HKLM-x32\...\Run: [] => [X] S2 gzserv; "E:\Programs\Bitdefender\Antivirus Free Edition\gzserv.exe" /service [X] S2 TomTomHOMEService; "E:\Programs\TomTom\TomTom HOME 2\TomTomHOMEService.exe" [X] S0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [0 2017-06-02] () <==== ATTENTION (zero byte File/Folder) S3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [84256 2017-06-02] (Malwarebytes) S1 bdfwfpf; \??\E:\Programs\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [X] C:\Users\Brandon\AccessibleMarshal.dll C:\Users\Brandon\breakpadinjector.dll C:\Users\Brandon\crashreporter.exe C:\Users\Brandon\D3DCompiler_43.dll C:\Users\Brandon\d3dcompiler_46.dll C:\Users\Brandon\freebl3.dll C:\Users\Brandon\gkmedias.dll C:\Users\Brandon\icudt52.dll C:\Users\Brandon\icuin52.dll C:\Users\Brandon\icuuc52.dll C:\Users\Brandon\libEGL.dll C:\Users\Brandon\libGLESv2.dll C:\Users\Brandon\maintenanceservice.exe C:\Users\Brandon\maintenanceservice_installer.exe C:\Users\Brandon\mozalloc.dll C:\Users\Brandon\mozglue.dll C:\Users\Brandon\mozjs.dll C:\Users\Brandon\msvcp100.dll C:\Users\Brandon\msvcr100.dll C:\Users\Brandon\nss3.dll C:\Users\Brandon\nssckbi.dll C:\Users\Brandon\nssdbm3.dll C:\Users\Brandon\plugin-container.exe C:\Users\Brandon\plugin-hang-ui.exe C:\Users\Brandon\sandboxbroker.dll C:\Users\Brandon\softokn3.dll C:\Users\Brandon\updater.exe C:\Users\Brandon\webapp-uninstaller.exe C:\Users\Brandon\webapprt-stub.exe C:\Users\Brandon\xul.dll 2013-01-02 17:20 - 2013-01-02 17:20 - 0726016 _____ (Igor Pavlov) C:\Users\Brandon\AppData\Local\Temp\7z.dll 2013-01-02 17:20 - 2013-01-02 17:20 - 0150016 _____ (Igor Pavlov) C:\Users\Brandon\AppData\Local\Temp\7z.exe 2015-05-04 14:53 - 2009-02-03 22:54 - 0180072 _____ (Autodesk, Inc.) C:\Users\Brandon\AppData\Local\Temp\AcDeltree.exe 2014-02-27 14:17 - 2014-02-27 14:17 - 4275176 _____ (Cyanogen Inc.) C:\Users\Brandon\AppData\Local\Temp\CMInstaller.exe 2013-01-02 17:20 - 2013-01-02 17:20 - 0023477 _____ () C:\Users\Brandon\AppData\Local\Temp\dtkill.exe 2016-07-16 08:41 - 2016-07-16 08:41 - 0066048 _____ () C:\Users\Brandon\AppData\Local\Temp\Execute2App.exe 2013-01-02 17:20 - 2013-01-02 17:20 - 0006656 _____ (doubleTwist Corperation) C:\Users\Brandon\AppData\Local\Temp\Executor.exe 2014-08-19 19:33 - 2014-08-19 19:33 - 0196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna3331048959227794072.dll 2014-08-06 19:10 - 2014-08-06 19:10 - 0196608 ____N (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna3590783495630147185.dll 2014-08-16 18:40 - 2014-08-16 18:40 - 0196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna3861844926393988562.dll 2014-07-02 18:34 - 2014-07-02 18:34 - 0196608 ____N (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna389281791026334889.dll 2014-08-20 18:51 - 2014-08-20 18:51 - 0196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna5204569783580989330.dll 2014-08-20 18:30 - 2014-08-20 18:30 - 0196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna5289058322037699713.dll 2014-07-15 17:11 - 2014-07-15 17:11 - 0196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna6205619707160430971.dll 2014-07-13 14:35 - 2014-07-13 14:35 - 0196608 _____ (Java(TM) Native Access (JNA)) C:\Users\Brandon\AppData\Local\Temp\jna6729741610641391075.dll 2016-07-25 05:58 - 2016-07-25 05:58 - 0741440 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u101-windows-au.exe 2017-01-22 08:41 - 2017-01-22 08:41 - 0739904 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u121-windows-au.exe 2017-04-23 07:41 - 2017-04-23 07:41 - 0739904 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u131-windows-au.exe 2014-08-20 21:51 - 2014-08-20 21:51 - 0640424 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u20-windows-au.exe 2015-01-21 22:50 - 2015-01-21 22:50 - 0641448 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u31-windows-au.exe 2015-03-04 22:51 - 2015-03-13 21:51 - 0561576 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u40-windows-au.exe 2015-05-01 21:51 - 2015-05-01 21:51 - 0562272 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u45-windows-au.exe 2015-10-24 13:53 - 2015-10-24 13:53 - 0585824 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u65-windows-au.exe 2016-02-08 06:58 - 2016-02-08 06:58 - 0736352 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u73-windows-au.exe 2016-03-28 05:59 - 2016-03-28 05:59 - 0736320 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u77-windows-au.exe 2016-06-27 05:58 - 2016-06-27 05:58 - 0739904 _____ (Oracle Corporation) C:\Users\Brandon\AppData\Local\Temp\jre-8u91-windows-au.exe 2014-08-12 08:53 - 2012-09-27 09:15 - 0865424 ____N (CANON INC.) C:\Users\Brandon\AppData\Local\Temp\MSETUP4.EXE 2016-07-16 08:41 - 2013-10-17 14:39 - 0568832 _____ (Microsoft Corporation) C:\Users\Brandon\AppData\Local\Temp\msvcp90.dll 2016-07-16 08:41 - 2013-10-17 14:39 - 0655872 _____ (Microsoft Corporation) C:\Users\Brandon\AppData\Local\Temp\msvcr90.dll 2015-05-18 14:16 - 2016-08-11 03:23 - 0745904 _____ (NVIDIA Corporation) C:\Users\Brandon\AppData\Local\Temp\nvSCPAPI.dll 2015-05-18 14:16 - 2015-10-02 18:18 - 0835592 _____ (NVIDIA Corporation) C:\Users\Brandon\AppData\Local\Temp\nvSCPAPI64.dll 2015-10-08 15:46 - 2015-10-02 18:18 - 0478360 _____ (NVIDIA Corporation) C:\Users\Brandon\AppData\Local\Temp\nvStereoApiI64.dll 2015-05-18 14:15 - 2016-08-11 03:22 - 0347192 _____ (NVIDIA Corporation) C:\Users\Brandon\AppData\Local\Temp\nvStInst.exe 2015-03-25 19:40 - 2015-03-25 19:40 - 45209696 _____ (Skype Technologies S.A.) C:\Users\Brandon\AppData\Local\Temp\SkypeSetup.exe 2016-10-14 08:14 - 2016-10-14 08:14 - 0000000 ____D () C:\Users\Brandon\AppData\Local\Temp\SynciosDeviceService.exe 2014-06-16 17:33 - 2012-07-27 00:52 - 0353944 ____R (CANON INC.) C:\Users\Brandon\AppData\Local\Temp\uninstall.exe 2015-07-16 19:55 - 2015-07-16 19:55 - 0065280 _____ () C:\Users\Brandon\AppData\Local\Temp\utils.dll 2013-04-23 14:15 - 2013-04-23 14:15 - 4995416 _____ (Microsoft Corporation) C:\Users\Brandon\AppData\Local\Temp\vcredist_x86-2010.exe 2013-01-02 17:20 - 2013-01-02 17:20 - 6560088 _____ (Microsoft Corporation) C:\Users\Brandon\AppData\Local\Temp\vcredist_x86-2012.exe Emptytemp: