aswMBR version 1.0.1.2252 Copyright(c) 2014 AVAST Software
Run date: 2016-12-02 22:17:34
-----------------------------
22:17:34.939 OS Version: Windows x64 6.2.9200
22:17:34.939 Number of processors: 2 586 0x4C03
22:17:34.941 ComputerName: DESKTOP-G99A7OK UserName: stock
22:17:39.343 Initialize success
22:17:39.368 VM: initialized successfully
22:17:39.376 VM: Intel CPU BiosDisabled
22:17:49.101 AVAST engine defs: 16120100
22:18:14.122 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000024
22:18:14.126 Disk 0 Vendor: Size: 0MB BusType: 0
22:18:14.230 Disk 0 MBR read successfully
22:18:14.237 Disk 0 MBR scan
22:18:14.281 Disk 0 unknown MBR code
22:18:14.289 Disk 0 MBR hidden
22:18:14.305 Disk 0 Partition 1 00 EE GPT 2097151 MB offset 1
22:18:14.345 Disk 0 scanning C:\WINDOWS\system32\drivers
22:18:34.777 Service scanning
22:19:08.003 Modules scanning
22:19:08.070 Disk 0 trace - called modules:
22:19:08.137
22:19:10.261 AVAST engine scan C:\WINDOWS
22:19:18.647 AVAST engine scan C:\WINDOWS\system32
22:24:52.536 AVAST engine scan C:\WINDOWS\system32\drivers
22:25:47.562 AVAST engine scan C:\Users\stockScan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-11-2016
Ran by stock (administrator) on DESKTOP-G99A7OK (02-12-2016 22:02:47)
Running from C:\Users\stock\Downloads
Loaded Profiles: stock (Available Profiles: stock)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola_updater.exe
(Intel(R) Corporation) C:\Program Files\Intel\BCA\pabeSvc64.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola_svc.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
() C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8790264 2016-03-29] (Realtek Semiconductor)
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [229592 2015-07-10] (Realtek Semiconductor Corporation)
HKLM\...\Run: [hola] => C:\Program Files\Hola\app\hola.exe [2166376 2016-10-18] (Hola Networks Ltd.) <===== ATTENTION
HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795336 2015-10-01] (CyberLink Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9103976 2016-12-01] (AVAST Software)
HKLM-x32\...\Run: [BingDesktop] => C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe [2372800 2014-11-26] (Microsoft Corp.)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1283020984-1161487079-2240348159-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [5915776 2016-03-21] (Safer-Networking Ltd.)
HKU\S-1-5-21-1283020984-1161487079-2240348159-1001\...\RunOnce: [Uninstall C:\Users\stock\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\stock\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"
HKU\S-1-5-21-1283020984-1161487079-2240348159-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\windows\WLXPGSS.SCR [322248 2014-03-31] (Microsoft Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-08-31] (AVAST Software)
Startup: C:\Users\stock\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Product Registration.lnk [2016-12-01]
ShortcutTarget: Logitech . Product Registration.lnk -> C:\Program Files (x86)\Logitech\Ereg\eReg.exe (Leader Technologies/Logitech)
Startup: C:\Users\stock\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - .lnk [2016-10-19]
ShortcutTarget: Monitor Ink Alerts - .lnk -> C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\stock\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 1510 series.lnk [2016-12-02]
ShortcutTarget: Monitor Ink Alerts - HP Deskjet 1510 series.lnk -> C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{6a084aa0-8bc4-4012-b8f2-586389011ba5}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c7f68307-655d-41b7-b9cc-15d172cda5aa}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1283020984-1161487079-2240348159-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/en-au/?ocid=U143DHP&pfr=1
HKU\S-1-5-21-1283020984-1161487079-2240348159-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-21] (HP Inc.)
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-07-15] (Intel Security)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-26] (Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-07-02] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-26] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.)
