• Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Solved Disk 1 Unknown mbr code

Status
Not open for further replies.

TwiXxiN

PCHF Member
PCHF Member
Nov 30, 2016
7
3
23
#1
I believe that my pc is clean, it's just that unknown mbr code thing is bothering me not sure if that is normal but i'll let you guys check, Here r the logs:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-11-2016
Ran by DuhBoy (01-12-2016 13:09:23)
Running from C:\Users\DuhBoy\Downloads
Windows 10 Pro Version 1607 (X64) (2016-08-09 15:54:39)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2590114280-3335225030-2770196223-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2590114280-3335225030-2770196223-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2590114280-3335225030-2770196223-1000 - Limited - Disabled) => C:\Users\defaultuser0
DuhBoy (S-1-5-21-2590114280-3335225030-2770196223-1001 - Administrator - Enabled) => C:\Users\DuhBoy
Guest (S-1-5-21-2590114280-3335225030-2770196223-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Alien: Isolation (HKLM\...\Steam App 214490) (Version: - Creative Assembly)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
Castle of Illusion (HKLM\...\Steam App 227600) (Version: - SEGA Studios Australia)
Catalyst Control Center Next Localization BR (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.1123.1856.34070 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform)
Counter-Strike (HKLM\...\Steam App 10) (Version: - Valve)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CPUID HWMonitor 1.30 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
Dark Souls 3 (HKLM-x32\...\Dark Souls 3_is1) (Version:GOG - )
DARK SOULS™ II: Scholar of the First Sin (HKLM\...\Steam App 335300) (Version: - FromSoftware, Inc)
Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform)
Discord (HKU\S-1-5-21-2590114280-3335225030-2770196223-1001\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.)
Dota 2 (HKLM\...\Steam App 570) (Version: - Valve)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
HandBrake 0.10.5 (HKLM-x32\...\HandBrake) (Version: 0.10.5 - )
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 0.16.6 - OBS Project)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.2.703.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7701 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 3.1.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.7 - VS Revo Group, Ltd.)
Rocket League (HKLM\...\Steam App 252950) (Version: - Psyonix, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sven Co-op (HKLM\...\Steam App 225840) (Version: - Sven Co-op Team)
Titan Quest Anniversary Edition (HKLM\...\Steam App 475150) (Version: - Iron Lore Entertainment)
VEGAS Pro 14.0 (64-bit) (HKLM\...\{F15270DE-AAA0-11E6-BC48-8EDAE4BED5C9}) (Version: 14.0.201 - VEGAS)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0-2) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.26.0 (Version: 1.0.26.0 - LunarG, Inc.) Hidden
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - Owner DuhBoy)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {E7F41B92-AFFB-4BD7-951D-469CF2A2E120} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-11-23] (Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-09-29 18:12 - 2016-09-15 18:25 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-09-29 18:12 - 2016-09-15 18:25 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
2016-09-14 03:56 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-11-09 16:08 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-11-09 16:09 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-11-09 16:09 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-11-09 16:09 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-09-14 22:30 - 2016-09-14 22:30 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2016-09-14 22:30 - 2016-09-14 22:30 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-09-14 22:30 - 2016-09-14 22:30 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2016-09-14 22:30 - 2016-09-14 22:30 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2016-09-14 22:30 - 2016-09-14 22:30 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2016-09-14 22:30 - 2016-09-14 22:30 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-11-11 22:13 - 2016-11-08 22:03 - 02367080 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libglesv2.dll
2016-11-11 22:13 - 2016-11-08 22:03 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libegl.dll
2016-11-08 19:10 - 2016-11-08 19:10 - 31067840 _____ () C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\PepperFlash\23.0.0.207\pepflashplayer.dll
2016-08-09 18:10 - 2016-09-08 04:14 - 00784672 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-08-09 18:10 - 2016-09-01 02:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-08-09 18:10 - 2016-10-13 02:58 - 02321696 _____ () C:\Program Files (x86)\Steam\video.dll
2016-08-09 18:10 - 2016-09-01 02:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-08-09 18:10 - 2016-09-01 02:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-08-09 18:10 - 2016-01-27 08:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-08-09 18:10 - 2016-01-27 08:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-08-09 18:10 - 2016-01-27 08:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-08-09 18:10 - 2016-01-27 08:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-08-09 18:10 - 2016-01-27 08:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-08-09 18:10 - 2016-10-13 02:58 - 00836896 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-08-09 18:10 - 2016-07-04 23:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-10-17 16:17 - 2016-08-04 21:56 - 49825056 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.winxp\libcef.dll
2016-08-09 18:10 - 2015-09-25 00:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PAexec => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PAexec => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2016-11-18 21:11 - 00000873 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 keystone.mwbsys.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2590114280-3335225030-2770196223-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\DuhBoy\Downloads\ms_windows-wallpaper-1680x1050.jpg
DNS Servers: 77.78.192.20 - 94.140.66.194
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{601D3283-11A3-40AF-9CFD-24A1D136060E}] => C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{073DD351-4C34-4B81-AC51-06014619DD53}] => C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FCFD8EA5-A5F6-440E-9C12-3414F85F6FB6}] => D:\Games\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8A02843C-5E44-4A3E-BC88-CC77E267C189}] => D:\Games\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D5AC8B12-31AF-4099-86C8-070E6137B645}] => D:\Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{5DFB8BEA-EC75-4318-8D1A-F5C67341D783}] => D:\Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{09D0372F-A844-4EC8-A9DE-EA12F068AB20}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{17E22BC1-02D8-4BDD-B4E3-14A9F91BE0B5}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{00807820-452B-49DC-BF0C-607E32B625EF}] => D:\Games\steamapps\common\Castle of Illusion\COI.exe
FirewallRules: [{C49C61A1-60EC-45B2-9F1B-CBE393AC5A57}] => D:\Games\steamapps\common\Castle of Illusion\COI.exe
FirewallRules: [{DE312B1F-65ED-4E37-9317-418ED17639BF}] => D:\Games\steamapps\common\Sven Co-op\svencoop.exe
FirewallRules: [{CAB715AC-9337-4F54-A570-CB37B20EE1C8}] => D:\Games\steamapps\common\Sven Co-op\svencoop.exe
FirewallRules: [{25DCBABD-F84D-494F-8B5D-94DF63ACB7CC}] => D:\Games\steamapps\common\Sven Co-op\svends.exe
FirewallRules: [{2B9E5231-26D7-4984-B44B-27D74BB2AE6E}] => D:\Games\steamapps\common\Sven Co-op\svends.exe
FirewallRules: [{64E70844-6F7F-405F-97E5-444EA5496FAC}] => D:\Games\steamapps\common\Titan Quest Anniversary Edition\TQ.exe
FirewallRules: [{8FA52141-AAE1-41DD-8AE5-6FFEFA7A3923}] => D:\Games\steamapps\common\Titan Quest Anniversary Edition\TQ.exe
FirewallRules: [{F726556E-4144-4992-AFD0-19C3A9D1F9C7}] => D:\Games\steamapps\common\Titan Quest Anniversary Edition\WorkshopTool\TQWorkshopTool.exe
FirewallRules: [{98E4BC3B-B3DA-4221-A63D-966595A30DE9}] => D:\Games\steamapps\common\Titan Quest Anniversary Edition\WorkshopTool\TQWorkshopTool.exe
FirewallRules: [TCP Query User{28B8DD77-D842-4342-9520-26192623B835}D:\program files (x86)\warcraft iii\war3.exe] => D:\program files (x86)\warcraft iii\war3.exe
FirewallRules: [UDP Query User{55565983-7DEE-4916-ACE2-89FAE96B89A8}D:\program files (x86)\warcraft iii\war3.exe] => D:\program files (x86)\warcraft iii\war3.exe
FirewallRules: [{1B41F25D-8B7A-411C-B81F-9265D633244B}] => D:\Games\steamapps\common\Half-Life\hl.exe
FirewallRules: [{D3D656F5-EE66-4CFB-8E35-DAF478F0310A}] => D:\Games\steamapps\common\Half-Life\hl.exe
FirewallRules: [{DFABCADB-A2FF-46C6-9EC0-0846880A85DA}] => D:\Games\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{9EEB5177-62AC-4938-A022-5393D82069CF}] => D:\Games\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{CB597DD4-E665-46B6-9B5D-3F974FC0FFB3}] => D:\Games\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{559491D5-A344-467A-8C9E-2A61EE803598}] => D:\Games\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{62A5B4FE-36CA-4FB6-A10C-B5764709F967}] => D:\Games\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{15DB6A73-833F-4057-A51F-F7CDFE61395A}] => D:\Games\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{9C6F8DE9-C6A9-4AB6-A6F3-9D4A49768BC1}] => D:\Games\steamapps\common\Alien Isolation\AI.exe
FirewallRules: [{2CD09A9E-F7B0-4676-9957-2BD463724689}] => D:\Games\steamapps\common\Alien Isolation\AI.exe
FirewallRules: [TCP Query User{5AAF73DA-4081-45D3-AEA0-573F4BB9982D}C:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe] => C:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{E168B68B-57C6-4254-AA08-9F1B98C093CA}C:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe] => C:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2289018A-B90D-449C-BB51-4B0421EF90CE}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{FFE1B80E-32F9-453E-A01A-2D9D2E226BAC}] => %ProgramFiles% (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
FirewallRules: [{0B93C7D5-7654-4996-AF23-DD8E28224AD7}] => D:\Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{D8996F40-55D2-421B-995B-093161758F9A}] => D:\Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/01/2016 01:06:50 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

Error: (12/01/2016 12:59:51 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

Error: (12/01/2016 12:45:38 AM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

Error: (12/01/2016 12:45:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Exception code: 0xc0000005
Fault offset: 0x00037b59
Faulting process id: 0x75c
Faulting application start time: 0x01d24b63ce173036
Faulting application path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Faulting module path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Report Id: bfe6d82f-e1f7-48f1-80da-0350a7819693
Faulting package full name:
Faulting package-relative application ID:

Error: (12/01/2016 12:45:18 AM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe

Error: (12/01/2016 12:17:29 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Exception code: 0xc0000005
Fault offset: 0x00037b59
Faulting process id: 0xf34
Faulting application start time: 0x01d24b560cde6b30
Faulting application path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Faulting module path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Report Id: 39c0d0b9-ea96-4ba1-9709-dfaccfc6552d
Faulting package full name:
Faulting package-relative application ID:

Error: (11/30/2016 11:06:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Exception code: 0xc0000005
Fault offset: 0x00037b59
Faulting process id: 0x760
Faulting application start time: 0x01d24b50acc6ed02
Faulting application path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Faulting module path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Report Id: 02cf8822-a663-49e2-a6fb-0ae5311902e2
Faulting package full name:
Faulting package-relative application ID:

Error: (11/30/2016 10:28:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Exception code: 0xc0000005
Fault offset: 0x00037b59
Faulting process id: 0x2f8
Faulting application start time: 0x01d24b4997cca5c5
Faulting application path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Faulting module path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Report Id: 41a158db-30df-4524-8844-f2f5bc553fb2
Faulting package full name:
Faulting package-relative application ID:

Error: (11/30/2016 09:37:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Exception code: 0xc0000005
Fault offset: 0x00037b59
Faulting process id: 0x388
Faulting application start time: 0x01d24b3de60a12d3
Faulting application path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Faulting module path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Report Id: 2ee23d60-fe4f-4654-9070-a6ca2d9fe05d
Faulting package full name:
Faulting package-relative application ID:

Error: (11/30/2016 08:13:57 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe


System errors:
=============
Error: (11/23/2016 02:12:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (11/23/2016 02:12:53 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\DuhBoy\AppData\Local\Temp\ehdrv.sys

Error: (11/23/2016 02:12:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (11/23/2016 02:12:52 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\DuhBoy\AppData\Local\Temp\ehdrv.sys

Error: (11/23/2016 02:12:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (11/23/2016 02:12:52 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\DuhBoy\AppData\Local\Temp\ehdrv.sys

Error: (11/23/2016 02:12:52 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\DuhBoy\AppData\Local\Temp\ehdrv.sys

Error: (11/23/2016 02:12:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading

Error: (11/23/2016 02:12:52 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\DuhBoy\AppData\Local\Temp\ehdrv.sys

Error: (11/23/2016 02:12:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
This driver has been blocked from loading


CodeIntegrity:
===================================
Date: 2016-11-04 17:26:28.291
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-11-04 17:26:27.818
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-10-29 00:02:25.315
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-10-29 00:02:09.262
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-10-29 00:02:08.835
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-12 03:27:50.758
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Users\DuhBoy\AppData\Local\Temp\ALSysIO64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-12 03:27:50.749
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Users\DuhBoy\AppData\Local\Temp\ALSysIO64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-12 03:27:50.740
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Users\DuhBoy\AppData\Local\Temp\ALSysIO64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-12 03:27:50.731
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Users\DuhBoy\AppData\Local\Temp\ALSysIO64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-09-12 03:27:50.721
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Users\DuhBoy\AppData\Local\Temp\ALSysIO64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz
Percentage of memory in use: 32%
Total physical RAM: 8134.32 MB
Available physical RAM: 5527.9 MB
Total Virtual: 9414.32 MB
Available Virtual: 6250.34 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.24 GB) (Free:58.98 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:789.06 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 09836306)

Partition: GPT.

========================================================
Disk: 1 (Size: 111.8 GB) (Disk ID: 46192262)

Partition: GPT.

==================== End of Addition.txt ============================



Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-11-2016
Ran by DuhBoy (administrator) on DUHBOYKX (01-12-2016 13:09:05)
Running from C:\Users\DuhBoy\Downloads
Loaded Profiles: DuhBoy (Available Profiles: defaultuser0 & DuhBoy)
Platform: Windows 10 Pro Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8783616 2015-12-25] (Realtek Semiconductor)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8029576 2016-11-23] (Advanced Micro Devices, Inc.)
GroupPolicy: Restriction <======= ATTENTION
GroupPolicyScripts: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: 127.0.0.1 keystone.mwbsys.com
Tcpip\..\Interfaces\{f9f53f6f-3721-44da-a5be-1652421efa6f}: [NameServer] 77.78.192.20,94.140.66.194

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-2590114280-3335225030-2770196223-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-04] (Google Inc.)

Chrome:
=======
CHR StartupUrls: Default -> "hxxps://www.google.ba/"
CHR Profile: C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default [2016-12-01]
CHR Extension: (Poper Blocker) - C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2016-09-04]
CHR Extension: (uBlock Origin) - C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2016-10-27]
CHR Extension: (Chrome Web Store Payments) - C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-04]
CHR Extension: (Chrome Media Router) - C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-17]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 MBAMScheduler; D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
S2 MBAMService; D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0309114.inf_amd64_9133a0f6cb9c56bb\atikmdag.sys [26569872 2016-11-28] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0309114.inf_amd64_9133a0f6cb9c56bb\atikmpag.sys [529440 2016-11-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [110104 2016-09-28] (Advanced Micro Devices)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-30] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [943112 2016-11-18] (Realtek )
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-01 04:26 - 2016-12-01 04:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-12-01 02:42 - 2016-12-01 04:13 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\obs-studio
2016-12-01 02:42 - 2016-12-01 02:42 - 00001279 _____ C:\Users\Public\Desktop\OBS Studio.lnk
2016-12-01 02:42 - 2016-12-01 02:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2016-12-01 02:41 - 2016-12-01 02:41 - 00000000 ____D C:\Program Files (x86)\obs-studio
2016-11-30 20:12 - 2016-11-30 20:12 - 00019480 _____ C:\Users\DuhBoy\Documents\overclock the bass.mp3.sfk
2016-11-29 22:45 - 2016-11-30 16:30 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\DarkSoulsIII
2016-11-29 21:48 - 2016-11-29 21:48 - 00000745 _____ C:\Users\Public\Desktop\Dark Souls 3.lnk
2016-11-28 21:45 - 2016-11-28 21:45 - 01007640 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2016-11-28 21:45 - 2016-11-28 21:45 - 00121888 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-11-28 21:45 - 2016-11-28 21:45 - 00112664 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-11-28 21:45 - 2016-11-28 21:45 - 00029720 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2016-11-26 19:21 - 2016-11-26 19:21 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\SCE
2016-11-22 22:00 - 2016-11-22 22:00 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\UnrealEngine
2016-11-21 23:07 - 2016-11-22 01:00 - 00002242 _____ C:\Users\DuhBoy\Desktop\Discord.lnk
2016-11-21 23:07 - 2016-11-22 00:26 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\discord
2016-11-21 23:07 - 2016-11-21 23:07 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2016-11-21 23:07 - 2016-11-21 23:07 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\Discord
2016-11-21 22:41 - 2016-11-21 22:58 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\VEGAS
2016-11-21 02:30 - 2016-11-21 02:30 - 00001118 _____ C:\Users\Public\Desktop\Vegas Pro 14.0 (64-bit).lnk
2016-11-21 02:30 - 2016-11-21 02:30 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\VEGAS
2016-11-21 02:30 - 2016-11-21 02:30 - 00000000 ____D C:\ProgramData\VEGAS
2016-11-21 02:30 - 2016-11-21 02:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2016-11-21 02:30 - 2016-11-21 02:30 - 00000000 ____D C:\Program Files\VEGAS
2016-11-19 01:49 - 2016-11-19 01:49 - 00000482 _____ C:\Users\DuhBoy\Downloads\Fixlog.txt
2016-11-18 23:50 - 2016-12-01 04:26 - 00000000 ____D C:\Users\DuhBoy\AppData\LocalLow\AMD
2016-11-18 23:49 - 2016-11-18 23:49 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\ATI
2016-11-18 23:49 - 2016-11-18 23:49 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\ATI
2016-11-18 23:49 - 2016-11-18 23:49 - 00000000 ____D C:\ProgramData\ATI
2016-11-18 23:48 - 2016-11-21 22:41 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\AMD
2016-11-18 23:48 - 2016-11-18 23:48 - 00000000 ____D C:\Program Files (x86)\AMD
2016-11-18 23:47 - 2016-11-18 23:47 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-11-18 23:47 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-11-18 23:47 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-11-18 23:47 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-11-18 23:47 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-11-18 23:41 - 2016-12-01 04:25 - 00000000 ____D C:\AMD
2016-11-18 23:38 - 2016-11-18 23:38 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-11-18 23:38 - 2016-11-18 23:38 - 00000000 ____D C:\Program Files\Realtek
2016-11-18 23:38 - 2015-12-25 09:49 - 03299824 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2016-11-18 23:38 - 2015-12-25 09:49 - 02190992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2016-11-18 23:38 - 2015-12-25 09:49 - 02110592 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2016-11-18 23:38 - 2015-12-25 09:49 - 00888480 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2016-11-18 23:38 - 2015-12-25 09:49 - 00596120 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2016-11-18 23:38 - 2015-12-25 09:49 - 00224264 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2016-11-18 23:38 - 2015-12-25 09:49 - 00172584 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-11-18 23:38 - 2015-12-25 09:48 - 14057256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 13120760 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 12986528 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 10521552 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 06264640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2016-11-18 23:38 - 2015-12-25 09:48 - 05782384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 05338936 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 05289952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 04718336 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-11-18 23:38 - 2015-12-25 09:48 - 04710388 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-11-18 23:38 - 2015-12-25 09:48 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 03271912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 03152591 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2016-11-18 23:38 - 2015-12-25 09:48 - 03059608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 02894968 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-11-18 23:38 - 2015-12-25 09:48 - 02823280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 02697456 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 02437144 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 02030200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01959608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01928632 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01601944 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01435144 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01421104 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01382240 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01356504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01334384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01286152 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01211832 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01186168 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01164336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01008360 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 01003864 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00998032 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00965032 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00952984 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00933640 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00931624 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00923744 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00873472 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00716104 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00677672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00618192 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00589080 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2016-11-18 23:38 - 2015-12-25 09:48 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00514528 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00500560 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00471336 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00467168 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00448592 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00447728 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00428232 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00417024 _____ (TODO: <Company name>) C:\Windows\system32\HMUI.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00381416 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00371248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00369304 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00362056 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00361888 _____ C:\Windows\system32\HMClariFi.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00341160 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00341160 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00327456 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00310424 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00258504 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00221976 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00203336 _____ C:\Windows\system32\HMHVS.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00190432 _____ C:\Windows\system32\HMEQ.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00189912 _____ C:\Windows\system32\HMEQ_Voice.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00179088 _____ C:\Windows\system32\HMLimiter.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00158704 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00134200 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00105312 _____ C:\Windows\system32\audioLibVc.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00088320 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00075544 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2016-11-18 23:38 - 2015-12-25 09:48 - 00023696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-11-18 23:38 - 2015-10-13 14:14 - 02826832 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-11-18 21:04 - 2016-11-18 21:04 - 00795640 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
2016-11-18 21:04 - 2016-11-18 21:04 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-11-18 21:03 - 2016-11-18 21:03 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-11-18 21:00 - 2016-11-18 21:06 - 00000000 ____D C:\Program Files (x86)\IObit
2016-11-18 19:50 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2016-11-18 19:50 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2016-11-18 19:50 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2016-11-18 19:50 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2016-11-18 19:50 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2016-11-18 19:50 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2016-11-18 19:50 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2016-11-18 19:50 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2016-11-18 19:50 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2016-11-18 19:50 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2016-11-18 19:50 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2016-11-18 19:50 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2016-11-18 19:50 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2016-11-18 19:50 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2016-11-18 19:50 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2016-11-18 19:50 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2016-11-18 19:50 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2016-11-18 19:50 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2016-11-18 19:50 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2016-11-18 19:50 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2016-11-18 19:50 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2016-11-18 19:50 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2016-11-18 19:50 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2016-11-18 19:50 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2016-11-18 19:50 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2016-11-18 19:50 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2016-11-18 19:50 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2016-11-18 19:50 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2016-11-18 19:50 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2016-11-18 19:50 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2016-11-18 19:50 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2016-11-18 19:50 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2016-11-18 19:50 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2016-11-18 19:50 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2016-11-18 19:50 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2016-11-18 19:50 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2016-11-18 19:50 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2016-11-18 19:50 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2016-11-18 19:50 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2016-11-18 19:50 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2016-11-18 19:50 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2016-11-18 19:50 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2016-11-18 19:50 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2016-11-18 19:50 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2016-11-18 19:50 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2016-11-18 19:50 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2016-11-18 19:50 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2016-11-18 19:50 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2016-11-18 19:50 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2016-11-18 19:50 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2016-11-18 19:50 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2016-11-18 19:50 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2016-11-18 19:50 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2016-11-18 19:50 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2016-11-18 19:50 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2016-11-18 19:50 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2016-11-18 19:50 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2016-11-18 19:50 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2016-11-18 19:50 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2016-11-18 19:50 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2016-11-18 19:50 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2016-11-18 19:50 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2016-11-18 19:50 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2016-11-18 19:50 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2016-11-18 19:50 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2016-11-18 19:50 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2016-11-18 19:50 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2016-11-18 19:50 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2016-11-18 19:50 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2016-11-18 19:50 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2016-11-18 19:50 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2016-11-18 19:50 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2016-11-18 19:50 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2016-11-18 19:50 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2016-11-18 19:50 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2016-11-18 19:50 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2016-11-18 19:50 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2016-11-18 19:50 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2016-11-18 19:50 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2016-11-18 19:50 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2016-11-18 19:50 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2016-11-18 19:50 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2016-11-18 19:50 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2016-11-18 19:50 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2016-11-18 19:50 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2016-11-18 19:50 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2016-11-18 19:50 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2016-11-18 19:50 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2016-11-18 19:50 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2016-11-18 19:50 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2016-11-18 19:50 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2016-11-18 19:50 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2016-11-18 19:50 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2016-11-18 19:50 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2016-11-18 19:50 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2016-11-18 19:50 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2016-11-18 19:50 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2016-11-18 19:50 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2016-11-18 19:50 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2016-11-18 19:50 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2016-11-18 19:50 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2016-11-18 19:50 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2016-11-18 19:50 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2016-11-18 19:50 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2016-11-18 19:50 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2016-11-18 19:50 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2016-11-18 19:50 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2016-11-18 19:50 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2016-11-18 19:50 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2016-11-18 19:50 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2016-11-18 19:50 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2016-11-18 19:50 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2016-11-18 19:50 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2016-11-18 19:50 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2016-11-18 19:50 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2016-11-18 19:50 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2016-11-18 19:50 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2016-11-18 19:50 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2016-11-18 19:50 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2016-11-18 19:50 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2016-11-18 19:50 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2016-11-18 19:50 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2016-11-18 19:50 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2016-11-18 19:50 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2016-11-18 19:50 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2016-11-18 19:50 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2016-11-18 19:50 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2016-11-18 19:50 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2016-11-18 19:50 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2016-11-18 19:50 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2016-11-18 19:50 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2016-11-18 19:50 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2016-11-18 19:50 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2016-11-18 19:50 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2016-11-18 19:50 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2016-11-18 19:50 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2016-11-18 19:50 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2016-11-18 19:50 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2016-11-18 19:50 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2016-11-18 19:50 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2016-11-18 19:50 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2016-11-18 19:50 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2016-11-18 19:50 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2016-11-18 19:50 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2016-11-18 19:50 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2016-11-18 19:50 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2016-11-17 22:44 - 2016-11-18 23:43 - 00000000 ____D C:\Windows\LastGood
2016-11-16 21:47 - 2016-11-28 21:45 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2016-11-16 21:47 - 2016-11-28 21:45 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2016-11-16 21:47 - 2016-11-28 21:45 - 00901656 _____ (AMD) C:\Windows\system32\coinst_16.40.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00291352 _____ C:\Windows\system32\dgtrayicon.exe
2016-11-16 21:47 - 2016-11-28 21:45 - 00284696 _____ C:\Windows\system32\GameManager64.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00278552 _____ C:\Windows\system32\clinfo.exe
2016-11-16 21:47 - 2016-11-28 21:45 - 00277016 _____ C:\Windows\system32\hsa-thunk64.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00249376 _____ C:\Windows\SysWOW64\GameManager32.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00242712 _____ C:\Windows\SysWOW64\hsa-thunk.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00169504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00145944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00144408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00138784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00127000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00118296 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2016-11-16 21:47 - 2016-11-28 21:45 - 00029720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2016-11-16 21:47 - 2016-11-16 21:47 - 00901664 _____ (AMD) C:\Windows\system32\SET93B1.tmp
2016-11-16 21:47 - 2016-11-16 21:47 - 00249368 _____ C:\Windows\SysWOW64\SET9311.tmp
2016-11-16 21:47 - 2016-11-16 21:47 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2016-11-16 21:47 - 2016-11-16 21:47 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2016-11-16 21:47 - 2016-11-16 21:47 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2016-11-16 21:47 - 2016-11-16 21:47 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2016-11-16 21:47 - 2016-11-16 21:47 - 00149008 _____ C:\Windows\system32\samu_krnl_ci.sbin
2016-11-16 21:47 - 2016-11-16 21:47 - 00138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2016-11-16 21:47 - 2016-11-16 21:47 - 00118320 _____ C:\Windows\system32\kapp_ci.sbin
2016-11-16 21:47 - 2016-11-16 21:47 - 00113872 _____ C:\Windows\system32\kapp_si.sbin
2016-11-16 21:46 - 2016-11-28 21:45 - 09935896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdvlk64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 08075288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdvlk32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 02490392 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 02172952 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 01342488 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 01007640 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00854552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00761544 _____ C:\Windows\SysWOW64\atiapfxx.blb
2016-11-16 21:46 - 2016-11-28 21:45 - 00761544 _____ C:\Windows\system32\atiapfxx.blb
2016-11-16 21:46 - 2016-11-28 21:45 - 00688672 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00535584 _____ (AMD) C:\Windows\system32\atieclxx.exe
2016-11-16 21:46 - 2016-11-28 21:45 - 00475632 _____ C:\Windows\system32\amdmiracast.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00468000 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00411672 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2016-11-16 21:46 - 2016-11-28 21:45 - 00298528 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2016-11-16 21:46 - 2016-11-28 21:45 - 00239640 _____ C:\Windows\system32\atieah64.exe
2016-11-16 21:46 - 2016-11-28 21:45 - 00217624 _____ C:\Windows\SysWOW64\atieah32.exe
2016-11-16 21:46 - 2016-11-28 21:45 - 00210968 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00184856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00149640 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00137256 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00120384 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00120384 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00119832 _____ (AMD) C:\Windows\system32\atimuixx.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00110104 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00109080 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00102672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00102672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00098840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00096792 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00092184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00075800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2016-11-16 21:46 - 2016-11-28 21:45 - 00069144 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00257560 _____ C:\Windows\system32\amdgfxinfo64.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00230432 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00156248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00152096 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00135920 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00135408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2016-11-16 21:46 - 2016-11-28 21:44 - 00000144 _____ C:\Windows\SysWOW64\amd-vulkan32.json
2016-11-16 21:46 - 2016-11-28 21:44 - 00000144 _____ C:\Windows\system32\amd-vulkan64.json
2016-11-16 21:46 - 2016-11-16 21:46 - 00017671 _____ C:\Windows\system32\AMDKernelEvents.man
2016-11-11 13:10 - 2016-11-11 13:10 - 00000000 ____D C:\ProgramData\Codemasters
2016-11-10 20:38 - 2016-11-10 20:38 - 00000000 ____D C:\Windows\LastGood.Tmp
2016-11-09 16:09 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2016-11-09 16:09 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-11-09 16:09 - 2016-11-02 12:22 - 01570672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-11-09 16:09 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-11-09 16:09 - 2016-11-02 12:20 - 00590960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-11-09 16:09 - 2016-11-02 12:13 - 01883784 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-11-09 16:09 - 2016-11-02 12:13 - 00773720 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-11-09 16:09 - 2016-11-02 12:12 - 02255712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-11-09 16:09 - 2016-11-02 12:12 - 00376672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-11-09 16:09 - 2016-11-02 12:12 - 00341344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-11-09 16:09 - 2016-11-02 12:10 - 02323728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-11-09 16:09 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-11-09 16:09 - 2016-11-02 12:08 - 00576408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-11-09 16:09 - 2016-11-02 12:08 - 00186424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2016-11-09 16:09 - 2016-11-02 12:05 - 06657176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-11-09 16:09 - 2016-11-02 12:05 - 03892352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2016-11-09 16:09 - 2016-11-02 12:05 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-11-09 16:09 - 2016-11-02 12:05 - 00951904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2016-11-09 16:09 - 2016-11-02 12:05 - 00405856 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-11-09 16:09 - 2016-11-02 12:04 - 04312248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-11-09 16:09 - 2016-11-02 12:03 - 02750936 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-11-09 16:09 - 2016-11-02 12:03 - 00714592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2016-11-09 16:09 - 2016-11-02 12:02 - 00682816 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-11-09 16:09 - 2016-11-02 12:02 - 00238056 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2016-11-09 16:09 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-11-09 16:09 - 2016-11-02 12:01 - 01415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2016-11-09 16:09 - 2016-11-02 12:01 - 01263856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-11-09 16:09 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-11-09 16:09 - 2016-11-02 12:00 - 22223968 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-11-09 16:09 - 2016-11-02 12:00 - 08156080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-11-09 16:09 - 2016-11-02 12:00 - 01274712 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-11-09 16:09 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2016-11-09 16:09 - 2016-11-02 11:59 - 04673304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-11-09 16:09 - 2016-11-02 11:50 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2016-11-09 16:09 - 2016-11-02 11:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2016-11-09 16:09 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-11-09 16:09 - 2016-11-02 11:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-11-09 16:09 - 2016-11-02 11:47 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-11-09 16:09 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2016-11-09 16:09 - 2016-11-02 11:44 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2016-11-09 16:09 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll
2016-11-09 16:09 - 2016-11-02 11:43 - 00557568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2016-11-09 16:09 - 2016-11-02 11:42 - 00632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-11-09 16:09 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-11-09 16:09 - 2016-11-02 11:42 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2016-11-09 16:09 - 2016-11-02 11:42 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2016-11-09 16:09 - 2016-11-02 11:42 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2016-11-09 16:09 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-11-09 16:09 - 2016-11-02 11:40 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\indexeddbserver.dll
2016-11-09 16:09 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2016-11-09 16:09 - 2016-11-02 11:39 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-11-09 16:09 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-11-09 16:09 - 2016-11-02 11:37 - 19415040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2016-11-09 16:09 - 2016-11-02 11:37 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2016-11-09 16:09 - 2016-11-02 11:36 - 19415552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-11-09 16:09 - 2016-11-02 11:36 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2016-11-09 16:09 - 2016-11-02 11:36 - 00415744 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2016-11-09 16:09 - 2016-11-02 11:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2016-11-09 16:09 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-11-09 16:09 - 2016-11-02 11:33 - 03307520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-11-09 16:09 - 2016-11-02 11:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2016-11-09 16:09 - 2016-11-02 11:31 - 03196416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2016-11-09 16:09 - 2016-11-02 11:31 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-11-09 16:09 - 2016-11-02 11:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2016-11-09 16:09 - 2016-11-02 11:31 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2016-11-09 16:09 - 2016-11-02 11:31 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-11-09 16:09 - 2016-11-02 11:31 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-11-09 16:09 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 12175360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 09131008 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2016-11-09 16:09 - 2016-11-02 11:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 07469056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 03666432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkBindingEngineMigPlugin.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2016-11-09 16:09 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 06044160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 04423680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00690176 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\NetworkDesktopSettings.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-11-09 16:09 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 23677952 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-11-09 16:09 - 2016-11-02 11:27 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-11-09 16:09 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 02747392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00278016 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-11-09 16:09 - 2016-11-02 11:26 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2016-11-09 16:09 - 2016-11-02 11:25 - 02998272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2016-11-09 16:09 - 2016-11-02 11:25 - 01556480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-11-09 16:09 - 2016-11-02 11:25 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-11-09 16:09 - 2016-11-02 11:25 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2016-11-09 16:09 - 2016-11-02 11:24 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-11-09 16:09 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-11-09 16:09 - 2016-11-02 11:23 - 02104320 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2016-11-09 16:09 - 2016-11-02 11:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2016-11-09 16:09 - 2016-11-02 11:22 - 13441024 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-11-09 16:09 - 2016-11-02 11:22 - 13081600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-11-09 16:09 - 2016-11-02 11:22 - 04749312 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2016-11-09 16:09 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2016-11-09 16:09 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-11-09 16:09 - 2016-11-02 11:19 - 08127488 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-11-09 16:09 - 2016-11-02 11:19 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2016-11-09 16:09 - 2016-11-02 11:19 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2016-11-09 16:09 - 2016-11-02 11:19 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2016-11-09 16:09 - 2016-11-02 11:19 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2016-11-09 16:09 - 2016-11-02 11:19 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-11-09 16:09 - 2016-11-02 11:18 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-11-09 16:09 - 2016-11-02 11:18 - 00836608 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2016-11-09 16:09 - 2016-11-02 11:18 - 00779776 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2016-11-09 16:09 - 2016-11-02 11:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-11-09 16:09 - 2016-11-02 11:17 - 04746752 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-11-09 16:09 - 2016-11-02 11:17 - 01282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-11-09 16:09 - 2016-11-02 11:17 - 00909824 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-11-09 16:09 - 2016-11-02 11:17 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-11-09 16:09 - 2016-11-02 11:17 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 03400192 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 03133440 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 02688512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 02512384 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 01779712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 01637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 00629248 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2016-11-09 16:09 - 2016-11-02 11:16 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-11-09 16:09 - 2016-11-02 11:15 - 04708864 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-11-09 16:09 - 2016-11-02 11:15 - 02611200 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-11-09 16:09 - 2016-11-02 11:15 - 01513472 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-11-09 16:09 - 2016-11-02 11:15 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-11-09 16:09 - 2016-11-02 11:15 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2016-11-09 16:09 - 2016-11-02 11:14 - 01726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-11-09 16:09 - 2016-11-02 11:13 - 03496960 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-11-09 16:09 - 2016-11-02 09:20 - 00446896 _____ C:\Windows\system32\ApnDatabase.xml
2016-11-09 16:08 - 2016-11-02 12:20 - 00378720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-11-09 16:08 - 2016-11-02 12:15 - 01051112 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-11-09 16:08 - 2016-11-02 12:15 - 00894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-11-09 16:08 - 2016-11-02 12:14 - 07816544 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-11-09 16:08 - 2016-11-02 12:13 - 01354320 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-11-09 16:08 - 2016-11-02 12:13 - 01173496 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-11-09 16:08 - 2016-11-02 12:13 - 00423776 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2016-11-09 16:08 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-11-09 16:08 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2016-11-09 16:08 - 2016-11-02 12:05 - 20969928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-11-09 16:08 - 2016-11-02 12:04 - 02678056 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-11-09 16:08 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-11-09 16:08 - 2016-11-02 12:02 - 00848736 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-11-09 16:08 - 2016-11-02 12:02 - 00148832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-11-09 16:08 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-11-09 16:08 - 2016-11-02 12:01 - 00092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2016-11-09 16:08 - 2016-11-02 12:00 - 04130432 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2016-11-09 16:08 - 2016-11-02 12:00 - 01061968 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-11-09 16:08 - 2016-11-02 11:56 - 01609920 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-11-09 16:08 - 2016-11-02 11:56 - 01572768 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2016-11-09 16:08 - 2016-11-02 11:56 - 01418312 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-11-09 16:08 - 2016-11-02 11:56 - 00628552 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-11-09 16:08 - 2016-11-02 11:56 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2016-11-09 16:08 - 2016-11-02 11:55 - 00048992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\iorate.sys
2016-11-09 16:08 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-11-09 16:08 - 2016-11-02 11:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsext.dll
2016-11-09 16:08 - 2016-11-02 11:47 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-11-09 16:08 - 2016-11-02 11:47 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRHelper.dll
2016-11-09 16:08 - 2016-11-02 11:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
2016-11-09 16:08 - 2016-11-02 11:45 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2016-11-09 16:08 - 2016-11-02 11:45 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2016-11-09 16:08 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsensorgroup.dll
2016-11-09 16:08 - 2016-11-02 11:44 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-11-09 16:08 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2016-11-09 16:08 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-11-09 16:08 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FSClient.dll
2016-11-09 16:08 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-11-09 16:08 - 2016-11-02 11:42 - 00866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2016-11-09 16:08 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-11-09 16:08 - 2016-11-02 11:41 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-11-09 16:08 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2016-11-09 16:08 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-11-09 16:08 - 2016-11-02 11:38 - 22563840 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-11-09 16:08 - 2016-11-02 11:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetailsUpdate.dll
2016-11-09 16:08 - 2016-11-02 11:35 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-11-09 16:08 - 2016-11-02 11:34 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-11-09 16:08 - 2016-11-02 11:33 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-11-09 16:08 - 2016-11-02 11:32 - 00045056 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-11-09 16:08 - 2016-11-02 11:31 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\BcastDVRHelper.dll
2016-11-09 16:08 - 2016-11-02 11:31 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-11-09 16:08 - 2016-11-02 11:31 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2016-11-09 16:08 - 2016-11-02 11:30 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2016-11-09 16:08 - 2016-11-02 11:30 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2016-11-09 16:08 - 2016-11-02 11:30 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
2016-11-09 16:08 - 2016-11-02 11:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2016-11-09 16:08 - 2016-11-02 11:29 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-11-09 16:08 - 2016-11-02 11:29 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2016-11-09 16:08 - 2016-11-02 11:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-11-09 16:08 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-11-09 16:08 - 2016-11-02 11:28 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2016-11-09 16:08 - 2016-11-02 11:28 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.dll
2016-11-09 16:08 - 2016-11-02 11:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-11-09 16:08 - 2016-11-02 11:28 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2016-11-09 16:08 - 2016-11-02 11:27 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-11-09 16:08 - 2016-11-02 11:27 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2016-11-09 16:08 - 2016-11-02 11:26 - 01880576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2016-11-09 16:08 - 2016-11-02 11:26 - 01595392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-11-09 16:08 - 2016-11-02 11:26 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-11-09 16:08 - 2016-11-02 11:26 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-11-09 16:08 - 2016-11-02 11:25 - 02256384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-11-09 16:08 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-11-09 16:08 - 2016-11-02 11:25 - 00772608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-11-09 16:08 - 2016-11-02 11:25 - 00541696 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2016-11-09 16:08 - 2016-11-02 11:24 - 03778560 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-11-09 16:08 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-11-09 16:08 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2016-11-09 16:08 - 2016-11-02 11:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetailsUpdate.dll
2016-11-09 16:08 - 2016-11-02 11:22 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-11-09 16:08 - 2016-11-02 11:21 - 05111296 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-11-09 16:08 - 2016-11-02 11:20 - 02273792 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2016-11-09 16:08 - 2016-11-02 11:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2016-11-09 16:08 - 2016-11-02 11:19 - 08075776 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-11-09 16:08 - 2016-11-02 11:19 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-11-09 16:08 - 2016-11-02 11:18 - 01690112 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2016-11-09 16:08 - 2016-11-02 11:17 - 00982528 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-11-09 16:08 - 2016-11-02 11:16 - 04148736 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2016-11-09 16:08 - 2016-11-02 11:16 - 02669056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-11-09 16:08 - 2016-11-02 11:16 - 01490944 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-11-09 16:08 - 2016-11-02 11:16 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-11-09 16:08 - 2016-11-02 11:16 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-11-09 16:08 - 2016-11-02 11:15 - 03616768 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-11-09 16:08 - 2016-11-02 11:15 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-11-09 16:08 - 2016-11-02 11:13 - 03299840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-11-09 16:08 - 2016-11-02 11:13 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-11-09 16:08 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\SysWOW64\locale.nls
2016-11-09 16:08 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\system32\locale.nls
2016-11-09 16:08 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2016-11-03 11:50 - 2016-12-01 13:09 - 00007768 _____ C:\Users\DuhBoy\Downloads\FRST.txt
2016-11-03 11:50 - 2016-11-19 01:41 - 00031601 _____ C:\Users\DuhBoy\Downloads\Addition.txt
2016-11-01 04:01 - 2016-11-03 14:00 - 00000032 _____ C:\Users\DuhBoy\Documents\xd.txt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-01 13:09 - 2016-09-28 07:33 - 00000000 ____D C:\FRST
2016-12-01 13:09 - 2016-08-21 18:19 - 02411520 _____ (Farbar) C:\Users\DuhBoy\Downloads\FRST64.exe
2016-12-01 13:06 - 2016-08-09 18:10 - 00000000 ____D C:\Program Files (x86)\Steam
2016-12-01 13:05 - 2016-08-09 16:58 - 01848982 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-01 13:02 - 2016-09-14 03:48 - 00004156 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{25DA4746-5AA4-44A5-9C19-E6E75C7A10A8}
2016-12-01 12:59 - 2016-08-09 16:52 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-01 04:28 - 2016-08-13 20:01 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\CrashDumps
2016-12-01 04:28 - 2016-08-09 16:57 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2016-12-01 04:28 - 2016-07-16 12:45 - 00000000 ____D C:\Windows\INF
2016-12-01 04:28 - 2016-07-16 07:04 - 00262144 _____ C:\Windows\system32\config\BBI
2016-12-01 04:26 - 2016-10-20 23:18 - 00000000 ____D C:\Program Files\AMD
2016-12-01 04:10 - 2016-08-15 16:56 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\OBS
2016-11-30 19:47 - 2016-08-09 16:52 - 00000000 ____D C:\Windows\system32\SleepStudy
2016-11-30 04:11 - 2016-08-09 17:04 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-11-30 03:28 - 2016-08-09 17:05 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\qBittorrent
2016-11-28 18:59 - 2016-08-10 23:51 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\TeamViewer
2016-11-28 13:57 - 2016-08-09 18:10 - 00051784 _____ C:\Math results.rar
2016-11-25 23:13 - 2016-08-23 13:30 - 00000877 _____ C:\Users\DuhBoy\Desktop\League of Legends.lnk
2016-11-25 18:05 - 2016-08-09 23:54 - 00000000 ____D C:\Users\DuhBoy\Documents\My Games
2016-11-25 18:05 - 2016-08-09 18:19 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\vlc
2016-11-23 01:40 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\NDF
2016-11-22 20:54 - 2016-08-27 10:25 - 00000000 ____D C:\Users\DuhBoy\AppData\Local\Battle.net
2016-11-22 01:00 - 2016-09-16 15:20 - 00000909 _____ C:\Users\DuhBoy\Desktop\Handbrake.lnk
2016-11-22 01:00 - 2016-08-15 16:56 - 00001008 _____ C:\Users\DuhBoy\Desktop\Open Broadcaster Software.lnk
2016-11-21 02:30 - 2016-08-22 18:07 - 00000000 ____D C:\Users\DuhBoy\AppData\Roaming\Sony
2016-11-21 02:27 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\LiveKernelReports
2016-11-20 20:01 - 2016-10-03 12:38 - 00000000 __RHD C:\ESD
2016-11-20 20:01 - 2016-08-10 02:51 - 00000000 ____D C:\Windows\Panther
2016-11-20 16:41 - 2016-07-16 12:47 - 00000000 ___HD C:\Windows\ELAMBKUP
2016-11-20 05:07 - 2016-08-09 17:30 - 00000874 __RSH C:\ProgramData\ntuser.pol
2016-11-19 18:12 - 2016-08-22 13:43 - 00000111 _____ C:\Users\DuhBoy\Downloads\krampa pw user silver.txt
2016-11-18 23:48 - 2016-08-09 17:45 - 00004296 _____ C:\Windows\System32\Tasks\AMD Updater
2016-11-18 23:45 - 2016-08-09 17:34 - 00000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2016-11-18 23:38 - 2016-10-19 15:14 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-11-18 23:38 - 2016-10-19 15:14 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-11-18 23:38 - 2016-08-09 16:56 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-11-18 23:38 - 2016-08-09 16:56 - 00000000 ____D C:\Windows\system32\DAX2
2016-11-18 21:03 - 2016-08-09 18:04 - 00943112 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2016-11-18 21:00 - 2016-09-28 22:34 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2016-11-18 19:50 - 2016-08-09 16:57 - 00000000 ____D C:\ProgramData\Package Cache
2016-11-18 16:38 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\AppReadiness
2016-11-17 16:13 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-17 04:47 - 2016-08-09 17:10 - 00000735 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-11-16 21:47 - 2016-10-26 01:04 - 00901664 _____ (AMD) C:\Windows\system32\SETB606.tmp
2016-11-11 22:13 - 2016-09-04 22:42 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-11-11 22:13 - 2016-09-04 22:42 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-11-11 05:27 - 2016-08-09 16:55 - 00000000 ____D C:\Users\DuhBoy
2016-11-10 17:21 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\rescache
2016-11-10 16:27 - 2016-08-09 16:55 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-11-10 16:27 - 2016-08-09 16:52 - 00194192 _____ C:\Windows\system32\FNTCACHE.DAT
2016-11-10 05:14 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2016-11-10 05:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2016-11-10 05:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\oobe
2016-11-10 05:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\migwiz
2016-11-10 05:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\ShellExperiences
2016-11-10 05:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\bcastdvr
2016-11-09 20:37 - 2016-10-20 18:22 - 00901656 _____ (AMD) C:\Windows\system32\SETADC0.tmp
2016-11-09 20:37 - 2016-10-20 18:22 - 00249368 _____ C:\Windows\SysWOW64\SETAD1F.tmp
2016-11-09 20:37 - 2016-10-20 18:22 - 00029720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SETACCC.tmp
2016-11-09 17:23 - 2016-07-16 12:36 - 00000000 ____D C:\Windows\CbsTemp
2016-11-09 17:21 - 2016-08-10 17:37 - 00000000 ____D C:\Windows\system32\MRT
2016-11-09 17:20 - 2016-08-10 17:37 - 141011376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-11-03 19:40 - 2016-10-20 18:22 - 00901656 _____ (AMD) C:\Windows\system32\SET3D42.tmp
2016-11-03 19:40 - 2016-10-20 18:22 - 00249376 _____ C:\Windows\SysWOW64\SET3CA1.tmp
2016-11-03 13:55 - 2016-10-10 18:41 - 12336384 _____ (TeamViewer GmbH) C:\Users\DuhBoy\Downloads\TeamViewer_Setup.exe

==================== Files in the root of some directories =======

2016-11-18 21:04 - 2016-11-18 21:04 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-11-22 22:51

==================== End of FRST.txt ============================


and aswMBR:


aswMBR version 1.0.1.2290 Copyright(c) 2014 AVAST Software
Run date: 2016-12-01 13:18:57
-----------------------------
13:18:57.635 OS Version: Windows x64 6.2.9200
13:18:57.635 Number of processors: 4 586 0x5E03
13:18:57.636 ComputerName: DUHBOYKX UserName: DuhBoy
13:18:57.777 Initialize success
13:18:57.782 VM: initialized successfully
13:18:57.783 VM: Intel CPU BiosDisabled
13:20:25.080 AVAST engine defs: 16112901
13:24:43.670 Disk 0 \Device\Harddisk0\DR0 -> \Device\00000034
13:24:43.672 Disk 0 Vendor: WDC_WD10EZEX-00BN5A0 01.01A01 Size: 953869MB BusType: 11
13:24:43.674 Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\00000035
13:24:43.675 Disk 1 Vendor: KINGSTON_SHFS37A120G 605ABBF2 Size: 114473MB BusType: 11
13:24:43.686 Disk 1 MBR read successfully
13:24:43.688 Disk 1 MBR scan
13:24:43.690 Disk 1 unknown MBR code
13:24:43.692 Disk 1 Partition 1 00 EE GPT 2097151 MB offset 1
13:24:43.702 Disk 1 scanning C:\Windows\system32\drivers
13:24:46.295 Service scanning
13:24:53.960 Modules scanning
13:24:53.969 Disk 1 trace - called modules:
13:24:53.976 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll iaStorA.sys
13:24:53.979 1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0xffffe68b699f5060]
13:24:53.982 3 CLASSPNP.SYS[fffff80e88ee5efb] -> nt!IofCallDriver -> [0xffffe68b69190880]
13:24:53.984 5 ACPI.sys[fffff80e86eb4571] -> nt!IofCallDriver -> [0xffffe68b6918f6f0]
13:24:53.987 7 ACPI.sys[fffff80e86eb4571] -> nt!IofCallDriver -> \Device\00000035[0xffffe68b69197060]
13:24:54.162 AVAST engine scan C:\Windows
13:24:54.457 AVAST engine scan C:\Windows\system32
13:25:44.117 AVAST engine scan C:\Windows\system32\drivers
13:25:47.541 AVAST engine scan C:\Users\DuhBoy
13:25:54.154 AVAST engine scan C:\ProgramData
13:25:56.533 Disk 1 statistics 3482786/0/0 @ 82,87 MB/s
13:25:56.537 Scan finished successfully
13:27:16.757 Disk 1 MBR has been saved successfully to "C:\Users\DuhBoy\Desktop\MBR.dat"
13:27:16.759 The log file has been saved successfully to "C:\Users\DuhBoy\Desktop\aswMBR.txt"
 

jmarket

PCHF's Almighty Ruler
PCHF Owner
Support Team
Security Team
Jan 10, 2015
1,949
476
PCHF Bunker
pchelpforum.net
#3
While we wait for one of them, let's get you started with some scans.

Zoek Scan

Disable your antivirus prior to this scan.
Download Zoek
Save the file to your desktop.
Right click Zoek.exe and run as administrator. (XP Users double click)
Copy and paste the items in red below and paste them into Zoek.

createsrpoint;
emptyfolderscheck;delete
emptyclsid;
emptyalltemp;
ipconfig /flushdns;b
autoclean;


Now hit the run script button.
The log will appear after a reboot, also you can find it on the C: drive.
Post the log in your next reply.
 

TwiXxiN

PCHF Member
PCHF Member
Nov 30, 2016
7
3
23
#4
I think my pc is actually fine, i've seen other people logs from aswMBR and every single one has unknown mbr code, so i was just paranoid. But since u asked i can give you logs, i think i my pc is in a perfectly fine state.



Zoek.exe v5.0.0.1 Updated 19-September-2016
Tool run by DuhBoy on pet 02.12.2016. at 23:52:41,56.
Microsoft Windows 10 Pro 10.0.14393 x64
Running in: Normal Mode Internet Access Detected
Launched: D:\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

2.12.2016. 23:52:58 Zoek.exe System Restore Point Created Successfully.

==== Safe Boot Check ======================

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot]
Value AlternateShell is missing
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot]
Value AlternateShell is missing

==== Empty Folders Check ======================

C:\PROGRA~2\Windows Media Player deleted successfully
C:\PROGRA~2\COMMON~1\EAInstaller deleted successfully
C:\Program Files\Windows Media Player deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) deleted successfully
C:\PROGRA~3\regid.1986-12.com.adobe deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\Users\defaultuser0\AppData\LocalLow deleted successfully
C:\Users\defaultuser0\AppData\Local\VirtualStore deleted successfully
C:\Users\DuhBoy\AppData\Local\CrashDumps deleted successfully
C:\Users\DuhBoy\AppData\Local\PeerDistRepub deleted successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot]
"AlternateShell"="cmd.exe"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot]
"AlternateShell"="cmd.exe"

==== Batch Command(s) Run By Tool======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\Windows Media Player not found
C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) not found
C:\Users\DuhBoy\AppData\Roaming\discord deleted
C:\PROGRA~3\Package Cache deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Windows\Syswow64\SET3224.tmp deleted
C:\Windows\Syswow64\SET3277.tmp deleted
C:\Windows\Syswow64\SET39E1.tmp deleted
C:\Windows\Syswow64\SET3A34.tmp deleted
C:\Windows\Syswow64\SET3CA1.tmp deleted
C:\Windows\Syswow64\SET9311.tmp deleted
C:\Windows\Syswow64\SETACCC.tmp deleted
C:\Windows\Syswow64\SETAD1F.tmp deleted

==== Chromium Look ======================


uBlock₀ - DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm
Chrome Media Router - DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\DuhBoy\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\DuhBoy\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\DuhBoy\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\DuhBoy\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=193 folders=88 85065840 bytes)

==== Empty Temp Folders ======================

C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\DuhBoy\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0" deleted
"C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1" deleted
"C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2" deleted
"C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3" deleted
"C:\Users\DuhBoy\AppData\Local\Google\Chrome\User Data\Default\Cache\index" deleted

==== EOF on sub 03.12.2016. at 0:01:16,08 ======================
 

Malnutrition

Malnurished Mod
Moderator
Security Team
Malware Teacher
Jul 22, 2016
2,863
496
#5
Adware Cleaner Scan.

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.


JRT Scan.


Please download Junkware Removal Tool and save it on your desktop.



  • Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log is saved to your desktop and will automatically open.
  • Please post the JRT log.

Adware Removal Tool Scan.

Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.



Hit Ok.



Hit next make sure to leave all items checked, for removal.



The Program will close all open programs to complete the removal, so save any work and hit OK. Then hit OK after the removal process is complete, thenOK again to finish up. Post log generated by tool.



ZHP Scan.

Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.

2. Once you have started the program, you will need to click the scanner button.



The program will close all open browsers!
3. Once the scan is completed, the you will want to click the Repair button.



At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.
Copy and paste the report here in your next reply.

Security Check Scan.


  • Download Security Check to your desktop.
  • Right click it run as administrator.
  • When the program completes, the tool will automatically open a log file.
  • Please post that log here in your next post.
 

TwiXxiN

PCHF Member
PCHF Member
Nov 30, 2016
7
3
23
#6
I also scanned with eset online scanner, and anti malwarebytes, both didint find anything.
So here are the logs from programs u asked,
# AdwCleaner v6.040 - Logfile created 04/12/2016 at 21:24:28
# Updated on 02/12/2016 by Malwarebytes
# Database : 2016-12-04.1 [Server]
# Operating System : Windows 10 Pro (X64)
# Username : DuhBoy - DUHBOYKX
# Running from : D:\Downloads\adwcleaner_6.040.exe
# Mode: Scan
# Support : https://www.malwarebytes.com/support



***** [ Services ] *****

No malicious services found.


***** [ Folders ] *****

No malicious folders found.


***** [ Files ] *****

No malicious files found.


***** [ DLL ] *****

No malicious DLLs found.


***** [ WMI ] *****

No malicious keys found.


***** [ Shortcuts ] *****

No infected shortcut found.


***** [ Scheduled Tasks ] *****

No malicious task found.


***** [ Registry ] *****

No malicious registry entries found.


***** [ Web browsers ] *****

No malicious Firefox based browser items found.
No malicious Chromium based browser items found.

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [980 Bytes] - [04/12/2016 21:24:28]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1052 Bytes] ##########

a~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 10 Pro x64
Ran by DuhBoy (Administrator) on ned 04.12.2016. at 21:25:06,52
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ned 04.12.2016. at 21:25:54,08
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



~ ZHPCleaner v2016.12.4.209 by Nicolas Coolman (2016/12/04)
~ Run by DuhBoy (Administrator) (04/12/2016 21:33:42)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Repair
~ Report : C:\Users\DuhBoy\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\DuhBoy\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 14393)


---\\ Services (0)
~ No malicious or unnecessary items found.


---\\ Browser internet (0)
~ No malicious or unnecessary items found.


---\\ Hosts file (1)
~ The hosts file is legitimate (22)


---\\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.


---\\ Explorer ( File, Folder) (3)
MOVED file: C:\Windows\Installer\wix{3973721B-C2ED-4505-98B6-752897ECF2F1}.SchedServiceConfig.rmi =>.Superfluous.Empty
MOVED folder: C:\Windows\Installer\MSIE00B.tmp- =>.Superfluous.Empty
MOVED folder: C:\Windows\Installer\MSIF7E5.tmp- =>.Superfluous.Empty


---\\ Registry ( Key, Value, Data) (5)
DELETED key*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\atwola.com [] =>.Superfluous.Atwola
DELETED key*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ol.at.atwola.com [] =>.Superfluous.Atwola
DELETED key*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\atwola.com [] =>.Superfluous.Atwola
DELETED key*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ol.at.atwola.com [211] =>.Superfluous.Atwola
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\CscService [] =>.Superfluous.PCSpeedUp


---\\ Summary of the elements found (3)
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Empty
https://www.anti-malware.top/2016/07/21/superfluous-atwola/ =>.Superfluous.Atwola
https://www.nicolascoolman.com/fr/superfluous-pcspeeduppro/ =>.Superfluous.PCSpeedUp


---\\ Other deletions. (26)
~ Registry Keys Tracing deleted (26)
~ Remove the old reports ZHPCleaner. (0)


---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Mozilla Firefox)
~ Browser not found (Opera Software)


---\\ Statistics
~ Items scanned : 291
~ Items found : 0
~ Items cancelled : 0
~ Items repaired : 8


~ End of clean in 00h00mn08s

Other adwcleaner didin't find anything, also not sure why are there lines in this text below..

~====================
ZHPCleaner-[R]-04122016-21_33_50.txt
ZHPCleaner--04122016-21_32_54.txt


SecurityCheck by glax24 & Severnyj v.1.4.0.46 [22.09.16]
WebSite: www.safezone.cc
DateLog: 04.12.2016 21:35:07
Path starting: C:\Users\DuhBoy\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: DuhBoy
VersionXML: 3.58is-03.12.2016
___________________________________________________________________________

Windows 10(6.3.14393) (x64) Professional Lang: English(0409)
Installation date OS: 09.08.2016 15:54:39
LicenseStatus: Windows(R), Professional edition Windows is in Notification mode
Boot Mode: Normal
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
SystemDrive: C: FS: [NTFS] Capacity: [111.2 Gb] Used: [51.9 Gb] Free: [59.3 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.447.14393.0
User Account Control enabled
The elevation prompt for administrators disabled
^It is recommended to enable: Win+R typing UserAccountControlSettings and Enter^

Windows Update (wuauserv) - The service has stopped
Security Center (wscsvc) - The service is running
Remote Registry (RemoteRegistry) - The service has stopped
SSDP Discovery (SSDPSRV) - The service is running
Remote Desktop Services (TermService) - The service has stopped
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
---------------------------- [ Antivirus_WMI ] ----------------------------
Windows Defender (disabled)
--------------------------- [ FirewallWindows ] ---------------------------
Windows Firewall (MpsSvc) - The service is running
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (disabled and up to date)
-------------------------- [ SecurityUtilities ] --------------------------
Malwarebytes Anti-Malware version 2.2.1.1043 v.2.2.1.1043
--------------------------- [ OtherUtilities ] ----------------------------
VLC media player v.2.2.4
WinRAR 5.40 (64-bit) v.5.40.0
--------------------------------- [ P2P ] ---------------------------------
------------------------------- [ Browser ] -------------------------------
Google Chrome v.55.0.2883.75
--------------------------- [ RunningProcess ] ----------------------------
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe v.55.0.2883.75
------------------ [ AntivirusFirewallProcessServices ] -------------------
MBAMScheduler (MBAMScheduler) - The service has stopped
MBAMService (MBAMService) - The service has stopped
Windows Defender Service (WinDefend) - The service has stopped
Windows Defender Network Inspection Service (WdNisSvc) - The service has stopped
----------------------------- [ End of Log ] ------------------------------
 
Last edited by a moderator:

Malnutrition

Malnurished Mod
Moderator
Security Team
Malware Teacher
Jul 22, 2016
2,863
496
#7
Your machine appears to be in great shape. No need for anything more to be done here. :)

Glad to have helped!! Please tell a friend ...... or two about us.


suggest the following in place of adblock.
Alternate DNS Server. Ad Blocking DNS.
Ublock Origin.
Anti Ad Block Killer.



Also, keep your browsing private with these tools:

Self Destructing Cookies.
Self Destructing Cookies Chrome.



Some items to keep you safe on the internet.


VooDoo Shield. control of what is running on your machine
Qualys BrowserCheck
To update plugins.
Web Of Trust To Avoid Shady Websites.
Unchecky To Avoid Bundled Software.
Privazer To Clean up your mahcine.



Now Lets Clean up the tools we used and remove old restore points.



Download DelFix by "Xplode" to your Desktop.
Right Click the tool and Run as Admin ( Xp Users Double Click)
Put a check mark next the items below:


Remove disinfection tools
Create registry backup
Purge System Restore




Now click on "Run" button.
allow the program to complete its work.
all the tools we used will be removed.
Tool will create and open a log report (DelFix.txt)
Note: The report can be located at the following location C:\DelFix.txt
 

Malnutrition

Malnurished Mod
Moderator
Security Team
Malware Teacher
Jul 22, 2016
2,863
496
#9
Thanks for taking the time and following up on the thread, much appreciated. Also, if you know of anyone that is in need of any type of computer help, please send them our way. We are fairly new and trying to get the word out about the site. :)
 
Likes: TwiXxiN
Status
Not open for further replies.