Jump to content

YOURTV.link Removal


Recommended Posts

  • Root Admin

Hello @IMNOTL8 and :welcome:

Please read the following and post back the logs when ready and we'll see about getting you cleaned up.

Before we proceed further, please read all of the following instructions carefully.
If there is anything that you do not understand kindly ask before proceeding.
If needed, please print out these instructions.

  • Please do not post logs using CODE, QUOTE, or FONT tags. Just paste them as direct text.
  • If the log is too large, then you can use attachments by clicking on the More Reply Options button.
  • Please enable your system to show hidden files: How to see hidden files in Windows
  • Make sure you're subscribed to this topic:
  • Click on the Follow This Topic Button (at the top right of this page), make sure that the Receive notification box is checked and that it is set to Instantly
  • Removing malware can be unpredictable, it is unlikely, but things can go very wrong! Please make sure you Backup all files that cannot be replaced if something were to happen. You can copy them to a CD/DVD, external drive or a pen drive
  • Please don't run any other scans, download, install or uninstall any programs unless requested by me while I'm working with you.
  • The removal of malware is not instantaneous; please be patient. Often we are also in a different Time Zone.
  • Perform everything in the correct order. Sometimes one step requires the previous one.
  • If you have any problems while following my instructions, Stop there and tell me the exact nature of the issue.
  • You can check here if you're not sure if your computer is 32-bit or 64-bit
  • Please disable your antivirus while running any requested scanners so that they do not interfere with the scanners.
  • When we are done, I'll give you instructions on how to clean up all the tools and logs
  • Please stick with me until I give you the "all clear" and Please don't waste my time by leaving before that.
  • Your topic will be closed if you haven't replied within 3 days
  • (If I have not responded within 24 hours, please send me a Private Message as a reminder)

STEP 01
RKill is a program that was developed at BleepingComputer.com that attempts to terminate known malware processes so that your normal security software can then run and clean your computer of infections.
When RKill runs, it will kill malware processes and then removes incorrect executable associations and fixes policies
that stop us from using certain tools. When finished it will display a log file that shows the processes that were
terminated while the program was running.

As RKill only terminates a program's running process and does not delete any files, after running it, you should not reboot
your computer as any malware processes that are configured to start automatically will just be started again.
Instead, after running RKill, you should immediately scan your computer using the requested scans I've included.

Please download Rkill by Grinler from one of the links below and save it to your desktop.

Link 1 | Link 2

  • On Windows XP Double-click on the Rkill desktop icon to run the tool.
  • On Windows Vista/Windows 7 or 8, right-click on the Rkill desktop icon and select Run As Administrator
  • A black DOS box will briefly flash and then disappear, this is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
  • If the tool does not run from any of the links provided, please let me know.
  • Do not reboot the computer; you will need to run the application again.

STEP 02
Backup the Registry:
Modifying the Registry can create unforeseen problems, so it's always wise to create a backup before doing so.

  • Please download ERUNT from one of the following links: Link1 | Link2 | Link3
  • ERUNT (Emergency Recovery Utility NT) is a free program that allows you to keep a complete backup of your registry and restore it when needed.
  • Double click on erunt-setup.exe to Install ERUNT by following the prompts.
  • NOTE: Do not choose to allow ERUNT to add an Entry to the Startup folder. Click NO.
  • Start ERUNT either by double-clicking on the desktop icon or choosing to start the program at the end of the setup process.
  • Choose a location for the backup.
    • Note: the default location is C:\Windows\ERDNT which is acceptable.
  • Make sure that at least the first two check boxes are selected.
  • Click on OK
  • Then click on YES to create the folder.
  • Note: if it is necessary to restore the registry, open the backup folder and start ERDNT.exe

STEP 03
Please run a Threat Scan with MBAM. If you're unable to run or complete the scan as shown below, please see the following:
MBAM Clean Removal Process 2x
When reinstalling the program, please try the latest version.

Right click and choose "Run as administrator" to open Malwarebytes Anti-Malware and from the Dashboard please Check for Updates by clicking the Update Now... link
Open up Malwarebytes > Settings > Detection and Protection > Enable Scan for rootkit and Under Non Malware Protection set both PUP and PUM to Treat detections as malware.
Click on the SCAN button and run a Threat Scan with Malwarebytes Anti-Malware by clicking the Scan Now>> button.
Once completed please click on the History > Application Logs and find your scan log and open it and then click on the "copy to clipboard" button and post back the results on your next reply.

Link to post
Share on other sites

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 8/8/2016
Scan Time: 7:43 AM
Logfile:
Administrator: Yes

Version: 0.0.0.0000
Malware Database: v2016.08.08.06
Rootkit Database: v2016.05.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: KevJess

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 513550
Time Elapsed: 1 hr, 2 min, 9 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Link to post
Share on other sites

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Scheduler, Domain Database, 2016.8.7.3, 2016.8.8.1,
Detection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, IP, 192.169.82.86, coinuri.com, 64866, Outbound, C:\ProgramData\mfdl\mfdl.exe,
Detection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, IP, 192.169.82.86, coinuri.com, 64866, Outbound, C:\ProgramData\mfdl\mfdl.exe,
Update, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Scheduler, Malware Database, 2016.8.7.3, 2016.8.8.5,
Protection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Refresh, Starting,
Protection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Stopping,
Protection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Stopped,
Protection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Refresh, Success,
Protection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Starting,
Protection, 8/8/2016 6:10 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Started,
Update, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Scheduler, Malware Database, 2016.8.8.5, 2016.8.8.6,
Protection, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Protection, Refresh, Starting,
Protection, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Stopping,
Protection, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Stopped,
Protection, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Protection, Refresh, Success,
Protection, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Starting,
Protection, 8/8/2016 7:43 AM, SYSTEM, OFFICE, Protection, Malicious Website Protection, Started,
Scan, 8/8/2016 8:08 AM, SYSTEM, OFFICE, Manual, Start:8/8/2016 6:14 AM, Duration:1 hr 2 min 9 sec, Threat Scan, Completed, 2 Malware Detections, 3 Non-Malware Detections,

(end)

Link to post
Share on other sites

  • 2 weeks later...
  • Root Admin

Very sorry for the delay, I did not see a reply that you replied. Maybe a glitch in the forum software.

 

 

Please restart the computer first and then run the following steps and post back the logs when ready.

STEP 04
Please download Junkware Removal Tool to your desktop.

  • Shutdown your antivirus to avoid any conflicts.
  • Right click over JRT.exe and select Run as administrator on Windows Vista or Windows 7, double-click on XP.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next reply message
  • When completed make sure to re-enable your antivirus

STEP 05
Let's clean out any adware now: (this will require a reboot so save all your work)

Please download AdwCleaner by Xplode and save to your Desktop.

  • Double click on AdwCleaner.exe to run the tool.
    Vista / Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • When it's done, you'll see: Pending: Please uncheck elements you don't want to be removed.
  • Now click on the Report button and a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • Look at the log especially under Files/Folders for any program you want to save.
  • If there's a program you may want to save, just uncheck it from AdwCleaner.
  • If you're not sure, post the log for review. (all items found are adware/spyware/foistware)
  • If you're ready to clean it all up, click the Clean button.
  • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • Items that are deleted are moved to the Quarantine Folder: C:\AdwCleaner\Quarantine
  • To restore an item that has been deleted:
  • Go to Tools > Quarantine Manager > check what you want to be restored > now click on Restore.

STEP 06
Download Sophos Free Virus Removal Tool and save it to your desktop.
 

  • Double click the icon and select Run
  • Click Next
  • Select I accept the terms in this license agreement, then click Next twice
  • Click Install
  • Click Finish to launch the program
  • Once the virus database has been updated click Start Scanning
  • If any threats are found click Details, then View Log file (bottom left-hand corner)
  • Copy and paste the results in your reply
  • Close the Notepad document, close the Threat Details screen, then click Start cleanup
  • Click Exit to close the program
  • If no threats were found, please confirm that result.

STEP 07
Please download the Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. You can check here if you're not sure if your computer is 32-bit or 64-bit

  • Double-click to run it. When the tool opens, click Yes to disclaimer.
  • Press the Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). If you've, run the tool before you need to place a check mark here.
  • Please attach the Additions.txt log to your reply as well.

 

Thanks

Link to post
Share on other sites

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 7 Ultimate x64 
Ran by KevJess (Administrator) on Wed 08/17/2016 at 11:58:50.97
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


File System: 8 

Successfully deleted: C:\Users\KevJess\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MDNWZX8H (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\KevJess\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N57LSMF9 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\KevJess\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UF89DYRS (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\KevJess\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XYMAGL9Y (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MDNWZX8H (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N57LSMF9 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UF89DYRS (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XYMAGL9Y (Temporary Internet Files Folder) 

Registry: 0 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 08/17/2016 at 12:04:33.89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

 

# AdwCleaner v6.000 - Logfile created 17/08/2016 at 12:54:29
# Updated on 12/08/2016 by ToolsLib
# Database : 2016-08-17.2 [Server]
# Operating System : Windows 7 Ultimate Service Pack 1 (X64)
# Username : KevJess - OFFICE
# Running from : C:\Users\KevJess\Downloads\adwcleaner_6.000.exe
# Mode: Scan
# Support : https://toolslib.net/forum

***** [ Services ] *****

No malicious services found.


***** [ Folders ] *****

No malicious folders found.


***** [ Files ] *****

No malicious files found.


***** [ DLL ] *****

No malicious DLLs found.


***** [ WMI ] *****

No malicious keys found.


***** [ Shortcuts ] *****

No infected shortcut found.


***** [ Scheduled Tasks ] *****

No malicious task found.


***** [ Registry ] *****

No malicious registry element found.


***** [ Web browsers ] *****

No malicious Firefox based browser items found.
No malicious Chromium based browser items found.

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [5050 Bytes] - [04/08/2016 15:03:08]
C:\AdwCleaner\AdwCleaner[C2].txt - [1788 Bytes] - [07/08/2016 09:46:03]
C:\AdwCleaner\AdwCleaner[C3].txt - [1250 Bytes] - [08/08/2016 19:45:56]
C:\AdwCleaner\AdwCleaner[C4].txt - [2195 Bytes] - [17/08/2016 09:17:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [4943 Bytes] - [04/08/2016 14:49:30]
C:\AdwCleaner\AdwCleaner[S2].txt - [1590 Bytes] - [07/08/2016 09:44:18]
C:\AdwCleaner\AdwCleaner[S3].txt - [1088 Bytes] - [08/08/2016 19:43:43]
C:\AdwCleaner\AdwCleaner[S4].txt - [2777 Bytes] - [17/08/2016 06:50:21]
C:\AdwCleaner\AdwCleaner[S5].txt - [1581 Bytes] - [17/08/2016 12:54:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S5].txt - [1654 Bytes] ##########
 

 

2016-08-09 02:00:52.467    Sophos Virus Removal Tool version 2.5.5
2016-08-09 02:00:52.467    Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2016-08-09 02:00:52.467    This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2016-08-09 02:00:52.467    Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x100 PT=0x1 WOW64
2016-08-09 02:00:52.467    Checking for updates...
2016-08-09 02:00:52.732    Update progress: proxy server not available
2016-08-09 02:01:03.659    Option all = no
2016-08-09 02:01:03.659    Option recurse = yes
2016-08-09 02:01:03.659    Option archive = no
2016-08-09 02:01:03.659    Option service = yes
2016-08-09 02:01:03.659    Option confirm = yes
2016-08-09 02:01:03.659    Option sxl = yes
2016-08-09 02:01:03.659    Option max-data-age = 35
2016-08-09 02:01:03.659    Option EnableSafeClean = yes
2016-08-09 02:01:05.092    Option vdl-logging = yes
2016-08-09 02:01:05.107    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2016-08-09 02:01:05.107    Machine ID:    acf7181550354f1bb9516839f3867531
2016-08-09 02:01:05.107    Component SVRTcli.exe version 2.5.5
2016-08-09 02:01:05.107    Component control.dll version 2.5.5
2016-08-09 02:01:05.107    Component SVRTservice.exe version 2.5.5
2016-08-09 02:01:05.107    Component engine\osdp.dll version 1.44.1.2250
2016-08-09 02:01:05.107    Component engine\veex.dll version 3.65.0.2250
2016-08-09 02:01:05.107    Component engine\savi.dll version 9.0.1.2250
2016-08-09 02:01:05.107    Component rkdisk.dll version 1.5.30.0
2016-08-09 02:01:05.123    Version info:    Product version    2.5.5
2016-08-09 02:01:05.123    Version info:    Detection engine    3.65.0
2016-08-09 02:01:05.123    Version info:    Detection data    5.26
2016-08-09 02:01:05.123    Version info:    Build date    4/5/2016
2016-08-09 02:01:05.123    Version info:    Data files added    758
2016-08-09 02:01:05.123    Version info:    Last successful update    (not yet updated)
2016-08-09 02:01:23.734    Downloading updates...
2016-08-09 02:01:23.734    Update progress: [I96736] Looking for package C1A903B2-E63E-483b-982D-04BB9C457C60 1.0 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement SAVIW32 LATEST 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement IDE527 LATEST 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement IDE528 LATEST 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement IDE529 LATEST 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement IDE530 LATEST 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement IDE531 LATEST 
2016-08-09 02:01:23.734    Update progress: [I49502] Found supplement IDE532 LATEST 
2016-08-09 02:01:23.734    Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 1
2016-08-09 02:01:23.734    Update progress: [I19463] Syncing product SAVIW32 70
2016-08-09 02:01:33.705    Update progress: [I19463] Syncing product IDE527 142
2016-08-09 02:01:37.868    Installing updates...
2016-08-09 02:01:38.695    Error level 1
2016-08-09 02:01:38.710    Update progress: [I19463] Syncing product IDE528 127
2016-08-09 02:01:38.710    Update progress: [I19463] Syncing product IDE529 135
2016-08-09 02:01:38.710    Update progress: [I19463] Syncing product IDE530 214
2016-08-09 02:01:38.710    Update progress: [I19463] Syncing product IDE531 147
2016-08-09 02:01:38.710    Update progress: [I19463] Syncing product IDE532 1
2016-08-09 02:02:05.183    Update successful
2016-08-09 02:02:25.323    Option all = no
2016-08-09 02:02:25.323    Option recurse = yes
2016-08-09 02:02:25.339    Option archive = no
2016-08-09 02:02:25.339    Option service = yes
2016-08-09 02:02:25.339    Option confirm = yes
2016-08-09 02:02:25.339    Option sxl = yes
2016-08-09 02:02:25.339    Option max-data-age = 35
2016-08-09 02:02:25.339    Option EnableSafeClean = yes
2016-08-09 02:02:25.370    Option vdl-logging = yes
2016-08-09 02:02:25.386    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2016-08-09 02:02:25.386    Machine ID:    acf7181550354f1bb9516839f3867531
2016-08-09 02:02:25.386    Component SVRTcli.exe version 2.5.5
2016-08-09 02:02:25.386    Component control.dll version 2.5.5
2016-08-09 02:02:25.542    Component SVRTservice.exe version 2.5.5
2016-08-09 02:02:25.542    Component engine\osdp.dll version 1.44.1.2250
2016-08-09 02:02:25.542    Component engine\veex.dll version 3.65.0.2250
2016-08-09 02:02:25.542    Component engine\savi.dll version 9.0.1.2250
2016-08-09 02:02:25.542    Component rkdisk.dll version 1.5.30.0
2016-08-09 02:02:25.542    Version info:    Product version    2.5.5
2016-08-09 02:02:25.542    Version info:    Detection engine    3.65.0
2016-08-09 02:02:25.542    Version info:    Detection data    5.26
2016-08-09 02:02:25.542    Version info:    Build date    4/5/2016
2016-08-09 02:02:25.542    Version info:    Data files added    758
2016-08-09 02:02:25.542    Version info:    Last successful update    8/8/2016 8:02:05 PM

2016-08-09 03:42:56.837    Could not open C:\hiberfil.sys
2016-08-09 03:43:00.285    Could not open C:\pagefile.sys
2016-08-09 03:53:24.710    Could not open C:\System Volume Information\{067c65f5-5a87-11e6-b400-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.710    Could not open C:\System Volume Information\{2c84873a-5dd3-11e6-ade2-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.710    Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.710    Could not open C:\System Volume Information\{422c8d1f-57e4-11e6-a39b-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.710    Could not open C:\System Volume Information\{714cec1a-5b68-11e6-8b74-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.710    Could not open C:\System Volume Information\{714ceda3-5b68-11e6-8b74-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.726    Could not open C:\System Volume Information\{714cee5d-5b68-11e6-8b74-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.726    Could not open C:\System Volume Information\{7cfff924-5a95-11e6-9939-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.726    Could not open C:\System Volume Information\{8fc455f8-5c1a-11e6-a649-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 03:53:24.726    Could not open C:\System Volume Information\{ec8db7cf-5d72-11e6-bb24-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-09 04:18:24.769    Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2016-08-09 04:18:24.769    Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2016-08-09 04:18:27.234    Could not open C:\Windows\System32\config\RegBack\DEFAULT
2016-08-09 04:18:27.234    Could not open C:\Windows\System32\config\RegBack\SAM
2016-08-09 04:18:27.234    Could not open C:\Windows\System32\config\RegBack\SECURITY
2016-08-09 04:18:27.249    Could not open C:\Windows\System32\config\RegBack\SOFTWARE
2016-08-09 04:18:27.249    Could not open C:\Windows\System32\config\RegBack\SYSTEM
2016-08-09 04:32:28.125    >>> Virus 'Troj/Agent-WFN' found in file D:\Kevin & Jessica\Downloads\Applications\VSO ConvertXtoDVD 6.0.0.18 Final + Patch [4realtorrentz]\Patch\vso.converters.v2.2-Cerberus.exe
2016-08-09 04:57:04.940    The following items will be cleaned up:
2016-08-09 04:57:04.940    Troj/Agent-WFN
2016-08-09 12:55:20.653    SafeClean bin directory is empty.
2016-08-09 12:55:20.653    Error level 0

2016-08-09 12:55:20.653    Scan completed.
2016-08-09 12:55:20.653    

------------------------------------------------------------

2016-08-17 19:01:34.800    Sophos Virus Removal Tool version 2.5.6
2016-08-17 19:01:34.800    Copyright (c) 2009-2016 Sophos Limited. All rights reserved.

2016-08-17 19:01:34.800    This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2016-08-17 19:01:34.800    Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x100 PT=0x1 WOW64
2016-08-17 19:01:34.800    Checking for updates...
2016-08-17 19:01:35.350    Update progress: proxy server not available
2016-08-17 19:01:44.548    Option all = no
2016-08-17 19:01:44.548    Option recurse = yes
2016-08-17 19:01:44.548    Option archive = no
2016-08-17 19:01:44.548    Option service = yes
2016-08-17 19:01:44.548    Option confirm = yes
2016-08-17 19:01:44.548    Option sxl = yes
2016-08-17 19:01:44.548    Option max-data-age = 35
2016-08-17 19:01:44.548    Option vdl-logging = yes
2016-08-17 19:01:44.555    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2016-08-17 19:01:44.555    Machine ID:    af8fbe82aafe423e92c66988933948e5
2016-08-17 19:01:44.555    Component SVRTcli.exe version 2.5.6
2016-08-17 19:01:44.555    Component control.dll version 2.5.6
2016-08-17 19:01:44.555    Component SVRTservice.exe version 2.5.6
2016-08-17 19:01:44.555    Component engine\osdp.dll version 1.44.1.2252
2016-08-17 19:01:44.555    Component engine\veex.dll version 3.65.2.2252
2016-08-17 19:01:44.555    Component engine\savi.dll version 9.0.1.2252
2016-08-17 19:01:44.558    Component rkdisk.dll version 1.5.30.0
2016-08-17 19:01:44.558    Version info:    Product version    2.5.6
2016-08-17 19:01:44.558    Version info:    Detection engine    3.65.2
2016-08-17 19:01:44.558    Version info:    Detection data    5.30
2016-08-17 19:01:44.558    Version info:    Build date    8/9/2016
2016-08-17 19:01:44.558    Version info:    Data files added    188
2016-08-17 19:01:44.558    Version info:    Last successful update    (not yet updated)
2016-08-17 19:02:44.732    Downloading updates...
2016-08-17 19:02:44.735    Update progress: [I96736] sdds.svrt_10: adding primary package C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED baseVersion=1
2016-08-17 19:02:44.735    Update progress: [I95020] sdds.svrt_10: looking for packages included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2016-08-17 19:02:44.735    Update progress: [I22529] sdds.svrt_10: looking for supplements included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2016-08-17 19:02:44.735    Update progress: [I49502] sdds.savi0910.xml: found supplement SAVIW32 LATEST path= baseVersion= [included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=]
2016-08-17 19:02:44.735    Update progress: [I95020] sdds.savi0910.xml: looking for packages included from product SAVIW32 LATEST path=
2016-08-17 19:02:44.735    Update progress: [I22529] sdds.savi0910.xml: looking for supplements included from product SAVIW32 LATEST path=
2016-08-17 19:02:44.735    Update progress: [I49502] sdds.data0910.xml: found supplement IDE531 LATEST path= baseVersion= [included from product SAVIW32 LATEST path=]
2016-08-17 19:02:44.735    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE531 LATEST path=
2016-08-17 19:02:44.735    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE531 LATEST path=
2016-08-17 19:02:44.735    Update progress: [I49502] sdds.data0910.xml: found supplement IDE532 LATEST path= baseVersion= [included from product IDE531 LATEST path=]
2016-08-17 19:02:44.735    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE532 LATEST path=
2016-08-17 19:02:44.735    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE532 LATEST path=
2016-08-17 19:02:44.735    Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2016-08-17 19:02:44.980    Update progress: [I19463] Syncing product SAVIW32 LATEST path=
2016-08-17 19:02:44.980    Update progress: [I19463] Product download size 149796374 bytes
2016-08-17 19:02:46.834    Update progress: [I19463] Syncing product IDE531 LATEST path=
2016-08-17 19:02:46.834    Update progress: [I19463] Product download size 2071874 bytes
2016-08-17 19:02:47.210    Update progress: [I19463] Syncing product IDE532 LATEST path=
2016-08-17 19:02:47.210    Update progress: [I19463] Product download size 578385 bytes
2016-08-17 19:02:47.277    Installing updates...
2016-08-17 19:02:48.083    Error level 1
2016-08-17 19:03:18.972    Update successful
2016-08-17 19:03:39.557    Option all = no
2016-08-17 19:03:39.557    Option recurse = yes
2016-08-17 19:03:39.557    Option archive = no
2016-08-17 19:03:39.557    Option service = yes
2016-08-17 19:03:39.557    Option confirm = yes
2016-08-17 19:03:39.557    Option sxl = yes
2016-08-17 19:03:39.560    Option max-data-age = 35
2016-08-17 19:03:39.560    Option vdl-logging = yes
2016-08-17 19:03:39.565    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2016-08-17 19:03:39.565    Machine ID:    af8fbe82aafe423e92c66988933948e5
2016-08-17 19:03:39.565    Component SVRTcli.exe version 2.5.6
2016-08-17 19:03:39.565    Component control.dll version 2.5.6
2016-08-17 19:03:39.567    Component SVRTservice.exe version 2.5.6
2016-08-17 19:03:39.567    Component engine\osdp.dll version 1.44.1.2252
2016-08-17 19:03:39.567    Component engine\veex.dll version 3.65.2.2252
2016-08-17 19:03:39.567    Component engine\savi.dll version 9.0.1.2252
2016-08-17 19:03:39.567    Component rkdisk.dll version 1.5.30.0
2016-08-17 19:03:39.567    Version info:    Product version    2.5.6
2016-08-17 19:03:39.567    Version info:    Detection engine    3.65.2
2016-08-17 19:03:39.567    Version info:    Detection data    5.30
2016-08-17 19:03:39.567    Version info:    Build date    8/9/2016
2016-08-17 19:03:39.567    Version info:    Data files added    188
2016-08-17 19:03:39.567    Version info:    Last successful update    8/17/2016 1:03:18 PM

2016-08-17 19:17:16.016    Could not open C:\hiberfil.sys
2016-08-17 19:17:16.018    Could not open C:\pagefile.sys
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{4fc62d89-648e-11e6-960f-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{4fc62d8d-648e-11e6-960f-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{501403b9-60f7-11e6-8bfe-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{501403cc-60f7-11e6-8bfe-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{9d2d1a85-6476-11e6-b42e-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{9d2d1b47-6476-11e6-b42e-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{e4dc8ca4-64a4-11e6-924f-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{e4dc8cb0-64a4-11e6-924f-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{e4dc8cb4-64a4-11e6-924f-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:25:47.233    Could not open C:\System Volume Information\{fca603f1-64a2-11e6-924f-001f29008c1c}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-08-17 19:27:11.596    Could not open C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Current Session
2016-08-17 19:27:11.596    Could not open C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
2016-08-17 19:53:23.259    Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2016-08-17 19:53:23.259    Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2016-08-17 19:53:26.544    Could not open C:\Windows\System32\config\COMPONENTS
2016-08-17 19:53:26.577    Could not open C:\Windows\System32\config\RegBack\DEFAULT
2016-08-17 19:53:26.592    Could not open C:\Windows\System32\config\RegBack\SAM
2016-08-17 19:53:26.592    Could not open C:\Windows\System32\config\RegBack\SECURITY
2016-08-17 19:53:26.592    Could not open C:\Windows\System32\config\RegBack\SOFTWARE
2016-08-17 19:53:26.592    Could not open C:\Windows\System32\config\RegBack\SYSTEM
2016-08-17 20:06:40.243    >>> Virus 'Troj/Agent-WFN' found in file D:\Kevin & Jessica\Downloads\Applications\VSO ConvertXtoDVD 6.0.0.18 Final + Patch [4realtorrentz]\Patch\vso.converters.v2.2-Cerberus.exe
2016-08-17 20:12:23.058    Could not open LOGICAL:0004:00000000
2016-08-17 20:12:23.074    Could not open E:\
2016-08-17 20:33:09.179    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0540-001.JPG (virus scan failed)
2016-08-17 20:33:09.179    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0540.JPG (virus scan failed)
2016-08-17 20:33:09.179    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0541-001.JPG (virus scan failed)
2016-08-17 20:33:09.195    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0541.JPG (virus scan failed)
2016-08-17 20:33:09.195    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0542.JPG (virus scan failed)
2016-08-17 20:33:09.195    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0544-001.JPG (virus scan failed)
2016-08-17 20:33:09.210    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0544.JPG (virus scan failed)
2016-08-17 20:33:09.210    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0545-001.JPG (virus scan failed)
2016-08-17 20:33:09.210    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0545.JPG (virus scan failed)
2016-08-17 20:33:09.226    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0546-001.JPG (virus scan failed)
2016-08-17 20:33:09.226    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0546.JPG (virus scan failed)
2016-08-17 20:33:09.226    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0547-001.JPG (virus scan failed)
2016-08-17 20:33:09.241    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0547.JPG (virus scan failed)
2016-08-17 20:33:09.241    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0548-001.JPG (virus scan failed)
2016-08-17 20:33:09.241    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0548.JPG (virus scan failed)
2016-08-17 20:33:09.241    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0549-001.JPG (virus scan failed)
2016-08-17 20:33:09.257    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0549.JPG (virus scan failed)
2016-08-17 20:33:09.257    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0550-001.JPG (virus scan failed)
2016-08-17 20:33:09.257    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0550.JPG (virus scan failed)
2016-08-17 20:33:09.273    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0551-001.JPG (virus scan failed)
2016-08-17 20:33:09.273    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0551.JPG (virus scan failed)
2016-08-17 20:33:09.273    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0552.JPG (virus scan failed)
2016-08-17 20:33:09.273    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0553-001.JPG (virus scan failed)
2016-08-17 20:33:09.288    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0553.JPG (virus scan failed)
2016-08-17 20:33:09.288    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0554-001.JPG (virus scan failed)
2016-08-17 20:33:09.288    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0554.JPG (virus scan failed)
2016-08-17 20:33:09.304    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0555-001.JPG (virus scan failed)
2016-08-17 20:33:09.304    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0555.JPG (virus scan failed)
2016-08-17 20:33:09.304    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0556-001.JPG (virus scan failed)
2016-08-17 20:33:09.319    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0556.JPG (virus scan failed)
2016-08-17 20:33:09.319    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0557.JPG (virus scan failed)
2016-08-17 20:33:09.319    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0558-001.JPG (virus scan failed)
2016-08-17 20:33:09.335    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0558.JPG (virus scan failed)
2016-08-17 20:33:09.335    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0559.JPG (virus scan failed)
2016-08-17 20:33:09.335    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0560.JPG (virus scan failed)
2016-08-17 20:33:09.335    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0561-001.JPG (virus scan failed)
2016-08-17 20:33:09.351    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0561.JPG (virus scan failed)
2016-08-17 20:33:09.351    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0562.JPG (virus scan failed)
2016-08-17 20:33:09.351    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0563.JPG (virus scan failed)
2016-08-17 20:33:09.351    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0564.JPG (virus scan failed)
2016-08-17 20:33:09.366    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0565-001.JPG (virus scan failed)
2016-08-17 20:33:09.366    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0565.JPG (virus scan failed)
2016-08-17 20:33:09.366    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0566.JPG (virus scan failed)
2016-08-17 20:33:09.382    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0567-001.JPG (virus scan failed)
2016-08-17 20:33:09.382    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0567.JPG (virus scan failed)
2016-08-17 20:33:09.382    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0568-001.JPG (virus scan failed)
2016-08-17 20:33:09.397    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0568.JPG (virus scan failed)
2016-08-17 20:33:09.397    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0569-001.JPG (virus scan failed)
2016-08-17 20:33:09.397    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0569.JPG (virus scan failed)
2016-08-17 20:33:09.397    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0570-001.JPG (virus scan failed)
2016-08-17 20:33:09.413    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0570.JPG (virus scan failed)
2016-08-17 20:33:09.413    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0571-001.JPG (virus scan failed)
2016-08-17 20:33:09.413    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0571.JPG (virus scan failed)
2016-08-17 20:33:09.429    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0572-001.JPG (virus scan failed)
2016-08-17 20:33:09.429    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0572.JPG (virus scan failed)
2016-08-17 20:33:09.429    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0573.JPG (virus scan failed)
2016-08-17 20:33:09.429    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0574-001.JPG (virus scan failed)
2016-08-17 20:33:09.444    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0574.JPG (virus scan failed)
2016-08-17 20:33:09.444    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0576-001.JPG (virus scan failed)
2016-08-17 20:33:09.444    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0576.JPG (virus scan failed)
2016-08-17 20:33:09.460    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0577.JPG (virus scan failed)
2016-08-17 20:33:09.460    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0578-001.JPG (virus scan failed)
2016-08-17 20:33:09.460    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0578.JPG (virus scan failed)
2016-08-17 20:33:09.460    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0579-001.JPG (virus scan failed)
2016-08-17 20:33:09.475    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0579.JPG (virus scan failed)
2016-08-17 20:33:09.475    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0580-001.JPG (virus scan failed)
2016-08-17 20:33:09.475    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0580.JPG (virus scan failed)
2016-08-17 20:33:09.491    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0581-001.JPG (virus scan failed)
2016-08-17 20:33:09.491    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0581.JPG (virus scan failed)
2016-08-17 20:33:09.491    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0582-001.JPG (virus scan failed)
2016-08-17 20:33:09.491    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0582.JPG (virus scan failed)
2016-08-17 20:33:09.507    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0583-001.JPG (virus scan failed)
2016-08-17 20:33:09.507    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0583.JPG (virus scan failed)
2016-08-17 20:33:09.507    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0584-001.JPG (virus scan failed)
2016-08-17 20:33:09.522    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0584.JPG (virus scan failed)
2016-08-17 20:33:09.522    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0585.JPG (virus scan failed)
2016-08-17 20:33:09.522    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0586.JPG (virus scan failed)
2016-08-17 20:33:09.522    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0587.JPG
2016-08-17 20:33:09.538    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0588.JPG
2016-08-17 20:33:09.538    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0589.JPG
2016-08-17 20:33:09.538    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0590.JPG
2016-08-17 20:33:09.538    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0591.JPG
2016-08-17 20:33:09.538    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0592.JPG
2016-08-17 20:33:09.553    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0593.JPG
2016-08-17 20:33:09.553    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0594.JPG
2016-08-17 20:33:09.553    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0596.JPG
2016-08-17 20:33:09.553    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0598.JPG
2016-08-17 20:33:09.553    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0599.JPG
2016-08-17 20:33:09.569    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0600.JPG
2016-08-17 20:33:09.569    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0601.JPG
2016-08-17 20:33:09.569    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0602.JPG
2016-08-17 20:33:09.569    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0603.JPG
2016-08-17 20:33:09.569    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0604.JPG
2016-08-17 20:33:09.585    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0605.JPG
2016-08-17 20:33:09.585    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0606.JPG
2016-08-17 20:33:09.585    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0607.JPG
2016-08-17 20:33:09.585    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0608.JPG
2016-08-17 20:33:09.585    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0609.JPG
2016-08-17 20:33:09.600    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0610.JPG
2016-08-17 20:33:09.600    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0611.JPG
2016-08-17 20:33:09.600    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0612.JPG
2016-08-17 20:33:09.600    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0614.JPG
2016-08-17 20:33:09.600    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0615.JPG
2016-08-17 20:33:09.616    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0616.JPG
2016-08-17 20:33:09.616    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0617.JPG
2016-08-17 20:33:09.616    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0618.JPG
2016-08-17 20:33:09.616    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0619.JPG
2016-08-17 20:33:09.616    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0620.JPG
2016-08-17 20:33:09.631    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0621.JPG
2016-08-17 20:33:09.631    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0622.JPG
2016-08-17 20:33:09.631    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0623.JPG
2016-08-17 20:33:09.631    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0624.JPG
2016-08-17 20:33:09.631    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0625.JPG
2016-08-17 20:33:09.647    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0626.JPG (virus scan failed)
2016-08-17 20:33:09.647    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0628-001.JPG (virus scan failed)
2016-08-17 20:33:09.647    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0628.JPG (virus scan failed)
2016-08-17 20:33:09.663    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0629.JPG (virus scan failed)
2016-08-17 20:33:09.663    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0630.JPG (virus scan failed)
2016-08-17 20:33:09.663    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0631.JPG (virus scan failed)
2016-08-17 20:33:09.663    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0632-001.JPG (virus scan failed)
2016-08-17 20:33:09.678    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0632.JPG (virus scan failed)
2016-08-17 20:33:09.678    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0633.JPG (virus scan failed)
2016-08-17 20:33:09.678    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0634.JPG (virus scan failed)
2016-08-17 20:33:09.694    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0635-001.JPG (virus scan failed)
2016-08-17 20:33:09.694    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0635.JPG (virus scan failed)
2016-08-17 20:33:09.694    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0636-001.JPG (virus scan failed)
2016-08-17 20:33:09.694    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0636.JPG (virus scan failed)
2016-08-17 20:33:09.709    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0637-001.JPG (virus scan failed)
2016-08-17 20:33:09.709    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0637.JPG (virus scan failed)
2016-08-17 20:33:09.709    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0638.JPG (virus scan failed)
2016-08-17 20:33:09.725    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0639.JPG (virus scan failed)
2016-08-17 20:33:09.725    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0640.JPG (virus scan failed)
2016-08-17 20:33:09.725    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0641-001.JPG (virus scan failed)
2016-08-17 20:33:09.725    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0641.JPG
2016-08-17 20:33:09.741    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0642.JPG
2016-08-17 20:33:09.741    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0643.JPG
2016-08-17 20:33:09.741    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0644.JPG (virus scan failed)
2016-08-17 20:33:09.741    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0645-001.JPG (virus scan failed)
2016-08-17 20:33:09.756    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0645.JPG (virus scan failed)
2016-08-17 20:33:09.756    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0646-001.JPG (virus scan failed)
2016-08-17 20:33:09.756    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0646.JPG (virus scan failed)
2016-08-17 20:33:09.772    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0647-001.JPG (virus scan failed)
2016-08-17 20:33:09.772    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0647.JPG (virus scan failed)
2016-08-17 20:33:09.772    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0648-001.JPG (virus scan failed)
2016-08-17 20:33:09.772    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0648.JPG (virus scan failed)
2016-08-17 20:33:09.787    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0649-001.JPG (virus scan failed)
2016-08-17 20:33:09.787    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0649.JPG (virus scan failed)
2016-08-17 20:33:09.787    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0650.JPG (virus scan failed)
2016-08-17 20:33:09.803    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0651-001.JPG (virus scan failed)
2016-08-17 20:33:09.803    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0651.JPG (virus scan failed)
2016-08-17 20:33:09.803    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0652-001.JPG (virus scan failed)
2016-08-17 20:33:09.803    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0652.JPG (virus scan failed)
2016-08-17 20:33:09.819    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0653.JPG
2016-08-17 20:33:09.819    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0654.JPG
2016-08-17 20:33:09.819    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0655.JPG
2016-08-17 20:33:09.819    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0656.JPG
2016-08-17 20:33:09.834    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0657.JPG
2016-08-17 20:33:09.834    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0658.JPG
2016-08-17 20:33:09.834    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0659.JPG
2016-08-17 20:33:09.834    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0660.JPG
2016-08-17 20:33:09.834    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0661.JPG
2016-08-17 20:33:09.850    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0662.JPG
2016-08-17 20:33:09.850    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0663.JPG
2016-08-17 20:33:09.850    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0664.JPG
2016-08-17 20:33:09.850    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0665.JPG (virus scan failed)
2016-08-17 20:33:09.850    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0666.JPG (virus scan failed)
2016-08-17 20:33:09.865    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0667.JPG (virus scan failed)
2016-08-17 20:33:09.865    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0668-001.JPG (virus scan failed)
2016-08-17 20:33:09.865    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0668.JPG (virus scan failed)
2016-08-17 20:33:09.881    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0669-001.JPG (virus scan failed)
2016-08-17 20:33:09.881    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0669.JPG (virus scan failed)
2016-08-17 20:33:09.881    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0670-001.JPG (virus scan failed)
2016-08-17 20:33:09.881    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0670.JPG (virus scan failed)
2016-08-17 20:33:09.897    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0672-001.JPG (virus scan failed)
2016-08-17 20:33:09.897    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0672.JPG (virus scan failed)
2016-08-17 20:33:09.897    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0673-001.JPG (virus scan failed)
2016-08-17 20:33:09.897    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0673.JPG (virus scan failed)
2016-08-17 20:33:09.912    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0674-001.JPG (virus scan failed)
2016-08-17 20:33:09.912    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0674.JPG (virus scan failed)
2016-08-17 20:33:09.912    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0675-001.JPG (virus scan failed)
2016-08-17 20:33:09.928    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0675.JPG (virus scan failed)
2016-08-17 20:33:09.928    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0676.JPG (virus scan failed)
2016-08-17 20:33:09.928    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0677-001.JPG (virus scan failed)
2016-08-17 20:33:09.943    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0677.JPG (virus scan failed)
2016-08-17 20:33:09.943    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0678-001.JPG (virus scan failed)
2016-08-17 20:33:09.943    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0678.JPG (virus scan failed)
2016-08-17 20:33:09.943    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0679-001.JPG (virus scan failed)
2016-08-17 20:33:09.959    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0679.JPG (virus scan failed)
2016-08-17 20:33:09.959    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0680-001.JPG (virus scan failed)
2016-08-17 20:33:09.959    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0680.JPG (virus scan failed)
2016-08-17 20:33:09.975    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0681-001.JPG (virus scan failed)
2016-08-17 20:33:09.975    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0681.JPG (virus scan failed)
2016-08-17 20:33:09.975    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0682.JPG (virus scan failed)
2016-08-17 20:33:10.006    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0683.JPG (virus scan failed)
2016-08-17 20:33:10.006    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0684-001.JPG (virus scan failed)
2016-08-17 20:33:10.021    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0684.JPG (virus scan failed)
2016-08-17 20:33:10.021    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0685-001.JPG (virus scan failed)
2016-08-17 20:33:10.037    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0685.JPG (virus scan failed)
2016-08-17 20:33:10.037    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0686.JPG (virus scan failed)
2016-08-17 20:33:10.053    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0687-001.JPG (virus scan failed)
2016-08-17 20:33:10.053    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0687.JPG (virus scan failed)
2016-08-17 20:33:10.068    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0688.JPG (virus scan failed)
2016-08-17 20:33:10.084    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0689-001.JPG (virus scan failed)
2016-08-17 20:33:10.084    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0689.JPG (virus scan failed)
2016-08-17 20:33:10.099    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0690.JPG (virus scan failed)
2016-08-17 20:33:10.099    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0691.JPG (virus scan failed)
2016-08-17 20:33:10.099    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0692-001.JPG (virus scan failed)
2016-08-17 20:33:10.115    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0692.JPG (virus scan failed)
2016-08-17 20:33:10.115    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0693-001.JPG (virus scan failed)
2016-08-17 20:33:10.135    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0693.JPG (virus scan failed)
2016-08-17 20:33:10.140    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0694-001.JPG (virus scan failed)
2016-08-17 20:33:10.146    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0694.JPG (virus scan failed)
2016-08-17 20:33:10.151    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0695-001.JPG (virus scan failed)
2016-08-17 20:33:10.158    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0695.JPG (virus scan failed)
2016-08-17 20:33:10.163    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0696-001.JPG (virus scan failed)
2016-08-17 20:33:10.168    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0696.JPG (virus scan failed)
2016-08-17 20:33:10.173    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0697-001.JPG (virus scan failed)
2016-08-17 20:33:10.177    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0697.JPG (virus scan failed)
2016-08-17 20:33:10.182    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0698-001.JPG (virus scan failed)
2016-08-17 20:33:10.189    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0698.JPG (virus scan failed)
2016-08-17 20:33:10.194    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0699-001.JPG (virus scan failed)
2016-08-17 20:33:10.198    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0699.JPG (virus scan failed)
2016-08-17 20:33:10.203    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0700-001.JPG (virus scan failed)
2016-08-17 20:33:10.208    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0700.JPG (virus scan failed)
2016-08-17 20:33:10.212    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0701-001.JPG (virus scan failed)
2016-08-17 20:33:10.218    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0701.JPG (virus scan failed)
2016-08-17 20:33:10.223    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0702-001.JPG (virus scan failed)
2016-08-17 20:33:10.227    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0702.JPG (virus scan failed)
2016-08-17 20:33:10.231    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0703-001.JPG (virus scan failed)
2016-08-17 20:33:10.235    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0703.JPG (virus scan failed)
2016-08-17 20:33:10.239    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0704-001.JPG (virus scan failed)
2016-08-17 20:33:10.245    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0704.JPG (virus scan failed)
2016-08-17 20:33:10.249    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0705-001.JPG (virus scan failed)
2016-08-17 20:33:10.254    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0705.JPG (virus scan failed)
2016-08-17 20:33:10.259    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0706-001.JPG (virus scan failed)
2016-08-17 20:33:10.264    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0706.JPG (virus scan failed)
2016-08-17 20:33:10.269    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0707-001.JPG (virus scan failed)
2016-08-17 20:33:10.275    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0707.JPG (virus scan failed)
2016-08-17 20:33:10.280    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0708-001.JPG (virus scan failed)
2016-08-17 20:33:10.284    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0708.JPG (virus scan failed)
2016-08-17 20:33:10.288    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0709-001.JPG (virus scan failed)
2016-08-17 20:33:10.292    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0709.JPG (virus scan failed)
2016-08-17 20:33:10.296    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0710-001.JPG (virus scan failed)
2016-08-17 20:33:10.304    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0710.JPG (virus scan failed)
2016-08-17 20:33:10.309    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0711-001.JPG (virus scan failed)
2016-08-17 20:33:10.315    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0711.JPG (virus scan failed)
2016-08-17 20:33:10.320    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0712-001.JPG (virus scan failed)
2016-08-17 20:33:10.325    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0712.JPG (virus scan failed)
2016-08-17 20:33:10.329    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0713-001.JPG (virus scan failed)
2016-08-17 20:33:10.335    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0713.JPG (virus scan failed)
2016-08-17 20:33:10.340    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0714-001.JPG (virus scan failed)
2016-08-17 20:33:10.344    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0714.JPG (virus scan failed)
2016-08-17 20:33:10.348    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0715-001.JPG (virus scan failed)
2016-08-17 20:33:10.353    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0715.JPG (virus scan failed)
2016-08-17 20:33:10.359    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0716-001.JPG (virus scan failed)
2016-08-17 20:33:10.365    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0716.JPG (virus scan failed)
2016-08-17 20:33:10.370    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0717-001.JPG (virus scan failed)
2016-08-17 20:33:10.374    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0717.JPG (virus scan failed)
2016-08-17 20:33:10.378    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0718-001.JPG (virus scan failed)
2016-08-17 20:33:10.382    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0718.JPG (virus scan failed)
2016-08-17 20:33:10.386    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0719-001.JPG (virus scan failed)
2016-08-17 20:33:10.412    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0719.JPG (virus scan failed)
2016-08-17 20:33:10.417    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0720-001.JPG (virus scan failed)
2016-08-17 20:33:10.421    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0720.JPG (virus scan failed)
2016-08-17 20:33:10.425    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0721-001.JPG (virus scan failed)
2016-08-17 20:33:10.427    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0721.JPG (virus scan failed)
2016-08-17 20:33:10.427    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0722-001.JPG (virus scan failed)
2016-08-17 20:33:10.427    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0722.JPG (virus scan failed)
2016-08-17 20:33:10.442    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0723.JPG (virus scan failed)
2016-08-17 20:33:10.442    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0724-001.JPG (virus scan failed)
2016-08-17 20:33:10.442    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0724.JPG (virus scan failed)
2016-08-17 20:33:10.458    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0725-001.JPG (virus scan failed)
2016-08-17 20:33:10.458    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0725.JPG (virus scan failed)
2016-08-17 20:33:10.474    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0726-001.JPG (virus scan failed)
2016-08-17 20:33:10.474    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0726.JPG (virus scan failed)
2016-08-17 20:33:10.474    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0727-001.JPG (virus scan failed)
2016-08-17 20:33:10.490    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0727.JPG (virus scan failed)
2016-08-17 20:33:10.490    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0728-001.JPG (virus scan failed)
2016-08-17 20:33:10.506    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0728.JPG (virus scan failed)
2016-08-17 20:33:10.508    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0729-001.JPG (virus scan failed)
2016-08-17 20:33:10.508    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0729.JPG (virus scan failed)
2016-08-17 20:33:10.524    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0730-001.JPG (virus scan failed)
2016-08-17 20:33:10.524    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0730.JPG (virus scan failed)
2016-08-17 20:33:10.524    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0731-001.JPG (virus scan failed)
2016-08-17 20:33:10.539    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0731.JPG (virus scan failed)
2016-08-17 20:33:10.539    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0732-001.JPG (virus scan failed)
2016-08-17 20:33:10.539    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0732.JPG (virus scan failed)
2016-08-17 20:33:10.557    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0733-001.JPG (virus scan failed)
2016-08-17 20:33:10.557    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0733.JPG (virus scan failed)
2016-08-17 20:33:10.572    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0734-001.JPG (virus scan failed)
2016-08-17 20:33:10.572    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0734.JPG (virus scan failed)
2016-08-17 20:33:10.588    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0735-001.JPG (virus scan failed)
2016-08-17 20:33:10.588    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0735.JPG
2016-08-17 20:33:10.604    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0737.JPG
2016-08-17 20:33:10.609    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0738.JPG
2016-08-17 20:33:10.613    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0739.JPG
2016-08-17 20:33:10.617    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0740.JPG
2016-08-17 20:33:10.621    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0741.JPG
2016-08-17 20:33:10.624    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0742.JPG
2016-08-17 20:33:10.627    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0743.JPG
2016-08-17 20:33:10.630    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0744.JPG
2016-08-17 20:33:10.634    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0745.JPG
2016-08-17 20:33:10.637    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0746.JPG
2016-08-17 20:33:10.641    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0747.JPG
2016-08-17 20:33:10.644    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0748.JPG
2016-08-17 20:33:10.647    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0751.JPG
2016-08-17 20:33:10.650    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0752.JPG
2016-08-17 20:33:10.653    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0753.JPG
2016-08-17 20:33:10.657    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0754.JPG
2016-08-17 20:33:10.660    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0755.JPG
2016-08-17 20:33:10.663    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0756.JPG
2016-08-17 20:33:10.667    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0757.JPG
2016-08-17 20:33:10.671    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0759.JPG
2016-08-17 20:33:10.675    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0760.JPG
2016-08-17 20:33:10.679    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0761.JPG
2016-08-17 20:33:10.684    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0762.JPG
2016-08-17 20:33:10.688    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0763.JPG
2016-08-17 20:33:10.691    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0764.JPG
2016-08-17 20:33:10.695    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0765.JPG
2016-08-17 20:33:10.698    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0766.JPG
2016-08-17 20:33:10.702    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0767.JPG
2016-08-17 20:33:10.706    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0768.JPG
2016-08-17 20:33:10.710    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0769.JPG
2016-08-17 20:33:10.713    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0770.JPG
2016-08-17 20:33:10.716    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0771.JPG
2016-08-17 20:33:10.719    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0772.JPG
2016-08-17 20:33:10.722    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0773.JPG
2016-08-17 20:33:10.725    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0774.JPG
2016-08-17 20:33:10.728    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0775.JPG
2016-08-17 20:33:10.731    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0776.JPG
2016-08-17 20:33:10.734    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0777.JPG
2016-08-17 20:33:10.738    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0778.JPG
2016-08-17 20:33:10.741    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0780.JPG
2016-08-17 20:33:10.744    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0781.JPG
2016-08-17 20:33:10.747    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0782.JPG
2016-08-17 20:33:10.750    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0783.JPG
2016-08-17 20:33:10.753    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0784.JPG
2016-08-17 20:33:10.756    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0785.JPG
2016-08-17 20:33:10.759    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0786.JPG
2016-08-17 20:33:10.763    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0787.JPG
2016-08-17 20:33:10.766    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0788.JPG
2016-08-17 20:33:10.769    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0789.JPG
2016-08-17 20:33:10.772    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0790.JPG
2016-08-17 20:33:10.776    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0791.JPG
2016-08-17 20:33:10.779    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0792.JPG
2016-08-17 20:33:10.782    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0793.JPG
2016-08-17 20:33:10.786    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0794.JPG
2016-08-17 20:33:10.790    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0795.JPG
2016-08-17 20:33:10.793    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0796.JPG
2016-08-17 20:33:10.796    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0797.JPG
2016-08-17 20:33:10.799    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0798.JPG
2016-08-17 20:33:10.803    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0799.JPG
2016-08-17 20:33:10.808    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0801.JPG
2016-08-17 20:33:10.812    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0802.JPG
2016-08-17 20:33:10.815    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0803.JPG
2016-08-17 20:33:10.818    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0804.JPG
2016-08-17 20:33:10.821    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0805.JPG
2016-08-17 20:33:10.825    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0806.JPG
2016-08-17 20:33:10.828    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0807.JPG
2016-08-17 20:33:10.831    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0808.JPG
2016-08-17 20:33:10.834    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0809.JPG
2016-08-17 20:33:10.837    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0810.JPG
2016-08-17 20:33:10.840    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0811.JPG
2016-08-17 20:33:10.843    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0812.JPG
2016-08-17 20:33:10.846    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0813.JPG
2016-08-17 20:33:10.850    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0820.JPG
2016-08-17 20:33:10.853    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0821.JPG
2016-08-17 20:33:10.856    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0822.JPG
2016-08-17 20:33:10.859    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0823.JPG
2016-08-17 20:33:10.862    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0824.JPG
2016-08-17 20:33:10.867    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0825.JPG
2016-08-17 20:33:10.871    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0826.JPG
2016-08-17 20:33:10.874    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0827.JPG
2016-08-17 20:33:10.878    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0828.JPG
2016-08-17 20:33:10.882    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0829.JPG
2016-08-17 20:33:10.886    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0830.JPG
2016-08-17 20:33:10.897    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0831.JPG
2016-08-17 20:33:10.903    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0833.JPG
2016-08-17 20:33:10.908    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0834.JPG
2016-08-17 20:33:10.916    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0835.JPG
2016-08-17 20:33:10.921    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0836.JPG
2016-08-17 20:33:10.929    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0840.JPG
2016-08-17 20:33:10.933    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0841.JPG
2016-08-17 20:33:10.939    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0843.JPG
2016-08-17 20:33:10.943    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0844.JPG
2016-08-17 20:33:10.948    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0845.JPG
2016-08-17 20:33:10.959    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0846.JPG
2016-08-17 20:33:10.963    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0848.JPG
2016-08-17 20:33:10.968    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0849.JPG
2016-08-17 20:33:10.973    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0850.JPG
2016-08-17 20:33:10.979    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0851.JPG
2016-08-17 20:33:10.985    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Disney 2015\IMG_0852.JPG
2016-08-17 20:33:11.006    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Early 2.JPG (virus scan failed)
2016-08-17 20:33:11.076    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Hike5.jpg (virus scan failed)
2016-08-17 20:33:11.095    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Jan's birthday\P1070581.JPG (virus scan failed)
2016-08-17 20:33:11.138    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\kylo-ren-star-wars-coloring-page_lnl.jpg (virus scan failed)
2016-08-17 20:33:11.180    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Bethany - Cake.jpg (virus scan failed)
2016-08-17 20:33:11.185    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Bethany - Diploma.jpg (virus scan failed)
2016-08-17 20:33:11.189    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Bethany - Smiling.jpg
2016-08-17 20:33:11.194    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Dad.jpg
2016-08-17 20:33:11.198    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\DSC00140.JPG
2016-08-17 20:33:11.204    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Fred Lee.jpg
2016-08-17 20:33:11.213    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Mandy.jpg
2016-08-17 20:33:11.217    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Misc 009.jpg
2016-08-17 20:33:11.227    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Misc Pictures\Sports & Athletics\APFSenNtls(771lbs).jpg
2016-08-17 20:33:11.320    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Muckdog.jpg (virus scan failed)
2016-08-17 20:33:11.338    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\n1409281275_60528_4583.jpg
2016-08-17 20:33:11.340    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Nathaniel Joseph's Pictures\Nathaniel - Fathers Day.JPG (virus scan failed)
2016-08-17 20:33:11.356    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Nathaniel's 9th birthday\P1070181.JPG (virus scan failed)
2016-08-17 20:33:11.361    Could not check H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Nathaniel's 9th birthday\P1070182.JPG (virus scan failed)
2016-08-17 20:33:11.390    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\October snow\P1050703.JPG
2016-08-17 20:33:11.393    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\October snow\P1050705.JPG
2016-08-17 20:33:11.397    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\October snow\P1050706.JPG
2016-08-17 20:33:11.400    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\P1020686.JPG
2016-08-17 20:33:11.404    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\P1030502.JPG
2016-08-17 20:33:11.410    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Photo Booth.jpg
2016-08-17 20:33:11.453    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\Reverie.jpg
2016-08-17 20:33:11.498    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Kevin & Jessica\Pictures\starwars02.jpg
2016-08-17 20:33:11.680    Could not open H:\WD SmartWare.swstor\EARLYS\Volume.cabf04da.c236.11e4.80a4.806e6f6e6963\Users\Public\Downloads\PureBDcraft 128x MC18.zip
2016-08-17 20:33:12.232    Could not open PHYSICAL:0082:0000:0000:0001
2016-08-17 20:33:12.347    The following items will be cleaned up:
2016-08-17 20:33:12.347    Troj/Agent-WFN
2016-08-17 20:38:29.553    Threat 'Troj/Agent-WFN' has been cleaned up.
2016-08-17 20:38:29.553    File "D:\Kevin & Jessica\Downloads\Applications\VSO ConvertXtoDVD 6.0.0.18 Final + Patch [4realtorrentz]\Patch\vso.converters.v2.2-Cerberus.exe" belongs to 'Troj/Agent-WFN'.
2016-08-17 20:38:29.553    File "D:\Kevin & Jessica\Downloads\Applications\VSO ConvertXtoDVD 6.0.0.18 Final + Patch [4realtorrentz]\Patch\vso.converters.v2.2-Cerberus.exe" has been cleaned up.
2016-08-17 20:38:29.553    Removal successful
2016-08-17 20:38:30.293    Error level 0

2016-08-17 20:39:24.266    Scan completed.
2016-08-17 20:39:24.266    

------------------------------------------------------------

2016-08-17 21:50:18.927    Sophos Virus Removal Tool version 2.5.6
2016-08-17 21:50:18.927    Copyright (c) 2009-2016 Sophos Limited. All rights reserved.

2016-08-17 21:50:18.927    This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2016-08-17 21:50:18.927    Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x100 PT=0x1 WOW64
2016-08-17 21:50:18.927    Checking for updates...
2016-08-17 21:50:19.052    Update progress: proxy server not available
2016-08-17 21:50:39.660    Option all = no
2016-08-17 21:50:39.660    Option recurse = yes
2016-08-17 21:50:39.660    Option archive = no
2016-08-17 21:50:39.660    Option service = yes
2016-08-17 21:50:39.660    Option confirm = yes
2016-08-17 21:50:39.660    Option sxl = yes
2016-08-17 21:50:39.660    Option max-data-age = 35
2016-08-17 21:50:39.660    Option vdl-logging = yes
2016-08-17 21:50:39.676    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2016-08-17 21:50:39.676    Machine ID:    af8fbe82aafe423e92c66988933948e5
2016-08-17 21:50:39.785    Component SVRTcli.exe version 2.5.6
2016-08-17 21:50:39.785    Component control.dll version 2.5.6
2016-08-17 21:50:39.785    Component SVRTservice.exe version 2.5.6
2016-08-17 21:50:39.785    Component engine\osdp.dll version 1.44.1.2252
2016-08-17 21:50:39.785    Component engine\veex.dll version 3.65.2.2252
2016-08-17 21:50:39.785    Component engine\savi.dll version 9.0.1.2252
2016-08-17 21:50:39.972    Component rkdisk.dll version 1.5.30.0
2016-08-17 21:50:39.972    Version info:    Product version    2.5.6
2016-08-17 21:50:39.972    Version info:    Detection engine    3.65.2
2016-08-17 21:50:39.972    Version info:    Detection data    5.30
2016-08-17 21:50:39.972    Version info:    Build date    8/9/2016
2016-08-17 21:50:39.972    Version info:    Data files added    188
2016-08-17 21:50:39.972    Version info:    Last successful update    8/17/2016 1:03:18 PM
2016-08-17 21:50:45.012    Downloading updates...
2016-08-17 21:50:45.012    Update progress: [I96736] sdds.svrt_10: adding primary package C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED baseVersion=1
2016-08-17 21:50:45.012    Update progress: [I95020] sdds.svrt_10: looking for packages included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2016-08-17 21:50:45.012    Update progress: [I22529] sdds.svrt_10: looking for supplements included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2016-08-17 21:50:45.012    Update progress: [I49502] sdds.savi0910.xml: found supplement SAVIW32 LATEST path= baseVersion= [included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=]
2016-08-17 21:50:45.012    Update progress: [I95020] sdds.savi0910.xml: looking for packages included from product SAVIW32 LATEST path=
2016-08-17 21:50:45.012    Update progress: [I22529] sdds.savi0910.xml: looking for supplements included from product SAVIW32 LATEST path=
2016-08-17 21:50:45.012    Update progress: [I49502] sdds.data0910.xml: found supplement IDE531 LATEST path= baseVersion= [included from product SAVIW32 LATEST path=]
2016-08-17 21:50:45.012    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE531 LATEST path=
2016-08-17 21:50:45.012    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE531 LATEST path=
2016-08-17 21:50:45.012    Update progress: [I49502] sdds.data0910.xml: found supplement IDE532 LATEST path= baseVersion= [included from product IDE531 LATEST path=]
2016-08-17 21:50:45.012    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE532 LATEST path=
2016-08-17 21:50:45.012    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE532 LATEST path=
2016-08-17 21:50:45.012    Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2016-08-17 21:51:09.205    Update progress: [I19463] Syncing product SAVIW32 LATEST path=
2016-08-17 21:51:16.423    Update progress: [I19463] Syncing product IDE531 LATEST path=
2016-08-17 21:51:17.773    Update progress: [I19463] Syncing product IDE532 LATEST path=
 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-08-2016
Ran by KevJess (administrator) on OFFICE (17-08-2016 14:39:55)
Running from C:\Users\KevJess\Desktop
Loaded Profiles: KevJess & Nate (Available Profiles: KevJess & Nate & Ben & Sam & Administrator)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [GwxControlPanelMonitor] => C:\Program Files (x86)\UltimateOutsider\GWX Control Panel\GWX_control_panel.exe [4596296 2016-04-01] (UltimateOutsider)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [570152 2014-08-14] (Acronis)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-06-01] (Apple Inc.)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2727568 2016-01-29] ()
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5571944 2016-04-19] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [23546672 2016-08-01] (Dropbox, Inc.)
HKLM-x32\...\Run: [CTxfiHlp] => CTXFIHLP.EXE
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5319576 2015-09-15] (Acronis)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [691056 2015-07-20] (Acronis International GmbH)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM-x32\...\Run: [DriveUtilitiesHelper] => C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [1890664 2016-01-14] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [DelaypluginInstall] => C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe [1971856 2016-06-12] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [HP Officejet 6500 E710n-z (NET)] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8891608 2016-07-13] (Piriform Ltd)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [Google Update] => C:\Users\KevJess\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-06-18] (Google Inc.)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [Google Photos Backup] => C:\Users\KevJess\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe [3790936 2016-04-08] (Google, Inc)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7943072 2016-07-19] (SUPERAntiSpyware)
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\MountPoints2: {21699aa0-245f-11e6-925d-001f29008c1c} - "F:\WD Drive Unlock.exe" autoplay=true
HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\MountPoints2: {c73e8911-2398-11e6-b4b9-806e6f6e6963} - D:\Setup.exe
HKU\S-1-5-21-365837865-395166320-1958338136-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-13] (Microsoft Corporation)
HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7943072 2016-07-19] (SUPERAntiSpyware)
HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\MountPoints2: {3b54a516-24e0-11e6-bce9-806e6f6e6963} - E:\setup.exe
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.38.dll [2016-08-01] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-07-05] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-07-05] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-07-05] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2016-08-17]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicyUsers\S-1-5-21-365837865-395166320-1958338136-1005\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-365837865-395166320-1958338136-1004\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-365837865-395166320-1958338136-1003\User: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-365837865-395166320-1958338136-1000\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.2.65
Tcpip\..\Interfaces\{A798A295-DED8-4A2E-8901-4437AB7569C4}: [DhcpNameServer] 192.168.0.1 205.171.2.65
Tcpip\..\Interfaces\{F1B854D9-932B-4394-A442-600E9F3570EC}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = 
SearchScopes: HKU\S-1-5-21-365837865-395166320-1958338136-1003 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-07-12] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll [2016-07-20] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2016-07-05] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-07-05] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-20] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-07-12] (Microsoft Corporation)
BHO-x32: Wondershare Video Converter Ultimate 7.1.0 -> {451C804F-C205-4F03-B48E-537EC94937BF} -> C:\ProgramData\Wondershare\Video Converter Ultimate\WSBrowserAppMgr.dll [2016-06-12] (Wondershare)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-20] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-07-05] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-07-05] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-20] (Oracle Corporation)
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-19] (Microsoft Corporation)
Handler: WSWSVCUchrome - {1CA93FF0-A218-44F1 -  No File

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-20] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-20] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-20] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-20] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2016-05-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-29] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-29] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-365837865-395166320-1958338136-1000: @tools.google.com/Google Update;version=3 -> C:\Users\KevJess\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-365837865-395166320-1958338136-1000: @tools.google.com/Google Update;version=9 -> C:\Users\KevJess\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-01] (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [WSVCU@Wondershare.com] - C:\ProgramData\Wondershare\Video Converter Ultimate\WSVCU@Wondershare.com_xpi
FF Extension: Wondershare Video Converter Ultimate - C:\ProgramData\Wondershare\Video Converter Ultimate\WSVCU@Wondershare.com_xpi [2016-06-18]

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> ""
CHR DefaultSearchKeyword: Default -> google.com_
CHR Profile: C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-04]
CHR Extension: (YouTube) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-04]
CHR Extension: (HelloFax: 50 Free Fax Pages) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocmleclimfnadgmcdgecijlblfcmfnm [2016-08-04]
CHR Extension: (Google Calendar) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2016-08-04]
CHR Extension: (Pandora) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbangkleohkafngihneedemihgfeikcl [2016-08-04]
CHR Extension: (Chrome Remote Desktop) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2016-08-05]
CHR Extension: (AdBlock) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-08-05]
CHR Extension: (Adblock for Pirate Bay) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\imkpamgpfalmdaikobnkefcmmkpgljjd [2016-08-05]
CHR Extension: (Dropbox) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2016-08-04]
CHR Extension: (Google Maps) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2016-08-04]
CHR Extension: (Chrome Web Store Payments) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-04]
CHR Extension: (Chrome Media Router) - C:\Users\KevJess\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-17]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [76616 2016-06-20] (Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3189488 2016-07-05] (Microsoft Corporation)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2016-05-28] (Creative Labs) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2016-05-28] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-05-27] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-05-27] (Dropbox, Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29760 2016-07-04] (HP Inc.)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation)
S2 NVWMI; C:\Windows\system32\nvwmi64.exe [2701880 2016-01-29] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1049464 2016-04-19] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [314744 2016-04-19] (Western Digital Technologies, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.2.0.5\WsAppService.exe [411648 2016-03-31] (Wondershare) [File not signed]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [296736 2016-05-28] (Acronis International GmbH)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-13] (NVIDIA Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 tib; C:\Windows\System32\DRIVERS\tib.sys [1058632 2016-05-28] (Acronis International GmbH)
R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [248648 2016-05-28] (Acronis International GmbH)
R3 WDC_SAM; C:\Windows\System32\DRIVERS\wdcsam64_prewin8.sys [23200 2016-01-14] (Western Digital Technologies)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-17 14:39 - 2016-08-17 14:40 - 00028183 _____ C:\Users\KevJess\Desktop\FRST.txt
2016-08-17 13:12 - 2016-08-17 13:18 - 02394624 _____ (Farbar) C:\Users\KevJess\Desktop\FRST64.exe
2016-08-17 13:00 - 2016-08-17 13:00 - 00002759 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2016-08-17 13:00 - 2016-08-17 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2016-08-17 13:00 - 2016-08-17 13:00 - 00000000 ____D C:\Program Files (x86)\Sophos
2016-08-17 12:56 - 2016-08-17 12:57 - 151085416 _____ (Sophos Limited) C:\Users\KevJess\Desktop\Sophos Virus Removal Tool.exe
2016-08-17 12:52 - 2016-08-17 12:52 - 03784256 _____ C:\Users\KevJess\Downloads\AdwCleaner.exe
2016-08-17 11:54 - 2016-08-17 12:03 - 00008192 _____ C:\Windows\SysWOW64\WDPABKP.dat
2016-08-17 11:26 - 2016-08-17 11:26 - 00001069 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk
2016-08-17 11:25 - 2016-08-17 11:25 - 00000000 ____D C:\Program Files (x86)\Secunia
2016-08-17 06:47 - 2016-08-17 06:47 - 03784256 _____ C:\Users\KevJess\Downloads\adwcleaner_6.000.exe
2016-08-17 06:42 - 2016-08-17 12:04 - 00001880 _____ C:\Users\KevJess\Desktop\JRT.txt
2016-08-16 19:37 - 2016-08-17 11:37 - 00000508 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task f1d007e1-feff-4d3f-9a8b-75e928e004ec.job
2016-08-16 19:37 - 2016-08-17 02:00 - 00000508 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 7bd97420-c491-41ce-9471-142ba5bca0c5.job
2016-08-16 19:37 - 2016-08-16 19:37 - 00003576 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 7bd97420-c491-41ce-9471-142ba5bca0c5
2016-08-16 19:37 - 2016-08-16 19:37 - 00003502 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task f1d007e1-feff-4d3f-9a8b-75e928e004ec
2016-08-16 19:37 - 2016-08-16 19:37 - 00000000 ____D C:\Users\Nate\AppData\Roaming\SUPERAntiSpyware.com
2016-08-16 19:36 - 2016-08-16 19:37 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2016-08-16 19:36 - 2016-08-16 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2016-08-13 07:58 - 2016-08-13 07:59 - 00231760 _____ C:\Users\KevJess\Downloads\CrucialScan.exe
2016-08-11 19:52 - 2016-08-17 12:49 - 00001412 _____ C:\Users\KevJess\Desktop\Rkill.txt
2016-08-11 07:20 - 2016-08-11 07:22 - 00000000 ____D C:\Users\Nate\AppData\Roaming\.technic
2016-08-11 07:17 - 2016-08-11 07:18 - 04734664 _____ () C:\Users\Nate\Desktop\TechnicLauncher.exe
2016-08-11 01:59 - 2016-08-11 01:59 - 00000000 ____D C:\Users\KevJess\AppData\Local\TempTaskUpdateDetection61BEAC47-CEEA-462F-9A49-E0EF21EC324C
2016-08-10 07:44 - 2016-07-08 09:37 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-08-10 07:44 - 2016-07-08 09:37 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-08-10 07:44 - 2016-07-08 09:32 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-08-10 07:44 - 2016-07-08 09:32 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-08-10 07:44 - 2016-07-08 09:17 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-08-10 07:44 - 2016-07-08 09:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-08-10 07:44 - 2016-07-08 09:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-08-10 07:44 - 2016-07-08 09:03 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-08-10 07:44 - 2016-07-08 08:57 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-08-10 07:44 - 2016-07-08 08:56 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-08-10 07:44 - 2016-07-08 08:56 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-08-10 07:44 - 2016-07-08 08:55 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-08-10 07:44 - 2016-07-08 08:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-08-10 07:44 - 2016-07-08 08:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-08-10 07:43 - 2016-08-02 08:54 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-08-10 07:43 - 2016-08-02 08:08 - 00346312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-08-10 07:43 - 2016-08-02 00:54 - 25808384 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-08-10 07:43 - 2016-08-02 00:47 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-08-10 07:43 - 2016-08-02 00:47 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-08-10 07:43 - 2016-08-02 00:32 - 02894336 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-08-10 07:43 - 2016-08-02 00:32 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-08-10 07:43 - 2016-08-02 00:31 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-08-10 07:43 - 2016-08-02 00:31 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-08-10 07:43 - 2016-08-02 00:31 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-08-10 07:43 - 2016-08-02 00:31 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-08-10 07:43 - 2016-08-02 00:24 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-08-10 07:43 - 2016-08-02 00:23 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-08-10 07:43 - 2016-08-02 00:20 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-08-10 07:43 - 2016-08-02 00:19 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-08-10 07:43 - 2016-08-02 00:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-08-10 07:43 - 2016-08-02 00:18 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-08-10 07:43 - 2016-08-02 00:18 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-08-10 07:43 - 2016-08-02 00:18 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-08-10 07:43 - 2016-08-02 00:11 - 00969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-08-10 07:43 - 2016-08-02 00:08 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-08-10 07:43 - 2016-08-02 00:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-08-10 07:43 - 2016-08-02 00:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-08-10 07:43 - 2016-08-01 23:59 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-08-10 07:43 - 2016-08-01 23:56 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-08-10 07:43 - 2016-08-01 23:55 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-08-10 07:43 - 2016-08-01 23:54 - 20343808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-08-10 07:43 - 2016-08-01 23:53 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-08-10 07:43 - 2016-08-01 23:51 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-08-10 07:43 - 2016-08-01 23:51 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-08-10 07:43 - 2016-08-01 23:51 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-08-10 07:43 - 2016-08-01 23:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-08-10 07:43 - 2016-08-01 23:51 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-08-10 07:43 - 2016-08-01 23:50 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-08-10 07:43 - 2016-08-01 23:47 - 02286592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-08-10 07:43 - 2016-08-01 23:45 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-08-10 07:43 - 2016-08-01 23:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-08-10 07:43 - 2016-08-01 23:42 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-08-10 07:43 - 2016-08-01 23:41 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-08-10 07:43 - 2016-08-01 23:41 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-08-10 07:43 - 2016-08-01 23:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-08-10 07:43 - 2016-08-01 23:40 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-08-10 07:43 - 2016-08-01 23:38 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-08-10 07:43 - 2016-08-01 23:38 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-08-10 07:43 - 2016-08-01 23:37 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-08-10 07:43 - 2016-08-01 23:36 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-08-10 07:43 - 2016-08-01 23:33 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-08-10 07:43 - 2016-08-01 23:29 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-08-10 07:43 - 2016-08-01 23:28 - 15412224 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-08-10 07:43 - 2016-08-01 23:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-08-10 07:43 - 2016-08-01 23:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-08-10 07:43 - 2016-08-01 23:25 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-08-10 07:43 - 2016-08-01 23:24 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-08-10 07:43 - 2016-08-01 23:23 - 02868224 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-08-10 07:43 - 2016-08-01 23:22 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-08-10 07:43 - 2016-08-01 23:21 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-08-10 07:43 - 2016-08-01 23:16 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-08-10 07:43 - 2016-08-01 23:15 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-08-10 07:43 - 2016-08-01 23:14 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-08-10 07:43 - 2016-08-01 23:14 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-08-10 07:43 - 2016-08-01 23:11 - 13808128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-08-10 07:43 - 2016-08-01 23:10 - 01550848 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-08-10 07:43 - 2016-08-01 22:59 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-08-10 07:43 - 2016-08-01 22:56 - 02393088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-08-10 07:43 - 2016-08-01 22:53 - 01316352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-08-10 07:43 - 2016-08-01 22:51 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-08-10 07:42 - 2016-08-17 12:49 - 00000000 ____D C:\Users\KevJess\Desktop\Spyware Programs
2016-08-10 07:41 - 2016-08-17 07:41 - 00000514 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 1de1d769-43a0-44ae-beb0-6f1bde02aa44.job
2016-08-10 07:41 - 2016-08-17 02:00 - 00000514 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task eceaecfd-3745-4393-95db-fb69e10e53a7.job
2016-08-10 07:41 - 2016-08-10 07:41 - 00003588 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task eceaecfd-3745-4393-95db-fb69e10e53a7
2016-08-10 07:41 - 2016-08-10 07:41 - 00003514 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 1de1d769-43a0-44ae-beb0-6f1bde02aa44
2016-08-10 07:41 - 2016-08-10 07:41 - 00000000 ____D C:\Users\KevJess\AppData\Roaming\SUPERAntiSpyware.com
2016-08-10 07:41 - 2016-07-08 09:01 - 03218944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-08-10 07:40 - 2016-08-10 07:40 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2016-08-09 07:12 - 2016-08-09 07:12 - 00002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-08-09 07:12 - 2016-08-09 07:12 - 00002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-09 06:56 - 2016-08-17 14:39 - 00000000 ____D C:\FRST
2016-08-08 20:00 - 2016-08-08 20:01 - 00000000 ____D C:\ProgramData\Sophos
2016-08-08 19:53 - 2016-08-08 19:53 - 00000000 ____D C:\Windows\pss
2016-08-07 10:34 - 2016-08-07 10:34 - 00000000 ____D C:\Users\KevJess\AppData\Local\TempTaskUpdateDetection79C15E49-71DB-474F-9977-2CF0A6F70BC5
2016-08-07 10:18 - 2016-08-08 06:12 - 00000000 ____D C:\Windows\ERDNT
2016-08-07 10:18 - 2016-08-07 10:18 - 00000924 _____ C:\Users\Sam\Desktop\NTREGOPT.lnk
2016-08-07 10:18 - 2016-08-07 10:18 - 00000924 _____ C:\Users\Administrator\Desktop\NTREGOPT.lnk
2016-08-07 10:18 - 2016-08-07 10:18 - 00000905 _____ C:\Users\Sam\Desktop\ERUNT.lnk
2016-08-07 10:18 - 2016-08-07 10:18 - 00000905 _____ C:\Users\Administrator\Desktop\ERUNT.lnk
2016-08-07 10:18 - 2016-08-07 10:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
2016-08-07 10:18 - 2016-08-07 10:18 - 00000000 ____D C:\Program Files (x86)\ERUNT
2016-08-05 23:12 - 2009-06-10 15:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20160805-231255.backup
2016-08-05 23:04 - 2016-08-05 23:04 - 00000000 ____D C:\Program Files\Common Files\AV
2016-08-05 23:01 - 2016-08-05 23:01 - 00001391 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2016-08-05 23:01 - 2016-08-05 23:01 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2016-08-05 23:01 - 2016-08-05 23:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2016-08-05 23:00 - 2016-08-05 23:14 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2016-08-05 23:00 - 2016-08-05 23:05 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2016-08-05 23:00 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2016-08-05 18:21 - 2016-08-16 06:33 - 00000000 ____D C:\Users\KevJess\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2016-08-05 11:20 - 2016-08-05 11:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-08-04 16:35 - 2016-08-17 11:44 - 00000000 __SHD C:\ProgramData\Google
2016-08-04 16:33 - 2016-08-17 11:07 - 00000000 ____D C:\ProgramData\HitmanPro
2016-08-04 15:21 - 2016-08-17 11:56 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-08-04 15:19 - 2016-08-04 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-08-04 15:19 - 2016-08-04 15:19 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-08-04 15:19 - 2016-08-04 15:19 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-08-04 15:19 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-08-04 15:19 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-08-04 15:19 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-08-04 14:46 - 2016-08-17 12:54 - 00000000 ____D C:\AdwCleaner
2016-08-02 00:46 - 2016-08-13 08:01 - 00000000 ____D C:\Windows\Minidump
2016-07-28 13:35 - 2016-08-17 11:48 - 00000000 ____D C:\Users\Nate\AppData\Local\CrashDumps
2016-07-27 16:28 - 2016-08-17 11:44 - 00000000 __SHD C:\ProgramData\Mozilla
2016-07-27 09:02 - 2016-07-27 09:02 - 00000000 ____D C:\Users\Sam\AppData\Roaming\HpUpdate
2016-07-23 08:44 - 2016-07-23 08:44 - 00077054 _____ C:\Users\KevJess\Desktop\wbsa1301.pdf
2016-07-22 17:10 - 2016-07-22 17:10 - 00001078 _____ C:\Users\Ben\Desktop\.minecraft - Shortcut.lnk
2016-07-22 16:57 - 2016-07-22 17:04 - 00000000 ____D C:\Users\Ben\AppData\Roaming\.minecraft
2016-07-22 16:51 - 2016-07-22 16:51 - 00000000 ____D C:\Users\Ben\AppData\Roaming\NVIDIA
2016-07-21 06:57 - 2016-07-21 06:57 - 00511764 _____ C:\Users\KevJess\Downloads\openhardwaremonitor-v0.7.1-beta.zip
2016-07-21 06:32 - 2016-07-21 06:32 - 04117216 _____ (Husdawg, LLC) C:\Users\KevJess\Downloads\Detection.exe
2016-07-21 06:25 - 2016-01-29 06:08 - 02701880 _____ C:\Windows\system32\nvwmi64.exe
2016-07-21 06:25 - 2016-01-29 06:08 - 00004425 _____ C:\Windows\system32\nvPerfProvider.man
2016-07-21 06:24 - 2016-01-29 04:49 - 06791736 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 03529152 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 02558328 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 01083256 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 00932728 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-07-21 06:24 - 2016-01-29 04:49 - 00384888 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 00062512 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-07-21 06:24 - 2016-01-29 03:04 - 00614848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-07-21 06:24 - 2016-01-28 10:29 - 06150607 _____ C:\Windows\system32\nvcoproc.bin
2016-07-21 06:23 - 2016-01-29 06:08 - 00082488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-07-21 06:23 - 2016-01-29 06:08 - 00067520 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 31523896 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 24207296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 23000000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 18634264 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 17559240 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 15302712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 14497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 13916600 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 12911160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-07-21 06:16 - 2016-01-29 06:08 - 11272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 11209376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 04252608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 03996216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 03210784 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 02825016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 01908272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434195.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 01557552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434195.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 00952256 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 00915392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 00911928 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 00878648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-07-21 06:16 - 2016-01-29 06:08 - 00026157 _____ C:\Windows\system32\nvinfo.pb
2016-07-20 20:21 - 2016-07-20 20:21 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-07-20 20:21 - 2016-07-20 20:21 - 00000000 ____D C:\Program Files (x86)\Java
2016-07-20 20:21 - 2016-07-20 05:58 - 00110144 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-64.dll
2016-07-20 05:53 - 2016-07-20 05:53 - 00000000 ____D C:\Users\KevJess\Documents\Chalkboard
2016-07-20 05:52 - 2016-07-20 05:53 - 00000000 ____D C:\Users\KevJess\Documents\Invitations
2016-07-19 22:09 - 2016-07-19 22:09 - 00000000 ____D C:\Users\Ben\AppData\Roaming\Sun
2016-07-19 22:09 - 2016-07-19 22:09 - 00000000 ____D C:\Users\Ben\AppData\LocalLow\Sun
2016-07-18 19:51 - 2016-07-18 19:51 - 00000967 _____ C:\Users\KevJess\Desktop\Movies.lnk

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-17 14:35 - 2016-05-27 03:18 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-17 14:22 - 2016-05-28 08:39 - 00061256 _____ C:\Windows\system32\BMXStateBkp-{00000001-00000000-00000004-00001102-00000005-10031102}.rfx
2016-08-17 14:22 - 2016-05-28 08:39 - 00061256 _____ C:\Windows\system32\BMXState-{00000001-00000000-00000004-00001102-00000005-10031102}.rfx
2016-08-17 14:22 - 2016-05-28 08:39 - 00000788 _____ C:\Windows\system32\DVCState-{00000001-00000000-00000004-00001102-00000005-10031102}.rfx
2016-08-17 14:11 - 2016-05-27 23:06 - 00000910 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-08-17 13:54 - 2009-07-13 22:45 - 00020832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-08-17 13:54 - 2009-07-13 22:45 - 00020832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-08-17 12:00 - 2016-05-27 23:12 - 00000000 ___RD C:\Users\KevJess\Dropbox
2016-08-17 11:57 - 2009-07-13 23:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2016-08-17 11:57 - 2009-07-13 21:20 - 00000000 ____D C:\Windows\inf
2016-08-17 11:56 - 2016-05-31 05:39 - 00000000 ___RD C:\Users\KevJess\iCloudDrive
2016-08-17 11:56 - 2016-05-27 23:06 - 00000906 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-08-17 11:56 - 2016-05-27 03:18 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-08-17 11:50 - 2016-05-27 22:31 - 00000000 ____D C:\ProgramData\NVIDIA
2016-08-17 11:50 - 2009-07-13 23:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-17 11:38 - 2016-06-18 08:03 - 00000864 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000Core.job
2016-08-16 17:13 - 2016-05-31 15:55 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-08-16 17:11 - 2016-05-31 15:51 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-08-15 07:57 - 2009-07-13 21:20 - 00000000 ____D C:\Windows\IME
2016-08-11 16:52 - 2016-05-31 08:38 - 00002255 _____ C:\Users\Sam\Desktop\Google Chrome.lnk
2016-08-11 16:52 - 2016-05-29 17:00 - 00000854 __RSH C:\Users\Sam\ntuser.pol
2016-08-11 16:52 - 2016-05-29 17:00 - 00000000 ____D C:\Users\Sam
2016-08-11 07:21 - 2016-05-29 14:38 - 00000000 ____D C:\Users\Nate\.oracle_jre_usage
2016-08-10 17:42 - 2009-07-13 21:20 - 00000000 ____D C:\Windows\rescache
2016-08-10 17:10 - 2009-07-13 22:45 - 00418736 _____ C:\Windows\system32\FNTCACHE.DAT
2016-08-10 07:58 - 2016-05-27 22:33 - 00000000 ____D C:\Windows\system32\MRT
2016-08-10 07:48 - 2016-05-27 22:33 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-08-09 07:11 - 2016-05-27 03:18 - 00000000 ____D C:\Program Files (x86)\Google
2016-08-09 07:02 - 2009-07-13 23:32 - 00000000 ____D C:\Windows\Downloaded Program Files
2016-08-08 15:37 - 2016-05-29 16:56 - 00000854 __RSH C:\Users\Ben\ntuser.pol
2016-08-08 15:37 - 2016-05-29 16:56 - 00000000 ____D C:\Users\Ben
2016-08-08 08:18 - 2009-07-13 22:45 - 00000000 ____D C:\Windows\ServiceProfiles
2016-08-08 06:12 - 2016-05-26 16:36 - 00000000 ____D C:\Users\KevJess\AppData\Local\VirtualStore
2016-08-07 14:04 - 2016-05-29 13:25 - 00000856 __RSH C:\Users\Nate\ntuser.pol
2016-08-07 14:04 - 2016-05-29 13:25 - 00000000 ____D C:\Users\Nate
2016-08-07 10:04 - 2016-05-27 23:56 - 00000000 ____D C:\Users\KevJess\AppData\Roaming\uTorrent
2016-08-07 09:49 - 2016-05-29 12:41 - 00000258 __RSH C:\Users\KevJess\ntuser.pol
2016-08-07 09:49 - 2016-05-26 16:34 - 00000000 ____D C:\Users\KevJess
2016-08-07 08:29 - 2016-06-04 11:29 - 00000000 ____D C:\Users\KevJess\AppData\Local\CrashDumps
2016-08-05 17:58 - 2009-07-13 21:20 - 00000000 ____D C:\Windows\Help
2016-08-05 11:21 - 2016-05-27 23:06 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-08-05 06:33 - 2016-06-18 07:41 - 00000000 ____D C:\ProgramData\Wondershare Video Converter Ultimate
2016-08-04 18:04 - 2016-05-27 03:18 - 00000000 ____D C:\Users\KevJess\AppData\Local\Google
2016-08-04 18:03 - 2016-05-27 03:18 - 00000000 ____D C:\Users\KevJess\AppData\Local\Deployment
2016-08-04 18:00 - 2016-05-26 16:36 - 00001413 _____ C:\Users\KevJess\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-08-04 16:32 - 2016-06-07 21:19 - 00000000 ___RD C:\Users\KevJess\Documents\Scanned Documents
2016-08-04 16:30 - 2016-06-26 19:26 - 00000000 __SHD C:\ProgramData\Windows 7
2016-08-04 16:29 - 2016-06-18 07:36 - 00000000 ____D C:\Program Files (x86)\VSO
2016-08-02 09:58 - 2016-06-07 23:06 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-08-01 11:33 - 2016-06-18 08:03 - 00003890 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000UA
2016-08-01 11:33 - 2016-06-18 08:03 - 00003494 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000Core
2016-08-01 11:33 - 2016-06-18 08:03 - 00000916 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000UA.job
2016-08-01 06:30 - 2016-05-27 03:18 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-08-01 06:30 - 2016-05-27 03:18 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-31 05:43 - 2016-06-11 08:05 - 00000000 ____D C:\Program Files\CCleaner
2016-07-27 19:13 - 2016-05-29 08:18 - 00000000 ____D C:\Users\KevJess\Documents\Important Docs
2016-07-27 18:29 - 2009-07-13 21:20 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2016-07-27 13:25 - 2010-11-20 21:27 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-07-23 06:04 - 2016-05-29 13:26 - 00111696 _____ C:\Users\Nate\AppData\Local\GDIPFONTCACHEV1.DAT
2016-07-22 17:20 - 2016-05-27 22:30 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-07-22 17:01 - 2016-05-29 14:31 - 00000000 ____D C:\Users\KevJess\.oracle_jre_usage
2016-07-22 16:56 - 2016-06-21 06:30 - 00000000 ____D C:\Users\Ben\AppData\Local\CrashDumps
2016-07-21 06:29 - 2016-05-27 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-07-21 06:25 - 2016-05-27 22:30 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-07-20 20:22 - 2016-05-29 14:31 - 00000000 ____D C:\ProgramData\Oracle
2016-07-20 20:21 - 2016-05-29 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2016-07-20 20:21 - 2016-05-29 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-07-20 05:59 - 2016-05-29 14:30 - 00000000 ____D C:\Program Files\Java
2016-07-20 05:58 - 2016-05-29 14:31 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2016-07-20 05:55 - 2016-05-29 08:19 - 00000000 ____D C:\Users\KevJess\Documents\Tax Returns
2016-07-20 05:55 - 2016-05-29 08:19 - 00000000 ____D C:\Users\KevJess\Documents\Resumes & Job Info
2016-07-20 05:55 - 2016-05-29 08:19 - 00000000 ____D C:\Users\KevJess\Documents\Reciepts and Important Docs
2016-07-20 05:55 - 2016-05-29 08:17 - 00000000 ____D C:\Users\KevJess\Documents\Crafts & Activites
2016-07-20 05:54 - 2016-05-29 08:24 - 00019456 ___SH C:\Users\KevJess\Documents\Thumbs.db
2016-07-20 05:53 - 2016-05-29 08:17 - 00000000 ____D C:\Users\KevJess\Documents\Calendar
2016-07-19 11:29 - 2016-05-29 16:56 - 00111696 _____ C:\Users\Ben\AppData\Local\GDIPFONTCACHEV1.DAT
2016-07-18 19:28 - 2016-05-29 08:22 - 00000000 ____D C:\Users\KevJess\AppData\Roaming\vlc
2016-07-18 12:31 - 2016-05-29 17:01 - 00111696 _____ C:\Users\Sam\AppData\Local\GDIPFONTCACHEV1.DAT

==================== Files in the root of some directories =======

2016-06-18 07:36 - 2016-06-18 07:36 - 0099384 _____ () C:\Users\KevJess\AppData\Roaming\inst.exe
2016-06-18 07:36 - 2016-06-18 07:36 - 0007859 _____ () C:\Users\KevJess\AppData\Roaming\pcouffin.cat
2016-06-18 07:36 - 2016-06-18 07:36 - 0001167 _____ () C:\Users\KevJess\AppData\Roaming\pcouffin.inf
2016-06-18 07:36 - 2016-06-18 07:36 - 0000055 _____ () C:\Users\KevJess\AppData\Roaming\pcouffin.log
2016-06-18 07:36 - 2016-06-18 07:36 - 0082816 _____ (VSO Software) C:\Users\KevJess\AppData\Roaming\pcouffin.sys

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-08-16 02:00

==================== End of FRST.txt ============================

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-08-2016
Ran by KevJess (17-08-2016 14:40:29)
Running from C:\Users\KevJess\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2016-05-26 22:34:05)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-365837865-395166320-1958338136-500 - Administrator - Disabled) => C:\Users\Administrator
Ben (S-1-5-21-365837865-395166320-1958338136-1004 - Limited - Enabled) => C:\Users\Ben
Guest (S-1-5-21-365837865-395166320-1958338136-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-365837865-395166320-1958338136-1002 - Limited - Enabled)
KevJess (S-1-5-21-365837865-395166320-1958338136-1000 - Administrator - Enabled) => C:\Users\KevJess
Nate (S-1-5-21-365837865-395166320-1958338136-1003 - Limited - Enabled) => C:\Users\Nate
Sam (S-1-5-21-365837865-395166320-1958338136-1005 - Limited - Enabled) => C:\Users\Sam

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Disabled - Up to date) {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
AS: Microsoft Security Essentials (Disabled - Up to date) {CDE0C533-D3CD-62A1-E772-AFADDF863628}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\uTorrent) (Version: 3.4.8.42449 - BitTorrent Inc.)
Acronis True Image WD Edition (HKLM-x32\...\{18C886B4-AE66-41C9-BD4D-B5AEDF52A4C1}) (Version: 18.0.6126 - Acronis)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated)
Apple Application Support (32-bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
BeerSmith 2 (HKLM-x32\...\BeerSmith 2) (Version:  - )
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform)
Chrome Remote Desktop Host (HKLM-x32\...\{159AA592-31AA-4EAC-A6CB-B47AB2CB1476}) (Version: 52.0.2743.48 - Google Inc.)
Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.43 - Creative Technology Limited)
Creative Audio Control Panel (HKLM-x32\...\AudioCS) (Version: 3.00 - Creative Technology Limited)
Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited)
Creative Sound Blaster Properties x64 Edition (HKLM-x32\...\Creative Sound Blaster Properties x64 Edition) (Version: 1.03 - Creative Technology Limited)
Data Lifeguard Diagnostic for Windows 1.29 (HKLM-x32\...\{519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1) (Version:  - Western Digital Corporation)
Dropbox (HKLM-x32\...\Dropbox) (Version: 7.4.30 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.41.1 - Dropbox, Inc.) Hidden
ERUNT 1.1j (HKLM-x32\...\ERUNT_is1) (Version:  - Lars Hederer)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.)
Google Photos Backup (HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\Google Photos Backup) (Version: 1.1.2.13 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
GWX Control Panel (HKLM-x32\...\UltimateOutsider_GwxControlPanel) (Version:  - UltimateOutsider)
HP Officejet 6500 E710n-z Basic Device Software (HKLM\...\{D79A5962-7305-41B9-A39E-A98AB598F372}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet 6500 E710n-z Help (HKLM-x32\...\{130E5108-547F-4482-91EE-F45C784E08C7}) (Version: 140.0.2.2 - Hewlett Packard)
HP Officejet 6500 E710n-z Product Improvement Study (HKLM\...\{4207BD5E-6F51-4C57-BC86-A0EBE9088A30}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Support Solutions Framework (HKLM-x32\...\{CE7447C2-EF12-4EF3-BE51-BFC3B049C0F6}) (Version: 12.5.26.37 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
iCloud (HKLM\...\{ADFDB647-35C0-4254-9EE6-2D9C3B7104BD}) (Version: 5.2.1.69 - Apple Inc.)
iTunes (HKLM\...\{9F4BF859-C3A4-4AB6-BDD1-9C5D58188598}) (Version: 12.4.1.6 - Apple Inc.)
Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java SE Development Kit 8 Update 92 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180920}) (Version: 8.0.920.14 - Oracle Corporation)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 15.0.4849.1003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.9.218.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
NVIDIA 3D Vision Controller Driver 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 341.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.95 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA Graphics Driver 341.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.95 - NVIDIA Corporation)
NVIDIA nView 141.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 141.36 - NVIDIA Corporation)
NVIDIA WMI 2.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.18.0 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4849.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4849.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4849.1003 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.)
SeaTools for Windows 1.4.0.4 (HKLM-x32\...\SeaTools for Windows) (Version: 1.4.0.4 - Seagate Technology)
Secunia PSI (3.0.0.11005) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.11005 - Secunia)
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.5.6 - Sophos Limited)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
STAR WARS® - Empire At War™ Gold (HKLM-x32\...\1421404887_is1) (Version: 2.0.0.3 - GOG.com)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1222 - SUPERAntiSpyware.com)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.3 - VideoLAN)
VSO ConvertXToDVD 6 (HKLM-x32\...\{8FC36FA6-C508-44FB-B137-1CB46D8258B2}_is1) (Version: 6.0.0.18 - VSO Software)
WD Drive Utilities (HKLM-x32\...\{eab1fb93-61fb-48de-b815-b4e9b68d2ef1}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.)
WD Drive Utilities (x32 Version: 1.3.2.2 - Western Digital Technologies, Inc.) Hidden
WD Quick View (HKLM-x32\...\{F4F2EF32-EAFE-4F87-B7DC-E19C9F8E76FC}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{EFC0BA9B-F472-4559-B655-9C47281F9483}) (Version: 1.0.0 - Western Digital)
WD SmartWare (HKLM\...\{515B34CA-1229-4EDA-AE7C-53CBA68B8A7A}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.)
WD SmartWare Installer (HKLM-x32\...\{4555885d-a64c-4234-9aac-72a8a6b5590b}) (Version: 2.4.16.16 - Western Digital Technologies, Inc.)
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
Winrar Activator version 1.2 (HKLM-x32\...\{AE0B3F2A-EB65-4D01-A3E1-6D879C6AAF2A}_is1) (Version: 1.2 - Rarlab)
Wondershare Video Converter Ultimate(Build 8.7.0.5) (HKLM-x32\...\Wondershare Video Converter Ultimate_is1) (Version: 8.7.0.5 - Wondershare Software)
YNAB 4 version 4.3.857 (HKLM-x32\...\com.ynab.YNAB4.LiveCaptive_is1) (Version: 4.3.857 - YouNeedABudget.com)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-365837865-395166320-1958338136-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\KevJess\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-365837865-395166320-1958338136-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\KevJess\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {02D5213E-F03D-4026-8688-F1082E80B77C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated)
Task: {033683AD-D113-4C4A-A80C-E018706B2BF4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-27] (Google Inc.)
Task: {088BCFB2-00FB-4486-99C8-C90903A53D50} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-27] (Dropbox, Inc.)
Task: {162BA098-8CCC-40AD-BC6E-10B68EDEAAEA} - System32\Tasks\HP Officejet 6500 E710n-z.exe_{360EA6CF-5C85-43FA-9852-2DC0FD815584} => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HP Officejet 6500 E710n-z.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {23149341-3436-430C-956A-5A0CB87F01DB} - System32\Tasks\SUPERAntiSpyware Scheduled Task 7bd97420-c491-41ce-9471-142ba5bca0c5 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {27A74B6A-E7EC-4300-A1C2-DE8206D918FE} - System32\Tasks\ScanToPCActivationApp.exe_{8A3B4F30-344E-4D96-816B-61379FFD6281} => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\ScanToPCActivationApp.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {27FE4D25-4E41-4AF2-A021-3060FE57EA7E} - System32\Tasks\SUPERAntiSpyware Scheduled Task f1d007e1-feff-4d3f-9a8b-75e928e004ec => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {2943C9AC-3A4B-4752-A69E-2BDED573F8B9} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {297F255E-8299-46E8-96A4-9A1836A7E28A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {32D57EB3-0722-4FBB-92EE-3CF72A38CCC2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {3BA3AC4D-F3B1-4906-BF3E-178DD7002712} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-05-31] (Microsoft Corporation)
Task: {4132C87D-EAA0-404F-8CE7-F50C271C7BEA} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {580BCE7A-3837-4E55-B6DB-D6920F37789C} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-27] (Dropbox, Inc.)
Task: {69A88183-E116-49D5-98BA-813B8D699D37} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {6A436669-5C8C-4B50-828E-7A03465E9254} - System32\Tasks\HPCustParticipation HP Officejet 6500 E710n-z => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {83052DB9-9DCA-4256-8CFC-C71A0E56D40C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-05-31] (Microsoft Corporation)
Task: {85CE8730-1AD1-4D26-A83E-0A5D91C5A8ED} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8C4F26BE-8916-4AE4-89A8-C8BB916372D8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {975E9CC7-44D8-4DF0-9377-D491E6DF45BD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-27] (Google Inc.)
Task: {9C7463FC-CA96-4242-B485-F99D0338F421} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {9E41C164-B556-45E2-AD08-7D241DB9E4F0} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {A7D437B4-D594-46D1-9DB9-8CF920D72C35} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd)
Task: {AC4C075F-E89D-430F-87B8-224F072A6326} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {C3526F5E-3E78-402C-BA8B-F5984E836029} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {CF3FD0D4-8955-441A-91C5-C205293B7E4E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {D253C6FA-5FE5-486F-8044-503F95D7E1DF} - System32\Tasks\HP Officejet 6500 E710n-z.exe_{4517082E-3B31-47D9-8102-55432824A495} => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HP Officejet 6500 E710n-z.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {D5876E19-6742-4526-863B-FD321E763A20} - System32\Tasks\SUPERAntiSpyware Scheduled Task eceaecfd-3745-4393-95db-fb69e10e53a7 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {D72FA17F-6635-4014-8ECB-15DC2B68EE6B} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-07-05] (Microsoft Corporation)
Task: {DD898F66-8A72-470C-98B1-B640BF9412A6} - System32\Tasks\SUPERAntiSpyware Scheduled Task 1de1d769-43a0-44ae-beb0-6f1bde02aa44 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {EA1436D1-089A-4EB6-852D-EEFC9EE10743} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-06-28] (HP Inc.)
Task: {EC1C9871-0798-4EA9-B1EE-C0877388F206} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000Core => C:\Users\KevJess\AppData\Local\Google\Update\GoogleUpdate.exe [2016-06-18] (Google Inc.)
Task: {F40340AA-3B26-4DED-8CAE-1F6793376AF8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000UA => C:\Users\KevJess\AppData\Local\Google\Update\GoogleUpdate.exe [2016-06-18] (Google Inc.)
Task: {F8F4C6B0-A791-4727-B9C6-806989C6256B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-07-05] (Microsoft Corporation)
Task: {FA2C4DCA-C3A1-4358-A24C-D1C7199EA4B2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000Core.job => C:\Users\KevJess\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-365837865-395166320-1958338136-1000UA.job => C:\Users\KevJess\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 1de1d769-43a0-44ae-beb0-6f1bde02aa44.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 7bd97420-c491-41ce-9471-142ba5bca0c5.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task eceaecfd-3745-4393-95db-fb69e10e53a7.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task f1d007e1-feff-4d3f-9a8b-75e928e004ec.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\KevJess\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) ==============

2016-04-22 01:07 - 2016-04-22 01:07 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-05-31 15:51 - 2016-05-24 09:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-07-26 15:46 - 2016-05-24 10:43 - 08909504 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2016-06-18 07:41 - 2015-02-27 14:38 - 00721263 _____ () C:\Windows\SysWOW64\WSCM64.dll
2016-07-21 06:25 - 2016-01-29 06:08 - 00710288 _____ () C:\Program Files\NVIDIA Corporation\nview\nvshell.dll
2016-08-09 07:12 - 2016-08-02 17:41 - 02366280 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libglesv2.dll
2016-08-09 07:12 - 2016-08-02 17:40 - 00107848 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libegl.dll
2016-07-21 06:24 - 2016-01-29 04:49 - 00135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-08-05 23:00 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2016-08-05 23:00 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2016-08-05 23:00 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2016-08-05 23:00 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2016-08-05 23:00 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2016-04-22 01:08 - 2016-04-22 01:08 - 01047864 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2016-04-22 01:08 - 2016-04-22 01:08 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 00244024 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2016-07-26 15:46 - 2016-05-24 09:21 - 08909504 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll
2016-05-29 15:01 - 2016-06-14 14:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

There are 7913 more sites.

IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1000\...\123simsen.com -> www.123simsen.com

There are 7913 more sites.

IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-365837865-395166320-1958338136-1003\...\123simsen.com -> www.123simsen.com

There are 7913 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 20:34 - 2016-08-05 23:12 - 00453216 ___RA C:\Windows\system32\Drivers\etc\hosts

127.0.0.1    www.007guard.com
127.0.0.1    007guard.com
127.0.0.1    008i.com
127.0.0.1    www.008k.com
127.0.0.1    008k.com
127.0.0.1    www.00hq.com
127.0.0.1    00hq.com
127.0.0.1    010402.com
127.0.0.1    www.032439.com
127.0.0.1    032439.com
127.0.0.1    www.0scan.com
127.0.0.1    0scan.com
127.0.0.1    1000gratisproben.com
127.0.0.1    www.1000gratisproben.com
127.0.0.1    1001namen.com
127.0.0.1    www.1001namen.com
127.0.0.1    100888290cs.com
127.0.0.1    www.100888290cs.com
127.0.0.1    www.100sexlinks.com
127.0.0.1    100sexlinks.com
127.0.0.1    10sek.com
127.0.0.1    www.10sek.com
127.0.0.1    www.1-2005-search.com
127.0.0.1    1-2005-search.com
127.0.0.1    123fporn.info
127.0.0.1    www.123fporn.info
127.0.0.1    www.123haustiereundmehr.com
127.0.0.1    123haustiereundmehr.com
127.0.0.1    123moviedownload.com
127.0.0.1    www.123moviedownload.com

There are 15552 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-365837865-395166320-1958338136-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\KevJess\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
HKU\S-1-5-21-365837865-395166320-1958338136-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Nate\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1 - 205.171.2.65
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^Users^KevJess^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^KevJess.lnk => C:\Windows\pss\KevJess.lnk.Startup

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{F004C48F-148F-42B8-A112-6B1EA6288B56}] => (Allow) C:\Users\KevJess\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2FD4157D-167F-4399-9662-580606B902F7}] => (Allow) C:\Users\KevJess\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8ECB56E4-7F9A-490D-88EA-377771614122}] => (Allow) C:\Users\KevJess\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{0230597B-0A0C-43B9-A90A-162A7E4577ED}] => (Allow) C:\Users\KevJess\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{89981635-40D0-4F49-BB2D-8D9719C855DB}] => (Allow) C:\Users\KevJess\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{32222BCA-5143-42DE-94BC-5BC5A0C5AED5}] => (Allow) C:\Users\KevJess\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{C742AC4B-A087-41E5-A9AD-EFC7D4B98F76}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{2526C0F7-8FAA-4D50-860D-6A39EAB232C3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{676012B3-D114-468B-A5BA-5C1E1EE7A827}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{DC1FF8C1-7A32-464D-8060-C64922B53795}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{C0862B75-0E68-4243-BDD3-50AF5E3481E9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{90342C03-7D2F-452B-8067-ED74C3657230}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8511854F-BB44-4BD0-B242-3944C5FACB56}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CA1D1CC0-A86B-4DC6-951C-B32131CC9CF6}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe
FirewallRules: [{36CC2D5D-98A9-463F-B4AB-11BC80BDEC87}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe
FirewallRules: [{D1721F71-746F-4682-B117-CAC26711808E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe
FirewallRules: [{CD913F86-205F-42F6-8020-C5ED7B8B2DE1}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe
FirewallRules: [{55792672-327B-4C3B-AB7E-8A8688FF7E07}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{2AA5F2FD-3075-43D0-960A-6A9E24A7FCB4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{50C9BC4B-B2D5-4FF0-8910-FE214A4B29B3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{B33FD7CB-BD6B-4C34-978A-E996D7DAE23A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{43651D0C-F2E6-400E-B270-2D24E28CEE85}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{C9161388-5DF3-4106-B43E-FFBC984AEA25}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{366B6CCC-732E-4061-A858-E12644A26547}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{7A5B4D17-D8C5-4F0F-8FC1-13B397DE35E0}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{245C1946-8D8A-431C-8F37-0FC0B1352725}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{54D1B0C4-9EAF-4FE9-BF90-91391FA196B8}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\FaxApplications.exe
FirewallRules: [{19369E04-3322-4F5D-9CE6-4F67C26C5FCF}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\DigitalWizards.exe
FirewallRules: [{59BF7031-1098-463B-A487-E642D3AD8779}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\SendAFax.exe
FirewallRules: [{53165BA6-41A6-4C80-9528-3482AFB71E87}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe
FirewallRules: [{227B213D-AAF3-404D-9EDC-71E6EE1534A4}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe
FirewallRules: [{12C318F4-0B6D-4445-BDEF-8DCCE7262CB9}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{DC150D81-F623-4B61-96AE-E95864BA19D2}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{C95D3579-3D2E-4C5F-B0FB-89D54C318ABC}] => (Allow) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe
FirewallRules: [{D1796E27-9166-46DD-8946-57514B32F55F}] => (Allow) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe
FirewallRules: [{F727D424-60DB-44FD-89F7-496C88931F25}] => (Allow) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe
FirewallRules: [{EA77D7A5-103D-4720-88E3-622BF4916928}] => (Allow) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe
FirewallRules: [{5D9660A8-B2CA-4636-A838-EF881F5904FD}] => (Allow) C:\Users\Ben\Desktop\VoidLauncher.exe
FirewallRules: [{2E85D0BA-2C26-4B28-B288-F383993734A5}] => (Allow) C:\Users\Ben\Desktop\VoidLauncher.exe
FirewallRules: [{5B57C56D-AB32-4715-94E2-2731ACB786D2}] => (Allow) C:\Users\Ben\Desktop\VoidLauncher.exe
FirewallRules: [{79551134-2D47-4E59-AAA9-0D4880709FEE}] => (Allow) C:\Users\Ben\Desktop\VoidLauncher.exe
FirewallRules: [TCP Query User{3C430F0C-7025-4502-B689-B86FA8784172}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{4E3482E8-28B6-412E-9BDE-350407E05A2E}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{228B70A5-46D4-4854-A587-FB918CDC1419}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
FirewallRules: [TCP Query User{2BBAD14A-40F6-48E9-A886-852B18E23D71}C:\gog games\star wars - empire at war gold\gamedata\sweaw.exe] => (Allow) C:\gog games\star wars - empire at war gold\gamedata\sweaw.exe
FirewallRules: [UDP Query User{2884E43B-68E8-44C7-8B0E-7DDDFC199D73}C:\gog games\star wars - empire at war gold\gamedata\sweaw.exe] => (Allow) C:\gog games\star wars - empire at war gold\gamedata\sweaw.exe
FirewallRules: [{831D1409-A340-4303-A8CE-76E85B0059D8}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{84787B56-A23B-4755-B416-786DBC776652}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{E5BB455D-4B6D-476C-8F79-3D3C0A96DBDF}C:\program files\java\jdk1.8.0_92\bin\javaw.exe] => (Block) C:\program files\java\jdk1.8.0_92\bin\javaw.exe
FirewallRules: [UDP Query User{95A192A9-462E-4234-80D6-FB5344233400}C:\program files\java\jdk1.8.0_92\bin\javaw.exe] => (Block) C:\program files\java\jdk1.8.0_92\bin\javaw.exe
FirewallRules: [TCP Query User{09EA3DEF-3ACE-47D9-B50D-EAB0DCC25ABB}C:\program files\java\jdk1.8.0_92\jre\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_92\jre\bin\javaw.exe
FirewallRules: [UDP Query User{BE5F270A-AAF5-44DE-A5C4-2F7C5B541B04}C:\program files\java\jdk1.8.0_92\jre\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_92\jre\bin\javaw.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Restore Points =========================

13-08-2016 09:55:14 Windows Update
17-08-2016 06:39:23 JRT Pre-Junkware Removal
17-08-2016 08:19:56 Windows Update
17-08-2016 11:05:53 Checkpoint by HitmanPro
17-08-2016 11:07:33 Checkpoint by HitmanPro
17-08-2016 11:59:02 JRT Pre-Junkware Removal
17-08-2016 12:46:19 JRT Pre-Junkware Removal
17-08-2016 12:59:24 Removed Sophos Virus Removal Tool.
17-08-2016 13:00:34 Installed Sophos Virus Removal Tool.

==================== Faulty Device Manager Devices =============

Name: Standard PS/2 Keyboard
Description: Standard PS/2 Keyboard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard keyboards)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Floppy disk drive
Description: Floppy disk drive
Class Guid: {4d36e980-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard floppy disk drives)
Service: flpydisk
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: PS/2 Compatible Mouse
Description: PS/2 Compatible Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (08/17/2016 02:36:46 PM) (Source: chromoting) (EventID: 3) (User: )
Description: Access denied for client: imnotl8@gmail.com/chromotingC3373131.

Error: (08/17/2016 02:22:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8034

Error: (08/17/2016 02:22:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8034

Error: (08/17/2016 02:22:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/17/2016 01:39:25 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code:
0x80070005

Error: (08/17/2016 12:55:56 PM) (Source: MsiInstaller) (EventID: 11606) (User: Office)
Description: Product: Sophos Virus Removal Tool -- Error 1606.Could not access network location data.

Error: (08/17/2016 12:55:49 PM) (Source: MsiInstaller) (EventID: 11606) (User: Office)
Description: Product: Sophos Virus Removal Tool -- Error 1606.Could not access network location data.

Error: (08/17/2016 12:39:25 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code:
0x80070005

Error: (08/17/2016 11:56:12 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (08/17/2016 11:51:59 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Windows license activation failed. Error 0x80070005.


System errors:
=============
Error: (08/17/2016 12:46:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Chrome Remote Desktop Service service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (08/17/2016 12:39:25 PM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (08/17/2016 12:01:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA WMI Provider service terminated unexpectedly.  It has done this 1 time(s).

Error: (08/17/2016 12:01:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Chrome Remote Desktop Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (08/17/2016 12:01:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Display Driver Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (08/17/2016 11:51:28 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Wondershare Application Framework Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (08/17/2016 11:26:27 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for Type with the following error: 
%%5 = Access is denied.

Error: (08/17/2016 11:26:04 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for Type with the following error: 
%%5 = Access is denied.

Error: (08/17/2016 11:25:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The WD Backup service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 0 milliseconds: Restart the service.

Error: (08/17/2016 11:00:31 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The WD Backup service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 0 milliseconds: Restart the service.


==================== Memory info =========================== 

Processor: Intel(R) Xeon(R) CPU E5440 @ 2.83GHz
Percentage of memory in use: 18%
Total physical RAM: 16383.34 MB
Available physical RAM: 13407.23 MB
Total Virtual: 32764.86 MB
Available Virtual: 28819.55 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.79 GB) (Free:34.65 GB) NTFS
Drive d: (Local Disk) (Fixed) (Total:931.51 GB) (Free:343.03 GB) NTFS
Drive f: (WD Unlocker) (CDROM) (Total:0.01 GB) (Free:0 GB) UDF
Drive h: (My Passport) (Fixed) (Total:1862.98 GB) (Free:1338.22 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 8C14ABDC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 445A4524)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 2.

==================== End of Addition.txt ============================

Link to post
Share on other sites

Wow... lots of stuff in the those logs.  It seems to have got whatever was hijacking the browser and the pop up from MWB has not popped up again.  Maybe it got it this time.

 

Let me know if you see anything I need to address!

 

Thanks for your help!

 

 

 

Link to post
Share on other sites

  • Root Admin

Thanks, there does not appear to be anymore malware related threats on the system.

 

Please download the attached fixlist.txt file and save it to the Desktop.
NOTE. It's important that both files, FRST or FRST64 and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system.

Run FRST or FRST64 and press the Fix button just once and wait.
If the tool needs a restart please make sure you let the system restart normally and let the tool complete its run after restart.
The tool will make a log on the Desktop (Fixlog.txt). Please attach or post it to your next reply.

Note: If the tool warned you about an outdated version please download and run the updated version.

fixlist.txt

Thanks

 

Link to post
Share on other sites

  • Root Admin

At this time there are no more signs of an infection on your system.
However if you are still seeing any signs of an infection please let me know.

Let's go ahead and remove the tools and logs we've used during this process.

Most of the tools used are potentially dangerous to use unsupervised or if ran at the wrong time.
They are often updated daily so if you went to use them again in the future they would be outdated anyways.

The following procedures will implement some cleanup procedures to remove these tools.
 
bwebb7v.jpgDownload Delfix from here and save it to your desktop. (you may already have this)

  • Ensure Remove disinfection tools is checked.
  • Click the Run button.
  • Reboot


Any other programs or logs that are still remaining, you can manually delete. (right click.....Delete)
IE: RogueKiller.exe, RKreport.txt, RK_Quarantine folder, C:\FRST folder, FRST-OlderVersion folder, MBAR folder, etc....AdwCleaner > just run the program and click uninstall.


 
If there are any other left over Folders, Files, Logs then you can delete them on your own.
 
Please visit the following link to see how to delete old System Restore Points. Please delete all of them and create a new one at this time.
How to Delete System Protection Restore Points in Windows 7 and Windows 8

Remove all but the most recent Restore Point on Windows XP


As Java seems to get exploited on a regular basis I advise not using Java if possible but to at least disable java in your web browsers
How do I disable Java in my web browser? - Disable Java

A lot of reading here but if you take the time to read a bit of it you'll see why/how infections and general damage are so easily inflicted on the computer. There is also advice on how to prevent it and keep the system working well. Don't forget about good, solid backups of your data to an external drive that is not connected except when backing up your data. If you leave a backup drive connected and you do get infected it can easily damage, encrypt, delete, or corrupt your backups as well and then you'd lose all data.
Nothing is 100% bulletproof but with a little bit of education you can certainly swing things in your favor.


If you're not currently using Malwarebytes Premium then you may want to consider purchasing the product which can also help greatly reduce the risk of a future infection.

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.