Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19.04.2018 Ran by SYSTEM on MININT-T24HVAI (22-04-2018 09:18:41) Running from E:\ Platform: Windows 10 Pro Version 1709 16299.125 (X64) Language: English (United States) Internet Explorer Version 11 Boot Mode: Recovery Default: ControlSet001 [b]ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.[/b] Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17987704 2017-10-19] (Logitech Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880 2018-01-05] (Adobe Systems, Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation) HKLM-x32\...\Run: [Kraken0502Launcher] => C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe [1598920 2017-06-29] (Razer Inc) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2409936 2018-02-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596664 2017-08-30] (Razer Inc.) HKU\Nicolas Mazzon\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3199776 2018-04-02] (Valve Corporation) HKU\Nicolas Mazzon\...\Run: [Spotify] => C:\Users\Nicolas Mazzon\AppData\Roaming\Spotify\Spotify.exe [22454160 2018-03-29] (Spotify Ltd) HKU\Nicolas Mazzon\...\Run: [GameDog] => "C:\Program Files (x86)\GameDog\GameDog.exe" /StartMinimized HKU\Nicolas Mazzon\...\Run: [WallpaperEngine] => C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe [1370600 2018-04-01] () HKU\Nicolas Mazzon\...\Run: [AdobeBridge] => [X] HKU\Nicolas Mazzon\...\Run: [Discord] => C:\Users\Nicolas Mazzon\AppData\Local\Discord\app-0.0.300\Discord.exe [57821176 2018-01-08] (Discord Inc.) HKU\Nicolas Mazzon\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10257872 2018-01-09] (Piriform Ltd) HKU\Nicolas Mazzon\...\Run: [Spotify Web Helper] => C:\Users\Nicolas Mazzon\AppData\Roaming\Spotify\SpotifyWebHelper.exe [782736 2018-03-29] (Spotify Ltd) HKU\Nicolas Mazzon\...\RunOnce: [Application Restart #0] => C:\Users\Nicolas Mazzon\AppData\Roaming\Spotify\Spotify.exe [22454160 2018-03-29] (Spotify Ltd) HKU\Nicolas Mazzon\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592 2018-03-19] (Google Inc.) Startup: C:\Users\Nicolas Mazzon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Voicemeeter (VB-Audio).LNK [2018-02-26] ShortcutTarget: Voicemeeter (VB-Audio).LNK -> C:\Program Files (x86)\VB\Voicemeeter\voicemeeter.exe (VB-AUDIO Software) ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) "HKLM\System\ControlSet001\Services\skcpdav" => removed successfully C:\Windows\System32\drivers\snhbehko.sys => moved successfully C:\Users\Nicolas Mazzon\AppData\Local\exhowrp\exhowrp.exe => moved successfully C:\Users\Nicolas Mazzon\AppData\Local\exhowrp\usrxzme.exe => moved successfully C:\Users\Nicolas Mazzon\AppData\Local\rtbcank\exarcit.exe => moved successfully S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-02-14] (Adobe Systems Incorporated) S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\2.00.06\atkexComSvc.exe [411456 2017-11-23] (ASUSTeK Computer Inc.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7603408 2018-04-03] (AVAST Software) S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [313640 2018-04-03] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2018-03-26] () S2 ImDskSvc; C:\Windows\system32\imdsksvc.exe [19552 2015-12-14] (Olof Lagerkvist) S2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation) S2 LightingService; C:\Program Files (x86)\LightingService\1.00.35\LightingService.exe [1224664 2017-11-24] (ASUSTek Computer Inc.) S2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-10-19] (Logitech Inc.) S2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-23] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-23] (NVIDIA Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-12-13] (Microsoft Corporation) S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11293936 2018-04-03] (TeamViewer GmbH) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [142440 2017-12-14] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) S2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 S2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 amdgpio2; C:\Windows\System32\drivers\amdgpio2.sys [34696 2017-10-10] (Advanced Micro Devices, Inc) S3 amdgpio3; C:\Windows\System32\drivers\amdgpio3.sys [33144 2017-10-16] (Advanced Micro Devices, Inc) S3 amdkmcsp; C:\Windows\system32\DRIVERS\amdkmcsp.sys [95080 2017-06-12] (Advanced Micro Devices, Inc. ) S3 AMDPCIDev; C:\Windows\System32\drivers\AMDPCIDev.sys [31592 2018-03-06] (Advanced Micro Devices) S0 amdpsp; C:\Windows\System32\drivers\amdpsp.sys [137104 2017-11-07] (Advanced Micro Devices, Inc. ) S2 AMDRyzenMasterDriver; C:\Program Files\AMD\RyzenMaster\bin\AMDRyzenMasterDriver.sys [70304 2017-11-16] (Advanced Micro Devices) S1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2017-11-23] () S2 AWEAlloc; C:\Windows\system32\DRIVERS\awealloc.sys [21048 2015-12-14] (Olof Lagerkvist) S3 BEDaisy; C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys [1832880 2018-04-09] () S3 CMUSBDAC; C:\Windows\system32\DRIVERS\CMUSBDAC.sys [3792904 2016-11-30] (C-MEDIA) S3 cpuz139; C:\Users\Nicolas Mazzon\AppData\Local\Temp\cpuz139\cpuz139_x64.sys [43312 2018-04-20] (CPUID) <==== ATTENTION S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) S3 e1rexpress; C:\Windows\system32\DRIVERS\e1r65x64.sys [540112 2016-07-29] (Intel Corporation) S3 GLCKIO; C:\Program Files (x86)\ASUS\AURA\690b33e1-0462-4e84-9bea-c7552b45432a.sys [14976 2018-04-14] () S2 ImDisk; C:\Windows\system32\DRIVERS\imdisk.sys [48704 2015-12-14] (Olof Lagerkvist) S2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) S3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [67736 2017-10-19] (Logitech Inc.) S1 lpsport; C:\Windows\System32\Drivers\lpsport.sys [61304 2018-04-03] () S3 netr28ux; C:\Windows\System32\drivers\netr28ux.sys [2224128 2017-09-29] (MediaTek Inc.) S3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvrfi.inf_amd64_feeae1f6d39029e5\nvlddmkm.sys [17544792 2018-03-25] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-03-23] (NVIDIA Corporation) S3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [59240 2017-12-14] (NVIDIA Corporation) S3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [58816 2018-03-15] (NVIDIA Corporation) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2016-10-24] () S3 RtsUpx; C:\Windows\system32\drivers\RtsUpx.sys [30328 2018-02-26] (Realtek Semiconductor Corp.) S3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [52240 2016-10-30] (Razer Inc) S3 rzvkeyboard; C:\Windows\System32\drivers\rzvkeyboard.sys [44048 2016-10-30] (Razer Inc) S3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Nefarius Software Solutions) S3 smbdirect; C:\Windows\System32\DRIVERS\smbdirect.sys [151552 2017-09-29] (Microsoft Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S3 VBAudioVACMME; C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Windows (R) Win 7 DDK provider) S3 VBAudioVMVAIOMME; C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2018-02-26] (Windows (R) Win 7 DDK provider) S3 vjoy; C:\Windows\System32\drivers\vjoy.sys [57976 2017-04-06] (Shaul Eizikovich) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) S0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) S1 aswArPot; system32\drivers\aswArPot.sys [X] S1 aswbidsdriver; system32\drivers\aswbidsdrivera.sys [X] S0 aswbidsh; system32\drivers\aswbidsha.sys [X] S0 aswblog; system32\drivers\aswbloga.sys [X] S0 aswbuniv; system32\drivers\aswbuniva.sys [X] S3 aswHwid; system32\drivers\aswHwid.sys [X] S2 aswMonFlt; system32\drivers\aswMonFlt.sys [X] S1 aswRdr; system32\drivers\aswRdr2.sys [X] S0 aswRvrt; system32\drivers\aswRvrt.sys [X] S1 aswSnx; system32\drivers\aswSnx.sys [X] S1 aswSP; system32\drivers\aswSP.sys [X] S2 aswStm; system32\drivers\aswStm.sys [X] S0 aswVmm; system32\drivers\aswVmm.sys [X] S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-04-21 14:43 - 2018-04-21 14:43 - 000015644 _____ C:\Users\Nicolas Mazzon\Documents\ree.ini 2018-04-21 10:47 - 2018-04-21 10:47 - 000015652 _____ C:\Users\Nicolas Mazzon\Documents\nospread.ini 2018-04-21 10:47 - 2018-04-21 10:47 - 000015650 _____ C:\Users\Nicolas Mazzon\Documents\scout.ini 2018-04-21 10:47 - 2018-04-21 10:47 - 000015642 _____ C:\Users\Nicolas Mazzon\Documents\auto.ini 2018-04-21 10:47 - 2018-04-21 10:47 - 000015621 _____ C:\Users\Nicolas Mazzon\Documents\awp.ini 2018-04-21 10:28 - 2018-04-21 13:16 - 000000044 _____ C:\ssn.set 2018-04-21 10:28 - 2018-04-21 13:16 - 000000006 _____ C:\vr.set 2018-04-21 10:28 - 2018-04-21 13:16 - 000000002 _____ C:\hid.set 2018-04-21 07:16 - 2018-04-21 07:16 - 000062976 _____ () C:\Users\Nicolas Mazzon\Downloads\JunkCodeGenerator.exe 2018-04-21 06:55 - 2018-04-21 06:55 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\exodus-eden 2018-04-21 06:54 - 2018-04-21 06:54 - 075760440 _____ (Exodus Movement Inc) C:\Users\Nicolas Mazzon\Downloads\exodus-eden-windows-x64-1.49.0.exe 2018-04-21 04:23 - 2018-04-21 04:23 - 005800224 _____ (Enigma Software Group USA, LLC.) C:\Users\Nicolas Mazzon\Downloads\SpyHunter-Installer.exe 2018-04-20 12:59 - 2018-04-20 12:59 - 001235408 _____ (GridinSoft LLC) C:\Users\Nicolas Mazzon\Downloads\setup.exe 2018-04-20 12:58 - 2018-04-20 12:58 - 068724528 _____ (Malwarebytes ) C:\Users\Nicolas Mazzon\Downloads\mb3-setup-SEM100.SEM100-3.4.4.2398-1.0.322-1.0.4190.exe 2018-04-20 12:26 - 2018-04-20 12:26 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\VirtualStore 2018-04-19 16:32 - 2018-04-19 16:32 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2018-04-19 16:16 - 2018-04-19 16:16 - 000255928 _____ (Malwarebytes) C:\Windows\System32\Drivers\566591B5.sys 2018-04-18 14:44 - 2018-04-18 14:44 - 000255928 _____ (Malwarebytes) C:\Windows\System32\Drivers\4715F14F.sys 2018-04-18 14:25 - 2018-04-18 14:44 - 000000000 ____D C:\ESD 2018-04-18 14:24 - 2018-04-18 14:24 - 018617536 _____ (Microsoft Corporation) C:\Users\Nicolas Mazzon\Downloads\MediaCreationTool.exe 2018-04-18 14:24 - 2018-04-18 14:24 - 000000000 ___HD C:\$Windows.~WS 2018-04-18 14:24 - 2018-04-18 14:24 - 000000000 ____D C:\$WINDOWS.~BT 2018-04-18 14:15 - 2018-04-22 05:16 - 000000000 ____D C:\FRST 2018-04-18 14:11 - 2018-04-18 14:12 - 000000000 ____D C:\AdwCleaner 2018-04-18 14:11 - 2018-04-18 14:11 - 007256272 _____ (Malwarebytes) C:\Users\Nicolas Mazzon\Downloads\adwcleaner_7.1.0.0.exe 2018-04-18 14:08 - 2018-04-20 12:28 - 000000000 ____D C:\ProgramData\Malwarebytes 2018-04-18 14:08 - 2018-04-18 14:08 - 073324664 _____ (Malwarebytes ) C:\Users\Nicolas Mazzon\Downloads\mb3-setup-consumer-3.4.5.2467-1.0.342-1.0.4778.exe 2018-04-18 14:08 - 2018-04-18 14:08 - 000000000 ____D C:\Program Files\Malwarebytes 2018-04-14 17:11 - 2018-04-14 17:11 - 001084408 _____ C:\Users\Nicolas Mazzon\Downloads\8HroEEkA71eK4BB0eU2.exe 2018-04-14 08:50 - 2018-04-14 08:50 - 041298736 _____ C:\Users\Nicolas Mazzon\Downloads\HourBoostr-3.2.1.zip 2018-04-14 08:50 - 2018-04-14 08:50 - 000000000 ____D C:\Users\Nicolas Mazzon\Desktop\HourBoostr-3.2.1 2018-04-14 08:37 - 2018-04-14 08:37 - 000193024 _____ C:\Users\Nicolas Mazzon\Downloads\spo_activate.exe 2018-04-14 08:37 - 2018-01-09 18:08 - 000003087 _____ C:\Windows\System32\Drivers\etc\hosts.smef 2018-04-14 08:33 - 2018-04-14 08:33 - 000216064 _____ C:\Users\Nicolas Mazzon\Downloads\win_activate.exe 2018-04-14 07:40 - 2018-04-14 07:40 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\ElevatedDiagnostics 2018-04-13 14:44 - 2018-04-13 14:44 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\monero-project 2018-04-13 14:44 - 2018-04-13 14:44 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\cache 2018-04-13 14:44 - 2018-04-13 14:44 - 000000000 ____D C:\ProgramData\.shared-ringdb 2018-04-13 14:43 - 2018-04-13 14:44 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\monero-gui-v0.12.0.0 2018-04-13 14:43 - 2018-04-13 14:43 - 000000844 _____ C:\Users\Nicolas Mazzon\Desktop\monero wallet.lnk 2018-04-13 14:42 - 2018-04-13 14:43 - 113437678 _____ C:\Users\Nicolas Mazzon\Downloads\monero-gui-win-x64-v0.12.0.0.zip 2018-04-13 14:29 - 2018-04-13 14:29 - 011485449 _____ C:\Users\Nicolas Mazzon\Downloads\xmr-stak-win64.zip 2018-04-13 11:59 - 2018-04-21 07:20 - 000000000 ____D C:\Users\Nicolas Mazzon\Desktop\Indawoods 1.2 2018-04-12 15:26 - 2018-04-12 15:26 - 001896319 _____ C:\Users\Nicolas Mazzon\Downloads\AutoJunk-master.zip 2018-04-12 15:07 - 2018-04-12 15:07 - 000000000 ____D C:\Users\Public\Documents\VMProtect 2018-04-12 15:07 - 2018-04-12 15:07 - 000000000 ____D C:\ProgramData\VMProtect Software 2018-04-12 15:07 - 2018-04-12 15:07 - 000000000 ____D C:\Program Files\VMProtect Demo 2018-04-12 15:06 - 2018-04-12 15:06 - 068185312 _____ (VMProtect Software ) C:\Users\Nicolas Mazzon\Downloads\VMProtectDemo.exe 2018-04-11 15:38 - 2018-04-11 15:38 - 125326374 _____ C:\Users\Nicolas Mazzon\Downloads\resolve.zip 2018-04-11 15:31 - 2018-04-11 15:31 - 026194416 _____ (Razer USA Ltd) C:\Users\Nicolas Mazzon\Downloads\Razer_Synapse_Installer_v2.21.00.830.exe 2018-04-11 15:31 - 2018-04-11 15:31 - 000000000 ____D C:\Program Files (x86)\PKGInstaller 2018-04-11 13:20 - 2018-04-11 13:20 - 000000000 ____D C:\Program Files\ImDisk 2018-04-11 13:19 - 2018-04-11 13:19 - 000572899 _____ C:\Users\Nicolas Mazzon\Downloads\ImDiskTk-x64 (1).exe 2018-04-11 13:19 - 2016-08-26 06:12 - 000000674 _____ C:\Windows\SysWOW64\imdisk.cpl.manifest 2018-04-11 13:19 - 2016-08-26 06:12 - 000000674 _____ C:\Windows\System32\imdisk.cpl.manifest 2018-04-11 13:19 - 2016-08-23 13:57 - 000001547 _____ C:\Windows\System32\uninstall_imdisk.cmd 2018-04-11 13:19 - 2015-12-14 15:20 - 000048704 _____ (Olof Lagerkvist) C:\Windows\System32\Drivers\imdisk.sys 2018-04-11 13:19 - 2015-12-14 15:20 - 000021048 _____ (Olof Lagerkvist) C:\Windows\System32\Drivers\awealloc.sys 2018-04-11 13:19 - 2015-12-14 15:19 - 000051304 _____ (Olof Lagerkvist) C:\Windows\SysWOW64\imdisk.exe 2018-04-11 13:19 - 2015-12-14 15:19 - 000051304 _____ (Olof Lagerkvist) C:\Windows\System32\imdisk.exe 2018-04-11 13:19 - 2015-12-14 15:19 - 000019552 _____ (Olof Lagerkvist) C:\Windows\System32\imdsksvc.exe 2018-04-11 13:19 - 2015-12-14 15:18 - 000119920 _____ (Olof Lagerkvist) C:\Windows\System32\imdisk.cpl 2018-04-11 13:19 - 2015-12-14 15:18 - 000108656 _____ (Olof Lagerkvist) C:\Windows\SysWOW64\imdisk.cpl 2018-04-10 14:54 - 2018-04-10 14:54 - 000552478 _____ C:\Users\Nicolas Mazzon\Downloads\Overwatch FPS Increase Pack V2.zip 2018-04-10 13:39 - 2018-04-10 14:54 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\Overwatch 2018-04-10 13:38 - 2018-04-10 13:38 - 000000892 _____ C:\Users\Public\Desktop\Overwatch.lnk 2018-04-10 12:59 - 2018-04-14 10:09 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Battle.net 2018-04-10 12:59 - 2018-04-10 14:54 - 000000000 ____D C:\Program Files (x86)\Overwatch 2018-04-10 12:59 - 2018-04-10 13:39 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\Battle.net 2018-04-10 12:59 - 2018-04-10 12:59 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Blizzard Entertainment 2018-04-10 12:59 - 2018-04-10 12:59 - 000000000 ____D C:\ProgramData\Blizzard Entertainment 2018-04-10 12:57 - 2018-04-14 10:09 - 000000000 ____D C:\Program Files (x86)\Battle.net 2018-04-10 12:57 - 2018-04-10 12:57 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Blizzard 2018-04-10 12:57 - 2018-04-10 12:57 - 000000000 ____D C:\ProgramData\Battle.net 2018-04-10 12:56 - 2018-04-10 12:57 - 003949552 _____ (Blizzard Entertainment) C:\Users\Nicolas Mazzon\Downloads\Overwatch-Setup.exe 2018-04-10 12:16 - 2018-04-10 12:16 - 041944368 ____C C:\RAMDisk.img 2018-04-10 12:15 - 2018-04-20 14:38 - 000000000 ____D C:\Program Files (x86)\Radeon RAMDisk 2018-04-10 12:15 - 2018-04-10 12:15 - 008335360 _____ C:\Users\Nicolas Mazzon\Downloads\Radeon_RAMDisk_4_4_0_RC36.msi 2018-04-10 12:15 - 2018-04-10 12:15 - 000086680 _____ (Dataram, Inc.) C:\Windows\System32\Drivers\RAMDiskVE.sys 2018-04-10 12:15 - 2018-04-10 12:15 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Dataram_Corporation 2018-04-09 15:11 - 2018-04-11 15:31 - 000000000 ____D C:\Program Files (x86)\Razer 2018-04-09 15:11 - 2018-04-09 15:41 - 000000000 ____D C:\ProgramData\bitmonero 2018-04-09 15:11 - 2018-04-09 15:11 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\Monero 2018-04-09 15:04 - 2018-04-09 15:05 - 105208551 _____ C:\Users\Nicolas Mazzon\Downloads\monero-gui-win-x64-v0.10.3.1.zip 2018-04-09 15:00 - 2018-04-09 15:00 - 026190216 _____ (Razer USA Ltd) C:\Users\Nicolas Mazzon\Downloads\Razer_Synapse_Installer_v2.21.18.115.exe 2018-04-09 13:37 - 2018-04-09 13:38 - 009972814 _____ C:\Users\Nicolas Mazzon\Downloads\smef-s-Indigo-Remasterd-master.zip 2018-04-09 13:04 - 2018-04-09 13:04 - 002162176 _____ C:\Users\Nicolas Mazzon\Downloads\PenguR15.dll 2018-04-08 16:24 - 2018-04-10 14:27 - 000000000 ____D C:\Users\Nicolas Mazzon\Desktop\Indawoods 1.1 2018-04-08 15:53 - 2018-04-08 15:53 - 000099435 _____ C:\Users\Nicolas Mazzon\Downloads\arrow_crafter.zip 2018-04-07 13:54 - 2018-04-07 13:54 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-04-07 13:54 - 2017-12-08 14:25 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll 2018-04-07 13:54 - 2017-12-08 14:25 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2018-04-07 13:54 - 2017-12-08 14:24 - 000928568 _____ C:\Windows\System32\vulkan-1.dll 2018-04-07 13:54 - 2017-12-08 14:24 - 000591672 _____ C:\Windows\System32\vulkaninfo.exe 2018-04-06 09:27 - 2018-04-06 09:27 - 000171676 _____ C:\Users\Nicolas Mazzon\Downloads\Roboto-Regular.ttf 2018-04-06 08:19 - 2018-04-06 08:19 - 045918843 _____ C:\Users\Nicolas Mazzon\Downloads\Windows6.1-KB3033929-x64.msu 2018-04-06 08:19 - 2018-04-06 08:19 - 000572899 _____ C:\Users\Nicolas Mazzon\Downloads\ImDiskTk-x64.exe 2018-04-06 07:22 - 2018-04-06 07:22 - 000000000 ____D C:\Indawoods 2018-04-06 05:45 - 2018-04-06 05:49 - 000000000 ____D C:\Indigo 2018-04-06 05:33 - 2018-04-06 05:33 - 004408503 _____ C:\Users\Nicolas Mazzon\Downloads\MM INJ MAR 24.zip 2018-04-06 04:47 - 2018-04-06 04:50 - 201944023 _____ C:\Users\Nicolas Mazzon\Downloads\fawn.pw2.2.rar 2018-04-06 04:39 - 2018-03-25 08:15 - 000998424 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2018-04-06 04:39 - 2018-03-25 08:15 - 000950016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2018-04-06 04:39 - 2018-03-25 08:15 - 000625504 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFROpenGL.dll 2018-04-06 04:39 - 2018-03-25 08:15 - 000516024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2018-04-06 04:39 - 2018-03-25 08:14 - 004318112 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2018-04-06 04:39 - 2018-03-25 08:14 - 003719096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2018-04-06 04:39 - 2018-03-25 08:14 - 001138720 _____ (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2018-04-06 04:39 - 2018-03-25 08:14 - 001065888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2018-04-06 04:39 - 2018-03-25 08:14 - 000749312 _____ (NVIDIA Corporation) C:\Windows\System32\nvDecMFTMjpeg.dll 2018-04-06 04:39 - 2018-03-25 08:14 - 000608344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll 2018-04-06 04:39 - 2018-03-25 08:13 - 040278608 _____ (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2018-04-06 04:39 - 2018-03-25 08:13 - 035188992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2018-04-06 04:39 - 2018-03-25 08:10 - 013571520 _____ (NVIDIA Corporation) C:\Windows\System32\nvptxJitCompiler.dll 2018-04-06 04:39 - 2018-03-25 08:10 - 011132384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 019855144 _____ (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 016496776 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 001355216 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncMFThevc.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 001346128 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncMFTH264.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 001153744 _____ (NVIDIA Corporation) C:\Windows\System32\nvfatbinaryLoader.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 001067560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 001061352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 000902096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 000811808 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncodeAPI64.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 000650232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2018-04-06 04:39 - 2018-03-25 08:09 - 000633040 _____ (NVIDIA Corporation) C:\Windows\System32\nvmcumd.dll 2018-04-06 04:39 - 2018-03-25 08:08 - 012967056 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2018-04-06 04:39 - 2018-03-25 08:08 - 011001504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2018-04-06 04:36 - 2018-04-06 04:36 - 000000000 ____D C:\NVIDIA 2018-04-06 04:35 - 2018-04-06 04:36 - 467026848 _____ (NVIDIA Corporation) C:\Users\Nicolas Mazzon\Downloads\391.35-desktop-win10-64bit-international-whql.exe 2018-04-06 04:26 - 2018-04-06 04:26 - 000010520 _____ C:\Users\Nicolas Mazzon\Downloads\ASUS VG248QE Nvidia.icm 2018-04-04 13:26 - 2018-04-04 13:26 - 001710860 _____ C:\Users\Nicolas Mazzon\Downloads\tYZE9pU.psd 2018-04-04 12:10 - 2018-04-04 12:10 - 000009788 _____ C:\Users\Nicolas Mazzon\Downloads\router.data 2018-04-04 06:26 - 2018-04-04 06:26 - 000000000 ____D C:\Program Files (x86)\Epic Games 2018-04-04 06:23 - 2018-03-15 18:16 - 000012834 _____ C:\Users\Nicolas Mazzon\Downloads\dracula.vssettings 2018-04-04 06:21 - 2018-04-04 06:21 - 000265112 _____ C:\Users\Nicolas Mazzon\Downloads\VSColorThemes.vsix 2018-04-04 05:21 - 2018-04-04 05:21 - 000401754 _____ C:\Users\Nicolas Mazzon\Downloads\Corruption.vip-master.zip 2018-04-03 15:37 - 2018-04-03 15:44 - 026194416 _____ (Razer USA Ltd) C:\Users\Nicolas Mazzon\Downloads\DriverEasy_Setup.exe 2018-04-03 15:09 - 2018-04-03 15:09 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\Audacity 2018-04-03 15:06 - 2018-04-06 09:45 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\audacity 2018-04-03 15:06 - 2018-04-03 15:06 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Audacity 2018-04-03 15:04 - 2018-04-03 15:13 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\Sounds (don't move folder) 2018-04-03 14:50 - 2018-04-03 14:50 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\AVAST Software 2018-04-03 14:47 - 2018-04-03 14:47 - 000460520 _____ (AVAST Software) C:\Windows\System32\Drivers\asw77fba660d104671d.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000460520 _____ (AVAST Software) C:\Windows\System32\Drivers\asw1827a5ce9bb0316d.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000380528 _____ (AVAST Software) C:\Windows\System32\Drivers\aswf0509b0b4ea566f7.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000380528 _____ (AVAST Software) C:\Windows\System32\Drivers\asw5bff90c47849630e.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000205976 _____ (AVAST Software) C:\Windows\System32\Drivers\aswe7adc468d4219e9e.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000205976 _____ (AVAST Software) C:\Windows\System32\Drivers\aswbba1146fc55db8a6.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000196640 _____ (AVAST Software) C:\Windows\System32\Drivers\asw2f5da75d9eeeebe8.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000196640 _____ (AVAST Software) C:\Windows\System32\Drivers\asw1137048650a39ab6.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000147224 _____ (AVAST Software) C:\Windows\System32\Drivers\aswf7408fae7d01a3c7.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000147224 _____ (AVAST Software) C:\Windows\System32\Drivers\aswd97671f3d58dc09b.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000111352 _____ (AVAST Software) C:\Windows\System32\Drivers\aswc48b08fe2a045507.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000111352 _____ (AVAST Software) C:\Windows\System32\Drivers\asw6ffd7c5a9bd1f461.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000084368 _____ (AVAST Software) C:\Windows\System32\Drivers\asw688a70d3cb5acc7e.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000084368 _____ (AVAST Software) C:\Windows\System32\Drivers\asw39e4f90c79e38320.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000061304 _____ () C:\Windows\System32\Drivers\lpsport.sys 2018-04-03 14:47 - 2018-04-03 14:47 - 000046968 _____ (AVAST Software) C:\Windows\System32\Drivers\asw23d5b5de6e01c8d2.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000046968 _____ (AVAST Software) C:\Windows\System32\Drivers\asw d122391c5371263.tmp 2018-04-03 14:47 - 2018-04-03 14:47 - 000000000 ____D C:\Program Files\Common Files\AVAST Software 2018-04-03 14:47 - 2018-04-03 14:46 - 001026696 _____ (AVAST Software) C:\Windows\System32\Drivers\aswe41c44592edfb154.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 001026696 _____ (AVAST Software) C:\Windows\System32\Drivers\aswdaf23f23450d87cb.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000343752 _____ (AVAST Software) C:\Windows\System32\Drivers\aswe54e5c1a68415207.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000343752 _____ (AVAST Software) C:\Windows\System32\Drivers\asw51fccfb388f3f85c.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000227504 _____ (AVAST Software) C:\Windows\System32\Drivers\aswdff265355e244076.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000227504 _____ (AVAST Software) C:\Windows\System32\Drivers\asw80647094cb67ab1b.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000199440 _____ (AVAST Software) C:\Windows\System32\Drivers\asw6ff3cc2b8cd837e1.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000199440 _____ (AVAST Software) C:\Windows\System32\Drivers\asw ace53b62a8813fa.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000057680 _____ (AVAST Software) C:\Windows\System32\Drivers\aswec05ac09a59def04.tmp 2018-04-03 14:47 - 2018-04-03 14:46 - 000057680 _____ (AVAST Software) C:\Windows\System32\Drivers\aswc91017d286c98e68.tmp 2018-04-03 14:46 - 2018-04-03 14:46 - 000000000 ____D C:\Program Files\AVAST Software 2018-04-03 14:45 - 2018-04-03 14:47 - 000000000 ____D C:\ProgramData\AVAST Software 2018-04-03 14:45 - 2018-04-03 14:45 - 000003938 _____ C:\Windows\System32\Tasks\CCleaner Update 2018-04-03 14:45 - 2018-04-03 14:45 - 000002888 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2018-04-03 14:45 - 2018-04-03 14:45 - 000000000 ____D C:\Program Files\CCleaner 2018-04-03 14:14 - 2018-04-03 14:14 - 000000000 ____D C:\Program Files (x86)\CpuCoreParking 2018-04-03 14:13 - 2018-04-03 14:13 - 000004292 _____ C:\Windows\System32\Tasks\AMD Updater 2018-04-03 14:13 - 2018-04-03 14:13 - 000000000 ____D C:\Program Files (x86)\AMD 2018-04-03 14:11 - 2018-04-03 14:11 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\RadeonInstaller 2018-04-03 14:11 - 2018-04-03 14:11 - 000000000 ____D C:\AMD 2018-04-03 12:27 - 2018-04-03 14:16 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\FPS stuff 2018-04-03 12:27 - 2016-06-24 22:01 - 000032768 _____ () C:\Users\Nicolas Mazzon\Desktop\TimerResolution.exe 2018-04-01 15:02 - 2018-04-01 15:02 - 000200704 _____ C:\Users\Nicolas Mazzon\Documents\Icon Changer by Bobi.exe 2018-04-01 14:25 - 2018-04-01 14:41 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Dynago 2018-04-01 14:20 - 2018-03-25 08:14 - 001985112 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispco6439135.dll 2018-04-01 14:20 - 2018-03-25 08:14 - 001683712 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6439135.dll 2018-04-01 14:14 - 2018-04-01 14:14 - 003066880 _____ () C:\Users\Nicolas Mazzon\Documents\Dynago 4.1.exe 2018-04-01 12:16 - 2018-04-01 14:05 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\BetterDiscord 2018-03-31 09:41 - 2018-03-31 09:41 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\_2012_2__1_ 2018-03-30 06:32 - 2018-04-22 05:16 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\discord 2018-03-30 06:32 - 2018-03-30 06:32 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Discord 2018-03-29 06:01 - 2018-03-29 06:01 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\LocalLow\Clever Endeavour Games 2018-03-28 13:17 - 2018-03-28 13:17 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\TslGame 2018-03-27 14:53 - 2018-03-28 13:17 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\UnrealEngine 2018-03-27 14:53 - 2018-03-27 14:54 - 000000000 ____D C:\ProgramData\Epic 2018-03-27 14:53 - 2018-03-27 14:53 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\UnrealEngineLauncher 2018-03-27 14:53 - 2018-03-27 14:53 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\EpicGamesLauncher 2018-03-27 13:41 - 2018-03-27 13:41 - 000000220 _____ C:\Users\Nicolas Mazzon\Desktop\Garry's Mod.url 2018-03-27 13:40 - 2018-03-27 13:40 - 000000222 _____ C:\Users\Nicolas Mazzon\Desktop\PLAYERUNKNOWN'S BATTLEGROUNDS.url 2018-03-26 13:41 - 2018-03-26 13:41 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\Voicemeeter 2018-03-26 13:19 - 2018-03-26 13:19 - 000000000 ____H C:\Windows\System32\Drivers\Msft_User_WUDFUsbccidDriver_01_11_00.Wdf 2018-03-25 16:26 - 2018-03-25 16:26 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\prime95 2018-03-25 16:08 - 2018-04-08 20:00 - 000000000 ____D C:\ProgramData\AMD AutoUpdate 2018-03-25 16:08 - 2018-04-03 14:11 - 000000000 ____D C:\Program Files\AMD 2018-03-25 16:08 - 2018-03-25 16:08 - 000003436 _____ C:\Windows\System32\Tasks\AMDAutoUpdate 2018-03-25 16:07 - 2018-03-25 16:07 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Downloaded Installations ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-04-22 09:18 - 2018-02-26 14:43 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\rtbcank 2018-04-22 09:18 - 2018-02-26 14:43 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\exhowrp 2018-04-22 05:17 - 2018-02-27 13:03 - 000004633 _____ C:\Users\Nicolas Mazzon\AppData\Roaming\VoiceMeeterDefault.xml 2018-04-22 05:17 - 2018-02-26 17:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-04-22 05:17 - 2018-02-26 15:01 - 000000000 ____D C:\ProgramData\NVIDIA 2018-04-22 05:17 - 2018-02-26 14:44 - 000000000 ____D C:\Program Files (x86)\Steam 2018-04-22 05:17 - 2017-09-29 00:45 - 014680064 _____ C:\Windows\System32\config\HARDWARE 2018-04-22 05:17 - 2017-09-29 00:45 - 000262144 _____ C:\Windows\System32\config\BBI 2018-04-22 05:16 - 2018-02-26 14:44 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\Spotify 2018-04-22 05:15 - 2018-02-26 15:00 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2018-04-22 05:15 - 2018-02-26 14:42 - 002888704 _____ C:\Windows\System32\cgiukthsvc.exe 2018-04-22 05:06 - 2018-02-26 15:16 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\Exodus Eden 2018-04-22 05:05 - 2018-02-26 17:34 - 000000000 ____D C:\Windows\System32\SleepStudy 2018-04-22 05:05 - 2018-02-26 15:40 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\CrashDumps 2018-04-22 05:05 - 2017-09-29 05:37 - 000000000 ____D C:\Windows\CbsTemp 2018-04-21 22:00 - 2018-02-28 14:26 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Adobe 2018-04-21 15:41 - 2017-09-29 05:46 - 000000000 ____D C:\Windows\DeliveryOptimization 2018-04-21 07:47 - 2018-03-12 15:23 - 000002290 _____ C:\Users\Nicolas Mazzon\Desktop\Atom.lnk 2018-04-21 07:47 - 2018-02-26 15:16 - 000002427 _____ C:\Users\Nicolas Mazzon\Desktop\ExodusEden.lnk 2018-04-21 06:55 - 2018-02-26 15:10 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\SquirrelTemp 2018-04-21 05:03 - 2018-02-26 15:06 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\redeye 2018-04-20 12:32 - 2018-02-26 14:40 - 001948164 _____ C:\Windows\System32\PerfStringBackup.INI 2018-04-20 10:55 - 2017-09-29 05:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-04-20 10:55 - 2017-09-29 05:46 - 000000000 ____D C:\Windows\AppReadiness 2018-04-20 10:53 - 2018-02-26 14:44 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Spotify 2018-04-18 14:39 - 2018-02-26 17:34 - 000000000 ____D C:\Windows\Panther 2018-04-18 14:19 - 2018-02-26 15:03 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner 2018-04-17 14:46 - 2018-02-26 14:38 - 000000000 ____D C:\users\Nicolas Mazzon 2018-04-14 08:52 - 2018-03-04 19:01 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\Visual Studio Setup 2018-04-14 06:45 - 2018-03-03 09:14 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\obs-studio 2018-04-13 14:57 - 2018-02-26 15:00 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\TeamViewer 2018-04-11 15:31 - 2018-02-26 14:45 - 000000000 ____D C:\ProgramData\Razer 2018-04-11 15:29 - 2017-09-29 05:44 - 000000000 ____D C:\Windows\INF 2018-04-10 12:07 - 2018-02-26 17:34 - 000930552 _____ C:\Windows\System32\FNTCACHE.DAT 2018-04-09 15:10 - 2018-02-26 15:02 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\NVIDIA 2018-04-06 05:14 - 2018-02-26 14:40 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-04-06 05:13 - 2018-03-20 12:42 - 000004088 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000004000 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000003940 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000003894 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000003866 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000003858 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 15:01 - 000003654 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-04-06 05:13 - 2018-02-26 14:40 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-04-06 05:13 - 2018-02-26 14:40 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-04-04 06:24 - 2017-09-29 05:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-04-03 15:41 - 2018-03-03 08:55 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\Easeware 2018-04-03 15:13 - 2018-03-03 10:38 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Roaming\vlc 2018-04-03 15:06 - 2018-02-26 14:44 - 000000000 ____D C:\Program Files (x86)\Audacity 2018-04-03 14:36 - 2018-03-06 14:52 - 000000000 ____D C:\Windows\Minidump 2018-04-03 11:37 - 2017-09-29 05:49 - 000835064 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-04-03 11:37 - 2017-09-29 05:49 - 000179704 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-04-02 16:00 - 2018-03-20 13:39 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\steam profile 2018-04-01 13:37 - 2018-03-04 19:07 - 000000000 ____D C:\Program Files\Application Verifier 2018-04-01 13:37 - 2018-03-04 19:07 - 000000000 ____D C:\Program Files (x86)\Application Verifier 2018-04-01 13:37 - 2018-02-26 14:47 - 000000000 ____D C:\ProgramData\Package Cache 2018-04-01 13:30 - 2018-03-04 19:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 2018-03-31 13:53 - 2018-02-26 14:39 - 000000000 ___RD C:\Users\Nicolas Mazzon\3D Objects 2018-03-29 14:45 - 2018-03-04 16:33 - 000000000 ____D C:\Users\Nicolas Mazzon\Documents\idle master 2018-03-29 09:18 - 2018-03-04 16:53 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\IdleMaster 2018-03-28 13:17 - 2018-02-26 15:02 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\NVIDIA Corporation 2018-03-26 13:42 - 2018-02-26 14:39 - 000000000 ____D C:\Users\Nicolas Mazzon\AppData\Local\Packages 2018-03-25 08:08 - 2018-02-05 03:21 - 004633920 _____ (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2018-03-25 08:08 - 2018-02-05 03:21 - 003939624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2018-03-24 11:33 - 2017-09-29 05:46 - 000000000 ____D C:\Windows\rescache 2018-03-24 08:08 - 2018-02-26 14:41 - 000000000 ___RD C:\Users\Nicolas Mazzon\OneDrive 2018-03-23 17:19 - 2018-02-26 15:01 - 002480064 _____ (NVIDIA Corporation) C:\Windows\System32\nvspcap64.dll 2018-03-23 17:19 - 2018-02-26 15:01 - 002137024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2018-03-23 17:19 - 2018-02-26 15:01 - 001310144 _____ (NVIDIA Corporation) C:\Windows\System32\NvRtmpStreamer64.dll 2018-03-23 17:19 - 2018-02-26 15:01 - 000189784 _____ (NVIDIA Corporation) C:\Windows\System32\nvaudcap64v.dll 2018-03-23 17:19 - 2018-02-26 15:01 - 000152408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2018-03-23 17:19 - 2018-02-26 15:01 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat 2018-03-23 17:19 - 2018-02-26 15:00 - 000048407 _____ C:\Windows\System32\nvinfo.pb 2018-03-23 15:50 - 2018-02-26 15:01 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2018-03-23 15:02 - 2018-02-26 15:01 - 005952392 _____ (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll 2018-03-23 15:02 - 2018-02-26 15:01 - 002596320 _____ (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll 2018-03-23 15:02 - 2018-02-26 15:01 - 001767824 _____ (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll 2018-03-23 15:02 - 2018-02-26 15:01 - 000633224 _____ (NVIDIA Corporation) C:\Windows\System32\nv3dappshext.dll 2018-03-23 15:02 - 2018-02-26 15:01 - 000451040 _____ (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll 2018-03-23 15:02 - 2018-02-26 15:01 - 000123840 _____ (NVIDIA Corporation) C:\Windows\System32\nvshext.dll 2018-03-23 15:02 - 2018-02-26 15:01 - 000083072 _____ (NVIDIA Corporation) C:\Windows\System32\nv3dappshextr.dll Some files in TEMP: ==================== 2018-04-10 12:07 - 2018-04-22 05:16 - 000619464 _____ () C:\Users\Nicolas Mazzon\AppData\Local\Temp\0Kraken0502DevProps.dll 2018-04-22 05:05 - 2018-04-22 05:05 - 002404352 _____ (Farbar) C:\Users\Nicolas Mazzon\AppData\Local\Temp\A0C6.tmp.exe 2018-04-22 05:05 - 2018-04-22 05:05 - 001763840 _____ (Farbar) C:\Users\Nicolas Mazzon\AppData\Local\Temp\DEBA.tmp.exe ==================== Known DLLs (Whitelisted) ========================= ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\dnsapi.dll => MD5 is legit C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Association (Whitelisted) ============= ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 6% Total physical RAM: 16319.22 MB Available physical RAM: 15303.55 MB Total Virtual: 16319.22 MB Available Virtual: 15335.14 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:222.97 GB) (Free:40.18 GB) NTFS Drive d: (500Gb HDD) (Fixed) (Total:465.76 GB) (Free:114.95 GB) NTFS Drive e: (B1G) (Removable) (Total:29.8 GB) (Free:29.78 GB) FAT32 Drive f: (Recovery) (Fixed) (Total:0.49 GB) (Free:0.13 GB) NTFS Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.5 GB) NTFS \\?\Volume{391cfbe7-7dd0-4454-b2c5-ec6c28252926}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 223.6 GB) (Disk ID: 6B2FCC51) Partition: GPT. ======================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 7FA3E06E) Partition: GPT. ======================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 29.8 GB) (Disk ID: FF333E17) Partition 1: (Not Active) - (Size=29.8 GB) - (Type=0C) LastRegBack: 2018-04-19 11:25 ==================== End of FRST.txt ============================