Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-07-2017Ran by owner (administrator) on
DEE25-PC (10-07-2017 19:38:18)
Running from C:\Users\owner\Downloads
Loaded Profiles: owner & Admin (Available Profiles: owner & Admin)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(Code 42 Software) C:\Program Files\CrashPlan\CrashPlanService.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Binary Fortress Software) C:\Development\Modifications\DisplayFusion\DisplayFusionService.exe
(ArcticLine Software) C:\Development\Modifications\FileMarker.NET\FileMarkerService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
(Techsoft) C:\Windows\System32\mfsyncsv.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\RAPID\SamsungRapidSvc.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin\ccSvcHst.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin64\Smc.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin\ccSvcHst.exe
(ASUSTeK Computer Inc.) C:\Development\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe
(ASUSTeK Computer Inc.) C:\Development\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc.) C:\Development\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe
(Box, Inc.) C:\Program Files\Box\Box Sync\BoxSync.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Techsoft) C:\Cloud\MirrorFolder\mrfshl.exe
(Samsung Electronics Co., Ltd.) C:\Development\Samsung\RAPID\CacheFilter\SamsungRapidApp.exe
(ASUSTeK Computer Inc.) C:\Development\ASUS\AI Suite II\EPU\EPUHelp.exe
(ownCloud) C:\Cloud\ownCloud\owncloud.exe
(Binary Fortress Software) C:\Development\Modifications\DisplayFusion\DisplayFusion.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe
(Spotify Ltd) C:\Users\owner\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
(Samsung Electronics Co. Ltd.) C:\Development\Samsung\Samsung Magician\SamsungMagician.exe
(ASUSTeK Computer Inc.) C:\Development\ASUS\AI Suite II\AI Suite II.exe
(Binary Fortress Software) C:\Development\Modifications\DisplayFusion\DisplayFusionHookAppWIN6064.exe
(Binary Fortress Software) C:\Development\Modifications\DisplayFusion\DisplayFusionHookAppWIN6032.exe
() C:\Program Files\Box\Box Sync\BoxSyncMonitor.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(ASUSTeK Computer Inc.) C:\Development\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(Sysinternals -
www.sysinternals.com) C:\Development\Monitors\Process Explorer\procexp64.exe
(Microsoft Corporation) C:\Development\EMET 5.5\EMET_Service.exe
(Microsoft Corporation) C:\Development\EMET 5.5\EMET_Agent.exe
(Resplendence Software Projects Sp.) C:\Development\LatencyMon\LatMon.exe
(Advanced Micro Devices, Inc.) C:\AMD\radeon-crimson-relive-17.7.1-minimalsetup-170710_64bit\Bin64\RadeonInstaller.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrobat_sl.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [BoxSync] => C:\Program Files\Box\Box Sync\BoxSync.exe [5077352 2017-06-21] (Box, Inc.)
HKLM\...\Run: [Fences] => C:\Development\Modifications\Stardock\Fences\Fences.exe [3990488 2016-09-15] (Stardock Corporation)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [158208 2015-12-02] (IvoSoft)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [CrashPlanTray] => C:\Program Files\CrashPlan\CrashPlanTray.exe [462808 2017-06-08] (Code 42 Software, Inc.)
HKLM\...\Run: [MirrorFolderShell] => C:\Cloud\MirrorFolder\mrfshl.exe [316208 2016-10-06] (Techsoft)
HKLM\...\Run: [SamsungRapidApp] => C:\Development\Samsung\RAPID\CacheFilter\SamsungRapidApp.exe [123800 2016-11-18] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3486520 2017-06-26] (Dropbox, Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUS WiFi GO! FileTransfer Execute] => C:\Development\ASUS\AI Suite II\Remote GO!\AssistTools\WiFile\WiFileTransfer.exe [1391416 2013-06-21] (ASUSTeK Computer Inc.)
HKLM-x32\...\RunOnce: [AsIORebootFlag] => [X]
HKLM-x32\...\RunOnce: [MBAP_REBOOT] => [X]
HKLM-x32\...\RunOnce: [AiChargerPlusDriver_Ins] => [X]
HKLM\...\Policies\Explorer: [NoWebServices] 1
HKLM\...\Policies\Explorer: [NoOnlinePrintsWizard] 1
HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 1
HKLM\...\Policies\Explorer: [NoAutorun] 1
HKLM\...\Policies\Explorer: [PreXPSP2ShellProtocolBehavior] 0
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKLM\...\Policies\Explorer: [NoPublishingWizard] 1
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [ownCloud] => C:\Cloud\ownCloud\owncloud.exe [1991680 2017-05-08] (ownCloud)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [DisplayFusion] => C:\Development\Modifications\DisplayFusion\DisplayFusion.exe [9161720 2016-12-23] (Binary Fortress Software)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23819304 2017-03-21] (Google)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-01-17] (Apple Inc.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2017-01-17] (Apple Inc.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [AppleIEDAV] => C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [1091384 2016-12-20] (Apple Inc.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [Spotify Web Helper] => C:\Users\owner\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1562224 2017-06-24] (Spotify Ltd)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [ClamWin] => C:\Development\ClamWin\bin\ClamTray.exe [86016 2016-03-19] (alch)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Run: [SpybotSD TeaTimer] => C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\MountPoints2: {043cb6bc-54f4-11e6-aa04-806e6f6e6963} - E:\.\Bin\ASSETUP.exe
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\MountPoints2: {6eaac46c-e274-11e6-a4d4-ac9e174e80ba} - G:\setup.exe
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\...\MountPoints2: {bdfc58ab-0f64-11e7-a29c-ac9e174e80ba} - F:\autorun.exe
HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Development\Modifications\DisplayFusion\DFSSaver.scr [5295104 2016-12-23] (Binary Fortress Software)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [CrashPlanTray] => C:\Users\Admin\AppData\Local\Programs\CrashPlan\CrashPlanTray.exe
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [HP Officejet Pro 8600 (NET)] => C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [ownCloud] => C:\Cloud\ownCloud\owncloud.exe [1991680 2017-05-08] (ownCloud)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [DisplayFusion] => C:\Development\Modifications\DisplayFusion\DisplayFusion.exe [9161720 2016-12-23] (Binary Fortress Software)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23819304 2017-03-21] (Google)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-01-17] (Apple Inc.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2017-01-17] (Apple Inc.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [AppleIEDAV] => C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [1091384 2016-12-20] (Apple Inc.)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [Visual Subst] => C:\Users\owner\Downloads\VSubst_1.0.6-bin\VSubst.exe [139672 2008-02-02] (NTWind Software)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Run: [Pushbullet] => C:\Apps\Pushbullet\pushbullet.exe [345600 2015-07-01] (Pushbullet inc)
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\RunOnce: [Uninstall 17.3.6915.0529] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\owner\AppData\Local\Microsoft\OneDrive\17.3.6915.0529"
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\MountPoints2: {043cb6bc-54f4-11e6-aa04-806e6f6e6963} - E:\.\Bin\ASSETUP.exe
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\MountPoints2: {6eaac46c-e274-11e6-a4d4-ac9e174e80ba} - G:\setup.exe
HKU\S-1-5-21-3726862377-2586928099-1968672737-500\...\MountPoints2: {bdfc58ab-0f64-11e7-a29c-ac9e174e80ba} - F:\autorun.exe
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
Startup: C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Startup\Send to OneNote.lnk [2017-07-09]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
Startup: C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Startup\Send to OneNote.lnk [2017-07-09]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Restriction <==== ATTENTION
GroupPolicyScripts: Restriction <==== ATTENTION
GroupPolicyScripts\User: Restriction <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxySettingsPerUser] 1 <==== ATTENTION (Restriction - ProxySettings)
ProxyServer: [S-1-5-21-3726862377-2586928099-1968672737-1000] => localhost:8080
ProxyServer: [S-1-5-21-3726862377-2586928099-1968672737-500] => localhost:8080
Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => No File
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0CCAD66D-C8E8-494A-9334-1E5999F70010}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{E26FC17D-2ED2-40EB-AFC0-39F1EAF45DE3}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
BHO: Folder Options X -> {0AE87E97-08ED-4D43-ADA3-ADD3166FC4D2} -> C:\Development\Folder Options X\FolderOptions.dll [2012-06-23] (T800 Productions)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-07-06] (Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll [2017-04-25] (Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-10-01] (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2017-07-06] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-25] (Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2016-07-30] (IvoSoft)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-10-01] (Adobe Systems Incorporated)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22] (Eyeo GmbH)
BHO-x32: No Name -> {0AE87E97-08ED-4D43-ADA3-ADD3166FC4D2} -> No File
BHO-x32: No Name -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> No File
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (IvoSoft)
BHO-x32: Symantec Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\bin\IPS\IPSBHO.DLL [2012-11-03] (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-25] (Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-10-01] (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2017-07-06] (Microsoft Corporation)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-25] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2016-07-30] (IvoSoft)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-10-01] (Adobe Systems Incorporated)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22] (Eyeo GmbH)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-10-01] (Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-10-01] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (IvoSoft)
IE Session Restore: HKU\S-1-5-21-3726862377-2586928099-1968672737-1000 -> is enabled.
IE Session Restore: HKU\S-1-5-21-3726862377-2586928099-1968672737-500 -> is enabled.
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll [2016-01-04] (Belarc, Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: 8p3sqmym.default
FF ProfilePath: C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default [2017-07-04]
FF Session Restore: Mozilla\Firefox\Profiles\8p3sqmym.default -> is enabled.
FF Extension: (Classic Theme Restorer) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi [2017-04-28]
FF Extension: (Expire history by days) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\expire-history-by-days@bonardo.net.xpi [2017-03-30]
FF Extension: (FoxyScrobbler) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\foxyscrobbler@baluvaithinathan.com.xpi [2017-01-29]
FF Extension: (Pin It button) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2016-10-05]
FF Extension: (Norwell History Tools) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\norvel@history.xpi [2017-03-30]
FF Extension: (Stylish) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2016-10-13]
FF Extension: (FT DeepDark) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\8p3sqmym.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66} [2017-05-01]
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2017-04-14]
FF ProfilePath: C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\lsnbf8jy.dev-edition-default [2017-07-08]
FF Session Restore: Mozilla\Firefox\Profiles\lsnbf8jy.dev-edition-default -> is enabled.
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_26_0_0_131.dll [2017-06-17] ()
FF Plugin: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-25] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-25] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_131.dll [2017-06-17] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1224194.dll [2016-02-19] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2017-04-25] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-25] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-05-28] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-03-28] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)
FF Plugin HKU\S-1-5-21-3726862377-2586928099-1968672737-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\owner\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2017-01-25] (Zoom Video Communications, Inc.)
StartMenuInternet: Firefox-E9DA97F5F10C18F - C:\Development\Firefox Developer Edition\firefox.exe
Chrome:
=======
CHR DefaultProfile: Default
CHR NewTab: Default -> Active:"chrome-extension://laookkfknpbbblfpciffpaejjkokdgca/dashboard.html"
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?p={searchTerms}&fr=dss_yset_chr__PARAM__
CHR DefaultSearchKeyword: Default -> Yahoo
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default [2017-07-10]
CHR Extension: (Yahoo Web) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\acjpdakpjonkfmggcmanlhdakfkhloii [2017-06-12]
CHR Extension: (YouTube) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\adnlfjpnmidfimlkaohpidplnoimahfh [2017-04-01]
CHR Extension: (iCloud) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\agedgfbdadefbodjkkkcpihgcmibpcff [2017-03-29]
CHR Extension: (Material Incognito Dark Theme) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahifcnpnjgbadkjdhagpfjfkmlapfoel [2017-06-07]
CHR Extension: (Flash Video Downloader) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2017-03-29]
CHR Extension: (BetterTTV) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2017-05-01]
CHR Extension: (Xmarks Bookmark Sync) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajpgkpeckebdhofmmjfgcjjiiejpodla [2017-03-29]
CHR Extension: (Number google search results) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\amkhhpnepgonbpgjoflhpnhjjipdgmab [2017-03-29]
CHR Extension: (Hacker News Highlighter) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\anknmonokijobdggekbkodmmaefckoob [2017-03-29]
CHR Extension: (FastMail: Fast, reliable email) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aokghgbpaapgekmffmngndjffcokkdgh [2017-03-29]
CHR Extension: (Google Drive) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-01]
CHR Extension: (Agar.io) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apgkgfibiebjfdkcanlcnbbenofdeoip [2017-03-29]
CHR Extension: (Hacker News Enhancement Suite) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bappiabcodbpphnojdiaddhnilfnjmpm [2017-03-29]
CHR Extension: (Regex Search) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcdabfmndggphffkchfdcekcokmbnkjl [2017-04-18]
CHR Extension: (TagPro Chat Enhancer) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bffcbhifhdeaaialpegkdakkfjalofom [2017-03-30]
CHR Extension: (Squirt) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhahfnbdgffkcobfgkamlajfkflakfdb [2017-03-29]
CHR Extension: (Pandora) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmcbcfbcbofmmjigbigbeplbphlcnpbi [2017-03-29]
CHR Extension: (RSS Subscription Extension) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmjffnfcokiodbeiamclanljnaheeoke [2017-03-29]
CHR Extension: (DevTools Theme: Zero Dark Matrix) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bomhdjeadceaggdgfoefmpeafkjhegbo [2017-06-29]
CHR Extension: (Pushbullet) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2017-06-11]
CHR Extension: (Circularhub | Flyertown) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmkfcfhdpleoleonofgbkloikmenpgmh [2017-03-29]
CHR Extension: (Hacker News) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cocinacogklpjoldpckjijokfbpfbccm [2017-03-29]
CHR Extension: (SoundCloud) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cogncpmnihfpagflekafgfhbjahhjgee [2017-03-29]
CHR Extension: (FastMail: Fast, reliable email) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\confeenhjpkmbceaenohemhdbecmkjjb [2017-03-29]
CHR Extension: (Google Calendar - Month of Feb 2016) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\coohboghlolbhgjfnghkkddfmichcgmp [2017-03-29]
CHR Extension: (Rescroller) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddehdnnhjimbggeeenghijehnpakijod [2017-03-29]
CHR Extension: (Settings - Zoho Mail (jrschneier@zoho...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhcdpfihbcinbnkodaiioddfcakjmlfp [2017-03-29]
CHR Extension: (Any.do) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhckiafmddpbajecepaaidjckpcfempi [2017-03-29]
CHR Extension: (Tampermonkey) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-06-12]
CHR Extension: (Google Tasks (by Google)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmglolhoplikcoamfgjgammjbgchgjdd [2017-06-11]
CHR Extension: (Dropbox for Gmail) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2017-03-29]
CHR Extension: (Session Buddy) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2017-07-03]
CHR Extension: (Family Friendly Content | Wimp.com) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eenejmncfhgcpbpcibdjikbmmdjdplcj [2017-03-29]
CHR Extension: (Adobe Acrobat) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-29]
CHR Extension: (Inbox | FastMail) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\efcdjebfjjchcddjnpnjnfnjnmjnanjg [2017-03-29]
CHR Extension: (Amazon.com: Online Shopping for Elect...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eicbgcfajfmpllmbdfmnnpomnnedfbop [2017-03-29]
CHR Extension: (Dark Reader) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2017-03-29]
CHR Extension: (TagProReplays) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbnakhldlocljfcglmeibhhdnmmcodh [2017-07-08]
CHR Extension: (Google Calendar) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-04-04]
CHR Extension: (Credit One Bank - Online Account Access) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoaocfaldckngifefolijeakahehmddp [2017-03-29]
CHR Extension: (Mail - Jonathan Schneider - Outlook) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\epfdiklifeepcjolakkcaeolohdiadlm [2017-03-29]
CHR Extension: (Stylish - Custom themes for any website) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2017-06-06]
CHR Extension: (Frameless for Pandora) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkmaghblbebdjdijddbnegchellgjhpl [2017-06-11]
CHR Extension: (Inoreader) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmajbmdokmecmpllfhcamihghgoablgg [2017-03-29]
CHR Extension: (Craigslist Night Mode Pro (Dark Theme)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngbbgaahhcjkpljpdcpakilkglmpacl [2017-06-07]
CHR Extension: (questions to ask a kid - Google Search) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbnojoilkknlllaelpglnlbgdmpallno [2017-03-29]
CHR Extension: (Google Docs Offline) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-01]
CHR Extension: (Pandora) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgomfkmjbcaaejngnngnnkoclaiglig [2017-03-29]
CHR Extension: (The Camelizer) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghnomdcacenbmilgjigehppbamfndblo [2017-03-29]
CHR Extension: (AdBlock) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-06-28]
CHR Extension: (Pinterest) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\glpcdlmagpenkpdgnjmfimanpcigbbhc [2017-03-29]
CHR Extension: (Google Calendar (by Google)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2017-03-29]
CHR Extension: (Save to Google Drive) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2017-03-29]
CHR Extension: (lynda.pitt.edu | University of Pittsb...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\golphkojcamlldjmdgmlbgggcfbmpkeh [2017-03-29]
CHR Extension: (Pinterest Save Button) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2017-05-01]
CHR Extension: (Pandora) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hedopifcickibdddkndbpbgkddinblcg [2017-03-29]
CHR Extension: (Last.fm Scrobbler) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm [2017-06-28]
CHR Extension: (StumbleUpon - StumbleUpon) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiaepnhpmapcodpadnbmoibbnpkomiok [2017-03-29]
CHR Extension: (Google Calendar - Week of Jan 17, 2016) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjjijolbaalnimjhgecicfcpdgongcjl [2017-03-29]
CHR Extension: (DRUDGE REPORT 2016®) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkhipjkkihiicjeidmhelcgodcbmcamb [2017-03-29]
CHR Extension: ((10) Dashboard | Khan Academy) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkickcolfokoemklognjnaondhjhfklf [2017-03-29]
CHR Extension: (Google Keep - notes and lists) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2017-07-06]
CHR Extension: (Deluminate) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\iebboopaeangfpceklajfohhbpkkfiaa [2017-03-29]
CHR Extension: (Home — Last.fm) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\igldfljpdcopmamgfdfhkhlcopdfehak [2017-03-29]
CHR Extension: (Google Calendar - Week of Sep 4, 2016) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcfedocpphbmelecjnicohcpbekakni [2017-03-29]
CHR Extension: (Reader View) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\iibolhpkjjmoepndefdmdlmbpfhlgjpl [2017-03-29]
CHR Extension: (HealthVault) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\inbjlpdahiaalcognmaaaaablpagpldm [2017-03-29]
CHR Extension: (Tumblr) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipjpimdglbifnmadajhnhmadbcjhkghg [2017-03-29]
CHR Extension: (Change Colors) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbmkekhehjedonbhoikhhkmlapalklgn [2017-03-29]
CHR Extension: (Google Calendar - Month of Jan 2016) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmkmnjfbjcgdckofagjdjdhfcmkacbok [2017-03-29]
CHR Extension: (FAJN605’s Music Profile — Users at La...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbbehbklmbbiliefiepmobppohmemcen [2017-03-29]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2017-06-24]
CHR Extension: (The Old Reader) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kchpghdclfmiahcoeohigdakcppnheal [2017-03-29]
CHR Extension: (lynda.com software training & tutoria...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgecejkeladiocgjfpooellgekemlkl [2017-03-29]
CHR Extension: (Reddit Hide Sidebar) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhljmlnmkpkfidhceknegheeplgmngg [2017-05-15]
CHR Extension: (Gmail) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhopmchchfpfdcdjodmpfaaphdclmlj [2017-03-29]
CHR Extension: (Momentum) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\laookkfknpbbblfpciffpaejjkokdgca [2017-07-05]
CHR Extension: (Instapaper) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldjkgaaoikpmhmkelcgkgacicjfbofhh [2017-03-29]
CHR Extension: (RadioEnhancer) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfijnebfkjdclmcedinoknekamigckii [2017-03-29]
CHR Extension: ((2304 unread) - jonrs57 - Yahoo Mail) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgdnfbfccglimdflhnejpkjmaodkneep [2017-03-29]
CHR Extension: (reddit: the front page of the internet) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgnggepjiihbfdbedefdhcffnmhcahbm [2017-03-29]
CHR Extension: (Beautiful Weather Graphs and Maps - W...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmdmldjecchmfonmgkjcgblhkblgjifo [2017-03-29]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2017-03-29]
CHR Extension: (Extensions Manager (aka Switcher)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpleipinonnoibneeejgjnoeekmbopbc [2017-03-29]
CHR Extension: (Google Calendar - Week of Nov 22, 2015) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\magmckgjjbnmlghmgmaigdmjgalaaifp [2017-03-29]
CHR Extension: (Bandcamp) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfmgbilkpckiegnjfpgnekakjacfkjca [2017-03-29]
CHR Extension: (Google Mail Checker) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2017-03-29]
CHR Extension: (TagPro Capture the Flag) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjmjebkieapibpoconhhfjafegoagoho [2017-03-29]
CHR Extension: (Following - Twitch) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlkifeehhcjahpokocfjnkdgfbbkmhcl [2017-03-29]
CHR Extension: (Talk radio, podcasts and live radio o...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\naogjcefgkmeimmodhgagnlaohfocljk [2017-03-29]
CHR Extension: (Save to Pocket) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2017-06-30]
CHR Extension: (TagPro) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\njfbcnfnfebbcookhiagobahebpkiioo [2017-03-29]
CHR Extension: (Chrome Web Store Payments) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-29]
CHR Extension: (Better History) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\obciceimmggglbmelaidpjlmodcebijb [2017-06-06]
CHR Extension: (Job Search | one search. all jobs. In...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocndalckaopejonmpmceadpnpdeehdpf [2017-03-29]
CHR Extension: (TagPro Capture the Flag) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpnabdeninfdenkpgcjogiecfpkkgae [2017-03-29]
CHR Extension: (Checker Plus for Gmailâ„¢) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2017-07-02]
CHR Extension: (Trello) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oflhioojkbelepjlnafgmgkkjhojphcg [2017-03-29]
CHR Extension: (Stylebot) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiaejidbmkiecgbjeifoejpgmdaleoha [2017-03-29]
CHR Extension: (Drudge Retort: The Other Side of the ...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\omfjcplilgeoplpnpmlbfpdmlnjjhikc [2017-03-29]
CHR Extension: (Microsoft Office Online - Word, Excel...) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\palennhedgekbnbmokheidadmghcncgl [2017-03-29]
CHR Extension: (Outlook.com) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfpeapihoiogbcmdmnibeplnikfnhoge [2017-03-29]
CHR Extension: (Chrome Media Router) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-06-28]
CHR Extension: (Sunrise Calendar) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\plbmnkaebchbgijgejjfcpfpklbnbmik [2017-03-29]
CHR Extension: (RSS Feed Reader) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp [2017-07-03]
CHR HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\owner\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2017-03-30]
CHR HKU\S-1-5-21-3726862377-2586928099-1968672737-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-03-28]
Opera:
=======
OPR Extension: (Stylish) - C:\Users\owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\bofnhkejmonldphklejelehlhhoecceg [2017-01-16]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2246256 2017-05-18] (Adobe Systems, Incorporated)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2014-03-12] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2014-03-12] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [1632256 2014-03-12] (ASUSTeK Computer Inc.) [File not signed]
S3 BoxSyncUpdateService; C:\Program Files\Box\Box Sync\SyncUpdaterService.exe [37264 2016-07-29] (Box, Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4411592 2017-06-23] (Microsoft Corporation)
R2 CrashPlanService; C:\Program Files\CrashPlan\CrashPlanService.exe [267736 2017-06-08] (Code 42 Software)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-09-04] (Dropbox, Inc.)
S2 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-09-04] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [49992 2017-06-26] (Dropbox, Inc.)
R2 DisplayFusionService; C:\Development\Modifications\DisplayFusion\DisplayFusionService.exe [5098008 2016-12-23] (Binary Fortress Software)
R2 EMET_Service; C:\Development\EMET 5.5\EMET_Service.exe [33448 2016-07-25] (Microsoft Corporation)
R2 FileMarkerApplyIconService; C:\Development\Modifications\FileMarker.NET\FileMarkerService.exe [717576 2013-11-01] (ArcticLine Software)
S3 fussvc; C:\Development\Microsoft SDKs\Windows\8.1\App Certification Kit\fussvc.exe [143872 2014-10-24] (Microsoft Corporation) [File not signed]
S4 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960672 2016-07-20] (IObit)
R2 mfsyncsv; C:\Windows\system32\mfsyncsv.exe [253744 2016-10-06] (Techsoft)
S4 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-08-02] (Plays.tv, LLC)
S4 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc)
R2 SamsungRapidSvc; C:\Windows\System32\RAPID\SamsungRapidSvc.exe [29080 2016-11-18] (Samsung Electronics Co., Ltd.)
R2 SepMasterService; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin\ccSvcHst.exe [143928 2012-11-03] (Symantec Corporation)
R3 SmcService; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin64\Smc.exe [2294112 2012-11-03] (Symantec Corporation)
S4 SNAC; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin64\snac64.exe [334288 2012-11-03] (Symantec Corporation)
S3 Te.Service; C:\Development\Microsoft SDKs\Windows\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [122368 2015-02-26] (Microsoft Corporation) [File not signed]
S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH)
S4 vmware-view-usbd; C:\Program Files (x86)\VMware\VMware Horizon View Client\bin\vmware-view-usbd.exe [1978584 2014-08-13] (VMware, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S4 WMZuneComm; C:\Apps\Zune\WMZuneComm.exe [306400 2011-08-05] (Microsoft Corporation)
S4 wsnm; C:\Program Files (x86)\VMware\VMware Horizon View Client\wsnm\wsnm.exe [528600 2014-08-29] (VMware, Inc.)
S4 ZuneNetworkSvc; C:\Apps\Zune\ZuneNss.exe [8277728 2011-08-05] (Microsoft Corporation)
S4 ZuneWlanCfgSvc; C:\Apps\Zune\ZuneWlanCfgSvc.exe [467680 2011-08-05] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTek Computer Inc.)
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [49760 2012-01-06] (Asmedia Technology)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R0 asstor64; C:\Windows\System32\DRIVERS\asstor64.sys [83792 2015-06-17] (Asmedia Technology)
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2011-04-11] ()
S3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
R1 BHDrvx64; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20170703.001\BHDrvx64.sys [1862784 2017-05-18] (Symantec Corporation)
R1 ccSettings_{3771A34D-2132-48EA-A486-D62ECDF9D553}; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\ccSetx64.sys [168096 2012-11-03] (Symantec Corporation)
S3 danewFltr; C:\Windows\System32\drivers\danew.sys [12032 2010-03-23] (Razer (Asia-Pacific) Pte Ltd) [File not signed]
R3 dcdbas; C:\Windows\System32\DRIVERS\dcdbas64.sys [48464 2015-06-18] (Dell Inc.)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [508032 2017-06-30] (Symantec Corporation)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [24056 2016-01-14] ()
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [21496 2016-01-14] ()
U3 EraserUtilDrv11720; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11720.sys [158336 2017-06-30] (Symantec Corporation)
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2016-07-11] ()
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2016-07-11] ()
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [27552 2017-07-08] (REALiX(tm))
R1 IDSVia64; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\IPSDefs\20170707.011\IDSvia64.sys [1012864 2017-05-26] (Symantec Corporation)
R3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-04-30] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-04-30] ()
R0 mrfoldr; C:\Windows\System32\drivers\mrfoldr.sys [140896 2016-10-06] (Techsoft)
R3 NAVENG; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\VirusDefs\20170710.008\ENG64.SYS [138880 2017-05-24] (Symantec Corporation)
R3 NAVEX15; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\VirusDefs\20170710.008\EX64.SYS [2152064 2017-05-24] (Symantec Corporation)
R3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Resplendence Software Projects Sp.)
R0 SamsungRapidDiskFltr; C:\Windows\System32\DRIVERS\SamsungRapidDiskFltr.sys [272792 2016-11-18] (Samsung Electronics Co., Ltd.)
R0 SamsungRapidFSFltr; C:\Windows\System32\DRIVERS\SamsungRapidFSFltr.sys [111512 2016-11-18] (Samsung Electronics Co., Ltd.)
R1 SRTSP; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\SRTSP64.SYS [776352 2012-11-03] (Symantec Corporation)
R1 SRTSPX; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\SRTSPX64.SYS [37496 2012-11-03] (Symantec Corporation)
R3 STXIIService; C:\Windows\System32\drivers\STXII.sys [2736640 2014-02-18] (C-Media Inc)
S3 SyDvCtrl; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin64\SyDvCtrl64.sys [34352 2012-11-03] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\SYMDS64.SYS [493216 2012-11-03] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\SYMEFA64.SYS [1133216 2012-11-03] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2016-08-10] (Symantec Corporation)
R1 SymIRON; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\Ironx64.SYS [224416 2012-11-03] (Symantec Corporation)
R1 SYMNETS; C:\Windows\System32\Drivers\SEP\0C0107DF\07DF.105\x64\SYMNETS.SYS [432800 2012-11-03] (Symantec Corporation)
R1 SysPlant; C:\Windows\System32\Drivers\SysPlant.sys [154904 2016-08-10] (Symantec Corporation)
R1 Teefer2; C:\Windows\System32\DRIVERS\Teefer.sys [95616 2012-11-03] (Symantec Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-07-10 19:38 - 2017-07-10 19:38 - 00055260 _____ C:\Users\owner\Downloads\FRST.txt
2017-07-10 19:37 - 2017-07-10 19:38 - 00000000 ____D C:\FRST
2017-07-10 19:37 - 2017-07-10 19:37 - 00000000 ____D C:\Windows\LastGood
2017-07-10 19:36 - 2017-07-10 19:36 - 02437120 _____ (Farbar) C:\Users\owner\Downloads\frst64.exe
2017-07-10 19:35 - 2017-07-10 19:35 - 00899584 _____ C:\Users\owner\Downloads\rgsa.exe
2017-07-10 19:31 - 2017-07-10 19:31 - 00000060 _____ C:\ProgramData\SoftwareUpdateTemp.xml
2017-07-10 19:29 - 2017-07-10 19:29 - 41315000 _____ (AMD Inc.) C:\Users\owner\Downloads\radeon-crimson-relive-17.7.1-minimalsetup-170710_64bit.exe
2017-07-10 19:23 - 2017-07-10 19:23 - 00000000 ___HD C:\OneDriveTemp
2017-07-10 19:11 - 2012-12-27 02:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2017-07-10 19:11 - 2012-12-27 02:26 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2017-07-09 20:16 - 2017-07-10 18:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Utilities
2017-07-09 20:15 - 2017-07-09 20:15 - 03959288 _____ (Martin MalÃk - REALiX ) C:\Users\owner\Downloads\hw64_554.exe
2017-07-09 16:38 - 2017-07-09 16:38 - 00041449 _____ C:\Users\owner\Desktop\My Baseline (2017- 7- 9).ptx
2017-07-08 21:51 - 2017-07-08 21:51 - 00027552 _____ (REALiX(tm)) C:\Windows\system32\Drivers\HWiNFO64A.SYS
2017-07-04 18:38 - 2017-07-04 18:38 - 09446336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2017-07-04 18:38 - 2017-07-04 18:38 - 00522632 _____ C:\Windows\system32\GameManager64.dll
2017-07-04 18:38 - 2017-07-04 18:38 - 00185088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 15728008 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 14318984 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 01032072 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 01032072 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00768904 _____ (AMD) C:\Windows\system32\atieclxx.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00544136 _____ (AMD) C:\Windows\system32\atitmm64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00543112 _____ C:\Windows\system32\dgtrayicon.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00543112 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00537992 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00520584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2017-07-04 18:37 - 2017-07-04 18:37 - 00475016 _____ C:\Windows\system32\atieah64.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00469384 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00458632 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00402312 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00356744 _____ C:\Windows\SysWOW64\GameManager32.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00349064 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00325512 _____ C:\Windows\SysWOW64\atieah32.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00194952 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00182664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00161160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00142216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00126344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00124808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00124808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00114056 _____ (AMD) C:\Windows\system32\atimuixx.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00078728 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00072072 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00068488 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00067464 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2017-07-04 18:37 - 2017-07-04 18:37 - 00065416 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00060296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00036232 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2017-07-04 18:37 - 2017-07-04 18:37 - 00033672 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 59237768 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 46457736 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 36562312 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2017-07-04 18:36 - 2017-07-04 18:36 - 28797832 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 22739336 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 14414072 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 10313608 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdvlk64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 09899912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 07955848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 02527624 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 02189704 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00855432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00687496 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00505736 _____ C:\Windows\system32\amdgfxinfo64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00351624 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00305544 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys
2017-07-04 18:36 - 2017-07-04 18:36 - 00269704 _____ C:\Windows\system32\clinfo.exe
2017-07-04 18:36 - 2017-07-04 18:36 - 00185600 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00159112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00154152 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00128968 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00124808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00121240 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00121240 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00112520 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00106248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00103304 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00092840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2017-07-04 18:36 - 2017-07-04 18:36 - 00092840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 26831240 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 08471432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdvlk32.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 00166280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amduve64.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 00135560 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amduve32.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 00082824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 00066952 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 00066440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2017-07-04 18:35 - 2017-07-04 18:35 - 00054664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
2017-07-04 17:59 - 2017-07-04 17:59 - 00798552 _____ C:\Windows\SysWOW64\atiapfxx.blb
2017-07-04 17:59 - 2017-07-04 17:59 - 00798552 _____ C:\Windows\system32\atiapfxx.blb
2017-07-04 17:58 - 2017-07-04 17:58 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2017-07-04 17:53 - 2017-07-04 17:53 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2017-07-04 12:49 - 2017-07-04 12:51 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy
2017-07-04 12:47 - 2017-07-04 12:48 - 16409960 _____ (Safer Networking Limited ) C:\Users\owner\Downloads\spybotsd162.exe
2017-07-04 11:29 - 2017-07-04 11:29 - 00368576 _____ C:\Windows\system32\ativvaxy_el_nd.dat
2017-07-03 22:47 - 2017-07-04 12:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools Security
2017-07-03 22:47 - 2017-07-03 22:49 - 00000000 ____D C:\Users\owner\AppData\Roaming\.clamwin
2017-07-03 22:44 - 2017-07-03 22:45 - 120690586 _____ (alch ) C:\Users\owner\Downloads\clamwin-0.99.1-setup.exe
2017-07-03 20:32 - 2017-07-03 20:32 - 00000000 _____ C:\Users\owner\AppData\Local\{32CC8840-D407-4FDF-9077-54AEE6515CAD}
2017-07-03 20:32 - 2017-07-03 20:32 - 00000000 _____ C:\Users\owner\AppData\Local\{174E6EE2-8EF7-4E5D-8F64-269686E139BA}
2017-07-03 19:57 - 2017-07-03 19:57 - 00000000 _____ C:\Users\owner\AppData\Local\{8099176B-DFD6-4218-B7FE-EE26F272B780}
2017-07-03 18:39 - 2017-07-03 18:42 - 478915776 _____ (AMD Inc.) C:\Users\owner\Downloads\non-whql-win7-64bit-radeon-software-crimson-relive-17.6.2-june13.exe
2017-07-02 21:21 - 2017-07-02 21:21 - 00000000 ____D C:\Users\owner\AppData\Roaming\AMD
2017-07-02 21:20 - 2017-07-02 21:31 - 00000000 ____D C:\Users\owner\AppData\Roaming\obs-studio
2017-07-02 21:19 - 2017-07-02 21:19 - 00000949 _____ C:\Users\Public\Desktop\OBS Studio.lnk
2017-07-02 21:19 - 2017-07-02 21:19 - 00000000 ____D C:\ProgramData\Intel
2017-07-02 21:17 - 2017-07-02 21:18 - 113245088 _____ (obsproject.com) C:\Users\owner\Downloads\OBS-Studio-19.0.3-Full-Installer.exe
2017-07-02 18:05 - 2017-07-03 18:38 - 00225000 _____ C:\Users\owner\Downloads\radeon-crimson-relive-17.6.2-minimalsetup-170613_64bit.exe
2017-07-02 14:42 - 2017-06-19 19:14 - 25731584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-07-02 14:42 - 2017-06-19 19:10 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-07-02 14:42 - 2017-06-19 18:43 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-07-02 14:42 - 2017-06-19 18:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-07-02 14:42 - 2017-06-19 18:09 - 20270592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-07-02 14:42 - 2017-06-19 18:00 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-07-02 14:42 - 2017-06-19 17:50 - 15252480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-07-02 14:42 - 2017-06-19 17:29 - 13664256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 02319872 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 02222080 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2017-07-02 14:42 - 2017-06-16 11:29 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2017-07-02 14:42 - 2017-06-16 11:13 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-07-02 14:42 - 2017-06-16 11:12 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-07-02 14:42 - 2017-06-16 11:11 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2017-07-02 14:42 - 2017-06-16 11:11 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2017-07-02 14:42 - 2017-06-16 11:11 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2017-07-02 14:42 - 2017-06-16 11:00 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2017-07-02 14:42 - 2017-06-16 11:00 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2017-07-02 14:42 - 2017-06-16 10:59 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2017-07-02 14:42 - 2017-06-16 10:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2017-07-02 14:42 - 2017-05-21 00:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-07-02 14:42 - 2017-05-21 00:06 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-07-02 14:42 - 2017-05-16 11:35 - 00986856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-07-02 14:42 - 2017-05-16 11:35 - 00265448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-07-02 14:42 - 2017-05-16 11:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2017-07-02 13:49 - 2017-07-02 13:49 - 00000000 ____D C:\Program Files\ATI Technologies
2017-07-02 13:48 - 2017-07-02 13:48 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2017-07-02 13:46 - 2017-07-02 13:46 - 00000000 ____D C:\Users\owner\Downloads\AMD_Chipset_XPVistaWin7_8_V8973_V901
2017-07-02 13:46 - 2011-02-25 02:25 - 00296320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2017-07-02 13:43 - 2017-07-02 13:43 - 05500868 _____ C:\Users\owner\Downloads\Asmedia_USB3_XPVistaWin7-8-81_VER116120.zip
2017-07-02 13:43 - 2017-07-02 13:43 - 00000000 ____D C:\Users\owner\Downloads\Asmedia_USB3_XPVistaWin7-8-81_VER116120
2017-07-02 13:41 - 2017-07-02 13:46 - 944709898 _____ C:\Users\owner\Downloads\AMD_Chipset_XPVistaWin7_8_V8973_V901.zip
2017-07-02 12:35 - 2017-07-10 19:24 - 00003012 _____ C:\Windows\System32\Tasks\MSIAfterburner
2017-06-28 10:03 - 2017-06-28 10:03 - 00000218 _____ C:\Users\owner\AppData\Local\recently-used.xbel
2017-06-26 14:33 - 2017-06-26 14:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-06-26 10:29 - 2017-06-26 10:29 - 00264581 _____ C:\Users\owner\Downloads\Invoice.pdf
2017-06-26 06:27 - 2017-06-26 06:27 - 00049992 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2017-06-26 06:27 - 2017-06-26 06:27 - 00045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2017-06-26 06:27 - 2017-06-26 06:27 - 00045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2017-06-26 06:27 - 2017-06-26 06:27 - 00045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2017-06-24 21:19 - 2017-06-24 21:19 - 00941841 _____ C:\Users\owner\Downloads\Video.MOV
2017-06-24 05:17 - 2017-06-24 05:17 - 00000000 ____D C:\Users\owner\Downloads\File-Export-2017-05-25-to-2017-06-24
2017-06-24 05:16 - 2017-06-24 05:16 - 00002023 _____ C:\Users\owner\Downloads\File-Export-2017-05-25-to-2017-06-24.zip
2017-06-24 01:58 - 2017-06-24 01:58 - 00000000 ____D C:\Users\owner\Downloads\mirror folder retail
2017-06-24 01:56 - 2016-10-06 10:36 - 00253744 _____ (Techsoft) C:\Windows\system32\mfsyncsv.exe
2017-06-24 01:55 - 2017-06-24 01:55 - 04123176 _____ (Techsoft ) C:\Users\owner\Downloads\mf51r.exe
2017-06-24 01:54 - 2017-06-24 01:54 - 00001432 _____ C:\Users\owner\Desktop\mirrorfolder.xml
2017-06-22 13:08 - 2017-06-22 13:08 - 00000000 ____D C:\Users\owner\AppData\Roaming\ArcticLine
2017-06-22 13:07 - 2017-06-22 13:07 - 01630600 _____ (ArcticLine Software ) C:\Users\owner\Downloads\FileMarker.NET_Free.exe
2017-06-22 04:46 - 2017-06-22 04:46 - 00951878 _____ C:\Windows\system32\amdicdxx.dat
2017-06-17 11:20 - 2017-06-17 11:20 - 01202184 _____ (Adobe Systems Incorporated) C:\Users\owner\Downloads\flashplayer26pp_xa_install.exe
2017-06-14 10:24 - 2017-06-14 10:24 - 00000241 _____ C:\Users\owner\Downloads\download.TXT
2017-06-14 10:24 - 2017-06-14 10:24 - 00000073 _____ C:\Users\owner\Downloads\download (5).CSV
2017-06-14 00:43 - 2017-07-02 11:57 - 00000000 _____ C:\Users\owner\AppData\initdebug.nfo
2017-06-14 00:43 - 2017-06-14 00:43 - 02143832 _____ C:\Users\owner\Downloads\instsf449.exe
2017-06-14 00:20 - 2017-07-02 11:57 - 00000045 _____ C:\Windows\SysWOW64\initdebug.nfo
2017-06-14 00:18 - 2017-06-14 00:18 - 03086696 _____ C:\Users\owner\Downloads\instspeedfan452.exe
2017-06-14 00:17 - 2017-06-14 00:17 - 00000000 ____D C:\ProgramData\Dell
2017-06-14 00:17 - 2011-07-04 12:34 - 00399296 _____ (Dell Inc.) C:\Windows\SysWOW64\dchbas32.dll
2017-06-14 00:17 - 2011-07-04 12:34 - 00325568 _____ (Dell Inc.) C:\Windows\hapint.exe
2017-06-14 00:17 - 2011-07-04 12:34 - 00284608 _____ (Dell Inc.) C:\Windows\SysWOW64\dchapi32.dll
2017-06-14 00:17 - 2011-07-04 12:34 - 00284608 _____ (Dell Inc.) C:\Windows\dchcfg32.exe
2017-06-14 00:17 - 2011-07-04 12:34 - 00243648 _____ (Dell Inc.) C:\Windows\SysWOW64\dchcfl32.dll
2017-06-14 00:17 - 2011-07-04 12:34 - 00108992 _____ (Dell Inc.) C:\Windows\dcmdev64.exe
2017-06-14 00:16 - 2017-06-14 00:16 - 15105552 _____ (Dell Inc.) C:\Users\owner\Downloads\2020_Network_Driver_T13T3_WN_8.2.612.2012_A01.EXE
2017-06-13 23:52 - 2017-06-13 23:52 - 00000000 ____D C:\ProgramData\ASUS OC Profiles
2017-06-13 22:42 - 2017-07-10 19:30 - 00000000 ____D C:\AMD
2017-06-13 22:33 - 2017-06-13 22:33 - 03100584 _____ (PassMark Software ® ) C:\Users\owner\Downloads\wirelessmon_WP89BD7421.exe
2017-06-13 22:00 - 2017-06-13 22:00 - 00000000 ____D C:\Windows\system32\RAPID
2017-06-13 22:00 - 2016-11-18 19:04 - 00272792 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\SamsungRapidDiskFltr.sys
2017-06-13 21:56 - 2017-06-13 21:56 - 00003656 _____ C:\Windows\System32\Tasks\SSDlife
2017-06-13 21:41 - 2017-06-13 21:41 - 00003246 _____ C:\Windows\System32\Tasks\SamsungMagician
2017-06-13 21:41 - 2017-06-13 21:41 - 00000000 ____D C:\ProgramData\Samsung
2017-06-13 21:40 - 2017-06-13 21:40 - 13944028 _____ C:\Users\owner\Downloads\Samsung_Magician_Installer.zip
2017-06-13 21:40 - 2017-06-13 21:40 - 00000000 ____D C:\Users\owner\Downloads\Samsung_Magician_Installer
2017-06-13 21:37 - 2017-07-10 19:23 - 00000000 ____D C:\ProgramData\TEMP
2017-06-13 21:37 - 2017-06-13 21:37 - 00002013 _____ C:\Users\Public\Desktop\SSDlife Pro.lnk
2017-06-13 21:37 - 2017-06-13 21:37 - 00000000 ____D C:\ProgramData\Binarysense
2017-06-13 21:36 - 2017-06-13 21:36 - 04816896 _____ C:\Users\owner\Downloads\SSDlife Pro 2.5.82.msi
2017-06-13 21:28 - 2017-02-15 02:51 - 00000000 ____D C:\Users\owner\Downloads\Driver_Win8
2017-06-13 21:28 - 2017-02-15 02:50 - 00000000 ____D C:\Users\owner\Downloads\Driver_Win10
2017-06-13 21:28 - 2017-02-15 02:47 - 00000000 ____D C:\Users\owner\Downloads\Driver
2017-06-13 21:28 - 2016-12-26 03:21 - 00007986 _____ C:\Users\owner\Downloads\readme.txt
2017-06-13 21:28 - 2016-12-26 03:06 - 08301432 _____ (Asmedia Technology) C:\Users\owner\Downloads\setup.exe
2017-06-13 21:24 - 2017-06-13 21:26 - 08852071 _____ (Igor Pavlov) C:\Users\owner\Downloads\asmedia_usb3_1.16.42.1(
www.station-drivers.com).exe
2017-06-13 21:19 - 2017-06-24 04:38 - 00000000 _____ C:\Windows\Path.idx
2017-06-13 21:14 - 2017-07-10 19:24 - 01048576 _____ C:\Windows\PE_Rom.dll
2017-06-13 21:14 - 2017-06-13 21:14 - 00000000 ____D C:\ProgramData\ASUS PowerControl Profiles
2017-06-13 21:00 - 2017-06-13 21:00 - 00000000 ____D C:\Program Files\ASUS
2017-06-13 21:00 - 2011-09-20 00:25 - 00046152 _____ (MCCI Corporation) C:\Windows\SysWOW64\Drivers\ASUSFILTER.sys
2017-06-13 20:50 - 2017-06-13 20:50 - 00000000 ____D C:\Users\owner\AppData\Roaming\app documents\ASUS Remote GO!
2017-06-13 20:50 - 2017-04-25 07:00 - 00908352 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2017-06-13 20:50 - 2017-04-25 07:00 - 00826432 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2017-06-13 20:50 - 2017-04-25 07:00 - 00268864 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2017-06-13 20:50 - 2017-04-25 07:00 - 00191552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2017-06-13 20:50 - 2017-04-25 07:00 - 00191040 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2017-06-13 20:49 - 2017-06-13 20:50 - 00001691 _____ C:\Users\Public\Desktop\Remote GO!.lnk
2017-06-13 20:46 - 2017-06-13 20:46 - 00000000 _____ C:\Windows\SysWOW64\Drivers\1043_ASUSTeK_M5A99FX PRO R2.0.alu
2017-06-13 20:40 - 2013-02-20 23:40 - 00032840 _____ (NT Kernel Resources) C:\Windows\system32\Drivers\ndisrd.sys
2017-06-13 20:40 - 2011-04-11 22:03 - 00014464 _____ C:\Windows\SysWOW64\Drivers\AsUpIO.sys
2017-06-13 20:37 - 2017-06-13 20:37 - 00338500 _____ C:\Users\owner\Downloads\20120109_FWUpg1130.zip
2017-06-13 20:36 - 2017-06-02 04:10 - 00733696 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2017-06-13 20:36 - 2017-05-21 00:28 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-06-13 20:36 - 2017-05-21 00:28 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-06-13 20:36 - 2017-05-21 00:24 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-06-13 20:36 - 2017-05-21 00:24 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-06-13 20:36 - 2017-05-21 00:06 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-06-13 20:36 - 2017-05-20 23:55 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-06-13 20:36 - 2017-05-20 23:48 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-06-13 20:36 - 2017-05-20 23:48 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-06-13 20:36 - 2017-05-20 23:48 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-06-13 20:36 - 2017-05-20 23:47 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-06-13 20:36 - 2017-05-20 23:46 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-06-13 20:36 - 2017-05-20 23:42 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-06-13 20:36 - 2017-05-16 14:19 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-06-13 20:36 - 2017-05-16 13:35 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-06-13 20:36 - 2017-05-14 16:46 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-06-13 20:36 - 2017-05-14 16:28 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-06-13 20:36 - 2017-05-14 16:27 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-06-13 20:36 - 2017-05-14 16:27 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-06-13 20:36 - 2017-05-14 16:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-06-13 20:36 - 2017-05-14 16:26 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-06-13 20:36 - 2017-05-14 16:24 - 02899456 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-06-13 20:36 - 2017-05-14 16:17 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-06-13 20:36 - 2017-05-14 16:16 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-06-13 20:36 - 2017-05-14 16:10 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-06-13 20:36 - 2017-05-14 16:10 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-06-13 20:36 - 2017-05-14 16:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-06-13 20:36 - 2017-05-14 16:10 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-06-13 20:36 - 2017-05-14 16:01 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-06-13 20:36 - 2017-05-14 15:57 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-06-13 20:36 - 2017-05-14 15:55 - 05975040 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-06-13 20:36 - 2017-05-14 15:48 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-06-13 20:36 - 2017-05-14 15:47 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-06-13 20:36 - 2017-05-14 15:46 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-06-13 20:36 - 2017-05-14 15:42 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-06-13 20:36 - 2017-05-14 15:41 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-06-13 20:36 - 2017-05-14 15:38 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-06-13 20:36 - 2017-05-14 15:36 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-06-13 20:36 - 2017-05-14 15:23 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-06-13 20:36 - 2017-05-14 15:23 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-06-13 20:36 - 2017-05-14 15:22 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-06-13 20:36 - 2017-05-14 15:22 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-06-13 20:36 - 2017-05-14 15:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-06-13 20:36 - 2017-05-14 15:21 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-06-13 20:36 - 2017-05-14 15:20 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-06-13 20:36 - 2017-05-14 15:19 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-06-13 20:36 - 2017-05-14 15:18 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-06-13 20:36 - 2017-05-14 15:17 - 02132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-06-13 20:36 - 2017-05-14 15:16 - 02290176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-06-13 20:36 - 2017-05-14 15:15 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-06-13 20:36 - 2017-05-14 15:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-06-13 20:36 - 2017-05-14 15:11 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-06-13 20:36 - 2017-05-14 15:10 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-06-13 20:36 - 2017-05-14 15:10 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-06-13 20:36 - 2017-05-14 15:02 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-06-13 20:36 - 2017-05-14 14:57 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2017-06-13 20:36 - 2017-05-14 14:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-06-13 20:36 - 2017-05-14 14:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-06-13 20:36 - 2017-05-14 14:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-06-13 20:36 - 2017-05-14 14:52 - 03240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-06-13 20:36 - 2017-05-14 14:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-06-13 20:36 - 2017-05-14 14:50 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-06-13 20:36 - 2017-05-14 14:49 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-06-13 20:36 - 2017-05-14 14:44 - 04549120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-06-13 20:36 - 2017-05-14 14:42 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-06-13 20:36 - 2017-05-14 14:40 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-06-13 20:36 - 2017-05-14 14:39 - 02057216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-06-13 20:36 - 2017-05-14 14:38 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-06-13 20:36 - 2017-05-14 14:37 - 01544704 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-06-13 20:36 - 2017-05-14 14:27 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-06-13 20:36 - 2017-05-14 14:15 - 02767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-06-13 20:36 - 2017-05-14 14:11 - 01314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-06-13 20:36 - 2017-05-14 14:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-06-13 20:36 - 2017-05-12 14:27 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-06-13 20:36 - 2017-05-12 14:26 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-06-13 20:36 - 2017-05-12 14:26 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-06-13 20:36 - 2017-05-12 14:26 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-06-13 20:36 - 2017-05-12 14:24 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:07 - 04001000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-06-13 20:36 - 2017-05-12 14:07 - 03945704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-06-13 20:36 - 2017-05-12 14:07 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-06-13 20:36 - 2017-05-12 14:04 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 13:55 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-06-13 20:36 - 2017-05-12 13:54 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-06-13 20:36 - 2017-05-12 13:54 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-06-13 20:36 - 2017-05-12 13:52 - 03222528 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-06-13 20:36 - 2017-05-12 13:51 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-06-13 20:36 - 2017-05-12 13:50 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-06-13 20:36 - 2017-05-12 13:46 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-06-13 20:36 - 2017-05-12 13:43 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2017-06-13 20:36 - 2017-05-12 13:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-06-13 20:36 - 2017-05-12 13:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-06-13 20:36 - 2017-05-12 13:41 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-06-13 20:36 - 2017-05-12 13:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-06-13 20:36 - 2017-05-12 13:40 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 13:40 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 13:40 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 13:40 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-06-13 20:36 - 2017-05-12 12:25 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-06-13 20:36 - 2017-05-12 11:58 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2017-06-13 20:36 - 2017-05-12 11:58 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2017-06-13 20:36 - 2017-05-10 11:33 - 00091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe
2017-06-13 20:36 - 2017-05-10 11:29 - 14183936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-06-13 20:36 - 2017-05-10 11:29 - 03165184 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-06-13 20:36 - 2017-05-10 11:29 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2017-06-13 20:36 - 2017-05-10 11:29 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-06-13 20:36 - 2017-05-10 11:29 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-06-13 20:36 - 2017-05-10 11:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2017-06-13 20:36 - 2017-05-10 11:16 - 00091368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MigAutoPlay.exe
2017-06-13 20:36 - 2017-05-10 11:14 - 02651136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-06-13 20:36 - 2017-05-10 11:13 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-06-13 20:36 - 2017-05-10 11:13 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-06-13 20:36 - 2017-05-10 11:13 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-06-13 20:36 - 2017-05-10 11:13 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2017-06-13 20:36 - 2017-05-10 11:13 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-06-13 20:36 - 2017-05-10 11:13 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2017-06-13 20:36 - 2017-05-10 11:12 - 12880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-06-13 20:36 - 2017-05-10 11:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-06-13 20:36 - 2017-05-10 11:12 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2017-06-13 20:36 - 2017-05-10 11:00 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-06-13 20:36 - 2017-05-10 11:00 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2017-06-13 20:36 - 2017-05-10 11:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2017-06-13 20:36 - 2017-05-10 11:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2017-06-13 20:36 - 2017-05-10 10:52 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-06-13 20:36 - 2017-05-09 11:30 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-06-13 20:36 - 2017-05-09 11:29 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-06-13 20:36 - 2017-05-09 11:15 - 00071680 _____ C:\Windows\system32\PrintBrmUi.exe
2017-06-13 20:36 - 2017-05-09 11:11 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2017-06-13 20:36 - 2017-05-07 11:33 - 00094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2017-06-13 20:36 - 2017-05-07 11:29 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2017-06-13 20:36 - 2017-03-30 11:03 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2017-06-13 20:36 - 2017-03-30 10:58 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
2017-06-13 20:34 - 2013-01-28 15:58 - 00014848 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\Drivers\AiChargerPlus.sys
2017-06-13 20:31 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll
2017-06-13 20:30 - 2017-06-13 20:30 - 00000000 ____D C:\Windows\SysWOW64\Drivers\MFDLL
2017-06-13 20:30 - 2017-06-13 20:30 - 00000000 ____D C:\ProgramData\ASUS
2017-06-13 20:30 - 2008-01-04 01:34 - 00011832 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys
2017-06-13 20:30 - 2008-01-04 01:34 - 00010216 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp32.sys
2017-06-13 20:29 - 2017-06-13 20:29 - 00000000 ____D C:\Users\owner\Downloads\AISuiteII_XPVistaWin7-8-81_M5A99FXPROR2_V20401
2017-06-13 19:36 - 2017-06-13 19:36 - 00000000 ____D C:\Program Files (x86)\ASM106xSATA
2017-06-13 19:35 - 2017-06-13 19:35 - 00000000 ____D C:\Users\owner\Downloads\ASMEDIA_Win7_81_10-Ver3160
2017-06-13 19:30 - 2017-05-03 11:34 - 00094952 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2017-06-13 19:30 - 2017-05-03 11:29 - 01206272 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 01555968 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 00535552 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2017-06-13 19:30 - 2017-05-03 09:05 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-06-13 19:30 - 2017-04-27 18:50 - 03550208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-06-13 19:30 - 2017-04-12 09:05 - 04296704 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-06-13 19:30 - 2017-03-22 22:06 - 01691136 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2017-06-13 19:19 - 2017-06-13 19:19 - 00001987 _____ C:\Users\Public\Desktop\ASUS Boot Setting 1.00.18.lnk
2017-06-13 19:19 - 2013-10-11 15:36 - 00028672 ____N (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll
2017-06-13 19:19 - 2012-08-22 05:54 - 00015232 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys
2017-06-13 19:17 - 2017-06-13 19:17 - 00003041 _____ C:\Users\owner\Desktop\ASUS PC Diagnostics.lnk
2017-06-13 19:17 - 2017-06-13 19:17 - 00000000 ____D C:\Users\owner\Downloads\ASUS_BootSetting_XPVistaWin7-8-8-1_VER10018
2017-06-13 19:16 - 2017-06-13 19:16 - 00000000 ____D C:\Users\owner\Downloads\PC_Diagnostics_XPVistaWin7_8_8-1_VER1304
2017-06-13 19:15 - 2017-06-13 19:16 - 229328829 _____ C:\Users\owner\Downloads\AISuiteII_XPVistaWin7-8-81_M5A99FXPROR2_V20401.zip
2017-06-13 19:15 - 2017-06-13 19:15 - 67927577 _____ C:\Users\owner\Downloads\PC_Diagnostics_XPVistaWin7_8_8-1_VER1304.zip
2017-06-13 19:15 - 2017-06-13 19:15 - 05531632 _____ C:\Users\owner\Downloads\ASUS_BootSetting_XPVistaWin7-8-8-1_VER10018.zip
2017-06-13 19:14 - 2017-06-13 19:14 - 05622146 _____ C:\Users\owner\Downloads\ASMEDIA_Win7_81_10-Ver3160.zip
2017-06-13 19:10 - 2017-06-13 19:10 - 00000000 ____D C:\Users\owner\Downloads\mb_utility_easytune_amd
2017-06-13 19:09 - 2017-06-13 19:09 - 56410918 _____ C:\Users\owner\Downloads\mb_utility_easytune_amd.zip
2017-06-13 00:53 - 2017-06-13 00:53 - 00504144 _____ (Microsoft Corporation) C:\Users\owner\Downloads\winsdk_web (4).exe
2017-06-13 00:21 - 2017-06-13 00:21 - 00504144 _____ (Microsoft Corporation) C:\Users\owner\Downloads\winsdk_web (3).exe
2017-06-12 23:17 - 2017-06-12 23:17 - 00000000 ____D C:\Users\owner\AppData\Roaming\app documents\WPR Files
2017-06-12 22:51 - 2017-06-12 22:51 - 00504144 _____ (Microsoft Corporation) C:\Users\owner\Downloads\winsdk_web (2).exe
2017-06-12 22:43 - 2017-06-12 22:43 - 00504144 _____ (Microsoft Corporation) C:\Users\owner\Downloads\winsdk_web (1).exe
2017-06-12 20:53 - 2017-06-12 22:41 - 00000000 ____D C:\Users\owner\AppData\Local\Windows Performance Analyzer
2017-06-12 20:53 - 2017-06-12 20:53 - 00000000 ____D C:\Users\owner\AppData\Roaming\app documents\WPA Files
2017-06-12 20:49 - 2017-06-14 01:44 - 268435456 _____ C:\kernel.etl
2017-06-12 20:48 - 2017-06-12 20:48 - 00000000 ____D C:\ProgramData\WindowsPerformanceRecorder
2017-06-12 20:47 - 2017-06-12 20:47 - 00000000 ____D C:\ProgramData\Windows App Certification Kit
2017-06-12 20:46 - 2017-06-12 20:46 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2017-06-12 20:41 - 2017-06-12 20:41 - 00000000 ____D C:\Program Files\Application Verifier
2017-06-12 20:25 - 2017-06-12 20:41 - 00000000 ____D C:\Program Files (x86)\Application Verifier
2017-06-12 20:25 - 2017-06-12 20:25 - 00000000 ____D C:\Program Files\Debugging Tools for Windows (x64)
2017-06-12 20:25 - 2017-06-12 20:25 - 00000000 ____D C:\Program Files\Application Verifier (x64)
2017-06-12 20:17 - 2017-06-12 20:18 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 9.0
2017-06-12 20:17 - 2017-06-12 20:17 - 00000000 ____D C:\Windows\symbols
2017-06-12 20:13 - 2017-06-12 20:13 - 00998056 _____ (Microsoft Corporation) C:\Users\owner\Downloads\sdksetup (1).exe
2017-06-12 19:57 - 2017-06-12 19:57 - 00504144 _____ (Microsoft Corporation) C:\Users\owner\Downloads\winsdk_web.exe
2017-06-12 19:42 - 2017-06-12 19:42 - 02449736 _____ (Resplendence Software Projects Sp. ) C:\Users\owner\Downloads\LatencyMon.exe
2017-06-12 19:42 - 2015-07-13 10:16 - 00026368 _____ (Resplendence Software Projects Sp.) C:\Windows\system32\Drivers\rspLLL64.sys
2017-06-12 19:36 - 2017-06-12 19:36 - 01912363 _____ C:\Users\owner\Downloads\WinMTR-v092.zip
2017-06-12 19:36 - 2017-06-12 19:36 - 00000000 ____D C:\Users\owner\Downloads\WinMTR-v092
2017-06-12 17:10 - 2017-06-12 17:10 - 00149896 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2017-06-12 17:10 - 2017-06-12 17:10 - 00127880 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll
2017-06-11 20:02 - 2017-06-14 05:47 - 00000000 ____D C:\Users\owner\AppData\Local\Pushbullet
2017-06-11 20:02 - 2017-06-11 20:02 - 01737872 _____ (Pushbullet Inc ) C:\Users\owner\Downloads\pushbullet_installer.exe
2017-06-11 19:35 - 2017-06-11 19:35 - 00573769 _____ C:\Users\owner\Downloads\20170531.pdf
2017-06-11 17:33 - 2017-06-11 17:41 - 00000000 ____D C:\Users\owner\aqbanking
2017-06-11 13:37 - 2017-06-11 13:37 - 00000082 _____ C:\Users\owner\Desktop\1085518324025822453.url
2017-06-10 09:41 - 2017-06-10 09:41 - 00000798 _____ C:\Users\owner\Downloads\File-Export-2017-06-09-to-2017-06-09.zip
2017-06-10 09:41 - 2017-06-10 09:41 - 00000000 ____D C:\Users\owner\Downloads\File-Export-2017-06-09-to-2017-06-09
2017-06-10 09:23 - 2017-06-10 09:23 - 00001001 _____ C:\Users\owner\Downloads\File-Export-2017-05-11-to-2017-06-10.zip
2017-06-10 09:23 - 2017-06-10 09:23 - 00000000 ____D C:\Users\owner\Downloads\File-Export-2017-05-11-to-2017-06-10
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-07-10 19:38 - 2016-10-14 02:09 - 00000000 ____D C:\Users\owner\AppData\Local\DisplayFusion
2017-07-10 19:37 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\inf
2017-07-10 19:35 - 2017-04-01 21:38 - 00000000 ____D C:\Users\owner\AppData\LocalLow\AMD
2017-07-10 19:35 - 2016-07-29 10:07 - 00000000 ____D C:\Users\owner\AppData\Local\AMD
2017-07-10 19:27 - 2009-07-14 01:13 - 00006166 _____ C:\Windows\system32\PerfStringBackup.INI
2017-07-10 19:25 - 2017-06-08 18:07 - 00007532 _____ C:\Windows\mrfldr.dat
2017-07-10 19:24 - 2016-10-13 04:03 - 00000000 ____D C:\Users\owner\AppData\Local\ClassicShell
2017-07-10 19:23 - 2017-02-28 15:13 - 00000000 ___RD C:\Users\owner\iCloudDrive
2017-07-10 19:23 - 2016-09-24 07:13 - 00000000 ____D C:\Users\owner\ownCloud
2017-07-10 19:23 - 2016-09-04 17:29 - 00000902 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2017-07-10 19:23 - 2016-08-09 12:48 - 00054690 __RSH C:\ProgramData\ntuser.pol
2017-07-10 19:23 - 2015-03-03 14:46 - 00000000 ___RD C:\Users\owner\Google Drive
2017-07-10 19:23 - 2015-02-13 14:33 - 00000000 ___RD C:\Users\owner\OneDrive
2017-07-10 19:23 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-07-10 19:20 - 2009-07-14 00:45 - 00032800 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-07-10 19:20 - 2009-07-14 00:45 - 00032800 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-07-10 19:18 - 2016-12-01 08:49 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2017-07-10 19:17 - 2016-09-04 17:29 - 00000906 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2017-07-10 19:11 - 2016-07-29 07:44 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-07-10 19:11 - 2016-07-29 07:44 - 00000000 ____D C:\Program Files (x86)\Realtek
2017-07-10 18:48 - 2017-06-08 18:07 - 00007532 _____ C:\Windows\mrfldr.da0
2017-07-10 18:36 - 2017-02-01 02:03 - 00000000 ____D C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apps Monitors
2017-07-09 21:35 - 2016-10-18 14:42 - 00000000 ____D C:\Users\owner\AppData\Roaming\Stardock
2017-07-09 20:16 - 2016-09-24 06:59 - 00000000 ____D C:\Users\owner\AppData\Local\ownCloud
2017-07-08 22:02 - 2016-09-05 23:48 - 00000000 ____D C:\Users\Admin
2017-07-08 21:52 - 2016-10-14 04:50 - 00000000 ____D C:\Users\owner\AppData\Local\CrashDumps
2017-07-08 21:46 - 2016-09-04 14:39 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Exploit
2017-07-08 21:46 - 2008-01-01 16:44 - 00493200 _____ C:\Windows\ntbtlog.txt
2017-07-08 20:00 - 2016-09-04 14:39 - 00000000 ____D C:\ProgramData\Malwarebytes Anti-Exploit
2017-07-08 19:45 - 2016-09-05 23:51 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-07-08 19:02 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\NDF
2017-07-08 18:54 - 2016-09-05 19:49 - 00000000 ____D C:\Users\owner\AppData\Local\ElevatedDiagnostics
2017-07-08 00:43 - 2016-11-20 10:49 - 00000000 ____D C:\Users\owner\AppData\LocalLow\Mozilla
2017-07-07 14:24 - 2016-09-04 22:37 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-07-06 23:27 - 2016-09-05 21:54 - 00000000 ____D C:\Users\owner\AppData\Roaming\KeePass
2017-07-06 22:28 - 2016-09-04 22:39 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-07-04 18:38 - 2017-04-24 21:36 - 00207760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2017-07-04 18:38 - 2016-07-18 18:21 - 07663888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2017-07-04 18:38 - 2016-07-18 18:21 - 00161344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2017-07-04 18:38 - 2016-07-18 18:21 - 00143864 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2017-07-04 18:37 - 2017-04-24 21:36 - 12574408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2017-07-04 18:37 - 2017-04-24 21:36 - 00020360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2017-07-04 18:37 - 2017-04-24 21:36 - 00020360 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2017-07-04 18:37 - 2016-07-18 18:21 - 13254256 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2017-07-04 18:37 - 2016-07-18 18:21 - 10444400 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2017-07-04 18:37 - 2016-07-18 18:21 - 01654880 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2017-07-04 18:37 - 2016-07-18 18:21 - 01347952 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2017-07-04 18:37 - 2016-07-18 16:33 - 01507720 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2017-07-04 18:37 - 2016-07-18 16:33 - 00236424 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2017-07-04 18:37 - 2016-07-18 16:33 - 00155528 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2017-07-04 18:36 - 2017-04-24 21:35 - 00915848 _____ (AMD) C:\Windows\system32\coinst_17.10.dll
2017-07-04 18:35 - 2016-07-18 17:37 - 32738184 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2017-07-04 13:24 - 2017-02-01 06:37 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2017-07-03 22:47 - 2016-09-06 01:47 - 00000000 ___RD C:\Development
2017-07-03 22:39 - 2016-08-10 18:43 - 00000000 ____D C:\ProgramData\Symantec
2017-07-03 19:12 - 2016-10-17 03:43 - 00000000 ____D C:\Users\owner\AppData\Local\Spotify
2017-07-03 17:10 - 2016-10-17 03:43 - 00000000 ____D C:\Users\owner\AppData\Roaming\Spotify
2017-07-03 13:46 - 2016-12-24 01:16 - 00004456 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-07-03 13:46 - 2009-07-14 01:32 - 00000000 ____D C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Games
2017-07-03 13:09 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\rescache
2017-07-02 21:48 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\LiveKernelReports
2017-07-02 21:29 - 2016-08-03 11:08 - 00000000 ____D C:\Users\owner\AppData\Roaming\vlc
2017-07-02 20:08 - 2017-04-17 15:14 - 00000000 ____D C:\Users\owner\AppData\Roaming\app documents\Realtime Landscaping Architect 2016
2017-07-02 14:47 - 2009-07-14 00:45 - 00503280 _____ C:\Windows\system32\FNTCACHE.DAT
2017-07-02 14:36 - 2016-07-28 14:21 - 00136024 _____ C:\Users\owner\AppData\Local\GDIPFONTCACHEV1.DAT
2017-06-26 14:33 - 2016-09-04 17:29 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-06-25 10:29 - 2016-09-08 08:35 - 00000000 ____D C:\Users\owner\AppData\Local\gtk-2.0
2017-06-23 00:09 - 2016-07-28 13:57 - 00006420 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-06-20 04:04 - 2016-08-03 10:26 - 00000000 ____D C:\Windows\system32\MRT
2017-06-20 03:57 - 2016-08-03 10:26 - 148601744 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-06-18 23:48 - 2016-09-05 21:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-17 11:19 - 2016-09-05 23:51 - 00803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-06-17 11:19 - 2016-09-05 23:51 - 00144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-06-17 11:19 - 2016-09-05 23:51 - 00000000 ____D C:\Windows\system32\Macromed
2017-06-17 11:19 - 2016-07-28 13:52 - 00000000 ____D C:\Users\owner\AppData\Local\Adobe
2017-06-14 14:30 - 2016-09-04 17:23 - 00000000 ____D C:\Users\owner\AppData\Local\Dropbox
2017-06-14 06:37 - 2016-10-13 07:30 - 00000000 ____D C:\Windows\pss
2017-06-14 05:57 - 2017-02-01 02:17 - 00000000 ____D C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tools Storage
2017-06-14 05:56 - 2016-09-25 07:04 - 00000000 ___RD C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apps Browsers
2017-06-14 05:56 - 2016-09-25 06:45 - 00000000 ____D C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cloud Storage
2017-06-14 05:08 - 2017-03-29 14:45 - 00000000 ____D C:\ProgramData\Passmark
2017-06-14 01:53 - 2016-07-29 10:04 - 00000000 ____D C:\Users\owner\AppData\Roaming\Raptr
2017-06-14 01:52 - 2009-07-14 01:08 - 00032634 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2017-06-14 01:36 - 2016-09-25 06:46 - 00000000 ___RD C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tools Utilities
2017-06-13 23:01 - 2016-09-04 22:48 - 00000000 ___RD C:\Users\owner\Box Sync
2017-06-13 23:01 - 2015-02-14 21:30 - 00000000 ___RD C:\Users\owner\Dropbox
2017-06-13 22:50 - 2016-12-01 08:38 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-06-13 22:44 - 2016-07-29 10:03 - 00000000 ____D C:\ProgramData\Package Cache
2017-06-13 21:38 - 2017-02-01 02:03 - 00000000 ____D C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tools Hardware
2017-06-13 21:36 - 2017-05-15 16:22 - 00000000 ____D C:\Users\owner\AppData\Local\JxBrowser
2017-06-13 21:30 - 2016-07-29 07:49 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2017-06-13 21:14 - 2017-06-05 16:54 - 00000000 ___RD C:\Users\owner\Podcasts
2017-06-13 21:14 - 2016-09-04 17:31 - 00000000 ___RD C:\Users\owner\AppData\Roaming\app documents
2017-06-13 21:12 - 2016-07-28 13:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2017-06-13 21:12 - 2016-07-28 13:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2017-06-13 21:09 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2017-06-13 21:09 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\migwiz
2017-06-13 21:00 - 2016-07-28 14:35 - 00000000 ____D C:\Windows\System32\Tasks\ASUS
2017-06-13 20:57 - 2017-02-01 08:02 - 00000000 ____D C:\ProgramData\CrashPlan
2017-06-13 20:57 - 2017-02-01 08:02 - 00000000 ____D C:\Program Files\CrashPlan
2017-06-13 20:50 - 2016-07-28 13:53 - 00000000 ____D C:\Program Files (x86)\Java
2017-06-13 20:39 - 2016-07-29 07:51 - 00000000 ____D C:\Program Files (x86)\ASUS
2017-06-13 20:37 - 2016-09-13 03:06 - 00000000 ____D C:\Program Files (x86)\RSSOwl
2017-06-13 20:37 - 2015-04-18 01:42 - 00000000 ___HD C:\Users\owner\.rssowl2
2017-06-13 20:17 - 2016-08-02 04:56 - 00000000 ____D C:\Windows\system32\appraiser
2017-06-13 18:54 - 2016-07-29 07:44 - 00000000 ___HD C:\Program Files (x86)\Temp
2017-06-13 14:21 - 2017-04-15 07:08 - 00003178 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2
2017-06-12 17:14 - 2017-04-24 21:36 - 00207760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\SETB9B7.tmp
2017-06-12 17:14 - 2017-04-24 21:36 - 00020360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SETB57B.tmp
2017-06-12 17:14 - 2017-04-24 21:36 - 00020360 _____ (Microsoft Corporation) C:\Windows\system32\SETAA8C.tmp
2017-06-12 17:14 - 2016-07-18 18:21 - 07663888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\SETAFBD.tmp
2017-06-12 17:14 - 2016-07-18 18:21 - 00161344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\SETC11B.tmp
2017-06-12 17:14 - 2016-07-18 18:21 - 00143864 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\SETC0FA.tmp
2017-06-12 17:13 - 2017-04-24 21:36 - 12578016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\SETAF2E.tmp
2017-06-12 17:13 - 2016-07-18 18:21 - 10448520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\SETB341.tmp
2017-06-12 17:13 - 2016-07-18 18:21 - 01654880 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\SETBA39.tmp
2017-06-12 17:13 - 2016-07-18 18:21 - 01347952 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\SETBA6A.tmp
2017-06-12 17:13 - 2016-07-18 16:33 - 00236424 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\SETB9C9.tmp
2017-06-12 17:13 - 2016-07-18 16:33 - 00155528 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\SETC0D9.tmp
2017-06-12 17:12 - 2016-07-18 18:21 - 13254256 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\SETB089.tmp
2017-06-12 17:12 - 2016-07-18 16:33 - 01507720 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\SETA5E8.tmp
2017-06-12 17:11 - 2017-04-24 21:35 - 00915848 _____ (AMD) C:\Windows\system32\SETC30F.tmp
2017-06-12 17:10 - 2016-07-18 17:37 - 32738184 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\SETA880.tmp
2017-06-11 17:33 - 2016-07-28 12:04 - 00000000 ____D C:\Users\owner
==================== Files in the root of some directories =======
2016-09-05 21:03 - 2016-09-05 21:08 - 55736320 _____ () C:\Program Files (x86)\GUT73CA.tmp
2016-09-28 15:47 - 2017-01-11 08:02 - 0000600 _____ () C:\Users\owner\AppData\Local\PUTTY.RND
2017-06-28 10:03 - 2017-06-28 10:03 - 0000218 _____ () C:\Users\owner\AppData\Local\recently-used.xbel
2016-08-06 12:02 - 2016-08-06 15:10 - 0007613 _____ () C:\Users\owner\AppData\Local\Resmon.ResmonCfg
2017-07-03 20:32 - 2017-07-03 20:32 - 0000000 _____ () C:\Users\owner\AppData\Local\{174E6EE2-8EF7-4E5D-8F64-269686E139BA}
2017-07-03 20:32 - 2017-07-03 20:32 - 0000000 _____ () C:\Users\owner\AppData\Local\{32CC8840-D407-4FDF-9077-54AEE6515CAD}
2017-07-03 19:57 - 2017-07-03 19:57 - 0000000 _____ () C:\Users\owner\AppData\Local\{8099176B-DFD6-4218-B7FE-EE26F272B780}
2016-09-14 00:38 - 2016-09-14 00:38 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-07-29 07:47 - 2016-07-29 07:47 - 0000000 _____ () C:\ProgramData\DP45977C.lfl
2017-07-10 19:31 - 2017-07-10 19:31 - 0000060 _____ () C:\ProgramData\SoftwareUpdateTemp.xml
Some files in TEMP:
====================
2017-06-13 21:36 - 2017-06-13 21:36 - 0040448 ____N () C:\Users\owner\AppData\Local\Temp\proxy_vole942868523546535949.dll
2017-06-14 00:20 - 2017-07-03 19:31 - 0192512 _____ () C:\Users\owner\AppData\Local\Temp\sfamcc00001.dll
2015-02-10 13:56 - 2015-02-10 13:56 - 0105984 _____ () C:\Users\owner\AppData\Local\Temp\sfextra.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-07-02 00:27
==================== End of FRST.txt ============================