This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

yahoo chrome extension that can't be deleted prompted me to search

5 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-10-2017
Ran by [removed] (administrator) on DESKTOP-8C06IEM (12-10-2017 17:52:24)
Running from K:\Libraries\Downloads
[removed]
Platform: Windows 10 Enterprise 2016 LTSB Version 1607 170917-1700 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(COMODO) C:\Program Files (x86)\Comodo\Internet Security Essentials\isesrv.exe
() C:\Program Files\Everything\Everything.exe
(Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
() C:\Windows\runSW.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Realtek) C:\Windows\SwUSB.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\Everything\Everything.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(ShareX Team) C:\Program Files\ShareX\ShareX.exe
(KORG Inc.) C:\Program Files (x86)\KORG\KORG USB-MIDI Driver\EsHelper2.exe
() C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(COMODO) C:\Program Files (x86)\Comodo\Internet Security Essentials\vkise.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(EJIE Technology) C:\Program Files (x86)\Clover\clover.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(AVAST Software) K:\Libraries\Downloads\aswMBR.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(AVAST Software) K:\Libraries\Downloads\aswMBR.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Travis\AppData\Local\Google\Chrome\Application\chrome.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\…\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2197608 2017-06-07] ()
HKLM\…\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-10] (Realtek Semiconductor)
HKLM\…\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1489088 2017-07-11] (COMODO)
HKLM\…\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
HKLM-x32\…\Run: [KORG USB-MIDI Driver] => C:\Program Files (x86)\KORG\KORG USB-MIDI Driver\EsHelper2.exe [394144 2017-01-16] (KORG Inc.)
HKLM-x32\…\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3481912 2017-10-03] (Dropbox, Inc.)
HKLM-x32\…\Run: [] => [X]
HKLM-x32\…\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-04-13] (Razer Inc.)
HKLM-x32\…\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [345000 2017-06-06] (QIHU 360 SOFTWARE CO. LIMITED)
HKLM-x32\…\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-22] (Oracle Corporation)
HKLM-x32\…\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe [3632848 2017-07-05] (COMODO)
HKLM-x32\…\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION)
HKLM-x32\…\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare)
HKU\S-1-5-19\…\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
HKU\S-1-5-20\…\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [Google Update] => C:\Users\Travis\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe [601168 2017-05-08] (Google Inc.)
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [25622168 2017-08-31] (Google)
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [AMDDVR] => C:\Program Files\AMD\CNext\CNext\amddvr.exe [1433480 2017-07-20] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [f.lux] => C:\Users\Travis\AppData\Local\FluxSoftware\Flux\flux.exe [1661432 2017-08-05] (f.lux Software LLC)
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [HiAlgoBOOST] => C:\Program Files (x86)\HiAlgo\Plugins\BOOST\HiAlgoBOOST.exe [2118808 2015-09-16] (HiAlgo Inc.)
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [HiAlgoSWITCH] => C:\Program Files (x86)\HiAlgo\Plugins\SWITCH\HiAlgoSWITCH.exe [2113536 2015-02-16] (HiAlgo Inc.)
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\…\Run: [HiAlgoCHILL] => C:\Program Files (x86)\HiAlgo\Plugins\CHILL\HiAlgoCHILL.exe [2124288 2015-02-24] (HiAlgo Inc.)
ShellExecuteHooks: QTTabBarLib.ExplorerProcessCaptor - {D2BF470E-ED1C-487F-AAAA-2BD8835EB6CE} - C:\Windows\System32\mscoree.dll [387072 2016-07-16] (Microsoft Corporation)
ShellExecuteHooks-x32: QTTabBarLib.ExplorerProcessCaptor - {D2BF470E-ED1C-487F-AAAA-2BD8835EB6CE} - C:\Windows\System32\mscoree.dll [387072 2016-07-16] (Microsoft Corporation)
Startup: C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2017-09-04]
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe (Rainmeter)
Startup: C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2017-09-06]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation)
Startup: C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2017-06-18]
ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team)
GroupPolicy: Restriction <==== ATTENTION
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.1.1.1
Tcpip\..\Interfaces\{50b2b331-a275-4115-9e5e-f9c54dac729f}: [DhcpNameServer] 10.1.1.1
Tcpip\..\Interfaces\{8d134459-2c10-4508-bbb7-7374d3323408}: [DhcpNameServer] 198.18.0.1 198.18.0.2
Tcpip\..\Interfaces\{b73c357a-53be-4b28-bd0f-73df2f56b8c6}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{b73c357a-53be-4b28-bd0f-73df2f56b8c6}: [DhcpNameServer] 10.1.1.1
 
Internet Explorer:
==================
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-au/?ocid=iehp
SearchScopes: HKU\S-1-5-21-3607689352-1145326940-3145571553-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.yahoo.com/yhs/search?hspart=comodo&hsimp=yhs-com_chrome&type=19_6106005_58.0.3029.115_u_ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3607689352-1145326940-3145571553-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.yahoo.com/yhs/search?hspart=comodo&hsimp=yhs-com_chrome&type=19_6106005_58.0.3029.115_u_ds&p={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2016-06-14] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2017-08-04] (Oracle Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-15] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-08-04] (Oracle Corporation)
BHO: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper64.dll [2014-01-23] (EJIE Technology)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\ssv.dll [2017-08-04] (Oracle Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-15] (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-08-04] (Oracle Corporation)
Toolbar: HKLM - No Name - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} -  No File
Toolbar: HKLM - QT Base Toolbar - {d2bf470e-ed1c-487f-a300-2bd8835eb6ce} - C:\Windows\system32\mscoree.dll [2016-07-16] (Microsoft Corporation)
Toolbar: HKLM-x32 - No Name - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} -  No File
Toolbar: HKLM-x32 - QT Base Toolbar - {d2bf470e-ed1c-487f-a300-2bd8835eb6ce} - C:\Windows\system32\mscoree.dll [2016-07-16] (Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-06-14] (Microsoft Corporation)
 
