Konishi
Posts: 149 +0
Basicaly I installed a game who installed this another program in my computer and I can't remove it normally.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:03-06-2016
Ran by Konishi (administrator) on KONISHI-PC (04-06-2016 18:35:09)
Running from C:\Users\Konishi\Desktop
Loaded Profiles: Konishi (Available Profiles: Konishi)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Tencent) C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQPCRTP.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Sunbelt Software) C:\Program Files (x86)\Sunbelt Software\VIPRE\SBPIMSvc.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
() C:\GIGABYTE FORCE\GIGABYTE FORCE.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Tencent) C:\Program Files\TencentGame\Monster Hunter Online\Bin\Client\IIPS\iipshostapp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Sunbelt Software) C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe
(Sunbelt Software) C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SBRegRebootCleaner] => C:\Program Files (x86)\Sunbelt Software\VIPRE\SBRC.exe [197968 2011-05-11] (Sunbelt Software)
HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [847160 2015-02-13] (GAS Tecnologia LTDA)
HKLM-x32\...\Run: [SBAMTray] => C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe [1353040 2011-05-11] (Sunbelt Software)
HKLM-x32\...\Run: [GMouse] => C:\GIGABYTE FORCE\GIGABYTE FORCE.EXE [1253376 2012-10-04] ()
HKLM-x32\...\Run: [ QQPCTray] => C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQPCTray.exe [362304 2016-06-03] (Tencent)
Winlogon\Notify\ GbPluginBb: C:\Program Files (x86)\GbPlugin\gbieh.dll [2015-10-20] (Banco do Brasil)
HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\...\Run: [TQOS_REPORT] => c:\program files\tencentgame\monster hunter online\bin\client\tools\tqos_reporter.exe [440832 2015-10-27] ()
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\Program Files (x86)\GbPlugin\gbieh.dll [1945472 2015-10-20] (Banco do Brasil)
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QMGCShellExt64.dll [2016-06-03] (Tencent)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{363960C9-CA6B-4BB1-8E41-AFFABA666BE0}: [DhcpNameServer] 7.254.254.254
Tcpip\..\Interfaces\{B56C9954-5873-414B-B39F-267B05C3B6F0}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://df.nexon.com
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TSWebMon64.dat [2016-06-03] (Tencent)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\Program Files (x86)\GbPlugin\gbieh.dll [2015-10-20] (Banco do Brasil)
FireFox:
========
FF ProfilePath: C:\Users\Konishi\AppData\Roaming\Mozilla\Firefox\Profiles\s1rehta2.default-1442513781816
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-30] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-30] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @qq.com/QQPCMgr -> C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\npQMExtensionsMozilla.dll [2016-06-03] (Tencent Technology (Shenzhen) Company Limited)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1519485860-2903035351-2837986310-1000: @neople.co.kr/NeopleGameInstaller -> C:\ProgramData\NeoplePlugin\npNeopleGameInstaller.dll [2014-08-16] ( )
FF Plugin HKU\S-1-5-21-1519485860-2903035351-2837986310-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Konishi\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS)
FF Extension: Adblock Plus - C:\Users\Konishi\AppData\Roaming\Mozilla\Firefox\Profiles\s1rehta2.default-1442513781816\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-29]
FF HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\...\Firefox\Extensions: [{87F8774F-B485-47E2-A755-A40A8A5E886C}] - C:\Users\Konishi\AppData\Local\GAS Tecnologia\GBBD\bb\xpi => not found
Chrome:
=======
CHR Profile: C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Apresentações) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-26]
CHR Extension: (BetterTTV) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-06-03]
CHR Extension: (Google Docs) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-13]
CHR Extension: (Google Drive) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Planilhas do Google) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-26]
CHR Extension: (Documentos Google off-line) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (AdBlock) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-01]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01]
CHR Extension: (Gmail) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-28]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1583488 2016-01-24] (Echobit LLC)
R2 GbpSv; C:\Program Files (x86)\GbPlugin\gbpsv.exe [593120 2015-09-22] (GAS Tecnologia)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3310176 2014-05-13] (INCA Internet Co., Ltd.)
R2 QQPCRTP; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQPCRTP.exe [313936 2016-06-03] (Tencent)
U2 QQRepair11f9; C:\Program Files (x86)\Tencent\QQPCMGR\QQRepair11f9 [147176 2016-06-04] ()
S2 QQRepairFixSVC; C:\Program Files (x86)\Tencent\QQPCMGR\QQRepairFixSVC [147176 2016-06-04] ()
R2 SBAMSvc; C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe [2804280 2011-05-11] (Sunbelt Software)
R2 SBPIMSvc; C:\Program Files (x86)\Sunbelt Software\VIPRE\SBPIMSvc.exe [181584 2011-05-11] (Sunbelt Software)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [814064 2015-12-22] (Tunngle.net GmbH)
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [847160 2015-02-13] (GAS Tecnologia LTDA)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-09-25] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-07-27] (Echobit, LLC)
R1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [28888 2016-06-04] (GAS Tecnologia)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2015-11-25] (GAS Tecnologia)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0036.sys [40704 2015-07-18] (SoftEther Corporation)
R1 QMUdisk; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QMUdisk64.sys [184952 2016-05-18] (Tencent)
R2 QQSysMonX64; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQSysMonX64.sys [154744 2016-06-03] (电脑管家)
R2 sbapifs; C:\Windows\System32\DRIVERS\sbapifs.sys [72280 2011-05-11] (Sunbelt Software)
R1 SbFw; C:\Windows\System32\drivers\SbFw.sys [253528 2011-04-05] (Sunbelt Software, Inc.)
S3 SBFWIMCL; C:\Windows\System32\DRIVERS\sbfwim.sys [84568 2011-02-08] (Sunbelt Software, Inc.)
R3 SBFWIMCLMP; C:\Windows\System32\DRIVERS\SBFWIM.sys [84568 2011-02-08] (Sunbelt Software, Inc.)
S3 sbhips; C:\Windows\System32\drivers\sbhips.sys [60504 2011-04-05] (Sunbelt Software, Inc.)
R1 SBRE; C:\Windows\system32\drivers\SBREdrv.sys [55384 2011-04-29] (Sunbelt Software)
R1 SBRE; C:\Windows\SysWOW64\drivers\SBREdrv.sys [101720 2011-04-29] (Sunbelt Software)
R1 SbTis; C:\Windows\System32\drivers\sbtis.sys [94296 2011-04-05] (Sunbelt Software, Inc.)
R1 softaal; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\softaal64.sys [44664 2016-06-03] (Tencent)
R1 SRepairDrv; \??\C:\Program Files (x86)\Tencent\QQPCMGR\SRepairDrv [179320 2016-06-04] ()
R3 TAOAccelerator; C:\Windows\system32\Drivers\TAOAccelerator64.sys [99480 2016-06-03] (Tencent)
R1 TAOKernelDriver; C:\Windows\system32\Drivers\TAOKernel64.sys [147576 2016-06-03] (Tencent Technology(Shenzhen) Company Limited)
S3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [47736 2015-12-21] (Tunngle.net)
R3 TesMon; C:\Windows\system32\TesMon.sys [71976 2016-06-04] (Tencent)
S3 TesSafe; C:\Windows\system32\TesSafe.sys [1101024 2016-06-04] (TENCENT)
R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [97400 2016-06-03] (电脑管家)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [24688 2016-02-25] ()
R3 TS888x64; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TS888x64.sys [38520 2016-06-04] (Tencent)
R1 TSDefenseBt; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TSDefenseBT64.sys [28984 2016-06-03] (Tencent)
R2 tsnethlpx64; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TsNetHlpX64.sys [57976 2016-06-03] ()
S3 TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [54904 2016-06-03] (电脑管家)
R1 TSSysKit; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TSSysKit64.sys [96888 2016-06-03] (电脑管家)
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2015-11-25] (GAS Tecnologia LTDA)
S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-04 18:35 - 2016-06-04 18:36 - 00014882 _____ C:\Users\Konishi\Desktop\FRST.txt
2016-06-04 18:34 - 2016-06-04 18:35 - 00000000 ____D C:\FRST
2016-06-04 18:29 - 2016-06-04 18:29 - 02384384 _____ (Farbar) C:\Users\Konishi\Desktop\FRST64.exe
2016-06-04 18:17 - 2016-06-04 18:23 - 00038520 _____ (Tencent) C:\Windows\SysWOW64\Drivers\TS888x64.sys
2016-06-04 18:17 - 2016-06-04 18:17 - 00000000 ____D C:\Program Files (x86)\Tencent
2016-06-04 18:01 - 2016-06-04 18:19 - 00000000 ____D C:\ProgramData\TXQMPC
2016-06-04 18:01 - 2016-06-04 18:01 - 00112868 ____H C:\Windows\SysWOW64\mlfcache.dat
2016-06-04 18:01 - 2016-06-04 18:01 - 00000000 ____D C:\Program Files\Common Files\Tencent
2016-06-04 18:01 - 2016-06-03 20:20 - 00147576 _____ (Tencent Technology(Shenzhen) Company Limited) C:\Windows\system32\Drivers\TAOKernel64.sys
2016-06-04 18:01 - 2016-06-03 20:20 - 00099480 _____ (Tencent) C:\Windows\system32\Drivers\TAOAccelerator64.sys
2016-06-04 17:59 - 2016-06-04 18:25 - 00000000 ____D C:\Users\Konishi\Documents\MonsterHunterOnline
2016-06-04 17:56 - 2016-06-03 20:20 - 00054904 _____ (电脑管家) C:\Windows\system32\Drivers\TSSKX64.sys
2016-06-04 17:55 - 2016-06-04 17:55 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
2016-06-04 17:55 - 2016-06-03 20:20 - 00097400 _____ (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys
2016-06-04 17:10 - 2016-06-04 17:10 - 00000030 _____ C:\Users\Konishi\Downloads\QQ_2847212273.txt
2016-06-04 15:22 - 2016-06-04 15:22 - 38097007 _____ C:\Users\Konishi\Downloads\(3DBooruDump) Ushijima Iiniku.rar
2016-06-04 15:10 - 2016-06-04 15:10 - 00013932 _____ C:\Users\Konishi\Downloads\ushijimaiinikudouga2.torrent
2016-06-04 13:13 - 2016-06-04 13:15 - 57770378 _____ (NT Company) C:\Users\Konishi\Downloads\SetupNoPing_v11.exe
2016-06-03 21:08 - 2016-06-03 21:09 - 55939211 _____ ( ) C:\Users\Konishi\Downloads\Team HD - English Patch v1.1.1.exe
2016-06-03 21:07 - 2016-06-03 21:07 - 00000000 ____D C:\Program Files (x86)\TencentGame
2016-06-03 21:03 - 2016-06-03 21:10 - 00000000 ____D C:\Users\Konishi\AppData\Local\TeamHD
2016-06-03 21:02 - 2016-06-03 21:02 - 00768363 _____ C:\Users\Konishi\Downloads\Team HD - English Patch Updater.rar
2016-06-03 20:36 - 2016-06-04 18:23 - 00071976 _____ (Tencent) C:\Windows\system32\TesMon.sys
2016-06-03 20:19 - 2016-06-04 18:24 - 01101024 _____ (TENCENT) C:\Windows\system32\TesSafe.sys
2016-06-03 20:19 - 2016-06-04 18:03 - 00000000 ____D C:\ProgramData\Tencent
2016-06-03 20:19 - 2016-06-04 13:15 - 00000945 _____ C:\Users\Konishi\Desktop\Monster Hunter Online.lnk
2016-06-03 20:19 - 2016-06-03 20:19 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent Game
2016-06-03 15:03 - 2016-06-03 15:09 - 568683966 ____R C:\Users\Konishi\Downloads\[HorribleSubs] JoJo's Bizarre Adventure - Diamond is Unbreakable - 10 [1080p].mkv
2016-06-03 03:45 - 2016-06-04 17:55 - 00000000 ____D C:\Program Files\TencentGame
2016-06-03 01:42 - 2016-06-04 18:17 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Tencent
2016-06-03 01:41 - 2016-06-03 01:41 - 03381144 _____ C:\Users\Konishi\Downloads\MHO_Setup_1.0.8.182_QQVIPDL_signed.exe
2016-06-02 20:33 - 2016-06-02 20:33 - 00873207 _____ C:\Users\Konishi\Downloads\tibiacast_3_1_61_0.zip
2016-06-02 12:24 - 2016-05-28 19:35 - 00049292 _____ C:\Users\Konishi\Downloads\Hardcore.Henry.2016.720p.HC.HDRip.750MB.MkvCage.srt
2016-06-02 12:23 - 2016-06-02 12:23 - 00151457 _____ C:\Users\Konishi\Downloads\legendas_tv_20160529102747000000.rar
2016-06-01 15:38 - 2016-06-01 16:29 - 00000000 ____D C:\Users\Konishi\Downloads\[PIC] imouto.tv collection 2-kunoichi
2016-05-31 14:29 - 2016-05-31 14:29 - 02530304 _____ (BitTorrent Inc.) C:\Users\Konishi\Downloads\uTorrent.exe
2016-05-29 18:03 - 2016-05-29 18:08 - 767783652 ____R C:\Users\Konishi\Downloads\[HorribleSubs] Boku no Hero Academia - 09 [1080p].mkv
2016-05-29 00:03 - 2016-05-29 00:03 - 00000000 ____D C:\Users\Konishi\AppData\LocalLow\Jagex Ltd
2016-05-28 23:19 - 2016-05-28 23:29 - 789057625 ____R C:\Users\Konishi\Downloads\Hardcore.Henry.2016.720p.HC.HDRip.750MB.MkvCage.mkv
2016-05-28 15:25 - 2016-05-28 15:30 - 571636324 ____R C:\Users\Konishi\Downloads\[HorribleSubs] Ace Attorney - 09 [1080p].mkv
2016-05-28 02:08 - 2016-05-28 23:25 - 00000000 ____D C:\Users\Konishi\Downloads\ピンキーwebdl086-098&othersets
2016-05-27 15:42 - 2016-05-27 15:48 - 568089187 ____R C:\Users\Konishi\Downloads\[HorribleSubs] JoJo's Bizarre Adventure - Diamond is Unbreakable - 09 [1080p].mkv
2016-05-22 23:42 - 2016-05-22 23:52 - 1151793340 ____R C:\Users\Konishi\Downloads\[HorribleSubs] Shouwa Genroku Rakugo Shinjuu - 01 [1080p].mkv
2016-05-19 23:20 - 2016-05-19 23:20 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2016-05-19 23:07 - 2016-05-19 23:07 - 00000000 ____D C:\Users\Konishi\Desktop\SltndSnctrv1003-MPCG
2016-05-18 17:10 - 2016-06-04 13:28 - 00270360 _____ C:\Windows\system32\FNTCACHE.DAT
2016-05-17 17:48 - 2016-06-04 14:20 - 00059216 _____ C:\Users\Konishi\AppData\Local\GDIPFONTCACHEV1.DAT
2016-05-16 18:56 - 2016-05-20 17:09 - 3790461347 _____ C:\Users\Konishi\Desktop\tppn-084.HD.mp4
2016-05-16 18:48 - 2016-05-21 00:48 - 322497394 _____ C:\Users\Konishi\Downloads\abp-365.HD.mp4
2016-05-16 17:17 - 2016-06-04 18:32 - 00000000 ____D C:\Users\Konishi\Desktop\New folder
2016-05-16 17:17 - 2016-05-16 17:17 - 00431026 _____ C:\Users\Konishi\Desktop\FORMULARIO DE RMA 2016.pdf
2016-05-16 16:25 - 2016-05-16 16:25 - 00131909 _____ C:\Users\Konishi\Downloads\FORMULARIO DE RMA 2016.pdf
2016-05-16 04:28 - 2016-05-16 04:28 - 00828232 _____ C:\Users\Konishi\Downloads\Akiba Online Complete U-15 Index of Torrents.torrent
2016-05-15 16:57 - 2016-05-15 16:57 - 00029879 _____ C:\Users\Konishi\Downloads\[HorribleSubs] Boku no Hero Academia - 07 [1080p].mkv.torrent
2016-05-14 06:30 - 2016-05-14 06:53 - 1347659414 ____R C:\Users\Konishi\Downloads\[Show Girl] GCOLB-001.mp4
2016-05-12 23:27 - 2016-05-12 23:27 - 02137813 _____ C:\Users\Konishi\Downloads\PPSSPPWindows64normal-1.mp4
2016-05-12 09:21 - 2016-05-12 09:56 - 00000000 ____D C:\Program Files (x86)\Danganronpa 2 Goodbye Despair
2016-05-10 23:19 - 2016-05-10 23:39 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Vso
2016-05-10 23:19 - 2016-05-10 23:19 - 00118400 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\ezplay.sys
2016-05-10 23:19 - 2016-05-10 23:19 - 00099384 _____ C:\Users\Konishi\AppData\Roaming\inst.exe
2016-05-10 23:19 - 2016-05-10 23:19 - 00082816 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\pcouffin.sys
2016-05-10 23:19 - 2016-05-10 23:19 - 00007859 _____ C:\Users\Konishi\AppData\Roaming\pcouffin.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 00007833 _____ C:\Users\Konishi\AppData\Roaming\ezplay.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 00001153 _____ C:\Users\Konishi\Desktop\BlindWrite 7.lnk
2016-05-10 23:19 - 2016-05-10 23:19 - 00000125 _____ C:\Users\Konishi\AppData\Roaming\ezplay.ini
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Users\Konishi\Documents\PcSetup
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\ProgramData\VSO
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Program Files (x86)\VSO
2016-05-10 22:45 - 2016-05-10 22:45 - 00000000 ____D C:\Program Files (x86)\Alex Feinman
2016-05-10 22:03 - 2016-05-13 16:13 - 00000000 ____D C:\Users\Konishi\Documents\Coisas pra levar pro pc novo
2016-05-07 06:12 - 2016-05-07 06:14 - 143217472 _____ C:\Users\Konishi\Downloads\[160506][chippai]LO Reパコ すくすくみずきちゃん THE ANIMATION.mp4
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-04 18:33 - 2014-08-18 20:24 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-04 18:27 - 2009-07-14 01:45 - 00020096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-04 18:27 - 2009-07-14 01:45 - 00020096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-04 18:17 - 2015-09-16 05:28 - 00028888 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpddfac64.sys
2016-06-04 18:17 - 2014-11-17 12:43 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2016-06-04 18:16 - 2014-08-18 20:24 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-04 18:16 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-04 18:00 - 2014-07-27 04:21 - 00000000 ____D C:\Users\Konishi\AppData\Local\VirtualStore
2016-06-04 17:49 - 2015-06-01 14:16 - 00000982 _____ C:\Users\Konishi\Desktop\New Text Document.txt
2016-06-04 16:26 - 2014-07-27 02:35 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-04 15:33 - 2015-09-18 15:00 - 00000000 ____D C:\Users\Konishi\AppData\LocalLow\uTorrent
2016-06-04 15:33 - 2014-07-27 21:32 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\uTorrent
2016-06-04 15:26 - 2014-07-27 21:56 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\vlc
2016-06-03 17:58 - 2015-06-16 15:25 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-06-02 20:36 - 2015-07-02 21:17 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibiacast
2016-06-02 20:36 - 2015-07-02 21:17 - 00000000 ____D C:\Program Files (x86)\Tibiacast
2016-06-01 16:57 - 2015-06-04 00:35 - 00000000 ____D C:\Users\Konishi\AppData\Local\CrashDumps
2016-06-01 15:23 - 2015-03-04 04:43 - 00000000 ____D C:\Users\Konishi\AppData\Local\Battle.net
2016-06-01 14:18 - 2015-05-04 07:17 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-06-01 13:26 - 2015-03-04 04:43 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-05-31 21:08 - 2015-06-08 04:41 - 00000000 ____D C:\Program Files (x86)\Tibia
2016-05-31 14:32 - 2016-03-12 14:47 - 00002651 _____ C:\Users\Konishi\Desktop\µTorrent.lnk
2016-05-29 22:45 - 2015-06-02 17:58 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-05-29 07:27 - 2015-05-12 06:43 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\mIRC
2016-05-29 03:50 - 2016-03-29 09:07 - 00003624 _____ C:\Users\Konishi\Documents\SemLag.xml
2016-05-29 01:33 - 2016-03-29 09:08 - 00000408 _____ C:\Users\Konishi\AppData\Roaming\comhsx
2016-05-29 00:03 - 2014-07-27 09:36 - 00000000 ____D C:\ProgramData\Package Cache
2016-05-25 13:13 - 2016-03-29 09:05 - 00000000 ____D C:\Program Files (x86)\SemLag Pro
2016-05-23 06:24 - 2015-03-15 11:03 - 00000000 ____D C:\Windows\System32\Tasks\Games
2016-05-18 04:00 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-05-17 16:57 - 2014-09-25 11:22 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\DAEMON Tools Lite
2016-05-17 16:55 - 2015-06-01 13:55 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-05-13 12:58 - 2009-07-14 02:08 - 00032588 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-05-12 22:34 - 2014-08-18 20:27 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-12 17:10 - 2015-06-16 15:25 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-05-12 10:25 - 2014-08-01 00:02 - 00000000 ____D C:\Users\Konishi\Documents\My Games
2016-05-11 02:56 - 2016-04-19 00:21 - 00000000 ____D C:\Users\Konishi\Desktop\New fol
2016-05-10 23:27 - 2015-11-17 14:30 - 00000000 ____D C:\ProgramData\GbPlugin
2016-05-10 20:28 - 2014-08-18 20:24 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-10 20:28 - 2014-08-18 20:24 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-05 19:48 - 2016-03-27 16:51 - 00000000 ____D C:\ProgramData\Umineko4final
==================== Files in the root of some directories =======
2016-03-29 09:08 - 2016-05-29 01:33 - 0000408 _____ () C:\Users\Konishi\AppData\Roaming\comhsx
2016-05-10 23:19 - 2016-05-10 23:19 - 0007833 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 0001126 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.inf
2016-05-10 23:19 - 2016-05-10 23:19 - 0000125 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.ini
2016-05-10 23:20 - 2016-05-10 23:20 - 0000074 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.log
2016-05-10 23:19 - 2016-05-10 23:19 - 0118400 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\ezplay.sys
2016-05-10 23:19 - 2016-05-10 23:19 - 0099384 _____ () C:\Users\Konishi\AppData\Roaming\inst.exe
2016-05-10 23:19 - 2016-05-10 23:19 - 0007859 _____ () C:\Users\Konishi\AppData\Roaming\pcouffin.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 0001167 _____ () C:\Users\Konishi\AppData\Roaming\pcouffin.inf
2016-05-10 23:19 - 2016-05-10 23:19 - 0000055 _____ () C:\Users\Konishi\AppData\Roaming\pcouffin.log
2016-05-10 23:19 - 2016-05-10 23:19 - 0082816 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\pcouffin.sys
2016-03-29 09:08 - 2016-03-29 09:08 - 0000020 _____ () C:\Users\Konishi\AppData\Roaming\system.xml
2016-03-18 00:45 - 2016-03-18 00:45 - 0002722 _____ () C:\Users\Konishi\AppData\Local\recently-used.xbel
Some files in TEMP:
====================
C:\Users\Konishi\AppData\Local\Temp\QQPCDOWNLOAD74707.EXE
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-28 19:04
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:03-06-2016
Ran by Konishi (administrator) on KONISHI-PC (04-06-2016 18:35:09)
Running from C:\Users\Konishi\Desktop
Loaded Profiles: Konishi (Available Profiles: Konishi)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Tencent) C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQPCRTP.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Sunbelt Software) C:\Program Files (x86)\Sunbelt Software\VIPRE\SBPIMSvc.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
() C:\GIGABYTE FORCE\GIGABYTE FORCE.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Tencent) C:\Program Files\TencentGame\Monster Hunter Online\Bin\Client\IIPS\iipshostapp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Sunbelt Software) C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe
(Sunbelt Software) C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SBRegRebootCleaner] => C:\Program Files (x86)\Sunbelt Software\VIPRE\SBRC.exe [197968 2011-05-11] (Sunbelt Software)
HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [847160 2015-02-13] (GAS Tecnologia LTDA)
HKLM-x32\...\Run: [SBAMTray] => C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe [1353040 2011-05-11] (Sunbelt Software)
HKLM-x32\...\Run: [GMouse] => C:\GIGABYTE FORCE\GIGABYTE FORCE.EXE [1253376 2012-10-04] ()
HKLM-x32\...\Run: [ QQPCTray] => C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQPCTray.exe [362304 2016-06-03] (Tencent)
Winlogon\Notify\ GbPluginBb: C:\Program Files (x86)\GbPlugin\gbieh.dll [2015-10-20] (Banco do Brasil)
HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\...\Run: [TQOS_REPORT] => c:\program files\tencentgame\monster hunter online\bin\client\tools\tqos_reporter.exe [440832 2015-10-27] ()
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\Program Files (x86)\GbPlugin\gbieh.dll [1945472 2015-10-20] (Banco do Brasil)
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QMGCShellExt64.dll [2016-06-03] (Tencent)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{363960C9-CA6B-4BB1-8E41-AFFABA666BE0}: [DhcpNameServer] 7.254.254.254
Tcpip\..\Interfaces\{B56C9954-5873-414B-B39F-267B05C3B6F0}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://df.nexon.com
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TSWebMon64.dat [2016-06-03] (Tencent)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\Program Files (x86)\GbPlugin\gbieh.dll [2015-10-20] (Banco do Brasil)
FireFox:
========
FF ProfilePath: C:\Users\Konishi\AppData\Roaming\Mozilla\Firefox\Profiles\s1rehta2.default-1442513781816
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-30] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-30] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @qq.com/QQPCMgr -> C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\npQMExtensionsMozilla.dll [2016-06-03] (Tencent Technology (Shenzhen) Company Limited)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1519485860-2903035351-2837986310-1000: @neople.co.kr/NeopleGameInstaller -> C:\ProgramData\NeoplePlugin\npNeopleGameInstaller.dll [2014-08-16] ( )
FF Plugin HKU\S-1-5-21-1519485860-2903035351-2837986310-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Konishi\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS)
FF Extension: Adblock Plus - C:\Users\Konishi\AppData\Roaming\Mozilla\Firefox\Profiles\s1rehta2.default-1442513781816\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-29]
FF HKU\S-1-5-21-1519485860-2903035351-2837986310-1000\...\Firefox\Extensions: [{87F8774F-B485-47E2-A755-A40A8A5E886C}] - C:\Users\Konishi\AppData\Local\GAS Tecnologia\GBBD\bb\xpi => not found
Chrome:
=======
CHR Profile: C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Apresentações) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-26]
CHR Extension: (BetterTTV) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-06-03]
CHR Extension: (Google Docs) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-13]
CHR Extension: (Google Drive) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Planilhas do Google) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-26]
CHR Extension: (Documentos Google off-line) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (AdBlock) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-01]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01]
CHR Extension: (Gmail) - C:\Users\Konishi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-28]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1583488 2016-01-24] (Echobit LLC)
R2 GbpSv; C:\Program Files (x86)\GbPlugin\gbpsv.exe [593120 2015-09-22] (GAS Tecnologia)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3310176 2014-05-13] (INCA Internet Co., Ltd.)
R2 QQPCRTP; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQPCRTP.exe [313936 2016-06-03] (Tencent)
U2 QQRepair11f9; C:\Program Files (x86)\Tencent\QQPCMGR\QQRepair11f9 [147176 2016-06-04] ()
S2 QQRepairFixSVC; C:\Program Files (x86)\Tencent\QQPCMGR\QQRepairFixSVC [147176 2016-06-04] ()
R2 SBAMSvc; C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe [2804280 2011-05-11] (Sunbelt Software)
R2 SBPIMSvc; C:\Program Files (x86)\Sunbelt Software\VIPRE\SBPIMSvc.exe [181584 2011-05-11] (Sunbelt Software)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [814064 2015-12-22] (Tunngle.net GmbH)
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [847160 2015-02-13] (GAS Tecnologia LTDA)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-09-25] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-07-27] (Echobit, LLC)
R1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [28888 2016-06-04] (GAS Tecnologia)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2015-11-25] (GAS Tecnologia)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0036.sys [40704 2015-07-18] (SoftEther Corporation)
R1 QMUdisk; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QMUdisk64.sys [184952 2016-05-18] (Tencent)
R2 QQSysMonX64; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\QQSysMonX64.sys [154744 2016-06-03] (电脑管家)
R2 sbapifs; C:\Windows\System32\DRIVERS\sbapifs.sys [72280 2011-05-11] (Sunbelt Software)
R1 SbFw; C:\Windows\System32\drivers\SbFw.sys [253528 2011-04-05] (Sunbelt Software, Inc.)
S3 SBFWIMCL; C:\Windows\System32\DRIVERS\sbfwim.sys [84568 2011-02-08] (Sunbelt Software, Inc.)
R3 SBFWIMCLMP; C:\Windows\System32\DRIVERS\SBFWIM.sys [84568 2011-02-08] (Sunbelt Software, Inc.)
S3 sbhips; C:\Windows\System32\drivers\sbhips.sys [60504 2011-04-05] (Sunbelt Software, Inc.)
R1 SBRE; C:\Windows\system32\drivers\SBREdrv.sys [55384 2011-04-29] (Sunbelt Software)
R1 SBRE; C:\Windows\SysWOW64\drivers\SBREdrv.sys [101720 2011-04-29] (Sunbelt Software)
R1 SbTis; C:\Windows\System32\drivers\sbtis.sys [94296 2011-04-05] (Sunbelt Software, Inc.)
R1 softaal; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\softaal64.sys [44664 2016-06-03] (Tencent)
R1 SRepairDrv; \??\C:\Program Files (x86)\Tencent\QQPCMGR\SRepairDrv [179320 2016-06-04] ()
R3 TAOAccelerator; C:\Windows\system32\Drivers\TAOAccelerator64.sys [99480 2016-06-03] (Tencent)
R1 TAOKernelDriver; C:\Windows\system32\Drivers\TAOKernel64.sys [147576 2016-06-03] (Tencent Technology(Shenzhen) Company Limited)
S3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [47736 2015-12-21] (Tunngle.net)
R3 TesMon; C:\Windows\system32\TesMon.sys [71976 2016-06-04] (Tencent)
S3 TesSafe; C:\Windows\system32\TesSafe.sys [1101024 2016-06-04] (TENCENT)
R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [97400 2016-06-03] (电脑管家)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [24688 2016-02-25] ()
R3 TS888x64; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TS888x64.sys [38520 2016-06-04] (Tencent)
R1 TSDefenseBt; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TSDefenseBT64.sys [28984 2016-06-03] (Tencent)
R2 tsnethlpx64; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TsNetHlpX64.sys [57976 2016-06-03] ()
S3 TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [54904 2016-06-03] (电脑管家)
R1 TSSysKit; C:\Program Files\TencentGame\QQPCMgr\11.5.17480.801\TSSysKit64.sys [96888 2016-06-03] (电脑管家)
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2015-11-25] (GAS Tecnologia LTDA)
S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-04 18:35 - 2016-06-04 18:36 - 00014882 _____ C:\Users\Konishi\Desktop\FRST.txt
2016-06-04 18:34 - 2016-06-04 18:35 - 00000000 ____D C:\FRST
2016-06-04 18:29 - 2016-06-04 18:29 - 02384384 _____ (Farbar) C:\Users\Konishi\Desktop\FRST64.exe
2016-06-04 18:17 - 2016-06-04 18:23 - 00038520 _____ (Tencent) C:\Windows\SysWOW64\Drivers\TS888x64.sys
2016-06-04 18:17 - 2016-06-04 18:17 - 00000000 ____D C:\Program Files (x86)\Tencent
2016-06-04 18:01 - 2016-06-04 18:19 - 00000000 ____D C:\ProgramData\TXQMPC
2016-06-04 18:01 - 2016-06-04 18:01 - 00112868 ____H C:\Windows\SysWOW64\mlfcache.dat
2016-06-04 18:01 - 2016-06-04 18:01 - 00000000 ____D C:\Program Files\Common Files\Tencent
2016-06-04 18:01 - 2016-06-03 20:20 - 00147576 _____ (Tencent Technology(Shenzhen) Company Limited) C:\Windows\system32\Drivers\TAOKernel64.sys
2016-06-04 18:01 - 2016-06-03 20:20 - 00099480 _____ (Tencent) C:\Windows\system32\Drivers\TAOAccelerator64.sys
2016-06-04 17:59 - 2016-06-04 18:25 - 00000000 ____D C:\Users\Konishi\Documents\MonsterHunterOnline
2016-06-04 17:56 - 2016-06-03 20:20 - 00054904 _____ (电脑管家) C:\Windows\system32\Drivers\TSSKX64.sys
2016-06-04 17:55 - 2016-06-04 17:55 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
2016-06-04 17:55 - 2016-06-03 20:20 - 00097400 _____ (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys
2016-06-04 17:10 - 2016-06-04 17:10 - 00000030 _____ C:\Users\Konishi\Downloads\QQ_2847212273.txt
2016-06-04 15:22 - 2016-06-04 15:22 - 38097007 _____ C:\Users\Konishi\Downloads\(3DBooruDump) Ushijima Iiniku.rar
2016-06-04 15:10 - 2016-06-04 15:10 - 00013932 _____ C:\Users\Konishi\Downloads\ushijimaiinikudouga2.torrent
2016-06-04 13:13 - 2016-06-04 13:15 - 57770378 _____ (NT Company) C:\Users\Konishi\Downloads\SetupNoPing_v11.exe
2016-06-03 21:08 - 2016-06-03 21:09 - 55939211 _____ ( ) C:\Users\Konishi\Downloads\Team HD - English Patch v1.1.1.exe
2016-06-03 21:07 - 2016-06-03 21:07 - 00000000 ____D C:\Program Files (x86)\TencentGame
2016-06-03 21:03 - 2016-06-03 21:10 - 00000000 ____D C:\Users\Konishi\AppData\Local\TeamHD
2016-06-03 21:02 - 2016-06-03 21:02 - 00768363 _____ C:\Users\Konishi\Downloads\Team HD - English Patch Updater.rar
2016-06-03 20:36 - 2016-06-04 18:23 - 00071976 _____ (Tencent) C:\Windows\system32\TesMon.sys
2016-06-03 20:19 - 2016-06-04 18:24 - 01101024 _____ (TENCENT) C:\Windows\system32\TesSafe.sys
2016-06-03 20:19 - 2016-06-04 18:03 - 00000000 ____D C:\ProgramData\Tencent
2016-06-03 20:19 - 2016-06-04 13:15 - 00000945 _____ C:\Users\Konishi\Desktop\Monster Hunter Online.lnk
2016-06-03 20:19 - 2016-06-03 20:19 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent Game
2016-06-03 15:03 - 2016-06-03 15:09 - 568683966 ____R C:\Users\Konishi\Downloads\[HorribleSubs] JoJo's Bizarre Adventure - Diamond is Unbreakable - 10 [1080p].mkv
2016-06-03 03:45 - 2016-06-04 17:55 - 00000000 ____D C:\Program Files\TencentGame
2016-06-03 01:42 - 2016-06-04 18:17 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Tencent
2016-06-03 01:41 - 2016-06-03 01:41 - 03381144 _____ C:\Users\Konishi\Downloads\MHO_Setup_1.0.8.182_QQVIPDL_signed.exe
2016-06-02 20:33 - 2016-06-02 20:33 - 00873207 _____ C:\Users\Konishi\Downloads\tibiacast_3_1_61_0.zip
2016-06-02 12:24 - 2016-05-28 19:35 - 00049292 _____ C:\Users\Konishi\Downloads\Hardcore.Henry.2016.720p.HC.HDRip.750MB.MkvCage.srt
2016-06-02 12:23 - 2016-06-02 12:23 - 00151457 _____ C:\Users\Konishi\Downloads\legendas_tv_20160529102747000000.rar
2016-06-01 15:38 - 2016-06-01 16:29 - 00000000 ____D C:\Users\Konishi\Downloads\[PIC] imouto.tv collection 2-kunoichi
2016-05-31 14:29 - 2016-05-31 14:29 - 02530304 _____ (BitTorrent Inc.) C:\Users\Konishi\Downloads\uTorrent.exe
2016-05-29 18:03 - 2016-05-29 18:08 - 767783652 ____R C:\Users\Konishi\Downloads\[HorribleSubs] Boku no Hero Academia - 09 [1080p].mkv
2016-05-29 00:03 - 2016-05-29 00:03 - 00000000 ____D C:\Users\Konishi\AppData\LocalLow\Jagex Ltd
2016-05-28 23:19 - 2016-05-28 23:29 - 789057625 ____R C:\Users\Konishi\Downloads\Hardcore.Henry.2016.720p.HC.HDRip.750MB.MkvCage.mkv
2016-05-28 15:25 - 2016-05-28 15:30 - 571636324 ____R C:\Users\Konishi\Downloads\[HorribleSubs] Ace Attorney - 09 [1080p].mkv
2016-05-28 02:08 - 2016-05-28 23:25 - 00000000 ____D C:\Users\Konishi\Downloads\ピンキーwebdl086-098&othersets
2016-05-27 15:42 - 2016-05-27 15:48 - 568089187 ____R C:\Users\Konishi\Downloads\[HorribleSubs] JoJo's Bizarre Adventure - Diamond is Unbreakable - 09 [1080p].mkv
2016-05-22 23:42 - 2016-05-22 23:52 - 1151793340 ____R C:\Users\Konishi\Downloads\[HorribleSubs] Shouwa Genroku Rakugo Shinjuu - 01 [1080p].mkv
2016-05-19 23:20 - 2016-05-19 23:20 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2016-05-19 23:07 - 2016-05-19 23:07 - 00000000 ____D C:\Users\Konishi\Desktop\SltndSnctrv1003-MPCG
2016-05-18 17:10 - 2016-06-04 13:28 - 00270360 _____ C:\Windows\system32\FNTCACHE.DAT
2016-05-17 17:48 - 2016-06-04 14:20 - 00059216 _____ C:\Users\Konishi\AppData\Local\GDIPFONTCACHEV1.DAT
2016-05-16 18:56 - 2016-05-20 17:09 - 3790461347 _____ C:\Users\Konishi\Desktop\tppn-084.HD.mp4
2016-05-16 18:48 - 2016-05-21 00:48 - 322497394 _____ C:\Users\Konishi\Downloads\abp-365.HD.mp4
2016-05-16 17:17 - 2016-06-04 18:32 - 00000000 ____D C:\Users\Konishi\Desktop\New folder
2016-05-16 17:17 - 2016-05-16 17:17 - 00431026 _____ C:\Users\Konishi\Desktop\FORMULARIO DE RMA 2016.pdf
2016-05-16 16:25 - 2016-05-16 16:25 - 00131909 _____ C:\Users\Konishi\Downloads\FORMULARIO DE RMA 2016.pdf
2016-05-16 04:28 - 2016-05-16 04:28 - 00828232 _____ C:\Users\Konishi\Downloads\Akiba Online Complete U-15 Index of Torrents.torrent
2016-05-15 16:57 - 2016-05-15 16:57 - 00029879 _____ C:\Users\Konishi\Downloads\[HorribleSubs] Boku no Hero Academia - 07 [1080p].mkv.torrent
2016-05-14 06:30 - 2016-05-14 06:53 - 1347659414 ____R C:\Users\Konishi\Downloads\[Show Girl] GCOLB-001.mp4
2016-05-12 23:27 - 2016-05-12 23:27 - 02137813 _____ C:\Users\Konishi\Downloads\PPSSPPWindows64normal-1.mp4
2016-05-12 09:21 - 2016-05-12 09:56 - 00000000 ____D C:\Program Files (x86)\Danganronpa 2 Goodbye Despair
2016-05-10 23:19 - 2016-05-10 23:39 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Vso
2016-05-10 23:19 - 2016-05-10 23:19 - 00118400 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\ezplay.sys
2016-05-10 23:19 - 2016-05-10 23:19 - 00099384 _____ C:\Users\Konishi\AppData\Roaming\inst.exe
2016-05-10 23:19 - 2016-05-10 23:19 - 00082816 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\pcouffin.sys
2016-05-10 23:19 - 2016-05-10 23:19 - 00007859 _____ C:\Users\Konishi\AppData\Roaming\pcouffin.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 00007833 _____ C:\Users\Konishi\AppData\Roaming\ezplay.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 00001153 _____ C:\Users\Konishi\Desktop\BlindWrite 7.lnk
2016-05-10 23:19 - 2016-05-10 23:19 - 00000125 _____ C:\Users\Konishi\AppData\Roaming\ezplay.ini
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Users\Konishi\Documents\PcSetup
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\ProgramData\VSO
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Program Files (x86)\VSO
2016-05-10 22:45 - 2016-05-10 22:45 - 00000000 ____D C:\Program Files (x86)\Alex Feinman
2016-05-10 22:03 - 2016-05-13 16:13 - 00000000 ____D C:\Users\Konishi\Documents\Coisas pra levar pro pc novo
2016-05-07 06:12 - 2016-05-07 06:14 - 143217472 _____ C:\Users\Konishi\Downloads\[160506][chippai]LO Reパコ すくすくみずきちゃん THE ANIMATION.mp4
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-04 18:33 - 2014-08-18 20:24 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-04 18:27 - 2009-07-14 01:45 - 00020096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-04 18:27 - 2009-07-14 01:45 - 00020096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-04 18:17 - 2015-09-16 05:28 - 00028888 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpddfac64.sys
2016-06-04 18:17 - 2014-11-17 12:43 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2016-06-04 18:16 - 2014-08-18 20:24 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-04 18:16 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-04 18:00 - 2014-07-27 04:21 - 00000000 ____D C:\Users\Konishi\AppData\Local\VirtualStore
2016-06-04 17:49 - 2015-06-01 14:16 - 00000982 _____ C:\Users\Konishi\Desktop\New Text Document.txt
2016-06-04 16:26 - 2014-07-27 02:35 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-04 15:33 - 2015-09-18 15:00 - 00000000 ____D C:\Users\Konishi\AppData\LocalLow\uTorrent
2016-06-04 15:33 - 2014-07-27 21:32 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\uTorrent
2016-06-04 15:26 - 2014-07-27 21:56 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\vlc
2016-06-03 17:58 - 2015-06-16 15:25 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-06-02 20:36 - 2015-07-02 21:17 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibiacast
2016-06-02 20:36 - 2015-07-02 21:17 - 00000000 ____D C:\Program Files (x86)\Tibiacast
2016-06-01 16:57 - 2015-06-04 00:35 - 00000000 ____D C:\Users\Konishi\AppData\Local\CrashDumps
2016-06-01 15:23 - 2015-03-04 04:43 - 00000000 ____D C:\Users\Konishi\AppData\Local\Battle.net
2016-06-01 14:18 - 2015-05-04 07:17 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-06-01 13:26 - 2015-03-04 04:43 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-05-31 21:08 - 2015-06-08 04:41 - 00000000 ____D C:\Program Files (x86)\Tibia
2016-05-31 14:32 - 2016-03-12 14:47 - 00002651 _____ C:\Users\Konishi\Desktop\µTorrent.lnk
2016-05-29 22:45 - 2015-06-02 17:58 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-05-29 07:27 - 2015-05-12 06:43 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\mIRC
2016-05-29 03:50 - 2016-03-29 09:07 - 00003624 _____ C:\Users\Konishi\Documents\SemLag.xml
2016-05-29 01:33 - 2016-03-29 09:08 - 00000408 _____ C:\Users\Konishi\AppData\Roaming\comhsx
2016-05-29 00:03 - 2014-07-27 09:36 - 00000000 ____D C:\ProgramData\Package Cache
2016-05-25 13:13 - 2016-03-29 09:05 - 00000000 ____D C:\Program Files (x86)\SemLag Pro
2016-05-23 06:24 - 2015-03-15 11:03 - 00000000 ____D C:\Windows\System32\Tasks\Games
2016-05-18 04:00 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-05-17 16:57 - 2014-09-25 11:22 - 00000000 ____D C:\Users\Konishi\AppData\Roaming\DAEMON Tools Lite
2016-05-17 16:55 - 2015-06-01 13:55 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-05-13 12:58 - 2009-07-14 02:08 - 00032588 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-05-12 22:34 - 2014-08-18 20:27 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-12 17:10 - 2015-06-16 15:25 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-05-12 10:25 - 2014-08-01 00:02 - 00000000 ____D C:\Users\Konishi\Documents\My Games
2016-05-11 02:56 - 2016-04-19 00:21 - 00000000 ____D C:\Users\Konishi\Desktop\New fol
2016-05-10 23:27 - 2015-11-17 14:30 - 00000000 ____D C:\ProgramData\GbPlugin
2016-05-10 20:28 - 2014-08-18 20:24 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-10 20:28 - 2014-08-18 20:24 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-05 19:48 - 2016-03-27 16:51 - 00000000 ____D C:\ProgramData\Umineko4final
==================== Files in the root of some directories =======
2016-03-29 09:08 - 2016-05-29 01:33 - 0000408 _____ () C:\Users\Konishi\AppData\Roaming\comhsx
2016-05-10 23:19 - 2016-05-10 23:19 - 0007833 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 0001126 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.inf
2016-05-10 23:19 - 2016-05-10 23:19 - 0000125 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.ini
2016-05-10 23:20 - 2016-05-10 23:20 - 0000074 _____ () C:\Users\Konishi\AppData\Roaming\ezplay.log
2016-05-10 23:19 - 2016-05-10 23:19 - 0118400 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\ezplay.sys
2016-05-10 23:19 - 2016-05-10 23:19 - 0099384 _____ () C:\Users\Konishi\AppData\Roaming\inst.exe
2016-05-10 23:19 - 2016-05-10 23:19 - 0007859 _____ () C:\Users\Konishi\AppData\Roaming\pcouffin.cat
2016-05-10 23:19 - 2016-05-10 23:19 - 0001167 _____ () C:\Users\Konishi\AppData\Roaming\pcouffin.inf
2016-05-10 23:19 - 2016-05-10 23:19 - 0000055 _____ () C:\Users\Konishi\AppData\Roaming\pcouffin.log
2016-05-10 23:19 - 2016-05-10 23:19 - 0082816 _____ (VSO Software) C:\Users\Konishi\AppData\Roaming\pcouffin.sys
2016-03-29 09:08 - 2016-03-29 09:08 - 0000020 _____ () C:\Users\Konishi\AppData\Roaming\system.xml
2016-03-18 00:45 - 2016-03-18 00:45 - 0002722 _____ () C:\Users\Konishi\AppData\Local\recently-used.xbel
Some files in TEMP:
====================
C:\Users\Konishi\AppData\Local\Temp\QQPCDOWNLOAD74707.EXE
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-05-28 19:04
==================== End of FRST.txt ============================