Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
Ran by Ammiel (administrator) on DESKTOP-UTD8540 (24-03-2017 17:31:58)
Running from C:\Users\Ammiel\Desktop
Loaded Profiles: Ammiel (Available Profiles: defaultuser0 & Ammiel)
Platform: Windows 10 Pro Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Corsair) C:\Program Files (x86)\Corsair SSD Toolbox\CSSDTService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFi GO! Server.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe
() C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetiCtrlTray.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AsDLNAServerReal.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11701.1001.79.0_x64__8wekyb3d8bbwe\WinStore.App.exe
() C:\Program Files\WindowsApps\9E2F88E3.Twitter_5.6.1.0_x86__wgeqdkkx372wm\Twitter.Windows.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8027016 2016-11-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8483032 2017-02-17] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-11-20] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2012-08-20] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUS WiFi GO! FileTransfer Execute] => C:\Program Files (x86)\ASUS\AI Suite II\Remote GO!\AssistTools\WiFile\WiFileTransfer.exe [1384608 2012-07-12] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\AsusWSPanel.exe [3353472 2012-09-17] (ASUS Cloud Corporation)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-19] (AVAST Software)
HKU\S-1-5-21-1632946091-2978210157-913659619-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9363672 2017-02-07] (Piriform Ltd)
HKU\S-1-5-21-1632946091-2978210157-913659619-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23818360 2016-11-30] (Google)
HKU\S-1-5-21-1632946091-2978210157-913659619-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [4027968 2017-03-19] (GOG.com)
HKU\S-1-5-21-1632946091-2978210157-913659619-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-03-13] (Valve Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-11-30] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-11-30] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-11-30] (Google)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-19] (AVAST Software)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\ASUSWSShellExt64.dll [2012-03-13] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\ASUSWSShellExt64.dll [2012-03-13] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\ASUSWSShellExt64.dll [2012-03-13] (ASUS Cloud Corporation.)
Startup: C:\Users\Ammiel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2017-02-17]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{57193578-bee9-48c8-8c47-87f7e5adb25a}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2017-01-29] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-17] (Oracle Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2017-01-29] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-17] (Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-01-29] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-12] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-17] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-17] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2017-01-29] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-12] (Adobe Systems)
Chrome:
=======
CHR HomePage: Default -> hxxp://
www.google.com
CHR StartupUrls: Default -> "hxxp://
www.google.com","hxxp://
www.google.com/"
CHR Profile: C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default [2017-03-24]
CHR Extension: (Diapositivas de Google) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-02-17]
CHR Extension: (From Dust) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\anelkojiepicmcldgnmkplocifmegpfj [2017-02-17]
CHR Extension: (Google Docs) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-02-17]
CHR Extension: (Google Drive) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-17]
CHR Extension: (Web2PDFConverter) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkanhckocooacphbnclgcndnpfpoppdk [2017-02-17]
CHR Extension: (YouTube) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-17]
CHR Extension: (Adobe Acrobat) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-04]
CHR Extension: (Avast SafePrice) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-03-21]
CHR Extension: (Hojas de cálculo de Google) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-02-17]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-02-17]
CHR Extension: (Avast Online Security) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-03-21]
CHR Extension: (Creatures & Castles (Criaturas y castillos)) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpeacgpdnhofhebmincihdelcemhagd [2017-02-17]
CHR Extension: (Save as PDF) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpdjmbiefanbdgnkcikhllpmjnnllbbc [2017-02-17]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2017-02-17]
CHR Extension: (Into The Mist) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgihmkgobaljfehcadcckdggpeojaadh [2017-02-17]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-08]
CHR Extension: (Gmail) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-02-17]
CHR Extension: (Chrome Media Router) - C:\Users\Ammiel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-17]
CHR HKU\S-1-5-21-1632946091-2978210157-913659619-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-12] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-02-27] (Adobe Systems, Incorporated)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2017-02-17] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2017-02-17] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2017-02-17] () [File not signed]
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe [408960 2017-02-17] (ASUSTeK Computer Inc.)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-19] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-19] (AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3704520 2017-02-18] (Microsoft Corporation)
R2 CorsairSSDToolBox; C:\Program Files (x86)\Corsair SSD Toolbox\CSSDTService.exe [2249792 2016-08-28] (Corsair)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [284736 2017-03-19] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6625856 2017-01-31] (GOG.com)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2017-03-02] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2184208 2017-03-02] (Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-11-20] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-03-04] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2012-04-19] (ASUSTek Computer Inc.)
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0309377.inf_amd64_7ab08912e1e1da0a\atikmdag.sys [26568848 2017-01-25] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0309377.inf_amd64_7ab08912e1e1da0a\atikmpag.sys [536600 2017-01-25] (Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2017-02-17] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2017-02-17] ()
R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2017-02-17] (MCCI Corporation)
S3 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309272 2017-03-19] (AVAST Software s.r.o.)
S3 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-03-19] (AVAST Software s.r.o.)
S3 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-03-19] (AVAST Software s.r.o.)
S3 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-03-19] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-03-19] (AVAST Software)
S3 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32088 2017-03-19] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126600 2017-03-19] (AVAST Software)
S3 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-03-19] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-03-19] (AVAST Software)
S3 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [993608 2017-03-19] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [548928 2017-03-23] (AVAST Software)
S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-03-19] (AVAST Software)
S3 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337592 2017-03-19] (AVAST Software)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [110104 2016-09-28] (Advanced Micro Devices)
U4 BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [87912 2015-12-04] (BitDefender)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 ptun0901; C:\Windows\System32\drivers\ptun0901.sys [27136 2014-08-08] (The OpenVPN Project)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WirelessKeyboardFilter; C:\Windows\System32\drivers\WirelessKeyboardFilter.sys [49896 2016-07-22] (Microsoft Corporation)
U3 aswbdisk; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-24 17:31 - 2017-03-24 17:32 - 00023521 _____ C:\Users\Ammiel\Desktop\FRST.txt
2017-03-24 17:31 - 2017-03-24 17:31 - 00219244 _____ C:\ProgramData\cl.uninstall.1490387386.bdinstall.bin
2017-03-24 17:31 - 2017-03-24 17:31 - 00029891 _____ C:\ProgramData\agent.uninstall.1490387483.bdinstall.bin
2017-03-24 17:24 - 2017-03-24 17:31 - 00000000 ____D C:\FRST
2017-03-24 17:23 - 2017-03-24 17:23 - 02424832 _____ (Farbar) C:\Users\Ammiel\Desktop\FRST64.exe
2017-03-24 17:18 - 2017-03-24 17:18 - 00000000 ____D C:\Users\Ammiel\Desktop\New folder
2017-03-24 16:23 - 2017-03-24 16:23 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-03-24 13:21 - 2017-03-24 13:21 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-03-23 08:46 - 2017-03-23 08:46 - 00000000 ____D C:\Users\Ammiel\AppData\Roaming\vlc
2017-03-21 23:26 - 2017-03-21 23:26 - 00000000 ____D C:\Users\Ammiel\Documents\Custom Office Templates
2017-03-19 21:56 - 2017-03-21 21:39 - 00004022 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1489971401
2017-03-19 21:56 - 2017-03-21 21:39 - 00001095 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-03-19 21:56 - 2017-03-19 21:56 - 00032088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-03-19 21:52 - 2017-03-19 21:52 - 00000000 ____D C:\Users\Ammiel\AppData\Roaming\AVAST Software
2017-03-19 21:51 - 2017-03-23 21:35 - 00548928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00993608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-03-19 21:51 - 2017-03-19 21:51 - 00337592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00309272 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00126600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-03-19 21:51 - 2017-03-19 21:51 - 00003994 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-03-19 21:51 - 2017-03-19 21:51 - 00001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2017-03-19 21:51 - 2017-03-19 21:51 - 00000000 ____D C:\Program Files\Common Files\AV
2017-03-19 21:48 - 2017-03-19 21:56 - 00000000 ____D C:\Program Files\AVAST Software
2017-03-19 21:46 - 2017-03-19 21:47 - 06654960 _____ (AVAST Software) C:\Users\Ammiel\Downloads\avast_free_antivirus_setup_online_cnet2.exe
2017-03-19 19:34 - 2017-03-19 19:34 - 00000233 _____ C:\Users\Ammiel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Assassin's Creed IV Black Flag (Singleplayer).url
2017-03-19 19:34 - 2017-03-19 19:34 - 00000233 _____ C:\Users\Ammiel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Assassin's Creed IV Black Flag (Multiplayer).url
2017-03-19 14:49 - 2017-03-04 04:57 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-03-19 14:49 - 2017-03-04 04:57 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-03-19 14:49 - 2017-03-04 04:44 - 01470816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2017-03-19 14:49 - 2017-03-04 04:40 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2017-03-19 14:49 - 2017-03-04 04:24 - 00090976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2017-03-19 14:49 - 2017-03-04 04:09 - 02206496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2017-03-19 14:49 - 2017-03-04 04:09 - 01969912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2017-03-19 14:49 - 2017-03-04 04:09 - 00497416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2017-03-19 14:49 - 2017-03-04 04:08 - 00130912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2017-03-19 14:49 - 2017-03-04 04:07 - 00557400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2017-03-19 14:49 - 2017-03-04 04:04 - 02048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2017-03-19 14:49 - 2017-03-04 04:02 - 00184416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2017-03-19 14:49 - 2017-03-04 03:56 - 00263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-03-19 14:49 - 2017-03-04 03:56 - 00248992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2017-03-19 14:49 - 2017-03-04 03:54 - 02277288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2017-03-19 14:49 - 2017-03-04 03:54 - 00524776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 05722320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 02256080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 01431232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 00861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 00781152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2017-03-19 14:49 - 2017-03-04 03:53 - 00493912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2017-03-19 14:49 - 2017-03-04 03:53 - 00313568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2017-03-19 14:49 - 2017-03-04 03:53 - 00136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2017-03-19 14:49 - 2017-03-04 03:52 - 00549088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2017-03-19 14:49 - 2017-03-04 03:52 - 00272720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2017-03-19 14:49 - 2017-03-04 03:51 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2017-03-19 14:49 - 2017-03-04 03:51 - 00576408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2017-03-19 14:49 - 2017-03-04 03:50 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 20969928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 06667528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 04023000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01853224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01557808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01360456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01277856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01202384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 01123912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00981376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00976184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00640976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00530480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00374448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00352760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2017-03-19 14:49 - 2017-03-04 03:47 - 00034088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
2017-03-19 14:49 - 2017-03-04 03:46 - 04312248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2017-03-19 14:49 - 2017-03-04 03:46 - 00321792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2017-03-19 14:49 - 2017-03-04 03:45 - 00173408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-03-19 14:49 - 2017-03-04 03:45 - 00112120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2017-03-19 14:49 - 2017-03-04 03:42 - 01415240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2017-03-19 14:49 - 2017-03-04 03:42 - 01260784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-03-19 14:49 - 2017-03-04 03:42 - 00545944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2017-03-19 14:49 - 2017-03-04 03:42 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2017-03-19 14:49 - 2017-03-04 03:40 - 00306800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2017-03-19 14:49 - 2017-03-04 03:36 - 05685760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2017-03-19 14:49 - 2017-03-04 03:30 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-03-19 14:49 - 2017-03-04 03:30 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2017-03-19 14:49 - 2017-03-04 03:26 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2017-03-19 14:49 - 2017-03-04 03:25 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCCSEngineShared.dll
2017-03-19 14:49 - 2017-03-04 03:24 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2017-03-19 14:49 - 2017-03-04 03:23 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2017-03-19 14:49 - 2017-03-04 03:23 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-03-19 14:49 - 2017-03-04 03:23 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-19 14:49 - 2017-03-04 03:23 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-03-19 14:49 - 2017-03-04 03:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2017-03-19 14:49 - 2017-03-04 03:22 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudBackupSettings.dll
2017-03-19 14:49 - 2017-03-04 03:21 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2017-03-19 14:49 - 2017-03-04 03:21 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2017-03-19 14:49 - 2017-03-04 03:21 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-03-19 14:49 - 2017-03-04 03:21 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2017-03-19 14:49 - 2017-03-04 03:21 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-03-19 14:49 - 2017-03-04 03:21 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-03-19 14:49 - 2017-03-04 03:20 - 13873664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-03-19 14:49 - 2017-03-04 03:20 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2017-03-19 14:49 - 2017-03-04 03:20 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPTpm12.dll
2017-03-19 14:49 - 2017-03-04 03:20 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2017-03-19 14:49 - 2017-03-04 03:19 - 00714752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2017-03-19 14:49 - 2017-03-04 03:19 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2017-03-19 14:49 - 2017-03-04 03:19 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2017-03-19 14:49 - 2017-03-04 03:19 - 00414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2017-03-19 14:49 - 2017-03-04 03:19 - 00390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2017-03-19 14:49 - 2017-03-04 03:19 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2017-03-19 14:49 - 2017-03-04 03:19 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2017-03-19 14:49 - 2017-03-04 03:18 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2017-03-19 14:49 - 2017-03-04 03:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2017-03-19 14:49 - 2017-03-04 03:18 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2017-03-19 14:49 - 2017-03-04 03:17 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2017-03-19 14:49 - 2017-03-04 03:16 - 01456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2017-03-19 14:49 - 2017-03-04 03:16 - 00858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2017-03-19 14:49 - 2017-03-04 03:16 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll
2017-03-19 14:49 - 2017-03-04 03:16 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2017-03-19 14:49 - 2017-03-04 03:16 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-03-19 14:49 - 2017-03-04 03:16 - 00636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2017-03-19 14:49 - 2017-03-04 03:16 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2017-03-19 14:49 - 2017-03-04 03:15 - 01543680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2017-03-19 14:49 - 2017-03-04 03:15 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-03-19 14:49 - 2017-03-04 03:14 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 04613120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 00675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2017-03-19 14:49 - 2017-03-04 03:13 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2017-03-19 14:49 - 2017-03-04 03:12 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2017-03-19 14:49 - 2017-03-04 03:12 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-03-19 14:49 - 2017-03-04 03:12 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2017-03-19 14:49 - 2017-03-04 03:11 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2017-03-19 14:49 - 2017-03-04 03:11 - 01320448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2017-03-19 14:49 - 2017-03-04 03:11 - 01137152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2017-03-19 14:49 - 2017-03-04 03:11 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2017-03-19 14:49 - 2017-03-04 03:10 - 03307008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2017-03-19 14:49 - 2017-03-04 03:10 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2017-03-19 14:49 - 2017-03-04 03:09 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2017-03-19 14:49 - 2017-03-04 03:09 - 00570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2017-03-19 14:49 - 2017-03-04 03:09 - 00343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2017-03-19 14:49 - 2017-03-04 03:08 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2017-03-19 14:49 - 2017-03-04 03:07 - 02748928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2017-03-19 14:49 - 2017-03-04 03:07 - 02643456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-03-19 14:49 - 2017-03-04 03:07 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2017-03-19 14:49 - 2017-03-04 03:06 - 06109184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2017-03-19 14:49 - 2017-03-04 03:06 - 05380608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2017-03-19 14:49 - 2017-03-04 03:06 - 03198464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2017-03-19 14:49 - 2017-03-04 03:06 - 02153984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2017-03-19 14:49 - 2017-03-04 03:05 - 07468544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-03-19 14:49 - 2017-03-04 03:05 - 01221120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2017-03-19 14:49 - 2017-03-04 03:05 - 00545792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2017-03-19 14:49 - 2017-03-04 03:05 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2017-03-19 14:49 - 2017-03-04 03:04 - 00753152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2017-03-19 14:49 - 2017-03-04 03:04 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
2017-03-19 14:49 - 2017-03-04 03:04 - 00640000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2017-03-19 14:49 - 2017-03-04 03:03 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2017-03-19 14:49 - 2017-03-04 03:03 - 02109952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2017-03-19 14:49 - 2017-03-04 03:02 - 04423680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-03-19 14:49 - 2017-03-04 03:02 - 02740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2017-03-19 14:49 - 2017-03-04 03:02 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2017-03-19 14:49 - 2017-03-04 03:02 - 02138112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2017-03-19 14:49 - 2017-03-04 03:02 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2017-03-19 14:49 - 2017-03-04 03:02 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01993216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01595904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01571840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01564160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01293312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2017-03-19 14:49 - 2017-03-04 03:01 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 00773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2017-03-19 14:49 - 2017-03-04 03:01 - 00620544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2017-03-19 14:49 - 2017-03-04 03:01 - 00422400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 04557824 _____ (Microsoft) C:\Windows\SysWOW64\dbgeng.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 02996736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-03-19 14:49 - 2017-03-04 03:00 - 02483200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 02003968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 01883648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00862208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2017-03-19 14:49 - 2017-03-04 03:00 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2017-03-19 14:49 - 2017-03-04 02:59 - 00353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2017-03-19 14:49 - 2017-03-04 02:57 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2017-03-19 14:49 - 2017-03-04 02:57 - 00449024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2017-03-19 14:48 - 2017-03-04 04:57 - 00192352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 01617760 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 01294688 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00655200 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00590952 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00565088 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00378720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00343904 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00315232 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00242528 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00142176 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-03-19 14:48 - 2017-03-04 04:35 - 00086368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2017-03-19 14:48 - 2017-03-04 04:35 - 00038240 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2017-03-19 14:48 - 2017-03-04 04:27 - 02170720 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2017-03-19 14:48 - 2017-03-04 04:27 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2017-03-19 14:48 - 2017-03-04 04:26 - 00794416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2017-03-19 14:48 - 2017-03-04 04:25 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2017-03-19 14:48 - 2017-03-04 04:24 - 02482280 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-03-19 14:48 - 2017-03-04 04:24 - 02186896 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2017-03-19 14:48 - 2017-03-04 04:24 - 01051112 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-03-19 14:48 - 2017-03-04 04:24 - 00894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe