TechSpot

Can't download any anti virus

By Jake Johnston
Jan 9, 2016
  1. Hello, my pc was recently infected and it will randomly play adds in the background without any programs running. when I was infected with this virus I did not have an antivirus software. So when I try to download a software to get rid of the annoying infection this error shows up when I try to go to the page which the download is on for the antivirus: This page cannot be displayed because an internal server error has occured.

    specs-
    AMD A8-5500
    AMD r9 390 8gb
    8gb RAM
    Windows 8.1 64x
     
  2. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    Welcome aboard [​IMG]

    Please, complete all steps listed here: http://www.techspot.com/vb/topic58138.html
    Make sure, you PASTE all logs. If some log exceeds 50,000 characters post limit, split it between couple of replies.
    Attached logs won't be reviewed.

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.
     
  3. Jake Johnston

    Jake Johnston TS Rookie Topic Starter

    I can't complete step one it wont let me download any antivirus it comes up with the same error when loading the window
     
  4. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    Skip that step.
     
  5. Jake Johnston

    Jake Johnston TS Rookie Topic Starter

    Cannot complete step 2 either. The same error occurs when opening up the page.
     
  6. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    Did you try different browser?
     
  7. Jake Johnston

    Jake Johnston TS Rookie Topic Starter

    Yes I tried Internet Explorer still the same error.
     
  8. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    NOTE 1. Use another working computer to download Farbar Recovery Scan Tool. Use USB flash drive to transfer it from good computer to the bad one.
    NOTE 2. Install Panda USB Vaccine, or BitDefenderā€™s USB Immunizer on GOOD computer to protect it from any infected USB device.

    For x32 (x86) bit systems download Farbar Recovery Scan Tool 32-Bit and save it to a flash drive.
    For x64 bit systems download Farbar Recovery Scan Tool 64-Bit and save it to a flash drive.

    Plug the flashdrive into the infected PC.

    If you are using Windows 10 If you're having problems accessing System Recovery Options create Windows 10 USB or DVD as described here: http://betanews.com/2015/07/29/how-...your-own-installation-usb-flash-drive-or-dvd/ and boot from it.

    If you are using Windows 8 consult How to use the Windows 8 System Recovery Environment Command Prompt to enter System Recovery Command prompt. To access Advanced Boot Options start and shut down computer TWICE. On third start you should see Advanced Boot Options.

    If you are using Vista or Windows 7 enter System Recovery Options.

    To enter System Recovery Options from the Advanced Boot Options:
    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.

    To enter System Recovery Options by using Windows installation disc:
    • Insert the installation disc.
    • Restart your computer.
    • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
    • Click Repair your computer.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account and click Next.

    On the System Recovery Options menu you will get the following options:

    • Startup Repair
    • System Restore
    • Windows Complete PC Restore
    • Windows Memory Diagnostic Tool
    • Command Prompt
    • Select Command Prompt
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst (for x64 bit version type e:\frst64) and press Enter
      Note:
      Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
     
  9. Jake Johnston

    Jake Johnston TS Rookie Topic Starter

    Okay, I have finished the scan using Farbar. Would you like the text files?
     
  10. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    Yes.
     
  11. Jake Johnston

    Jake Johnston TS Rookie Topic Starter

    Here is the text
     

    Attached Files:

  12. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    In the future, please observe forum rules.
    All logs have to be pasted not attached
    .

    This time I'll paste FRST log for you.

    Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-01-2015
    Ran by SYSTEM on MININT-EB67F3A (09-01-2016 21:25:54)
    Running from d:\
    Platform: Windows 8.1 Pro (X64) Language: English (United States)
    Internet Explorer Version 11
    Boot Mode: Recovery
    Default: ControlSet001
    ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Registry (Whitelisted) ===========================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2757424 2015-11-12] (NVIDIA Corporation)
    HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
    HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4867784 2015-12-04] (Advanced Micro Devices, Inc.)
    HKLM\...\Run: [cutoauto] => C:\Program Files (x86)\knot\list.exe [42745 2016-01-09] ()
    HKLM\...\Run: [interpee] => C:\Program Files (x86)\knot\highfalutin.exe [37888 2016-01-09] (windows 99)
    HKLM\...\Run: [autoauto] => C:\Program Files (x86)\knot\highfalutin.exe [37888 2016-01-09] (windows 99)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
    HKLM-x32\...\Run: [cutoauto] => C:\Program Files (x86)\knot\list.exe [42745 2016-01-09] ()
    HKLM-x32\...\Run: [interpee] => C:\Program Files (x86)\knot\highfalutin.exe [37888 2016-01-09] (windows 99)
    HKLM-x32\...\Run: [autoauto] => C:\Program Files (x86)\knot\highfalutin.exe [37888 2016-01-09] (windows 99)
    HKU\kinkb_000\...\Run: [Spotify] => C:\Users\kinkb_000\AppData\Roaming\Spotify\Spotify.exe [8387696 2015-12-17] (Spotify Ltd)
    HKU\kinkb_000\...\Run: [rutoauto] => C:\Program Files (x86)\knot\highfalutin.exe [37888 2016-01-09] (windows 99)
    HKU\kinkb_000\...\Run: [dutoauto] => C:\Program Files (x86)\knot\list.exe [42745 2016-01-09] ()
    HKU\kinkb_000\...\Run: [interpee] => C:\Program Files (x86)\knot\highfalutin.exe [37888 2016-01-09] (windows 99)
    HKU\kinkb_000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
    Startup: C:\Users\kinkb_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-12-18]
    ShortcutTarget: Curse.lnk -> C:\windows\system32\config\systemprofile\AppData\Roaming\Curse Client\Bin\Curse.exe (No File)
    Startup: C:\Users\kinkb_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\intr.lnk [2016-01-09]
    ShortcutTarget: intr.lnk -> C:\Program Files (x86)\knot\highfalutin.exe (windows 99)
    Startup: C:\Users\kinkb_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-01-03]
    ShortcutTarget: MEGAsync.lnk -> C:\windows\system32\config\systemprofile\AppData\Local\MEGAsync\MEGAsync.exe (No File)

    ==================== Services (Whitelisted) ========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    S2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-05-05] (Advanced Micro Devices, Inc.)
    S2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2015-12-04] (Advanced Micro Devices)
    S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137584 2014-09-19] ()
    S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1257504 2015-12-24] ()
    S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [236832 2015-10-20] (EasyAntiCheat Ltd)
    S2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [36008 2015-11-04] (Micro-Star Int'l Co., Ltd.)
    S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400 2015-11-12] (NVIDIA Corporation)
    S2 mother; C:\Windows\road.exe [9216 2016-01-09] (number)
    S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-11-12] (NVIDIA Corporation)
    S3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424 2015-11-12] (NVIDIA Corporation)
    S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440 2015-11-12] (NVIDIA Corporation)
    S2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] ()
    S2 scream; C:\Windows\meek.exe [15360 2016-01-09] (delightful)
    S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6887696 2015-11-30] (TeamViewer GmbH)
    S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
    S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

    ===================== Drivers (Whitelisted) ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    S2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [296648 2015-12-04] (Advanced Micro Devices)
    S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-22] (Advanced Micro Devices, Inc.)
    S2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
    S2 AODDriver4.3.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [60104 2014-09-19] (Advanced Micro Devices)
    S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [102912 2015-07-15] (Advanced Micro Devices)
    S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
    S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-11-12] (NVIDIA Corporation)
    S3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-10] (NVIDIA Corporation)
    S3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
    S2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
    S2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129472 2015-06-26] (Razer, Inc.)
    S3 VBAudioVACMME; C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Windows (R) Win 7 DDK provider)
    S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
    S0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
    S2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

    ==================== NetSvcs (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== One Month Created files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2016-01-09 21:23 - 2016-01-09 21:23 - 00000000 _____ C:\Recovery.txt
    2016-01-09 21:17 - 2016-01-09 21:17 - 00003002 _____ C:\Windows\System32\Tasks\MSISW_Host
    2016-01-09 21:04 - 2016-01-09 21:07 - 00000000 ____D C:\FRST
    2016-01-09 20:42 - 2016-01-09 20:42 - 00002259 _____ C:\Windows\epplauncher.mif
    2016-01-09 20:41 - 2016-01-09 20:42 - 14243008 _____ (Microsoft Corporation) C:\Users\kinkb_000\Downloads\mseinstall64.exe
    2016-01-09 19:33 - 2016-01-09 19:33 - 22908888 _____ (Malwarebytes ) C:\Users\kinkb_000\Downloads\mbam-setup-2.2.0.1024.exe
    2016-01-09 17:14 - 2016-01-09 17:14 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
    2016-01-09 15:57 - 2016-01-09 20:19 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2764093174-694997353-439972239-1001
    2016-01-09 15:52 - 2016-01-09 21:22 - 00004358 _____ C:\Windows\System32\Tasks\475208711598
    2016-01-09 15:52 - 2016-01-09 21:22 - 00003808 _____ C:\Windows\System32\Tasks\xDECAZJY7ter4q1XF3l4-ni-2016-01-09-ni-10924-ni-1
    2016-01-09 15:52 - 2016-01-09 21:21 - 00003782 _____ C:\Windows\System32\Tasks\275291989
    2016-01-09 15:52 - 2016-01-09 21:21 - 00003620 _____ C:\Windows\System32\Tasks\175291989
    2016-01-09 15:52 - 2016-01-09 21:21 - 00000360 ____H C:\Windows\Tasks\IGHCHCEMDUYWJNIG.job
    2016-01-09 15:52 - 2016-01-09 21:11 - 00003660 _____ C:\Windows\System32\Tasks\2512015251201525120152512015
    2016-01-09 15:52 - 2016-01-09 19:33 - 00002308 _____ C:\Users\kinkb_000\Desktop\Google Chrome.lnk
    2016-01-09 15:52 - 2016-01-09 15:52 - 00003794 _____ C:\Windows\System32\Tasks\43625021
    2016-01-09 15:52 - 2016-01-09 15:52 - 00003376 _____ C:\Windows\System32\Tasks\IGHCHCEMDUYWJNIG
    2016-01-09 15:52 - 2016-01-09 15:52 - 00002174 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000055 _____ C:\Windows\key.ini
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\yuntnani
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\ProgramData\Service7609
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\Program Files (x86)\wren
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\Program Files (x86)\NewInternet
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\Program Files (x86)\flap
    2016-01-09 15:52 - 2016-01-09 15:52 - 00000000 ____D C:\Program Files (x86)\discussion
    2016-01-09 15:51 - 2016-01-09 15:52 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\4313072
    2016-01-09 15:51 - 2016-01-09 15:52 - 00000000 ____D C:\Program Files (x86)\knot
    2016-01-09 15:51 - 2016-01-09 15:51 - 00000079 _____ C:\Users\kinkb_000\AppData\Local\dottmpfile.txt
    2016-01-09 15:51 - 2016-01-09 15:51 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\24368452
    2016-01-09 12:37 - 2016-01-09 12:37 - 00042745 _____ C:\Windows\natural.exe
    2016-01-09 12:37 - 2016-01-09 12:37 - 00037888 _____ (windows 99) C:\Windows\engine.exe
    2016-01-09 12:37 - 2016-01-09 12:37 - 00015360 _____ (delightful) C:\Windows\meek.exe
    2016-01-09 12:37 - 2016-01-09 12:37 - 00009216 _____ (number) C:\Windows\road.exe
    2016-01-09 12:37 - 2016-01-09 12:37 - 00000019 _____ C:\Windows\SysWOW64\36677284.bat
    2016-01-07 12:59 - 2016-01-07 13:28 - 164433168 _____ C:\Users\kinkb_000\Downloads\RHS-Armed-Forces-Of-The-Russian-Federation-version-0.4.0.1.7z
    2016-01-06 19:29 - 2016-01-06 19:32 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\WS Launcher
    2016-01-06 19:29 - 2016-01-06 19:29 - 00002151 _____ C:\Users\Public\Desktop\WS Launcher.lnk
    2016-01-06 19:29 - 2016-01-06 19:29 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\WS.ARMA.SU
    2016-01-06 19:29 - 2016-01-06 19:29 - 00000000 ____D C:\ProgramData\Caphyon
    2016-01-06 19:29 - 2016-01-06 19:29 - 00000000 ____D C:\Program Files (x86)\WS.ARMA.SU
    2016-01-06 19:27 - 2016-01-06 19:29 - 24681170 _____ (WS.ARMA.SU) C:\Users\kinkb_000\Downloads\WSLauncher_Installer.exe
    2016-01-06 17:53 - 2016-01-06 17:53 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\arma3launcher
    2016-01-05 20:19 - 2016-01-09 21:11 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\TS3Client
    2016-01-05 20:19 - 2016-01-05 20:19 - 00000979 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
    2016-01-05 20:19 - 2016-01-05 20:19 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
    2016-01-05 20:05 - 2016-01-05 20:09 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\kinkb_000\Downloads\TeamSpeak3-Client-win64-3.0.18.2.exe
    2016-01-03 16:04 - 2016-01-03 16:47 - 2653143938 ____R C:\Users\kinkb_000\Downloads\AllInArmaTerrainPack_2015_01_01.7z
    2016-01-03 16:03 - 2016-01-03 16:03 - 00016954 _____ C:\Users\kinkb_000\Downloads\AllInArmaTerrainPack_2015_01_01.7z.torrent
    2016-01-03 14:48 - 2016-01-07 20:11 - 00000000 ____D C:\Users\kinkb_000\Documents\MEGAsync Downloads
    2016-01-03 14:48 - 2016-01-03 14:48 - 00000000 ___RD C:\Users\kinkb_000\Documents\MEGA
    2016-01-03 14:45 - 2016-01-03 14:45 - 00001106 _____ C:\Users\kinkb_000\Desktop\MEGAsync.lnk
    2016-01-03 14:45 - 2016-01-03 14:45 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\MEGAsync
    2016-01-03 14:45 - 2016-01-03 14:45 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Mega Limited
    2016-01-03 14:43 - 2016-01-03 14:44 - 10152576 _____ (MEGA Limited) C:\Users\kinkb_000\Downloads\MEGAsyncSetup.exe
    2016-01-03 14:39 - 2016-01-09 21:17 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
    2016-01-03 14:39 - 2016-01-03 14:41 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\SIX Networks
    2016-01-03 14:39 - 2016-01-03 14:39 - 00002323 _____ C:\Users\kinkb_000\Desktop\Sync BETA.lnk
    2016-01-03 14:39 - 2016-01-03 14:39 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\SIX Networks
    2016-01-03 14:39 - 2016-01-03 14:39 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\syncbeta
    2016-01-03 14:39 - 2016-01-03 14:39 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\SquirrelTemp
    2016-01-03 14:37 - 2016-01-03 14:39 - 33040208 _____ (SIX Networks GmbH) C:\Users\kinkb_000\Downloads\sync-Setup.exe
    2016-01-02 15:06 - 2016-01-02 15:13 - 344316781 _____ C:\Users\kinkb_000\Downloads\@Exile-0.9.41.rar
    2016-01-02 15:05 - 2016-01-02 15:05 - 14946192 _____ (Maca134 ) C:\Users\kinkb_000\Downloads\setup_a3launcher (1).exe
    2016-01-02 15:05 - 2016-01-02 15:05 - 00001043 _____ C:\Users\Public\Desktop\A3Launcher.lnk
    2016-01-02 14:27 - 2016-01-06 17:16 - 00000000 ____D C:\Program Files (x86)\A3Launcher
    2016-01-02 14:27 - 2016-01-02 14:27 - 14946192 _____ (Maca134 ) C:\Users\kinkb_000\Downloads\setup_a3launcher.exe
    2015-12-31 15:30 - 2015-12-31 15:30 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\UnrealEngine
    2015-12-31 15:30 - 2015-12-31 15:30 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Squad
    2015-12-30 16:25 - 2015-12-30 16:25 - 00000000 ____D C:\Users\kinkb_000\Documents\Arma 3 - Other Profiles
    2015-12-30 11:27 - 2015-12-30 11:27 - 00007168 _____ C:\Users\kinkb_000\AppData\Local\installer4.exe
    2015-12-30 11:27 - 2015-12-30 11:27 - 00006656 _____ C:\Users\kinkb_000\AppData\Local\installer.exe
    2015-12-29 17:49 - 2015-12-29 17:49 - 05271256 _____ (Husdawg, LLC) C:\Users\kinkb_000\Downloads\Detection (3).exe
    2015-12-29 17:47 - 2015-12-29 17:48 - 05271256 _____ (Husdawg, LLC) C:\Users\kinkb_000\Downloads\Detection (2).exe
    2015-12-29 11:52 - 2015-12-29 11:52 - 38504630 _____ C:\Users\kinkb_000\Downloads\Mapping_Resource_Pack_2014-11-06.exe
    2015-12-27 14:48 - 2015-12-27 14:48 - 14649583 _____ C:\Users\kinkb_000\Downloads\de_dust2.vmf
    2015-12-27 14:48 - 2015-12-27 14:48 - 14649583 _____ C:\Users\kinkb_000\Desktop\de_dust2.vmf
    2015-12-27 14:42 - 2015-12-27 14:42 - 00604819 _____ (Ryan Gregg ) C:\Users\kinkb_000\Downloads\gcfscape185.exe
    2015-12-27 14:34 - 2015-12-27 14:36 - 00000000 ____D C:\vmex
    2015-12-27 14:34 - 2015-12-27 14:33 - 00320424 _____ (Oracle Corporation) C:\Windows\System32\javaws.exe
    2015-12-27 14:33 - 2015-12-27 14:33 - 00189352 _____ (Oracle Corporation) C:\Windows\System32\javaw.exe
    2015-12-27 14:33 - 2015-12-27 14:33 - 00189352 _____ (Oracle Corporation) C:\Windows\System32\java.exe
    2015-12-27 14:33 - 2015-12-27 14:33 - 00111016 _____ (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge-64.dll
    2015-12-27 14:33 - 2015-12-27 14:33 - 00057215 _____ C:\Users\kinkb_000\Downloads\vmex098g.zip
    2015-12-27 14:33 - 2015-12-27 14:33 - 00057215 _____ C:\Users\kinkb_000\Desktop\vmex098g.zip
    2015-12-27 14:33 - 2015-12-27 14:33 - 00000000 ____D C:\Program Files\Java
    2015-12-27 14:32 - 2015-12-27 14:33 - 31224232 _____ (Oracle Corporation) C:\Users\kinkb_000\Downloads\jre-7u79-windows-x64.exe
    2015-12-27 09:57 - 2015-12-27 09:57 - 00001411 _____ C:\Users\kinkb_000\Desktop\hammer.exe - Shortcut.lnk
    2015-12-26 20:38 - 2015-12-26 20:36 - 00002905 _____ C:\Users\kinkb_000\Desktop\scatter-effect-on-mouse-trailors-172.htm
    2015-12-26 20:36 - 2015-12-26 20:36 - 00002301 _____ C:\Users\kinkb_000\Downloads\scatter-effect-on-mouse-trailors-172.zip
    2015-12-25 17:32 - 2015-12-25 17:32 - 01065984 _____ C:\Users\kinkb_000\AppData\Local\file__0.localstorage
    2015-12-25 17:32 - 2015-12-25 17:32 - 00000000 ____D C:\Users\kinkb_000\Heaven
    2015-12-25 17:31 - 2015-12-25 17:31 - 00002133 _____ C:\Users\Public\Desktop\Heaven Benchmark 4.0.lnk
    2015-12-25 17:31 - 2015-12-25 17:31 - 00000000 ____D C:\Program Files (x86)\Unigine
    2015-12-25 16:47 - 2015-12-25 17:28 - 258728440 _____ (Unigine Corp. ) C:\Users\kinkb_000\Downloads\Unigine_Heaven-4.0.exe
    2015-12-25 14:49 - 2015-12-25 14:49 - 04947168 _____ (Advanced Micro Devices, Inc.) C:\Users\kinkb_000\Downloads\autodetectutility (2).exe
    2015-12-25 14:39 - 2015-12-25 14:39 - 04947168 _____ (Advanced Micro Devices, Inc.) C:\Users\kinkb_000\Downloads\autodetectutility (1).exe
    2015-12-25 14:35 - 2015-12-25 14:35 - 00000000 ____D C:\ProgramData\ATI
    2015-12-25 13:40 - 2015-12-25 13:40 - 05271256 _____ (Husdawg, LLC) C:\Users\kinkb_000\Downloads\Detection (1).exe
    2015-12-25 13:39 - 2015-12-25 13:39 - 05271256 _____ (Husdawg, LLC) C:\Users\kinkb_000\Downloads\Detection.exe
    2015-12-25 11:53 - 2015-12-25 11:54 - 05503913 _____ (UserBenchmark.com) C:\Users\kinkb_000\Downloads\UserBenchMark.exe
    2015-12-25 11:21 - 2015-12-25 11:21 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\library_dir
    2015-12-25 11:14 - 2016-01-05 11:00 - 00000000 ____D C:\AMD
    2015-12-25 11:08 - 2015-12-25 11:10 - 263763408 _____ (AMD Inc.) C:\Users\kinkb_000\Downloads\radeon-crimson-15.12-win8.1-64bit.exe
    2015-12-25 11:07 - 2015-12-25 11:08 - 04947168 _____ (Advanced Micro Devices, Inc.) C:\Users\kinkb_000\Downloads\autodetectutility.exe
    2015-12-25 09:18 - 2015-12-25 11:20 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\AMD
    2015-12-25 09:18 - 2015-12-25 09:18 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\ATI
    2015-12-25 09:18 - 2015-12-25 09:18 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\ATI
    2015-12-25 09:14 - 2016-01-09 21:22 - 00065536 _____ C:\Windows\System32\spu_storage.bin
    2015-12-25 09:14 - 2015-12-25 09:14 - 00000000 ____D C:\ProgramData\AMD
    2015-12-25 09:14 - 2015-12-25 09:14 - 00000000 _____ C:\Windows\ativpsrm.bin
    2015-12-25 09:13 - 2015-12-25 09:13 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
    2015-12-25 09:13 - 2015-05-05 03:15 - 00865792 _____ (AMD) C:\Windows\System32\coinst_15.20.dll
    2015-12-25 09:12 - 2015-05-05 03:52 - 01187342 _____ C:\Windows\System32\amdocl_as64.exe
    2015-12-25 09:12 - 2015-05-05 03:52 - 01061902 _____ C:\Windows\System32\amdocl_ld64.exe
    2015-12-25 09:12 - 2015-05-05 03:52 - 00995342 _____ C:\Windows\SysWOW64\amdocl_as32.exe
    2015-12-25 09:12 - 2015-05-05 03:52 - 00798734 _____ C:\Windows\SysWOW64\amdocl_ld32.exe
    2015-12-25 09:12 - 2015-05-05 03:23 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
    2015-12-25 09:12 - 2015-05-05 03:23 - 00204952 _____ C:\Windows\System32\ativvsvl.dat
    2015-12-25 09:12 - 2015-05-05 03:23 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
    2015-12-25 09:12 - 2015-05-05 03:23 - 00157144 _____ C:\Windows\System32\ativvsva.dat
    2015-12-25 09:12 - 2014-06-17 21:28 - 00140240 _____ C:\Windows\System32\samu_krnl_ci.sbin
    2015-12-25 09:12 - 2013-12-11 17:53 - 00138832 _____ C:\Windows\System32\samu_krnl_isv_ci.sbin
    2015-12-25 09:11 - 2012-09-22 03:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\amdkmafd.sys
    2015-12-25 09:10 - 2015-12-25 11:20 - 00000000 ____D C:\Program Files\AMD
    2015-12-24 22:13 - 2015-12-24 22:15 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Quickscope_Simulator
    2015-12-24 22:07 - 2015-12-24 22:10 - 245408913 _____ C:\Users\kinkb_000\Downloads\Quickscope Simulator 1.3b.zip
    2015-12-24 20:48 - 2015-12-24 20:48 - 00000000 ____D C:\Users\kinkb_000\AppData\LocalLow\Unity
    2015-12-24 19:53 - 2016-01-07 23:58 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Arma 3
    2015-12-24 19:53 - 2016-01-03 15:05 - 00000000 ____D C:\Users\kinkb_000\Documents\Arma 3
    2015-12-24 19:53 - 2015-12-24 19:53 - 00000000 ____D C:\ProgramData\Bohemia Interactive
    2015-12-24 19:52 - 2015-12-29 16:40 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Arma 3 Launcher
    2015-12-24 19:52 - 2015-12-24 19:52 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Bohemia_Interactive
    2015-12-24 19:49 - 2015-12-24 19:52 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\CallofDuty4MW
    2015-12-24 19:49 - 2015-12-24 19:49 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\CrashRpt
    2015-12-24 14:54 - 2015-12-24 14:53 - 01098825 _____ (Expenosa) C:\Users\kinkb_000\Desktop\NoiseGator_063a.exe
    2015-12-24 14:52 - 2015-12-24 14:53 - 01098825 _____ (Expenosa) C:\Users\kinkb_000\Downloads\NoiseGator_063a.exe
    2015-12-24 14:49 - 2015-12-24 14:49 - 00000000 ____D C:\Program Files\VB
    2015-12-24 14:49 - 2014-09-02 17:01 - 00041192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\vbaudio_cable64_win7.sys
    2015-12-24 14:48 - 2015-12-24 14:49 - 00000000 ____D C:\vac
    2015-12-24 14:47 - 2015-12-24 14:47 - 01124801 _____ C:\Users\kinkb_000\Downloads\VBCABLE_Driver_Pack43.zip
    2015-12-24 14:43 - 2015-12-24 14:43 - 00066728 _____ (Eugene V. Muzychenko) C:\Windows\System32\Drivers\vrtaucbl.sys
    2015-12-24 14:43 - 2015-12-24 14:43 - 00000000 ____D C:\Program Files\Virtual Audio Cable
    2015-12-24 14:41 - 2015-12-24 14:41 - 01323708 _____ C:\Users\kinkb_000\Downloads\VIRTUAL_AUDIO_CABLE_4.10.RAR
    2015-12-24 14:41 - 2015-12-24 14:41 - 00000000 ____D C:\Program Files (x86)\GlobFX Technologies
    2015-12-24 14:40 - 2015-12-24 14:40 - 00707518 _____ C:\Users\kinkb_000\Downloads\SWFRESetup22.exe
    2015-12-24 14:34 - 2015-12-24 15:56 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\foobar2000
    2015-12-24 14:34 - 2015-12-24 14:34 - 00001043 _____ C:\Users\Public\Desktop\foobar2000.lnk
    2015-12-24 14:34 - 2015-12-24 14:34 - 00000000 ____D C:\Program Files (x86)\foobar2000
    2015-12-24 14:33 - 2015-12-24 14:33 - 00549492 _____ C:\Users\kinkb_000\Downloads\vac414.zip
    2015-12-24 14:32 - 2015-12-24 14:32 - 03896168 _____ (foobar2000.org) C:\Users\kinkb_000\Downloads\foobar2000_v1.3.9.exe
    2015-12-24 11:46 - 2015-12-24 11:47 - 00000109 _____ C:\Users\kinkb_000\Desktop\Bhop.ahk
    2015-12-22 15:36 - 2015-12-22 15:36 - 00000222 _____ C:\Users\kinkb_000\Desktop\Rust.url
    2015-12-21 18:06 - 2015-12-21 18:06 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\MAXON
    2015-12-21 17:57 - 2015-12-21 18:02 - 109047601 _____ C:\Users\kinkb_000\Downloads\CINEBENCH_R15.zip
    2015-12-19 16:26 - 2015-12-19 16:27 - 89107284 _____ C:\Users\kinkb_000\Downloads\Wasteland Flora Overhaul v2dot8a - Fertile Version-39856-2-8a (1).7z
    2015-12-19 16:25 - 2015-12-19 16:26 - 30557714 _____ C:\Users\kinkb_000\Downloads\BOG Body Replacer FOMOD by sedaleare2_0-34702.rar
    2015-12-19 16:23 - 2015-12-19 16:29 - 401575522 _____ C:\Users\kinkb_000\Downloads\MGs NCR Pack 7-42551.7z
    2015-12-19 16:22 - 2015-12-19 16:22 - 00418598 _____ C:\Users\kinkb_000\Downloads\cellHUD-46389-1-1.zip
    2015-12-19 16:20 - 2015-12-19 16:20 - 14287229 _____ C:\Users\kinkb_000\Downloads\Enhanced Blood Textures-34917-2-22c.rar
    2015-12-19 13:13 - 2015-12-19 13:33 - 1188594344 _____ C:\Users\kinkb_000\Downloads\NMCs Textures NV LARGE Pack Part 3 of 3 FOR NMM-43135-1-0.7z
    2015-12-19 13:13 - 2015-12-19 13:32 - 1132280378 _____ C:\Users\kinkb_000\Downloads\NMCs Textures NV LARGE Pack Part 1 of 3 FOR NMM -43135-1-0.7z
    2015-12-19 13:13 - 2015-12-19 13:31 - 1110471037 _____ C:\Users\kinkb_000\Downloads\NMCs Textures NV LARGE Pack Part 2 of 3 FOR NMM -43135-1-0.7z
    2015-12-19 13:09 - 2015-12-19 13:10 - 89107284 _____ C:\Users\kinkb_000\Downloads\Wasteland Flora Overhaul v2dot8a - Fertile Version-39856-2-8a.7z
    2015-12-19 13:02 - 2015-12-19 13:02 - 00000000 ____D C:\Users\kinkb_000\Documents\FOMM
    2015-12-19 11:39 - 2015-12-19 11:39 - 15254724 _____ C:\Users\kinkb_000\Downloads\Interior Lighting Overhaul 6-9-35794-6-9.7z
    2015-12-19 11:34 - 2015-12-19 11:34 - 00000963 _____ C:\Users\kinkb_000\Desktop\Fallout Mod Manager.lnk
    2015-12-19 11:34 - 2015-12-19 11:34 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\FOMM
    2015-12-19 11:34 - 2015-12-19 11:34 - 00000000 ____D C:\Program Files (x86)\GeMM
    2015-12-19 11:33 - 2015-12-19 11:33 - 01404186 _____ (Q, Timeslip ) C:\Users\kinkb_000\Downloads\FOMM-36901-0-13-21.exe
    2015-12-18 18:30 - 2015-12-25 11:20 - 00000000 ____D C:\Program Files (x86)\AMD
    2015-12-18 18:30 - 2015-12-18 18:30 - 00002083 _____ C:\Users\Public\Desktop\AMD OverDrive.lnk
    2015-12-18 18:30 - 2015-12-18 18:30 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Downloaded Installations
    2015-12-18 18:29 - 2015-12-18 18:29 - 31843088 _____ (Advanced Micro Devices, Inc. ) C:\Users\kinkb_000\Downloads\aod_setup_4.3.1.0698.exe
    2015-12-18 18:19 - 2015-12-18 18:20 - 00000000 ____D C:\MSI
    2015-12-18 18:19 - 2015-12-18 18:19 - 00000000 ____D C:\Program Files (x86)\MSI
    2015-12-18 18:19 - 2015-08-18 09:51 - 01692840 _____ (MSI) C:\Windows\SysWOW64\muachost.exe
    2015-12-18 18:18 - 2015-12-18 18:18 - 12964630 _____ C:\Users\kinkb_000\Downloads\gaming_app_5.zip
    2015-12-18 18:11 - 2016-01-09 18:56 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
    2015-12-18 18:11 - 2015-12-18 18:11 - 00001098 _____ C:\Users\kinkb_000\Desktop\MSI Afterburner.lnk
    2015-12-18 18:09 - 2015-12-18 18:09 - 38094793 _____ C:\Users\kinkb_000\Downloads\MSIAfterburnerSetup.zip
    2015-12-18 15:51 - 2015-12-18 15:51 - 00000834 _____ C:\Users\Public\Desktop\CCleaner.lnk
    2015-12-18 15:50 - 2015-12-18 15:51 - 00000000 ____D C:\Program Files\CCleaner
    2015-12-18 15:49 - 2015-12-18 15:50 - 06801752 _____ (Piriform Ltd) C:\Users\kinkb_000\Downloads\ccsetup512.exe
    2015-12-18 13:37 - 2015-12-19 18:11 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\Curse Client
    2015-12-18 13:36 - 2015-12-18 13:36 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\Curse
    2015-12-18 13:35 - 2015-12-18 13:36 - 49103304 _____ (Curse) C:\Users\kinkb_000\Downloads\CurseClientSetup.exe
    2015-12-17 15:00 - 2015-12-17 15:01 - 00000000 ____D C:\Users\kinkb_000\Documents\Nexus Mod Manager
    2015-12-16 10:45 - 2015-11-24 10:29 - 00102704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
    2015-12-16 10:39 - 2015-11-24 15:10 - 42913912 _____ C:\Windows\System32\nvcompiler.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 37882488 _____ C:\Windows\SysWOW64\nvcompiler.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 22310008 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 18363696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 16553568 _____ (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 15717672 _____ (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 14835872 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 13527248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 12034248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 11131184 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
    2015-12-16 10:39 - 2015-11-24 15:10 - 02870392 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 02490488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 01905272 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispco6435906.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 01564792 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6435906.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00878816 _____ C:\Windows\System32\nvmcumd.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00877360 _____ (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00861816 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00689272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00673912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00501056 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncodeAPI64.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00467912 _____ (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00422056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00413816 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFROpenGL.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00388024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00369272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00205456 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys
    2015-12-16 10:39 - 2015-11-24 15:10 - 00177600 _____ (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00151184 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
    2015-12-16 10:39 - 2015-11-24 15:10 - 00039240 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll
    2015-12-16 10:18 - 2015-11-12 10:37 - 00112712 _____ C:\Windows\System32\NvRtmpStreamer64.dll
    2015-12-14 22:10 - 2015-12-14 22:10 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Fallout4
    2015-12-13 23:06 - 2015-07-27 17:09 - 00484552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll
    2015-12-13 23:06 - 2015-07-27 17:08 - 00690016 _____ (Microsoft Corporation) C:\Windows\System32\msvcp120_clr0400.dll
    2015-12-13 14:20 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
    2015-12-13 14:20 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll
    2015-12-13 14:20 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
    2015-12-13 14:20 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_7.dll
    2015-12-13 14:20 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll
    2015-12-13 14:20 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll
    2015-12-13 14:20 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
    2015-12-12 23:15 - 2015-12-12 23:15 - 00000000 ____D C:\Program Files\AutoHotkey
    2015-12-12 23:11 - 2015-12-12 23:12 - 03081746 _____ C:\Users\kinkb_000\Downloads\AutoHotkey112209_Install.exe
    2015-12-12 13:16 - 2015-12-12 13:16 - 00000000 ____D C:\Games
    2015-12-12 13:14 - 2015-12-12 13:14 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Black_Tree_Gaming
    2015-12-12 13:08 - 2015-06-21 22:31 - 00027840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
    2015-12-12 13:08 - 2015-06-21 22:30 - 00029888 _____ (Microsoft Corporation) C:\Windows\System32\aspnet_counters.dll
     
  13. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    2015-12-12 13:05 - 2015-12-17 11:07 - 00000000 ____D C:\Program Files\Nexus Mod Manager
    2015-12-12 13:04 - 2015-12-12 13:05 - 06336608 _____ (Black Tree Gaming ) C:\Users\kinkb_000\Downloads\Nexus Mod Manager-0.61.3.exe
    2015-12-12 13:03 - 2015-12-12 13:04 - 61454277 _____ C:\Users\kinkb_000\Downloads\Realistic Water Two - ENB Textures-41076-1-11.7z
    2015-12-11 22:31 - 2015-12-14 20:36 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Skyrim
    2015-12-11 22:30 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_6.dll
    2015-12-11 22:30 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_6.dll
    2015-12-11 22:30 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_4.dll
    2015-12-11 22:30 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_7.dll
    2015-12-11 22:30 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_5.dll
    2015-12-11 22:30 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
    2015-12-11 22:30 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
    2015-12-11 22:30 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_5.dll
    2015-12-11 22:30 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_3.dll
    2015-12-11 22:30 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_42.dll
    2015-12-11 22:30 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
    2015-12-11 22:30 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_4.dll
    2015-12-11 22:30 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
    2015-12-11 22:30 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
    2015-12-11 22:30 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_4.dll
    2015-12-11 22:30 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_6.dll
    2015-12-11 22:30 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
    2015-12-11 22:30 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_41.dll
    2015-12-11 22:30 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_41.dll
    2015-12-11 22:30 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
    2015-12-11 22:30 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_41.dll
    2015-12-11 22:30 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_3.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_3.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_2.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_5.dll
    2015-12-11 22:30 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
    2015-12-11 22:30 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll
    2015-12-11 22:30 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
    2015-12-11 22:30 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll
    2015-12-11 22:30 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
    2015-12-11 22:30 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll
    2015-12-11 22:30 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
    2015-12-11 22:30 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
    2015-12-11 22:30 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_2.dll
    2015-12-11 22:30 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_1.dll
    2015-12-11 22:30 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
    2015-12-11 22:30 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_2.dll
    2015-12-11 22:30 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
    2015-12-11 22:30 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
    2015-12-11 22:30 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_39.dll
    2015-12-11 22:30 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
    2015-12-11 22:30 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_39.dll
    2015-12-11 22:30 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
    2015-12-11 22:30 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_39.dll
    2015-12-11 22:30 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_1.dll
    2015-12-11 22:30 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
    2015-12-11 22:30 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
    2015-12-11 22:30 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_1.dll
    2015-12-11 22:30 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_0.dll
    2015-12-11 22:30 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
    2015-12-11 22:30 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
    2015-12-11 22:30 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_4.dll
    2015-12-11 22:30 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_38.dll
    2015-12-11 22:30 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
    2015-12-11 22:30 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_38.dll
    2015-12-11 22:30 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
    2015-12-11 22:30 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_0.dll
    2015-12-11 22:30 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
    2015-12-11 22:30 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
    2015-12-11 22:30 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_0.dll
    2015-12-11 22:30 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_3.dll
    2015-12-11 22:30 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
    2015-12-11 22:30 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_37.dll
    2015-12-11 22:30 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
    2015-12-11 22:30 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_37.dll
    2015-12-11 22:30 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
    2015-12-11 22:30 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_37.dll
    2015-12-11 22:30 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
    2015-12-11 22:30 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_10.dll
    2015-12-11 22:30 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
    2015-12-11 22:30 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_36.dll
    2015-12-11 22:30 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
    2015-12-11 22:30 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_36.dll
    2015-12-11 22:30 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
    2015-12-11 22:29 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_2.dll
    2015-12-11 22:29 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
    2015-12-11 22:29 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_36.dll
    2015-12-11 22:29 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
    2015-12-11 22:29 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_9.dll
    2015-12-11 22:29 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
    2015-12-11 22:29 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_35.dll
    2015-12-11 22:29 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
    2015-12-11 22:29 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_35.dll
    2015-12-11 22:29 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
    2015-12-11 22:29 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_35.dll
    2015-12-11 22:29 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
    2015-12-11 22:29 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_8.dll
    2015-12-11 22:29 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
    2015-12-11 22:29 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_34.dll
    2015-12-11 22:29 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
    2015-12-11 22:29 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_34.dll
    2015-12-11 22:29 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
    2015-12-11 22:29 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_34.dll
    2015-12-11 22:29 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
    2015-12-11 22:29 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_7.dll
    2015-12-11 22:29 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
    2015-12-11 22:29 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_33.dll
    2015-12-11 22:29 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
    2015-12-11 22:29 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_33.dll
    2015-12-11 22:29 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_33.dll
    2015-12-11 22:29 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
    2015-12-11 22:29 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_1.dll
    2015-12-11 22:29 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
    2015-12-11 22:29 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_6.dll
    2015-12-11 22:29 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
    2015-12-11 22:29 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
    2015-12-11 22:29 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_5.dll
    2015-12-11 22:29 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_32.dll
    2015-12-11 22:29 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
    2015-12-11 22:29 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10.dll
    2015-12-11 22:29 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
    2015-12-11 22:29 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_31.dll
    2015-12-11 22:29 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
    2015-12-11 22:29 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
    2015-12-11 22:29 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_4.dll
    2015-12-11 22:29 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_2.dll
    2015-12-11 22:29 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_3.dll
    2015-12-11 22:29 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
    2015-12-11 22:29 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
    2015-12-11 22:29 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
    2015-12-11 22:29 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_2.dll
    2015-12-11 22:29 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_30.dll
    2015-12-11 22:29 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
    2015-12-11 22:29 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_1.dll
    2015-12-11 22:29 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
    2015-12-11 22:29 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_1.dll
    2015-12-11 22:29 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
    2015-12-11 22:29 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_29.dll
    2015-12-11 22:29 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
    2015-12-11 22:29 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_0.dll
    2015-12-11 22:29 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
    2015-12-11 22:29 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_0.dll
    2015-12-11 22:29 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
    2015-12-11 22:29 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_28.dll
    2015-12-11 22:29 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
    2015-12-11 22:29 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_27.dll
    2015-12-11 22:29 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
    2015-12-11 22:29 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_26.dll
    2015-12-11 22:29 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
    2015-12-11 22:29 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_25.dll
    2015-12-11 22:29 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
    2015-12-11 22:29 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_24.dll
    2015-12-11 22:29 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
    2015-12-10 11:43 - 2015-12-10 11:43 - 00093731 _____ C:\Users\kinkb_000\Downloads\Sublime-GLua-Highlight-master.zip
    2015-12-10 11:40 - 2015-12-10 11:41 - 00132045 _____ C:\Users\kinkb_000\Downloads\GmodLua.xml
    2015-12-10 09:22 - 2015-12-10 09:22 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\Sublime Text 3
    2015-12-10 09:22 - 2015-12-10 09:22 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Sublime Text 3
    2015-12-10 09:21 - 2015-12-10 09:21 - 00000000 ____D C:\Program Files\Sublime Text 3
    2015-12-10 09:20 - 2015-12-10 09:20 - 08064616 _____ (Sublime HQ Pty Ltd ) C:\Users\kinkb_000\Downloads\Sublime Text Build 3083 x64 Setup.exe
    2015-12-10 09:19 - 2015-12-10 09:19 - 00000000 ____D C:\Program Files (x86)\Lua
    2015-12-10 09:18 - 2015-12-10 09:18 - 26279218 _____ (The Lua for Windows Project and Lua and Tecgraf, PUC-Rio ) C:\Users\kinkb_000\Downloads\LuaForWindows_v5.1.4-46.exe

    ==================== One Month Modified files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2016-01-09 21:22 - 2013-08-22 06:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
    2016-01-09 21:21 - 2015-12-04 19:26 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2016-01-09 21:21 - 2015-10-20 07:51 - 00000000 ___RD C:\Users\kinkb_000\OneDrive
    2016-01-09 21:19 - 2015-10-20 08:09 - 00000000 ____D C:\ProgramData\NVIDIA
    2016-01-09 21:17 - 2015-12-04 19:26 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2016-01-09 21:12 - 2013-08-22 05:36 - 00000000 ____D C:\Windows
    2016-01-09 21:11 - 2015-10-20 08:01 - 00000000 ____D C:\Program Files (x86)\Steam
    2016-01-09 21:06 - 2014-11-21 00:43 - 00863592 _____ C:\Windows\System32\PerfStringBackup.INI
    2016-01-09 21:06 - 2013-08-22 05:36 - 00000000 ____D C:\Windows\Inf
    2016-01-09 17:20 - 2015-12-02 16:47 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\uTorrent
    2016-01-09 15:45 - 2015-10-23 15:22 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\Audacity
    2016-01-09 03:45 - 2015-10-20 07:45 - 00000000 ____D C:\users\kinkb_000
    2016-01-06 18:20 - 2015-12-02 16:47 - 00000000 ____D C:\Users\kinkb_000\AppData\LocalLow\uTorrent
    2016-01-03 16:00 - 2013-08-22 05:25 - 00262144 ___SH C:\Windows\System32\config\BBI
    2016-01-03 14:35 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\LiveKernelReports
    2016-01-02 19:49 - 2015-12-04 19:07 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Spotify
    2016-01-02 19:45 - 2015-12-04 19:06 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\Spotify
    2015-12-31 15:30 - 2015-10-22 11:56 - 00000000 ____D C:\ProgramData\Package Cache
    2015-12-30 16:16 - 2015-10-20 15:36 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\PAYDAY 2
    2015-12-30 10:58 - 2013-08-22 07:20 - 00000000 ____D C:\Windows\CbsTemp
    2015-12-29 13:16 - 2015-12-09 14:08 - 00000000 ____D C:\HammerAutosave
    2015-12-26 21:13 - 2015-10-20 08:03 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Steam
    2015-12-26 00:48 - 2014-11-21 08:23 - 00826872 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2015-12-26 00:48 - 2014-11-21 08:23 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2015-12-18 16:00 - 2015-12-07 15:48 - 00000000 ____D C:\Program Files\Common Files\Adobe
    2015-12-18 16:00 - 2015-12-07 15:42 - 00000000 ____D C:\ProgramData\Adobe
    2015-12-18 15:56 - 2015-10-20 10:35 - 00000000 ____D C:\Windows\Panther
    2015-12-18 13:42 - 2015-10-24 18:30 - 00000000 ____D C:\Users\kinkb_000\AppData\Roaming\Skype
    2015-12-18 02:00 - 2015-12-07 15:41 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\Adobe
    2015-12-17 23:53 - 2015-10-20 07:45 - 00000000 ___SD C:\Windows\SysWOW64\GWX
    2015-12-17 23:53 - 2015-10-20 07:45 - 00000000 ___SD C:\Windows\System32\GWX
    2015-12-17 14:28 - 2015-12-02 19:15 - 00000000 ____D C:\Users\kinkb_000\Documents\My Games
    2015-12-16 10:45 - 2015-10-20 07:56 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
    2015-12-16 10:43 - 2015-10-20 07:46 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\VirtualStore
    2015-12-16 10:34 - 2015-10-20 07:57 - 00000000 ____D C:\Users\kinkb_000\AppData\Local\NVIDIA Corporation
    2015-12-16 04:22 - 2015-10-23 02:36 - 00000000 ____D C:\Windows\System32\MRT
    2015-12-16 04:15 - 2015-10-23 02:36 - 140158008 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
    2015-12-13 23:28 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\rescache
    2015-12-12 23:15 - 2014-11-21 00:25 - 00000000 ____D C:\Windows\ShellNew

    Some files in TEMP:
    ====================
    C:\Users\kinkb_000\AppData\Local\Temp\AmazingTab20151027.exe
    C:\Users\kinkb_000\AppData\Local\Temp\amzngtb.exe
    C:\Users\kinkb_000\AppData\Local\Temp\CAKEWALK.MUSIC.CREATOR.V5__10924_i1816561804_il2620019.exe
    C:\Users\kinkb_000\AppData\Local\Temp\oksoft12.exe


    ==================== Known DLLs (Whitelisted) =========================


    ==================== Bamital & volsnap =================

    (There is no automatic fix for files that do not pass verification.)

    C:\Windows\System32\winlogon.exe
    [2015-12-08 14:14] - [2015-10-05 10:25] - 0572928 ____A (Microsoft Corporation) 3F8645885823692D93765817759BE21C

    C:\Windows\System32\wininit.exe
    [2015-12-08 14:14] - [2015-10-05 10:28] - 0146432 ____A (Microsoft Corporation) EC302D06155F8E3C383750993FCB6B27

    C:\Windows\explorer.exe
    [2015-10-20 07:42] - [2015-08-10 18:47] - 2757072 ____A (Microsoft Corporation) E1B0AF69BFB6CBDE9B53C55E4BF91992

    C:\Windows\SysWOW64\explorer.exe
    [2015-10-20 07:42] - [2015-08-10 18:47] - 2414096 ____A (Microsoft Corporation) 9180E7A47852FC2EBDAEF0B1F0D146BD

    C:\Windows\System32\svchost.exe
    [2014-11-21 01:16] - [2014-11-21 01:16] - 0038792 ____A (Microsoft Corporation) E3A2AD05E24105B35E986CF9CB38EC47

    C:\Windows\SysWOW64\svchost.exe
    [2014-11-21 01:18] - [2014-11-21 01:18] - 0033088 ____A (Microsoft Corporation) D0ABC231C0B3E88C6B612B28ABBF734D

    C:\Windows\System32\services.exe
    [2015-10-22 04:09] - [2015-04-08 14:55] - 0410128 ____A (Microsoft Corporation) E0C7813A97CA7947FF5C18A8F3B61A45

    C:\Windows\System32\User32.dll
    [2015-12-08 14:16] - [2015-11-08 16:41] - 1540728 ____A (Microsoft Corporation) 33094E2182C451BCFCFD60F734B1C4EF

    C:\Windows\SysWOW64\User32.dll
    [2015-12-08 14:16] - [2015-11-08 12:48] - 1376256 ____A (Microsoft Corporation) 72DF14DA8F1CC15F7BE4176DE0404D9E

    C:\Windows\System32\userinit.exe
    [2014-11-21 01:16] - [2014-11-21 01:16] - 0026112 ____A (Microsoft Corporation) 5C131534A3EA4A461A793FB507A8004F

    C:\Windows\SysWOW64\userinit.exe
    [2014-11-21 01:18] - [2014-11-21 01:18] - 0022528 ____A (Microsoft Corporation) D10643FC0095434C819316CA6CD748C0

    C:\Windows\System32\rpcss.dll
    [2014-11-21 01:16] - [2014-11-21 01:16] - 0817664 ____A (Microsoft Corporation) A6F17C299A03BAFEFB9257C462A19E00

    C:\Windows\System32\dnsapi.dll
    [2014-11-21 01:16] - [2014-11-21 01:16] - 0657920 ____A (Microsoft Corporation) A5675939CF0F99B20B5A3CFCC3C1B46A

    C:\Windows\SysWOW64\dnsapi.dll
    [2014-11-21 01:18] - [2014-11-21 01:18] - 0498688 ____A (Microsoft Corporation) BD9C7A068C46053F8747CEA73B5930AB

    C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

    ==================== EXE Association (Whitelisted) =============


    ==================== Restore Points =========================

    Restore point date: 2016-01-09 15:52

    ==================== Memory info ===========================

    Percentage of memory in use: 8%
    Total physical RAM: 8087.3 MB
    Available physical RAM: 7379.57 MB
    Total Virtual: 8087.3 MB
    Available Virtual: 7387.93 MB

    ==================== Drives ================================

    Drive c: () (Fixed) (Total:931 GB) (Free:505.03 GB) NTFS
    Drive d: (ESD-USB) (Removable) (Total:7.59 GB) (Free:7.59 GB) FAT32
    Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.5 GB) NTFS

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (Size: 931.5 GB) (Disk ID: DCEAE272)

    Partition: GPT.

    ========================================================
    Disk: 1 (MBR Code: Windows 7 or 8) (Size: 7.6 GB) (Disk ID: 00000000)

    Partition: GPT.


    LastRegBack: 2016-01-03 03:29

    ==================== End of FRST.txt ============================
     
  14. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

    On Vista or Windows 7/8: Now please enter System Recovery Options.
    On Windows XP: Now please boot into the OTLPE CD.
    Run FRST(FRST64) and press the Fix button just once and wait.
    The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

    Restart computer and see if you can use your browser normally.
     

    Attached Files:

  15. Broni

    Broni Malware Annihilator Posts: 52,895   +344

    Still with me?
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...