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-08-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-08-04] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-10] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1228198.dll [2017-02-27] (Adobe Systems, Inc.)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-04-07] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-04-07] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-04-07] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-04-07] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-08-04] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-08-04] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-06-14] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-10] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-17] (Google Inc.)
FF Plugin HKU\S-1-5-21-3607689352-1145326940-3145571553-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Travis\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-08] (Google Inc.)
FF Plugin HKU\S-1-5-21-3607689352-1145326940-3145571553-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Travis\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-08] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-06-14] (Microsoft Corporation)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://google.com/
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/yhs/search?p={searchTerms}&hspart=comodo&hsimp=yhs-ccs&type=default
CHR DefaultSearchKeyword: Default -> Yahoo
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR Profile: C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default [2017-10-12]
CHR Extension: (Google Slides) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-05-08]
CHR Extension: (Google Docs) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-05-08]
CHR Extension: (Google Drive) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-08]
CHR Extension: (Dark Skin for Youtube™) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfeknfgchonpnofdjokchhdhdnddhglm [2017-09-13]
CHR Extension: (YouTube) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-08]
CHR Extension: (uBlock Origin) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2017-09-13]
CHR Extension: (Adblock for Youtube™) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2017-06-24]
CHR Extension: (Google Sheets) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-05-08]
CHR Extension: (Google Docs Offline) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-08]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2017-10-12]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2017-10-12]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2017-05-17]
CHR Extension: (Morpheon Dark) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2017-10-12]
CHR Extension: (Reddit Comment Collapser) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\njmimaecgocggclbecipdimilidimlpl [2017-07-24]
CHR Extension: (ShareX) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkoigbdolhchiicbonbihbphgamnaoc [2017-06-18]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-23]
CHR Extension: (Gmail) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-08]
CHR Extension: (Chrome Media Router) - C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-12]
CHR HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [hcjjaajflhellmcfcecojihhmdbjmmlm] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\SOFTWARE\Google\Chrome\Extensions\…\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [glcimepnljoholdmjchkloafkggfoijh] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1533448 2017-09-13] ()
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [10501104 2017-07-11] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2876096 2017-07-11] (COMODO)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-05-14] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-05-14] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51016 2017-10-03] (Dropbox, Inc.)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2273432 2017-09-27] (Comodo)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation)
R2 Everything; C:\Program Files\Everything\Everything.exe [2197608 2017-06-07] ()
R2 FoxitReaderService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659592 2017-04-14] (Foxit Software Inc.)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-27] (Intel(R) Corporation)
R2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [133840 2017-07-05] (COMODO)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440 2016-10-06] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120032 2017-09-25] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3000168 2017-09-25] (Electronic Arts)
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [928168 2017-06-06] (QIHU 360 SOFTWARE CO. LIMITED)
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [401024 2017-05-02] (Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [178312 2017-05-02] (Razer Inc.)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] ()
R2 RunSwUSB; C:\Windows\runSW.exe [44760 2014-12-12] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2017-08-08] (Microsoft Corporation)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (DEVGURU Co., LTD.)
R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [294168 2017-10-04] (Reason Software Company Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-08-08] (Microsoft Corporation)
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [183800 2017-06-06] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [95232 2017-06-06] (360.cn)
R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [95232 2017-06-06] (360.cn)
R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [339456 2017-06-06] (360.cn)
S3 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [57848 2017-06-06] (360.cn)
R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [432120 2017-06-06] (360.cn)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0316467.inf_amd64_3d8fbd78102e53d7\atikmdag.sys [38439848 2017-07-27] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0316467.inf_amd64_3d8fbd78102e53d7\atikmpag.sys [549800 2017-07-27] (Advanced Micro Devices, Inc.)
S3 ampa; C:\Windows\system32\ampa.sys [38320 2016-12-26] ()
S3 ampa; C:\Windows\SysWOW64\ampa.sys [35760 2016-12-26] ()
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [110088 2017-04-26] (Advanced Micro Devices)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [199160 2017-06-06] (360.cn)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8510640 2015-10-10] (Broadcom Corporation)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [40936 2017-06-02] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [831992 2017-06-02] (COMODO)
R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [50776 2017-06-02] (COMODO)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77440 2017-10-04] ()
R3 FocusriteUSB; C:\Windows\System32\drivers\FocusriteUSB.sys [96456 2016-11-30] (Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBAudio; C:\Windows\system32\drivers\FocusriteUSBAudio.sys [54472 2016-11-30] (Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBSwRoot; C:\Windows\System32\drivers\FocusriteUSBSwRoot.sys [102088 2016-11-30] (Focusrite Audio Engineering Ltd.)
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [132880 2017-06-07] (COMODO)
R1 isedrv; C:\Windows\system32\drivers\isedrv.sys [62208 2017-03-30] (COMODO)
S3 KORGUMDS; C:\Windows\System32\Drivers\KORGUM64.SYS [43536 2017-01-16] (KORG INC.)
S3 Logi_Headset_DFU; C:\Windows\System32\Drivers\lhusbdfuamd64.sys [44136 2016-01-20] (CSR plc.)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [192952 2017-10-12] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\DRIVERS\farflt.sys [110016 2017-10-12] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [45504 2017-10-12] (Malwarebytes)
R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [252232 2017-10-12] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [94144 2017-10-12] (Malwarebytes)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 ptun0901; C:\Windows\System32\drivers\ptun0901.sys [27136 2014-08-09] (The OpenVPN Project)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [5195776 2016-07-16] (Realtek Semiconductor Corporation )
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [51736 2016-06-23] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.)
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 WirelessKeyboardFilter; C:\Windows\System32\drivers\WirelessKeyboardFilter.sys [49896 2016-07-22] (Microsoft Corporation)
U3 aswMBR; C:\Users\Travis\AppData\Local\Temp\aswMBR.sys [62728 2017-10-12] () [File not signed] <==== ATTENTION
U3 aswVmm; C:\Users\Travis\AppData\Local\Temp\aswVmm.sys [224896 2017-10-12] () <==== ATTENTION
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-10-12 17:52 - 2017-10-12 17:52 - 000000000 ____D C:\FRST
2017-10-12 17:40 - 2017-10-12 17:40 - 000498412 _____ C:\Windows\Minidump\101217-6500-01.dmp
2017-10-12 17:40 - 2017-10-12 17:40 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-10-12 17:39 - 2017-10-12 17:39 - 000525852 _____ C:\Windows\Minidump\101217-7656-01.dmp
2017-10-12 17:16 - 2017-10-12 17:21 - 000000000 ____D C:\ProgramData\HitmanPro
2017-10-12 17:12 - 2017-10-12 17:18 - 000000000 ____D C:\AdwCleaner
2017-10-12 17:10 - 2017-10-12 17:40 - 000094144 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-10-12 17:10 - 2017-10-12 17:40 - 000045504 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-10-12 17:10 - 2017-10-12 17:10 - 000252232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-10-12 17:10 - 2017-10-12 17:10 - 000192952 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2017-10-12 17:10 - 2017-10-12 17:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-10-12 17:10 - 2017-10-12 17:10 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-10-12 17:10 - 2017-10-12 17:10 - 000000000 ____D C:\Program Files\Malwarebytes
2017-10-12 17:10 - 2017-10-04 13:15 - 000077440 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-10-12 16:49 - 2017-10-12 16:49 - 000000000 ____D C:\ProgramData\GridinSoft
2017-10-11 05:12 - 2017-10-11 05:12 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2017-10-11 05:11 - 2017-09-18 13:57 - 001651552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2017-10-11 05:11 - 2017-09-18 13:57 - 000218976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinesam.dll
2017-10-11 05:11 - 2017-09-18 13:52 - 001470816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2017-10-11 05:11 - 2017-09-18 13:48 - 002414432 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2017-10-11 05:11 - 2017-09-18 13:47 - 001564512 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-10-11 05:11 - 2017-09-18 13:47 - 000245600 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2017-10-11 05:11 - 2017-09-18 13:47 - 000136032 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 001408352 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 001054048 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000992096 _____ (Microsoft Corporation) C:\Windows\system32\AppVManifest.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000813408 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000779616 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000766304 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000699232 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000513376 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000412512 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2017-10-11 05:11 - 2017-09-18 13:44 - 000076128 _____ (Microsoft Corporation) C:\Windows\system32\SyncAppvPublishingServer.exe
2017-10-11 05:11 - 2017-09-18 13:43 - 002170720 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2017-10-11 05:11 - 2017-09-18 13:43 - 001670496 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2017-10-11 05:11 - 2017-09-18 13:43 - 000704352 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2017-10-11 05:11 - 2017-09-18 13:43 - 000567136 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2017-10-11 05:11 - 2017-09-18 13:43 - 000241504 _____ (Microsoft Corporation) C:\Windows\system32\AppVShNotify.exe
2017-10-11 05:11 - 2017-09-18 13:43 - 000202592 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamingUX.dll
2017-10-11 05:11 - 2017-09-18 13:39 - 007780192 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-10-11 05:11 - 2017-09-18 13:39 - 002213760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-10-11 05:11 - 2017-09-18 13:39 - 000646688 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2017-10-11 05:11 - 2017-09-18 13:39 - 000133984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-10-11 05:11 - 2017-09-18 13:38 - 002253664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-10-11 05:11 - 2017-09-18 13:38 - 000998920 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2017-10-11 05:11 - 2017-09-18 13:35 - 001177688 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-10-11 05:11 - 2017-09-18 13:35 - 000497424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-10-11 05:11 - 2017-09-18 13:35 - 000172536 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-10-11 05:11 - 2017-09-18 13:35 - 000168800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-10-11 05:11 - 2017-09-18 13:34 - 001706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-10-11 05:11 - 2017-09-18 13:34 - 000918304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2017-10-11 05:11 - 2017-09-18 13:34 - 000404832 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-10-11 05:11 - 2017-09-18 13:33 - 000791272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-10-11 05:11 - 2017-09-18 13:32 - 007213464 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2017-10-11 05:11 - 2017-09-18 13:32 - 001860288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2017-10-11 05:11 - 2017-09-18 13:31 - 002446704 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2017-10-11 05:11 - 2017-09-18 13:31 - 000624048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-10-11 05:11 - 2017-09-18 13:31 - 000431456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2017-10-11 05:11 - 2017-09-18 13:31 - 000223072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-10-11 05:11 - 2017-09-18 13:30 - 001072248 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 022220864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 008173672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 004260072 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 001983408 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 001702392 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 000341344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-10-11 05:11 - 2017-09-18 13:29 - 000241504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2017-10-11 05:11 - 2017-09-18 13:28 - 001600632 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-10-11 05:11 - 2017-09-18 13:28 - 000206688 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2017-10-11 05:11 - 2017-09-18 13:27 - 001566552 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2017-10-11 05:11 - 2017-09-18 13:27 - 001460696 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2017-10-11 05:11 - 2017-09-18 13:27 - 001415712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-10-11 05:11 - 2017-09-18 13:26 - 000057408 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-10-11 05:11 - 2017-09-18 13:25 - 005722320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2017-10-11 05:11 - 2017-09-18 13:25 - 001431240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-10-11 05:11 - 2017-09-18 13:24 - 001980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 020967840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 006672680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 004023560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 001845512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 001360464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 001277856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2017-10-11 05:11 - 2017-09-18 13:22 - 000981888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2017-10-11 05:11 - 2017-09-18 13:21 - 000178016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-10-11 05:11 - 2017-09-18 13:19 - 001435896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2017-10-11 05:11 - 2017-09-18 13:19 - 001412128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2017-10-11 05:11 - 2017-09-18 13:19 - 001260784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-10-11 05:11 - 2017-09-18 13:18 - 000117792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-10-11 05:11 - 2017-09-18 13:06 - 022570496 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2017-10-11 05:11 - 2017-09-18 13:05 - 000372736 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2017-10-11 05:11 - 2017-09-18 13:04 - 000095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2017-10-11 05:11 - 2017-09-18 13:03 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2017-10-11 05:11 - 2017-09-18 13:03 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2017-10-11 05:11 - 2017-09-18 13:03 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\TransliterationRanker.dll
2017-10-11 05:11 - 2017-09-18 13:02 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2017-10-11 05:11 - 2017-09-18 13:02 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\jpninputrouter.dll
2017-10-11 05:11 - 2017-09-18 13:02 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\EmojiDS.dll
2017-10-11 05:11 - 2017-09-18 13:02 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
2017-10-11 05:11 - 2017-09-18 13:02 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-10-11 05:11 - 2017-09-18 13:01 - 006288384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2017-10-11 05:11 - 2017-09-18 13:01 - 000519168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2017-10-11 05:11 - 2017-09-18 13:01 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2017-10-11 05:11 - 2017-09-18 13:01 - 000156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2017-10-11 05:11 - 2017-09-18 13:01 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-10-11 05:11 - 2017-09-18 13:01 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\RuleBasedDS.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\jpnranker.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000257536 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000174592 _____ C:\Windows\system32\IHDS.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\VocabRoamingHandler.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000117760 _____ (Microsoft Corporation) C:\Windows\system32\StaticDictDS.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000101888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2017-10-11 05:11 - 2017-09-18 13:00 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\chxranker.dll
2017-10-11 05:11 - 2017-09-18 12:59 - 009129984 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-10-11 05:11 - 2017-09-18 12:59 - 000414720 _____ (Microsoft Corporation) C:\Windows\system32\ChsStrokeDS.dll
2017-10-11 05:11 - 2017-09-18 12:59 - 000411136 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2017-10-11 05:11 - 2017-09-18 12:59 - 000231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2017-10-11 05:11 - 2017-09-18 12:59 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2017-10-11 05:11 - 2017-09-18 12:59 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000536064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2017-10-11 05:11 - 2017-09-18 12:58 - 000414720 _____ (Microsoft Corporation) C:\Windows\system32\ChtHkStrokeDS.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000335872 _____ (Microsoft Corporation) C:\Windows\system32\ChsPinyinRanker.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000290816 _____ (Microsoft Corporation) C:\Windows\system32\MtfDecoder.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2017-10-11 05:11 - 2017-09-18 12:58 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 004615168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000719872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2017-10-11 05:11 - 2017-09-18 12:57 - 000641024 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000626176 _____ (Microsoft Corporation) C:\Windows\system32\PCPTpm12.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\ChxAPDS.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000480768 _____ (Microsoft Corporation) C:\Windows\system32\msimeChsPinyinMainDS.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\ChxHAPDS.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000463360 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000422400 _____ (Microsoft Corporation) C:\Windows\system32\ChtCangjieDS.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000410624 _____ (Microsoft Corporation) C:\Windows\system32\ChtQuickDS.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000349184 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-10-11 05:11 - 2017-09-18 12:57 - 000336384 _____ (Microsoft Corporation) C:\Windows\system32\jpndecoder.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000329728 _____ (Microsoft Corporation) C:\Windows\system32\chxinputrouter.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000326656 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000310784 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000295424 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2017-10-11 05:11 - 2017-09-18 12:57 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 002716672 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000805888 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000686592 _____ (Microsoft Corporation) C:\Windows\system32\dsregcmd.exe
2017-10-11 05:11 - 2017-09-18 12:56 - 000562176 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPTpm12.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000481792 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000396800 _____ (Microsoft Corporation) C:\Windows\system32\tpmvsc.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000384000 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000283136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-10-11 05:11 - 2017-09-18 12:56 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2017-10-11 05:11 - 2017-09-18 12:56 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2017-10-11 05:11 - 2017-09-18 12:55 - 002333184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2017-10-11 05:11 - 2017-09-18 12:55 - 001914368 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2017-10-11 05:11 - 2017-09-18 12:55 - 000461824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2017-10-11 05:11 - 2017-09-18 12:55 - 000425984 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2017-10-11 05:11 - 2017-09-18 12:55 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2017-10-11 05:11 - 2017-09-18 12:55 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\RjvMDMConfig.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 013107712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 007626240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 002103808 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 001589760 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 001584640 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 000819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 000755200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-10-11 05:11 - 2017-09-18 12:54 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-10-11 05:11 - 2017-09-18 12:54 - 000409600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-10-11 05:11 - 2017-09-18 12:53 - 000857600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2017-10-11 05:11 - 2017-09-18 12:53 - 000816640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2017-10-11 05:11 - 2017-09-18 12:53 - 000636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2017-10-11 05:11 - 2017-09-18 12:53 - 000442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2017-10-11 05:11 - 2017-09-18 12:53 - 000297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2017-10-11 05:11 - 2017-09-18 12:53 - 000287744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2017-10-11 05:11 - 2017-09-18 12:53 - 000238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2017-10-11 05:11 - 2017-09-18 12:52 - 004749824 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2017-10-11 05:11 - 2017-09-18 12:52 - 003291648 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2017-10-11 05:11 - 2017-09-18 12:52 - 001323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2017-10-11 05:11 - 2017-09-18 12:52 - 001137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2017-10-11 05:11 - 2017-09-18 12:52 - 000883712 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-10-11 05:11 - 2017-09-18 12:52 - 000352256 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2017-10-11 05:11 - 2017-09-18 12:52 - 000198144 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-10-11 05:11 - 2017-09-18 12:51 - 018364928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2017-10-11 05:11 - 2017-09-18 12:50 - 023677952 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-10-11 05:11 - 2017-09-18 12:50 - 019414016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-10-11 05:11 - 2017-09-18 12:50 - 002641920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-10-11 05:11 - 2017-09-18 12:50 - 000937984 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2017-10-11 05:11 - 2017-09-18 12:50 - 000343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2017-10-11 05:11 - 2017-09-18 12:50 - 000284160 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2017-10-11 05:11 - 2017-09-18 12:49 - 002750976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2017-10-11 05:11 - 2017-09-18 12:49 - 001060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2017-10-11 05:11 - 2017-09-18 12:49 - 000549376 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2017-10-11 05:11 - 2017-09-18 12:49 - 000519168 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2017-10-11 05:11 - 2017-09-18 12:49 - 000303616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2017-10-11 05:11 - 2017-09-18 12:49 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 012204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 008114688 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 008077312 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 007470592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 001145344 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 001010176 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 000956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 000932864 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-10-11 05:11 - 2017-09-18 12:48 - 000330752 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2017-10-11 05:11 - 2017-09-18 12:47 - 003401216 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-10-11 05:11 - 2017-09-18 12:47 - 002279424 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2017-10-11 05:11 - 2017-09-18 12:47 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-10-11 05:11 - 2017-09-18 12:47 - 000779776 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2017-10-11 05:11 - 2017-09-18 12:47 - 000641024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2017-10-11 05:11 - 2017-09-18 12:46 - 004743168 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-10-11 05:11 - 2017-09-18 12:46 - 004596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2017-10-11 05:11 - 2017-09-18 12:46 - 003520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2017-10-11 05:11 - 2017-09-18 12:46 - 001484800 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 006065152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 003202048 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 002919936 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 002800128 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 002538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 002370048 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 001692160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 001282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 001231360 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2017-10-11 05:11 - 2017-09-18 12:45 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 006474752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2017-10-11 05:11 - 2017-09-18 12:44 - 003663360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 003615744 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2017-10-11 05:11 - 2017-09-18 12:44 - 002997760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-10-11 05:11 - 2017-09-18 12:44 - 002897408 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 002740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 002682880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 002649600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 002483712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 002321408 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 001988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 001599488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 001556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 001518080 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2017-10-11 05:11 - 2017-09-18 12:44 - 001328640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 001170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 001040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000983552 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000913920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000908800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000903680 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-10-11 05:11 - 2017-09-18 12:44 - 000827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000799744 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000657408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2017-10-11 05:11 - 2017-09-18 12:44 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 001726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 001121280 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 001013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000886272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2017-10-11 05:11 - 2017-09-18 12:43 - 000751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2017-10-11 05:11 - 2017-09-18 12:43 - 000164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll
2017-10-11 05:11 - 2017-09-18 12:42 - 000998912 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2017-10-11 05:11 - 2017-09-18 12:42 - 000532992 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2017-10-11 05:11 - 2017-09-18 12:42 - 000439296 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2017-10-11 05:11 - 2017-09-18 12:41 - 000783360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2017-10-11 05:11 - 2017-09-18 12:41 - 000450048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2017-10-11 05:11 - 2017-09-18 12:41 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\trie.dll
2017-10-11 05:11 - 2017-09-18 12:41 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\MTFFuzzyDS.dll
2017-10-11 05:11 - 2017-09-18 12:41 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\MTFSpellcheckDS.dll
2017-10-11 05:11 - 2017-09-15 09:44 - 000119328 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2017-10-11 05:11 - 2017-09-15 09:35 - 001302136 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2017-10-11 05:11 - 2017-09-15 09:29 - 000096064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2017-10-11 05:11 - 2017-09-15 09:22 - 000136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2017-10-11 05:11 - 2017-09-15 09:19 - 001202936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 002233344 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppAgent.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 001227264 _____ (Microsoft Corporation) C:\Windows\system32\AgentService.exe
2017-10-11 05:11 - 2017-09-15 09:09 - 001222144 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CommonBridge.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 001165824 _____ (Microsoft Corporation) C:\Windows\system32\ApplySettingsTemplateCatalog.exe
2017-10-11 05:11 - 2017-09-15 09:09 - 000768512 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.PrinterCustomActions.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2013CustomActions.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 000512000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 000419328 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CscUnpinTool.exe
2017-10-11 05:11 - 2017-09-15 09:09 - 000298496 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ConfigWrapper.dll
2017-10-11 05:11 - 2017-09-15 09:09 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2017-10-11 05:11 - 2017-09-15 09:08 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2010CustomActions.dll
2017-10-11 05:11 - 2017-09-15 09:04 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2017-10-11 05:11 - 2017-09-15 09:02 - 000326144 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollUI.dll
2017-10-11 05:11 - 2017-09-15 09:02 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7.dll
2017-10-11 05:11 - 2017-09-15 09:02 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll
2017-10-11 05:11 - 2017-09-15 09:02 - 000162304 _____ (Microsoft Corporation) C:\Windows\system32\dinput.dll
2017-10-11 05:11 - 2017-09-15 09:02 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-10-11 05:11 - 2017-09-15 09:01 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2017-10-11 05:11 - 2017-09-15 09:01 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2017-10-11 05:11 - 2017-09-15 09:01 - 000280576 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2017-10-11 05:11 - 2017-09-15 09:00 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2017-10-11 05:11 - 2017-09-15 09:00 - 000291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollUI.dll
2017-10-11 05:11 - 2017-09-15 09:00 - 000194560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7.dll
2017-10-11 05:11 - 2017-09-15 09:00 - 000185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2017-10-11 05:11 - 2017-09-15 09:00 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput8.dll
2017-10-11 05:11 - 2017-09-15 09:00 - 000098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-10-11 05:11 - 2017-09-15 08:59 - 000352256 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2017-10-11 05:11 - 2017-09-15 08:58 - 000311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-10-11 05:11 - 2017-09-15 08:58 - 000136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput.dll
2017-10-11 05:11 - 2017-09-15 08:57 - 000662528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2017-10-11 05:11 - 2017-09-15 08:56 - 001167360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2017-10-11 05:11 - 2017-09-15 08:56 - 000636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2017-10-11 05:11 - 2017-09-15 08:56 - 000359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certreq.exe
2017-10-11 05:11 - 2017-09-15 08:55 - 000821248 _____ (Microsoft Corporation) C:\Windows\system32\comuid.dll
2017-10-11 05:11 - 2017-09-15 08:55 - 000675328 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2017-10-11 05:11 - 2017-09-15 08:55 - 000529920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2017-10-11 05:11 - 2017-09-15 08:54 - 000981504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2017-10-11 05:11 - 2017-09-15 08:54 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\certreq.exe
2017-10-11 05:11 - 2017-09-15 08:53 - 000560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2017-10-11 05:11 - 2017-09-15 08:52 - 000987648 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2017-10-11 05:11 - 2017-09-15 08:52 - 000820736 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2017-10-11 05:11 - 2017-09-15 08:52 - 000634368 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2017-10-11 05:11 - 2017-09-15 08:51 - 000566272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2017-10-11 05:11 - 2017-09-15 08:50 - 002852864 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-10-11 05:11 - 2017-09-15 08:49 - 001421824 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2017-10-11 05:11 - 2017-09-15 08:49 - 000928256 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2017-10-11 05:11 - 2017-09-15 08:48 - 003299840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2017-10-11 05:11 - 2017-09-15 08:48 - 000273920 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2017-10-11 05:11 - 2017-09-15 08:47 - 000124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tsusbhub.sys
2017-10-11 05:11 - 2017-09-15 08:46 - 000068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2017-10-11 05:11 - 2017-09-15 08:45 - 003106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2017-10-11 05:11 - 2017-09-14 12:34 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-10-11 05:11 - 2017-09-14 12:34 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-10-11 05:11 - 2017-09-14 12:34 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-10-11 05:11 - 2017-03-04 17:40 - 000360040 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2017-10-11 05:11 - 2017-03-04 16:58 - 000224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2017-10-11 05:11 - 2017-03-04 16:55 - 000748544 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2017-10-11 05:11 - 2017-03-04 16:54 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2017-10-11 05:11 - 2017-03-04 16:53 - 001184256 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2017-10-11 05:11 - 2017-03-04 16:53 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2017-10-11 05:11 - 2017-03-04 16:48 - 000567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2017-10-11 05:11 - 2017-03-04 16:46 - 000368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2017-10-11 05:11 - 2017-03-04 16:41 - 001643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2017-10-11 05:11 - 2017-03-04 16:37 - 001064448 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2017-10-11 05:11 - 2017-03-04 16:30 - 000862208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-10-11 05:11 - 2017-03-04 16:30 - 000711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2017-10-11 05:11 - 2016-08-27 15:42 - 000244816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2017-10-11 05:11 - 2016-08-06 14:46 - 000026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-10-11 05:11 - 2016-08-02 18:43 - 001081856 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2017-10-05 21:59 - 2017-10-05 21:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-10-03 20:51 - 2017-10-03 20:51 - 000051016 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2017-10-03 20:51 - 2017-10-03 20:51 - 000045672 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2017-10-03 20:51 - 2017-10-03 20:51 - 000045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2017-10-03 20:51 - 2017-10-03 20:51 - 000045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2017-09-25 19:21 - 2017-09-25 19:21 - 000000000 ___HD C:\Users\Travis\.cache
2017-09-25 19:14 - 2017-09-25 19:14 - 000000000 ____D C:\Users\Travis\AppData\Local\Ultimate Ears
2017-09-25 19:14 - 2017-09-25 19:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Ears
2017-09-25 19:14 - 2017-09-25 19:14 - 000000000 ____D C:\Program Files (x86)\UE Speaker Update Assistant 1.4.21
2017-09-14 22:55 - 2017-09-14 22:55 - 000000000 ____D C:\Users\Travis\AppData\Roaming\AMD
2017-09-13 22:26 - 2017-09-13 22:30 - 000000000 ____D C:\Users\Travis\AppData\Roaming\HandBrake
2017-09-13 22:26 - 2017-09-13 22:26 - 000000000 ____D C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HandBrake
2017-09-13 22:26 - 2017-09-13 22:26 - 000000000 ____D C:\Users\Travis\AppData\Roaming\HandBrake Team
2017-09-13 22:26 - 2017-09-13 22:26 - 000000000 ____D C:\Program Files\HandBrake
2017-09-13 19:44 - 2017-09-07 17:37 - 000315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-09-13 19:44 - 2017-09-07 17:02 - 001573792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-09-13 19:44 - 2017-09-07 16:59 - 002048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2017-09-13 19:44 - 2017-09-07 16:54 - 000869848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2017-09-13 19:44 - 2017-09-07 16:54 - 000263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-09-13 19:44 - 2017-09-07 16:52 - 001504056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2017-09-13 19:44 - 2017-09-07 16:51 - 002265368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-09-13 19:44 - 2017-09-07 16:51 - 000975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2017-09-13 19:44 - 2017-09-07 16:51 - 000861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2017-09-13 19:44 - 2017-09-07 16:51 - 000780640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2017-09-13 19:44 - 2017-09-07 16:51 - 000116576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2017-09-13 19:44 - 2017-09-07 16:50 - 000577976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2017-09-13 19:44 - 2017-09-07 16:50 - 000339896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2017-09-13 19:44 - 2017-09-07 16:50 - 000267104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2017-09-13 19:44 - 2017-09-07 16:50 - 000139104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2017-09-13 19:44 - 2017-09-07 16:50 - 000037200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2017-09-13 19:44 - 2017-09-07 16:49 - 002168288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2017-09-13 19:44 - 2017-09-07 16:49 - 000846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2017-09-13 19:44 - 2017-09-07 16:49 - 000606560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2017-09-13 19:44 - 2017-09-07 16:49 - 000111968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2017-09-13 19:44 - 2017-09-07 16:47 - 001557808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-09-13 19:44 - 2017-09-07 16:46 - 000962768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2017-09-13 19:44 - 2017-09-07 16:43 - 000546456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2017-09-13 19:44 - 2017-09-07 16:42 - 000306800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2017-09-13 19:44 - 2017-09-07 16:37 - 005686784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2017-09-13 19:44 - 2017-09-07 16:31 - 001631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-09-13 19:44 - 2017-09-07 16:31 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2017-09-13 19:44 - 2017-09-07 16:30 - 000037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2017-09-13 19:44 - 2017-09-07 16:29 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2017-09-13 19:44 - 2017-09-07 16:28 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2017-09-13 19:44 - 2017-09-07 16:28 - 000141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2017-09-13 19:44 - 2017-09-07 16:28 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IconCodecService.dll
2017-09-13 19:44 - 2017-09-07 16:27 - 000264704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\socialapis.dll
2017-09-13 19:44 - 2017-09-07 16:27 - 000177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Diagnostics.dll
2017-09-13 19:44 - 2017-09-07 16:27 - 000138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2017-09-13 19:44 - 2017-09-07 16:27 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2017-09-13 19:44 - 2017-09-07 16:26 - 000255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2017-09-13 19:44 - 2017-09-07 16:26 - 000097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.SystemManagement.dll
2017-09-13 19:44 - 2017-09-07 16:25 - 000136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2017-09-13 19:44 - 2017-09-07 16:25 - 000129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2017-09-13 19:44 - 2017-09-07 16:25 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
2017-09-13 19:44 - 2017-09-07 16:24 - 000506368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2017-09-13 19:44 - 2017-09-07 16:24 - 000392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2017-09-13 19:44 - 2017-09-07 16:24 - 000231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-09-13 19:44 - 2017-09-07 16:24 - 000142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2017-09-13 19:44 - 2017-09-07 16:24 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll
2017-09-13 19:44 - 2017-09-07 16:24 - 000092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-09-13 19:44 - 2017-09-07 16:23 - 000501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2017-09-13 19:44 - 2017-09-07 16:23 - 000374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2017-09-13 19:44 - 2017-09-07 16:23 - 000315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-09-13 19:44 - 2017-09-07 16:23 - 000313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2017-09-13 19:44 - 2017-09-07 16:23 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2017-09-13 19:44 - 2017-09-07 16:22 - 001300480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2017-09-13 19:44 - 2017-09-07 16:22 - 000557568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2017-09-13 19:44 - 2017-09-07 16:22 - 000265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2017-09-13 19:44 - 2017-09-07 16:22 - 000117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2017-09-13 19:44 - 2017-09-07 16:22 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 001243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2017-09-13 19:44 - 2017-09-07 16:21 - 000202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-09-13 19:44 - 2017-09-07 16:21 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2017-09-13 19:44 - 2017-09-07 16:20 - 000498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2017-09-13 19:44 - 2017-09-07 16:20 - 000325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2017-09-13 19:44 - 2017-09-07 16:20 - 000244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2017-09-13 19:44 - 2017-09-07 16:20 - 000218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2017-09-13 19:44 - 2017-09-07 16:20 - 000206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll
2017-09-13 19:44 - 2017-09-07 16:20 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2017-09-13 19:44 - 2017-09-07 16:19 - 000747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
2017-09-13 19:44 - 2017-09-07 16:19 - 000415232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2017-09-13 19:44 - 2017-09-07 16:19 - 000262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2017-09-13 19:44 - 2017-09-07 16:18 - 000525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2017-09-13 19:44 - 2017-09-07 16:18 - 000396800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2017-09-13 19:44 - 2017-09-07 16:18 - 000314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2017-09-13 19:44 - 2017-09-07 16:18 - 000284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2017-09-13 19:44 - 2017-09-07 16:18 - 000225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2017-09-13 19:44 - 2017-09-07 16:17 - 001456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2017-09-13 19:44 - 2017-09-07 16:17 - 000787968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2017-09-13 19:44 - 2017-09-07 16:17 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2017-09-13 19:44 - 2017-09-07 16:17 - 000288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2017-09-13 19:44 - 2017-09-07 16:15 - 013875712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-09-13 19:44 - 2017-09-07 16:15 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2017-09-13 19:44 - 2017-09-07 16:14 - 001534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-09-13 19:44 - 2017-09-07 16:14 - 000901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2017-09-13 19:44 - 2017-09-07 16:14 - 000468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2017-09-13 19:44 - 2017-09-07 16:13 - 000653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2017-09-13 19:44 - 2017-09-07 16:12 - 001077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2017-09-13 19:44 - 2017-09-07 16:12 - 000355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2017-09-13 19:44 - 2017-09-07 16:12 - 000134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
2017-09-13 19:44 - 2017-09-07 16:11 - 000471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-09-13 19:44 - 2017-09-07 16:10 - 003307008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2017-09-13 19:44 - 2017-09-07 16:10 - 003198464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2017-09-13 19:44 - 2017-09-07 16:10 - 000795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2017-09-13 19:44 - 2017-09-07 16:10 - 000746496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2017-09-13 19:44 - 2017-09-07 16:10 - 000713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2017-09-13 19:44 - 2017-09-07 16:09 - 006109696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2017-09-13 19:44 - 2017-09-07 16:09 - 000470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-09-13 19:44 - 2017-09-07 16:08 - 001255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2017-09-13 19:44 - 2017-09-07 16:08 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2017-09-13 19:44 - 2017-09-07 16:08 - 000459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-09-13 19:44 - 2017-09-07 16:07 - 000220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
2017-09-13 19:44 - 2017-09-07 16:07 - 000090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2017-09-13 19:44 - 2017-09-07 16:06 - 001221120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2017-09-13 19:44 - 2017-09-07 16:06 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraCaptureUI.dll
2017-09-13 19:44 - 2017-09-07 16:05 - 000357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
2017-09-13 19:44 - 2017-09-07 16:05 - 000103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll
2017-09-13 19:44 - 2017-09-07 16:04 - 003733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-09-13 19:44 - 2017-09-07 16:04 - 000709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2017-09-13 19:44 - 2017-09-07 16:04 - 000400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2017-09-13 19:44 - 2017-09-07 16:04 - 000339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2017-09-13 19:44 - 2017-09-07 16:03 - 001656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2017-09-13 19:44 - 2017-09-07 16:03 - 001135616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2017-09-13 19:44 - 2017-09-07 16:03 - 000348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2017-09-13 19:44 - 2017-09-07 16:02 - 001993216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2017-09-13 19:44 - 2017-09-07 16:02 - 001247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2017-09-13 19:44 - 2017-09-07 16:02 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2017-09-13 19:44 - 2017-09-07 16:01 - 001886720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2017-09-13 19:44 - 2017-09-07 16:01 - 001004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2017-09-13 19:44 - 2017-09-07 16:01 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2017-09-13 19:44 - 2017-09-07 16:01 - 000621056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2017-09-13 19:44 - 2017-09-07 16:01 - 000566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2017-09-13 19:44 - 2017-09-07 16:00 - 002747904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2017-09-13 19:44 - 2017-09-07 16:00 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2017-09-13 19:44 - 2017-09-07 16:00 - 001170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-09-13 19:44 - 2017-09-07 16:00 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2017-09-13 19:44 - 2017-09-07 15:59 - 001576448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2017-09-13 19:44 - 2017-09-07 15:37 - 000483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2017-09-13 19:44 - 2017-08-22 15:38 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2017-09-13 19:44 - 2017-08-22 15:27 - 000711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-09-13 19:44 - 2017-08-22 15:19 - 000248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
2017-09-13 19:44 - 2017-08-08 16:33 - 000102240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys
2017-09-13 19:44 - 2017-08-08 16:26 - 000054240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-09-13 19:44 - 2017-08-08 16:23 - 000715104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-09-13 19:44 - 2017-08-08 16:23 - 000557408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2017-09-13 19:44 - 2017-08-08 15:55 - 000255168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2017-09-13 19:44 - 2017-08-08 15:46 - 000294952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2017-09-13 19:44 - 2017-08-08 15:46 - 000086232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpr.dll
2017-09-13 19:44 - 2017-08-08 15:26 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidtel.exe
2017-09-13 19:44 - 2017-08-08 15:23 - 000450560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2017-09-13 19:44 - 2017-08-08 15:23 - 000119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srpapi.dll
2017-09-13 19:44 - 2017-08-08 15:23 - 000098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2017-09-13 19:44 - 2017-08-08 15:20 - 000531456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2017-09-13 19:44 - 2017-08-08 15:20 - 000334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
2017-09-13 19:44 - 2017-08-08 15:20 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2017-09-13 19:44 - 2017-08-08 15:19 - 000052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll
2017-09-13 19:44 - 2017-08-08 15:18 - 000388608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-09-13 19:44 - 2017-08-08 15:17 - 000260096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Phoneutil.dll
2017-09-13 19:44 - 2017-08-08 15:11 - 000525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2017-09-13 19:44 - 2017-03-04 16:54 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-09-13 19:44 - 2017-03-04 16:35 - 000458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2017-09-13 19:44 - 2017-03-04 16:31 - 001232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-09-13 19:44 - 2016-12-21 15:13 - 000285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-09-13 19:43 - 2017-09-07 16:50 - 000367208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2017-09-13 19:43 - 2017-09-07 16:46 - 000379232 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-09-13 19:43 - 2017-09-07 16:40 - 000825696 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2017-09-13 19:43 - 2017-09-07 16:40 - 000603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2017-09-13 19:43 - 2017-09-07 16:34 - 000894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2017-09-13 19:43 - 2017-09-07 16:33 - 001887408 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-09-13 19:43 - 2017-09-07 16:32 - 032693432 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsRaw.dll
2017-09-13 19:43 - 2017-09-07 16:31 - 002681200 _____ C:\Windows\system32\CoreUIComponents.dll
2017-09-13 19:43 - 2017-09-07 16:31 - 002049480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2017-09-13 19:43 - 2017-09-07 16:30 - 000764392 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2017-09-13 19:43 - 2017-09-07 16:27 - 000584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2017-09-13 19:43 - 2017-09-07 16:27 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-09-13 19:43 - 2017-09-07 16:26 - 001069720 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2017-09-13 19:43 - 2017-09-07 16:26 - 000328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2017-09-13 19:43 - 2017-09-07 16:24 - 002761248 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-09-13 19:43 - 2017-09-07 16:24 - 002188128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-09-13 19:43 - 2017-09-07 16:24 - 001739072 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2017-09-13 19:43 - 2017-09-07 16:24 - 001157008 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2017-09-13 19:43 - 2017-09-07 16:24 - 000857440 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2017-09-13 19:43 - 2017-09-07 16:24 - 000658784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2017-09-13 19:43 - 2017-09-07 16:24 - 000402784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-09-13 19:43 - 2017-09-07 16:24 - 000146784 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2017-09-13 19:43 - 2017-09-07 16:23 - 000684896 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2017-09-13 19:43 - 2017-09-07 16:23 - 000431296 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2017-09-13 19:43 - 2017-09-07 16:23 - 000383776 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2017-09-13 19:43 - 2017-09-07 16:23 - 000296288 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2017-09-13 19:43 - 2017-09-07 16:23 - 000144736 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2017-09-13 19:43 - 2017-09-07 16:23 - 000097128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2017-09-13 19:43 - 2017-09-07 16:22 - 002915704 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2017-09-13 19:43 - 2017-09-07 16:22 - 001267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2017-09-13 19:43 - 2017-09-07 16:22 - 001100128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2017-09-13 19:43 - 2017-09-07 16:22 - 000989024 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2017-09-13 19:43 - 2017-09-07 16:22 - 000858464 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2017-09-13 19:43 - 2017-09-07 16:22 - 000148832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2017-09-13 19:43 - 2017-09-07 16:22 - 000126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-09-13 19:43 - 2017-09-07 16:22 - 000044464 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2017-09-13 19:43 - 2017-09-07 16:21 - 000306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2017-09-13 19:43 - 2017-09-07 16:21 - 000092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2017-09-13 19:43 - 2017-09-07 16:20 - 001694712 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-09-13 19:43 - 2017-09-07 16:20 - 000236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-09-13 19:43 - 2017-09-07 16:19 - 001277824 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2017-09-13 19:43 - 2017-09-07 16:19 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-09-13 19:43 - 2017-09-07 16:17 - 000846336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2017-09-13 19:43 - 2017-09-07 16:17 - 000661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2017-09-13 19:43 - 2017-09-07 16:16 - 000628552 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2017-09-13 19:43 - 2017-09-07 16:15 - 002532704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-09-13 19:43 - 2017-09-07 16:15 - 000387872 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2017-09-13 19:43 - 2017-09-07 16:15 - 000372440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2017-09-13 19:43 - 2017-09-07 16:13 - 000693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-09-13 19:43 - 2017-09-07 16:01 - 002028032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-09-13 19:43 - 2017-09-07 16:01 - 001509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-09-13 19:43 - 2017-09-07 16:00 - 007218176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2017-09-13 19:43 - 2017-09-07 15:54 - 001631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-09-13 19:43 - 2017-09-07 15:53 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2017-09-13 19:43 - 2017-09-07 15:52 - 000584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2017-09-13 19:43 - 2017-09-07 15:52 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2017-09-13 19:43 - 2017-09-07 15:52 - 000045056 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2017-09-13 19:43 - 2017-09-07 15:52 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2017-09-13 19:43 - 2017-09-07 15:52 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2017-09-13 19:43 - 2017-09-07 15:52 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\IconCodecService.dll
2017-09-13 19:43 - 2017-09-07 15:51 - 000237568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2017-09-13 19:43 - 2017-09-07 15:51 - 000185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2017-09-13 19:43 - 2017-09-07 15:51 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.SystemManagement.dll
2017-09-13 19:43 - 2017-09-07 15:51 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll
2017-09-13 19:43 - 2017-09-07 15:51 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2017-09-13 19:43 - 2017-09-07 15:51 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
2017-09-13 19:43 - 2017-09-07 15:51 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2017-09-13 19:43 - 2017-09-07 15:50 - 000295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2017-09-13 19:43 - 2017-09-07 15:50 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
2017-09-13 19:43 - 2017-09-07 15:50 - 000156160 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
2017-09-13 19:43 - 2017-09-07 15:50 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.RetailInfo.dll
2017-09-13 19:43 - 2017-09-07 15:50 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ClosedCaptioning.dll
2017-09-13 19:43 - 2017-09-07 15:50 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-09-13 19:43 - 2017-09-07 15:50 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2017-09-13 19:43 - 2017-09-07 15:49 - 000467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2017-09-13 19:43 - 2017-09-07 15:49 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\WinRtTracing.dll
2017-09-13 19:43 - 2017-09-07 15:49 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2017-09-13 19:43 - 2017-09-07 15:49 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Core.dll
2017-09-13 19:43 - 2017-09-07 15:49 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2017-09-13 19:43 - 2017-09-07 15:48 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\ipsecsnp.dll
2017-09-13 19:43 - 2017-09-07 15:48 - 000547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2017-09-13 19:43 - 2017-09-07 15:48 - 000418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
2017-09-13 19:43 - 2017-09-07 15:48 - 000368640 _____ (Microsoft Corporation) C:\Windows\system32\OneBackupHandler.dll
2017-09-13 19:43 - 2017-09-07 15:48 - 000354816 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2017-09-13 19:43 - 2017-09-07 15:48 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2017-09-13 19:43 - 2017-09-07 15:48 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2017-09-13 19:43 - 2017-09-07 15:48 - 000186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000730112 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000276992 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-09-13 19:43 - 2017-09-07 15:47 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000157696 _____ (Microsoft Corporation) C:\Windows\system32\XamlTileRender.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000150016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000144896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll
2017-09-13 19:43 - 2017-09-07 15:47 - 000139264 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 001507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000781824 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000748544 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000691200 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000335872 _____ (Microsoft Corporation) C:\Windows\system32\socialapis.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-09-13 19:43 - 2017-09-07 15:46 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000852480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000432128 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000391168 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000267264 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000260608 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2017-09-13 19:43 - 2017-09-07 15:45 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2017-09-13 19:43 - 2017-09-07 15:45 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000678912 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000451072 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000358400 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-09-13 19:43 - 2017-09-07 15:44 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2017-09-13 19:43 - 2017-09-07 15:44 - 000078336 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2017-09-13 19:43 - 2017-09-07 15:43 - 001159680 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSave.dll
2017-09-13 19:43 - 2017-09-07 15:43 - 000671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2017-09-13 19:43 - 2017-09-07 15:43 - 000645120 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2017-09-13 19:43 - 2017-09-07 15:43 - 000472064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2017-09-13 19:43 - 2017-09-07 15:43 - 000437248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2017-09-13 19:43 - 2017-09-07 15:43 - 000245760 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll
2017-09-13 19:43 - 2017-09-07 15:42 - 000963584 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2017-09-13 19:43 - 2017-09-07 15:42 - 000896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2017-09-13 19:43 - 2017-09-07 15:42 - 000642048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2017-09-13 19:43 - 2017-09-07 15:42 - 000156672 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2017-09-13 19:43 - 2017-09-07 15:41 - 000966144 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2017-09-13 19:43 - 2017-09-07 15:41 - 000775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2017-09-13 19:43 - 2017-09-07 15:41 - 000583680 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2017-09-13 19:43 - 2017-09-07 15:41 - 000527360 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2017-09-13 19:43 - 2017-09-07 15:41 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-09-13 19:43 - 2017-09-07 15:40 - 017200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2017-09-13 19:43 - 2017-09-07 15:40 - 001037312 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2017-09-13 19:43 - 2017-09-07 15:39 - 000945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2017-09-13 19:43 - 2017-09-07 15:39 - 000864256 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2017-09-13 19:43 - 2017-09-07 15:38 - 001639424 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2017-09-13 19:43 - 2017-09-07 15:38 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2017-09-13 19:43 - 2017-09-07 15:38 - 000393216 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2017-09-13 19:43 - 2017-09-07 15:38 - 000175616 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-09-13 19:43 - 2017-09-07 15:37 - 007655424 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2017-09-13 19:43 - 2017-09-07 15:37 - 003778048 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2017-09-13 19:43 - 2017-09-07 15:37 - 001403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2017-09-13 19:43 - 2017-09-07 15:37 - 000458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2017-09-13 19:43 - 2017-09-07 15:37 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\CastLaunch.dll
2017-09-13 19:43 - 2017-09-07 15:35 - 005114368 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2017-09-13 19:43 - 2017-09-07 15:35 - 001105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2017-09-13 19:43 - 2017-09-07 15:35 - 000864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2017-09-13 19:43 - 2017-09-07 15:34 - 001908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2017-09-13 19:43 - 2017-09-07 15:34 - 000870400 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2017-09-13 19:43 - 2017-09-07 15:34 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2017-09-13 19:43 - 2017-09-07 15:34 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2017-09-13 19:43 - 2017-09-07 15:33 - 001837056 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2017-09-13 19:43 - 2017-09-07 15:33 - 001078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2017-09-13 19:43 - 2017-09-07 15:33 - 000942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-09-13 19:43 - 2017-09-07 15:33 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\bdechangepin.exe
2017-09-13 19:43 - 2017-09-07 15:33 - 000248320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-09-13 19:43 - 2017-09-07 15:32 - 000279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
2017-09-13 19:43 - 2017-09-07 15:32 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2017-09-13 19:43 - 2017-09-07 15:31 - 002390016 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2017-09-13 19:43 - 2017-09-07 15:31 - 001217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2017-09-13 19:43 - 2017-09-07 15:31 - 000411648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2017-09-13 19:43 - 2017-09-07 15:31 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.ps.dll
2017-09-13 19:43 - 2017-09-07 15:31 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2017-09-13 19:43 - 2017-09-07 15:30 - 000539136 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2017-09-13 19:43 - 2017-09-07 15:30 - 000467968 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2017-09-13 19:43 - 2017-09-07 15:30 - 000391168 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2017-09-13 19:43 - 2017-09-07 15:30 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 004474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 002510848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 001359872 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 001281536 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 000821248 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 000760320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 000611328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
2017-09-13 19:43 - 2017-09-07 15:29 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 002097152 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-09-13 19:43 - 2017-09-07 15:28 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 001700352 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 001656320 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 000886784 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 000816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 000376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2017-09-13 19:43 - 2017-09-07 15:28 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2017-09-13 19:43 - 2017-09-07 15:27 - 005611520 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-09-13 19:43 - 2017-09-07 15:27 - 003134976 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-09-13 19:43 - 2017-09-07 15:27 - 001586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2017-09-13 19:43 - 2017-09-07 15:27 - 001424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2017-09-13 19:43 - 2017-09-07 15:27 - 001275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2017-09-13 19:43 - 2017-09-07 15:27 - 000874496 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2017-09-13 19:43 - 2017-09-07 15:26 - 004149248 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2017-09-13 19:43 - 2017-09-07 15:26 - 002695680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2017-09-13 19:43 - 2017-09-07 15:26 - 002286592 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2017-09-13 19:43 - 2017-09-07 15:26 - 002208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2017-09-13 19:43 - 2017-09-07 15:26 - 000846336 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 002820096 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 002424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 002217472 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 001984000 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 001637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 001369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2017-09-13 19:43 - 2017-09-07 15:25 - 001131520 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-09-13 19:43 - 2017-09-07 15:24 - 003542016 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2017-09-13 19:43 - 2017-09-07 15:24 - 000834560 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-09-13 19:43 - 2017-09-07 15:24 - 000716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2017-09-13 19:43 - 2017-08-22 15:39 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-09-13 19:43 - 2017-08-22 15:36 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-09-13 19:43 - 2017-08-22 15:35 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll
2017-09-13 19:43 - 2017-08-22 15:34 - 000165376 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2017-09-13 19:43 - 2017-08-22 15:32 - 000221696 _____ (Microsoft Corporation) C:\Windows\system32\SIHClient.exe
2017-09-13 19:43 - 2017-08-22 15:23 - 013441536 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2017-09-13 19:43 - 2017-08-22 15:22 - 000295424 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
2017-09-13 19:43 - 2017-08-22 15:20 - 012349440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2017-09-13 19:43 - 2017-08-22 15:17 - 000869888 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-09-13 19:43 - 2017-08-22 15:08 - 000221696 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2017-09-13 19:43 - 2017-08-08 16:39 - 000065648 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-09-13 19:43 - 2017-08-08 16:31 - 000376672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2017-09-13 19:43 - 2017-08-08 16:29 - 000357984 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2017-09-13 19:43 - 2017-08-08 16:29 - 000118112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-09-13 19:43 - 2017-08-08 16:23 - 000026976 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2017-09-13 19:43 - 2017-08-08 16:22 - 000649568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2017-09-13 19:43 - 2017-08-08 16:22 - 000450400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-09-13 19:43 - 2017-08-08 16:22 - 000386408 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2017-09-13 19:43 - 2017-08-08 16:22 - 000101776 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll
2017-09-13 19:43 - 2017-08-08 16:22 - 000079712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys
2017-09-13 19:43 - 2017-08-08 16:15 - 001102176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2017-09-13 19:43 - 2017-08-08 16:15 - 000453544 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2017-09-13 19:43 - 2017-08-08 15:50 - 000173056 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2017-09-13 19:43 - 2017-08-08 15:50 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2017-09-13 19:43 - 2017-08-08 15:50 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys
2017-09-13 19:43 - 2017-08-08 15:50 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\appidtel.exe
2017-09-13 19:43 - 2017-08-08 15:48 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2017-09-13 19:43 - 2017-08-08 15:48 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2017-09-13 19:43 - 2017-08-08 15:47 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
2017-09-13 19:43 - 2017-08-08 15:46 - 000121344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2017-09-13 19:43 - 2017-08-08 15:46 - 000062976 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll
2017-09-13 19:43 - 2017-08-08 15:45 - 000556544 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2017-09-13 19:43 - 2017-08-08 15:45 - 000502272 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2017-09-13 19:43 - 2017-08-08 15:44 - 000658432 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2017-09-13 19:43 - 2017-08-08 15:44 - 000315904 _____ (Microsoft Corporation) C:\Windows\system32\Phoneutil.dll
2017-09-13 19:43 - 2017-08-08 15:43 - 000472064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-09-13 19:43 - 2017-08-08 15:43 - 000305152 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2017-09-13 19:43 - 2017-08-08 15:42 - 000579584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-09-13 19:43 - 2017-08-08 15:40 - 000945664 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2017-09-13 19:43 - 2017-08-08 15:34 - 000798720 _____ (Microsoft Corporation) C:\Windows\system32\pwcreator.exe
2017-09-13 19:43 - 2017-08-08 15:28 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2017-09-13 19:43 - 2017-08-08 15:25 - 000735744 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2017-09-13 19:43 - 2017-08-08 15:21 - 001817088 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2017-09-13 19:43 - 2017-08-01 15:39 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2017-09-13 19:43 - 2017-03-04 17:39 - 000178520 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2017-09-13 19:43 - 2017-03-04 17:37 - 000947552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.efi
2017-09-13 19:43 - 2017-03-04 17:33 - 000160096 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2017-09-13 19:43 - 2017-03-04 17:02 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2017-09-13 19:43 - 2017-03-04 16:58 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2017-09-13 19:43 - 2017-03-04 16:58 - 000216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2017-09-13 19:43 - 2017-03-04 16:43 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\CameraCaptureUI.dll
2017-09-13 19:43 - 2017-03-04 16:40 - 006664192 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2017-09-13 19:43 - 2017-03-04 16:38 - 001266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2017-09-13 19:43 - 2016-11-02 21:13 - 000270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-09-13 19:43 - 2016-09-16 03:10 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-09-13 19:43 - 2016-09-16 03:04 - 000441856 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2017-09-13 19:43 - 2016-09-16 03:00 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
2017-09-13 19:43 - 2016-09-16 02:54 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
2017-09-13 19:26 - 2017-09-13 19:26 - 000000000 ____D C:\ProgramData\Wondershare
2017-09-13 19:25 - 2017-09-13 19:25 - 000000000 ____D C:\Users\Travis\AppData\Local\Wondershare
2017-09-12 19:29 - 2017-09-12 19:29 - 000000000 ____D C:\Users\Travis\AppData\Local\FOMM
2017-09-12 19:29 - 2017-09-12 19:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout Mod Manager
2017-09-12 19:29 - 2017-09-12 19:29 - 000000000 ____D C:\Program Files (x86)\GeMM
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-10-12 17:51 - 2017-07-05 16:18 - 000000000 ____D C:\Users\Travis\AppData\LocalLow\360WD
2017-10-12 17:46 - 2017-05-08 22:36 - 004003992 _____ C:\Windows\system32\PerfStringBackup.INI
2017-10-12 17:40 - 2017-05-17 02:02 - 854423274 _____ C:\Windows\MEMORY.DMP
2017-10-12 17:40 - 2017-05-17 02:02 - 000000000 ____D C:\Windows\Minidump
2017-10-12 17:40 - 2017-05-09 13:22 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-12 17:40 - 2017-05-09 13:22 - 000000000 ____D C:\Windows\system32\SleepStudy
2017-10-12 17:39 - 2017-05-09 13:24 - 000000000 ___RD C:\Users\Travis
2017-10-12 17:39 - 2016-07-16 22:15 - 000000000 ____D C:\Windows\INF
2017-10-12 17:38 - 2017-07-05 16:18 - 000000000 _RSHD C:\360SANDBOX
2017-10-12 17:18 - 2017-05-08 22:39 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2017-10-12 17:18 - 2016-07-16 16:34 - 000065536 _____ C:\Windows\system32\config\BBI
2017-10-12 17:14 - 2017-08-04 09:01 - 000000000 ____D C:\Users\Travis\AppData\Local\Everything
2017-10-12 17:14 - 2017-08-04 08:57 - 000000000 ____D C:\Users\Travis\AppData\Roaming\Everything
2017-10-12 01:21 - 2017-05-08 22:34 - 000000000 ____D C:\Users\Travis\AppData\Local\Google
2017-10-12 01:17 - 2017-05-08 23:20 - 000000398 __RSH C:\ProgramData\ntuser.pol
2017-10-11 22:29 - 2017-08-05 23:29 - 000000000 ____D C:\PUBG
2017-10-11 06:12 - 2016-07-16 22:17 - 000000000 ____D C:\Windows\AppReadiness
2017-10-11 06:05 - 2017-05-09 13:24 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-10-11 06:05 - 2017-05-09 13:22 - 000335240 _____ C:\Windows\system32\FNTCACHE.DAT
2017-10-11 06:04 - 2016-07-16 22:17 - 000000000 ____D C:\Windows\system32\oobe
2017-10-11 06:03 - 2016-07-16 22:17 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2017-10-11 06:03 - 2016-07-16 22:17 - 000000000 ____D C:\Windows\ShellExperiences
2017-10-11 05:18 - 2016-07-16 22:06 - 000000000 ____D C:\Windows\CbsTemp
2017-10-11 05:14 - 2017-05-10 20:35 - 000000000 ____D C:\Windows\system32\MRT
2017-10-11 05:12 - 2017-05-10 20:35 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-10-10 21:19 - 2017-08-28 17:30 - 000000000 ____D C:\Program Files (x86)\Comodo
2017-10-09 10:03 - 2017-07-19 07:53 - 000000000 __SHD C:\$360Section
2017-10-09 10:03 - 2017-07-05 16:18 - 000000000 ____D C:\ProgramData\360Quarant
2017-10-05 21:59 - 2017-05-14 22:34 - 000000000 ____D C:\Program Files (x86)\Dropbox
2017-10-04 08:21 - 2017-05-14 17:53 - 000000000 ____D C:\Program Files (x86)\Origin
2017-10-03 14:54 - 2017-05-14 01:17 - 000000000 ____D C:\Users\Travis\AppData\Local\ElevatedDiagnostics
2017-10-03 14:53 - 2017-05-08 22:35 - 000002272 _____ C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-25 23:30 - 2017-09-06 20:08 - 000000000 ____D C:\Users\Travis\AppData\Roaming\Anvsoft
2017-09-25 23:28 - 2017-05-13 20:36 - 000000000 ____D C:\Program Files\IPVanish
2017-09-22 13:09 - 2017-09-09 10:44 - 000000000 __RHD C:\Users\Travis\OneDrive
2017-09-22 13:09 - 2017-07-27 23:16 - 000003380 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3607689352-1145326940-3145571553-1001
2017-09-22 13:09 - 2017-05-09 13:26 - 000002180 _____ C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-09-21 22:03 - 2017-05-08 23:01 - 000000000 ____D C:\Users\Travis\AppData\Roaming\qBittorrent
2017-09-20 09:44 - 2017-08-30 17:37 - 000000000 ____D C:\Users\Travis\AppData\Local\CrashDumps
2017-09-17 17:22 - 2016-07-16 22:17 - 000000000 ____D C:\Windows\rescache
2017-09-16 22:35 - 2017-08-04 09:00 - 000000000 ____D C:\Users\Travis\AppData\Roaming\obs-studio
2017-09-15 22:27 - 2017-05-17 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2017-09-15 22:18 - 2017-05-16 04:17 - 000000000 ____D C:\Users\Travis\AppData\Roaming\vlc
2017-09-13 22:06 - 2017-08-05 23:27 - 000000841 _____ C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteamMover.lnk
2017-09-13 21:08 - 2016-07-16 22:17 - 000000000 ___SD C:\Windows\SysWOW64\F12
2017-09-13 21:08 - 2016-07-16 22:17 - 000000000 ___SD C:\Windows\system32\F12
2017-09-13 21:08 - 2016-07-16 22:17 - 000000000 ____D C:\Windows\system32\migwiz
2017-09-13 21:07 - 2016-07-17 00:45 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-09-13 21:07 - 2016-07-16 22:17 - 000000000 ___RD C:\Program Files\Windows Defender
2017-09-13 21:07 - 2016-07-16 22:17 - 000000000 ____D C:\Windows\Provisioning
2017-09-13 21:07 - 2016-07-16 22:17 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2017-09-13 21:07 - 2016-07-16 22:17 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-09-13 21:07 - 2016-07-16 22:17 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2017-09-13 19:20 - 2016-07-16 22:13 - 000333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2017-09-13 19:20 - 2016-07-16 22:12 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll
2017-09-12 21:52 - 2017-05-09 16:45 - 000000000 ____D C:\Users\Travis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
 
==================== Files in the root of some directories =======
 
2017-06-14 16:05 - 2017-06-14 16:05 - 005596617 _____ (UserBenchmark.com) C:\Program Files (x86)\UserBenchMark.exe
2017-09-03 18:07 - 2017-09-03 19:08 - 001065984 _____ () C:\Users\Travis\AppData\Local\file__0.localstorage
2017-08-14 17:50 - 2017-08-14 17:50 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
2017-08-04 09:11 - 2017-08-04 09:11 - 000000060 _____ () C:\ProgramData\SoftwareUpdateTemp.xml
 
Some files in TEMP:
====================
2017-05-30 23:30 - 2017-06-04 21:40 - 003772872 _____ () C:\Users\Travis\AppData\Local\Temp\Ableton Swapper.exe
2017-08-08 16:39 - 2017-05-14 00:11 - 000036312 _____ (Irfan Skiljan, IrfanView) C:\Users\Travis\AppData\Local\Temp\iv_uninstall.exe
2017-08-04 09:14 - 2017-08-04 09:14 - 000740416 _____ (Oracle Corporation) C:\Users\Travis\AppData\Local\Temp\jre-8u144-windows-au.exe
2017-05-16 18:04 - 2015-05-26 08:52 - 000250472 _____ (Thomson Reuters) C:\Users\Travis\AppData\Local\Temp\Risweb32.exe
2017-05-15 22:29 - 2017-06-19 02:41 - 000192512 _____ () C:\Users\Travis\AppData\Local\Temp\sfamcc00001.dll
2015-02-11 04:26 - 2015-02-11 04:26 - 000105984 _____ () C:\Users\Travis\AppData\Local\Temp\sfextra.dll
2016-08-16 18:18 - 2016-08-16 18:18 - 000488960 _____ () C:\Users\Travis\AppData\Local\Temp\sqlite3.exe
2017-06-13 17:27 - 2017-06-13 17:28 - 032100680 _____ () C:\Users\Travis\AppData\Local\Temp\vlc-2.2.6-win64.exe
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2017-10-03 14:54
 
==================== End of FRST.txt ============================
Do you have 2 security suites on your computer?
COMODO Internet Security
360\Total Security

Not a good idea, it could hamper the use of tools in an attempt to help you.

~~

Start Farbar Recovery Scan Tool with Administrator privileges
or Right click on the FRST icon and select Run as administrator

Highlight the below information then hit the Ctrl + C keys at the same time
or
Right click/highlight on the text below and select Copy.
beginning with Start:: and finishing with End::


Start::
CloseProcesses:
CreateRestorePoint:
GroupPolicy: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-3607689352-1145326940-3145571553-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.yahoo.com/yhs/search?hspart=comodo&hsimp=yhs-com_chrome&type=19_6106005_58.0.3029.115_u_ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3607689352-1145326940-3145571553-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.yahoo.com/yhs/search?hspart=comodo&hsimp=yhs-com_chrome&type=19_6106005_58.0.3029.115_u_ds&p={searchTerms}
Toolbar: HKLM - No Name - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} - No File
Toolbar: HKLM-x32 - No Name - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} - No File
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/yhs/search?p={searchTerms}&hspart=comodo&hsimp=yhs-ccs&type=default
CHR DefaultSearchKeyword: Default -> Yahoo
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR Profile: C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default [2017-10-12]
2017-05-30 23:30 - 2017-06-04 21:40 - 003772872 _____ () C:\Users\Travis\AppData\Local\Temp\Ableton Swapper.exe
2017-08-08 16:39 - 2017-05-14 00:11 - 000036312 _____ (Irfan Skiljan, IrfanView) C:\Users\Travis\AppData\Local\Temp\iv_uninstall.exe
2017-08-04 09:14 - 2017-08-04 09:14 - 000740416 _____ (Oracle Corporation) C:\Users\Travis\AppData\Local\Temp\jre-8u144-windows-au.exe
2017-05-16 18:04 - 2015-05-26 08:52 - 000250472 _____ (Thomson Reuters) C:\Users\Travis\AppData\Local\Temp\Risweb32.exe
2017-05-15 22:29 - 2017-06-19 02:41 - 000192512 _____ () C:\Users\Travis\AppData\Local\Temp\sfamcc00001.dll
2015-02-11 04:26 - 2015-02-11 04:26 - 000105984 _____ () C:\Users\Travis\AppData\Local\Temp\sfextra.dll
2016-08-16 18:18 - 2016-08-16 18:18 - 000488960 _____ () C:\Users\Travis\AppData\Local\Temp\sqlite3.exe
2017-06-13 17:27 - 2017-06-13 17:28 - 032100680 _____ () C:\Users\Travis\AppData\Local\Temp\vlc-2.2.6-win64.exe
Emptytemp:
End::


Press the Fix button.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.



******

[external image: h3qKPnn.png]Malwarebytes AdwCleaner
  • Please download Malwarebytes AdwCleaner and save the file to your Desktop
  • Right-click AdwCleaner.exe and select [external image: AVOiBNU.jpg] Run as administrator to run the programme.
  • Follow the prompts.
  • Click [external image: A49sxPr.png]Scan.
    When the scan is over,
    Click on Clean, read the informative message. If you have any questions about it, please ask.
    All unrequired programs will be closed during the cleaning process, so be sure to save your work before.
    When the clean is over, the computer may reboot and shows the logfile
    Copy/Paste it in your answer.
~~

Let's update and run a scan with MBAM
Open Malwarebytes Anti-Malware

click the Settings tab, in the left panel choose Protection and tick Scan for rootkits.
Click the Scan tab, choose Threat Scan is checked and click Start Scan.
If threats are detected, click the Apply Actions button. You will now be prompted to reboot. Click Yes.
Upon completion of the scan (or after the reboot), click the Reports tab.
Double-click the Scan Log.
At the bottom click Export and choose Text file.

Save the file to your desktop and include its content in your next reply.

