FRST.txt (2)
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed]
R2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [155648 2008-12-18] (Stardock Corporation) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [974944 2011-09-22] (ESET)
R2 FreeAgentGoNext Service; C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe [189736 2009-12-18] (Seagate Technology LLC)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [43520 2006-11-08] (Hewlett-Packard) [File not signed]
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53248 2006-11-08] (Hewlett-Packard) [File not signed]
R2 sesvc; C:\Program Files\ShadowExplorer\sesvc.exe [9216 2013-01-02] (
www.shadowexplorer.com) [File not signed]
R2 SftService; C:\Program Files\Dell DataSafe Local Backup\sftservice.EXE [689472 2010-08-20] (SoftThinks SAS)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-20] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 ASPI32; C:\Windows\system32\Drivers\ASPI32.sys [25244 1999-09-10] (Adaptec)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163424 2011-08-09] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [118104 2011-08-04] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [103112 2011-08-04] (ESET)
S3 LEqdUsb; C:\Windows\System32\Drivers\LEqdUsb.Sys [43704 2012-09-18] (Logitech, Inc.)
S3 LHidEqd; C:\Windows\System32\Drivers\LHidEqd.Sys [12216 2012-09-18] (Logitech, Inc.)
R3 Linksys_adapter; C:\Windows\System32\DRIVERS\AE2500vista.sys [1073216 2011-04-01] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-10-05] (Malwarebytes Corporation)
S3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [839456 2010-02-15] (Ralink Technology Corp.)
S3 R300; C:\Windows\System32\DRIVERS\atikmdag.sys [9647104 2012-12-19] (Advanced Micro Devices, Inc.)
S3 usbbus; C:\Windows\System32\DRIVERS\lgusbbus.sys [13056 2008-11-19] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgusbdiag.sys [19968 2008-11-19] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgusbmodem.sys [24832 2008-11-19] (LG Electronics Inc.)
S3 ZD1211U(ZyDAS); C:\Windows\System32\DRIVERS\zd1211u.sys [259584 2004-12-22] (ZyDAS Technology Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-20] (Microsoft Corporation)
S3 AtiHDAudioService; system32\drivers\AtihdLH3.sys [X]
R3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 LgBttPort; system32\DRIVERS\lgbtport.sys [X]
S3 lgbusenum; system32\DRIVERS\lgbtbus.sys [X]
S3 LGVMODEM; system32\DRIVERS\lgvmodem.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
U3 mbr; \??\C:\Users\Brad2\AppData\Local\Temp\mbr.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-17 19:54 - 2015-12-17 19:54 - 00030677 _____ C:\Users\Brad2\Downloads\FRST.txt
2015-12-16 21:42 - 2015-12-16 21:42 - 00023220 _____ C:\ComboFix.txt
2015-12-16 21:04 - 2011-06-26 01:45 - 00256000 _____ C:\Windows\PEV.exe
2015-12-16 21:04 - 2010-11-07 12:20 - 00208896 _____ C:\Windows\MBR.exe
2015-12-16 21:04 - 2009-04-19 23:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-12-16 21:04 - 2000-08-30 19:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-12-16 21:04 - 2000-08-30 19:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-12-16 21:04 - 2000-08-30 19:00 - 00098816 _____ C:\Windows\sed.exe
2015-12-16 21:04 - 2000-08-30 19:00 - 00080412 _____ C:\Windows\grep.exe
2015-12-16 21:04 - 2000-08-30 19:00 - 00068096 _____ C:\Windows\zip.exe
2015-12-16 21:00 - 2015-12-16 21:42 - 00000000 ____D C:\Qoobox
2015-12-16 21:00 - 2015-12-16 21:41 - 00000000 ____D C:\Windows\erdnt
2015-12-16 20:47 - 2015-12-16 20:48 - 05639940 ____R (Swearware) C:\Users\Brad2\Desktop\ComboFix.exe
2015-12-16 19:51 - 2015-12-16 19:51 - 00000569 _____ C:\Users\Brad2\Downloads\JRT.txt
2015-12-16 19:50 - 2015-12-16 19:50 - 00000569 _____ C:\Users\Brad2\Desktop\JRT.txt
2015-12-16 19:46 - 2015-12-16 19:46 - 00002466 _____ C:\Users\Brad2\Downloads\AdwCleaner[C5].txt
2015-12-16 19:35 - 2015-12-16 19:35 - 00001056 _____ C:\Users\Brad2\Downloads\MBAM.txt
2015-12-16 19:07 - 2015-12-16 19:59 - 00170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-12-16 19:06 - 2015-12-16 19:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-12-16 19:06 - 2015-12-16 19:06 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-12-16 19:06 - 2015-10-05 09:50 - 00094936 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-12-16 19:06 - 2015-10-05 09:50 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-12-16 19:06 - 2015-10-05 09:50 - 00023256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-12-16 19:03 - 2015-12-16 19:03 - 01740288 _____ C:\Users\Brad2\Desktop\adwcleaner_5.025.exe
2015-12-16 19:03 - 2015-12-16 19:03 - 01599336 _____ (Malwarebytes) C:\Users\Brad2\Desktop\JRT.exe
2015-12-16 19:02 - 2015-12-16 19:02 - 22908888 _____ (Malwarebytes ) C:\Users\Brad2\Desktop\mbam-setup-2.2.0.1024.exe
2015-12-16 18:56 - 2015-12-16 18:56 - 00024550 _____ C:\Users\Brad2\Downloads\RogueKiller.txt
2015-12-16 18:36 - 2015-12-16 18:36 - 00030848 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-12-16 18:35 - 2015-12-16 18:56 - 00000000 ____D C:\ProgramData\RogueKiller
2015-12-16 18:33 - 2015-12-16 18:34 - 20834376 _____ C:\Users\Brad2\Downloads\RogueKiller.exe
2015-12-16 17:17 - 2015-12-17 19:54 - 00000000 ____D C:\FRST
2015-12-16 17:16 - 2015-12-16 17:16 - 01721344 _____ (Farbar) C:\Users\Brad2\Downloads\FRST.exe
2015-12-12 14:17 - 2015-12-12 14:17 - 00000000 ____D C:\Users\Brad2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-23 20:44 - 2015-11-23 21:05 - 00000000 ____D C:\ProgramData\HitmanPro
2015-11-23 18:06 - 2015-08-13 09:15 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-11-23 18:06 - 2015-08-13 09:15 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-11-23 18:06 - 2015-01-28 20:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-11-23 18:05 - 2015-01-28 20:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-11-23 18:03 - 2015-10-17 09:24 - 02068480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-23 17:21 - 2015-07-21 11:07 - 00140224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ecache.sys
2015-11-23 17:21 - 2015-07-21 11:07 - 00056256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-11-23 17:21 - 2015-07-21 11:03 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\emdmgmt.dll
2015-11-23 17:21 - 2015-07-21 11:03 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-11-23 17:20 - 2015-07-03 11:04 - 01316864 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-11-23 17:18 - 2015-09-02 16:26 - 01402368 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-11-23 17:18 - 2015-09-02 16:26 - 01253376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-11-23 17:14 - 2014-06-26 17:17 - 00619664 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-11-23 17:14 - 2014-06-26 17:17 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-11-23 17:14 - 2014-06-26 17:17 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-11-23 17:14 - 2014-06-05 23:28 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-11-23 17:12 - 2015-07-31 14:27 - 00103120 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-23 17:11 - 2014-06-15 17:18 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-11-23 17:11 - 2014-06-13 13:22 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-11-23 17:11 - 2014-06-13 13:22 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-11-23 17:09 - 2015-06-17 11:50 - 02264576 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-11-23 17:09 - 2015-06-17 10:09 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-11-23 17:09 - 2014-06-02 05:31 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-11-23 17:09 - 2014-06-02 05:30 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-11-23 17:09 - 2014-06-02 05:30 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-11-23 17:09 - 2014-06-02 03:56 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-11-23 17:08 - 2014-12-18 19:25 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-11-23 17:08 - 2014-10-09 20:01 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-11-23 17:08 - 2014-10-09 20:00 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-23 17:08 - 2014-10-09 18:22 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-23 17:07 - 2015-06-12 11:01 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-11-23 17:03 - 2015-04-24 10:54 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-11-23 17:02 - 2015-07-10 14:37 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-11-23 16:55 - 2015-03-04 21:32 - 00244152 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-11-23 16:55 - 2015-03-04 21:23 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-11-23 16:55 - 2014-10-23 20:04 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-11-23 16:54 - 2015-10-13 09:31 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-23 16:54 - 2015-10-13 09:31 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-11-23 16:53 - 2015-12-16 19:39 - 00000000 ____D C:\AdwCleaner
2015-11-23 16:51 - 2014-11-25 21:05 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-11-23 16:49 - 2015-10-17 11:01 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-23 16:49 - 2015-07-18 11:03 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-11-23 16:49 - 2015-01-20 21:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-11-23 16:48 - 2014-08-11 21:25 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-11-23 16:46 - 2015-09-02 16:26 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-11-23 16:46 - 2015-09-02 14:54 - 00297472 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00901264 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00066400 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00022368 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00015200 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011104 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-23 16:46 - 2015-07-18 08:14 - 00011104 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-11-23 16:46 - 2015-07-10 09:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-11-23 16:44 - 2015-10-14 15:22 - 01206192 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-23 16:44 - 2015-10-14 11:01 - 03606464 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-11-23 16:44 - 2015-10-14 11:01 - 03554752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-23 16:44 - 2015-08-05 10:59 - 00602112 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-11-23 16:44 - 2015-07-21 11:03 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-23 16:44 - 2015-01-08 19:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-23 16:43 - 2015-07-28 19:46 - 11588096 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-11-23 16:43 - 2014-10-02 20:18 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-11-23 16:43 - 2014-10-02 20:17 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-11-23 16:43 - 2014-10-02 20:17 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-11-23 16:43 - 2014-10-02 20:17 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-11-23 16:42 - 2014-12-05 22:14 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-11-23 16:42 - 2014-12-05 22:14 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-11-23 16:42 - 2014-12-05 22:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-11-23 16:42 - 2014-08-26 19:55 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-11-23 16:41 - 2015-05-31 03:11 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-11-23 16:39 - 2015-07-31 16:46 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-11-23 16:39 - 2015-07-31 16:46 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-11-23 16:39 - 2015-07-31 16:46 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-11-23 16:39 - 2015-07-31 16:46 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-11-23 16:39 - 2015-07-31 15:41 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-11-23 16:39 - 2015-07-31 15:40 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-11-23 16:39 - 2015-07-31 15:35 - 00682496 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-11-23 16:39 - 2015-07-31 15:33 - 01072640 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-11-23 16:39 - 2015-07-31 15:33 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-11-23 16:39 - 2015-04-10 18:22 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-11-23 16:37 - 2015-05-08 18:08 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-11-23 16:37 - 2014-09-04 18:27 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2015-11-23 16:36 - 2015-10-10 11:02 - 00526272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-11-23 16:36 - 2015-07-01 10:57 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-11-23 16:36 - 2014-12-07 20:59 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-11-23 16:35 - 2015-07-09 09:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-11-23 16:35 - 2015-07-09 09:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-11-23 16:34 - 2015-05-04 17:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-11-23 16:34 - 2015-05-04 17:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-11-23 16:34 - 2015-05-04 17:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-11-23 16:34 - 2015-05-04 16:21 - 08147456 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-11-23 16:33 - 2015-05-04 17:51 - 10628608 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-11-23 16:31 - 2015-09-26 11:04 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-23 16:31 - 2015-06-27 11:02 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-23 16:31 - 2015-06-27 09:21 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-23 16:31 - 2015-06-27 09:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-23 16:31 - 2015-01-08 19:17 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-23 16:31 - 2014-12-05 22:14 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-11-23 16:30 - 2015-09-26 11:05 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-23 16:30 - 2015-09-26 08:21 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2015-11-23 16:30 - 2015-09-22 08:11 - 00440768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-23 16:30 - 2015-06-27 11:03 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-23 16:30 - 2015-06-27 11:01 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-11-23 16:30 - 2014-10-09 20:00 - 01259008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-23 16:26 - 2015-10-31 13:40 - 12376576 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-23 16:26 - 2015-10-31 13:38 - 09727488 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-23 16:26 - 2015-10-31 13:38 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-23 16:26 - 2015-10-31 13:37 - 01830912 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-23 16:26 - 2015-10-31 13:36 - 01789440 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-23 16:26 - 2015-10-31 13:36 - 01093632 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 01088512 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00711168 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-23 16:26 - 2015-10-31 13:36 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-23 16:26 - 2015-10-31 13:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-23 16:26 - 2015-10-31 13:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-23 16:26 - 2014-06-13 19:44 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-11-23 16:26 - 2014-06-13 19:33 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-11-23 16:26 - 2014-04-26 11:01 - 00502784 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-11-23 16:26 - 2014-04-04 21:42 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-11-23 16:25 - 2014-06-06 03:59 - 00506880 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-11-23 16:17 - 2014-01-30 02:46 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-17 19:50 - 2009-12-17 21:40 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-17 19:22 - 2013-07-19 08:52 - 00000908 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3042114519-3340198119-1978524648-1001UA.job
2015-12-17 19:05 - 2015-06-24 16:51 - 00000918 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3042114519-3340198119-1978524648-1001UA.job
2015-12-17 17:56 - 2006-11-02 07:45 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-12-17 17:56 - 2006-11-02 07:45 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-12-17 17:05 - 2015-06-24 16:51 - 00000866 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3042114519-3340198119-1978524648-1001Core.job
2015-12-17 15:57 - 2009-12-17 21:40 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-17 12:36 - 2009-10-29 10:02 - 00000000 ____D C:\Users\Brad2\Documents\MPD
2015-12-17 12:33 - 2013-07-19 08:52 - 00000856 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3042114519-3340198119-1978524648-1001Core.job
2015-12-16 21:42 - 2006-11-02 06:18 - 00000000 ____D C:\Windows
2015-12-16 21:41 - 2006-11-02 06:18 - 00000000 ____D C:\Windows\inf
2015-12-16 21:41 - 2006-11-02 05:33 - 00759582 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-16 21:38 - 2011-03-07 16:40 - 00000000 ___RD C:\Users\Brad2\Dropbox
2015-12-16 21:38 - 2011-03-04 12:48 - 00000000 ____D C:\Users\Brad2\AppData\Roaming\Dropbox
2015-12-16 21:35 - 2006-11-02 05:23 - 00000215 _____ C:\Windows\system.ini
2015-12-16 21:34 - 2009-10-06 19:52 - 00000000 ____D C:\Users\Brad2\AppData\Local\SoftThinks
2015-12-16 21:34 - 2006-11-02 07:58 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-16 21:33 - 2006-11-02 07:58 - 00032620 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-12-16 20:58 - 2009-10-06 19:53 - 00099960 _____ C:\Users\Brad2\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-15 18:23 - 2009-10-06 19:53 - 00000000 ____D C:\Users\Brad2\AppData\Roaming\Mozilla
2015-12-14 09:44 - 2009-09-19 22:26 - 00099960 _____ C:\Users\Brad\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-14 09:35 - 2009-09-19 22:25 - 00000000 ____D C:\Users\Brad\AppData\Local\SoftThinks
2015-12-13 00:54 - 2009-10-06 19:52 - 00000000 ____D C:\Users\Brad2
2015-12-13 00:47 - 2009-11-15 00:18 - 00000000 ____D C:\Program Files\Civilization 4
2015-12-13 00:46 - 2009-11-15 00:39 - 00000000 ____D C:\Users\Brad2\AppData\Roaming\My Games
2015-12-13 00:31 - 2006-11-02 07:44 - 00367288 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-13 00:19 - 2010-03-08 11:38 - 00020744 _____ C:\Users\Brad2\AppData\Local\d3d9caps.dat
2015-12-13 00:06 - 2013-01-29 15:01 - 00000000 ____D C:\Program Files\Common Files\Logishrd
2015-12-13 00:05 - 2013-01-29 15:02 - 00000000 ____D C:\ProgramData\Logishrd
2015-12-12 14:04 - 2009-10-06 22:31 - 00000000 ____D C:\Users\Brad2\Documents\Reimbursements
2015-12-12 11:05 - 2009-09-09 16:39 - 00000000 ____D C:\Program Files\Dell DataSafe Local Backup
2015-12-10 14:35 - 2009-10-27 13:45 - 00000000 ____D C:\Users\Brad2\AppData\Roaming\Skype
2015-12-10 12:53 - 2009-10-27 13:43 - 00000000 ____D C:\ProgramData\Skype
2015-12-09 13:32 - 2010-03-08 18:10 - 00014480 _____ C:\Users\Brad\AppData\Local\d3d9caps.dat
2015-12-04 19:32 - 2012-12-06 12:26 - 00000000 ____D C:\Users\Brad2\Documents\Receipts & Warranties
2015-12-03 23:22 - 2015-09-17 09:58 - 00000561 _____ C:\Users\Brad2\Desktop\New Text Document.txt
2015-12-02 20:23 - 2013-01-14 17:41 - 00000000 ____D C:\Users\Brad2\Documents\Église du Plateau
2015-12-01 12:31 - 2011-03-07 23:25 - 00000000 ____D C:\Users\Brad2\Documents\Travel
2015-11-28 17:46 - 2015-03-27 11:14 - 00002375 _____ C:\Users\Brad2\Desktop\Music.txt
2015-11-23 22:39 - 2013-12-02 12:11 - 00013138 _____ C:\Users\Brad2\Documents\Churning.xlsx
2015-11-23 19:43 - 2012-02-10 13:31 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2015-11-23 19:06 - 2006-11-02 06:18 - 00000000 ____D C:\Windows\rescache
2015-11-23 18:33 - 2006-11-02 07:35 - 00000000 ____D C:\Windows\system32\XPSViewer
2015-11-23 18:02 - 2013-07-25 02:00 - 00000000 ____D C:\Windows\system32\MRT
2015-11-21 14:50 - 2015-10-09 13:19 - 00002122 _____ C:\Users\Brad2\Desktop\cult apolog.txt
2015-11-20 12:09 - 2011-03-13 23:30 - 00000000 ____D C:\Users\Brad2\Documents\SBTS
==================== Files in the root of some directories =======
2013-08-01 09:36 - 2013-08-01 09:36 - 0026120 _____ () C:\Users\Brad2\AppData\Roaming\UserTile.png
2010-02-06 11:52 - 2012-10-13 18:23 - 0000548 _____ () C:\Users\Brad2\AppData\Roaming\wklnhst.dat
2010-03-08 11:38 - 2015-12-13 00:19 - 0020744 _____ () C:\Users\Brad2\AppData\Local\d3d9caps.dat
2009-10-06 22:28 - 2015-11-12 02:17 - 0180736 _____ () C:\Users\Brad2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2009-10-27 13:55 - 2009-10-27 13:55 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2009-12-10 11:32 - 2013-08-01 11:07 - 0008583 _____ () C:\ProgramData\hpzinstall.log
Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-12-16 21:45
==================== End of FRST.txt ============================