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-07-15] (Intel Security)
Toolbar: HKU\S-1-5-21-1283020984-1161487079-2240348159-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Edge:
======
Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.9.0_neutral__d55gg7py3s0m0 [2016-12-01]
FireFox:
========
FF ProfilePath: C:\Users\stock\AppData\Roaming\Mozilla\Firefox\Profiles\whawyrn4.default-1478817956913 [2016-12-02]
FF Homepage: Mozilla\Firefox\Profiles\whawyrn4.default-1478817956913 -> hxxps://au.yahoo.com/#
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-12-01]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-12-01]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-09] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-09] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-02] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-02] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-26] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-26] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll [2016-08-01] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
Chrome:
=======
CHR HomePage: Default -> nine.com.au/
CHR Profile: C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default [2016-12-02]
CHR Extension: (Google Docs) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-02]
CHR Extension: (Google Drive) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-02]
CHR Extension: (YouTube) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-02]
CHR Extension: (X-notifier (for Gmail™,Hotmail,Yahoo,AOL...)) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdfjbkbddpfnoplfhceolpopfoepleco [2016-12-02]
CHR Extension: (Adblock Plus) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-12-02]
CHR Extension: (Nine.com.au - Homepage & Bookmarks) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\efeejpljhmnlmccjklepacdpmjgmhieg [2016-12-02]
CHR Extension: (Avast SafePrice) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-12-02]
CHR Extension: (Radioplayer) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcppdfelojakeahklfgkjegnpbgndoch [2016-12-02]
CHR Extension: (Google Docs Offline) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-02]
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2016-12-02]
CHR Extension: (Avast Online Security) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-12-02]
CHR Extension: (Chrome Web Store Payments) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-12-02]
CHR Extension: (Gmail) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-02]
CHR Extension: (Chrome Media Router) - C:\Users\stock\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-02]
CHR HKU\S-1-5-21-1283020984-1161487079-2240348159-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fkkcgfbgohboipdhliafmacjnhjbhmim] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-08-31] (AVAST Software)
S2 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173248 2014-11-26] (Microsoft Corp.)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350064 2016-08-01] (WildTangent)
R2 hola_svc; C:\Program Files\Hola\app\hola_svc.exe [5622376 2016-10-18] (Hola Networks Ltd.) <==== ATTENTION
R2 hola_updater; C:\Program Files\Hola\app\hola_updater.exe [5622376 2016-10-18] (Hola Networks Ltd.) <==== ATTENTION
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [353896 2015-12-02] (Intel Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-20] (Intel Corporation) [File not signed]
R2 IntelBCAsvc; C:\Program Files\Intel\BCA\pabeSvc64.exe [3026584 2016-05-06] (Intel(R) Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-20] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-22] (Intel Corporation)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-15] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [316152 2016-03-29] (Realtek Semiconductor)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [908256 2016-07-22] (McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [15736 2016-07-22] (McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2016-07-22] (McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [37656 2016-08-31] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [37144 2016-08-31] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [108816 2016-08-31] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [103064 2016-08-31] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-08-31] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [969184 2016-10-26] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [513632 2016-10-26] (AVAST Software)
R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [163416 2016-08-31] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-10-26] (AVAST Software)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7279504 2015-12-02] (Intel Corporation)
S3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [543488 2016-02-10] (McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [109480 2016-02-10] (McAfee, Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-06-03] (Realtek )
R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [709376 2016-03-16] (Realtek Semiconductor Corporation)
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [402136 2015-05-28] (Realsil Semiconductor Corporation)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [5144064 2016-07-16] (Realtek Semiconductor Corporation )
U1 staport; C:\Windows\System32\Drivers\staport.sys [44952 2016-10-26] ()
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-12-02] (Intel Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-02 22:02 - 2016-12-02 22:03 - 00021649 _____ C:\Users\stock\Downloads\FRST.txt
2016-12-02 21:59 - 2016-12-02 22:02 - 00000000 ____D C:\FRST
2016-12-02 21:59 - 2016-12-02 21:59 - 02411520 _____ (Farbar) C:\Users\stock\Downloads\FRST64.exe
2016-12-02 21:55 - 2016-12-02 21:55 - 00002319 _____ C:\Users\Public\Desktop\Tweaking.com - Registry Backup.lnk
2016-12-02 21:55 - 2016-12-02 21:55 - 00000207 _____ C:\WINDOWS\tweaking.com-regbackup-DESKTOP-G99A7OK-Windows-10-Home-(64-bit).dat
2016-12-02 21:55 - 2016-12-02 21:55 - 00000000 ____D C:\RegBackup
2016-12-02 21:55 - 2016-12-02 21:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2016-12-02 21:55 - 2016-12-02 21:55 - 00000000 ____D C:\Program Files (x86)\Tweaking.com
2016-12-02 21:54 - 2016-12-02 21:55 - 00017987 _____ C:\WINDOWS\Tweaking.com - Registry Backup Setup Log.txt
2016-12-02 21:52 - 2016-12-02 21:54 - 05766144 _____ (Tweaking.com) C:\Users\stock\Downloads\tweaking.com_registry_backup_setup.exe
2016-12-02 18:32 - 2016-12-02 18:32 - 00000000 ___HD C:\OneDriveTemp
2016-12-02 11:58 - 2016-11-10 20:13 - 00453396 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20161202-115818.backup
2016-12-02 09:17 - 2016-12-02 09:17 - 00002355 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-02 09:17 - 2016-12-02 09:17 - 00002343 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-12-02 09:14 - 2016-12-02 09:14 - 01065376 _____ (Google Inc.) C:\Users\stock\Downloads\ChromeSetup (1).exe
2016-12-01 22:07 - 2016-12-01 22:07 - 00044952 _____ () C:\WINDOWS\system32\Drivers\staport.sys.148059403967102
2016-12-01 22:06 - 2016-10-26 10:15 - 00969184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw932E.tmp
2016-12-01 22:06 - 2016-10-26 10:15 - 00513632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw93A0.tmp
2016-12-01 22:06 - 2016-10-26 10:15 - 00293352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw96AE.tmp
2016-12-01 22:06 - 2016-08-31 07:35 - 00391496 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-12-01 22:06 - 2016-08-31 07:35 - 00163416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw96BF.tmp
2016-12-01 22:06 - 2016-08-31 07:35 - 00108816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw938E.tmp
2016-12-01 22:06 - 2016-08-31 07:35 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw936D.tmp
2016-12-01 22:06 - 2016-08-31 07:35 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw938F.tmp
2016-12-01 22:06 - 2016-08-31 07:35 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw937E.tmp
2016-12-01 22:06 - 2016-08-31 07:34 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw9252.tmp
2016-12-01 22:03 - 2016-12-01 22:03 - 00000000 ____D C:\WINDOWS\Panther
2016-12-01 21:16 - 2016-12-01 21:16 - 00659732 _____ C:\Users\stock\OneDrive\Documents\cc_20161201_211606.reg
2016-12-01 21:14 - 2016-12-01 21:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-11-26 08:58 - 2016-11-26 08:58 - 00000000 ____D C:\$SysReset
2016-11-24 18:18 - 2016-11-24 18:18 - 03278250 _____ C:\Users\stock\Downloads\236902298.pdf
2016-11-16 20:48 - 2016-12-01 21:21 - 00000000 ____D C:\Users\stock\AppData\LocalLow\Mozilla
2016-11-11 08:54 - 2016-11-11 08:55 - 00243520 _____ C:\Users\stock\Downloads\Firefox Setup Stub 49.0.2.exe
2016-11-10 20:13 - 2016-10-31 21:13 - 00453346 ____R C:\WINDOWS\system32\Drivers\etc\hosts.20161110-201325.backup
2016-11-10 19:56 - 2016-11-10 19:56 - 00000308 _____ C:\WINDOWS\wininit.ini
2016-11-10 08:04 - 2016-11-10 08:04 - 00000000 ____D C:\Users\stock\AppData\Local\AVAST Software
2016-11-10 07:55 - 2016-11-02 21:22 - 01570672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-11-10 07:55 - 2016-11-02 21:22 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-11-10 07:55 - 2016-11-02 21:12 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-11-10 07:55 - 2016-11-02 21:09 - 02257104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-11-10 07:55 - 2016-11-02 21:08 - 00602464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-11-10 07:55 - 2016-11-02 21:08 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-11-10 07:55 - 2016-11-02 21:05 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-11-10 07:55 - 2016-11-02 21:05 - 06657176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-11-10 07:55 - 2016-11-02 21:05 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-11-10 07:55 - 2016-11-02 21:05 - 00951904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-11-10 07:55 - 2016-11-02 21:04 - 00596832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2016-11-10 07:55 - 2016-11-02 21:01 - 01425000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-11-10 07:55 - 2016-11-02 21:01 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-11-10 07:55 - 2016-11-02 21:01 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2016-11-10 07:55 - 2016-11-02 20:50 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-11-10 07:55 - 2016-11-02 20:49 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-11-10 07:55 - 2016-11-02 20:48 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2016-11-10 07:55 - 2016-11-02 20:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2016-11-10 07:55 - 2016-11-02 20:47 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-11-10 07:55 - 2016-11-02 20:47 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-11-10 07:55 - 2016-11-02 20:46 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-11-10 07:55 - 2016-11-02 20:45 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-11-10 07:55 - 2016-11-02 20:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll
2016-11-10 07:55 - 2016-11-02 20:44 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-11-10 07:55 - 2016-11-02 20:44 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthExt.dll
2016-11-10 07:55 - 2016-11-02 20:43 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2016-11-10 07:55 - 2016-11-02 20:43 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-11-10 07:55 - 2016-11-02 20:43 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2016-11-10 07:55 - 2016-11-02 20:42 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-11-10 07:55 - 2016-11-02 20:42 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2016-11-10 07:55 - 2016-11-02 20:42 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenterCPL.dll
2016-11-10 07:55 - 2016-11-02 20:42 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-11-10 07:55 - 2016-11-02 20:42 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-11-10 07:55 - 2016-11-02 20:42 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-11-10 07:55 - 2016-11-02 20:41 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-11-10 07:55 - 2016-11-02 20:40 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2016-11-10 07:55 - 2016-11-02 20:40 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-11-10 07:55 - 2016-11-02 20:39 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-11-10 07:55 - 2016-11-02 20:39 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-11-10 07:55 - 2016-11-02 20:39 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2016-11-10 07:55 - 2016-11-02 20:38 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-11-10 07:55 - 2016-11-02 20:37 - 19415040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-11-10 07:55 - 2016-11-02 20:36 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-11-10 07:55 - 2016-11-02 20:35 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2016-11-10 07:55 - 2016-11-02 20:33 - 12349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-11-10 07:55 - 2016-11-02 20:33 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-11-10 07:55 - 2016-11-02 20:31 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-11-10 07:55 - 2016-11-02 20:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-11-10 07:55 - 2016-11-02 20:30 - 12175360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-11-10 07:55 - 2016-11-02 20:29 - 07469056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-11-10 07:55 - 2016-11-02 20:29 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-11-10 07:55 - 2016-11-02 20:29 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-11-10 07:55 - 2016-11-02 20:29 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2016-11-10 07:55 - 2016-11-02 20:28 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-11-10 07:55 - 2016-11-02 20:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-11-10 07:55 - 2016-11-02 20:28 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-11-10 07:55 - 2016-11-02 20:27 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-11-10 07:55 - 2016-11-02 20:27 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-11-10 07:55 - 2016-11-02 20:27 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 02747392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-11-10 07:55 - 2016-11-02 20:26 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-11-10 07:55 - 2016-11-02 20:25 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-11-10 07:55 - 2016-11-02 20:25 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-11-10 07:55 - 2016-11-02 20:25 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-11-10 07:55 - 2016-11-02 20:25 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-11-10 07:55 - 2016-11-02 20:23 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-11-10 07:55 - 2016-11-02 20:23 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-11-10 07:55 - 2016-08-02 14:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-11-10 07:54 - 2016-11-02 22:01 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-11-10 07:54 - 2016-11-02 22:01 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-11-10 07:54 - 2016-11-02 21:10 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-11-10 07:54 - 2016-11-02 21:08 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-11-10 07:54 - 2016-11-02 21:08 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2016-11-10 07:54 - 2016-11-02 21:05 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-11-10 07:54 - 2016-11-02 21:04 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-11-10 07:54 - 2016-11-02 21:01 - 01415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-11-10 07:54 - 2016-11-02 21:01 - 00545936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-11-10 07:54 - 2016-11-02 20:49 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-11-10 07:54 - 2016-11-02 20:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2016-11-10 07:54 - 2016-11-02 20:47 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-11-10 07:54 - 2016-11-02 20:46 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-11-10 07:54 - 2016-11-02 20:45 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-11-10 07:54 - 2016-11-02 20:44 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-11-10 07:54 - 2016-11-02 20:43 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2016-11-10 07:54 - 2016-11-02 20:43 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2016-11-10 07:54 - 2016-11-02 20:42 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-11-10 07:54 - 2016-11-02 20:40 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2016-11-10 07:54 - 2016-11-02 20:36 - 19415552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-11-10 07:54 - 2016-11-02 20:36 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetailsUpdate.dll
2016-11-10 07:54 - 2016-11-02 20:31 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-11-10 07:54 - 2016-11-02 20:30 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2016-11-10 07:54 - 2016-11-02 20:29 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-11-10 07:54 - 2016-11-02 20:28 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-11-10 07:54 - 2016-11-02 20:28 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chartv.dll
2016-11-10 07:54 - 2016-11-02 20:26 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-11-10 07:54 - 2016-11-02 20:23 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2016-11-10 07:54 - 2016-11-02 19:11 - 00788624 _____ C:\WINDOWS\SysWOW64\locale.nls
2016-11-10 07:54 - 2016-11-02 19:11 - 00788624 _____ C:\WINDOWS\system32\locale.nls
2016-11-10 07:52 - 2016-11-02 20:23 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-11-10 07:51 - 2016-11-02 21:20 - 00378720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-11-10 07:51 - 2016-11-02 21:14 - 07816544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-11-10 07:51 - 2016-11-02 21:13 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-11-10 07:51 - 2016-11-02 21:13 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-11-10 07:51 - 2016-11-02 21:13 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-11-10 07:51 - 2016-11-02 21:12 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-11-10 07:51 - 2016-11-02 21:12 - 00376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-11-10 07:51 - 2016-11-02 21:05 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-11-10 07:51 - 2016-11-02 21:04 - 02678056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-11-10 07:51 - 2016-11-02 21:03 - 02750936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-11-10 07:51 - 2016-11-02 21:02 - 00848736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-11-10 07:51 - 2016-11-02 21:02 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-11-10 07:51 - 2016-11-02 21:02 - 00238056 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2016-11-10 07:51 - 2016-11-02 21:02 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-11-10 07:51 - 2016-11-02 21:01 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-11-10 07:51 - 2016-11-02 21:00 - 22223968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-11-10 07:51 - 2016-11-02 21:00 - 08156080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-11-10 07:51 - 2016-11-02 21:00 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-11-10 07:51 - 2016-11-02 21:00 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-11-10 07:51 - 2016-11-02 21:00 - 01061968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-11-10 07:51 - 2016-11-02 20:59 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-11-10 07:51 - 2016-11-02 20:56 - 01609920 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-11-10 07:51 - 2016-11-02 20:56 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-11-10 07:51 - 2016-11-02 20:56 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-11-10 07:51 - 2016-11-02 20:56 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-11-10 07:51 - 2016-11-02 20:56 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2016-11-10 07:51 - 2016-11-02 20:55 - 00048992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys
2016-11-10 07:51 - 2016-11-02 20:38 - 22563840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-11-10 07:51 - 2016-11-02 20:34 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-11-10 07:51 - 2016-11-02 20:34 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-11-10 07:51 - 2016-11-02 20:33 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-11-10 07:51 - 2016-11-02 20:32 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-11-10 07:51 - 2016-11-02 20:32 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2016-11-10 07:51 - 2016-11-02 20:31 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2016-11-10 07:51 - 2016-11-02 20:31 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2016-11-10 07:51 - 2016-11-02 20:31 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2016-11-10 07:51 - 2016-11-02 20:30 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-11-10 07:51 - 2016-11-02 20:29 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-11-10 07:51 - 2016-11-02 20:29 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-11-10 07:51 - 2016-11-02 20:29 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-11-10 07:51 - 2016-11-02 20:29 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-11-10 07:51 - 2016-11-02 20:29 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-11-10 07:51 - 2016-11-02 20:29 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-11-10 07:51 - 2016-11-02 20:29 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-11-10 07:51 - 2016-11-02 20:28 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-11-10 07:51 - 2016-11-02 20:28 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-11-10 07:51 - 2016-11-02 20:27 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-11-10 07:51 - 2016-11-02 20:27 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-11-10 07:51 - 2016-11-02 20:27 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-11-10 07:51 - 2016-11-02 20:27 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2016-11-10 07:51 - 2016-11-02 20:27 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-11-10 07:51 - 2016-11-02 20:27 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-11-10 07:51 - 2016-11-02 20:26 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2016-11-10 07:51 - 2016-11-02 20:26 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-11-10 07:51 - 2016-11-02 20:26 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-11-10 07:51 - 2016-11-02 20:26 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2016-11-10 07:51 - 2016-11-02 20:26 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-11-10 07:51 - 2016-11-02 20:25 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-11-10 07:51 - 2016-11-02 20:25 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-11-10 07:51 - 2016-11-02 20:25 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-11-10 07:51 - 2016-11-02 20:24 - 03778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-11-10 07:51 - 2016-11-02 20:24 - 00940032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2016-11-10 07:51 - 2016-11-02 20:22 - 13441024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-11-10 07:51 - 2016-11-02 20:22 - 13081600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-11-10 07:51 - 2016-11-02 20:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-11-10 07:51 - 2016-11-02 20:22 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2016-11-10 07:51 - 2016-11-02 20:21 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 08127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 08075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2016-11-10 07:51 - 2016-11-02 20:19 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-11-10 07:51 - 2016-11-02 20:18 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-11-10 07:51 - 2016-11-02 20:18 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2016-11-10 07:51 - 2016-11-02 20:18 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2016-11-10 07:51 - 2016-11-02 20:17 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-11-10 07:51 - 2016-11-02 20:17 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-11-10 07:51 - 2016-11-02 20:17 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-11-10 07:51 - 2016-11-02 20:17 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-11-10 07:51 - 2016-11-02 20:17 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 04148736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 03133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 02512384 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2016-11-10 07:51 - 2016-11-02 20:16 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-11-10 07:51 - 2016-11-02 20:15 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-11-10 07:51 - 2016-11-02 20:15 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-11-10 07:51 - 2016-11-02 20:15 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-11-10 07:51 - 2016-11-02 20:15 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-11-10 07:51 - 2016-11-02 20:15 - 01348608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-11-10 07:51 - 2016-11-02 20:15 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-11-10 07:51 - 2016-11-02 20:15 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-11-10 07:51 - 2016-11-02 20:14 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-11-10 07:51 - 2016-11-02 20:13 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-11-10 07:51 - 2016-11-02 20:13 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-11-10 07:51 - 2016-11-02 20:13 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-11-10 07:51 - 2016-11-02 18:20 - 00446896 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-11-10 07:50 - 2016-11-02 21:20 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-11-10 07:50 - 2016-11-02 21:15 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-11-10 07:50 - 2016-11-02 21:15 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-11-10 07:50 - 2016-11-02 21:13 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-11-10 07:50 - 2016-11-02 21:13 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-11-10 07:50 - 2016-11-02 21:03 - 00714592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-11-10 07:50 - 2016-11-02 21:00 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-11-10 07:50 - 2016-11-02 20:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-11-10 07:50 - 2016-11-02 20:31 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-11-10 07:50 - 2016-11-02 20:31 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-11-10 07:50 - 2016-11-02 20:31 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-11-10 07:50 - 2016-11-02 20:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-11-10 07:50 - 2016-11-02 20:27 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-11-10 07:50 - 2016-11-02 20:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-11-10 07:50 - 2016-11-02 20:23 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys
2016-11-10 07:50 - 2016-11-02 20:23 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetailsUpdate.dll
2016-11-10 07:50 - 2016-11-02 20:22 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-11-10 07:50 - 2016-11-02 20:21 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-11-10 07:50 - 2016-11-02 20:20 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-11-10 07:50 - 2016-11-02 20:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2016-11-10 07:50 - 2016-11-02 20:18 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-11-10 07:50 - 2016-11-02 20:17 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-11-10 07:50 - 2016-11-02 20:16 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-11-10 07:50 - 2016-11-02 20:16 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-11-09 23:20 - 2016-12-02 18:35 - 00000000 ____D C:\ProgramData\Skype
2016-11-09 23:17 - 2016-11-09 23:19 - 43760768 _____ (Skype Technologies S.A.) C:\Users\stock\Downloads\SkypeSetupFull.exe
2016-11-09 20:11 - 2016-11-09 20:11 - 00000000 ____D C:\Users\stock\AppData\Local\Logitech® Webcam Software
2016-11-09 20:08 - 2016-11-09 20:08 - 00000000 ____D C:\ProgramData\LogiShrd
2016-11-09 20:07 - 2016-11-09 20:07 - 00000000 ____D C:\Users\stock\AppData\Roaming\Leadertech
2016-11-09 20:06 - 2016-11-09 20:06 - 00001720 _____ C:\Users\Public\Desktop\Logitech Webcam Software .lnk
2016-11-09 20:03 - 2016-12-01 21:59 - 00000000 ____D C:\Program Files\Common Files\logishrd
2016-11-09 20:03 - 2016-11-09 20:05 - 74520472 _____ (Logitech, Inc.) C:\Users\stock\Downloads\lws280.exe
2016-11-08 20:24 - 2003-03-18 22:20 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71.dll
2016-11-08 20:24 - 2003-03-18 21:44 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ENU.DLL
2016-11-08 20:24 - 2003-03-18 21:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll
2016-11-08 20:24 - 2003-02-21 05:42 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll
2016-11-08 20:24 - 1999-04-23 22:22 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC413aa.rra
2016-11-08 20:17 - 1999-04-23 22:22 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC4b6d1.rra
2016-11-08 20:15 - 2016-11-08 20:15 - 00000268 _____ C:\WINDOWS\_delis32.ini
2016-11-08 20:15 - 1998-10-29 17:45 - 00306688 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe
2016-11-08 20:08 - 2016-11-08 20:08 - 00000000 ____D C:\Users\stock\AppData\Local\Logitech-LS
2016-11-08 10:32 - 2016-12-01 21:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2016-11-08 10:32 - 2003-05-02 14:14 - 00466944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capicom.dll
2016-11-08 10:31 - 2016-11-09 22:37 - 00000000 ____D C:\Program Files (x86)\Logitech
2016-11-08 10:31 - 2003-03-18 22:12 - 01047552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71u.dll
2016-11-08 10:31 - 2003-03-18 21:44 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71DEU.DLL
2016-11-08 10:31 - 2003-03-18 21:44 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ITA.DLL
2016-11-08 10:31 - 2003-03-18 21:44 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ESP.DLL
2016-11-08 10:31 - 2003-03-18 21:44 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71KOR.DLL
2016-11-08 10:31 - 2003-03-18 21:44 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71JPN.DLL
2016-11-08 10:31 - 2003-03-18 21:44 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHT.DLL
2016-11-08 10:31 - 2003-03-18 21:44 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHS.DLL
2016-11-08 10:31 - 2003-03-18 20:05 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll
2016-11-08 10:31 - 1999-04-23 22:22 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC41b03.rra
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-02 19:54 - 2016-08-08 17:26 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-12-02 18:59 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-12-02 18:39 - 2016-07-16 21:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-12-02 18:39 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-12-02 18:35 - 2016-08-23 08:50 - 00000000 ____D C:\Users\stock\AppData\Roaming\Skype
2016-12-02 18:32 - 2016-05-21 15:41 - 00000000 ___RD C:\Users\stock\OneDrive
2016-12-02 18:31 - 2016-08-08 17:28 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-02 18:31 - 2016-05-21 15:36 - 00000000 __SHD C:\Users\stock\IntelGraphicsProfiles
2016-12-02 12:10 - 2016-08-08 17:33 - 00000000 ____D C:\Users\stock
2016-12-02 10:46 - 2016-05-21 15:53 - 00000000 ____D C:\Users\stock\AppData\Local\Google
2016-12-02 10:43 - 2016-08-08 17:51 - 00003982 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-12-02 10:43 - 2016-05-27 10:13 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-12-02 10:43 - 2016-05-22 08:49 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-12-02 10:42 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-12-02 10:42 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-12-02 10:38 - 2016-05-24 07:46 - 00000000 ____D C:\Users\stock\AppData\Local\ElevatedDiagnostics
2016-12-02 09:48 - 2016-05-21 15:36 - 00000000 ____D C:\Users\stock\AppData\Local\Packages
2016-12-02 09:16 - 2016-05-21 15:53 - 00000000 ____D C:\Program Files (x86)\Google
2016-12-02 09:01 - 2016-05-29 09:11 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-12-02 08:35 - 2016-05-24 21:13 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2016-12-02 08:00 - 2016-07-16 21:45 - 00000000 ____D C:\WINDOWS\INF
2016-12-01 22:22 - 2016-08-08 17:51 - 00004020 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1463815370
2016-12-01 22:21 - 2016-05-21 17:22 - 00001095 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-12-01 22:09 - 2016-08-08 17:32 - 01926810 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-01 22:08 - 2016-05-21 17:15 - 00001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2016-12-01 22:08 - 2016-05-21 17:15 - 00001974 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-12-01 22:07 - 2016-08-08 17:51 - 00004008 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA
2016-12-01 22:07 - 2016-08-08 17:51 - 00004004 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-12-01 22:07 - 2016-08-08 17:51 - 00003776 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore
2016-12-01 22:07 - 2016-01-19 14:05 - 00000948 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2016-12-01 22:07 - 2016-01-19 14:05 - 00000944 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2016-12-01 22:03 - 2016-08-08 17:51 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-12-01 22:01 - 2016-07-16 21:47 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-12-01 22:01 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-12-01 22:01 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-12-01 22:01 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-12-01 22:01 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-12-01 22:01 - 2016-01-19 14:01 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-12-01 22:00 - 2016-08-08 17:51 - 00000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard
2016-12-01 22:00 - 2016-08-01 18:26 - 00000000 ____D C:\Users\stock\AppData\Roaming\WildTangent
2016-12-01 22:00 - 2016-07-16 21:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-12-01 22:00 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\rescache
2016-12-01 22:00 - 2016-07-16 16:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-12-01 21:59 - 2016-07-30 18:19 - 00000000 ____D C:\Program Files\TrueKey
2016-12-01 21:59 - 2016-05-24 21:13 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2016-12-01 21:59 - 2016-05-23 10:00 - 00000000 ____D C:\Program Files\Google
2016-12-01 21:59 - 2016-01-19 14:01 - 00000000 ____D C:\Program Files (x86)\WildGames
2016-12-01 21:59 - 2016-01-19 14:00 - 00000000 ____D C:\ProgramData\WildTangent
2016-12-01 21:59 - 2016-01-19 14:00 - 00000000 ____D C:\Program Files (x86)\WildTangent Games
2016-12-01 21:46 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\registration
2016-12-01 21:38 - 2016-07-30 18:31 - 00000000 ____D C:\Users\stock\AppData\Local\tkdata
2016-12-01 21:33 - 2016-05-21 16:15 - 00000000 ____D C:\Users\stock\AppData\Local\Mozilla
2016-12-01 21:18 - 2016-05-25 22:24 - 00000000 ____D C:\Users\stock\Tracing
2016-11-27 08:00 - 2016-05-21 15:38 - 00000000 ____D C:\Users\stock\AppData\Local\Publishers
2016-11-24 21:11 - 2016-05-22 08:48 - 00000000 ____D C:\Users\stock\AppData\Local\Adobe
2016-11-14 08:56 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-11-11 08:15 - 2015-11-04 12:11 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-11-11 08:08 - 2016-08-08 17:26 - 00214896 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-11-11 08:08 - 2016-06-01 09:34 - 00000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForstock.job
2016-11-10 21:45 - 2016-07-16 16:04 - 12058624 _____ C:\WINDOWS\system32\config\BBI
2016-11-10 21:43 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-11-10 21:43 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-11-10 21:43 - 2016-07-16 21:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-11-10 20:56 - 2016-07-16 21:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-11-10 20:43 - 2016-05-21 16:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-11-10 20:34 - 2016-05-21 16:21 - 141011376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-11-10 19:27 - 2016-08-08 17:51 - 00003256 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForstock
2016-11-10 07:49 - 2016-07-16 16:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-11-09 22:55 - 2016-08-08 17:51 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-11-08 11:13 - 2016-05-21 15:36 - 00000000 ____D C:\Users\stock\AppData\Local\VirtualStore
2016-11-08 10:31 - 2016-01-19 13:39 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-11-06 20:21 - 2016-07-30 18:18 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
==================== Files in the root of some directories =======
2016-05-21 15:36 - 2016-05-28 20:28 - 0037849 _____ () C:\Users\stock\AppData\Local\BTServer.log
2016-07-31 17:44 - 2016-07-31 17:44 - 0000057 _____ () C:\ProgramData\Ament.ini
Files to move or delete:
====================
C:\Program Files\Hola\app\hola.exe
Some files in TEMP:
====================
C:\Users\stock\AppData\Local\Temp\{BE5A9AF0-2DD0-4789-9FB9-D59C6AC46193}-55.0.2883.75_chrome_installer.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-12-02 10:38
==================== End of FRST.txt ============================
22:30:00.307 Disk 0 MBR has been saved successfully to "C:\Users\stock\Downloads\MBR.dat"
22:30:00.329 The log file has been saved successfully to "C:\Users\stock\Downloads\aswMBR.txt"