TechSpot

Virus

By discord
Sep 10, 2016
  1. So every time I start steam my antivirus is reporting that it's blocking a website from loading and the location that it's coming from is steamwebhelper.
     
  2. discord

    discord TS Rookie Topic Starter

    FRST.TXT

    (AMD) C:\Windows\System32\atiesrxx.exe
    (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
    (AMD) C:\Windows\System32\atieclxx.exe
    (Microsoft Corporation) C:\Windows\System32\wisptis.exe
    (Microsoft Corporation) C:\Windows\System32\wlanext.exe
    (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe
    (Microsoft Corporation) C:\Windows\System32\wisptis.exe
    (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
    (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe
    (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
    (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
    (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
    (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
    (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
    (Hammer & Chisel, Inc.) C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\Discord.exe
    (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
    () C:\Program Files (x86)\NETGEAR\WNA3100\WNA3100.exe
    (Corsair Components, Inc.) C:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairHID.exe
    (Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
    (Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
    (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe
    (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe
    (Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
    (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
    (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    (Raptr Inc.) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_ep64.exe
    (Raptr Inc.) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_ep64.exe
    (Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
    () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe
    (Hammer & Chisel, Inc.) C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\Discord.exe
    (Hammer & Chisel, Inc.) C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\Discord.exe
    (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
    (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
    (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
    (Microsoft Corporation) C:\Windows\System32\taskmgr.exe
    (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
    (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
    (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
    (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
    (Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Virus Removal Tool\SVRTgui.exe
    (Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Virus Removal Tool\SVRTservice.exe
    (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


    ==================== Registry (Whitelisted) ===========================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [16286840 2016-08-29] (Logitech Inc.)
    HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6625672 2016-08-30] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-08-24] (Plays.tv, LLC)
    HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-08-23] (Raptr, Inc)
    HKLM-x32\...\Run: [Corsair Utility Engine] => C:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairHID.exe [14885552 2016-03-23] (Corsair Components, Inc.)
    HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9103976 2016-09-09] (AVAST Software)
    HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [29538432 2016-08-17] (Skype Technologies S.A.)
    HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\...\Run: [Discord] => C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\Discord.exe [62471352 2016-08-24] (Hammer & Chisel, Inc.)
    HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\...\Run: [DisplayFusion] => C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [9192440 2016-08-08] (Binary Fortress Software)
    HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2857248 2016-08-23] (Valve Corporation)
    HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\...\MountPoints2: {fb0902b2-74d3-11e6-8fc2-806e6f6e6963} - D:\setup.exe
    HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-09-09] (AVAST Software)
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WNA3100 Genie.lnk [2016-09-08]
    ShortcutTarget: NETGEAR WNA3100 Genie.lnk -> C:\Program Files (x86)\NETGEAR\WNA3100\WNA3100.exe ()

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 68.237.161.12
    Tcpip\..\Interfaces\{03E36F3E-ECA6-4038-B073-87E5A682679C}: [DhcpNameServer] 192.168.1.1 68.237.161.12
    Tcpip\..\Interfaces\{0599D1DC-8A98-4C56-BE53-D20EA8FB5C1A}: [DhcpNameServer] 192.168.1.1 68.237.161.12

    Internet Explorer:
    ==================
    BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-09] (AVAST Software)
    BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-09] (AVAST Software)
    Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
    Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
    Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
    Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)

    FireFox:
    ========
    FF ProfilePath: C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Profiles\7j6uhzl5.default-1473481477136
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-09-08] ()
    FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
    FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-09-08] ()
    FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
    FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
    FF Extension: (FireFTP) - C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Profiles\7j6uhzl5.default-1473481477136\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2016-09-10]
    FF Extension: (Stylish) - C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Profiles\7j6uhzl5.default-1473481477136\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2016-09-10]
    FF Extension: (Google Translator for Firefox) - C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Profiles\7j6uhzl5.default-1473481477136\extensions\translator@zoli.bod.xpi [2016-09-10]
    FF Extension: (Firefox Hotfix) - C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Profiles\7j6uhzl5.default-1473481477136\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-10]
    FF Extension: (Adblock Plus) - C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Profiles\7j6uhzl5.default-1473481477136\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-09-10]
    FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
    FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-09-09]
    FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
    FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-09-09]
    FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
    FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

    ==================== Services (Whitelisted) ========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-09-09] (AVAST Software)
    R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5132312 2016-08-08] (Binary Fortress Software)
    S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [227104 2016-09-01] (EasyAntiCheat Ltd)
    R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193656 2016-08-29] (Logitech Inc.)
    R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
    R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
    R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-09-08] (Plays.tv, LLC)
    R3 SophosVirusRemovalTool; C:\Program Files (x86)\Sophos\Sophos Virus Removal Tool\SVRTservice.exe [163688 2016-08-02] (Sophos Limited)
    S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)
    R2 WSWNA3100; C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe [316120 2014-08-18] ()
    R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [730304 2015-12-21] (Wacom Technology, Corp.)

    ===================== Drivers (Whitelisted) ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-09] (AVAST Software)
    S1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-09-09] (AVAST Software)
    R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-09] (AVAST Software)
    R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-09] (AVAST Software)
    S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-09] (AVAST Software)
    R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969560 2016-09-09] (AVAST Software)
    R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-09-09] (AVAST Software)
    R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-09] (AVAST Software)
    R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-09-09] (AVAST Software)
    R3 CorsairVBusDriver; C:\Windows\System32\DRIVERS\CorsairVBusDriver.sys [47840 2016-01-20] (Corsair)
    R3 CorsairVHidDriver; C:\Windows\System32\DRIVERS\CorsairVHidDriver.sys [21728 2016-01-20] (Corsair)
    S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
    S2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
    R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [67736 2016-08-29] (Logitech Inc.)
    R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
    R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-09-09] (Malwarebytes)
    R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
    S3 NPF; C:\Windows\System32\DRIVERS\npf.sys [47632 2010-02-03] (CACE Technologies, Inc.)
    R3 WacHidRouterPro; C:\Windows\System32\DRIVERS\wachidrouter.sys [102864 2016-03-02] (Wacom Technology)
    S3 EraserUtilDrv11521; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11521.sys [X]
    S3 NAVENG; \??\C:\Program Files (x86)\Norton Security with Backup\NortonData\22.7.1.32\Definitions\SDSDefs\20160909.008\ENG64.SYS [X]
    S3 NAVEX15; \??\C:\Program Files (x86)\Norton Security with Backup\NortonData\22.7.1.32\Definitions\SDSDefs\20160909.008\EX64.SYS [X]

    ==================== NetSvcs (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== One Month Created files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2016-09-10 00:38 - 2016-09-10 00:39 - 00014019 _____ C:\Users\jeremy\Downloads\FRST.txt
    2016-09-10 00:38 - 2016-09-10 00:38 - 00000000 ____D C:\FRST
    2016-09-10 00:37 - 2016-09-10 00:37 - 02397696 _____ (Farbar) C:\Users\jeremy\Downloads\FRST64.exe
    2016-09-10 00:14 - 2016-09-10 00:14 - 00000000 ____D C:\ProgramData\Sophos
    2016-09-10 00:13 - 2016-09-10 00:13 - 00002759 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
    2016-09-10 00:13 - 2016-09-10 00:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
    2016-09-10 00:13 - 2016-09-10 00:13 - 00000000 ____D C:\Program Files (x86)\Sophos
    2016-09-09 23:58 - 2016-09-09 23:58 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
    2016-09-09 23:58 - 2016-09-09 23:58 - 00003892 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1473479912
    2016-09-09 23:58 - 2016-09-09 23:58 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
    2016-09-09 23:58 - 2016-09-09 23:58 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
    2016-09-09 23:56 - 2016-09-09 23:56 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update
    2016-09-09 23:56 - 2016-09-09 23:56 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
    2016-09-09 23:56 - 2016-09-09 23:56 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
    2016-09-09 23:56 - 2016-09-09 23:56 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\AVAST Software
    2016-09-09 23:56 - 2016-09-09 23:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
    2016-09-09 23:56 - 2016-09-09 23:56 - 00000000 ____D C:\Program Files\Common Files\AV
    2016-09-09 23:55 - 2016-09-09 23:55 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
    2016-09-09 23:55 - 2016-09-09 23:55 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
    2016-09-09 23:55 - 2016-09-09 23:55 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
    2016-09-09 23:55 - 2016-09-09 23:55 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
    2016-09-09 23:54 - 2016-09-09 23:58 - 00000000 ____D C:\ProgramData\AVAST Software
    2016-09-09 23:54 - 2016-09-09 23:58 - 00000000 ____D C:\Program Files\AVAST Software
    2016-09-09 23:54 - 2016-09-09 23:54 - 06334648 _____ (AVAST Software) C:\Users\jeremy\Documents\avast_free_antivirus_setup_online.exe
    2016-09-09 23:39 - 2016-09-09 23:41 - 152152648 _____ (Sophos Limited) C:\Users\jeremy\Documents\Sophos Virus Removal Tool.exe
    2016-09-09 23:30 - 2016-09-09 23:30 - 00000967 _____ C:\Users\Public\Desktop\Steam.lnk
    2016-09-09 23:30 - 2016-09-09 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
    2016-09-09 23:27 - 2016-09-09 23:27 - 00000000 ____D C:\Users\jeremy\Desktop\New folder (2)
    2016-09-09 23:15 - 2016-09-09 23:15 - 01446792 _____ C:\Users\jeremy\Documents\SteamSetup.exe
    2016-09-09 22:42 - 2016-09-09 22:42 - 00012872 _____ (SurfRight B.V.) C:\Windows\system32\bootdelete.exe
    2016-09-09 22:23 - 2016-09-09 22:42 - 00000000 ____D C:\ProgramData\HitmanPro
    2016-09-09 22:23 - 2016-09-09 22:23 - 11572656 _____ (SurfRight B.V.) C:\Users\jeremy\Documents\hitmanpro_x64.exe
    2016-09-09 22:23 - 2016-09-09 22:23 - 00000000 ____D C:\Program Files\HitmanPro
    2016-09-09 22:07 - 2016-09-09 22:54 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
    2016-09-09 22:07 - 2016-09-09 22:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2016-09-09 22:07 - 2016-09-09 22:07 - 00000000 ____D C:\ProgramData\Malwarebytes
    2016-09-09 22:07 - 2016-09-09 22:07 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
    2016-09-09 22:07 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
    2016-09-09 22:07 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
    2016-09-09 22:07 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
    2016-09-09 22:06 - 2016-09-09 22:06 - 22851472 _____ (Malwarebytes ) C:\Users\jeremy\Documents\mbam-setup-2.2.1.1043.exe
    2016-09-09 21:56 - 2016-09-09 21:57 - 00000000 ____D C:\AdwCleaner
    2016-09-09 21:55 - 2016-09-09 21:56 - 03826240 _____ C:\Users\jeremy\Documents\adwcleaner_6.010.exe
    2016-09-09 19:42 - 2016-09-09 19:43 - 00000000 ____D C:\Users\jeremy\AppData\Local\NPE
    2016-09-09 17:42 - 2016-09-09 17:42 - 00000000 ____D C:\ProgramData\Riot Games
    2016-09-09 14:44 - 2016-09-09 14:44 - 00000000 ___SD C:\Users\jeremy\AppData\LocalLow\Temp
    2016-09-09 14:41 - 2016-09-09 14:41 - 00000000 ____D C:\ProgramData\NortonInstaller
    2016-09-09 14:36 - 2016-09-09 21:44 - 00000000 ____D C:\ProgramData\Norton
    2016-09-09 14:36 - 2016-09-09 14:45 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
    2016-09-09 14:36 - 2016-09-09 14:36 - 00001249 _____ C:\Users\jeremy\Desktop\Norton Installation Files.lnk
    2016-09-09 14:36 - 2016-09-09 14:36 - 00000000 ____D C:\Users\Public\Downloads\Norton
    2016-09-09 14:35 - 2016-09-09 14:36 - 01089928 _____ (Symantec Corporation) C:\Users\jeremy\Documents\NSBUDownloader.exe
    2016-09-08 22:34 - 2016-09-08 22:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlaysTV
    2016-09-08 22:25 - 2016-09-08 22:25 - 00000000 ____D C:\Users\jeremy\AppData\Local\Wacom
    2016-09-08 22:15 - 2016-09-08 22:15 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablet
    2016-09-08 22:13 - 2016-09-08 22:14 - 82101240 _____ C:\Users\jeremy\Documents\WacomTablet_6.3.15-2(1).exe
    2016-09-08 18:08 - 2016-09-08 18:08 - 03012080 _____ (Blizzard Entertainment) C:\Users\jeremy\Documents\Battle.net-Setup.exe
    2016-09-08 16:23 - 2016-09-08 16:23 - 00000000 ____D C:\Users\jeremy\AppData\Local\Wacom Help
    2016-09-08 15:23 - 2016-09-10 00:28 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
    2016-09-08 15:23 - 2016-09-08 15:23 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2016-09-08 15:23 - 2016-09-08 15:23 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2016-09-08 15:23 - 2016-09-08 15:23 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2016-09-08 15:18 - 2016-09-08 15:18 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_bcmwlhigh664_01009.Wdf
    2016-09-08 15:16 - 2016-09-08 15:16 - 00001117 _____ C:\Users\Public\Desktop\NETGEAR WNA3100 Genie.lnk
    2016-09-08 15:16 - 2016-09-08 15:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR WNA3100 Genie
    2016-09-08 15:16 - 2010-02-03 11:21 - 00281104 _____ (CACE Technologies, Inc.) C:\Windows\SysWOW64\wpcap.dll
    2016-09-08 15:16 - 2010-02-03 11:21 - 00096784 _____ (CACE Technologies, Inc.) C:\Windows\SysWOW64\Packet.dll
    2016-09-08 15:16 - 2010-02-03 11:21 - 00053299 _____ C:\Windows\SysWOW64\pthreadVC.dll
    2016-09-08 15:16 - 2010-02-03 11:21 - 00047632 _____ (CACE Technologies, Inc.) C:\Windows\system32\Drivers\npf.sys
    2016-09-08 15:14 - 2008-03-02 22:09 - 00000362 _____ C:\Users\jeremy\Desktop\RemoveAdminAutoHotkey.reg
    2016-09-08 15:14 - 2008-03-02 22:08 - 00000658 _____ C:\Users\jeremy\Desktop\AdminAutoHotkey.reg
    2016-09-08 15:10 - 2016-09-08 15:10 - 00000000 __SHD C:\Users\jeremy\AppData\Roaming\Common
    2016-09-08 15:09 - 2016-09-08 15:09 - 21029328 _____ (Binary Fortress Software ) C:\Users\jeremy\Documents\DisplayFusionSetup-8.0.exe
    2016-09-08 15:08 - 2016-09-08 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair Utility Engine
    2016-09-08 15:07 - 2016-09-08 15:07 - 03094887 _____ C:\Users\jeremy\Documents\AutoHotkey112401_Install.exe
    2016-09-08 15:07 - 2016-09-08 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey
    2016-09-08 15:06 - 2016-09-08 15:06 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_wacomrouterfilter_01009.Wdf
    2016-09-08 15:06 - 2016-09-08 15:06 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf
    2016-09-08 15:06 - 2015-12-21 14:02 - 02077888 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wacom_Tablet.dlm
    2016-09-08 15:06 - 2015-12-21 14:02 - 01966272 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wintab32.dlm
    2016-09-08 15:06 - 2015-12-21 14:02 - 01571520 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dlm
    2016-09-08 15:03 - 2016-09-08 15:04 - 82101240 _____ C:\Users\jeremy\Documents\WacomTablet_6.3.15-2.exe
    2016-09-08 14:54 - 2014-05-14 12:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
    2016-09-08 14:54 - 2014-05-14 12:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
    2016-09-08 14:54 - 2014-05-14 12:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
    2016-09-08 14:54 - 2014-05-14 12:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
    2016-09-08 14:54 - 2014-05-14 12:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
    2016-09-08 14:54 - 2014-05-14 12:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
    2016-09-08 14:54 - 2014-05-14 12:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
    2016-09-08 14:54 - 2014-05-14 12:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
    2016-09-08 14:54 - 2014-05-14 12:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
    2016-09-08 14:54 - 2014-05-14 12:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
    2016-09-08 14:53 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
    2016-09-08 14:53 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
    2016-09-08 14:53 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
    2016-09-08 14:53 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
    2016-09-08 14:45 - 2016-09-09 22:50 - 00065536 _____ C:\Windows\system32\spu_storage.bin
    2016-09-08 06:39 - 2016-09-08 06:39 - 00003408 ____N C:\bootsqm.dat
    2016-09-08 06:24 - 2016-09-08 06:24 - 00000000 __SHD C:\found.000
    2016-09-08 03:33 - 2009-07-13 21:41 - 01393152 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
    2016-09-08 03:06 - 2016-07-06 11:13 - 00181913 _____ C:\Users\jeremy\Desktop\RedRainbow K70.prf
    2016-09-08 02:57 - 2016-09-08 03:17 - 00000000 ____D C:\Users\jeremy\AppData\Local\Corsair
    2016-09-07 18:04 - 2016-09-08 03:23 - 00000000 ____D C:\Users\jeremy\AppData\Local\ElevatedDiagnostics
    2016-09-07 17:41 - 2016-09-07 17:41 - 00000000 ____D C:\Users\jeremy\Documents\Action!
    2016-09-07 17:40 - 2016-09-07 17:40 - 00000000 ____D C:\Users\jeremy\AppData\Local\Mirillis
    2016-09-07 16:31 - 2016-09-07 16:31 - 00057560 _____ C:\Users\jeremy\AppData\Local\GDIPFONTCACHEV1.DAT
    2016-09-07 16:29 - 2016-09-08 14:43 - 00000000 ____D C:\Windows\system32\mhbe
    2016-09-07 16:19 - 2016-09-09 22:16 - 00000000 ____D C:\Users\jeremy\AppData\LocalLow\Company
    2016-09-07 16:19 - 2016-09-07 16:19 - 00000000 ____D C:\Users\jeremy\AppData\Local\Tempfolder
    2016-09-07 06:39 - 2016-09-08 22:34 - 00000000 ____D C:\Users\jeremy\AppData\Local\CrashDumps
    2016-09-07 06:09 - 2016-09-07 06:09 - 00000000 ____D C:\ProgramData\Binary Fortress Software
    2016-09-07 06:04 - 2016-09-07 06:04 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
    2016-09-07 05:51 - 2016-09-08 14:44 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\MetroSidebar
    2016-09-07 05:47 - 2016-09-07 05:47 - 00000000 ____D C:\Users\jeremy\AppData\Local\Macromedia
    2016-09-07 05:35 - 2016-09-08 15:27 - 00000000 ____D C:\Users\jeremy\AppData\Local\Adobe
    2016-09-07 05:35 - 2016-09-08 15:23 - 00000000 ____D C:\Windows\SysWOW64\Macromed
    2016-09-07 05:35 - 2016-09-08 15:23 - 00000000 ____D C:\Windows\system32\Macromed
    2016-09-07 05:20 - 2016-09-07 01:30 - 00000000 ____D C:\Windows\Panther
    2016-09-07 05:11 - 2016-09-07 05:11 - 00000000 ____D C:\Windows.old.000
    2016-09-07 04:28 - 2016-09-07 04:28 - 00000000 ____D C:\Windows.old
    2016-09-07 04:26 - 2016-09-07 04:26 - 00000000 ____D C:\Users\jeremy\AppData\Local\ATI
    2016-09-07 04:26 - 2016-09-07 04:26 - 00000000 ____D C:\ProgramData\ATI
    2016-09-07 04:23 - 2016-09-07 04:23 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
    2016-09-07 04:23 - 2016-09-07 04:23 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
    2016-09-07 04:21 - 2016-09-07 04:21 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
    2016-09-07 04:15 - 2016-09-07 04:15 - 00000000 ____D C:\Users\jeremy\AppData\Local\openvr
    2016-09-07 04:14 - 2016-09-07 04:24 - 00000000 ____D C:\Users\jeremy\AppData\Local\DisplayFusion
    2016-09-07 04:13 - 2016-09-08 15:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DisplayFusion
    2016-09-07 04:13 - 2016-09-08 15:10 - 00000000 ____D C:\Program Files (x86)\DisplayFusion
    2016-09-07 03:47 - 2016-09-07 03:48 - 13767776 _____ (Microsoft Corporation) C:\Users\jeremy\Downloads\vc_redist.x86.exe
    2016-09-07 03:46 - 2015-06-06 19:13 - 00961192 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00062304 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:13 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00064352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
    2016-09-07 03:46 - 2015-06-06 19:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
    2016-09-07 03:45 - 2016-09-07 03:46 - 14572000 _____ (Microsoft Corporation) C:\Users\jeremy\Downloads\vc_redist.x64.exe
    2016-09-07 03:43 - 2016-09-07 03:43 - 00000000 ____D C:\Users\jeremy\AppData\LocalLow\Facepunch Studios LTD
    2016-09-07 03:43 - 2016-09-01 17:12 - 00227104 _____ (EasyAntiCheat Ltd) C:\Windows\SysWOW64\EasyAntiCheat.exe
    2016-09-07 03:43 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
    2016-09-07 03:43 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
    2016-09-07 03:43 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
    2016-09-07 03:43 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
    2016-09-07 03:43 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
    2016-09-07 03:43 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
    2016-09-07 03:43 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
    2016-09-07 03:43 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
    2016-09-07 03:43 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
    2016-09-07 03:43 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
    2016-09-07 03:43 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
    2016-09-07 03:43 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
     
  3. discord

    discord TS Rookie Topic Starter

    FRST.TXT PART 2

    2016-09-07 03:43 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
    2016-09-07 03:43 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
    2016-09-07 03:43 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
    2016-09-07 03:43 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
    2016-09-07 03:43 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
    2016-09-07 03:43 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
    2016-09-07 03:43 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
    2016-09-07 03:43 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
    2016-09-07 03:42 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
    2016-09-07 03:42 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
    2016-09-07 03:42 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
    2016-09-07 03:42 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
    2016-09-07 03:42 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
    2016-09-07 03:42 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
    2016-09-07 03:42 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
    2016-09-07 03:42 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
    2016-09-07 03:42 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
    2016-09-07 03:42 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
    2016-09-07 03:42 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
    2016-09-07 03:42 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
    2016-09-07 03:42 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
    2016-09-07 03:42 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
    2016-09-07 03:42 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
    2016-09-07 03:42 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
    2016-09-07 03:42 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
    2016-09-07 03:42 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
    2016-09-07 03:42 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
    2016-09-07 03:42 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
    2016-09-07 03:42 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
    2016-09-07 03:42 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
    2016-09-07 03:42 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
    2016-09-07 03:42 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
    2016-09-07 03:42 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
    2016-09-07 03:42 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
    2016-09-07 03:42 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
    2016-09-07 03:42 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
    2016-09-07 03:42 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
    2016-09-07 03:42 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
    2016-09-07 03:42 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
    2016-09-07 03:42 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
    2016-09-07 03:42 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
    2016-09-07 03:42 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
    2016-09-07 03:42 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
    2016-09-07 03:42 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
    2016-09-07 03:42 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
    2016-09-07 03:42 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
    2016-09-07 03:42 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
    2016-09-07 03:42 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
    2016-09-07 03:42 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
    2016-09-07 03:42 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
    2016-09-07 03:42 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
    2016-09-07 03:42 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
    2016-09-07 03:42 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
    2016-09-07 03:42 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
    2016-09-07 03:42 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
    2016-09-07 03:42 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
    2016-09-07 03:42 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
    2016-09-07 03:42 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
    2016-09-07 03:42 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
    2016-09-07 03:42 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
    2016-09-07 03:42 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
    2016-09-07 03:42 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
    2016-09-07 03:42 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
    2016-09-07 03:42 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
    2016-09-07 03:42 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
    2016-09-07 03:42 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
    2016-09-07 03:42 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
    2016-09-07 03:42 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
    2016-09-07 03:42 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
    2016-09-07 03:42 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
    2016-09-07 03:42 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
    2016-09-07 03:42 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
    2016-09-07 03:42 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
    2016-09-07 03:42 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
    2016-09-07 03:42 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
    2016-09-07 03:42 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
    2016-09-07 03:42 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
    2016-09-07 03:42 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
    2016-09-07 03:42 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
    2016-09-07 03:42 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
    2016-09-07 03:42 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
    2016-09-07 03:42 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
    2016-09-07 03:42 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
    2016-09-07 03:42 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
    2016-09-07 03:42 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
    2016-09-07 03:42 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
    2016-09-07 03:42 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
    2016-09-07 03:42 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
    2016-09-07 03:42 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
    2016-09-07 03:42 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
    2016-09-07 03:42 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
    2016-09-07 03:42 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
    2016-09-07 03:42 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
    2016-09-07 03:42 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
    2016-09-07 03:42 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
    2016-09-07 03:42 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
    2016-09-07 03:42 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
    2016-09-07 03:42 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
    2016-09-07 03:42 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
    2016-09-07 03:42 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
    2016-09-07 03:42 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
    2016-09-07 03:42 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
    2016-09-07 03:42 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
    2016-09-07 03:42 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
    2016-09-07 03:42 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
    2016-09-07 03:42 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
    2016-09-07 03:42 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
    2016-09-07 03:42 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
    2016-09-07 03:42 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
    2016-09-07 03:42 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
    2016-09-07 03:42 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
    2016-09-07 03:42 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
    2016-09-07 03:42 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
    2016-09-07 03:42 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
    2016-09-07 03:42 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
    2016-09-07 03:42 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
    2016-09-07 03:42 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
    2016-09-07 03:42 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
    2016-09-07 03:42 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
    2016-09-07 03:42 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
    2016-09-07 03:42 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
    2016-09-07 03:42 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
    2016-09-07 03:42 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
    2016-09-07 03:42 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
    2016-09-07 03:42 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
    2016-09-07 03:42 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
    2016-09-07 03:42 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
    2016-09-07 03:42 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
    2016-09-07 03:42 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
    2016-09-07 03:42 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
    2016-09-07 03:42 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
    2016-09-07 03:42 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
    2016-09-07 03:42 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
    2016-09-07 03:42 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
    2016-09-07 03:42 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
    2016-09-07 03:42 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
    2016-09-07 03:42 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
    2016-09-07 03:42 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
    2016-09-07 03:42 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
    2016-09-07 03:41 - 2016-09-08 14:44 - 00000000 ____D C:\Users\jeremy\AppData\Local\Discord
    2016-09-07 03:41 - 2016-09-07 18:11 - 00000000 ____D C:\Users\jeremy\AppData\Local\SquirrelTemp
    2016-09-07 03:41 - 2015-12-21 14:02 - 02103488 _____ (Wacom Technology, Corp.) C:\Windows\system32\WacomMT.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 02077888 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wacom_Tablet.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 02071232 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wacom_Touch_Tablet.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 01966272 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wintab32.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 01683648 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\WacomMT.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 01681600 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wacom_Tablet.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 01674432 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wacom_Touch_Tablet.dll
    2016-09-07 03:41 - 2015-12-21 14:02 - 01571520 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dll
    2016-09-07 03:38 - 2016-09-07 03:38 - 00004224 _____ C:\Windows\System32\Tasks\AMD Updater
    2016-09-07 03:38 - 2016-09-07 03:38 - 00002023 _____ C:\Users\Public\Desktop\Raptr.lnk
    2016-09-07 03:38 - 2016-09-07 03:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Raptr
    2016-09-07 03:37 - 2016-09-07 03:40 - 109275864 _____ C:\Users\jeremy\Downloads\WacomTablet_6.3.9w5.exe
    2016-09-07 03:37 - 2016-09-07 03:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
    2016-09-07 03:33 - 2016-09-07 03:35 - 83528440 _____ C:\Users\jeremy\Downloads\WacomTablet_6.3.17-3.exe
    2016-09-07 03:33 - 2016-09-07 03:35 - 00000000 ____D C:\Program Files (x86)\Raptr
    2016-09-07 03:33 - 2016-09-07 03:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
    2016-09-07 03:32 - 2016-09-07 03:32 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
    2016-09-07 03:31 - 2016-09-07 03:31 - 00000000 ____D C:\Users\jeremy\AppData\Local\Logitech
    2016-09-07 03:31 - 2016-09-07 03:31 - 00000000 ____D C:\ProgramData\LogiShrd
    2016-09-07 03:26 - 2016-09-07 03:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
    2016-09-07 03:24 - 2016-09-07 03:48 - 00000000 ____D C:\ProgramData\Package Cache
    2016-09-07 03:15 - 2016-09-07 03:24 - 00771962 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
    2016-09-07 03:11 - 2016-09-07 03:11 - 00889416 _____ (Microsoft Corporation) C:\Users\jeremy\Downloads\dotNetFx40_Full_setup.exe
    2016-09-07 03:08 - 2016-09-07 03:13 - 97269608 _____ (Logitech Inc.) C:\Users\jeremy\Downloads\LGS_8.87.116_x64_Logitech.exe
    2016-09-07 03:07 - 2016-09-07 03:13 - 304098056 _____ (AMD Inc.) C:\Users\jeremy\Downloads\non-whql-win7-64bit-radeon-software-crimson-16.8.3-aug30.exe
    2016-09-07 03:04 - 2016-09-07 03:41 - 50343608 _____ (Hammer & Chisel, Inc.) C:\Users\jeremy\Downloads\DiscordSetup.exe
    2016-09-07 03:01 - 2016-09-07 03:02 - 03012080 _____ (Blizzard Entertainment) C:\Users\jeremy\Downloads\Battle.net-Setup.exe
    2016-09-07 02:59 - 2016-09-07 02:59 - 00003246 _____ C:\Windows\System32\Tasks\SidebarExecute
    2016-09-07 02:56 - 2016-09-07 02:57 - 01446792 _____ C:\Users\jeremy\Downloads\SteamSetup.exe
    2016-09-07 02:53 - 2016-09-07 04:09 - 00000000 ____D C:\Users\jeremy\AppData\Local\AMD
    2016-09-07 02:50 - 2016-09-07 02:50 - 00000000 ____D C:\Users\jeremy\AppData\Local\Steam
    2016-09-07 02:50 - 2016-09-07 02:50 - 00000000 ____D C:\Users\jeremy\AppData\Local\CEF
    2016-09-07 02:23 - 2016-09-07 02:23 - 00000000 ____D C:\Users\jeremy\Tracing
    2016-09-07 02:23 - 2016-09-07 02:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
    2016-09-07 02:17 - 2016-09-07 02:23 - 00000000 ____D C:\ProgramData\Skype
    2016-09-07 02:15 - 2016-09-10 00:25 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Skype
    2016-09-07 02:15 - 2016-09-07 02:15 - 00000000 ____D C:\ProgramData\Battle.net
    2016-09-07 02:14 - 2016-09-07 02:14 - 00000000 ____D C:\Users\jeremy\AppData\Local\Blizzard Entertainment
    2016-09-07 02:13 - 2016-09-09 21:42 - 00000000 ____D C:\Users\jeremy\AppData\Local\Battle.net
    2016-09-07 02:13 - 2016-09-08 14:44 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Battle.net
    2016-09-07 02:13 - 2016-09-07 02:13 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
    2016-09-07 02:04 - 2016-09-07 02:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
    2016-09-07 02:04 - 2016-09-07 02:04 - 00000000 ____D C:\Program Files\7-Zip
    2016-09-07 01:55 - 2016-09-07 01:55 - 01100800 _____ C:\Users\jeremy\Downloads\MicrosoftEasyFix50582.msi
    2016-09-07 01:37 - 2016-09-08 14:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
    2016-09-07 01:37 - 2016-09-07 01:43 - 00000000 ____D C:\Users\jeremy\AppData\Local\Mozilla
    2016-09-07 01:37 - 2016-09-07 01:37 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
    2016-09-07 01:37 - 2016-09-07 01:37 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Mozilla
    2016-09-07 01:37 - 2016-09-07 01:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
    2016-09-07 01:30 - 2016-09-08 14:49 - 00000000 ____D C:\Users\jeremy
    2016-09-07 01:30 - 2016-09-07 01:30 - 00001447 _____ C:\Users\jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
    2016-09-07 01:30 - 2016-09-07 01:30 - 00001413 _____ C:\Users\jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
    2016-09-07 01:30 - 2016-09-07 01:30 - 00000020 ___SH C:\Users\jeremy\ntuser.ini
    2016-09-07 01:30 - 2016-09-07 01:30 - 00000000 _SHDL C:\Users\jeremy\My Documents
    2016-09-07 01:30 - 2016-09-07 01:30 - 00000000 _SHDL C:\Users\jeremy\Documents\My Videos
    2016-09-07 01:30 - 2016-09-07 01:30 - 00000000 _SHDL C:\Users\jeremy\Documents\My Pictures
    2016-09-07 01:30 - 2016-09-07 01:30 - 00000000 _SHDL C:\Users\jeremy\Documents\My Music
    2016-09-07 01:30 - 2016-09-07 01:30 - 00000000 ____D C:\Users\jeremy\AppData\Local\VirtualStore
    2016-09-07 01:30 - 2011-04-12 04:28 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Media Center Programs
    2016-09-06 22:55 - 2016-09-06 22:54 - 00000033 _____ C:\Users\jeremy\Desktop\motherboard.txt
    2016-09-06 16:26 - 2016-09-06 16:26 - 00000000 ____D C:\Users\jeremy\Desktop\New folder (13)
    2016-09-06 15:41 - 2016-09-06 15:41 - 00000000 ____D C:\Users\jeremy\Desktop\New folder (12)
    2016-09-06 15:36 - 2016-09-06 15:36 - 01087488 _____ C:\Users\jeremy\Documents\Space.exe
    2016-09-05 18:23 - 2016-09-05 21:32 - 00000000 ____D C:\Users\jeremy\Documents\Battlefield 1 Open Beta
    2016-09-05 16:19 - 2016-09-05 16:19 - 00000000 ____D C:\Program Files (x86)\Origin Games
    2016-09-03 18:50 - 2016-09-05 08:55 - 00000000 ____D C:\Users\jeremy\Desktop\New folder (10)
    2016-09-01 20:03 - 2016-09-01 20:03 - 00000000 ____D C:\Users\jeremy\Desktop\Unpark-CPU-App
    2016-08-30 17:07 - 2016-08-30 17:07 - 01525600 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 01253120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00170072 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00150544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00145400 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00141280 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00139208 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00125288 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00124776 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00123776 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
    2016-08-30 17:07 - 2016-08-30 17:07 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
    2016-08-30 17:06 - 2016-08-30 17:06 - 10865616 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
    2016-08-30 17:06 - 2016-08-30 17:06 - 10186864 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
    2016-08-30 17:06 - 2016-08-30 17:06 - 09221224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
    2016-08-30 17:06 - 2016-08-30 17:06 - 09022440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
    2016-08-30 17:06 - 2016-08-30 17:06 - 08778360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
    2016-08-30 17:06 - 2016-08-30 17:06 - 07162760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
    2016-08-30 17:05 - 2016-08-30 17:05 - 00305032 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys
    2016-08-30 16:59 - 2016-08-30 16:59 - 02130432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
    2016-08-30 16:58 - 2016-08-30 16:58 - 08819200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdvlk64.dll
    2016-08-30 16:58 - 2016-08-30 16:58 - 01820160 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
    2016-08-30 16:57 - 2016-08-30 16:57 - 48801792 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
    2016-08-30 16:57 - 2016-08-30 16:57 - 00252928 _____ C:\Windows\system32\clinfo.exe
    2016-08-30 16:56 - 2016-08-30 16:56 - 38248960 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
    2016-08-30 16:55 - 2016-08-30 16:55 - 00096256 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
    2016-08-30 16:55 - 2016-08-30 16:55 - 00087040 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
    2016-08-30 16:53 - 2016-08-30 16:53 - 27471872 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
    2016-08-30 16:53 - 2016-08-30 16:53 - 21623808 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll
    2016-08-30 16:53 - 2016-08-30 16:53 - 07076352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdvlk32.dll
    2016-08-30 16:48 - 2016-08-30 16:48 - 26710016 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
    2016-08-30 16:38 - 2016-08-30 16:38 - 32540672 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
    2016-08-30 16:37 - 2016-08-30 16:37 - 00734208 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
    2016-08-30 16:37 - 2016-08-30 16:37 - 00609792 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
    2016-08-30 16:36 - 2016-08-30 16:36 - 08610816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
    2016-08-30 16:36 - 2016-08-30 16:36 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
    2016-08-30 16:36 - 2016-08-30 16:36 - 00117760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
    2016-08-30 16:35 - 2016-08-30 16:35 - 00732336 _____ C:\Windows\SysWOW64\atiapfxx.blb
    2016-08-30 16:35 - 2016-08-30 16:35 - 00732336 _____ C:\Windows\system32\atiapfxx.blb
    2016-08-30 16:34 - 2016-08-30 16:34 - 15711744 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
    2016-08-30 16:34 - 2016-08-30 16:34 - 00385536 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
    2016-08-30 16:34 - 2016-08-30 16:34 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
    2016-08-30 16:34 - 2016-08-30 16:34 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
    2016-08-30 16:34 - 2016-08-30 16:34 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
    2016-08-30 16:34 - 2016-08-30 16:34 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
    2016-08-30 16:33 - 2016-08-30 16:33 - 14302720 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
    2016-08-30 16:33 - 2016-08-30 16:33 - 00865792 _____ (AMD) C:\Windows\system32\coinst_16.30.dll
    2016-08-30 16:32 - 2016-08-30 16:32 - 06938624 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
    2016-08-30 16:32 - 2016-08-30 16:32 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
    2016-08-30 16:32 - 2016-08-30 16:32 - 00038400 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
    2016-08-30 16:31 - 2016-08-30 16:31 - 26624512 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
    2016-08-30 16:30 - 2016-08-30 16:30 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
    2016-08-30 16:29 - 2016-08-30 16:29 - 00113152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
    2016-08-30 16:29 - 2016-08-30 16:29 - 00092160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
    2016-08-30 16:28 - 2016-08-30 16:28 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
    2016-08-30 16:28 - 2016-08-30 16:28 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
    2016-08-30 16:28 - 2016-08-30 16:28 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
    2016-08-30 16:28 - 2016-08-30 16:28 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
    2016-08-30 16:28 - 2016-08-30 16:28 - 00157144 _____ C:\Windows\system32\ativvsva.dat
    2016-08-30 16:27 - 2016-08-30 16:27 - 00504320 _____ (AMD) C:\Windows\system32\atieclxx.exe
    2016-08-30 16:27 - 2016-08-30 16:27 - 00274944 _____ C:\Windows\system32\dgtrayicon.exe
    2016-08-30 16:27 - 2016-08-30 16:27 - 00269824 _____ (AMD) C:\Windows\system32\atiesrxx.exe
    2016-08-30 16:27 - 2016-08-30 16:27 - 00258560 _____ C:\Windows\system32\GameManager64.dll
    2016-08-30 16:27 - 2016-08-30 16:27 - 00231936 _____ C:\Windows\system32\amdgfxinfo64.dll
    2016-08-30 16:27 - 2016-08-30 16:27 - 00223744 _____ C:\Windows\SysWOW64\GameManager32.dll
    2016-08-30 16:27 - 2016-08-30 16:27 - 00214016 _____ C:\Windows\system32\atieah64.exe
    2016-08-30 16:27 - 2016-08-30 16:27 - 00204800 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
    2016-08-30 16:27 - 2016-08-30 16:27 - 00192000 _____ C:\Windows\SysWOW64\atieah32.exe
    2016-08-30 16:27 - 2016-08-30 16:27 - 00093696 _____ (AMD) C:\Windows\system32\atimuixx.dll
    2016-08-30 16:26 - 2016-08-30 16:26 - 00270336 _____ (AMD) C:\Windows\system32\atitmm64.dll
    2016-08-30 16:25 - 2016-08-30 16:25 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
    2016-08-30 16:22 - 2016-08-30 16:22 - 01311744 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00977920 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00977920 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00500736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
    2016-08-30 16:22 - 2016-08-30 16:22 - 00185344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00159232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00119808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00106496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00101376 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
    2016-08-30 16:22 - 2016-08-30 16:22 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
    2016-08-30 16:18 - 2016-08-30 16:18 - 00251392 _____ C:\Windows\system32\hsa-thunk64.dll
    2016-08-30 16:18 - 2016-08-30 16:18 - 00217088 _____ C:\Windows\SysWOW64\hsa-thunk.dll
    2016-08-30 00:09 - 2016-08-30 00:10 - 00000000 ____D C:\Users\jeremy\Documents\DuckGame
    2016-08-29 20:17 - 2016-08-29 20:17 - 00067736 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGJoyXlCore.sys
    2016-08-29 20:17 - 2016-08-29 20:17 - 00036496 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGBusEnum.sys
    2016-08-29 20:17 - 2016-08-29 20:17 - 00026008 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGVirHid.sys
    2016-08-28 22:31 - 2016-08-28 22:31 - 00000000 ____D C:\Users\jeremy\Documents\KoeiTecmo
    2016-08-28 18:36 - 2016-08-28 18:36 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Gamminator
    2016-08-28 18:35 - 2016-08-28 18:35 - 00245217 _____ C:\Users\jeremy\Documents\gamminator-0.5.6-setup.exe
    2016-08-28 18:35 - 2016-08-28 18:35 - 00000000 ____D C:\Program Files (x86)\Gamminator
    2016-08-27 19:00 - 2016-09-06 16:06 - 00000720 _____ C:\Users\jeremy\Desktop\New Text Document.txt
    2016-08-26 23:22 - 2016-08-26 23:23 - 00000000 ____D C:\Users\jeremy\Desktop\-+Shige+Seoul+(16-9)
    2016-08-25 16:39 - 2016-09-08 14:44 - 00000000 ____D C:\Users\jeremy\Desktop\betterdiscord
    2016-08-25 04:10 - 2016-08-25 04:10 - 00000000 ____D C:\Program Files (x86)\OpenAL
    2016-08-25 03:58 - 2016-08-25 03:58 - 00000000 ____D C:\Users\jeremy\Desktop\Custom_Desktop_Logo_V2.2
    2016-08-24 22:54 - 2016-08-31 02:14 - 00000000 ____D C:\Users\jeremy\Documents\mods
    2016-08-24 22:51 - 2016-09-04 00:22 - 00000000 ____D C:\Program Files (x86)\A3Launcher
    2016-08-24 22:50 - 2016-08-24 22:51 - 13913152 _____ (Maca134 ) C:\Users\jeremy\Documents\setup_a3launcher.exe
    2016-08-24 04:44 - 2016-08-24 04:44 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\.mono
    2016-08-20 00:13 - 2016-08-20 00:13 - 00010104 _____ C:\Users\jeremy\Documents\Updater.cs
    2016-08-19 23:02 - 2016-08-19 23:02 - 00000000 ____D C:\Users\jeremy\Documents\RustDedicated_Data
    2016-08-19 23:02 - 2016-08-19 00:10 - 04041915 _____ (Oxide) C:\Users\jeremy\Documents\CSharpCompiler.exe
    2016-08-19 23:02 - 2016-08-19 00:10 - 00000589 _____ C:\Users\jeremy\Documents\_start-example.bat
    2016-08-19 23:02 - 2016-08-19 00:10 - 00000278 _____ C:\Users\jeremy\Documents\oxide.config.json
    2016-08-19 22:57 - 2016-08-19 22:57 - 00002718 _____ C:\Users\jeremy\Documents\ftplog.txt
    2016-08-19 22:29 - 2016-08-19 22:29 - 00012319 _____ C:\Users\jeremy\Documents\AimTrain(1).cs
    2016-08-19 21:43 - 2016-08-19 21:43 - 00047124 _____ C:\Users\jeremy\Documents\Kits.cs
    2016-08-19 21:39 - 2016-08-19 21:39 - 00061150 _____ C:\Users\jeremy\Documents\DeathNotes.cs
    2016-08-18 05:26 - 2016-08-18 05:27 - 00000000 ____D C:\websymbols
    2016-08-18 05:04 - 2016-08-18 05:05 - 00012319 _____ C:\Users\jeremy\Documents\AimTrain.cs
    2016-08-15 18:09 - 2016-08-15 18:11 - 83528440 _____ C:\Users\jeremy\Documents\WacomTablet_6.3.17-3(1).exe
    2016-08-15 04:43 - 2016-08-15 04:43 - 00000911 _____ C:\Users\jeremy\Desktop\layout.dat
    2016-08-14 22:51 - 2016-08-14 22:52 - 83528440 _____ C:\Users\jeremy\Documents\WacomTablet_6.3.17-3.exe
    2016-08-13 05:45 - 2016-09-06 02:14 - 00000000 ____D C:\Users\jeremy\Desktop\yayayayaya

    ==================== One Month Modified files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2016-09-10 00:25 - 2009-07-14 00:45 - 00020656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2016-09-10 00:25 - 2009-07-14 00:45 - 00020656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2016-09-10 00:24 - 2015-11-10 16:22 - 00000000 ____D C:\Users\jeremy\Desktop\Old Firefox Data
    2016-09-09 23:40 - 2014-06-19 20:02 - 00000000 ____D C:\Program Files (x86)\Steam
    2016-09-09 22:58 - 2009-07-14 01:13 - 00779724 _____ C:\Windows\system32\PerfStringBackup.INI
    2016-09-09 22:58 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\inf
    2016-09-09 22:53 - 2015-06-25 04:36 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Raptr
    2016-09-09 22:52 - 2016-07-10 23:07 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\PlaysTV
    2016-09-09 22:51 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
    2016-09-09 20:16 - 2015-01-31 05:35 - 00000000 ____D C:\Program Files (x86)\Battle.net
    2016-09-09 20:09 - 2014-06-19 20:02 - 00000000 ____D C:\Users\jeremy\Desktop\bin
    2016-09-09 19:35 - 2016-08-06 21:06 - 00000000 ____D C:\symbols
    2016-09-09 19:31 - 2014-09-23 21:04 - 00000000 ____D C:\Program Files (x86)\osu!
    2016-09-09 16:26 - 2014-11-18 21:59 - 00000000 ____D C:\Program Files (x86)\Imminent Monitor
    2016-09-08 22:19 - 2016-05-05 22:43 - 00000000 ____D C:\Program Files (x86)\Overwatch
    2016-09-08 22:15 - 2014-09-30 19:09 - 00000000 ____D C:\Program Files\Tablet
    2016-09-08 18:11 - 2015-01-31 05:36 - 00000000 ____D C:\Program Files (x86)\Hearthstone
    2016-09-08 15:07 - 2011-04-12 04:28 - 00000000 ____D C:\Windows\ShellNew
    2016-09-08 14:46 - 2016-07-28 21:08 - 00000000 ____D C:\Users\jeremy\Desktop\Release
    2016-09-08 14:44 - 2016-08-05 21:57 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\BetterDiscord
    2016-09-08 14:44 - 2016-07-29 04:23 - 00000000 ____D C:\Users\jeremy\Desktop\BotStarter1.0
    2016-09-08 14:44 - 2016-05-09 07:15 - 00000000 ____D C:\Program Files\AutoHotkey
    2016-09-08 14:44 - 2016-05-06 00:37 - 00000000 ____D C:\Users\jeremy\Documents\Overwatch
    2016-09-08 14:44 - 2016-03-11 00:07 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
    2016-09-08 14:44 - 2014-09-30 19:10 - 00000000 ____D C:\Program Files\TabletPlugins
    2016-09-08 14:44 - 2014-09-30 19:10 - 00000000 ____D C:\Program Files (x86)\TabletPlugins
    2016-09-08 14:44 - 2011-04-12 04:28 - 00000000 ____D C:\Program Files\Windows Journal
    2016-09-08 14:44 - 2009-07-14 01:32 - 00000000 ___RD C:\Windows\Offline Web Pages
    2016-09-08 14:44 - 2009-07-14 01:32 - 00000000 ____D C:\Windows\Downloaded Program Files
    2016-09-08 14:44 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\Windows Defender
    2016-09-08 14:44 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 __RSD C:\Windows\Media
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\Dism
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\servicing
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\rescache
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\PolicyDefinitions
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Program Files\Common Files\System
    2016-09-08 14:44 - 2009-07-13 23:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
    2016-09-08 14:42 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\registration
    2016-09-08 14:41 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\IME
    2016-09-08 14:41 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\spool
    2016-09-08 14:41 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\IME
    2016-09-08 14:39 - 2016-03-11 00:07 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\discord
    2016-09-08 14:39 - 2016-01-01 22:50 - 00000000 ____D C:\Program Files\AMD
    2016-09-08 14:39 - 2015-08-05 15:17 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\Corsair
    2016-09-07 18:04 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\NDF
    2016-09-07 05:20 - 2009-07-14 01:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
    2016-09-07 04:28 - 2009-07-14 00:45 - 00274320 _____ C:\Windows\system32\FNTCACHE.DAT
    2016-09-07 04:23 - 2009-07-14 01:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
    2016-09-07 04:23 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\sysprep
    2016-09-07 03:30 - 2016-02-29 19:00 - 00000939 _____ C:\Users\jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk
    2016-09-07 03:30 - 2015-10-17 14:00 - 00000000 ____D C:\Program Files\Logitech Gaming Software
    2016-09-07 03:22 - 2014-06-19 19:15 - 00000000 ____D C:\AMD
    2016-09-06 23:07 - 2016-02-29 18:40 - 00000000 ____D C:\Program Files (x86)\CCleaner Cloud
    2016-09-06 15:03 - 2015-09-06 19:02 - 00004239 _____ C:\Users\jeremy\Desktop\hexui.txt
    2016-09-05 16:19 - 2014-06-23 19:28 - 00000000 ____D C:\Program Files (x86)\Origin
    2016-09-03 22:50 - 2016-08-08 14:37 - 00000000 ____D C:\Program Files (x86)\1xg5o49I0
    2016-09-02 02:08 - 2015-08-10 20:07 - 00000000 ____D C:\Program Files (x86)\Overwolf
    2016-09-02 01:48 - 2016-06-15 02:10 - 00000000 ____D C:\Users\jeremy\Documents\Arma 3
    2016-09-01 19:13 - 2016-07-10 23:36 - 00000312 _____ C:\Users\jeremy\Desktop\HRC.ini
    2016-08-30 00:37 - 2015-04-03 15:41 - 00000000 ____D C:\Program Files (x86)\LeagueSharp
    2016-08-30 00:36 - 2016-08-10 20:24 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\LSBF24D7F7
    2016-08-25 05:30 - 2015-04-08 22:42 - 00000000 ____D C:\Users\jeremy\AppData\Roaming\.minecraft
    2016-08-24 21:37 - 2016-05-09 16:52 - 00000367 _____ C:\Users\jeremy\Desktop\New AutoHotkey Script.ahk
    2016-08-22 03:11 - 2015-04-08 22:40 - 00000000 ____D C:\Program Files (x86)\Minecraft
    2016-08-18 20:26 - 2016-05-12 20:35 - 00000000 ____D C:\Users\jeremy\Desktop\ghqh
    2016-08-16 17:12 - 2014-09-16 00:22 - 00000000 ____D C:\Program Files\Microsoft Office 15
    2016-08-12 06:53 - 2015-10-30 03:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel

    ==================== Files in the root of some directories =======

    2015-10-21 22:41 - 2015-10-23 15:49 - 1215137 _____ () C:\Users\jeremy\AppData\Roaming\jeremy-p_64
    2016-04-10 19:45 - 2016-07-16 04:10 - 0003262 _____ () C:\Users\jeremy\AppData\Roaming\VoiceMeeterDefault.xml

    Some files in TEMP:
    ====================
    C:\Users\jeremy\AppData\Local\Temp\libeay32.dll
    C:\Users\jeremy\AppData\Local\Temp\msvcr120.dll
    C:\Users\jeremy\AppData\Local\Temp\playstv_patch.exe
    C:\Users\jeremy\AppData\Local\Temp\raptrpatch.exe
    C:\Users\jeremy\AppData\Local\Temp\raptr_stub.exe
    C:\Users\jeremy\AppData\Local\Temp\SkypeSetup.exe
    C:\Users\jeremy\AppData\Local\Temp\sqlite3.dll


    ==================== Bamital & volsnap =================

    (There is no automatic fix for files that do not pass verification.)

    C:\Windows\system32\winlogon.exe => File is digitally signed
    C:\Windows\system32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\system32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\system32\services.exe => File is digitally signed
    C:\Windows\system32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\system32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\system32\rpcss.dll => File is digitally signed
    C:\Windows\system32\dnsapi.dll => File is digitally signed
    C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
    C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


    LastRegBack: 2016-09-07 04:21

    ==================== End of FRST.txt ============================
     
  4. discord

    discord TS Rookie Topic Starter

    ADDITION.TXT

    7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
    Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
    AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
    AutoHotkey 1.1.24.01 (HKLM\...\AutoHotkey) (Version: 1.1.24.01 - Lexikos)
    Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software)
    Catalyst Control Center Next Localization BR (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization CHS (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization CHT (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization CS (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization DA (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization DE (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization EL (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization ES (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization FI (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization FR (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization HU (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization IT (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization JA (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization KO (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization NL (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization NO (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization PL (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization RU (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization SV (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization TH (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Catalyst Control Center Next Localization TR (Version: 2016.0830.1646.28334 - Advanced Micro Devices, Inc.) Hidden
    Corsair Utility Engine (HKLM-x32\...\{46A3EEB3-8F6F-4BC4-9A53-CDE33D089D08}) (Version: 1.16.42 - Corsair)
    Discord (HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.)
    DisplayFusion 8.0 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 8.0.0.0 - Binary Fortress Software)
    HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.14.276 - SurfRight B.V.)
    Logitech Gaming Software 8.87 (HKLM\...\Logitech Gaming Software) (Version: 8.87.116 - Logitech Inc.)
    Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
    Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
    Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
    Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
    Mozilla Firefox 48.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 48.0.2 (x86 en-US)) (Version: 48.0.2 - Mozilla)
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0.2 - Mozilla)
    NETGEAR WNA3100 wireless USB 2.0 adapter (HKLM-x32\...\{C2425F91-1F7B-4037-9A05-9F290184798D}) (Version: 2.2.0.4 - NETGEAR)
    NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
    osu! (HKLM-x32\...\{551638b0-c2cd-464f-a258-9d2a1b002c77}) (Version: latest - ppy Pty Ltd)
    PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.14.0-r116157-release - Plays.tv, LLC)
    Raptr (HKLM-x32\...\Raptr) (Version: 5.2.6-r115593-release - Raptr, Inc)
    SafeZone Stable 1.51.2220.53 (x32 Version: 1.51.2220.53 - Avast Software) Hidden
    Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
    Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.5.6 - Sophos Limited)
    Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
    Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.15-2 - Wacom Technology Corp.)
    WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
    WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)

    ==================== Custom CLSID (Whitelisted): ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== Scheduled Tasks (Whitelisted) =============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    Task: {39BE40CC-AD4D-4D14-8618-94CB7149D68C} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-07-08] (Advanced Micro Devices, Inc.)
    Task: {79BBAFB1-4ED9-4E95-8A13-E1FEF76AB291} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-08] (Adobe Systems Incorporated)
    Task: {7FD810E1-4931-4B99-97BB-EC74DB895130} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-09-09] (AVAST Software)
    Task: {E539F55D-F8DC-4C7C-B360-0F92B098B17E} - System32\Tasks\SafeZone scheduled Autoupdate 1473479912 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-08-09] (Avast Software)
    Task: {FF44C473-A771-4A1E-81BB-7FB47ED99C73} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-09-09] (AVAST Software)

    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    ==================== Shortcuts =============================

    (The entries could be listed to be restored or removed.)

    ShortcutWithArgument: C:\Users\jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecontrol for Minecraft\Minecontrol for Minecraft.lnk -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\javaws.exe (Oracle Corporation) -> -localfile -J-Djnlp.application.href=hxxp://update.joshjcarrier.com/minecontrol/launch.jnlp "C:\Users\Jeremy\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\5\3e77bec5-6bd72180"
    ShortcutWithArgument: C:\Users\jeremy\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\2fae1f4995fc9e7f\NexonLauncher.lnk -> C:\Program Files (x86)\Nexon\Nexon Launcher\bin\nexon_client\nexon_client.exe (The NWJS Community) -> --user-data-dir="C:\Users\Jeremy\AppData\Local\NexonLauncher\User Data" --profile-directory=Default --app-id=dobbaijafcbikgimjpakclacfgeagffm

    ==================== Loaded Modules (Whitelisted) ==============

    2014-09-30 19:09 - 2015-12-21 14:02 - 01349824 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll
    2015-03-06 20:07 - 2015-03-06 20:07 - 00908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
    2016-08-29 20:17 - 2016-08-29 20:17 - 01096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
    2015-03-06 20:07 - 2015-03-06 20:07 - 00060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
    2016-08-29 20:17 - 2016-08-29 20:17 - 00241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
    2015-06-25 17:34 - 2015-06-25 17:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
    2015-06-25 17:37 - 2015-06-25 17:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
    2015-06-25 17:35 - 2015-06-25 17:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
    2015-06-25 17:38 - 2015-06-25 17:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
    2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
    2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
    2016-04-02 23:31 - 2014-08-18 17:49 - 08274648 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WNA3100.exe
    2016-04-02 23:31 - 2014-08-18 17:50 - 00316120 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe
    2016-09-07 03:41 - 2016-08-24 17:49 - 01950392 _____ () C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\ffmpeg.dll
    2016-09-07 18:11 - 2016-09-07 18:11 - 01050296 _____ () \\?\C:\Users\jeremy\AppData\Roaming\discord\0.0.296\modules\discord_voice\discord_voice.node
    2016-08-25 16:34 - 2016-08-25 16:34 - 03793080 _____ () \\?\C:\Users\jeremy\AppData\Roaming\discord\0.0.296\modules\discord_voice\libdiscord.dll
    2016-09-07 18:11 - 2016-09-07 18:11 - 00894136 _____ () \\?\C:\Users\jeremy\AppData\Roaming\discord\0.0.296\modules\discord_utils\discord_utils.node
    2016-04-02 23:31 - 2014-07-22 10:18 - 00278528 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvcLib.dll
    2016-03-23 11:04 - 2016-03-23 11:04 - 00091136 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\LuaQtWrapperLibrary.dll
    2016-03-23 11:02 - 2016-03-23 11:02 - 00200704 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\lua52.dll
    2016-03-23 11:02 - 2016-03-23 11:02 - 00224256 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\quazip.dll
    2015-11-24 16:43 - 2015-11-24 16:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd
    2015-11-24 16:43 - 2015-11-24 16:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd
    2015-11-24 16:43 - 2015-11-24 16:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
    2015-12-07 16:57 - 2015-12-07 16:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
    2015-11-24 16:48 - 2015-11-24 16:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
    2015-11-24 16:46 - 2015-11-24 16:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll
    2015-11-24 16:48 - 2015-11-24 16:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
    2015-11-24 16:43 - 2015-11-24 16:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd
    2015-11-24 16:46 - 2015-11-24 16:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll
    2015-11-24 16:48 - 2015-11-24 16:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
    2015-11-24 16:43 - 2015-11-24 16:43 - 00044544 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_sqlite3.pyd
    2015-11-24 16:43 - 2015-11-24 16:43 - 00387072 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sqlite3.dll
    2015-10-21 16:29 - 2015-10-21 16:29 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlc.dll
    2015-10-21 16:29 - 2015-10-21 16:29 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlccore.dll
    2015-11-24 16:48 - 2015-11-24 16:48 - 00111104 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32file.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 00216064 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebKitWidgets.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 00118784 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebKit.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 00199680 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtPrintSupport.pyd
    2015-11-24 16:43 - 2015-11-24 16:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd
    2015-11-24 16:47 - 2015-11-24 16:47 - 00263168 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32com.shell.shell.pyd
    2015-11-24 16:48 - 2015-11-24 16:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
    2015-06-26 19:09 - 2015-06-26 19:09 - 00271872 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\amd_ags.dll
    2015-11-24 16:43 - 2015-11-24 16:43 - 00583680 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\unicodedata.pyd
    2015-10-21 16:29 - 2015-10-21 16:29 - 00027667 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libdirectsound_plugin.dll
    2015-10-21 16:29 - 2015-10-21 16:29 - 00031251 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libwaveout_plugin.dll
    2015-10-21 16:29 - 2015-10-21 16:29 - 00066579 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\video_output\libdirectdraw_plugin.dll
    2016-09-06 19:35 - 2016-09-06 19:35 - 02618576 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\ltc_host_ex.DLL
    2010-11-22 18:56 - 2010-11-22 18:56 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ctypes.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_socket.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ssl.pyd
    2014-05-13 19:26 - 2014-05-13 19:26 - 05812736 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtGui.pyd
    2014-05-13 19:26 - 2014-05-13 19:26 - 00067584 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sip.pyd
    2014-05-13 19:26 - 2014-05-13 19:26 - 01662464 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtCore.pyd
    2014-05-13 19:26 - 2014-05-13 19:26 - 00494592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtNetwork.pyd
    2010-11-22 18:57 - 2010-11-22 18:57 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32api.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pywintypes26.dll
    2010-11-22 18:56 - 2010-11-22 18:56 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\select.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_hashlib.pyd
    2010-11-22 18:57 - 2010-11-22 18:57 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32process.pyd
    2010-11-22 18:57 - 2010-11-22 18:57 - 00111104 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32file.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00044544 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_sqlite3.pyd
    2011-02-15 14:17 - 2011-02-15 14:17 - 00417501 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sqlite3.dll
    2010-11-22 18:57 - 2010-11-22 18:57 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32gui.pyd
    2014-05-13 19:26 - 2014-05-13 19:26 - 00313856 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtWebKit.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00127488 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pyexpat.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00009216 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\winsound.pyd
    2015-10-21 16:29 - 2015-10-21 16:29 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlc.dll
    2015-10-21 16:29 - 2015-10-21 16:29 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlccore.dll
    2010-11-22 18:56 - 2010-11-22 18:56 - 00583680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\unicodedata.pyd
    2010-11-22 18:56 - 2010-11-22 18:56 - 00324608 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PIL._imaging.pyd
    2015-06-26 19:09 - 2015-06-26 19:09 - 00271872 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\amd_ags.dll
    2010-11-22 18:56 - 2010-11-22 18:56 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pythoncom26.dll
    2010-11-22 18:57 - 2010-11-22 18:57 - 00263168 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32com.shell.shell.pyd
    2010-11-22 18:57 - 2010-11-22 18:57 - 00141312 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\gobject._gobject.pyd
    2016-04-19 13:08 - 2016-04-19 13:08 - 02717595 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\heliotrope._purple.pyd
    2011-02-15 14:17 - 2011-02-15 14:17 - 01213633 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libxml2-2.dll
    2010-11-22 19:06 - 2010-11-22 19:06 - 00055808 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\zlib1.dll
    2013-05-09 19:52 - 2013-05-09 19:52 - 00495680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libaim.dll
    2013-05-09 19:52 - 2013-05-09 19:52 - 01183699 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\liboscar.dll
    2013-05-09 19:52 - 2013-05-09 19:52 - 00483306 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libicq.dll
    2013-05-03 14:57 - 2013-05-03 14:57 - 00655356 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libirc.dll
    2013-05-03 14:56 - 2013-05-03 14:56 - 01306387 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libmsn.dll
    2013-05-03 14:56 - 2013-05-03 14:56 - 00565461 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libxmpp.dll
    2013-05-03 14:57 - 2013-05-03 14:57 - 01640221 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libjabber.dll
    2013-05-03 14:56 - 2013-05-03 14:56 - 00506276 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoo.dll
    2013-05-03 14:57 - 2013-05-03 14:57 - 01053730 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libymsg.dll
    2013-05-03 14:57 - 2013-05-03 14:57 - 00497782 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoojp.dll
    2013-05-03 14:57 - 2013-05-03 14:57 - 00603326 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl-nss.dll
    2013-05-03 14:57 - 2013-05-03 14:57 - 00474199 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl.dll
    2015-11-24 16:48 - 2015-11-24 16:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd
    2015-11-24 16:48 - 2015-11-24 16:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd
    2015-11-24 16:48 - 2015-11-24 16:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd
    2016-04-02 23:31 - 2015-02-26 20:19 - 00380928 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiLib.dll
    2016-09-07 03:41 - 2016-08-24 17:49 - 02230456 _____ () C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\libglesv2.dll
    2016-09-07 03:41 - 2016-08-24 17:49 - 00088760 _____ () C:\Users\jeremy\AppData\Local\Discord\app-0.0.296\libegl.dll
    2016-09-09 22:53 - 2016-09-09 22:53 - 00170496 _____ () \\?\C:\Users\jeremy\AppData\Local\Temp\BA97.tmp.node
    2016-09-07 18:25 - 2016-09-09 19:37 - 02022072 _____ () \\?\C:\Users\jeremy\AppData\Roaming\discord\0.0.296\modules\discord_contact_import\discord_contact_import.node
    2016-08-30 16:27 - 2016-08-30 16:27 - 00223744 _____ () C:\Windows\SysWOW64\GameManager32.dll
    2016-09-09 23:36 - 2016-08-08 19:27 - 00785920 _____ () C:\Program Files (x86)\Steam\SDL2.dll
    2016-09-09 23:36 - 2015-07-01 18:06 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
    2016-09-09 23:36 - 2015-07-01 18:06 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
    2016-09-09 23:36 - 2015-07-01 18:06 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
    2016-09-09 23:36 - 2016-08-23 15:33 - 02321184 _____ () C:\Program Files (x86)\Steam\video.dll
    2016-09-09 23:36 - 2016-01-27 03:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
    2016-09-09 23:36 - 2016-01-27 03:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
    2016-09-09 23:36 - 2016-01-27 03:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
    2016-09-09 23:36 - 2016-01-27 03:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
    2016-09-09 23:36 - 2016-01-27 03:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
    2016-09-09 23:36 - 2016-08-23 15:33 - 00835360 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
    2016-09-09 23:36 - 2016-07-04 18:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
    2016-09-09 23:36 - 2016-08-04 16:56 - 49825056 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
    2016-09-09 23:36 - 2015-09-24 19:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
    2016-09-09 23:55 - 2016-09-09 23:55 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
    2016-09-09 23:55 - 2016-09-09 23:55 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
    2016-09-09 23:58 - 2016-09-09 23:58 - 03084464 _____ () C:\Program Files\AVAST Software\Avast\defs\16090901\algo.dll
    2016-09-09 23:55 - 2016-09-09 23:55 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
    2014-12-02 15:11 - 2014-12-02 15:11 - 00111400 _____ () C:\Program Files (x86)\Sophos\Sophos Virus Removal Tool\rkdisk.dll

    ==================== Alternate Data Streams (Whitelisted) =========

    (If an entry is included in the fixlist, only the ADS will be removed.)


    ==================== Safe Mode (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SophosVirusRemovalTool => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SophosVirusRemovalTool => ""="Service"

    ==================== Association (Whitelisted) ===============

    (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


    ==================== Internet Explorer trusted/restricted ===============

    (If an entry is included in the fixlist, it will be removed from the registry.)


    ==================== Hosts content: ===============================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-4266164917-1885495384-2586599627-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\jeremy\AppData\Roaming\Mozilla\Firefox\Desktop Background.bmp
    DNS Servers: 192.168.1.1 - 68.237.161.12
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
    Windows Firewall is disabled.

    ==================== MSCONFIG/TASK MANAGER disabled items ==

    (Currently there is no automatic fix for this section.)


    ==================== FirewallRules (Whitelisted) ===============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    FirewallRules: [{45007C16-91E5-4CA6-A05B-E5B616A2DAE8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    FirewallRules: [{C2B50D08-45B6-4C2F-82B8-2C1D3BE78729}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    FirewallRules: [TCP Query User{D3BB8826-5C8F-4808-B1C4-F00F70AE0A34}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
    FirewallRules: [UDP Query User{96A4F01F-A930-4FAD-998A-B95D66956D14}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
    FirewallRules: [{9F126CD4-5EB2-4CF8-8149-5AF244F8C84F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
    FirewallRules: [{E4B7E1E6-C811-4D43-AAD9-4B61DEDE55DA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
    FirewallRules: [{B06368F3-0E97-4427-A047-65B0E77DFC5B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
    FirewallRules: [{C8FF09CD-6754-43C6-83C7-C06B2C34BDB9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
    FirewallRules: [{8B6A5BEA-16F2-4B1B-91BB-C358819E2F58}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
    FirewallRules: [{D18F021F-A433-4BB1-8F72-965B4F334470}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
    FirewallRules: [{B1EEC1A2-B2FE-4C9A-914E-BBD25461879D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
    FirewallRules: [{5C6C279D-2027-4E48-B43E-1E6101980C81}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fistful of Frags\sdk\hl2.exe
    FirewallRules: [{297CFB2E-6DAB-4334-9F59-A7E6534A7204}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fistful of Frags\sdk\hl2.exe
    FirewallRules: [TCP Query User{BC57E08C-8400-4A0A-9119-A0683826D807}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
    FirewallRules: [UDP Query User{E6AFA557-1180-4EB5-8BC6-19D5AB13A806}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
    FirewallRules: [{6400E5DB-E0E3-4468-A6C2-D76031B9EAD8}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
    FirewallRules: [{38E52A84-2988-4290-B9DB-428B277D793C}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
    FirewallRules: [{F80D3330-7DA3-4D3A-A10B-23B6D9621493}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
    FirewallRules: [{5E2000C3-2FBF-4BFF-A890-86C0A960372F}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
    FirewallRules: [{9FE8D2DC-19BF-4FA6-9902-E7AA8976A54D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rust\Rust.exe
    FirewallRules: [{A7B03EC1-07F1-430E-9D96-907974434158}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rust\Rust.exe
    FirewallRules: [{3639C2CF-1A9B-43E1-9397-96E274D51062}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
    FirewallRules: [{79024AA6-4AFD-40F6-A97A-807411FD253E}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
    FirewallRules: [{DC852C58-4E69-4F25-9A77-5843664B15BA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\firstassault\Shipping\nxsteam.exe
    FirewallRules: [{4D5EDC07-A920-4A04-B825-F5ECA83000B2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\firstassault\Shipping\nxsteam.exe
    FirewallRules: [{F3B88AB5-0930-4674-91A9-03C0B8A32249}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\WARMODE\warmode.exe
    FirewallRules: [{13F59492-4311-4D71-9603-A7913E33FBB7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\WARMODE\warmode.exe
    FirewallRules: [{C6508E7F-4B4A-4806-8896-5016E3310B6B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\AoT\AoT.exe
    FirewallRules: [{97BB520D-83E9-4E93-9017-994169BDA46E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\AoT\AoT.exe
    FirewallRules: [{E9545ACA-88BC-4BA1-B644-2555C206C846}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FORTIFY\Fortify.exe
    FirewallRules: [{E814F414-ACF9-473F-B003-DB9148ED1F0D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FORTIFY\Fortify.exe
    FirewallRules: [{07BB8BDA-13C1-471C-85AF-744F1B046CF4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Team Fortress 2\hl2.exe
    FirewallRules: [{D191689D-7693-4EE6-8E61-38E0F0CC0DDF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Team Fortress 2\hl2.exe

    ==================== Restore Points =========================

    08-09-2016 07:38:10 Windows Update
    08-09-2016 14:33:10 Restore Operation
    08-09-2016 14:53:03 Windows Update
    08-09-2016 15:16:23 Installed NETGEAR WNA3100 wireless USB 2.0 adapter
    09-09-2016 22:39:43 Checkpoint by HitmanPro
    09-09-2016 22:41:54 Checkpoint by HitmanPro
    10-09-2016 00:13:31 Installed Sophos Virus Removal Tool.

    ==================== Faulty Device Manager Devices =============

    Name:
    Description:
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: SM Bus Controller
    Description: SM Bus Controller
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: Ethernet Controller
    Description: Ethernet Controller
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: Universal Serial Bus (USB) Controller
    Description: Universal Serial Bus (USB) Controller
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

    Name: Unknown Device
    Description: Unknown Device
    Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
    Manufacturer: (Standard USB Host Controller)
    Service:
    Problem: : Windows has stopped this device because it has reported problems. (Code 43)
    Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.

    Name: PCI Simple Communications Controller
    Description: PCI Simple Communications Controller
    Class Guid:
    Manufacturer:
    Service:
    Problem: : The drivers for this device are not installed. (Code 28)
    Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (09/09/2016 11:56:16 PM) (Source: SideBySide) (EventID: 33) (User: )
    Description: Activation context generation failed for "C:\Program Files\AVAST Software\Avast\setup\iplugins\IStats.dll".
    Dependent Assembly Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" could not be found.
    Please use sxstrace.exe for detailed diagnosis.

    Error: (09/09/2016 11:18:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
    Description: The program Un_A.exe version 2.10.91.91 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

    Process ID: cd0

    Start Time: 01d20b11c8daa8ad

    Termination Time: 2

    Application Path: C:\Users\jeremy\AppData\Local\Temp\~nsuA.tmp\Un_A.exe

    Report Id:

    Error: (09/09/2016 10:53:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
    Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x000002a4,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssvcPublisher,0,REG_BINARY,0000000000C7EEF0.72). hr = 0x80070005, Access is denied.
    .

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x00000bf8,(null),0,REG_BINARY,000000000A6DE120.72). hr = 0x80070005, Access is denied.
    .


    Operation:
    BackupShutdown Event

    Context:
    Execution Context: Writer
    Writer Class Id: {cd3f2362-8bef-46c7-9181-d62844cdc0b2}
    Writer Name: MSSearch Service Writer
    Writer Instance ID: {ce063459-5e7f-42af-addb-ffa09349a0fd}

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x000008f0,(null),0,REG_BINARY,000000000A2FDEF0.72). hr = 0x80070005, Access is denied.
    .


    Operation:
    BackupShutdown Event

    Context:
    Execution Context: Writer
    Writer Class Id: {a6ad56c2-b509-4e6c-bb19-49d8f43532f0}
    Writer Name: WMI Writer
    Writer Instance ID: {8bd7afb4-bc1e-4861-8b7c-6cfc90d4de51}

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x000002c0,(null),0,REG_BINARY,0000000002AAE090.72). hr = 0x80070005, Access is denied.
    .


    Operation:
    BackupShutdown Event

    Context:
    Execution Context: Writer
    Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
    Writer Name: System Writer
    Writer Instance ID: {b54675f6-4058-40f8-bde4-f6891eb93ce8}

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x000001b0,(null),0,REG_BINARY,000000000192EBC0.72). hr = 0x80070005, Access is denied.
    .


    Operation:
    BackupShutdown Event

    Context:
    Execution Context: Writer
    Writer Class Id: {afbab4a2-367d-4d15-a586-71dbb18f8485}
    Writer Name: Registry Writer
    Writer Instance ID: {4322013e-a6fe-4bf0-99cb-e43f620de09a}

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x000001fc,(null),0,REG_BINARY,00000000027AEE10.72). hr = 0x80070005, Access is denied.
    .


    Operation:
    BackupShutdown Event

    Context:
    Execution Context: Writer
    Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
    Writer Name: Shadow Copy Optimization Writer
    Writer Instance ID: {18741918-7f72-4edd-ad14-3cec1e2afe3f}

    Error: (09/09/2016 10:43:04 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine RegSetValueExW(0x00000bf8,(null),0,REG_BINARY,000000000A6DE120.72). hr = 0x80070005, Access is denied.
    .


    Operation:
    BackupShutdown Event

    Context:
    Execution Context: Writer
    Writer Class Id: {cd3f2362-8bef-46c7-9181-d62844cdc0b2}
    Writer Name: MSSearch Service Writer
    Writer Instance ID: {ce063459-5e7f-42af-addb-ffa09349a0fd}


    System errors:
    =============
    Error: (09/09/2016 10:52:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Logitech CPU Core Tempurature service failed to start due to the following error:
    Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Error: (09/09/2016 10:50:44 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
    Description: The ScRegSetValueExW call failed for Start with the following error:
    Access is denied.

    Error: (09/09/2016 10:50:42 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
    Description: The ScRegSetValueExW call failed for Start with the following error:
    Access is denied.

    Error: (09/09/2016 10:50:26 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
    Description: The ScRegSetValueExW call failed for Type with the following error:
    Access is denied.

    Error: (09/09/2016 10:50:26 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
    Description: The ScRegSetValueExW call failed for DeleteFlag with the following error:
    Access is denied.

    Error: (09/09/2016 10:21:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Logitech CPU Core Tempurature service failed to start due to the following error:
    Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Error: (09/09/2016 10:18:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Logitech CPU Core Tempurature service failed to start due to the following error:
    Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Error: (09/09/2016 10:00:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Logitech CPU Core Tempurature service failed to start due to the following error:
    Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Error: (09/09/2016 09:58:10 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
    Description: WLAN Extensibility Module has stopped unexpectedly.

    Module Path: C:\Windows\System32\bcmihvsrv64.dll

    Error: (09/09/2016 09:58:10 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
    Description: WLAN Extensibility Module has stopped unexpectedly.

    Module Path: C:\Windows\System32\bcmihvsrv64.dll


    CodeIntegrity:
    ===================================
    Date: 2016-09-10 00:39:50.922
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-10 00:39:50.920
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-10 00:39:50.916
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-10 00:39:50.892
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-09 23:50:28.216
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-09 22:52:47.061
    Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\LgCoreTemp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2016-09-09 22:52:47.031
    Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\LgCoreTemp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2016-09-09 22:25:20.791
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-09 22:25:20.527
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe because the set of per-page image hashes could not be found on the system.

    Date: 2016-09-09 22:21:09.994
    Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\LgCoreTemp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


    ==================== Memory info ===========================

    Processor: Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz
    Percentage of memory in use: 66%
    Total physical RAM: 8122.74 MB
    Available physical RAM: 2759.05 MB
    Total Virtual: 16243.68 MB
    Available Virtual: 9366.94 MB

    ==================== Drives ================================

    Drive c: () (Fixed) (Total:930.97 GB) (Free:514.32 GB) NTFS
    Drive d: (GSP1RMCHPXFREO_EN_DVD) (CDROM) (Total:3.09 GB) (Free:0 GB) UDF

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D87C7436)
    Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
    Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)
    Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

    ==================== End of Addition.txt ============================
     
  5. Broni

    Broni Malware Annihilator Posts: 52,911   +344

    Welcome aboard [​IMG]

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

    =======================================

    [​IMG] Download RogueKiller from one of the following links and save it to your Desktop:

    Link 1
    Link 2

    • Close all the running programs
    • Double click on downloaded setup.exe file to install the program.
    • Click on Start Scan button.
    • Click on another Start Scan button.
    • Wait until the Status box shows Scan Finished
    • Click on Delete.
    • Wait until the Status box shows Deleting Finished.
    • Click on Report and copy/paste the content of the Notepad into your next reply.
    • RKreport.txt could also be found on your desktop.
    • If more than one log is produced post all logs.
    [​IMG] Please download Malwarebytes Anti-Malware (MBAM) to your desktop.
    NOTE. If you already have MBAM 2.0 installed scroll down.
    • Double-click mbam-setup-2.0.0.1000.exe and follow the prompts to install the program.
    • At the end, be sure a checkmark is placed next to the following:
    • Launch Malwarebytes Anti-Malware
    • A 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
    • Click Finish.
    • On the Dashboard, click the 'Update Now >>' link
    • After the update completes, click the 'Scan Now >>' button.
    • Or, on the Dashboard, click the Scan Now >> button.
    • If an update is available, click the Update Now button.
    • A Threat Scan will begin.
    • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
    • In most cases, a restart will be required.
    • Wait for the prompt to restart the computer to appear, then click on Yes.
    If you already have MBAM 2.0 installed:
    • On the Dashboard, click the 'Update Now >>' link
    • After the update completes, click the 'Scan Now >>' button.
    • Or, on the Dashboard, click the Scan Now >> button.
    • If an update is available, click the Update Now button.
    • A Threat Scan will begin.
    • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
    • In most cases, a restart will be required.
    • Wait for the prompt to restart the computer to appear, then click on Yes.
    How to get logs:
    (Export log to save as txt)
    • After the restart once you are back at your desktop, open MBAM once more.
    • Click on the History tab > Application Logs.
    • Double click on the Scan Log which shows the Date and time of the scan just performed.
    • Click 'Export'.
    • Click 'Text file (*.txt)'
    • In the Save File dialog box which appears, click on Desktop.
    • In the File name: box type a name for your scan log.
    • A message box named 'File Saved' should appear stating "Your file has been successfully exported".
    • Click Ok
    • Attach that saved log to your next reply.
    (Copy to clipboard for pasting into forum replies or tickets)
    • After the restart once you are back at your desktop, open MBAM once more.
    • Click on the History tab > Application Logs.
    • Double click on the Scan Log which shows the Date and time of the scan just performed.
    • Click 'Copy to Clipboard'
    • Paste the contents of the clipboard into your reply.
    [​IMG] Please download AdwCleaner by Xplode onto your desktop.
    • Close all open programs and internet browsers.
    • Double click on adwcleaner.exe to run the tool.
    • Click on Scan button.
    • When the scan has finished click on Clean button.
    • Your computer will be rebooted automatically. A text file will open after the restart.
    • Please post the contents of that logfile with your next reply.
    • You can find the logfile at C:\AdwCleaner[S1].txt as well.
    [​IMG] Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
     
  6. discord

    discord TS Rookie Topic Starter

    I fixed it. reformatted
     
  7. Broni

    Broni Malware Annihilator Posts: 52,911   +344

    Thanks for letting me know :)
     

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...