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 09918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 07979008 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 07476576 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 07199232 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 06572032 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 06297088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 05202944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 03993600 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 03671896 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 03593216 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 03355136 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02918808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02843136 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02772584 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02756096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-12-13 18:17 - 2015-12-13 18:17 - 02756096 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-12-13 18:17 - 2015-12-13 18:17 - 02680320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02653816 _____ C:\Windows\system32\CoreUIComponents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02624512 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02598400 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02587136 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02544264 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02280448 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02185840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02179584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02155008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02152800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 02126848 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-13 18:17 - 2015-12-13 18:17 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02064384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-13 18:17 - 2015-12-13 18:17 - 02001408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01944576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01860096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01859448 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01817160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01814528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01734656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01717248 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01713664 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01706496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01648640 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01540768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01443328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRHInproc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01399224 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01337240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01284960 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01268736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01268736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01223168 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01056256 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01042432 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00975200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00969728 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00948224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00948224 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00938496 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00911648 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00809312 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00803840 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00795840 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00791552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00784896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00704352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00704000 _____ (Microsoft Corporation) C:\Windows\system32\CellularAPI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00698208 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00697856 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00686592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00675064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00647168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00638464 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00630632 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00607232 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00586208 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00586080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00578912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00540752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00538632 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00536768 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00523616 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00517632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-12-13 18:17 - 2015-12-13 18:17 - 00516544 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00511320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00470528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00454056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00440160 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00431232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00408128 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00405048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-12-13 18:17 - 2015-12-13 18:17 - 00382464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00382464 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00369912 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00366224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00334736 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00296488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00264192 _____ (Nokia) C:\Windows\system32\NmaDirect.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00245848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00205824 _____ (Nokia) C:\Windows\SysWOW64\NmaDirect.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ETWCoreUIComponentsResources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\ETWCoreUIComponentsResources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00110032 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00095072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00088392 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00080600 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00073360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManagerProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\ihvrilproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00063528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthTokenBrokerExt.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058408 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rilproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00051680 _____ (Microsoft Corporation) C:\Windows\system32\SensorsUtilsV2.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthTokenBrokerExt.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wsplib.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.proxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthManagerProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCoreRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCoreRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00035680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00035656 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00032040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tetheringconfigsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.proxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\IcsEntitlementHost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\readingviewresources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-12-13 18:16 - 2015-12-13 18:16 - 00008192 _____ C:\Windows\system32\config\userdiff
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files\MSBuild
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-12-13 18:15 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-12-13 18:15 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-13 18:15 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-12-13 18:15 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-12-13 18:15 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-12-13 18:15 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-12-13 15:02 - 2015-12-13 15:02 - 00000224 _____ C:\Users\Royal\Desktop\Repair.bat
2015-12-13 13:33 - 2015-12-14 18:16 - 00000000 ____D C:\Users\Royal\Desktop\mount
2015-12-13 12:37 - 2015-12-13 13:21 - 4017000448 _____ C:\Users\Royal\Downloads\Win10_1511_English_x64.iso
2015-12-13 12:32 - 2015-12-13 12:33 - 79392372 _____ C:\Users\Royal\Downloads\TechBench_2015-08-19_2100.zip
2015-12-13 10:30 - 2015-12-13 10:30 - 00000000 ___HD C:\$Windows.~WS
2015-12-13 10:29 - 2015-12-13 10:29 - 18446336 _____ (Microsoft Corporation) C:\Users\Royal\Downloads\MediaCreationTool.exe
2015-12-13 10:29 - 2015-12-13 10:29 - 18446336 _____ (Microsoft Corporation) C:\Users\Royal\Downloads\MediaCreationTool (1).exe
2015-12-13 08:26 - 2015-12-13 08:26 - 00000000 __SHD C:\found.000
2015-12-12 10:27 - 2015-12-12 10:28 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Amazon Cloud Drive
2015-12-12 10:27 - 2015-12-12 10:27 - 00001321 _____ C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Drive.lnk
2015-12-12 10:27 - 2015-12-12 10:27 - 00001309 _____ C:\Users\Royal\Desktop\Amazon Cloud Drive.lnk
2015-12-12 10:27 - 2015-12-12 10:27 - 00000000 ____D C:\Users\Royal\AppData\Local\Amazon Cloud Drive
2015-12-12 10:23 - 2015-12-12 10:27 - 00867648 _____ (Amazon) C:\Users\Royal\Downloads\AmazonCloudDriveSetup.exe
2015-12-09 12:47 - 2015-12-09 12:47 - 00000000 ____D C:\ProgramData\ATI
2015-12-09 08:49 - 2015-12-09 08:49 - 00001243 _____ C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CNext.lnk
2015-12-08 22:12 - 2015-12-13 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-12-08 22:12 - 2015-12-08 22:12 - 00000000 ____D C:\Users\Royal\AppData\Roaming\library_dir
2015-12-08 22:11 - 2015-12-13 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2015-12-08 22:11 - 2015-12-12 19:43 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Raptr
2015-12-08 22:11 - 2015-12-08 22:12 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-12-04 19:52 - 2015-12-04 19:52 - 00060946 _____ C:\Users\Royal\Downloads\Essay.pdf
2015-12-03 07:10 - 2015-12-03 07:10 - 00000000 ____D C:\Users\Royal\AppData\Local\ActiveSync
2015-12-03 03:50 - 2015-12-03 03:50 - 00000000 _SHDL C:\Users\Default.migrated\Documents\My Videos
2015-12-03 03:50 - 2015-12-03 03:50 - 00000000 _SHDL C:\Users\Default.migrated\Documents\My Pictures
2015-12-03 03:50 - 2015-12-03 03:50 - 00000000 _SHDL C:\Users\Default.migrated\Documents\My Music
2015-12-03 03:45 - 2015-12-14 19:39 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-12-03 03:45 - 2015-12-08 22:10 - 00000000 ____D C:\ProgramData\Package Cache
2015-11-29 15:29 - 2015-11-29 15:29 - 00001556 _____ C:\Users\Royal\Downloads\index.m3u8
2015-11-23 23:36 - 2015-10-23 13:35 - 00162232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-11-23 23:35 - 2015-10-23 13:35 - 12088000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2015-11-23 23:35 - 2015-10-23 13:35 - 01479808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2015-11-23 23:33 - 2015-11-23 23:33 - 00232464 _____ C:\Windows\system32\dgtrayicon.exe
2015-11-23 23:30 - 2015-10-23 13:35 - 01256432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-11-23 23:27 - 2015-11-23 23:27 - 00305392 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys
2015-11-23 20:43 - 2015-11-23 20:43 - 00323588 _____ C:\Windows\system32\ativvaxy_el.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00320992 _____ C:\Windows\system32\ativvaxy_el_nd.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00261920 _____ C:\Windows\system32\ativvaxy_stn_nd.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00140240 _____ C:\Windows\system32\samu_krnl_ci.sbin
2015-11-23 20:43 - 2015-11-23 20:43 - 00138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2015-11-23 20:43 - 2015-11-23 20:43 - 00047664 _____ C:\Windows\system32\kapp_ci.sbin
2015-11-23 20:43 - 2015-11-23 20:43 - 00043536 _____ C:\Windows\system32\kapp_si.sbin
2015-11-23 20:42 - 2015-11-23 20:42 - 00737410 _____ C:\Windows\system32\atiicdxx.dat
2015-11-23 20:41 - 2015-11-23 20:41 - 00166560 _____ C:\Windows\system32\amde34a.dat
2015-11-23 20:41 - 2015-11-23 20:41 - 00007112 _____ C:\Windows\system32\AMDKernelEvents.man
2015-11-16 17:10 - 2015-11-16 17:10 - 00000216 _____ C:\Users\Royal\Downloads\chunklist (1).m3u8
2015-11-15 21:22 - 2015-11-15 21:22 - 00000221 _____ C:\Users\Royal\Downloads\chunklist.m3u8
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-15 16:45 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\AppReadiness
2015-12-15 16:45 - 2015-10-29 22:28 - 00000000 ____D C:\Windows
2015-12-15 16:13 - 2014-01-23 16:17 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-15 15:47 - 2015-10-29 23:21 - 00000000 ____D C:\Windows\INF
2015-12-15 15:47 - 2015-08-20 11:54 - 00879220 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-15 15:43 - 2014-01-23 16:17 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-15 07:48 - 2015-10-29 23:11 - 00000000 ____D C:\Windows\CbsTemp
2015-12-15 07:15 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\LiveKernelReports
2015-12-14 19:39 - 2014-01-23 17:42 - 00000000 ____D C:\AMD
2015-12-14 14:53 - 2015-10-29 22:28 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-12-14 12:45 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\appcompat
2015-12-13 20:18 - 2015-08-20 11:33 - 00001908 _____ C:\Windows\diagwrn.xml
2015-12-13 20:18 - 2015-08-20 11:33 - 00001908 _____ C:\Windows\diagerr.xml
2015-12-13 18:26 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\Registration
2015-12-13 18:26 - 2015-08-20 12:02 - 00000451 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-12-13 18:26 - 2015-08-20 12:02 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-12-13 18:25 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2015-12-13 18:25 - 2015-10-29 22:28 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-12-13 18:25 - 2015-08-20 11:52 - 00022840 _____ C:\Windows\system32\emptyregdb.dat
2015-12-13 18:25 - 2014-11-17 16:52 - 00002316 _____ C:\Windows\System32\Tasks\{2DB08243-FE14-4D40-97C4-C25AE8EADDC6}
2015-12-13 18:25 - 2014-01-23 16:17 - 00003440 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-13 18:25 - 2014-01-23 16:17 - 00003216 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-13 18:25 - 2013-12-09 13:22 - 00002938 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2906918697-159630706-1218816482-1001
2015-12-13 18:24 - 2015-10-29 23:24 - 00000000 __RSD C:\Windows\Media
2015-12-13 18:24 - 2015-10-29 23:24 - 00000000 __RHD C:\Users\Public\Libraries
2015-12-13 18:24 - 2015-10-29 23:24 - 00000000 ___HD C:\Program Files\WindowsApps
2015-12-13 18:23 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\catroot2old
2015-12-13 18:23 - 2015-08-20 12:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2015-12-13 18:23 - 2015-06-16 17:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-12-13 18:23 - 2015-01-30 08:33 - 00000000 ____D C:\Windows\SysWOW64\STRING
2015-12-13 18:23 - 2015-01-27 09:48 - 00000000 ____D C:\Windows\system32\STRING
2015-12-13 18:23 - 2014-12-14 08:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-12-13 18:23 - 2014-10-21 07:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-12-13 18:23 - 2014-10-14 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-13 18:23 - 2014-01-23 16:36 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-13 18:23 - 2014-01-23 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-12-13 18:23 - 2013-12-09 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\SysWOW64\WCN
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\system32\WCN
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\DigitalLocker
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___SD C:\Windows\SysWOW64\Configuration
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___SD C:\Windows\system32\Configuration
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___RD C:\Windows\PurchaseDialog
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\SysWOW64\SMI
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\SysWOW64\MUI
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\spool
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\oobe
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\MUI
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\InputMethod
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\InputMethod
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\Help
2015-12-13 18:22 - 2015-10-29 22:28 - 00000000 ____D C:\Users\Default.migrated
2015-12-13 18:22 - 2015-01-27 09:47 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2015-12-13 18:22 - 2013-12-09 13:35 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2015-12-13 18:22 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\system32\WindowsInternal.Inbox.Shared
2015-12-13 18:22 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\system32\WindowsInternal.Inbox.Media.Shared
2015-12-13 18:22 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\ADFS
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 ____D C:\ProgramData\USOPrivate
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-12-13 18:21 - 2015-10-29 22:28 - 00000000 ____D C:\Windows\system32\Sysprep
2015-12-13 18:21 - 2015-01-30 08:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series
2015-12-13 18:21 - 2015-01-27 09:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-12-13 18:21 - 2013-12-09 13:17 - 00000000 ____D C:\Users\Royal\AppData\Local\Packages
2015-12-13 18:19 - 2015-10-30 01:14 - 00000000 ____D C:\Windows\ServiceProfiles
2015-12-13 18:19 - 2015-10-29 23:24 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\appraiser
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\Provisioning
2015-12-13 18:17 - 2015-10-29 22:28 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-12-13 18:17 - 2015-10-29 22:28 - 00000000 ____D C:\Windows\system32\Dism
2015-12-13 18:15 - 2015-10-29 23:17 - 00480256 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2015-12-13 18:15 - 2015-10-29 23:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2015-12-13 18:15 - 2015-10-29 23:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2015-12-13 18:15 - 2015-10-29 23:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2015-12-13 07:53 - 2013-12-09 13:36 - 00000000 ____D C:\Program Files (x86)\Steam
2015-12-13 07:29 - 2015-08-20 12:02 - 00000000 __SHD C:\Users\Royal\IntelGraphicsProfiles
2015-12-12 21:02 - 2014-10-21 07:30 - 00000000 ____D C:\Users\Royal\AppData\Roaming\vlc
2015-12-12 07:44 - 2015-08-20 16:36 - 00000000 ____D C:\Users\Royal\AppData\Roaming\DS4Windows
2015-12-11 21:23 - 2015-01-24 09:17 - 00000000 ____D C:\Users\Royal\Desktop\League of Legends
2015-12-11 11:50 - 2015-04-29 19:33 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Curse Client
2015-12-11 11:20 - 2014-01-24 13:40 - 00000000 ____D C:\Users\Royal\Documents\My Games
2015-12-09 09:40 - 2014-01-23 17:42 - 00000000 ____D C:\Windows\system32\MRT
2015-12-09 09:38 - 2014-01-23 17:42 - 140158008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-12-09 08:44 - 2015-08-20 16:36 - 00000000 ____D C:\Users\Royal\Downloads\DS4Windows
2015-12-08 22:22 - 2014-10-22 10:20 - 00000000 ____D C:\Users\Royal\Documents\Orcs Must Die
2015-12-08 22:11 - 2015-11-07 13:37 - 00000000 ____D C:\Users\Royal\AppData\Local\AMD
2015-12-08 19:39 - 2014-01-23 16:21 - 00301728 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-12-03 07:10 - 2015-08-20 12:04 - 00002374 _____ C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-03 07:10 - 2015-08-20 12:04 - 00000000 ___RD C:\Users\Royal\OneDrive
2015-11-30 16:33 - 2015-10-29 23:26 - 00826872 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-30 16:33 - 2015-10-29 23:26 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2015-12-13 18:20 - 2015-12-13 18:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Royal\AppData\Local\Temp\ReimagePackage.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-12-13 18:19
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-12-2015
Ran by Royal (2015-12-15 16:46:24)
Running from C:\Users\Royal\Desktop
Windows 10 Pro (X64) (2015-12-14 02:26:15)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2906918697-159630706-1218816482-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2906918697-159630706-1218816482-503 - Limited - Disabled)
Guest (S-1-5-21-2906918697-159630706-1218816482-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2906918697-159630706-1218816482-1003 - Limited - Enabled)
Royal (S-1-5-21-2906918697-159630706-1218816482-1001 - Administrator - Enabled) => C:\Users\Royal
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.3.183.90 - Adobe Systems Incorporated)
Amazon Cloud Drive (HKU\S-1-5-21-2906918697-159630706-1218816482-1001\...\Amazon Cloud Drive) (Version: 3.1.2.21 - Amazon.com, Inc.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Antichamber (HKLM-x32\...\Steam App 219890) (Version: - Alexander Bruce)
Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Baldur's Gate II: Enhanced Edition (HKLM-x32\...\Steam App 257350) (Version: - Beamdog)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.)
Canon MG5300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series) (Version: - Canon Inc.)
Canon MP Navigator EX 5.0 (HKLM-x32\...\MP Navigator EX 5.0) (Version: - )
Catalyst Control Center Next Localization BR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios)
Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games)
Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games)
Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - Klei Entertainment)
Don't Starve Together Beta (HKLM-x32\...\Steam App 322330) (Version: - Klei Entertainment)
Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)
FINAL FANTASY VIII (HKLM-x32\...\Steam App 39150) (Version: - SQUARE ENIX)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{08B90A20-95D3-4725-84B9-AF6553E06C4F}) (Version: 5.0.10.2850 - Intel Corporation)
iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Kerbal Space Program (HKLM-x32\...\Steam App 220200) (Version: - Squad)
League of Legends (HKLM-x32\...\League of Legends 3.0.0) (Version: 3.0.0 - Riot Games)
League of Legends (x32 Version: 3.0.0 - Riot Games) Hidden
LEGO MARVEL Super Heroes (HKLM-x32\...\Steam App 249130) (Version: - Traveller's Tales)
Logitech Gaming Software 8.58 (HKLM\...\Logitech Gaming Software) (Version: 8.58.183 - Logitech Inc.)
Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - Klei Entertainment)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
My Game Long Name (HKLM\...\UDK-c2204611-af54-47a3-959d-a82ae8d47bab) (Version: - Epic Games, Inc.)
NVIDIA PhysX (HKLM-x32\...\{8A809006-C25A-4A3A-9DAB-94659BCDB107}) (Version: 9.10.0224 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Orcs Must Die! (HKLM-x32\...\Steam App 102600) (Version: - Robot Entertainment)
Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version: - Robot Entertainment)
Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Reimage Repair (HKLM\...\Reimage Repair) (Version: 1.8.2.6 - Reimage) <==== ATTENTION
Shadowrun Returns (HKLM-x32\...\Steam App 234650) (Version: - Harebrained Schemes)
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)
Sir, You Are Being Hunted (HKLM-x32\...\Steam App 242880) (Version: - Big Robot Ltd)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.13.13771 - Skype Technologies S.A.)
Skypeâ„¢ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 2.20.3137.0 - Hi-Rez Studios)
Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)
Star Wars - Jedi Knight II: Jedi Outcast (HKLM-x32\...\Steam App 6030) (Version: - Raven Software)
Star Wars - Jedi Knight: Mysteries of the Sith (HKLM-x32\...\Steam App 32390) (Version: - LucasArts)
Star Wars Jedi Knight: Dark Forces II (HKLM-x32\...\Steam App 32380) (Version: - LucasArts)
Star Wars Jedi Knight: Jedi Academy (HKLM-x32\...\Steam App 6020) (Version: - Raven Software)
Star Wars Republic Commando (HKLM-x32\...\Steam App 6000) (Version: - LucasArts)
Star Wars Starfighter (HKLM-x32\...\Steam App 32350) (Version: - LucasArts)
Star Wars The Clone Wars: Republic Heroes (HKLM-x32\...\Steam App 32420) (Version: - Krome Studios)
Star Wars: Dark Forces (HKLM-x32\...\Steam App 32400) (Version: - LucasArts)
Star Wars: Empire at War Gold (HKLM-x32\...\Steam App 32470) (Version: - Petroglyph)
Star Wars: Knights of the Old Republic (HKLM-x32\...\Steam App 32370) (Version: - BioWare)
Star Wars: Knights of the Old Republic II (HKLM-x32\...\Steam App 208580) (Version: - Obsidian Entertainment)
Star Wars: The Force Unleashed II (HKLM-x32\...\Steam App 32500) (Version: - Aspyr Studios)
Star Wars: The Force Unleashed Ultimate Sith Edition (HKLM-x32\...\Steam App 32430) (Version: - LucasArts)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED)
Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte)
Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment)
XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version: - Firaxis Games)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2906918697-159630706-1218816482-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Royal\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2906918697-159630706-1218816482-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Restore Points =========================
14-12-2015 18:39:12 Windows Update
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 05:25 - 2013-08-22 05:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00438F62-D692-4EC0-A55D-0219C87F5EC4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {22835D5D-BAFC-4EC1-9B05-D6A2D0D5696D} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {2FE60C88-039C-4EE9-8D89-BC979E13F3F9} - System32\Tasks\Reimage Reminder => C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe <==== ATTENTION
Task: {31CBE622-3374-4FB4-B5E7-481EB36D4632} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-12-09] (Microsoft Corporation)
Task: {48E08C63-0230-44E0-AD4C-6910F61BA421} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4B144EF3-9C0A-47EB-AD90-467333864EFA} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {66A0C8C6-9FFD-436D-913F-5D21A26A9367} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6C7DA6C6-3064-4BB7-8971-3C016BD9EAAA} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {7A04A026-6C6B-4E85-A267-329C9D3EB557} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {8A0DC3EF-7D7D-47E5-9E6D-85418796198D} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {A4138288-D3D1-4683-8E99-C1586FD103FC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {B48F478F-FA07-4CE2-BEFE-AD44A4061054} - System32\Tasks\{2DB08243-FE14-4D40-97C4-C25AE8EADDC6} => pcalua.exe -a "E:\Riot Games\League of Legends\lol.launcher.exe" -d "E:\Riot Games\League of Legends"
Task: {B76123E5-12B8-464E-BA0A-F9EF1A3EC4C5} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {B862707B-1B97-44C4-B333-039332E87218} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {C86DC286-97D1-422C-91F5-043A6CD5705C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {D598AC5A-BDEF-415E-A567-3EA51B703490} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {DC18D526-52FD-4EA3-9311-4C9700EF19E2} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe <==== ATTENTION
Task: {FA3AEFFF-B594-41AB-8716-32E855FC4D5B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-10-29 23:18 - 2015-10-29 23:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02653816 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02653816 _____ () C:\Windows\System32\CoreUIComponents.dll
2014-09-17 23:23 - 2014-09-17 23:23 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2015-03-12 10:23 - 2015-03-12 10:23 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2014-09-17 23:23 - 2014-09-17 23:23 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2015-03-12 10:23 - 2015-03-12 10:23 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2015-12-09 14:13 - 2015-12-04 13:32 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libglesv2.dll
2015-12-09 14:13 - 2015-12-04 13:32 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libegl.dll
2015-12-09 14:13 - 2015-12-04 13:32 - 16573256 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Program Files\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Apple Software Update:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\ATI Technologies:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Hi-Rez Studios:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\iTunes:Win32App_1
AlternateDataStreams: C:\Users\Royal\AppData\Roaming\Curse Client:Win32App_1
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2906918697-159630706-1218816482-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: HiPatchService => 2
MSCONFIG\Services: igfxCUIService1.0.0.0 => 2
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: Skype C2C Service => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: Steam Client Service => 3
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{3DC7E629-2DB3-41D1-8BCC-1D77C1F8F9AE}] => (Allow) E:\SteamLibrary\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{7DF393D0-83B9-41A0-AFF3-C85005D1AD77}] => (Allow) E:\SteamLibrary\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{ABEB1F78-EE9E-4A77-9D31-5B15C192C8AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{9BC5F615-A335-4300-9BEA-0CB6D5ABFC59}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{85462593-8104-4B31-9BC4-18B1C110AAA5}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{1C282CBE-5862-4827-B10F-38FAC123D68C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{F5E7B45D-9BFD-490F-A281-A6CB81BA0798}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{F074F2F4-757E-41BB-A1C7-38ECB6489321}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe
FirewallRules: [{24100B0C-950D-4B0D-AFAF-60ED11ED1925}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe
FirewallRules: [{D74B2156-4136-40EB-B418-9099A2AFD5B8}] => (Allow) E:\SteamLibrary\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{BE5BDEEC-27E9-4BFE-B708-5114CB7EE6F3}] => (Allow) E:\SteamLibrary\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{A3FF0826-B14C-4153-A48C-D73D2A4D7648}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{51259555-649F-49FC-B0FB-877D5525368C}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{CD575A42-B1DB-40A3-B60A-0E2544C2A8F8}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [{71263776-D1C8-4CCF-8548-9A3839D50E12}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [UDP Query User{EC806BA2-8265-4FC6-83AE-1A7ADA77C612}E:\steamlibrary\steamapps\common\war thunder\aces.exe] => (Allow) E:\steamlibrary\steamapps\common\war thunder\aces.exe
FirewallRules: [TCP Query User{F78052D3-E16D-4082-8CEA-9DEB226B4B48}E:\steamlibrary\steamapps\common\war thunder\aces.exe] => (Allow) E:\steamlibrary\steamapps\common\war thunder\aces.exe
FirewallRules: [{A8166E85-37AC-4D7D-9D78-E9FD5CD7D06D}] => (Allow) E:\SteamLibrary\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{37DC1D79-6062-4324-8567-111E9FF7F108}] => (Allow) E:\SteamLibrary\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{39903544-4027-4A72-B1EE-20E5942A982A}] => (Allow) E:\SteamLibrary\SteamApps\common\War Thunder\launcher.exe
FirewallRules: [{CE30595B-9D15-4241-9B83-A23F3E77FB06}] => (Allow) E:\SteamLibrary\SteamApps\common\War Thunder\launcher.exe
FirewallRules: [{F4D28D8C-993E-4108-987D-27B43E6ED19E}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed 2\SWTFU2.exe
FirewallRules: [{DAC78540-E2F4-4411-9CCD-E29E7088F0F8}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed 2\SWTFU2.exe
FirewallRules: [{CC22DD66-D940-41B3-A25A-02493773AD64}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{0DC1668B-C1CD-4639-B2A0-7C3F39332E51}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{ABB42A4A-FA13-4534-B65A-0C9EFCDD2A1D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{45BEC88E-A413-40A7-9CBD-DB1DEB4F77E5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D6D7A88B-40B7-4317-8DBE-5CAFE0207BFF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{86D35F96-DD53-4E01-B26E-672B22C55310}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [TCP Query User{90C72231-3447-46FF-BB13-E4ED75E0EE6C}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [UDP Query User{F723CD24-A630-457D-A561-B7FDF91F5DBF}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [TCP Query User{3E362B07-519B-4C0C-911D-9DBB34584214}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [{3307C8F1-C634-4405-BBA2-42CF7A2CF154}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win32\CDW.exe
FirewallRules: [{CBB50A6C-F94A-491A-A3C6-7E8A74C901D7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win32\CDW.exe
FirewallRules: [{C256EBFA-E40C-42C9-A4B9-631AE41B3389}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe
FirewallRules: [{FEF7D19D-34B1-43BF-87A4-3675C6457B2A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe
FirewallRules: [{AB8C4EAA-2C87-403A-892B-0B11E342EA23}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win64\CDW.exe
FirewallRules: [{D9BD554D-84FF-41D0-988D-C04256B4A1F0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win64\CDW.exe
FirewallRules: [{64B0937D-B5E5-40E1-9FCD-424F466F8EE5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe
FirewallRules: [{FD61A6FF-0782-46DC-9F2C-1CBFC4D33D61}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe
FirewallRules: [{9D50F217-5E94-4350-9A86-DBA6A6CD6C42}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [{A6B94431-567C-4C33-A48D-3C5B559950EE}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [UDP Query User{E527562B-6E60-45CD-B8C9-C928B794BC77}C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [TCP Query User{14486B28-2C23-4B5B-9F78-AFAC16C6CA29}C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [{7BD391FF-9657-4C83-A4EF-DA8C58BC148D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\ChivLauncher.exe
FirewallRules: [{169F0BF8-6AB1-4F06-80F1-93E82C80231E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\ChivLauncher.exe
FirewallRules: [{EEA0F168-0FDF-4920-90C1-5B3FF2592DB5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Knights of the Old Republic II\swkotor2.exe
FirewallRules: [{B8BC3506-0924-4C25-874F-07CBF8FB0885}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Knights of the Old Republic II\swkotor2.exe
FirewallRules: [{CA09B9E2-25D2-4A1C-961C-9A6A90B58CFF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{E53698CB-9011-4219-97FE-DF489A1A058F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{3583EBD4-BF66-45CD-A27E-14440D4E30FA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{F118FD8F-3543-4A87-8F56-A3F7094872B5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{8AF60293-BA25-4BBF-B1D0-1BFF43447C84}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe
FirewallRules: [{1FF87C6B-9590-42EB-9E1A-9FFBE8BE5797}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe
FirewallRules: [{143787AA-F11A-407F-92AA-1F758385C789}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{D443A42F-C4AF-4856-8465-97157C0197FA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{8A1DB7D5-2B4C-4F45-B1C3-54567DEDFBD8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY VIII\FF8_Launcher.exe
FirewallRules: [{7364BC9A-AE61-4BCB-AFED-A37CBE07297F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY VIII\FF8_Launcher.exe
FirewallRules: [{AD7FA916-A3A2-4809-A75B-AB6B52B705B6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{71D44934-5707-4644-8841-6575141C4154}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{D1FB361D-B857-44C4-BD05-C27C5A4A3E22}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{798A22C6-32E7-41AF-AB65-04F7013DFEFE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{DD923627-F365-4FE8-85F4-B4B56B0D08AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme2.exe
FirewallRules: [{F3CAAA68-A25E-4240-B7A2-5FF76EC04542}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme2.exe
FirewallRules: [{DE3E4655-FB04-4DE0-9401-962A00DA0B33}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme.exe
FirewallRules: [{EA50BA34-5F01-4930-966A-11FB6145991A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme.exe
FirewallRules: [{A61F0DF8-557A-4FC2-B85A-1A16B3FF82F5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Clone Wars\RepublicHeroesLauncher.exe
FirewallRules: [{F7560493-C397-4BA3-BD1B-696396B6BADC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Clone Wars\RepublicHeroesLauncher.exe
FirewallRules: [{38E2FF66-9D13-47AE-959A-1B3A581A4FD5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Starfighter\Starfighter.exe
FirewallRules: [{6C993AA1-F4D4-422C-812E-0F6798405597}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Starfighter\Starfighter.exe
FirewallRules: [{B9D5E7BE-5566-4515-B6F7-366B6BB94D56}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{2F9DF41B-8CCC-48F8-9C44-CCBCE77BC296}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{B16FC5D4-8538-4D74-8409-5F4556403ADD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\the witcher 2\Launcher.exe
FirewallRules: [{9B2DCDA7-D517-449F-B6A0-A6AAFB93829C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\the witcher 2\Launcher.exe
FirewallRules: [{2CFBD768-F1CD-49D5-899B-677D233A9005}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{70E8888B-581A-4B35-8204-A0776E5B16E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{104DBD05-D0D2-46AD-BA04-E73144F75422}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{62EFDD2D-EF6D-467F-809F-F489C5A69519}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{41062EC3-59A0-4CB9-B459-BA299924007F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{CD9776E0-197C-4BAE-84DB-F4993DCFAE9E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{08CF692C-701E-40B1-A00F-4331C8FA9398}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2mp.exe
FirewallRules: [{CA293C73-CD98-4262-9AD2-F9CED686DA09}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2mp.exe
FirewallRules: [{C225DF44-586A-4026-AC4F-A071755D68F7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2sp.exe
FirewallRules: [{347FCAA1-DAC7-462B-8CE7-CF4B01FC6629}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2sp.exe
FirewallRules: [{6BA3073D-2608-4952-AD38-4E388AA09B3E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{2AFFBCD9-84C3-4A29-9A4B-503BB1954AAA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{424A123F-4CA4-430B-AEC5-C053155242E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{DCAAC390-186A-4D2C-B4E8-E030CDD3BA55}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{60A58CFF-ABE0-447F-AC5D-2B1CD564AFF0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{79990DA8-B7CA-4C9F-8EE8-A62FBDEEFD93}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{E71ECEF8-A738-4DBD-A767-C2450ABC821F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{488BA32A-A301-495B-88BB-9757D6C753E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{FF874BED-144E-49FF-9508-7CCE51D71BB4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Baldur's Gate II Enhanced Edition\Baldur.exe
FirewallRules: [{CFA254BB-44CE-40F5-A3B5-8C537F6765E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Baldur's Gate II Enhanced Edition\Baldur.exe
FirewallRules: [{8A99581C-72D5-48F1-807D-76D68CC6DFD2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die!\Build\release\OrcsMustDie.exe
FirewallRules: [{3088BF60-0F1F-480C-9BF7-469BCF046F57}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die!\Build\release\OrcsMustDie.exe
FirewallRules: [{0788A570-65D5-4517-8FB4-9161679712A7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders\DarksidersPC.exe
FirewallRules: [{F67F1F3E-6B21-44D1-80CB-7FA4F59B2493}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders\DarksidersPC.exe
FirewallRules: [{F25E1ECE-8CE8-45EF-A931-2B2A6B26ABFD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{D4A97A1E-8BDA-45E1-8AF7-8CD874336F88}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{06530028-FB3F-40CC-9546-6B54130CE5F5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{A3408F4C-5EA2-4A16-8DBA-316E37350728}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{41B80CBC-360E-412D-A415-12EC665F362B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Knight Mysteries of the Sith\JKM.EXE
FirewallRules: [{526C4EE9-34C6-42D9-B771-BF8F70409511}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Knight Mysteries of the Sith\JKM.EXE
FirewallRules: [{EB209EFE-5092-4861-AC54-DDE314CCB2C2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Jedi Knight\JK.EXE
FirewallRules: [{8E2F969E-23AD-41C6-90B0-E48BC84D9C10}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Jedi Knight\JK.EXE
FirewallRules: [{3BD24B06-9221-428E-A218-65C4DCD759F1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\swkotor\swkotor.exe
FirewallRules: [{6F09FF1B-EB1E-4448-B0C9-5F8525C56D62}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\swkotor\swkotor.exe
FirewallRules: [{BCDCBBDB-56E9-4A56-BC8C-7AD0225FFFCE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{4B0A2A04-F7E0-4F7B-B379-4BA537B88615}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{AF89019A-79DF-43A7-AA8A-48B62E9131F3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{83D87B81-AA34-4248-90F9-8FCB16DC17BE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{5A194C90-FF66-4E76-A116-9CFDB4329858}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{FE2B94B4-3DD8-42EC-B166-A616C2098747}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [UDP Query User{975F7C98-7FD6-4CA6-BB5F-C0135D78C4C0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{CF7D48C0-56BC-48CC-9FA7-3577C23EAF4A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{103DB0EC-6358-40DB-8626-4F9E19456833}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{6E484075-3767-4760-8124-8174E090E420}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{E52A6007-EFD0-4AA3-A633-F92EF4219952}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{128659FD-245B-4580-A27A-8BD14A4362D5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{CF72560C-3818-41EC-8512-570CBC4FE99A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{95F512F9-A4D1-4E88-8DB3-F047EA06FFFA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{7FD22DBB-8B76-404E-B8BA-4AAE69A65F6C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{20F3EA90-FF78-416C-8FD2-FA213F929482}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{476E48E3-BD58-4AB8-BEFB-A19F3BC99527}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A59743F8-5E79-4D37-A3A5-0B05B797AC54}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{318B08D8-59C9-476F-872D-4123039FBEAD}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{57B42A40-6E57-4E50-9910-80BD163549DA}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{34FC766E-D11E-4038-BA83-6D868DCF4A5C}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{41853FFC-AC52-4DCF-91A4-A327876AB804}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{A8939A92-DE2A-4235-A4B2-4249713F3971}] => (Allow) E:\SteamLibrary\SteamApps\common\LEGO Marvel Super Heroes\LEGOMARVEL.exe
FirewallRules: [{4EB6E432-717E-445B-B3F6-B3D43A221CEC}] => (Allow) E:\SteamLibrary\SteamApps\common\LEGO Marvel Super Heroes\LEGOMARVEL.exe
FirewallRules: [{86E0DA3E-5231-4C4D-8CE3-A5DB19A58CFD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{75A507D8-E82C-464E-81CD-500491F2EE87}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dont_starve\bin\dontstarve_steam.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/15/2015 04:46:26 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (12/15/2015 04:46:15 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (12/15/2015 04:46:15 PM) (Source: ESENT) (EventID: 489) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log" for read only access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (12/15/2015 04:46:05 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (12/15/2015 04:45:54 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (12/15/2015 04:45:54 PM) (Source: ESENT) (EventID: 489) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log" for read only access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (12/15/2015 04:45:44 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (12/15/2015 04:45:33 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (12/15/2015 04:45:33 PM) (Source: ESENT) (EventID: 489) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log" for read only access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (12/15/2015 04:45:23 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
System errors:
=============
Error: (12/15/2015 03:46:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (12/15/2015 03:43:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The ReimageRealTimeProtector service failed to start due to the following error:
%%2
Error: (12/15/2015 03:42:54 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AppReadiness service.
Error: (12/15/2015 03:42:23 PM) (Source: DCOM) (EventID: 10010) (User: Gaming_SSD)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (12/15/2015 03:42:23 PM) (Source: DCOM) (EventID: 10010) (User: Gaming_SSD)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (12/15/2015 03:42:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_3ef3c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
Error: (12/15/2015 03:42:23 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
Error: (12/14/2015 08:55:00 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
Error: (12/14/2015 07:39:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Interactive Services Detection service terminated with the following error:
%%1
Error: (12/14/2015 07:12:38 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
CodeIntegrity:
===================================
Date: 2015-12-15 16:44:49.156
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-15 16:44:49.152
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-15 15:04:45.344
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-15 15:04:45.339
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-15 15:02:07.332
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-15 15:02:07.327
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-14 19:12:52.699
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-13 18:25:33.006
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-13 18:23:56.727
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-13 18:20:05.776
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Percentage of memory in use: 26%
Total physical RAM: 8075.11 MB
Available physical RAM: 5952.97 MB
Total Virtual: 9995.11 MB
Available Virtual: 7837.86 MB
==================== Drives ================================
Drive c: (Local Disk) (Fixed) (Total:222.79 GB) (Free:11.21 GB) NTFS
Drive d: (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: () (Fixed) (Total:465.42 GB) (Free:465.27 GB) NTFS
Drive g: (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive h: () (Removable) (Total:3.8 GB) (Free:0.05 GB) FAT32
Drive j: (My Passport) (Fixed) (Total:1862.98 GB) (Free:1601.33 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 82591F52)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.4 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: 1B78FA1E)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=222.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 7986EAE4)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
========================================================
Disk: 3 (MBR Code: Windows XP) (Size: 3.8 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=3.8 GB) - (Type=0B)
==================== End of Addition.txt ============================