You can access the logs by going in the "Reports" tab, clicking on the latest "Scan" entry (the one with detections), then clicking on the "Export" button in the bottom-left corner and select "Copy to clipboard". After that, all you have to do is paste it here



please post
Fixlog.txt
AdwCleaner.txt
Malwarebytes Anti-Malware
Sorry for the late reply and thanks heaps for helping :)
 
 
Fix result of Farbar Recovery Scan Tool (x64) Version: 15-10-2017
Ran by [removed] (17-10-2017 03:12:08) Run:1
Running from K:\Libraries\Downloads
[removed]
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:
GroupPolicy: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-3607689352-1145326940-3145571553-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.yahoo.com/yhs/search?hspart=comodo&hsimp;=yhs-com_chrome&type;=19_6106005_58.0.3029.115_u_ds&p;={searchTerms}
SearchScopes: HKU\S-1-5-21-3607689352-1145326940-3145571553-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.yahoo.com/yhs/search?hspart=comodo&hsimp;=yhs-com_chrome&type;=19_6106005_58.0.3029.115_u_ds&p;={searchTerms}
Toolbar: HKLM - No Name - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} - No File
Toolbar: HKLM-x32 - No Name - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} - No File
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/yhs/search?p={searchTerms}&hspart;=comodo&hsimp;=yhs-ccs&type;=default
CHR DefaultSearchKeyword: Default -> Yahoo
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/ie?output=fxjson&command;={searchTerms}&nResults;=10
CHR Profile: C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default [2017-10-12]
2017-05-30 23:30 - 2017-06-04 21:40 - 003772872 _____ () C:\Users\Travis\AppData\Local\Temp\Ableton Swapper.exe
2017-08-08 16:39 - 2017-05-14 00:11 - 000036312 _____ (Irfan Skiljan, IrfanView) C:\Users\Travis\AppData\Local\Temp\iv_uninstall.exe
2017-08-04 09:14 - 2017-08-04 09:14 - 000740416 _____ (Oracle Corporation) C:\Users\Travis\AppData\Local\Temp\jre-8u144-windows-au.exe
2017-05-16 18:04 - 2015-05-26 08:52 - 000250472 _____ (Thomson Reuters) C:\Users\Travis\AppData\Local\Temp\Risweb32.exe
2017-05-15 22:29 - 2017-06-19 02:41 - 000192512 _____ () C:\Users\Travis\AppData\Local\Temp\sfamcc00001.dll
2015-02-11 04:26 - 2015-02-11 04:26 - 000105984 _____ () C:\Users\Travis\AppData\Local\Temp\sfextra.dll
2016-08-16 18:18 - 2016-08-16 18:18 - 000488960 _____ () C:\Users\Travis\AppData\Local\Temp\sqlite3.exe
2017-06-13 17:27 - 2017-06-13 17:28 - 032100680 _____ () C:\Users\Travis\AppData\Local\Temp\vlc-2.2.6-win64.exe
Emptytemp:
 
*****************
 
Processes closed successfully.
Restore point was successfully created.
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-3607689352-1145326940-3145571553-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key removed successfully
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{d2bf470e-ed1c-487f-a777-2bd8835eb6ce} => value removed successfully
HKLM\Software\Classes\CLSID\{d2bf470e-ed1c-487f-a777-2bd8835eb6ce} => key not found. 
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{d2bf470e-ed1c-487f-a777-2bd8835eb6ce} => value removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{d2bf470e-ed1c-487f-a777-2bd8835eb6ce} => key not found. 
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
Chrome DefaultSuggestURL => removed successfully
C:\Users\Travis\AppData\Local\Google\Chrome\User Data\Default => moved successfully
C:\Users\Travis\AppData\Local\Temp\Ableton Swapper.exe => moved successfully
C:\Users\Travis\AppData\Local\Temp\iv_uninstall.exe => moved successfully
C:\Users\Travis\AppData\Local\Temp\jre-8u144-windows-au.exe => moved successfully
C:\Users\Travis\AppData\Local\Temp\Risweb32.exe => moved successfully
C:\Users\Travis\AppData\Local\Temp\sfamcc00001.dll => moved successfully
C:\Users\Travis\AppData\Local\Temp\sfextra.dll => moved successfully
C:\Users\Travis\AppData\Local\Temp\sqlite3.exe => moved successfully
C:\Users\Travis\AppData\Local\Temp\vlc-2.2.6-win64.exe => moved successfully
 
=========== EmptyTemp: ==========
 
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 278035524 B
Java, Flash, Steam htmlcache => 375442230 B
Windows/system/drivers => 46787318 B
Edge => 0 B
Chrome => 0 B
Firefox => 0 B
Opera => 0 B
 
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 23236 B
LocalService => 64840 B
NetworkService => 181382 B
defaultuser0 => 128 B
Travis => 1108411526 B
Travi => 8348 B
 
RecycleBin => 22830718 B
EmptyTemp: => 1.7 GB temporary data Removed.
 
================================
 
 
The system needed a reboot.
 
==== End of Fixlog 03:13:11 ====
 
 
# AdwCleaner 7.0.3.1 - Logfile created on Mon Oct 16 16:51:28 2017
# Updated on 2017/29/09 by Malwarebytes 
# Running on Windows 10 Enterprise 2016 LTSB (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support
 
***** [ Services ] *****
 
No malicious services deleted.
 
***** [ Folders ] *****
 
No malicious folders deleted.
 
***** [ Files ] *****
 
No malicious files deleted.
 
***** [ DLL ] *****
 
No malicious DLLs cleaned.
 
***** [ WMI ] *****
 
No malicious WMI cleaned.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts cleaned.
 
***** [ Tasks ] *****
 
No malicious tasks deleted.
 
***** [ Registry ] *****
 
No malicious registry entries deleted.
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries deleted.
 
***** [ Chromium (and derivatives) ] *****
 
No malicious Chromium entries deleted.
 
*************************
 
::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0
 
 
 
*************************
 
C:/AdwCleaner/AdwCleaner[C0].txt - [1286 B] - [2017/10/12 6:48:23]
C:/AdwCleaner/AdwCleaner[S0].txt - [1154 B] - [2017/10/12 6:47:56]
C:/AdwCleaner/AdwCleaner[S1].txt - [1097 B] - [2017/10/16 16:51:7]
 
 
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt ##########
 
 
 
 
Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 10/17/17
Scan Time: 3:23 AM
Log File: 93b11892-b292-11e7-95f8-1c1b0d93ad20.json
Administrator: Yes
 
-Software Information-
Version: 3.2.2.2029
Components Version: 1.0.212
Update Package Version: 1.0.3025
License: Trial
 
-System Information-
OS: Windows 10 (Build 14393.1770)
CPU: x64
File System: NTFS
User: DESKTOP-8C06IEM\Travis
 
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 451333
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 1 min, 53 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 0
(No malicious items detected)
 
Registry Value: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Data Stream: 0
(No malicious items detected)
 
Folder: 0
(No malicious items detected)
 
File: 0
(No malicious items detected)
 
Physical Sector: 0
(No malicious items detected)
 
 
(end)
good deal

[external image: G0tu5D9.png]Emsisoft Emergency Kit
Follow the instructions below to run a scan using the Emsisoft Emergency Kit.
  • Download the Emsisoft Emergency Kit and execute it. From there, click on the Install button to extract the program in the EEK folder;
  • Once the extraction is complete, the EEK folder will open. Right-click on [external image: G0tu5D9.png]start emergency kit scanner.exe and select [external image: Spcusrh.png]Run as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users);
  • EEK will suggest that you run an online update before using the program. Click on Yes to launch it.
  • After the update, click on Malware Scan under 2. Scan and accept to let EEK detect PUPs (click on Yes).
  • Once the scan is complete, make sure that every item in the list is checked, and click on the Quarantine selected button;
  • If it asks you for a reboot to delete some items, click on Ok to reboot automatically;
  • After the restart, open EEK again (in the C:\EEK folder);
  • This time, click on Logs;
  • From there, go under the Quarantine Log tab, and click on the Export button;
  • Save the log on your desktop, then open it, and copy/paste its content in your next reply;
created by Aura

After the scan runs, post the log please, also, let me know what the computer is doing now.
Can't find any adware files hidden around the place and those chrome extensions are gone for now so all good, cheers. Any tips on preventing this for next time? I'm pretty careful, not sure how these ones hitch-hiked onto my pc.
It's music to my ears!

DelFix
  • Please download DelFix or from Here and save the file to your Desktop.
  • Double-click DelFix.exe to run the programme.
  • Place a checkmark next to the following items:
  • Activate UAC
  • Remove disinfection tools
  • Click the Run button.
  • – This will remove the specialized tools we used to disinfect your system.
    Any leftover logs, files, folders or tools remaining on your Desktop which were not removed can be deleted manually (right-click the file + delete
    ).
*******************

~~~~~~~~~~~~~~
  • Answers to common security questions - Best Practices by quietman7, MVP
  • How Malware Spreads - How did I get infected? by quietman7, MVP
  • Simple and easy ways to keep your computer safe and secure on the Internet by Lawrence Abrams, MVP
  • How to Prevent Malware by miekiemoes, MVP
  • How to backup and restore your data using Cobian Backup by YourHighness
  • Slow Computer/browser? It May Not Be Malware by quietman7, MVP
  • AdBlock is a browser add-on that blocks annoying banners, pop-ups and video ads.
  • [external image: E8I37RF.png]CryptoPrevent places policy restrictions on loading points for ransomware (eg. CryptoWall), helping prevent the execution of malware.
  • [external image: EG85Vjt.png]Malwarebytes Anti-Exploit (MBAE) is designed to prevent zero-day malware from exploiting vulnerable software.
  • [external image: 6YRrgUC.png]Malwarebytes Anti-Malware Premium (MBAM) works in real-time along side your Anti-Virus to prevent malware execution.
  • [external image: jv4nhMJ.png]NoScript is a Firefox add-on that blocks the actions of malicious scripts by using whitelisting and other technology.
  • [external image: 3O8r9Uq.png] Sandboxie isolates programmes of your choice, preventing files from being written to your HDD unless approved by you.
  • [external image: DgW1XL2.png]Secunia PSI will scan your computer for vulnerable software that is outdated, and automatically find the latest update for you.
  • [external image: j1OLIec.png]SpywareBlaster is a form of passive protection, designed to block the actions of malicious websites and tracking cookies.
  • [external image: sHjS79L.png]Unchecky automatically removes checkmarks for bunlded software in programme installers; helping you avoid adware and PUPs.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI