I have a relatively new credit card that I have only really used for online purchases which info was stolen and attempted to make (failed) purchases with, I haven't really used it much besides online and I doubt it was a local fraud because one of the purchases was at a clothing store half a world away. Anyway.... My antivirus/Malwarebytes are comming up with nothing, here's FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-05-2015
Ran by B (administrator) on B on 30-05-2015 00:51:48
Running from C:\Users\Bn\Desktop
Loaded Profiles: Brennan (Available Profiles: )
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Webroot) C:\Program Files\Webroot\WRSA.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.04.01\AsusFanControlService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
() C:\Program Files (x86)\Everything\Everything.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\System32\PnkBstrA.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\Corsair\Corsair Link\CorsairLink.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(Webroot) C:\Program Files\Webroot\WRSA.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\WiFi GO! Server.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\S5WOW_App\x64\S5wow_2005.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Akamai Technologies, Inc.) C:\Users\Brennan\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Brennan\AppData\Local\Akamai\netsession_win.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\WiFile\WiFileTransfer.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\EPUShortCut.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AsDLNAServerReal.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4056\Agent.exe
(Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.5765\Battle.net.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-22] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUS WiFi GO! FileTransfer Execute] => C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\WiFile\WiFileTransfer.exe [1391416 2013-06-21] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [bdruninstaller] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe" /args:"/after (the data entry has 9 more characters).
HKLM-x32\...\Run: [WRSVC] => C:\Program Files\Webroot\WRSA.exe [817072 2015-05-05] (Webroot)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-1379302413-3029893464-1618603415-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Brennan\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1379302413-3029893464-1618603415-1001\...\Run: [GalaxyClient] => [X]
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1379302413-3029893464-1618603415-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/en-ca/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Webroot Filtering Extension -> {C9C42510-9B41-42c1-9DCD-7282A2D07C61} -> C:\Program Files\Webroot\WRData\PKG\Vistax64\wrflt.dll [2015-02-26] (Webroot)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-30] (Oracle Corporation)
BHO-x32: Webroot Filtering Extension -> {C9C42510-9B41-42c1-9DCD-7282A2D07C61} -> C:\Program Files\Webroot\WRData\PKG\Vistax86\wrflt.dll [2015-02-26] (Webroot)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-30] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 172.16.42.1
FireFox:
========
FF ProfilePath: C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll [2015-05-18] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll No File
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-18] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll No File
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-03] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-03] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-30] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-30] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-11] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Extension: Blur (Formerly DoNotTrackMe) - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\donottrackplus@abine.com [2015-05-29]
FF Extension: WOT - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-05-29]
FF Extension: Bitdefender QuickScan - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2015-05-28]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-09-07]
FF Extension: Add to Amazon Wish List Button - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\amznUWL2@amazon.com.xpi [2015-02-03]
FF Extension: ZenMate Security & Privacy VPN - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\firefox@zenmate.com.xpi [2015-04-21]
FF Extension: YouTube High Definition - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2015-02-01]
FF Extension: Adblock Plus - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-07]
FF Extension: DownThemAll! - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-02-16]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [webrootsecure@webroot.com] - C:\ProgramData\WRData\PKG\FIREFOX\WebrootSecure_SocketServer
FF Extension: Webroot Filtering Extension - C:\ProgramData\WRData\PKG\FIREFOX\WebrootSecure_SocketServer [2014-10-16]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-07-04] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2013-08-01] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.04.01\AsusFanControlService.exe [1656464 2013-08-08] (ASUSTeK Computer Inc.)
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)
R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240584 2012-10-02] (DTS, Inc)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation)
R2 Everything; C:\Program Files (x86)\Everything\Everything.exe [1048576 2014-08-05] () [File not signed] <==== ATTENTION
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [1743928 2015-05-28] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6516792 2015-05-28] (GOG.com)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-22] (NVIDIA Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-22] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23006864 2015-05-22] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1931632 2015-04-12] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-12-27] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-12-07] ()
S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)
R2 WRSVC; C:\Program Files\Webroot\WRSA.exe [817072 2015-05-05] (Webroot)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2013-07-04] ()
R3 ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [21400 2013-01-28] (http://www.asmedia.com.tw) [File not signed]
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2012-09-14] ()
R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-27] (Intel Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-29] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-22] (NVIDIA Corporation)
R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [39056 2015-05-11] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-04-03] (NVIDIA Corporation)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
R1 tmcomm; C:\Windows\system32\DRIVERS\tmcomm.sys [285208 2013-09-27] (Trend Micro Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-02-06] ()
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
R0 WRkrn; C:\Windows\System32\drivers\WRkrn.sys [116224 2015-05-05] (Webroot)
S3 wrUrlFlt; C:\Windows\system32\DRIVERS\wrUrlFlt.sys [41040 2015-02-26] (Webroot)
R3 cpuz137; \??\C:\Users\Brennan\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-30 00:51 - 2015-05-30 00:51 - 00019775 _____ () C:\Users\Brennan\Desktop\FRST.txt
2015-05-30 00:51 - 2015-05-30 00:51 - 00000000 ____D () C:\FRST
2015-05-30 00:48 - 2015-05-30 00:48 - 02108928 _____ (Farbar) C:\Users\Brennan\Desktop\FRST64.exe
2015-05-30 00:35 - 2015-05-30 00:34 - 00561248 _____ (Oracle Corporation) C:\Users\Brennan\Desktop\jxpiinstall.exe
2015-05-29 22:45 - 2015-05-29 22:45 - 00000010 _____ () C:\Users\Brennan\AppData\Local\sponge.last.runtime.cache
2015-05-29 22:44 - 2015-05-29 22:44 - 00421616 _____ () C:\Users\Brennan\AppData\Local\census.cache
2015-05-29 22:44 - 2015-05-29 22:44 - 00178750 _____ () C:\Users\Brennan\AppData\Local\ars.cache
2015-05-29 22:41 - 2015-05-29 22:41 - 00000036 _____ () C:\Users\Brennan\AppData\Local\housecall.guid.cache
2015-05-29 22:41 - 2013-09-27 19:56 - 00285208 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys
2015-05-29 22:30 - 2015-05-29 22:32 - 00000000 ____D () C:\AdwCleaner
2015-05-29 22:28 - 2015-05-29 22:28 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-BBPC-Windows-8.1-(64-bit).dat
2015-05-29 22:28 - 2015-05-29 22:28 - 00000000 ____D () C:\RegBackup
2015-05-28 21:46 - 2015-05-28 21:46 - 00000000 ____D () C:\Windows\LastGood.Tmp
2015-05-28 21:46 - 2015-05-28 21:46 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-05-28 21:46 - 2015-04-03 06:21 - 00048784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-05-28 21:46 - 2015-04-03 06:21 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-05-28 05:27 - 2015-05-28 05:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com]
2015-05-27 22:49 - 2015-05-27 22:51 - 00000000 ____D () C:\Users\Brennan\Documents\Heroes of the Storm
2015-05-27 22:28 - 2015-05-27 22:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
2015-05-27 00:16 - 2015-05-27 00:16 - 00000000 ____D () C:\Users\Brennan\Documents\BioWare
2015-05-27 00:16 - 2015-05-27 00:16 - 00000000 ____D () C:\ProgramData\EA Core
2015-05-26 00:43 - 2015-05-26 00:44 - 15624032 _____ (FinalWire Ltd. ) C:\Users\Brennan\Desktop\aida64extreme520.exe
2015-05-26 00:42 - 2015-05-26 00:43 - 109047601 _____ () C:\Users\Brennan\Desktop\CINEBENCH_R15.zip
2015-05-25 04:28 - 2015-05-25 04:28 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\QuickScan
2015-05-21 01:43 - 2015-05-21 22:32 - 00000000 ____D () C:\Users\Brennan\Documents\The Witcher 3
2015-05-19 00:38 - 2015-05-20 04:49 - 00000000 ____D () C:\Program Files\PeerBlock
2015-05-19 00:38 - 2015-05-19 00:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock
2015-05-18 21:14 - 2015-05-18 21:14 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\NVIDIA
2015-05-18 21:10 - 2015-05-29 22:33 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-18 21:10 - 2015-05-12 23:52 - 01558848 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-05-18 21:10 - 2015-05-12 23:52 - 00195912 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-05-18 21:10 - 2015-05-12 23:52 - 00031552 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 22945424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 15048816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 13263568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435286.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcvadgenco64.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435286.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00939080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00117576 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcaparm.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00112784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00105288 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00039056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvadarm.sys
2015-05-18 21:10 - 2015-05-11 20:30 - 06872392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 03490448 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 00937288 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-05-18 21:10 - 2015-05-11 20:30 - 00385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-05-18 21:10 - 2015-05-11 19:34 - 00571024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-05-18 21:10 - 2015-05-11 10:01 - 04391871 _____ () C:\Windows\system32\nvcoproc.bin
2015-05-18 20:58 - 2015-05-18 20:58 - 00000000 ____D () C:\Users\Brennan\AppData\Local\GalaxyCommunicationService
2015-05-18 19:24 - 2015-05-19 03:28 - 00000000 ____D () C:\GOG Games
2015-05-18 19:21 - 2015-05-18 19:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2015-05-18 19:21 - 2015-05-18 19:21 - 00000000 ____D () C:\ProgramData\GOG.com
2015-05-18 19:21 - 2015-05-18 19:21 - 00000000 ____D () C:\Program Files (x86)\GalaxyClient
2015-05-17 19:02 - 2015-05-17 19:18 - 00000000 ____D () C:\Program Files (x86)\TuneUpMedia
2015-05-17 19:02 - 2015-05-17 19:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp
2015-05-17 19:01 - 2015-05-28 10:28 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\TuneUpMedia
2015-05-17 18:59 - 2015-05-18 07:03 - 00000000 ____D () C:\ProgramData\TuneUpMedia
2015-05-17 18:43 - 2015-05-17 18:43 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaHuman
2015-05-17 18:43 - 2015-05-17 18:43 - 00000000 ____D () C:\Users\Brennan\AppData\Local\MediaHuman
2015-05-17 18:43 - 2015-05-17 18:43 - 00000000 ____D () C:\Program Files (x86)\MediaHuman
2015-05-15 04:34 - 2015-05-15 04:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-05-15 02:42 - 2015-05-15 02:42 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\dvdcss
2015-05-13 04:28 - 2015-04-30 13:35 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 04:28 - 2015-04-30 13:35 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 01:05 - 2015-04-30 16:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 01:05 - 2015-04-30 15:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-05-13 01:05 - 2015-04-24 14:32 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-13 01:05 - 2015-04-21 10:14 - 24971776 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 01:05 - 2015-04-21 09:50 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 01:05 - 2015-04-21 09:50 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 01:05 - 2015-04-21 09:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 01:05 - 2015-04-21 09:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 01:05 - 2015-04-21 09:35 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 01:05 - 2015-04-21 09:31 - 06025728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 01:05 - 2015-04-21 09:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-05-13 01:05 - 2015-04-21 09:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-05-13 01:05 - 2015-04-21 09:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-05-13 01:05 - 2015-04-21 09:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-05-13 01:05 - 2015-04-21 09:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 01:05 - 2015-04-21 09:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-05-13 01:05 - 2015-04-21 09:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 01:05 - 2015-04-21 09:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-05-13 01:05 - 2015-04-21 08:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-05-13 01:05 - 2015-04-21 08:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-05-13 01:05 - 2015-04-21 08:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-05-13 01:05 - 2015-04-21 08:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 01:05 - 2015-04-21 08:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 01:05 - 2015-04-21 08:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 01:05 - 2015-04-21 08:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 01:05 - 2015-04-21 08:40 - 14401536 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 01:05 - 2015-04-21 08:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-05-13 01:05 - 2015-04-21 08:37 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-05-13 01:05 - 2015-04-21 08:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-05-13 01:05 - 2015-04-21 08:32 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-05-13 01:05 - 2015-04-21 08:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-05-13 01:05 - 2015-04-21 08:28 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-05-13 01:05 - 2015-04-21 08:27 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 01:05 - 2015-04-21 08:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-05-13 01:05 - 2015-04-21 08:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-05-13 01:05 - 2015-04-21 08:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-05-13 01:05 - 2015-04-21 08:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-05-13 01:05 - 2015-04-21 08:15 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 01:05 - 2015-04-21 08:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 01:05 - 2015-04-21 08:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-05-13 01:05 - 2015-04-21 07:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-05-13 01:05 - 2015-04-21 07:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-05-13 01:05 - 2015-04-13 15:48 - 04180480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 01:05 - 2015-04-09 18:00 - 01996800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 01:05 - 2015-04-09 17:50 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 01:05 - 2015-04-09 17:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-05-13 01:05 - 2015-04-09 17:26 - 01560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-05-13 01:05 - 2015-04-09 17:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-05-13 01:05 - 2015-04-08 15:55 - 00410128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 01:05 - 2015-04-02 17:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2015-05-13 01:05 - 2015-04-02 17:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2015-05-13 01:05 - 2015-04-01 15:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-05-13 01:05 - 2015-04-01 15:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-05-13 01:05 - 2015-03-31 20:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-05-13 01:05 - 2015-03-31 19:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-05-13 01:05 - 2015-03-29 22:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-05-13 01:05 - 2015-03-26 20:27 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 01:05 - 2015-03-26 19:50 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-05-13 01:05 - 2015-03-26 19:48 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-13 01:05 - 2015-03-19 18:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-05-13 01:05 - 2015-03-17 10:26 - 00467776 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-05-13 01:05 - 2015-03-12 21:03 - 00239424 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-05-13 01:05 - 2015-03-12 21:03 - 00154432 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-05-13 01:05 - 2015-03-12 19:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-05-13 01:05 - 2015-03-12 18:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-05-13 01:05 - 2015-03-12 17:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-05-13 01:05 - 2015-03-12 17:29 - 00410017 _____ () C:\Windows\system32\ApnDatabase.xml
2015-05-13 01:05 - 2015-03-10 18:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-13 01:05 - 2015-03-10 18:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-05-13 01:05 - 2015-03-08 19:02 - 00057856 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-05-13 01:05 - 2015-03-05 20:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-13 01:05 - 2015-03-05 19:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-05-13 01:05 - 2015-03-05 19:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-05-13 01:05 - 2015-03-04 16:09 - 01429504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-13 01:05 - 2015-03-03 18:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-05-13 01:05 - 2015-03-03 18:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2015-05-13 01:05 - 2015-02-17 16:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-05-13 01:05 - 2015-01-29 17:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-05-09 22:36 - 2015-05-09 22:36 - 00000000 ____D () C:\Users\Brennan\Documents\Diablo III
2015-05-09 03:21 - 2015-05-09 03:21 - 00000000 ____D () C:\ProgramData\Intel
2015-05-09 03:21 - 2013-09-03 16:52 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-05-09 03:20 - 2015-05-09 03:20 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2015-05-09 03:20 - 2013-09-03 16:52 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2015-05-09 03:20 - 2013-09-03 16:52 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2015-05-09 03:19 - 2015-05-09 03:19 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Akamai
2015-05-09 00:53 - 2015-05-09 00:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2015-05-08 22:19 - 2015-05-08 22:28 - 00000000 ____D () C:\Program Files (x86)\StarCraft
2015-05-08 22:19 - 2015-05-08 22:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft
2015-05-04 02:57 - 2015-05-04 19:47 - 00014973 _____ () C:\Users\Brennan\Documents\TombRaider.log
2015-05-04 02:42 - 2015-05-04 02:42 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Skyrim
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-30 00:51 - 2014-09-07 03:03 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Battle.net
2015-05-30 00:51 - 2014-09-07 00:16 - 01437935 _____ () C:\Windows\WindowsUpdate.log
2015-05-30 00:40 - 2014-09-07 00:23 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1379302413-3029893464-1618603415-1001
2015-05-30 00:36 - 2014-09-07 02:37 - 00000000 ____D () C:\ProgramData\Oracle
2015-05-30 00:36 - 2014-09-07 02:10 - 00000000 ____D () C:\Program Files (x86)\Java
2015-05-30 00:35 - 2014-09-07 02:37 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-05-30 00:32 - 2014-03-18 03:03 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-30 00:13 - 2015-02-01 00:58 - 00000916 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-30 00:06 - 2014-09-07 02:16 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-30 00:00 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\system32\sru
2015-05-29 23:04 - 2014-09-07 00:19 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{0B290231-A5A9-4985-9A56-73A9003BCD79}
2015-05-29 22:38 - 2014-09-07 02:35 - 00000000 _____ () C:\Windows\Path.idx
2015-05-29 22:33 - 2015-02-08 03:29 - 00000000 ____D () C:\Users\Brennan\AppData\Local\CrashDumps
2015-05-29 22:33 - 2015-02-01 00:58 - 00000912 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-29 22:33 - 2014-09-07 02:15 - 01048576 _____ () C:\Windows\PE_Rom.dll
2015-05-29 22:33 - 2014-09-07 00:25 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-29 22:33 - 2014-09-07 00:19 - 00000000 ___DO () C:\Users\Brennan\OneDrive
2015-05-29 22:33 - 2013-08-22 07:46 - 00056720 _____ () C:\Windows\setupact.log
2015-05-29 22:33 - 2013-08-22 07:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-29 22:23 - 2014-09-07 02:16 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\vlc
2015-05-29 22:07 - 2014-10-16 22:57 - 00000000 ____D () C:\ProgramData\WRData
2015-05-29 21:35 - 2013-08-22 06:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-05-29 21:15 - 2014-09-07 02:38 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-05-29 17:33 - 2014-09-07 04:27 - 00226680 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2015-05-29 17:25 - 2014-09-07 02:44 - 00000000 ____D () C:\ProgramData\Origin
2015-05-29 00:30 - 2014-09-07 04:27 - 00226680 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2015-05-28 21:47 - 2014-09-07 00:37 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-05-28 05:44 - 2014-09-07 02:33 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Azureus
2015-05-27 22:49 - 2014-09-07 03:03 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2015-05-26 00:09 - 2014-09-10 23:46 - 00000659 _____ () C:\Windows\MB.idx
2015-05-24 00:10 - 2014-09-07 00:18 - 00000000 ____D () C:\Users\Brennan
2015-05-22 18:47 - 2014-09-07 02:31 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-22 18:47 - 2014-09-07 02:31 - 01571696 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-05-22 18:47 - 2014-09-07 02:31 - 01320304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-22 18:47 - 2014-09-07 02:31 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-21 07:29 - 2014-09-07 04:26 - 00259541 _____ () C:\Windows\DirectX.log
2015-05-19 22:48 - 2015-04-04 21:03 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-05-19 22:48 - 2015-04-04 21:03 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-19 22:48 - 2013-08-22 08:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-05-18 21:11 - 2014-09-07 00:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-05-18 21:10 - 2014-09-07 00:37 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-05-18 21:10 - 2014-09-07 00:37 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-05-18 21:10 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\Help
2015-05-18 12:20 - 2015-03-24 01:13 - 00000000 ____D () C:\Users\Brennan\AppData\Local\PokerStars
2015-05-18 10:40 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-05-18 08:00 - 2014-09-07 02:16 - 00003718 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-05-18 08:00 - 2014-09-07 02:16 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Adobe
2015-05-17 19:18 - 2014-09-07 00:21 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Mozilla
2015-05-17 19:02 - 2015-04-11 22:40 - 00000000 ____D () C:\Program Files\iTunes
2015-05-17 18:59 - 2014-09-07 04:26 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-17 06:54 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-05-16 21:19 - 2014-09-15 04:57 - 00000000 ____D () C:\Users\Brennan\Documents\StarCraft II
2015-05-15 02:17 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-05-14 21:08 - 2015-02-01 00:58 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-14 21:08 - 2015-02-01 00:58 - 00003652 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-14 06:25 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\rescache
2015-05-14 03:54 - 2013-08-22 07:44 - 00337808 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-14 03:48 - 2013-08-22 08:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-05-14 03:48 - 2013-08-22 06:36 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-05-13 04:28 - 2014-09-07 02:22 - 00000000 ____D () C:\Windows\system32\MRT
2015-05-13 04:27 - 2014-09-07 02:22 - 140425016 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-13 04:26 - 2014-03-18 02:45 - 00000000 ____D () C:\Program Files\Windows Journal
2015-05-11 23:27 - 2015-01-08 12:41 - 42718864 _____ () C:\Windows\system32\nvcompiler.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 37741712 _____ () C:\Windows\SysWOW64\nvcompiler.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 30478992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 17540416 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 16145176 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 15858728 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 14455296 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 12849056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 11790144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 10972304 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-05-11 23:27 - 2015-01-08 12:41 - 03363224 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 02971776 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 02599056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 01099808 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 01059984 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 01050256 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00974480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00878816 _____ () C:\Windows\system32\nvmcumd.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00502896 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00408208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00407296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00364176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00176064 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00031710 _____ () C:\Windows\system32\nvinfo.pb
2015-05-11 10:48 - 2014-09-07 03:03 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-05-10 20:59 - 2014-12-12 12:58 - 00113152 ___SH () C:\Users\Brennan\Desktop\Thumbs.db
2015-05-09 03:21 - 2014-09-07 01:11 - 00000000 ____D () C:\Program Files\Intel
2015-05-09 03:21 - 2014-09-07 00:41 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-05-09 03:20 - 2014-09-07 01:53 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-05-05 20:57 - 2014-10-16 22:57 - 00166128 _____ (Webroot) C:\Windows\SysWOW64\WRusr.dll
2015-05-05 20:57 - 2014-10-16 22:57 - 00116224 _____ (Webroot) C:\Windows\system32\Drivers\WRkrn.sys
2015-05-05 20:57 - 2014-10-16 22:57 - 00103816 _____ (Webroot) C:\Windows\system32\WRusr.dll
2015-05-05 10:59 - 2014-09-07 02:26 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-05-05 10:59 - 2014-09-07 02:26 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-05-02 05:16 - 2014-12-27 20:41 - 00000000 ____D () C:\Users\Brennan\Documents\My Games
2015-05-01 23:42 - 2015-03-21 20:06 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Skype
==================== Files in the root of some directories =======
2015-05-29 22:44 - 2015-05-29 22:44 - 0178750 _____ () C:\Users\Brennan\AppData\Local\ars.cache
2015-05-29 22:44 - 2015-05-29 22:44 - 0421616 _____ () C:\Users\Brennan\AppData\Local\census.cache
2015-02-21 04:30 - 2015-02-21 04:35 - 1065984 _____ () C:\Users\Brennan\AppData\Local\file__0.localstorage
2015-05-29 22:41 - 2015-05-29 22:41 - 0000036 _____ () C:\Users\Brennan\AppData\Local\housecall.guid.cache
2015-05-29 22:45 - 2015-05-29 22:45 - 0000010 _____ () C:\Users\Brennan\AppData\Local\sponge.last.runtime.cache
2014-09-07 11:48 - 2014-09-07 11:48 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Brennan\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Brennan\AppData\Local\Temp\i4jdel0.exe
C:\Users\Brennan\AppData\Local\Temp\InstHelper.exe
C:\Users\Brennan\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\Brennan\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\Brennan\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Brennan\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\Brennan\AppData\Local\Temp\nvStereoApiI64.dll
C:\Users\Brennan\AppData\Local\Temp\nvStInst.exe
C:\Users\Brennan\AppData\Local\Temp\Quarantine.exe
C:\Users\Brennan\AppData\Local\Temp\sonarinst.exe
C:\Users\Brennan\AppData\Local\Temp\sqlite3.dll
C:\Users\Brennan\AppData\Local\Temp\System.Data.SQLite.dll
C:\Users\Brennan\AppData\Local\Temp\System.Data.SQLite840d3472-6440-4344-b6d9-3bc08ae900ff.dll
C:\Users\Brennan\AppData\Local\Temp\vlc-2.2.1-win32.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-26 03:05
==================== End of log ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-05-2015
Ran by B (administrator) on B on 30-05-2015 00:51:48
Running from C:\Users\Bn\Desktop
Loaded Profiles: Brennan (Available Profiles: )
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Webroot) C:\Program Files\Webroot\WRSA.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.04.01\AsusFanControlService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
() C:\Program Files (x86)\Everything\Everything.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\System32\PnkBstrA.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\Corsair\Corsair Link\CorsairLink.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(Webroot) C:\Program Files\Webroot\WRSA.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\WiFi GO! Server.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\S5WOW_App\x64\S5wow_2005.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Akamai Technologies, Inc.) C:\Users\Brennan\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Brennan\AppData\Local\Akamai\netsession_win.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\WiFile\WiFileTransfer.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\EPUShortCut.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AsDLNAServerReal.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4056\Agent.exe
(Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.5765\Battle.net.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-22] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUS WiFi GO! FileTransfer Execute] => C:\Program Files (x86)\ASUS\AI Suite III\Wi-Fi GO!\AssistTools\WiFile\WiFileTransfer.exe [1391416 2013-06-21] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [bdruninstaller] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe" /args:"/after (the data entry has 9 more characters).
HKLM-x32\...\Run: [WRSVC] => C:\Program Files\Webroot\WRSA.exe [817072 2015-05-05] (Webroot)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-1379302413-3029893464-1618603415-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Brennan\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1379302413-3029893464-1618603415-1001\...\Run: [GalaxyClient] => [X]
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1379302413-3029893464-1618603415-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/en-ca/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Webroot Filtering Extension -> {C9C42510-9B41-42c1-9DCD-7282A2D07C61} -> C:\Program Files\Webroot\WRData\PKG\Vistax64\wrflt.dll [2015-02-26] (Webroot)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-30] (Oracle Corporation)
BHO-x32: Webroot Filtering Extension -> {C9C42510-9B41-42c1-9DCD-7282A2D07C61} -> C:\Program Files\Webroot\WRData\PKG\Vistax86\wrflt.dll [2015-02-26] (Webroot)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-30] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 172.16.42.1
FireFox:
========
FF ProfilePath: C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll [2015-05-18] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll No File
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-18] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll No File
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-03] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-03] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-30] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-30] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-11] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Extension: Blur (Formerly DoNotTrackMe) - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\donottrackplus@abine.com [2015-05-29]
FF Extension: WOT - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-05-29]
FF Extension: Bitdefender QuickScan - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2015-05-28]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-09-07]
FF Extension: Add to Amazon Wish List Button - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\amznUWL2@amazon.com.xpi [2015-02-03]
FF Extension: ZenMate Security & Privacy VPN - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\firefox@zenmate.com.xpi [2015-04-21]
FF Extension: YouTube High Definition - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2015-02-01]
FF Extension: Adblock Plus - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-07]
FF Extension: DownThemAll! - C:\Users\Brennan\AppData\Roaming\Mozilla\Firefox\Profiles\atztfykn.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-02-16]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [webrootsecure@webroot.com] - C:\ProgramData\WRData\PKG\FIREFOX\WebrootSecure_SocketServer
FF Extension: Webroot Filtering Extension - C:\ProgramData\WRData\PKG\FIREFOX\WebrootSecure_SocketServer [2014-10-16]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-07-04] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2013-08-01] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.04.01\AsusFanControlService.exe [1656464 2013-08-08] (ASUSTeK Computer Inc.)
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)
R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240584 2012-10-02] (DTS, Inc)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation)
R2 Everything; C:\Program Files (x86)\Everything\Everything.exe [1048576 2014-08-05] () [File not signed] <==== ATTENTION
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [1743928 2015-05-28] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6516792 2015-05-28] (GOG.com)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-22] (NVIDIA Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-22] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23006864 2015-05-22] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1931632 2015-04-12] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-12-27] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-12-07] ()
S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)
R2 WRSVC; C:\Program Files\Webroot\WRSA.exe [817072 2015-05-05] (Webroot)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2013-07-04] ()
R3 ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [21400 2013-01-28] (http://www.asmedia.com.tw) [File not signed]
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2012-09-14] ()
R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-27] (Intel Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-29] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-22] (NVIDIA Corporation)
R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [39056 2015-05-11] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-04-03] (NVIDIA Corporation)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
R1 tmcomm; C:\Windows\system32\DRIVERS\tmcomm.sys [285208 2013-09-27] (Trend Micro Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-02-06] ()
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
R0 WRkrn; C:\Windows\System32\drivers\WRkrn.sys [116224 2015-05-05] (Webroot)
S3 wrUrlFlt; C:\Windows\system32\DRIVERS\wrUrlFlt.sys [41040 2015-02-26] (Webroot)
R3 cpuz137; \??\C:\Users\Brennan\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-30 00:51 - 2015-05-30 00:51 - 00019775 _____ () C:\Users\Brennan\Desktop\FRST.txt
2015-05-30 00:51 - 2015-05-30 00:51 - 00000000 ____D () C:\FRST
2015-05-30 00:48 - 2015-05-30 00:48 - 02108928 _____ (Farbar) C:\Users\Brennan\Desktop\FRST64.exe
2015-05-30 00:35 - 2015-05-30 00:34 - 00561248 _____ (Oracle Corporation) C:\Users\Brennan\Desktop\jxpiinstall.exe
2015-05-29 22:45 - 2015-05-29 22:45 - 00000010 _____ () C:\Users\Brennan\AppData\Local\sponge.last.runtime.cache
2015-05-29 22:44 - 2015-05-29 22:44 - 00421616 _____ () C:\Users\Brennan\AppData\Local\census.cache
2015-05-29 22:44 - 2015-05-29 22:44 - 00178750 _____ () C:\Users\Brennan\AppData\Local\ars.cache
2015-05-29 22:41 - 2015-05-29 22:41 - 00000036 _____ () C:\Users\Brennan\AppData\Local\housecall.guid.cache
2015-05-29 22:41 - 2013-09-27 19:56 - 00285208 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys
2015-05-29 22:30 - 2015-05-29 22:32 - 00000000 ____D () C:\AdwCleaner
2015-05-29 22:28 - 2015-05-29 22:28 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-BBPC-Windows-8.1-(64-bit).dat
2015-05-29 22:28 - 2015-05-29 22:28 - 00000000 ____D () C:\RegBackup
2015-05-28 21:46 - 2015-05-28 21:46 - 00000000 ____D () C:\Windows\LastGood.Tmp
2015-05-28 21:46 - 2015-05-28 21:46 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-05-28 21:46 - 2015-04-03 06:21 - 00048784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-05-28 21:46 - 2015-04-03 06:21 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-05-28 05:27 - 2015-05-28 05:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com]
2015-05-27 22:49 - 2015-05-27 22:51 - 00000000 ____D () C:\Users\Brennan\Documents\Heroes of the Storm
2015-05-27 22:28 - 2015-05-27 22:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
2015-05-27 00:16 - 2015-05-27 00:16 - 00000000 ____D () C:\Users\Brennan\Documents\BioWare
2015-05-27 00:16 - 2015-05-27 00:16 - 00000000 ____D () C:\ProgramData\EA Core
2015-05-26 00:43 - 2015-05-26 00:44 - 15624032 _____ (FinalWire Ltd. ) C:\Users\Brennan\Desktop\aida64extreme520.exe
2015-05-26 00:42 - 2015-05-26 00:43 - 109047601 _____ () C:\Users\Brennan\Desktop\CINEBENCH_R15.zip
2015-05-25 04:28 - 2015-05-25 04:28 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\QuickScan
2015-05-21 01:43 - 2015-05-21 22:32 - 00000000 ____D () C:\Users\Brennan\Documents\The Witcher 3
2015-05-19 00:38 - 2015-05-20 04:49 - 00000000 ____D () C:\Program Files\PeerBlock
2015-05-19 00:38 - 2015-05-19 00:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock
2015-05-18 21:14 - 2015-05-18 21:14 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\NVIDIA
2015-05-18 21:10 - 2015-05-29 22:33 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-18 21:10 - 2015-05-12 23:52 - 01558848 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-05-18 21:10 - 2015-05-12 23:52 - 00195912 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-05-18 21:10 - 2015-05-12 23:52 - 00031552 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 22945424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 15048816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 13263568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435286.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcvadgenco64.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435286.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00939080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00117576 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcaparm.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00112784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00105288 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-05-18 21:10 - 2015-05-11 23:27 - 00039056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvadarm.sys
2015-05-18 21:10 - 2015-05-11 20:30 - 06872392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 03490448 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 00937288 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-05-18 21:10 - 2015-05-11 20:30 - 00385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-05-18 21:10 - 2015-05-11 20:30 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-05-18 21:10 - 2015-05-11 19:34 - 00571024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-05-18 21:10 - 2015-05-11 10:01 - 04391871 _____ () C:\Windows\system32\nvcoproc.bin
2015-05-18 20:58 - 2015-05-18 20:58 - 00000000 ____D () C:\Users\Brennan\AppData\Local\GalaxyCommunicationService
2015-05-18 19:24 - 2015-05-19 03:28 - 00000000 ____D () C:\GOG Games
2015-05-18 19:21 - 2015-05-18 19:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2015-05-18 19:21 - 2015-05-18 19:21 - 00000000 ____D () C:\ProgramData\GOG.com
2015-05-18 19:21 - 2015-05-18 19:21 - 00000000 ____D () C:\Program Files (x86)\GalaxyClient
2015-05-17 19:02 - 2015-05-17 19:18 - 00000000 ____D () C:\Program Files (x86)\TuneUpMedia
2015-05-17 19:02 - 2015-05-17 19:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp
2015-05-17 19:01 - 2015-05-28 10:28 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\TuneUpMedia
2015-05-17 18:59 - 2015-05-18 07:03 - 00000000 ____D () C:\ProgramData\TuneUpMedia
2015-05-17 18:43 - 2015-05-17 18:43 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaHuman
2015-05-17 18:43 - 2015-05-17 18:43 - 00000000 ____D () C:\Users\Brennan\AppData\Local\MediaHuman
2015-05-17 18:43 - 2015-05-17 18:43 - 00000000 ____D () C:\Program Files (x86)\MediaHuman
2015-05-15 04:34 - 2015-05-15 04:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-05-15 02:42 - 2015-05-15 02:42 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\dvdcss
2015-05-13 04:28 - 2015-04-30 13:35 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 04:28 - 2015-04-30 13:35 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 01:05 - 2015-04-30 16:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 01:05 - 2015-04-30 15:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-05-13 01:05 - 2015-04-24 14:32 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-13 01:05 - 2015-04-21 10:14 - 24971776 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 01:05 - 2015-04-21 09:50 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 01:05 - 2015-04-21 09:50 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 01:05 - 2015-04-21 09:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 01:05 - 2015-04-21 09:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 01:05 - 2015-04-21 09:35 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 01:05 - 2015-04-21 09:31 - 06025728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 01:05 - 2015-04-21 09:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-05-13 01:05 - 2015-04-21 09:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-05-13 01:05 - 2015-04-21 09:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-05-13 01:05 - 2015-04-21 09:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-05-13 01:05 - 2015-04-21 09:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 01:05 - 2015-04-21 09:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-05-13 01:05 - 2015-04-21 09:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 01:05 - 2015-04-21 09:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-05-13 01:05 - 2015-04-21 08:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-05-13 01:05 - 2015-04-21 08:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-05-13 01:05 - 2015-04-21 08:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-05-13 01:05 - 2015-04-21 08:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 01:05 - 2015-04-21 08:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 01:05 - 2015-04-21 08:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 01:05 - 2015-04-21 08:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 01:05 - 2015-04-21 08:40 - 14401536 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 01:05 - 2015-04-21 08:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-05-13 01:05 - 2015-04-21 08:37 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-05-13 01:05 - 2015-04-21 08:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-05-13 01:05 - 2015-04-21 08:32 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-05-13 01:05 - 2015-04-21 08:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-05-13 01:05 - 2015-04-21 08:28 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-05-13 01:05 - 2015-04-21 08:27 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 01:05 - 2015-04-21 08:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-05-13 01:05 - 2015-04-21 08:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-05-13 01:05 - 2015-04-21 08:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-05-13 01:05 - 2015-04-21 08:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-05-13 01:05 - 2015-04-21 08:15 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 01:05 - 2015-04-21 08:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 01:05 - 2015-04-21 08:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-05-13 01:05 - 2015-04-21 07:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-05-13 01:05 - 2015-04-21 07:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-05-13 01:05 - 2015-04-13 15:48 - 04180480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 01:05 - 2015-04-09 18:00 - 01996800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 01:05 - 2015-04-09 17:50 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 01:05 - 2015-04-09 17:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-05-13 01:05 - 2015-04-09 17:26 - 01560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-05-13 01:05 - 2015-04-09 17:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-05-13 01:05 - 2015-04-08 15:55 - 00410128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 01:05 - 2015-04-02 17:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2015-05-13 01:05 - 2015-04-02 17:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2015-05-13 01:05 - 2015-04-01 15:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-05-13 01:05 - 2015-04-01 15:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-05-13 01:05 - 2015-03-31 20:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-05-13 01:05 - 2015-03-31 19:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-05-13 01:05 - 2015-03-29 22:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-05-13 01:05 - 2015-03-26 20:27 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 01:05 - 2015-03-26 19:50 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-05-13 01:05 - 2015-03-26 19:48 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-13 01:05 - 2015-03-19 18:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-05-13 01:05 - 2015-03-17 10:26 - 00467776 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-05-13 01:05 - 2015-03-12 21:03 - 00239424 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-05-13 01:05 - 2015-03-12 21:03 - 00154432 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-05-13 01:05 - 2015-03-12 19:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-05-13 01:05 - 2015-03-12 18:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-05-13 01:05 - 2015-03-12 17:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-05-13 01:05 - 2015-03-12 17:29 - 00410017 _____ () C:\Windows\system32\ApnDatabase.xml
2015-05-13 01:05 - 2015-03-10 18:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-13 01:05 - 2015-03-10 18:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-05-13 01:05 - 2015-03-08 19:02 - 00057856 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-05-13 01:05 - 2015-03-05 20:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-13 01:05 - 2015-03-05 19:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-05-13 01:05 - 2015-03-05 19:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-05-13 01:05 - 2015-03-04 16:09 - 01429504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-13 01:05 - 2015-03-03 18:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-05-13 01:05 - 2015-03-03 18:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2015-05-13 01:05 - 2015-02-17 16:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-05-13 01:05 - 2015-01-29 17:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-05-09 22:36 - 2015-05-09 22:36 - 00000000 ____D () C:\Users\Brennan\Documents\Diablo III
2015-05-09 03:21 - 2015-05-09 03:21 - 00000000 ____D () C:\ProgramData\Intel
2015-05-09 03:21 - 2013-09-03 16:52 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-05-09 03:20 - 2015-05-09 03:20 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2015-05-09 03:20 - 2013-09-03 16:52 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2015-05-09 03:20 - 2013-09-03 16:52 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2015-05-09 03:19 - 2015-05-09 03:19 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Akamai
2015-05-09 00:53 - 2015-05-09 00:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2015-05-08 22:19 - 2015-05-08 22:28 - 00000000 ____D () C:\Program Files (x86)\StarCraft
2015-05-08 22:19 - 2015-05-08 22:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft
2015-05-04 02:57 - 2015-05-04 19:47 - 00014973 _____ () C:\Users\Brennan\Documents\TombRaider.log
2015-05-04 02:42 - 2015-05-04 02:42 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Skyrim
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-30 00:51 - 2014-09-07 03:03 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Battle.net
2015-05-30 00:51 - 2014-09-07 00:16 - 01437935 _____ () C:\Windows\WindowsUpdate.log
2015-05-30 00:40 - 2014-09-07 00:23 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1379302413-3029893464-1618603415-1001
2015-05-30 00:36 - 2014-09-07 02:37 - 00000000 ____D () C:\ProgramData\Oracle
2015-05-30 00:36 - 2014-09-07 02:10 - 00000000 ____D () C:\Program Files (x86)\Java
2015-05-30 00:35 - 2014-09-07 02:37 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-05-30 00:32 - 2014-03-18 03:03 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-30 00:13 - 2015-02-01 00:58 - 00000916 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-30 00:06 - 2014-09-07 02:16 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-30 00:00 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\system32\sru
2015-05-29 23:04 - 2014-09-07 00:19 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{0B290231-A5A9-4985-9A56-73A9003BCD79}
2015-05-29 22:38 - 2014-09-07 02:35 - 00000000 _____ () C:\Windows\Path.idx
2015-05-29 22:33 - 2015-02-08 03:29 - 00000000 ____D () C:\Users\Brennan\AppData\Local\CrashDumps
2015-05-29 22:33 - 2015-02-01 00:58 - 00000912 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-29 22:33 - 2014-09-07 02:15 - 01048576 _____ () C:\Windows\PE_Rom.dll
2015-05-29 22:33 - 2014-09-07 00:25 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-29 22:33 - 2014-09-07 00:19 - 00000000 ___DO () C:\Users\Brennan\OneDrive
2015-05-29 22:33 - 2013-08-22 07:46 - 00056720 _____ () C:\Windows\setupact.log
2015-05-29 22:33 - 2013-08-22 07:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-29 22:23 - 2014-09-07 02:16 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\vlc
2015-05-29 22:07 - 2014-10-16 22:57 - 00000000 ____D () C:\ProgramData\WRData
2015-05-29 21:35 - 2013-08-22 06:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-05-29 21:15 - 2014-09-07 02:38 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-05-29 17:33 - 2014-09-07 04:27 - 00226680 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2015-05-29 17:25 - 2014-09-07 02:44 - 00000000 ____D () C:\ProgramData\Origin
2015-05-29 00:30 - 2014-09-07 04:27 - 00226680 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2015-05-28 21:47 - 2014-09-07 00:37 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-05-28 05:44 - 2014-09-07 02:33 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Azureus
2015-05-27 22:49 - 2014-09-07 03:03 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2015-05-26 00:09 - 2014-09-10 23:46 - 00000659 _____ () C:\Windows\MB.idx
2015-05-24 00:10 - 2014-09-07 00:18 - 00000000 ____D () C:\Users\Brennan
2015-05-22 18:47 - 2014-09-07 02:31 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-22 18:47 - 2014-09-07 02:31 - 01571696 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-05-22 18:47 - 2014-09-07 02:31 - 01320304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-22 18:47 - 2014-09-07 02:31 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-21 07:29 - 2014-09-07 04:26 - 00259541 _____ () C:\Windows\DirectX.log
2015-05-19 22:48 - 2015-04-04 21:03 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-05-19 22:48 - 2015-04-04 21:03 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-19 22:48 - 2013-08-22 08:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-05-18 21:11 - 2014-09-07 00:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-05-18 21:10 - 2014-09-07 00:37 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-05-18 21:10 - 2014-09-07 00:37 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-05-18 21:10 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\Help
2015-05-18 12:20 - 2015-03-24 01:13 - 00000000 ____D () C:\Users\Brennan\AppData\Local\PokerStars
2015-05-18 10:40 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-05-18 08:00 - 2014-09-07 02:16 - 00003718 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-05-18 08:00 - 2014-09-07 02:16 - 00000000 ____D () C:\Users\Brennan\AppData\Local\Adobe
2015-05-17 19:18 - 2014-09-07 00:21 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Mozilla
2015-05-17 19:02 - 2015-04-11 22:40 - 00000000 ____D () C:\Program Files\iTunes
2015-05-17 18:59 - 2014-09-07 04:26 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-17 06:54 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-05-16 21:19 - 2014-09-15 04:57 - 00000000 ____D () C:\Users\Brennan\Documents\StarCraft II
2015-05-15 02:17 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-05-14 21:08 - 2015-02-01 00:58 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-14 21:08 - 2015-02-01 00:58 - 00003652 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-14 06:25 - 2013-08-22 08:36 - 00000000 ____D () C:\Windows\rescache
2015-05-14 03:54 - 2013-08-22 07:44 - 00337808 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-14 03:48 - 2013-08-22 08:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-05-14 03:48 - 2013-08-22 06:36 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-05-13 04:28 - 2014-09-07 02:22 - 00000000 ____D () C:\Windows\system32\MRT
2015-05-13 04:27 - 2014-09-07 02:22 - 140425016 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-13 04:26 - 2014-03-18 02:45 - 00000000 ____D () C:\Program Files\Windows Journal
2015-05-11 23:27 - 2015-01-08 12:41 - 42718864 _____ () C:\Windows\system32\nvcompiler.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 37741712 _____ () C:\Windows\SysWOW64\nvcompiler.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 30478992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 17540416 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 16145176 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 15858728 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 14455296 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 12849056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 11790144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 10972304 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-05-11 23:27 - 2015-01-08 12:41 - 03363224 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 02971776 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 02599056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 01099808 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 01059984 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 01050256 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00974480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00878816 _____ () C:\Windows\system32\nvmcumd.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00502896 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00408208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00407296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00364176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00176064 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-05-11 23:27 - 2015-01-08 12:41 - 00031710 _____ () C:\Windows\system32\nvinfo.pb
2015-05-11 10:48 - 2014-09-07 03:03 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-05-10 20:59 - 2014-12-12 12:58 - 00113152 ___SH () C:\Users\Brennan\Desktop\Thumbs.db
2015-05-09 03:21 - 2014-09-07 01:11 - 00000000 ____D () C:\Program Files\Intel
2015-05-09 03:21 - 2014-09-07 00:41 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-05-09 03:20 - 2014-09-07 01:53 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-05-05 20:57 - 2014-10-16 22:57 - 00166128 _____ (Webroot) C:\Windows\SysWOW64\WRusr.dll
2015-05-05 20:57 - 2014-10-16 22:57 - 00116224 _____ (Webroot) C:\Windows\system32\Drivers\WRkrn.sys
2015-05-05 20:57 - 2014-10-16 22:57 - 00103816 _____ (Webroot) C:\Windows\system32\WRusr.dll
2015-05-05 10:59 - 2014-09-07 02:26 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-05-05 10:59 - 2014-09-07 02:26 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-05-02 05:16 - 2014-12-27 20:41 - 00000000 ____D () C:\Users\Brennan\Documents\My Games
2015-05-01 23:42 - 2015-03-21 20:06 - 00000000 ____D () C:\Users\Brennan\AppData\Roaming\Skype
==================== Files in the root of some directories =======
2015-05-29 22:44 - 2015-05-29 22:44 - 0178750 _____ () C:\Users\Brennan\AppData\Local\ars.cache
2015-05-29 22:44 - 2015-05-29 22:44 - 0421616 _____ () C:\Users\Brennan\AppData\Local\census.cache
2015-02-21 04:30 - 2015-02-21 04:35 - 1065984 _____ () C:\Users\Brennan\AppData\Local\file__0.localstorage
2015-05-29 22:41 - 2015-05-29 22:41 - 0000036 _____ () C:\Users\Brennan\AppData\Local\housecall.guid.cache
2015-05-29 22:45 - 2015-05-29 22:45 - 0000010 _____ () C:\Users\Brennan\AppData\Local\sponge.last.runtime.cache
2014-09-07 11:48 - 2014-09-07 11:48 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Brennan\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Brennan\AppData\Local\Temp\i4jdel0.exe
C:\Users\Brennan\AppData\Local\Temp\InstHelper.exe
C:\Users\Brennan\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\Brennan\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\Brennan\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Brennan\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\Brennan\AppData\Local\Temp\nvStereoApiI64.dll
C:\Users\Brennan\AppData\Local\Temp\nvStInst.exe
C:\Users\Brennan\AppData\Local\Temp\Quarantine.exe
C:\Users\Brennan\AppData\Local\Temp\sonarinst.exe
C:\Users\Brennan\AppData\Local\Temp\sqlite3.dll
C:\Users\Brennan\AppData\Local\Temp\System.Data.SQLite.dll
C:\Users\Brennan\AppData\Local\Temp\System.Data.SQLite840d3472-6440-4344-b6d9-3bc08ae900ff.dll
C:\Users\Brennan\AppData\Local\Temp\vlc-2.2.1-win32.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-26 03:05
==================== End of log ============================