Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Malware/Virus affecting wifi connection?


  • This topic is locked This topic is locked

#1
Domiman

Domiman

    New Member

  • Member
  • Pip
  • 5 posts

Some months back i started to have in different games like CSGO, Insurgency and other smaller games. With CSGO's netgraph tool i noticed i started to get Choke and Loss. Random spikes that made the game unplayable and then problems with skype started happening. I used pingtest.net to check and i had no loss in the test and on speedtest i always get a stable speed. Asking some friends around they told me that i may have a virus or something that might be leeching off or just affecting my connection. Another problem that i started getting some days ago was that Insurgency started having random lag spikes/freezes with a static sound playing on my headphones. 


  • 0

Advertisements


#2
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,090 posts
Hi! My name is zep516 and Welcome to Geekstogo!
I'll do the best I can to resolve your computer issue
Please make sure to carefully read any instruction that I give you. If you're not sure, or if something unexpected happens, don't continue Stop and ask! Never be afraid to ask questions! :)

Everything gets download to the desktop and tools are "Run as administrator."

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.

  • 0

#3
Domiman

Domiman

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts

FRST.txt:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-01-2015 01
Ran by x450 (administrator) on ASUS (11-01-2016 13:42:55)
Running from C:\Users\x450\Downloads
Loaded Profiles: x450 (Available Profiles: x450)
Platform: Windows 10 Home Single Language (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Windows\SysWOW64\GSMSrvEjector.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
() C:\Windows\System32\PnkBstrA.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Auslogics) C:\Program Files (x86)\Auslogics\BoostSpeed\BoostSpeed.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
() C:\Program Files (x86)\puush\puush.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Lightcomm) C:\Program Files (x86)\PERSONAL\GSM\GSMCliEjector.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.6020.0_x64__8wekyb3d8bbwe\Calculator.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [395880 1999-12-31] ()
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2771576 2015-12-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [599896 2015-06-10] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 1999-12-31] (Conexant Systems, Inc.)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [1080992 2014-05-24] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\ASUSWSLoader.exe [63296 2014-02-25] ()
HKLM-x32\...\Run: [GSMEjector] => C:\Program Files (x86)\PERSONAL\GSM\GSMCliEjector.exe [441856 2010-01-14] (Lightcomm)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2015-11-12] (LogMeIn Inc.)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [917112 2015-10-08] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616 2015-07-27] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [puush] => C:\Program Files (x86)\puush\puush.exe [568904 2015-03-30] ()
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [uTorrent] => C:\Users\x450\AppData\Roaming\uTorrent\uTorrent.exe [2026520 2015-12-14] (BitTorrent Inc.)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3632112 2015-07-11] (Electronic Arts)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe [2946096 2015-11-10] (Blizzard Entertainment)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [45296 2015-12-15] (Overwolf LTD)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [5585136 2015-03-31] (Disc Soft Ltd)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [Dropbox Update] => C:\Users\x450\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [3098424 2015-08-19] (Nota Inc.)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53737488 2015-08-07] (Skype Technologies S.A.)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3014224 2016-01-09] (Valve Corporation)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Run: [MyComGames] => C:\Users\x450\AppData\Local\MyComGames\MyComGames.exe [4741064 2016-01-08] (MY.COM B.V.)
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\MountPoints2: {8ff7fd3b-edf5-11e4-8279-54a050aa6c13} - "F:\setup.exe" 
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-10-03] (AVAST Software)
Startup: C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-06-10]
ShortcutTarget: Curse.lnk -> C:\Users\x450\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc)
Startup: C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-10]
ShortcutTarget: Dropbox.lnk -> C:\Users\x450\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2015-04-08]
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
Startup: C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Telegram.lnk [2015-12-08]
ShortcutTarget: Telegram.lnk -> C:\Users\x450\AppData\Roaming\Telegram Desktop\Telegram.exe (Telegram Messenger LLP)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 200.42.4.210 200.49.130.44
Tcpip\..\Interfaces\{4efb3fd6-ba2c-4591-9fbc-2c43846062c9}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{4efb3fd6-ba2c-4591-9fbc-2c43846062c9}: [DhcpNameServer] 200.42.4.210 200.49.130.44
Tcpip\..\Interfaces\{9570c784-b4d1-41b1-973f-7eb93a58188d}: [DhcpNameServer] 200.42.4.204 200.49.130.47
 
Internet Explorer:
==================
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com/?pc=ASJB
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2016-01-05] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-28] (AVAST Software)
BHO: No Name -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> No File
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-12-15] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2016-01-05] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2016-01-05] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-28] (AVAST Software)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2016-01-05] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
 
FireFox:
========
FF ProfilePath: C:\Users\x450\AppData\Roaming\Mozilla\Firefox\Profiles\n1a937zt.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-28] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2016-01-05] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2016-01-05] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-03-24] (Unity Technologies ApS)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-28] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-10-23] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-10-23] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2016-01-05] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2016-01-05] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-01-19] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @viewpoint.com/VMP -> C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll [2004-02-20] ()
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-05] ()
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin HKU\S-1-5-21-2461279538-2166252596-3339692539-1001: @my.com/Games -> C:\Users\x450\AppData\Local\MyComGames\NPMyComDetector.dll [2016-01-08] (My.com, Inc)
FF Plugin HKU\S-1-5-21-2461279538-2166252596-3339692539-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\x450\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-03-27] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-01-04] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-01-04]
 
Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.youtube.com/feed/subscriptions/u","hxxp://www.furaffinity.net/","hxxp://www.gmail.com/"
CHR Profile: C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Presentaciones de Google) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-03]
CHR Extension: (From Dust) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\anelkojiepicmcldgnmkplocifmegpfj [2015-01-18]
CHR Extension: (Google Docs) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-03]
CHR Extension: (Google Drive) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Link Unclogger) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmbakledanjibbaoghnnockckaobgimp [2015-07-26]
CHR Extension: (Adblock Plus) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-01-05]
CHR Extension: (Búsqueda de Google) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Hojas de cálculo de Google) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-03]
CHR Extension: (Heroes & Generals) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbophcdhblbipoaacgchllkobdaolpge [2015-01-18]
CHR Extension: (Wolf and the Ice Planet) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\gffkhmkbijdmbncaoclaclldnbndflck [2015-01-18]
CHR Extension: (ChimneySwift11's YouTube Channel) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghajlcgpoghfjldldggbiligiahgalmk [2015-01-18]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (AdBlock) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-01-09]
CHR Extension: (Cryptocat) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\gonbigodpnfghidmnphnadhepmbabhij [2015-01-18]
CHR Extension: (New Tab Redirect) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\icpgjfneehieebagbmdbhnlpiopdcmna [2015-01-18]
CHR Extension: (Bradly's YouTube Downloader) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\iegohpghbappmilohemkdpknmbcpbldb [2015-12-20]
CHR Extension: (Cuevana Stream) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfdckejfnkaemompfjhecfmhjgnchmjg [2015-01-18]
CHR Extension: (Little Alchemy) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2015-06-13]
CHR Extension: (hxxp://www.youtube.com/feed/subscriptions) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfniigaddfpooechgbkmkbcpklbhpngo [2015-01-18]
CHR Extension: (Drakensang Online) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgloifppaepihckkhiocnodicehjdoof [2015-10-16]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-23]
CHR Extension: (Gmail) - C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-31]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2016-01-04]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-01-04]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
S2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe [71680 2014-02-25] (ASUS Cloud Corporation) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-03] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1257504 2015-12-14] ()
S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-10-08] (BlueStack Systems, Inc.)
S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400 2015-10-08] (BlueStack Systems, Inc.)
S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [855672 2015-10-08] (BlueStack Systems, Inc.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2802360 2015-11-24] (Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1277680 2015-03-31] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [238376 2015-08-09] (EasyAntiCheat Ltd)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1385640 1999-12-31] (Intel Corporation)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-01-27] (WildTangent)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156216 2015-12-08] (NVIDIA Corporation)
R2 GSMEjector; C:\Windows\SysWOW64\GSMSrvEjector.exe [620032 2010-01-14] () [File not signed]
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [353896 1999-12-31] (Intel Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [827392 2013-09-02] (Intel® Corporation) [File not signed]
R2 Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-10-23] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-10-23] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-11-12] (LogMeIn, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-12-08] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8185464 2015-12-08] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [6477432 2015-12-08] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2004488 2015-07-11] (Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1008880 2015-12-15] (Overwolf LTD)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-07-12] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-07-12] ()
R2 SAService; C:\Windows\system32\SAsrv.exe [427224 1999-12-31] (Conexant Systems, Inc.)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2016-01-04] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2016-01-04] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2016-01-04] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2016-01-04] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1055560 2016-01-04] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [451040 2016-01-04] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [155304 2016-01-04] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2016-01-04] (AVAST Software)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [97680 2015-07-28] (ASUS Corporation)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-10-08] (BlueStack Systems)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [53752 1999-12-31] (Intel Corporation)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30352 2015-04-30] (Disc Soft Ltd)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [261624 1999-12-31] (Intel Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-07-14] (LogMeIn Inc.)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-10-23] (Intel Corporation)
R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2554528 2015-06-12] (MediaTek Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-12-08] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R2 plctrl; C:\Program Files\ASUS\P4G\plctrl.sys [14136 2014-02-11] (Windows ® Win 7 DDK provider)
S3 PVUSB; C:\Windows\System32\drivers\CESG64.sys [63808 2007-02-19] (CASIO COMPUTER CO.,LTD.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1219200 2015-06-03] (Ralink Technology, Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 1999-12-31] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 DptfDevDisplay; \SystemRoot\System32\drivers\DptfDevDisplay.sys [X]
S3 DptfDevDram; \SystemRoot\System32\drivers\DptfDevDram.sys [X]
S3 DptfDevFan; \SystemRoot\System32\drivers\DptfDevFan.sys [X]
S3 DptfDevGen; \SystemRoot\System32\drivers\DptfDevGen.sys [X]
S3 DptfDevPch; \SystemRoot\System32\drivers\DptfDevPch.sys [X]
S3 DptfDevPower; \SystemRoot\System32\drivers\DptfDevPower.sys [X]
S3 DptfDevProc; \SystemRoot\System32\drivers\DptfDevProc.sys [X]
S3 DptfManager; \SystemRoot\System32\drivers\DptfManager.sys [X]
S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-01-11 13:42 - 2016-01-11 13:43 - 00034104 _____ C:\Users\x450\Downloads\FRST.txt
2016-01-11 13:42 - 2016-01-11 13:42 - 00000000 ____D C:\FRST
2016-01-11 13:41 - 2016-01-11 13:42 - 02370560 _____ (Farbar) C:\Users\x450\Downloads\FRST64.exe
2016-01-11 10:52 - 2016-01-11 10:52 - 00016148 _____ C:\WINDOWS\system32\ASUS_x450_HistoryPrediction.bin
2016-01-10 23:50 - 2016-01-10 23:52 - 44408320 _____ ( ) C:\Users\x450\Downloads\SexyMadScience_Beta004.exe
2016-01-10 22:29 - 2016-01-11 09:16 - 00000000 ____D C:\Users\x450\AppData\Local\CrashDumps
2016-01-09 10:08 - 2016-01-09 10:08 - 00000000 ____D C:\temp
2016-01-09 10:06 - 2015-12-16 13:59 - 31098488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 24923768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 21131424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 20672376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 17568432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 17164160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 17123736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 17104016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 02560816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 02214192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 01915512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436143.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 01564976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436143.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00938104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00872056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00786688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00735024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00681592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00632336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00416560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00378784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00370992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00316960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00175368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2016-01-09 10:06 - 2015-12-16 13:59 - 00153208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2016-01-09 10:05 - 2015-12-16 13:59 - 42976888 _____ C:\WINDOWS\system32\nvcompiler.dll
2016-01-09 10:05 - 2015-12-16 13:59 - 37608568 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2016-01-09 09:53 - 2015-12-08 22:51 - 00111520 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll
2016-01-09 09:06 - 2016-01-09 09:06 - 00306928 _____ (Thesycon GmbH) C:\Users\x450\Downloads\dpclat.exe
2016-01-09 09:06 - 2016-01-09 09:06 - 00021232 _____ (Thesycon GmbH) C:\WINDOWS\system32\Drivers\dpclat_driver.sys
2016-01-09 04:14 - 2016-01-09 04:14 - 00000122 _____ C:\Users\x450\Desktop\Skyforge My.com.url
2016-01-09 04:14 - 2016-01-09 04:14 - 00000000 ____D C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com
2016-01-08 17:11 - 2016-01-08 17:11 - 01837577 _____ C:\Users\x450\Downloads\StudentScoreReport_1452283898314.pdf
2016-01-08 10:37 - 2016-01-11 10:05 - 00000000 ____D C:\Users\x450\AppData\Local\MyComGames
2016-01-08 10:37 - 2016-01-08 10:37 - 00002122 _____ C:\Users\x450\Desktop\My.com Game Center.lnk
2016-01-08 10:37 - 2016-01-08 10:37 - 00000000 ____D C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2016-01-08 10:36 - 2016-01-08 10:37 - 04644808 _____ (MY.COM B.V.) C:\Users\x450\Downloads\SkyforgeLoader_3f1e2be1bc6fda15dcf2d46d60749bd4__en.exe
2016-01-05 22:06 - 2016-01-06 10:28 - 02405624 _____ (Trend Micro Inc.) C:\Users\x450\Downloads\HousecallLauncher64.exe
2016-01-05 21:54 - 2016-01-05 21:54 - 00000000 ___HD C:\OneDriveTemp
2016-01-05 19:14 - 2016-01-05 19:14 - 06805328 _____ (Piriform Ltd) C:\Users\x450\Downloads\ccsetup513.exe
2016-01-05 19:09 - 2016-01-05 19:09 - 00000000 ____D C:\Users\x450\AppData\Local\Conexant
2016-01-05 19:08 - 2016-01-11 12:54 - 01388432 _____ C:\Users\Public\VOIP.dat
2016-01-05 18:27 - 2016-01-05 18:27 - 00000728 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® HD Graphics Control Panel.lnk
2016-01-05 18:26 - 2016-01-05 18:26 - 00000716 _____ C:\Users\Public\Desktop\Intel® HD Graphics Control Panel.lnk
2016-01-05 18:26 - 2016-01-05 18:26 - 00000568 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-01-05 18:26 - 2016-01-05 18:26 - 00000486 _____ C:\WINDOWS\system32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat
2016-01-05 18:22 - 1999-12-31 21:00 - 00608768 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-01-05 18:22 - 1999-12-31 21:00 - 00475384 _____ (Intel® Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys
2016-01-05 18:22 - 1999-12-31 21:00 - 00397824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2016-01-05 18:22 - 1999-12-31 21:00 - 00331776 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll
2016-01-05 18:22 - 1999-12-31 21:00 - 00300032 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2016-01-05 18:22 - 1999-12-31 21:00 - 00206848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4285.dll
2016-01-05 18:22 - 1999-12-31 21:00 - 00094208 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 35983072 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 31002480 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 29702096 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 29084160 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 19844096 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 15047304 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 13061464 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 11433472 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 08507904 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 07957520 _____ C:\WINDOWS\system32\igdclbif.bin
2016-01-05 18:21 - 1999-12-31 21:00 - 05666816 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 05245440 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 04744192 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 04691120 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 04668448 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 04177408 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 03951616 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 01835984 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 01565696 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 01462576 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 01156608 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 01007720 _____ C:\WINDOWS\system32\igfxSDK.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00931432 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00927848 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00819926 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2016-01-05 18:21 - 1999-12-31 21:00 - 00609896 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00517736 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00448104 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00421376 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00386048 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00371200 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00284280 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00282216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00270384 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00256000 _____ C:\WINDOWS\system32\igfxCPL.cpl
2016-01-05 18:21 - 1999-12-31 21:00 - 00249344 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00218216 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00213608 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00213096 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00207872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00201368 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00176128 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00163264 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00162240 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00160680 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00156672 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00156264 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2016-01-05 18:21 - 1999-12-31 21:00 - 00140056 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00140056 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00086016 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00083456 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00077824 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00065536 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00035328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00011776 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00011776 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2016-01-05 18:21 - 1999-12-31 21:00 - 00004690 _____ C:\WINDOWS\system32\iglhxs64.vp
2016-01-05 18:02 - 2016-01-05 18:02 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf
2016-01-05 18:02 - 2016-01-05 18:02 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_esif_lf_01011.Wdf
2016-01-05 18:02 - 1999-12-31 21:00 - 01795952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01011.dll
2016-01-05 18:02 - 1999-12-31 21:00 - 01385640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\esif_uf.exe
2016-01-05 18:02 - 1999-12-31 21:00 - 00261624 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\esif_lf.sys
2016-01-05 18:02 - 1999-12-31 21:00 - 00053752 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\dptf_cpu.sys
2016-01-05 17:55 - 2016-01-05 17:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2016-01-05 17:55 - 2016-01-05 17:55 - 00000000 ____D C:\Program Files\Synaptics
2016-01-05 17:54 - 1999-12-31 21:00 - 00033960 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2016-01-05 17:46 - 2016-01-05 17:46 - 00001963 _____ C:\ProgramData\Microsoft\Windows\Start Menu\SmartAudio.lnk
2016-01-05 17:46 - 2016-01-05 17:46 - 00000000 ____D C:\WINDOWS\Cnxt
2016-01-05 17:46 - 2016-01-05 17:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2016-01-05 17:46 - 1999-12-31 21:00 - 00004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.DAT
2016-01-05 17:45 - 2016-01-05 17:45 - 00002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudioWizard.lnk
2016-01-05 17:45 - 2016-01-05 17:45 - 00002156 _____ C:\Users\Public\Desktop\AudioWizard.lnk
2016-01-05 17:45 - 1999-12-31 21:00 - 00427224 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\SASrv.exe
2016-01-05 17:45 - 1999-12-31 21:00 - 00427224 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\SASrv.exe
2016-01-05 17:45 - 1999-12-31 21:00 - 00191902 _____ C:\WINDOWS\system32\MA4Preset.mps
2016-01-05 17:45 - 1999-12-31 21:00 - 00006786 _____ C:\WINDOWS\system32\Maxx_Render_EFX_Asus.mps
2016-01-05 17:45 - 1999-12-31 21:00 - 00002626 _____ C:\WINDOWS\system32\Maxx_Render_MFX_Asus.mps
2016-01-05 17:44 - 1999-12-31 21:00 - 00207576 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CxAudMsg64.exe
2016-01-05 17:40 - 1999-12-31 21:00 - 03134296 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\UCI64A96.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 01550840 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\Drivers\CHDRT64.sys
2016-01-05 17:40 - 1999-12-31 21:00 - 01064024 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 01016408 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64BP18.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 00429568 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\ASpkExt64.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 00328816 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 00101464 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\FMPropPageExt64.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 00050848 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CxPageMaster64.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 00032896 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\CXHDMI64.dll
2016-01-05 17:40 - 1999-12-31 21:00 - 00030893 _____ C:\WINDOWS\system32\Drivers\Mixer.ini
2016-01-05 17:40 - 1999-12-31 21:00 - 00001816 _____ C:\WINDOWS\system32\Drivers\altmixer.ini
2016-01-05 17:26 - 2016-01-05 17:26 - 00000000 ____D C:\ProgramData\SlimWare Utilities, Inc
2016-01-05 17:23 - 2016-01-09 15:04 - 00000418 _____ C:\WINDOWS\Tasks\SlimDrivers Startup.job
2016-01-05 17:23 - 2016-01-05 17:23 - 00002896 _____ C:\WINDOWS\System32\Tasks\SlimDrivers Startup
2016-01-05 17:22 - 2016-01-05 17:22 - 00981592 _____ (SlimWare Utilities, Inc.) C:\Users\x450\Downloads\SlimDrivers-setup.exe
2016-01-05 17:22 - 2016-01-05 17:22 - 00002499 _____ C:\Users\Public\Desktop\SlimDrivers.lnk
2016-01-05 17:22 - 2016-01-05 17:22 - 00000000 ____D C:\Users\x450\AppData\Local\SlimWare Utilities Inc
2016-01-05 17:22 - 2016-01-05 17:22 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2016-01-05 17:22 - 2016-01-05 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SlimDrivers
2016-01-05 17:22 - 2016-01-05 17:22 - 00000000 ____D C:\Program Files (x86)\SlimDrivers
2016-01-04 21:24 - 2016-01-04 21:24 - 00001981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2016-01-04 21:03 - 2016-01-04 21:03 - 00386096 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-01-04 21:03 - 2016-01-04 21:03 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-01-04 21:03 - 2015-11-06 14:12 - 01059656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE487.tmp
2016-01-04 21:03 - 2015-11-06 14:12 - 00449992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4DB.tmp
2016-01-04 21:03 - 2015-10-03 20:59 - 00274808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4EB.tmp
2016-01-04 21:03 - 2015-10-03 20:59 - 00153744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4FC.tmp
2016-01-04 21:03 - 2015-10-03 20:59 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4B7.tmp
2016-01-04 21:03 - 2015-10-03 20:59 - 00090968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4C9.tmp
2016-01-04 21:03 - 2015-10-03 20:59 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4DA.tmp
2016-01-04 21:03 - 2015-10-03 20:59 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswE4B8.tmp
2016-01-04 15:02 - 2016-01-04 15:02 - 00000000 ____D C:\Users\x450\AppData\Local\ampersand
2016-01-01 17:03 - 2016-01-01 17:03 - 00000000 ____D C:\Users\x450\AppData\Roaming\LolClient
2016-01-01 01:15 - 2016-01-01 01:52 - 00000180 _____ C:\Users\x450\Desktop\adsadasdasdasdasd.txt
2015-12-30 20:03 - 2015-12-30 20:03 - 00001146 _____ C:\Users\x450\Downloads\NiminSave1.nim
2015-12-30 01:27 - 2015-12-30 01:27 - 00000032 _____ C:\Users\x450\Desktop\Skin steam.txt
2015-12-29 01:28 - 2015-12-29 01:28 - 00001357 _____ C:\Users\Public\Desktop\League of Legends.lnk
2015-12-29 01:28 - 2015-12-29 01:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-12-29 00:49 - 2015-12-29 01:27 - 27874912 _____ (Riot Games) C:\Users\x450\Downloads\LeagueofLegends_LA2_Installer_9_15_2014.exe
2015-12-28 14:44 - 2015-12-28 14:44 - 00000000 ____D C:\Users\x450\Downloads\Blackgate-0.32-win
2015-12-28 02:04 - 2015-12-28 02:35 - 352597727 _____ C:\Users\x450\Downloads\Blackgate-0.32-win.zip
2015-12-27 00:00 - 2015-12-27 00:00 - 00000000 ____D C:\Users\x450\Downloads\Echo
2015-12-26 23:35 - 2015-12-26 23:56 - 119337452 _____ C:\Users\x450\Downloads\Echo.zip
2015-12-22 20:12 - 2015-12-22 20:16 - 00000080 _____ C:\Users\x450\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
2015-12-22 20:12 - 2015-12-22 20:12 - 00000000 ____D C:\Users\x450\Documents\Rockstar Games
2015-12-22 20:12 - 2015-12-22 20:12 - 00000000 ____D C:\Users\x450\AppData\Local\Rockstar Games
2015-12-22 20:11 - 2015-12-22 20:11 - 00000000 ____D C:\Program Files\Rockstar Games
2015-12-22 20:11 - 2015-12-22 20:11 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2015-12-20 23:31 - 2015-12-20 23:31 - 00000000 ____D C:\Users\x450\AppData\LocalLow\KIXEYE
2015-12-20 23:31 - 2015-12-20 23:31 - 00000000 ____D C:\ProgramData\.mono
2015-12-19 15:47 - 2015-12-30 20:04 - 00000000 ____D C:\Users\x450\Downloads\Telegram Desktop
2015-12-19 13:08 - 2015-12-19 13:08 - 66339240 _____ (MediaFire) C:\Users\x450\Downloads\MediaFireDesktop-1.8.12.11026-windows-PRODUCTION.exe
2015-12-18 23:20 - 2015-12-18 23:20 - 00000021 _____ C:\Users\x450\Desktop\asd.txt
2015-12-14 12:06 - 2015-12-14 12:06 - 00466456 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2015-12-14 12:06 - 2015-12-14 12:06 - 00444952 _____ (Creative Labs) C:\WINDOWS\SysWOW64\wrap_oal.dll
2015-12-14 12:06 - 2015-12-14 12:06 - 00122904 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2015-12-14 12:06 - 2015-12-14 12:06 - 00109080 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\OpenAL32.dll
2015-12-14 12:06 - 2015-12-14 12:06 - 00000000 ____D C:\Program Files (x86)\OpenAL
2015-12-13 21:03 - 2015-12-27 00:01 - 00000000 ____D C:\Users\x450\AppData\Roaming\RenPy
2015-12-13 09:08 - 2015-12-17 15:16 - 00001947 _____ C:\Users\x450\Desktop\Christmast work.txt
2015-12-12 18:54 - 2015-12-12 18:54 - 00000000 ____D C:\WINDOWS\System32\Tasks\Open Hardware Monitor
2015-12-12 04:04 - 2015-12-12 04:04 - 00000000 ____D C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-01-11 13:43 - 2015-01-18 15:03 - 00000000 ____D C:\Users\x450\AppData\Roaming\Skype
2016-01-11 13:42 - 2015-07-10 06:05 - 00000000 ____D C:\Windows
2016-01-11 13:00 - 2015-06-20 16:50 - 00000966 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2461279538-2166252596-3339692539-1001UA.job
2016-01-11 12:53 - 2015-01-18 04:33 - 00001054 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-11 12:50 - 2015-01-18 02:24 - 00000000 ____D C:\Program Files (x86)\Steam
2016-01-11 12:48 - 2015-07-15 12:26 - 00000838 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-11 12:29 - 2015-01-13 02:15 - 00004196 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1DB2828A-52D2-4A53-B4A9-CE41E8651270}
2016-01-11 12:00 - 2015-05-12 07:14 - 00003544 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1
2016-01-11 12:00 - 2015-05-12 07:14 - 00003534 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2
2016-01-11 10:11 - 2015-07-10 07:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-01-11 05:53 - 2015-01-18 04:33 - 00001050 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-10 21:41 - 2015-01-18 06:11 - 00000000 ____D C:\Program Files (x86)\osu!
2016-01-10 19:00 - 2015-06-20 16:50 - 00000914 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2461279538-2166252596-3339692539-1001Core.job
2016-01-10 15:02 - 2015-08-12 17:01 - 00000000 ____D C:\WINDOWS\Minidump
2016-01-10 10:24 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-01-09 15:07 - 2015-05-05 13:14 - 00000000 ___RD C:\Users\x450\OneDrive
2016-01-09 15:06 - 2015-04-18 13:57 - 00000000 ____D C:\Users\x450\AppData\Local\LogMeIn Hamachi
2016-01-09 15:04 - 2015-01-18 13:42 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-01-09 15:04 - 2015-01-13 02:13 - 00000074 _____ C:\Users\x450\AppData\Roaming\sp_data.sys
2016-01-09 15:03 - 2015-08-08 09:07 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture
2016-01-09 14:59 - 2015-08-07 07:05 - 00000000 __SHD C:\Users\x450\IntelGraphicsProfiles
2016-01-09 14:59 - 2015-08-06 22:32 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-01-09 14:57 - 2015-07-10 09:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-01-09 14:53 - 2015-11-01 21:50 - 00000000 ____D C:\Users\x450\Documents\SelfMV
2016-01-09 10:14 - 2015-08-06 22:37 - 00000000 ____D C:\Users\x450
2016-01-09 10:09 - 2015-08-06 22:34 - 00000000 ____D C:\ProgramData\NVIDIA
2016-01-09 10:07 - 2015-07-10 08:02 - 00000000 ____D C:\WINDOWS\INF
2016-01-09 09:54 - 2015-08-06 22:34 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-01-09 06:48 - 2015-07-10 08:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-01-08 15:55 - 2015-02-15 12:31 - 00000000 ____D C:\Users\x450\AppData\Roaming\TS3Client
2016-01-07 15:53 - 2015-02-15 00:54 - 00000000 ____D C:\Users\x450\Desktop\Private
2016-01-06 16:57 - 2015-08-11 10:03 - 00000000 ____D C:\Users\x450\Zomboid
2016-01-05 22:49 - 2015-03-02 20:48 - 00000000 ____D C:\ProgramData\Oracle
2016-01-05 22:08 - 2015-09-13 22:45 - 00000000 ____D C:\Program Files (x86)\Java
2016-01-05 22:08 - 2015-03-02 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-01-05 22:07 - 2015-03-02 21:04 - 00000000 ____D C:\Program Files\Java
2016-01-05 22:06 - 2015-08-29 18:24 - 00000000 ____D C:\Users\x450\.oracle_jre_usage
2016-01-05 22:06 - 2015-06-07 12:21 - 00110176 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2016-01-05 21:54 - 2015-12-08 11:38 - 00000000 ____D C:\Users\x450\AppData\Roaming\Telegram Desktop
2016-01-05 21:46 - 2015-07-10 06:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-01-05 19:15 - 2015-04-13 16:51 - 00000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-01-05 19:05 - 2014-11-19 15:29 - 00017032 _____ C:\WINDOWS\system32\results.xml
2016-01-05 18:26 - 2015-08-06 22:32 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-01-05 18:06 - 2015-08-06 22:58 - 01840872 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-05 18:06 - 2015-07-10 13:45 - 00818978 _____ C:\WINDOWS\system32\perfh00A.dat
2016-01-05 18:06 - 2015-07-10 13:45 - 00160374 _____ C:\WINDOWS\system32\perfc00A.dat
2016-01-05 18:02 - 2014-11-19 15:25 - 00000000 ____D C:\Program Files (x86)\Intel
2016-01-05 17:46 - 2015-08-06 22:32 - 00000000 ____D C:\Program Files\CONEXANT
2016-01-05 17:31 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-01-05 16:59 - 2015-07-19 16:30 - 00000000 ____D C:\Users\x450\AppData\Roaming\vlc
2016-01-04 21:24 - 2015-01-18 13:42 - 00451040 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-01-04 21:24 - 2015-01-18 13:42 - 00097648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
2016-01-04 21:03 - 2015-01-18 13:42 - 00273784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-01-04 21:03 - 2015-01-18 13:42 - 00155304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-01-04 21:03 - 2015-01-18 13:42 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-01-04 21:03 - 2015-01-18 13:42 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-01-04 21:03 - 2015-01-18 13:42 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-01-04 21:02 - 2015-01-18 13:41 - 01055560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-01-04 14:16 - 2015-01-18 03:05 - 00000000 ____D C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-01-03 23:00 - 2015-03-15 23:15 - 00000000 ____D C:\Users\x450\Desktop\Random
2016-01-02 22:40 - 2015-07-10 08:06 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-01-02 22:40 - 2015-07-10 08:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-12-29 18:54 - 2015-02-03 20:06 - 00000000 ____D C:\Users\x450\Documents\My Games
2015-12-29 02:31 - 2015-04-12 22:08 - 00000000 ____D C:\ProgramData\Riot Games
2015-12-29 01:28 - 2015-04-12 21:55 - 00000000 ____D C:\Users\x450\AppData\Roaming\Riot Games
2015-12-28 23:46 - 2015-09-17 18:41 - 00000000 ____D C:\Users\x450\.FBReader
2015-12-28 13:18 - 2015-03-09 19:36 - 00000000 ____D C:\Users\x450\AppData\Roaming\uTorrent
2015-12-27 15:48 - 2015-10-23 08:29 - 00000000 ____D C:\Users\x450\Documents\SavedGames
2015-12-24 10:31 - 2015-07-07 22:04 - 00000034 _____ C:\Users\x450\AppData\Roaming\AdobeWLCMCache.dat
2015-12-23 18:02 - 2015-04-21 09:22 - 00000000 ____D C:\Users\x450\AppData\Local\ElevatedDiagnostics
2015-12-22 18:35 - 2015-04-15 18:08 - 00000000 ____D C:\Program Files (x86)\Overwolf
2015-12-22 17:15 - 2015-07-17 17:20 - 00000000 ____D C:\Users\x450\Documents\ArcheAge
2015-12-20 08:51 - 2015-07-16 00:17 - 00000000 ____D C:\Users\x450\AppData\Local\Glyph
2015-12-20 08:48 - 2015-07-16 00:17 - 00000000 ____D C:\ProgramData\Glyph
2015-12-20 08:48 - 2015-07-16 00:16 - 00000000 ____D C:\Program Files (x86)\Glyph
2015-12-18 20:53 - 2015-06-07 12:22 - 00000000 ____D C:\Users\x450\AppData\Local\ftblauncher
2015-12-18 05:48 - 2015-07-13 20:45 - 12426896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-12-17 23:38 - 2015-07-10 09:20 - 04963152 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-17 19:58 - 2015-12-04 11:17 - 00000000 ____D C:\Users\x450\Documents\4A Games
2015-12-17 19:53 - 2015-12-04 11:13 - 00000000 ____D C:\Users\x450\AppData\Local\4A Games
2015-12-17 18:41 - 2015-08-09 10:39 - 00259320 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys
2015-12-17 12:14 - 2015-01-18 13:32 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-17 11:59 - 2015-01-18 13:32 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-16 20:00 - 2015-01-18 04:33 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-16 13:59 - 2015-07-13 20:45 - 19727624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-12-16 13:59 - 2015-07-13 20:45 - 14103608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-12-16 13:59 - 2015-07-13 20:45 - 03603368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-12-16 13:59 - 2015-07-13 20:45 - 03184152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-12-16 13:59 - 2015-07-13 20:45 - 00035775 _____ C:\WINDOWS\system32\nvinfo.pb
2015-12-16 11:54 - 2015-08-06 22:34 - 06359672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-12-16 11:54 - 2015-08-06 22:34 - 02985264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-12-16 11:54 - 2015-08-06 22:34 - 02554488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-12-16 11:54 - 2015-08-06 22:34 - 01256240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-12-16 11:54 - 2015-08-06 22:34 - 00523384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2015-12-16 11:54 - 2015-08-06 22:34 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-12-16 11:54 - 2015-08-06 22:34 - 00075056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2015-12-16 11:54 - 2015-08-06 22:34 - 00062768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-12-16 11:49 - 2015-08-06 22:34 - 06090019 _____ C:\WINDOWS\system32\nvcoproc.bin
2015-12-15 07:36 - 2015-07-10 08:04 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-15 07:36 - 2015-03-03 09:37 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-12-15 07:35 - 2015-01-19 14:27 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-12-14 08:35 - 2015-08-07 07:15 - 00002434 _____ C:\Users\x450\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-13 22:39 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\rescache
2015-12-13 13:01 - 2015-09-04 23:39 - 00000000 ____D C:\Program Files (x86)\OpenRCT2
2015-12-13 08:28 - 2015-06-01 18:39 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-12-13 08:28 - 2015-06-01 18:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-12-13 08:25 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-12-12 04:04 - 2015-02-22 20:36 - 00000000 ____D C:\Users\x450\AppData\Roaming\Dropbox
 
==================== Files in the root of some directories =======
 
2015-08-18 22:18 - 2015-08-18 22:18 - 0000000 _____ () C:\Program Files (x86)\Common Files\AOL
2015-06-07 21:30 - 2015-07-02 21:00 - 0000132 _____ () C:\Users\x450\AppData\Roaming\Adobe PNG Format CC Prefs
2015-03-16 11:38 - 2015-03-25 20:29 - 0000132 _____ () C:\Users\x450\AppData\Roaming\Adobe PNG Format CS6 Prefs
2015-07-07 22:04 - 2015-12-24 10:31 - 0000034 _____ () C:\Users\x450\AppData\Roaming\AdobeWLCMCache.dat
2015-01-13 02:13 - 2016-01-09 15:04 - 0000074 _____ () C:\Users\x450\AppData\Roaming\sp_data.sys
2015-03-12 22:41 - 2015-11-04 06:24 - 0078967 _____ () C:\Users\x450\AppData\Local\ars.cache
2015-03-12 22:41 - 2015-11-04 06:31 - 4774562 _____ () C:\Users\x450\AppData\Local\census.cache
2015-03-12 19:14 - 2015-03-12 19:14 - 0000036 _____ () C:\Users\x450\AppData\Local\housecall.guid.cache
2015-09-01 21:00 - 2015-09-01 21:00 - 0001029 _____ () C:\Users\x450\AppData\Local\recently-used.xbel
2015-11-06 19:03 - 2015-11-06 19:03 - 0000017 _____ () C:\Users\x450\AppData\Local\resmon.resmoncfg
2015-03-12 19:44 - 2015-11-03 20:18 - 0000010 _____ () C:\Users\x450\AppData\Local\sponge.last.runtime.cache
2014-05-24 04:05 - 2012-09-07 08:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2014-05-24 04:05 - 2009-07-22 07:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2014-05-24 04:05 - 2012-09-07 08:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
 
Files to move or delete:
====================
C:\Users\Public\VOIP.dat
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-01-06 12:06
 
==================== End of FRST.txt ============================
 
Addition.txt:
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
Ran by x450 (2016-01-11 13:44:12)
Running from C:\Users\x450\Downloads
Windows 10 Home Single Language (X64) (2015-08-07 10:04:46)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrador (S-1-5-21-2461279538-2166252596-3339692539-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2461279538-2166252596-3339692539-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2461279538-2166252596-3339692539-1003 - Limited - Enabled)
Invitado (S-1-5-21-2461279538-2166252596-3339692539-501 - Limited - Disabled)
x450 (S-1-5-21-2461279538-2166252596-3339692539-1001 - Administrator - Enabled) => C:\Users\x450
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\uTorrent) (Version: 3.4.5.41372 - BitTorrent Inc.)
8BitBoy (HKLM-x32\...\Steam App 296910) (Version:  - AwesomeBlade)
Actualización de NVIDIA 2.8.1.21 (Version: 2.8.1.21 - NVIDIA Corporation) Hidden
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.0 - Adobe Systems Incorporated)
Adobe Photoshop CC 14.0 (HKLM-x32\...\Adobe Photoshop CC 14.0) (Version: 14.0 - Salai Thawng Za Lian)
Alcor Micro USB Card Reader Driver  (HKLM-x32\...\InstallShield_{5CA55DFC-2008-460F-B7A7-FB92100C4494}) (Version: 20.4.10117.43857 - Alcor Micro Corp.)
Alcor Micro USB Card Reader Driver  (x32 Version: 20.4.10117.43857 - Alcor Micro Corp.) Hidden
Ampersand (HKLM-x32\...\Steam App 410210) (Version:  - PiGravity)
Apple Application Support (32 bits) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version:  - Studio Wildcard)
Arma 2 (HKLM-x32\...\Steam App 33910) (Version:  - Bohemia Interactive)
Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version:  - Bohemia Interactive)
Arma 2: Operation Arrowhead Beta (Obsolete) (HKLM-x32\...\Steam App 219540) (Version:  - )
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.3.4 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.8 - ASUS)
ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.3 - ASUS)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 4.0.5 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0021 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 3.1.9 - ASUS)
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.311 - ASUSTEK)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0033 - ASUS)
Audiosurf 2 Demo (HKLM-x32\...\Steam App 373960) (Version:  - )
Auslogics BoostSpeed 8 (HKLM-x32\...\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1) (Version: 8.0.2.0 - Auslogics Labs Pty Ltd)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - )
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.30944 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version:  - )
BlueStacks App Player (HKLM-x32\...\{D7E3588F-25E6-4A93-8B1C-596F7951CA38}) (Version: 0.10.7.5601 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CASIO FA-124 (HKLM-x32\...\{FB47E710-6249-4EFA-BE36-E922B0612AF4}) (Version: 2.04.0000 - CASIO COMPUTER CO., LTD.)
CCleaner (HKLM\...\CCleaner) (Version: 5.13 - Piriform)
Cheating-Death 4.33.4 (HKLM-x32\...\Cheating-Death) (Version:  - )
Clicker Heroes (HKLM-x32\...\Steam App 363970) (Version:  - )
Codename CURE (HKLM-x32\...\Steam App 355180) (Version:  - Hoobalugalar_X)
Common Grounds  (HKLM-x32\...\Common Grounds) (Version:  - Fupoco)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.23.50 - Conexant)
Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6_is1) (Version: Counter-Strike 1.6 No Steam - KingSOFT DVD)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
Curse (HKLM-x32\...\{75080CC9-4C7A-45C4-B149-9C2790FA88F6}) (Version: 6.0.0.0 - Curse)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0407 - Disc Soft Ltd)
Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version:  - FromSoftware)
Dead Bits (HKLM-x32\...\Steam App 303390) (Version:  - Microblast Games)
Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version:  - Stunlock Studios)
Dead Pixels (HKLM-x32\...\Steam App 222980) (Version:  - CSR-Studios)
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Dino D-Day (HKLM-x32\...\Steam App 70000) (Version:  - 800 North and Digital Ranch)
Dirty Bomb (HKLM-x32\...\Steam App 333930) (Version:  - Splash Damage®)
Domestic Dog Simulator (HKLM-x32\...\Steam App 340340) (Version:  - Surreal Distractions)
Don't Starve Together Beta (HKLM-x32\...\Steam App 322330) (Version:  - Klei Entertainment)
Dropbox (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
Duke Nukem 3D: Megaton Edition (HKLM-x32\...\Steam App 225140) (Version:  - 3D Realms)
EDGE (HKLM-x32\...\Steam App 38740) (Version:  - Two Tribes)
Fallout 4 (HKLM-x32\...\Steam App 377160) (Version:  - Bethesda Game Studios)
Fallout New Vegas (HKLM-x32\...\{219ED5A0-9CBF-4F3A-B927-37C9E5C5F14F}_is1) (Version: 1.4.0.525 - Bethesda Softworks)
FBReader for Windows (HKLM-x32\...\FBReader for Windows) (Version:  - )
Firestorm SecondLife and OpenSim viewer (Version: 4.6.42974 - Phoenix Viewer Project) Hidden
Firestorm-Releasex64 x64 (HKLM-x32\...\{4e154806-de7a-4300-b61e-bc0c3a4c5b43}) (Version: 4.6.42974 - Phoenix Firestorm Project Inc)
Fistful of Frags (HKLM-x32\...\Steam App 265630) (Version:  - Fistful of Frags Team)
Flesh Eaters (HKLM-x32\...\Steam App 383580) (Version:  - 16bit Nights)
Galería de fotos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Game Explorer Categories - casual (HKLM-x32\...\WildTangentGameProvider-asus-casual) (Version: 3.2.0.6 - WildTangent, Inc.)
Game Explorer Categories - enthusiast (HKLM-x32\...\WildTangentGameProvider-asus-enthusiast) (Version: 3.2.0.6 - WildTangent, Inc.)
Game Explorer Categories - family (HKLM-x32\...\WildTangentGameProvider-asus-family) (Version: 3.2.0.6 - WildTangent, Inc.)
Game Explorer Categories - kids (HKLM-x32\...\WildTangentGameProvider-asus-kids) (Version: 3.2.0.6 - WildTangent, Inc.)
Game Explorer Categories - touch (HKLM-x32\...\WildTangentGameProvider-asus-touch) (Version: 3.2.0.6 - WildTangent, Inc.)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Facepunch Studios)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
Gods Will Be Watching (HKLM-x32\...\Steam App 274290) (Version:  - Deconstructeam)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
Gyazo 3.1.6 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version:  - Nota Inc.)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
HF pAppLoc version 1.0 (HKLM-x32\...\{9143B17E-BBDE-4EA7-A4E3-20D384D9C8A5}_is1) (Version: 1.0 - Inquisitor)
Hotline Miami (HKLM-x32\...\Steam App 219150) (Version:  - Dennaton Games)
Hotline Miami 2: Wrong Number (HKLM-x32\...\Steam App 274170) (Version:  - Dennaton Games)
How to Survive (HKLM-x32\...\Steam App 250400) (Version:  - EKO Software)
Insurgency (HKLM-x32\...\Steam App 222880) (Version:  - New World Interactive)
Intel® Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10603.192 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.6.0.1038 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4285 - Intel Corporation)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.18 - Oracle Corporation)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation)
Killing Floor 2 (HKLM-x32\...\Steam App 232090) (Version:  - Tripwire Interactive)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
Life Is Strange (HKLM-x32\...\Life Is Strange_is1) (Version:  - SQUARE ENIX)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.410 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.410 - LogMeIn, Inc.) Hidden
Mediatek Bluetooth (HKLM\...\{9ACFC67B-786F-CC9B-847A-D0350FF6F5E0}) (Version: 11.0.752.0 - Mediatek)
Metro 2033 Redux (HKLM-x32\...\Steam App 286690) (Version:  - 4A GAMES)
Metro: Last Light Redux (HKLM-x32\...\Steam App 287390) (Version:  - 4A Games)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 15.0.4779.1002 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{63227E62-F417-497E-9060-22B3A9A52D7A}) (Version: 1.0.1.0 - Mojang)
MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 41.0.1 (x86 es-AR) (HKLM-x32\...\Mozilla Firefox 41.0.1 (x86 es-AR)) (Version: 41.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.2.5702 - Mozilla)
My.com Game Center (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\MyComGames) (Version: 3.166 - My.com B.V.)
MyFreeCodec (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\MyFreeCodec) (Version:  - )
NEO Scavenger (HKLM-x32\...\Steam App 248860) (Version:  - Blue Bottle Games)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.55.7 - Black Tree Gaming)
Nosgoth (HKLM-x32\...\Steam App 200110) (Version:  - Psyonix)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.4 - Notepad++ Team)
NVIDIA Controlador de gráficos 358.87 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.87 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.8.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.8.1.21 - NVIDIA Corporation)
NVIDIA PhysX (Legacy) (HKLM-x32\...\{FAAC26AD-73BA-40CE-86AA-C9213F9E064A}) (Version: 9.13.0604 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4779.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4779.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4779.1002 - Microsoft Corporation) Hidden
One Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version:  - Silver Dollar Games)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.)
ORION: Prelude (HKLM-x32\...\Steam App 104900) (Version:  - Spiral Game Studios)
osu! (HKLM-x32\...\{509b0e78-1772-4ff3-b540-5ad7529bc16e}) (Version: latest - ppy Pty Ltd)
osu! (HKLM-x32\...\{edc672b9-6717-4551-bf18-f4756ca82784}) (Version: latest - ppy Pty Ltd)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.91.145.0 - Overwolf Ltd.)
Panel de control de NVIDIA 358.87 (Version: 358.87 - NVIDIA Corporation) Hidden
Paquete de controladores de Windows - ASUS (ATP) Mouse  (06/17/2015 6.0.0.66) (HKLM\...\1EFB54678773735560B565BE7FA6F2BCC557EE21) (Version: 06/17/2015 6.0.0.66 - ASUS)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
PARTICLE MACE (HKLM-x32\...\Steam App 295690) (Version:  - Andy Wallace)
PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version:  - OVERKILL - a Starbreeze Studio.)
Personal.exe (HKLM-x32\...\personalgsm_is1) (Version: 1.0.18.0 - LightComm Tecnologia)
piaip AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Portal (HKLM-x32\...\Steam App 400) (Version:  - Valve)
POSTAL (HKLM-x32\...\Steam App 232770) (Version:  - Running With Scissors)
Prezi (HKLM-x32\...\{63B8F931-2BF3-4D5D-9C28-E2EF88D83DFD}) (Version: 5.2.8 - Prezi.com)
Project Zomboid (HKLM-x32\...\Steam App 108600) (Version:  - The Indie Stone)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert)
Qualcomm Atheros Inc.® AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.2.1 r2386 - )
Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 2.2.2.2 - Ralink)
Revolution Ace (HKLM-x32\...\Steam App 274560) (Version:  - Laser Guided Games, LLC)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.9 - Rockstar Games)
RUSH (HKLM-x32\...\Steam App 38720) (Version:  - Two Tribes)
Rust (HKLM-x32\...\Steam App 252490) (Version:  - Facepunch Studios)
S.T.A.L.K.E.R. - Call of Pripyat (HKLM-x32\...\S.T.A.L.K.E.R. - Call of Pripyat_is1) (Version:  - )
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.15075.2 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.3.15075.2 - Samsung Electronics Co., Ltd.) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.55.0 - Samsung Electronics Co., Ltd.)
Sanctum 2 (HKLM-x32\...\Steam App 210770) (Version:  - Coffee Stain Studios)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
SHIELD Streaming (Version: 4.1.0250 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.8.1.21 - NVIDIA Corporation) Hidden
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version:  - 2K Games, Inc.)
Skyborn (HKLM-x32\...\Steam App 278460) (Version:  - Dancing Dragon Games)
Skyforge MyCom (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\Skyforge MyCom) (Version: 1.59 - My.com B.V.)
Skype™ 7.8 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.)
Skyrim Performance Monitor (HKLM-x32\...\{84AEB93A-ECBB-4568-8F59-D4516EF59079}) (Version: 3.7 - SirGarnon on Skyrim Nexus)
SlimDrivers (HKLM-x32\...\{746AB259-6474-4111-8966-1C62F9A6E063}) (Version: 2.3.1 - SlimWare Utilities, Inc.)
SlimDX Runtime .NET 2.0 (January 2012) (HKLM-x32\...\{014A2868-BE56-4888-A16C-693989B8F153}) (Version: 2.0.13.43 - SlimDX Group)
Space Engineers (HKLM-x32\...\Steam App 244850) (Version:  - Keen Software House)
Sparkle 2 Evo (HKLM-x32\...\Steam App 253650) (Version:  - )
Spermination (HKLM-x32\...\Steam App 363460) (Version:  - Phr00t's Software)
Spiral Knights (HKLM-x32\...\Steam App 99900) (Version:  - Three Rings)
Squishy the Suicidal Pig (HKLM-x32\...\Steam App 318430) (Version:  - Tomi Maarela)
Starbound (HKLM-x32\...\Steam App 211820) (Version:  - )
Stealth Inc 2 (HKLM-x32\...\Steam App 329380) (Version:  - Carbon)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Super Amazing Wagon Adventure (HKLM-x32\...\Steam App 250500) (Version:  - sparsevector)
Super Hexagon (HKLM-x32\...\Steam App 221640) (Version:  - Terry Cavanagh)
Surgeon Simulator (HKLM-x32\...\Steam App 233720) (Version:  - Bossa Studios)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version:  - Valve)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.45471 - TeamViewer)
Telegram Desktop version 0.9.18 (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 0.9.18 - Telegram Messenger LLP)
Terraria (HKLM-x32\...\Steam App 105600) (Version:  - Re-Logic)
The 39 Steps (HKLM-x32\...\Steam App 234940) (Version:  - The Story Mechanics)
The Binding of Isaac (HKLM-x32\...\Steam App 113200) (Version:  - Edmund McMillen and Florian Himsl)
The Binding of Isaac Rebirth 1.0 (HKLM-x32\...\The Binding of Isaac Rebirth 1.0) (Version: 1.0 - Games on Cat-A-Cat.Net)
The Long Dark (HKLM-x32\...\Steam App 305620) (Version:  - Hinterland Studio Inc.)
The Ship (HKLM-x32\...\Steam App 2400) (Version:  - Outerlight Ltd.)
The Way of Life (HKLM-x32\...\Steam App 310370) (Version:  - Fabio Ferrara)
This War of Mine (HKLM-x32\...\Steam App 282070) (Version:  - 11 bit studios)
Toki Tori (HKLM-x32\...\Steam App 38700) (Version:  - Two Tribes)
Unity Web Player (HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\UnityWebPlayer) (Version: 5.0.1f1 - Unity Technologies ApS)
Unity Web Player (x64) (All users) (HKLM\...\UnityWebPlayer) (Version: 4.6.4f1 - Unity Technologies ApS)
Unturned (HKLM-x32\...\Steam App 304930) (Version:  - Nelson Sexton)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 10.0 - Ubisoft)
VEGA Conflict (HKLM-x32\...\Steam App 339600) (Version:  - KIXEYE)
Viewpoint Media Player (HKLM-x32\...\ViewpointMediaPlayer) (Version:  - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Warframe (HKLM-x32\...\Steam App 230410) (Version:  - Digital Extremes)
Warhammer 40,000: Dawn of War - Game of the Year Edition (HKLM-x32\...\Steam App 4570) (Version:  - Relic Entertainment)
WebStorage (HKLM-x32\...\WebStorage) (Version: 2.1.2.301 - ASUS Cloud Corporation)
WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus) (Version: 4.0.11.2 - WildTangent)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS)
WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
Worms Revolution (HKLM-x32\...\Steam App 200170) (Version:  - Team17 Digital Ltd)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\x450\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\x450\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {025AAE75-C3FA-4045-8130-0C325B440F9F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {09DADFC5-7E95-47B2-92F6-A0DD69E60872} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2015-07-28] (AsusTek)
Task: {10F4B90C-EEAE-4A00-A738-D2B083DD4417} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {1814005A-C69E-45D5-A256-02C5F448A587} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {23F4290A-B499-4F26-BC7B-0F2A0C834D9F} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2461279538-2166252596-3339692539-1001UA => C:\Users\x450\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.)
Task: {2A4B79DE-7AB4-456B-8716-4CABB83C4A92} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {36875214-7953-48DD-905F-1FFFE8834FF4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-12-08] (Piriform Ltd)
Task: {388F380A-7AE2-493B-AD58-4951EB4BE3E8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {3972A9A9-B461-4AC7-B671-90044724ED4D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation)
Task: {419CADA7-CFB7-474A-A55D-F81CEA79C5A1} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2015-08-19] ()
Task: {42344085-01DB-4174-890A-856E5FC0E1E1} - System32\Tasks\Auslogics\BoostSpeed\Start BoostSpeed оn x450 logon => C:\Program Files (x86)\Auslogics\BoostSpeed\BoostSpeed.exe [2015-08-31] (Auslogics)
Task: {4479CB34-A9A3-47DF-9CF3-A19A28378EB8} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-12-15] (Microsoft Corporation)
Task: {49A08F2A-352F-4A53-B7D6-189E1DB9334E} - System32\Tasks\Open Hardware Monitor\Startup => C:\Users\x450\AppData\Local\Temp\Rar$EXa0.165\OpenHardwareMonitor\OpenHardwareMonitor.exe <==== ATTENTION
Task: {58E4A173-A4B4-4056-8453-22233CAA1F40} - System32\Tasks\P4GIntlCtrl => C:\Program Files\ASUS\P4G\IntlDPST.exe [2014-02-11] ()
Task: {5D01E956-4DFF-4BE9-AFED-848367972BE8} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2015-08-19] (SlimWare Utilities, Inc.)
Task: {6A969513-AB37-47AF-8CFE-30F48B9172CD} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {6C44B4A9-9AA5-4E0D-8A4A-7B9F8D407D50} - System32\Tasks\Auslogics\BoostSpeed\Scan and Repair => Rundll32.exe TaskSchedulerHelper.dll,RunTask "BoostSpeed.exe" "-UseTray -Schedule"
Task: {7150D331-F77C-40C1-A5C2-ACACC6AF9D8D} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2461279538-2166252596-3339692539-1001Core => C:\Users\x450\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.)
Task: {76D46F8E-D0EE-439F-9B22-0B97473020D5} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-11-04] ()
Task: {77AB225B-4FB6-4FFD-851F-8DFAC5088BD1} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {87477991-25A6-4666-86DF-2A53879EA2ED} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {8B31BAB2-F3A7-4033-9389-6B769352F10A} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2014-03-27] (ASUSTek Computer Inc.)
Task: {94646896-F48B-4E44-BAAA-B2734C1004F0} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2015-03-23] (ASUSTeK Computer Inc.)
Task: {9A4122EC-FC03-431F-9B72-102608F5DE8E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {9C3C4E0B-242C-44EB-8D30-34A0E5C6D336} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {A65240C8-4FC9-45B9-8C86-7404FEED43F7} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2015-02-12] ()
Task: {A8AC1A15-1C4D-47EF-B7CD-8DB0B149A06F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {AB48A44B-B263-414B-8571-F132248682EC} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation)
Task: {AC932528-4468-46A7-B955-C780B3650E1C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {B0D52DC1-C295-45FA-B3B0-DC337902B30F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {B55763BC-48AE-4523-8FFF-38B61A1D19E5} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-01-04] (AVAST Software)
Task: {BCBAA89F-D36F-4F46-A301-D7BFAE2F0987} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [2014-01-14] (ASUSTek Computer Inc.)
Task: {C40EB182-0FF7-4496-9149-31B2A9C3C02C} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {C92DE496-10EB-4FD1-96DE-89C5A742491C} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2015-03-23] (ASUSTeK Computer Inc.)
Task: {C9DF8AD9-1B7F-49D0-9FA7-E22BBDE0CFD9} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-10-07] (ASUS)
Task: {D14C5993-FC46-4938-8240-A30A1C3E85CC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-28] (Adobe Systems Incorporated)
Task: {E5472F8B-AB12-4FDF-8D98-272FD2D43641} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-10-07] (ASUSTeK Computer Inc.)
Task: {E587F28B-87F8-4450-881B-5690492188AA} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-12-15] (Overwolf LTD)
Task: {E978DE6E-E601-4EED-B01F-51EF726E8271} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-12-17] (Microsoft Corporation)
Task: {F686B68E-10AB-43E1-9727-468FF69770F3} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2015-08-19] ()
Task: {F7216BDC-8ABF-41D8-A284-729D8A932592} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2014-02-11] (ASUS)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2461279538-2166252596-3339692539-1001Core.job => C:\Users\x450\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2461279538-2166252596-3339692539-1001UA.job => C:\Users\x450\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\SlimDrivers Startup.job => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-08-06 18:23 - 2015-08-06 18:23 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-08-06 22:34 - 2015-12-16 11:54 - 00126256 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-08-19 06:23 - 2015-08-11 06:14 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-01-18 04:52 - 2010-01-14 13:49 - 00620032 _____ () C:\Windows\SysWOW64\GSMSrvEjector.exe
2015-01-19 14:27 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-07-12 10:59 - 2015-07-12 10:59 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe
2016-01-09 09:52 - 2015-12-08 22:52 - 00217720 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2015-10-17 11:04 - 2015-09-17 03:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-02-11 22:08 - 2014-02-11 22:08 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
2014-02-11 22:08 - 2014-02-11 22:08 - 00028672 _____ () C:\Program Files\ASUS\P4G\plctrl.dll
2015-07-18 00:35 - 1999-12-31 21:00 - 00395880 _____ () C:\WINDOWS\system32\igfxTray.exe
2015-10-17 11:04 - 2015-09-17 03:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2010-10-20 15:23 - 2010-10-20 15:23 - 08801632 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-05-12 06:49 - 2014-05-12 06:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2012-01-10 14:41 - 2015-03-30 01:44 - 00568904 _____ () C:\Program Files (x86)\puush\puush.exe
2015-12-09 11:13 - 2015-11-25 01:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-09 11:12 - 2015-11-25 01:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-09 11:13 - 2015-11-25 01:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-17 11:04 - 2015-09-17 02:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 08:00 - 2015-07-10 13:48 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-12-16 20:00 - 2015-12-11 09:34 - 01971528 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libglesv2.dll
2015-12-16 20:00 - 2015-12-11 09:34 - 00093512 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libegl.dll
2015-12-10 11:15 - 2015-12-10 11:16 - 00012800 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2015-12-10 11:15 - 2015-12-10 11:16 - 11542016 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2015-11-20 03:07 - 2015-11-20 03:07 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-12-24 18:39 - 2015-12-24 07:46 - 29245120 _____ () C:\Users\x450\AppData\Local\Google\Chrome\User Data\PepperFlash\20.0.0.267\pepflashplayer.dll
2016-01-09 06:48 - 2016-01-09 06:48 - 03563008 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.6020.0_x64__8wekyb3d8bbwe\Calculator.exe
2015-12-15 14:14 - 2015-12-15 14:14 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.6020.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-10-17 11:03 - 2015-09-17 02:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 07:59 - 2015-07-10 07:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-10-03 20:59 - 2015-10-03 20:59 - 00103376 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-10-03 20:59 - 2015-10-03 20:59 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-01-09 08:37 - 2016-01-09 08:37 - 02821120 _____ () C:\Program Files\AVAST Software\Avast\defs\16010900\algo.dll
2016-01-09 15:00 - 2016-01-09 15:00 - 02821120 _____ () C:\Program Files\AVAST Software\Avast\defs\16010901\algo.dll
2016-01-11 11:12 - 2016-01-11 11:12 - 02821120 _____ () C:\Program Files\AVAST Software\Avast\defs\16011100\algo.dll
2013-10-09 01:41 - 2013-10-09 01:41 - 00037968 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll
2013-09-09 23:23 - 2013-09-09 23:23 - 00162816 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll
2015-04-20 13:53 - 2015-12-08 22:53 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-10-03 20:59 - 2015-10-03 20:59 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-11-19 15:38 - 2013-10-23 18:44 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2015-01-20 04:30 - 2015-01-20 04:30 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2015-01-18 02:53 - 2015-12-15 02:54 - 00782336 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-01-17 21:05 - 2015-07-03 13:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-01-18 02:53 - 2016-01-09 22:50 - 02546768 _____ () C:\Program Files (x86)\Steam\video.dll
2015-01-17 21:05 - 2015-07-03 13:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-01-17 21:05 - 2015-07-03 13:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-01-18 02:53 - 2015-09-23 21:33 - 02549248 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-01-18 02:53 - 2015-09-23 21:33 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-01-18 02:53 - 2015-09-23 21:33 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-01-18 02:53 - 2015-09-23 21:33 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-01-18 02:53 - 2015-09-23 21:33 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-01-18 02:53 - 2016-01-09 22:50 - 00802896 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2015-07-11 13:02 - 2015-12-29 22:51 - 00208896 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll
2015-01-18 02:53 - 2016-01-05 22:52 - 48387872 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-01-17 21:05 - 2015-09-24 20:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2013-04-27 10:24 - 2013-04-27 10:24 - 00071680 _____ () C:\Program Files (x86)\ASUS\ASUS Live Update\checkmetro.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2013-08-22 10:25 - 2015-07-07 22:24 - 00001025 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
127.0.0.1 lmlicenses.wip4.adobe.com
127.0.0.1 lm.licenses.adobe.com
127.0.0.1 na1r.services.adobe.com
127.0.0.1 hlrcv.stage.adobe.com
127.0.0.1 practivate.adobe.com 
127.0.0.1 activate.adobe.com
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\x450\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\StartupFolder: => "Rainmeter.lnk"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\StartupFolder: => "Curse.lnk"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\...\StartupApproved\Run: => "Overwolf"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{E619D133-3F55-4957-A8E4-53FB1A44CB5F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{3C459B0C-D9F0-4633-BF7C-F40F57FDF97E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{8957E6F6-F52A-46E5-80B6-48D9DEE053EB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{CA41C7D9-D894-4F1E-9914-18587161FE14}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{4D071841-5833-47D1-872D-E226AF4B2576}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together Beta\bin\dontstarve_steam.exe
FirewallRules: [{F52DF681-81F2-461D-9DBB-A6823F29B475}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together Beta\bin\dontstarve_steam.exe
FirewallRules: [{3C3D3BBB-C0A3-48BF-9A63-BC9B49893F62}] => (Allow) D:\Steam library\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{3C5FC1D5-1620-44A6-835D-021F0BA2D2C0}] => (Allow) D:\Steam library\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{CAB0EB91-3D6D-42ED-ABC6-0D588DC58516}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C2D877FF-A222-437F-91D6-554A5470B110}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0D112429-779E-422B-B6AB-E9E3F218771C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{52022A0A-3015-4192-B42D-28213DF5C58D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{8B2DEB61-F1A4-435D-B671-B4FC9DA5A89B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{C9F8D06D-BCF4-4CA1-B9D6-9962EE2FF8C5}] => (Allow) D:\Nexon\vindictus\appdata\en-US\NMService.exe
FirewallRules: [{F21D72A0-4CA6-43A0-AB52-D9BFB441B8E6}] => (Allow) D:\Nexon\vindictus\appdata\en-US\NMService.exe
FirewallRules: [{B8F5171C-70DD-4A32-B5DB-D15055A438D9}] => (Allow) C:\Program Files (x86)\Common Files\AOL\System Information\sinf.exe
FirewallRules: [{722ED662-31CE-4DE5-8E20-BFFA99EB9917}] => (Allow) C:\Program Files (x86)\Common Files\AOL\System Information\sinf.exe
FirewallRules: [{2660AE09-1ED5-4BE6-9182-A79F265AA922}] => (Allow) C:\Program Files (x86)\Common Files\AOL\Loader\aolload.exe
FirewallRules: [{3BABA2EB-8EBC-4FCA-85F2-8559DA22C09A}] => (Allow) C:\Program Files (x86)\Common Files\AOL\Loader\aolload.exe
FirewallRules: [{55BB094C-49C2-41AA-8AC7-01C3E5BE05F7}] => (Allow) C:\Program Files (x86)\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe
FirewallRules: [{0543C8FC-F745-42C3-AF08-013E4752679E}] => (Allow) C:\Program Files (x86)\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe
FirewallRules: [{E98CDDB4-0B80-4CB9-B837-8A3863CCA6B0}] => (Allow) C:\Program Files (x86)\Common Files\AOL\1436973806\ee\aolsoftware.exe
FirewallRules: [{63F4299E-A3CA-4CBD-B2F1-363E44775FF1}] => (Allow) C:\Program Files (x86)\Common Files\AOL\1436973806\ee\aolsoftware.exe
FirewallRules: [{9728958B-E7AB-4365-A6D6-F26DCF106C26}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLacsd.exe
FirewallRules: [{2ECC799D-7F05-4845-8FE8-FF7E60660A8C}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLacsd.exe
FirewallRules: [{B5C932A7-EA7A-46F8-9DBF-46113D1AD676}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLDial.exe
FirewallRules: [{92022181-9380-4300-9101-FEF8F7E5C541}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLDial.exe
FirewallRules: [{58ECF570-3BD8-489F-AC7C-92221F4F1C3F}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{E02443CA-0D10-4407-812F-1536231C1A69}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{B94D2750-D770-4746-8B8F-BD7698C20AE7}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{1C6B697D-D9B5-49AC-A1E3-D55ED8AAE2A2}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{018A0C7B-3048-4800-871F-82BE54EC296A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{74CC67FD-7DD4-4A08-B730-5C95E2629B43}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{D71C0A4E-B757-44DB-94FB-7706761B2A79}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{FD151D31-5876-47BA-9A99-7F0C9A2A9DD2}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3932C86C-839B-4E00-86FE-8EF3642C9193}] => (Block) %ProgramFiles%\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe
FirewallRules: [{51C9E15D-5EA4-487B-AC67-F01210D80DB9}] => (Allow) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe
FirewallRules: [{36A67184-2DFD-48E7-AAA8-62E774899AB1}] => (Allow) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe
FirewallRules: [{09B00C96-78E5-46BA-97FB-D09085834727}] => (Allow) D:\Steam library\steamapps\common\Dino D-Day\dinodday.exe
FirewallRules: [{4D25F5F7-7C90-4621-AFCE-64795A643D5F}] => (Allow) D:\Steam library\steamapps\common\Dino D-Day\dinodday.exe
FirewallRules: [{DFE28C4E-32A1-43F6-8541-1544BA83E338}] => (Allow) D:\Steam library\steamapps\common\Audiosurf 2 Demo\Audiosurf2.exe
FirewallRules: [{5E51DD09-6728-448F-A97F-6B234CE52140}] => (Allow) D:\Steam library\steamapps\common\Audiosurf 2 Demo\Audiosurf2.exe
FirewallRules: [{7154AAB7-4C86-4748-A558-903AEF8A8682}] => (Allow) D:\Steam library\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{06811FCA-82E8-44A2-9242-ED73709FEB6C}] => (Allow) D:\Steam library\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{F8903092-8B41-4F48-9494-2C2CC3306391}] => (Allow) D:\Steam library\steamapps\common\How to Survive\Detect.exe
FirewallRules: [{4039C384-8D20-4CFF-9CF0-12F4A00F264D}] => (Allow) D:\Steam library\steamapps\common\How to Survive\Detect.exe
FirewallRules: [{007697F0-965B-43E0-BE3F-1682AC62FBBF}] => (Allow) D:\Steam library\steamapps\common\How to Survive\HowToSurvive.exe
FirewallRules: [{3AECD868-8D7B-40F7-8B78-3BF34CF18595}] => (Allow) D:\Steam library\steamapps\common\How to Survive\HowToSurvive.exe
FirewallRules: [{3FCBE958-6A50-48B6-AD21-6A36577B017C}] => (Allow) D:\Steam library\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{3DB6894A-56C6-4448-8005-9531160DABCC}] => (Allow) D:\Steam library\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [UDP Query User{7C3A937F-BE42-425B-869E-4208850EAAD6}C:\users\x450\desktop\arcade\ppsspp\ppsspp\ppssppwindows64.exe] => (Allow) C:\users\x450\desktop\arcade\ppsspp\ppsspp\ppssppwindows64.exe
FirewallRules: [TCP Query User{22836A7B-5726-4A0D-9711-89406A8EB2D5}C:\users\x450\desktop\arcade\ppsspp\ppsspp\ppssppwindows64.exe] => (Allow) C:\users\x450\desktop\arcade\ppsspp\ppsspp\ppssppwindows64.exe
FirewallRules: [{F84AEE67-FF6D-4714-8999-3B78E0AF385B}] => (Allow) D:\Steam library\steamapps\common\Fistful of Frags\sdk\hl2.exe
FirewallRules: [{A2EFB394-F3D8-44F5-8392-CD7A7C3C382C}] => (Allow) D:\Steam library\steamapps\common\Fistful of Frags\sdk\hl2.exe
FirewallRules: [{E144A6D2-C46D-4B11-B9DE-D26449B843E1}] => (Allow) D:\Steam library\steamapps\common\arma 2 operation arrowhead\ArmA2OA.exe
FirewallRules: [{4817E18F-1245-4F54-8A30-F894AA3B893A}] => (Allow) D:\Steam library\steamapps\common\arma 2 operation arrowhead\ArmA2OA.exe
FirewallRules: [{8F828ECA-FF16-4931-B27A-6C732D2713BC}] => (Allow) D:\Steam library\steamapps\common\arma 2 operation arrowhead\ArmA2OA_BE.exe
FirewallRules: [{0C1F6816-F4B5-4180-964A-0870BB382E72}] => (Allow) D:\Steam library\steamapps\common\arma 2 operation arrowhead\ArmA2OA_BE.exe
FirewallRules: [{D46815BE-5E86-4BC6-8FF2-98B2B13F1D2C}] => (Allow) D:\Steam library\steamapps\common\Arma 2\arma2.exe
FirewallRules: [{A7A49FDC-3E0A-4682-A67D-C0448A65138C}] => (Allow) D:\Steam library\steamapps\common\Arma 2\arma2.exe
FirewallRules: [{4D63B0F4-8162-45C4-9134-A600B711F80C}] => (Allow) D:\S.T.A.L.K.E.R. - Call of Pripyat\Stalker-COP.exe
FirewallRules: [{E4FE7090-7077-4458-8BE8-F2345DD1A5F6}] => (Allow) D:\S.T.A.L.K.E.R. - Call of Pripyat\Stalker-COP.exe
FirewallRules: [{4607D6E0-D233-41B3-B5FA-3DF4C06EBFA1}] => (Allow) D:\Steam library\steamapps\common\arma 2 operation arrowhead\Expansion\beta\Arma2OA.exe
FirewallRules: [{356E897B-CA94-48BA-A317-0D103D22270B}] => (Allow) D:\Steam library\steamapps\common\arma 2 operation arrowhead\Expansion\beta\Arma2OA.exe
FirewallRules: [{24A3293F-FA17-4560-A128-AB8FF88FA638}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squishy\bin\squishy.exe
FirewallRules: [{71B8E61A-3368-467D-9EBD-F7B7241E9CFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squishy\bin\squishy.exe
FirewallRules: [{FD173668-2D43-4B88-AFDE-A138E9A76969}] => (Allow) D:\Steam library\steamapps\common\Spiral Knights\java_vm\bin\javaw.exe
FirewallRules: [{3E8EFF69-4550-4146-AEA3-AE7269F03175}] => (Allow) D:\Steam library\steamapps\common\Spiral Knights\java_vm\bin\javaw.exe
FirewallRules: [{CA4E63A8-599F-4E84-B20B-6288CBD7EEC3}] => (Allow) D:\Steam library\steamapps\common\Dead Bits\Dead Bits.exe
FirewallRules: [{0D866E2A-DE78-4063-ABAF-E9F0885E494C}] => (Allow) D:\Steam library\steamapps\common\Dead Bits\Dead Bits.exe
FirewallRules: [{91086538-4D73-4134-9A4D-493A8E51F874}] => (Allow) D:\Steam library\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{30B69990-C407-4123-AEFC-DC385D7DC062}] => (Allow) D:\Steam library\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{01F29CF2-3327-474A-97FF-382B25BE7D22}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{C5EC60F8-35E5-42BE-8EA5-EC2D326786B5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{42C6A3BF-EA94-4A54-BC1D-F847DBCE0E9A}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{A49F887F-19E0-499E-837E-93EC9BE932E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{3AF8289D-BF75-4212-916B-4A9E67713DBE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{D2152629-C483-4E8F-B02D-F38CC6A92ACB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{4AB13DE6-932F-4592-AB5C-886100E3A17F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{CF7D38E9-7A59-4E45-8DD6-CC8E8058B448}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe
FirewallRules: [TCP Query User{607A2850-D202-4686-A813-4EA52C2D6AFD}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe
FirewallRules: [{269DB3C7-2A14-415E-B3DE-8E0EBA91903C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{93122770-08E7-4474-BE5B-81F70BA8E26B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E739064A-DFF8-4262-B8E1-EBD0E17EACD0}] => (Allow) LPort=1900
FirewallRules: [{95F36550-2786-48BA-9DD4-2C0828A4CE96}] => (Allow) LPort=2869
FirewallRules: [{97B5BDAF-88D0-4A5C-A130-63E7256A9924}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{5F00FB7E-98B9-4085-899D-36B9F99159F5}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{67D08499-CACF-4DE6-8CDA-C7DCCD2982F4}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{CE0600F0-C575-4C29-A97F-379202AB841B}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{24D682F6-2739-4D34-B41C-7235D4A7C6F6}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{F330D4EB-DC8F-42AD-BE6A-CA4D1EA87A8A}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{76C76116-7C73-4221-8839-6C638FDB5DE7}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{DAA2F494-A7A2-45B3-B7BB-5439408D3F58}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{E11FA759-8C15-4ABA-A575-CB8D281C9BB2}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{0E06AEF1-3047-4080-8CA5-F558BD226319}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{63A5FD8F-0505-4C5B-9004-EAB8EE8F1E1B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F33954C5-07D2-44E3-A00A-1B5DFDE78CB1}] => (Allow) D:\Steam library\steamapps\common\The Way of Life\TheWayOfLifeDemoWindows.exe
FirewallRules: [{F5CDE114-371A-415D-8B5B-924E7CBDADD5}] => (Allow) D:\Steam library\steamapps\common\The Way of Life\TheWayOfLifeDemoWindows.exe
FirewallRules: [{024317F7-5A19-47D9-B3B3-A4EBBF39FED0}] => (Allow) D:\Steam library\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E1ABE0C5-CD9D-48D9-B3D1-E364D1D60875}] => (Allow) D:\Steam library\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{76F440C1-3CBB-47E4-8C91-2D4289D0C15B}] => (Allow) D:\Steam library\steamapps\common\Elsword\data\x2.exe
FirewallRules: [{D9838D3C-5A04-4035-9042-15CD9B88299A}] => (Allow) D:\Steam library\steamapps\common\Elsword\data\x2.exe
FirewallRules: [UDP Query User{679EC3C3-A4F7-4CB4-A564-E460DA33DB77}C:\program files\firestorm-releasex64\slvoice.exe] => (Allow) C:\program files\firestorm-releasex64\slvoice.exe
FirewallRules: [TCP Query User{FC77FFAC-7F15-4561-AAF8-58B4E479FC44}C:\program files\firestorm-releasex64\slvoice.exe] => (Allow) C:\program files\firestorm-releasex64\slvoice.exe
FirewallRules: [UDP Query User{D0DBBE35-D0A8-4565-8A57-938D7C51832E}C:\users\x450\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\x450\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{F820F7FC-6333-4AE4-8202-3FE1FD1A490D}C:\users\x450\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\x450\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{02EE4632-6A29-418A-BF93-131C2B201FDB}] => (Allow) D:\Steam library\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{81DF167F-4A77-4709-9CC0-D5D179321F26}] => (Allow) D:\Steam library\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{584ECA83-50BB-457C-8F91-2D30FB3A694E}] => (Allow) C:\Users\x450\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{FAE47323-7BC5-4234-AE8F-60280916EAED}] => (Allow) C:\Users\x450\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{193C3D5F-2301-4D4C-B834-256944B8871A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squishy\bin\squishy.exe
FirewallRules: [{D5549A05-70A9-40D5-8A2F-2FD055AAA96C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squishy\bin\squishy.exe
FirewallRules: [{BDD25891-52E2-435C-8C5D-46D9EA9D14FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{41D86404-0DA5-4712-A5DF-F50568DA864D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{C4D9E999-EF20-47D6-B6A3-3D1A332C319B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{25BFDC9F-4ADD-40BE-AB4A-4AE4BC5352F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{EB945323-1F6B-4EEA-9FCC-BAE27B43C7B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{AA3571F3-05AA-4B8E-AC7B-F47174577A02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{5C2DE67A-3634-45EA-9BBC-DB7CFAD881D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{C5349945-AC00-4839-B2F9-5026E437C9F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{6573C1AE-7676-407A-8E3B-91028617FD30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{8FBA1977-5918-46A0-9615-8C8ADB720100}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{07CFCE35-550E-4B87-951B-11A0D2B9E370}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{B50DC5DA-D3F6-45CE-9289-6B88B96DDF62}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{D3CF6832-8911-40E0-8F8C-26E2DEE17A1E}] => (Allow) C:\Users\x450\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{6865D405-CF0C-44F2-8C5C-8F13479AC426}] => (Allow) C:\Users\x450\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [UDP Query User{14E77985-B549-4865-9470-70E4615000C8}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{CF3230BD-5E54-4C49-AD66-14CFA010856F}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{3C5CD2EF-F78B-496D-BC1F-456B20D27AA6}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{F6643F1A-A046-4ECC-BA96-F1C7036127A0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{90C73DE7-8E2C-4F5B-A160-6EB836239AB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{124380E3-BD5A-45D0-9E8D-3B91FC43ED11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{5135FF9C-E133-40D6-9959-6317A489A02D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{147ECF70-10EF-42A3-8C2D-E5ADBCF51C60}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{42AF3351-07DB-4385-AEAE-345D66D70F81}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A6BDDCFF-9A25-43A4-A26E-86D18A420A69}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{FB9076F5-68CA-40BD-86FA-4F8C3E0857E3}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{3A4E763D-CB60-4998-9F5D-2E0D6F72E5E3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{ED7E84E2-34FF-4215-BF56-5AD6372F2263}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{305614E5-C483-4A7F-AEA6-7EFB911E93AB}] => (Allow) D:\Steam library\steamapps\common\Rust\Rust.exe
FirewallRules: [{3D61A018-3823-4C4C-A0C4-68E6F62ECE14}] => (Allow) D:\Steam library\steamapps\common\Rust\Rust.exe
FirewallRules: [{6DE54F14-2A89-4EAA-B492-2FFEFB4CF70D}] => (Allow) D:\Steam library\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{06E915B3-0993-4ABD-95C3-3A022E0208FA}] => (Allow) D:\Steam library\steamapps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{2B60E50A-A793-4F4D-A496-AB787C061A20}] => (Allow) D:\Steam library\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{7AB19E51-F2F6-4A36-9914-BCCA64A04A07}] => (Allow) D:\Steam library\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{B6B9D979-A280-423D-B461-9C290A0C63BC}] => (Allow) D:\Steam library\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{61FA3570-5E2A-4491-BF1F-8791D9BDD18B}] => (Allow) D:\Steam library\steamapps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{80DE9CEF-00D1-44CD-9136-8EE03E01C2DA}] => (Allow) D:\Steam library\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{C83A6F58-C2CE-4F1E-89C2-172666103A54}] => (Allow) D:\Steam library\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{DCA6E104-0BBD-472C-AF0D-B7477B7392C4}] => (Allow) D:\Steam library\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{476CC27B-5A64-4E52-A0E4-7DDAC1E03471}] => (Allow) D:\Steam library\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{127B9CA0-325D-490D-9F45-180E71A7F947}] => (Allow) D:\Steam library\steamapps\common\Stealth Inc 2\settings\settings.exe
FirewallRules: [{06A99C25-6847-418C-89F1-83A12D568A46}] => (Allow) D:\Steam library\steamapps\common\Stealth Inc 2\settings\settings.exe
FirewallRules: [{8621536E-26A6-41B8-B5AF-4A5AFF0FA473}] => (Allow) D:\Steam library\steamapps\common\The39Steps\39steps.exe
FirewallRules: [{7F977042-8677-4DC6-8B5D-58DA6E6D2453}] => (Allow) D:\Steam library\steamapps\common\The39Steps\39steps.exe
FirewallRules: [{03A4F18A-363F-4FFE-A502-80467E2769E5}] => (Allow) D:\Guild Wars 2\Gw2.exe
FirewallRules: [{5A9FEE17-6624-4DD6-AD4F-FEA6FFD7C217}] => (Allow) D:\Guild Wars 2\Gw2.exe
FirewallRules: [{0AFA2247-C7DE-4512-B47C-7B1019122C68}] => (Allow) D:\Guild Wars 2\Gw2.exe
FirewallRules: [{87ABE002-5E6E-4CAC-8F8E-442C16272074}] => (Allow) D:\Guild Wars 2\Gw2.exe
FirewallRules: [{7EBC1622-0D2D-4727-A6A5-8001CEE56C93}] => (Allow) D:\Steam library\steamapps\common\Flesh Eaters\game.exe
FirewallRules: [{06F427A9-0F18-4B8D-ACD0-C80805CB94EA}] => (Allow) D:\Steam library\steamapps\common\Flesh Eaters\game.exe
FirewallRules: [TCP Query User{2846A4CD-6C45-4D42-A0C4-B21E29E9A4AA}C:\program files\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\javaw.exe
FirewallRules: [UDP Query User{4A877D5A-9EFE-47BF-BD71-3E56ADE7A403}C:\program files\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\javaw.exe
FirewallRules: [{F332A54F-6075-404F-B644-B1E863AE8EE5}] => (Allow) D:\Steam library\steamapps\common\EDGE\edge.exe
FirewallRules: [{10DEA8DE-C1C6-4DBD-B01D-4E2909E10766}] => (Allow) D:\Steam library\steamapps\common\EDGE\edge.exe
FirewallRules: [{6169AFBF-F5E1-43E0-82E8-47E9078F58AD}] => (Allow) D:\Steam library\steamapps\common\deadpixels\Dead Pixels Launcher.exe
FirewallRules: [{A20F928E-4278-4B11-97B5-C6003B3C4FAF}] => (Allow) D:\Steam library\steamapps\common\deadpixels\Dead Pixels Launcher.exe
FirewallRules: [{E7449C64-C1CE-41BB-BB63-E17453BF0ABF}] => (Allow) D:\Steam library\steamapps\common\RUSH\rush.exe
FirewallRules: [{6B1129BF-F72F-4972-9019-FE2BBD642F45}] => (Allow) D:\Steam library\steamapps\common\RUSH\rush.exe
FirewallRules: [{4554996F-3A7B-467B-904D-E98D12662252}] => (Allow) D:\Steam library\steamapps\common\Toki Tori\tokitori.exe
FirewallRules: [{3238C3AF-385B-40E2-BDCA-1F03A7EF9672}] => (Allow) D:\Steam library\steamapps\common\Toki Tori\tokitori.exe
FirewallRules: [{681B384E-BB6C-4C2D-907A-C07FDCB597BF}] => (Allow) D:\Steam library\steamapps\common\Revolution Ace\Binaries\Win32\ShmupGame.exe
FirewallRules: [{2BDD6DC2-CD44-4C20-96B5-8EDDC165ECA9}] => (Allow) D:\Steam library\steamapps\common\Revolution Ace\Binaries\Win32\ShmupGame.exe
FirewallRules: [{C6307203-37D6-46EE-A99F-27B1E76220F9}] => (Allow) D:\Steam library\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{AC43C6D5-4F9F-4EC0-8797-44B838337183}] => (Allow) D:\Steam library\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{81AC1965-78FC-4B84-AB29-BE7814CCE63B}] => (Allow) D:\Steam library\steamapps\common\Dead Island Epidemic\Dead Island Epidemic - Launcher.exe
FirewallRules: [{CB81F73E-A68A-480D-9122-35BC022F1D58}] => (Allow) D:\Steam library\steamapps\common\Dead Island Epidemic\Dead Island Epidemic - Launcher.exe
FirewallRules: [{702AB031-0FD3-45F1-88D2-8DED7A28B923}] => (Allow) D:\Steam library\steamapps\common\Skyborn\Game.exe
FirewallRules: [{AD79D2E6-3BDF-4698-849D-B2F6AF84A45F}] => (Allow) D:\Steam library\steamapps\common\Skyborn\Game.exe
FirewallRules: [{1A955F8E-437D-4A58-93D8-DA24678511D7}] => (Allow) D:\Steam library\steamapps\common\8BitBoy\8bitboy.exe
FirewallRules: [{6C332FBC-FB30-43D5-A843-F6492480FB1E}] => (Allow) D:\Steam library\steamapps\common\8BitBoy\8bitboy.exe
FirewallRules: [{43A5EB98-A774-49F0-94A6-DDC5F8A4544F}] => (Allow) D:\Steam library\steamapps\common\POSTAL1\Postal Plus.exe
FirewallRules: [{6B01333B-9BDD-4417-B360-E4C748F477F1}] => (Allow) D:\Steam library\steamapps\common\POSTAL1\Postal Plus.exe
FirewallRules: [{7DE681CB-A737-4625-9049-18BBB1EA0586}] => (Allow) D:\Steam library\steamapps\common\Surgeon Simulator 2013\ss2013.exe
FirewallRules: [{7629B3B7-3888-4CB1-9C4C-47D9530AF653}] => (Allow) D:\Steam library\steamapps\common\Surgeon Simulator 2013\ss2013.exe
FirewallRules: [{AA961843-61BF-47C4-9369-AA58E6D73F5D}] => (Allow) D:\Steam library\steamapps\common\Dawn of War Gold\W40k.exe
FirewallRules: [{41B385B1-574C-486D-8720-E6B223099204}] => (Allow) D:\Steam library\steamapps\common\Dawn of War Gold\W40k.exe
FirewallRules: [{F18E2669-901C-4DF8-B132-06AFBB11367F}] => (Allow) D:\Steam library\steamapps\common\Sparkle2\sparkle2evo.exe
FirewallRules: [{5250372F-BA63-466D-87AE-02E7543426C3}] => (Allow) D:\Steam library\steamapps\common\Sparkle2\sparkle2evo.exe
FirewallRules: [{100089C6-5EB5-4161-8B7F-0738C7AF4C06}] => (Allow) D:\Steam library\steamapps\common\PARTICLEMACE\PARTICLEMACE.exe
FirewallRules: [{C78B7926-BD2A-4C8B-A7A5-7D6664216B35}] => (Allow) D:\Steam library\steamapps\common\PARTICLEMACE\PARTICLEMACE.exe
FirewallRules: [{00FC82CF-FC7F-4F63-996A-9F1BD03CF0C0}] => (Allow) D:\Steam library\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{575DA159-3CA9-4880-A38A-6CAD7F2E8BB6}] => (Allow) D:\Steam library\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{8ABC7F13-5321-45AA-AB24-DBD16A36C954}] => (Allow) D:\Steam library\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{9ECF5FF5-EAA2-4ACA-A145-E5A79FCAA66D}] => (Allow) D:\Steam library\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{E97DC32C-B9F9-4C29-AE9B-C7DB1003C1E1}] => (Allow) D:\Steam library\steamapps\common\Domestic Dog\Domestic Dog.exe
FirewallRules: [{B4BCDF7E-BDBA-4F9D-A94A-674657F0E7A8}] => (Allow) D:\Steam library\steamapps\common\Domestic Dog\Domestic Dog.exe
FirewallRules: [{18AA21F8-400A-42DB-B931-270C14C9B50F}] => (Allow) D:\Steam library\steamapps\common\The Binding Of Isaac\Isaac.exe
FirewallRules: [{18386E9E-603A-44C5-A7A5-1784900E201F}] => (Allow) D:\Steam library\steamapps\common\The Binding Of Isaac\Isaac.exe
FirewallRules: [{FABD4215-9DCA-49EC-B37F-9ED6DB43B22D}] => (Allow) D:\Rainbow Six Siege - Open Beta\RainbowSix.exe
FirewallRules: [{488A55D6-2572-44FD-A4DD-9E2A78FA9231}] => (Allow) D:\Rainbow Six Siege - Open Beta\RainbowSix.exe
FirewallRules: [{3CD5A65B-7397-4965-A628-C86E737DF2CF}] => (Allow) D:\Steam library\steamapps\common\TheLongDark\tld.exe
FirewallRules: [{35497D41-FEAE-43A2-A110-4ED1F5A154DD}] => (Allow) D:\Steam library\steamapps\common\TheLongDark\tld.exe
FirewallRules: [{8176E8E7-B45C-4965-87DB-874D6F09BF93}] => (Allow) D:\Steam library\steamapps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{9A97B53B-8042-4D33-A5BD-ACF8FB102D44}] => (Allow) D:\Steam library\steamapps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{F5A07E7E-AC36-4CA9-A696-66FA90072F6C}] => (Allow) D:\Steam library\steamapps\common\Metro 2033 Redux\metro.exe
FirewallRules: [{4E2722E8-F89E-4B24-8931-10EF8B231A15}] => (Allow) D:\Steam library\steamapps\common\Metro 2033 Redux\metro.exe
FirewallRules: [{B576098F-B3E4-4E6F-9A15-CF1E7D5EC0D1}] => (Allow) D:\Steam library\steamapps\common\Metro Last Light Redux\metro.exe
FirewallRules: [{95E579CD-7AA0-4E8C-AB6A-B97266290AF2}] => (Allow) D:\Steam library\steamapps\common\Metro Last Light Redux\metro.exe
FirewallRules: [{ED275B3F-7249-43EB-8A6D-F0D358E050EB}] => (Allow) D:\Steam library\steamapps\common\Portal\hl2.exe
FirewallRules: [{250C22CF-592A-4EC1-BBF3-0B970E83FF48}] => (Allow) D:\Steam library\steamapps\common\Portal\hl2.exe
FirewallRules: [{D8B87667-4462-4977-A644-D2C64072DDAD}] => (Allow) D:\Steam library\steamapps\common\hotline_miami\HotlineMiami.exe
FirewallRules: [{3EB68032-F953-494A-9208-2F4C1D299269}] => (Allow) D:\Steam library\steamapps\common\hotline_miami\HotlineMiami.exe
FirewallRules: [{C6D92FA3-3C4B-4134-8190-751BB3CAECC8}] => (Allow) D:\Steam library\steamapps\common\Hotline Miami 2\HotlineMiami2.exe
FirewallRules: [{4BCE3DB6-DFF6-483D-B771-B41A7E41E19A}] => (Allow) D:\Steam library\steamapps\common\Hotline Miami 2\HotlineMiami2.exe
FirewallRules: [{8D067604-BBB4-48B2-9A14-1894F50DD83E}] => (Allow) D:\Steam library\steamapps\common\The Ship\ship.exe
FirewallRules: [{5F648E7B-803D-4994-BCAE-2DB705284317}] => (Allow) D:\Steam library\steamapps\common\The Ship\ship.exe
FirewallRules: [{EEE3190D-DDE8-43E4-9935-0EB4C738FB48}] => (Allow) D:\Steam library\steamapps\common\Gods Will Be Watching\gwbw.exe
FirewallRules: [{470C7641-641E-43CE-AA31-0E4873D0A0A0}] => (Allow) D:\Steam library\steamapps\common\Gods Will Be Watching\gwbw.exe
FirewallRules: [TCP Query User{475FD5C0-94C1-4341-A04B-90FB2DF59EE3}C:\program files\java\jre1.8.0_65\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_65\bin\javaw.exe
FirewallRules: [UDP Query User{C84A7CC3-C013-4BF0-BEEA-8693455A2468}C:\program files\java\jre1.8.0_65\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_65\bin\javaw.exe
FirewallRules: [{2193B1DA-F8D9-48B6-BEEE-B238079A56A7}] => (Allow) D:\Steam library\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe
FirewallRules: [{E08C90AB-C4E0-4DA0-A4AA-4C05C2137F1B}] => (Allow) D:\Steam library\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe
FirewallRules: [{68ABFC28-3C52-466C-9B57-D3BF388A3F65}] => (Allow) D:\Steam library\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{A731E483-7AC5-40C2-A17D-BB791FEB37C8}] => (Allow) D:\Steam library\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{A458AFE5-F01B-44DF-8736-07750AD89A09}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{68A9F38F-3E29-49CD-AA12-8AE2DD2B5D64}] => (Allow) D:\Steam library\steamapps\common\nosgoth\NosgothLauncher.exe
FirewallRules: [{51A1CC48-10FB-415B-8F24-BA058C541EF5}] => (Allow) D:\Steam library\steamapps\common\nosgoth\NosgothLauncher.exe
FirewallRules: [{C3840DCF-1BBC-4B4F-8113-0BC07C3D4E06}] => (Allow) D:\Steam library\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{87A45345-EF59-419F-BAF7-FAFAB9FFF0B7}] => (Allow) D:\Steam library\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{3CB147DD-D5C1-4271-9BB5-5A23F1C4E959}] => (Allow) D:\Steam library\steamapps\common\VEGA Conflict\VEGAConflict.exe
FirewallRules: [{2DC490DC-E420-4740-85FB-089D23899908}] => (Allow) D:\Steam library\steamapps\common\VEGA Conflict\VEGAConflict.exe
FirewallRules: [{92CAFBCE-D9E7-4960-AF81-D9ADC94BA2F7}] => (Allow) D:\Steam library\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{89555579-0D87-41C4-8344-FC5FAE449BD4}] => (Allow) D:\Steam library\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{0360E525-F9A7-4406-BD86-4A07D4E9F7A7}] => (Allow) D:\Steam library\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [{B92140BB-EA92-4493-B02F-595008A762A8}] => (Allow) D:\Steam library\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [{3C6D389E-9981-4867-BF48-029AAECCEB15}] => (Allow) D:\Steam library\steamapps\common\Super Hexagon\superhexagon.exe
FirewallRules: [{AC36C87E-1CCC-466A-8F23-842F3A91CDD7}] => (Allow) D:\Steam library\steamapps\common\Super Hexagon\superhexagon.exe
FirewallRules: [{06B2BB3C-A94C-4BD4-B19E-B30BC890AC14}] => (Allow) D:\Steam library\steamapps\common\Super Amazing Wagon Adventure\WagonAdventure.exe
FirewallRules: [{51301360-C5DD-40A7-B654-F8561214464E}] => (Allow) D:\Steam library\steamapps\common\Super Amazing Wagon Adventure\WagonAdventure.exe
FirewallRules: [{7AD67BFC-1C7B-4234-A327-F70C35ABF0B4}] => (Allow) D:\Steam library\steamapps\common\NEO Scavenger\NEOScavenger.exe
FirewallRules: [{AE392886-9F7D-4DCE-8CAB-4DE7A4A00483}] => (Allow) D:\Steam library\steamapps\common\NEO Scavenger\NEOScavenger.exe
FirewallRules: [{9E05F9C2-3169-4D1F-A745-3AF8E5D4476B}] => (Allow) D:\Steam library\steamapps\common\ProjectZomboid\ProjectZomboid32.exe
FirewallRules: [{A485A047-A606-48C4-B256-89B83CDDB36D}] => (Allow) D:\Steam library\steamapps\common\ProjectZomboid\ProjectZomboid32.exe
FirewallRules: [{FC03AD96-1EC1-4D47-A694-002E36F387BB}] => (Allow) D:\Steam library\steamapps\common\ProjectZomboid\ProjectZomboid64.exe
FirewallRules: [{A581FEEE-4D4E-452A-B298-E5435DFD8AB5}] => (Allow) D:\Steam library\steamapps\common\ProjectZomboid\ProjectZomboid64.exe
FirewallRules: [{71DCDD2B-4C27-4561-92CA-D940EFDFBCC6}] => (Allow) D:\Steam library\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{7B5E354F-C8DF-4686-8D76-C34ECAA81053}] => (Allow) D:\Steam library\steamapps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{F6768BC5-5192-49CE-BE83-6428F4956108}] => (Allow) D:\Steam library\steamapps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe
FirewallRules: [{E83B43A2-06C4-4B99-AD81-4FA1FD38BFAD}] => (Allow) D:\Steam library\steamapps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe
FirewallRules: [{78BCA756-31F4-42AB-B42D-12CAB6C4D3C0}] => (Allow) D:\Steam library\steamapps\common\Codename CURE\cure.exe
FirewallRules: [{F5941175-2CE8-4527-8764-0BF833A6811D}] => (Allow) D:\Steam library\steamapps\common\Codename CURE\cure.exe
FirewallRules: [{AD666C3D-02FB-4744-8AF7-90D44E882644}] => (Allow) D:\League Of Legends\RADS\projects\lol_air_client\releases\0.0.1.177\deploy\LolClient.exe
FirewallRules: [{BE66E9D4-C72A-420B-A2B0-58C52945CF2D}] => (Allow) D:\League Of Legends\RADS\projects\lol_air_client\releases\0.0.1.177\deploy\LolClient.exe
FirewallRules: [{3158F82C-1D7F-4B3C-B498-6B0778DE95DF}] => (Allow) D:\League Of Legends\RADS\projects\lol_air_client\releases\0.0.1.177\deploy\LolClient.exe
FirewallRules: [{24731C72-A51C-48A4-8AC9-32E28E0BACCF}] => (Allow) D:\League Of Legends\RADS\projects\lol_air_client\releases\0.0.1.177\deploy\LolClient.exe
FirewallRules: [{26E7079F-01D5-41AC-9D8E-F7122B5D1A41}] => (Allow) D:\League Of Legends\lol.launcher.admin.exe
FirewallRules: [{399237AD-C48A-4EB2-9297-51F95C7FA2B4}] => (Allow) D:\League Of Legends\lol.launcher.admin.exe
FirewallRules: [{5FF00995-1740-4B42-B75E-5253E8B7BD4D}] => (Allow) D:\League Of Legends\lol.launcher.admin.exe
FirewallRules: [{CEC1C352-AF5B-4951-98DF-FA58AE851405}] => (Allow) D:\League Of Legends\lol.launcher.admin.exe
FirewallRules: [{3FCDD1BC-2A48-4F23-9D8C-C39473C8F6EE}] => (Allow) D:\League Of Legends\RADS\projects\lol_game_client\releases\0.0.1.56\deploy\League of Legends.exe
FirewallRules: [{F785ED46-5EF0-4B0E-A883-395C79F02518}] => (Allow) D:\League Of Legends\RADS\projects\lol_game_client\releases\0.0.1.56\deploy\League of Legends.exe
FirewallRules: [{FE968AD7-697B-40AC-8D48-855A545F75C0}] => (Allow) D:\League Of Legends\RADS\projects\lol_game_client\releases\0.0.1.56\deploy\League of Legends.exe
FirewallRules: [{12D16B45-AFDF-4D3E-93DC-C5153E15BB7A}] => (Allow) D:\League Of Legends\RADS\projects\lol_game_client\releases\0.0.1.56\deploy\League of Legends.exe
FirewallRules: [{5890A5A2-7B8D-4324-B911-098F853489A6}] => (Allow) D:\Steam library\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{7FE97E35-9FC4-4357-A534-842E008C2311}] => (Allow) D:\Steam library\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{A36001FB-45AA-4A1E-8355-3DC413D0C6B0}] => (Allow) D:\Steam library\steamapps\common\Ampersand\FuryRacing.exe
FirewallRules: [{1A05A466-B5D7-4832-89F0-E8C3826EAB31}] => (Allow) D:\Steam library\steamapps\common\Ampersand\FuryRacing.exe
FirewallRules: [TCP Query User{119FE26B-1E25-49D1-A688-BD16C3847174}D:\steam library\steamapps\common\projectzomboid\jre64\bin\java.exe] => (Allow) D:\steam library\steamapps\common\projectzomboid\jre64\bin\java.exe
FirewallRules: [UDP Query User{E91A4E6A-EE1A-459F-9EE5-20C85B66BA2E}D:\steam library\steamapps\common\projectzomboid\jre64\bin\java.exe] => (Allow) D:\steam library\steamapps\common\projectzomboid\jre64\bin\java.exe
FirewallRules: [TCP Query User{47864C58-BFD1-4A86-B36A-E6BEEF5F22EC}C:\program files (x86)\java\jre1.8.0_66\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\jp2launcher.exe
FirewallRules: [UDP Query User{ECA28D60-574E-490A-8EDF-FB97A35946B2}C:\program files (x86)\java\jre1.8.0_66\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\jp2launcher.exe
FirewallRules: [{F2C99105-86CD-4CD0-93DE-47D212AE5029}] => (Allow) D:\Steam library\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{F3CEACC2-D101-49B4-8148-B629CE57554F}] => (Allow) D:\Steam library\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [TCP Query User{A6B10D79-7580-476B-BD31-B6CB1FC0622F}C:\users\x450\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\x450\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [UDP Query User{2739ED77-88D0-4142-9C12-AC9DE88B3444}C:\users\x450\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\x450\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [{F02777C3-55FE-439D-ABDF-B1B9AB8EC466}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together Beta\bin\dontstarve_steam.exe
FirewallRules: [{CE7E4F4C-1F1E-4D49-8A64-3DEA6C513354}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together Beta\bin\dontstarve_steam.exe
 
==================== Restore Points =========================
 
26-12-2015 11:46:04 Punto de control programado
29-12-2015 00:41:07 Eliminado League of Legends
04-01-2016 14:21:33 Se ha instalado DirectX
05-01-2016 17:25:31 SlimDrivers Installing Drivers
05-01-2016 17:48:31 SlimDrivers Installing Drivers
05-01-2016 18:00:25 SlimDrivers Installing Drivers
05-01-2016 18:03:08 SlimDrivers Installing Drivers
09-01-2016 12:14:36 Windows Update
11-01-2016 09:13:54 Se ha instalado DirectX
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (01/11/2016 09:16:11 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ASUS)
Description: No se pudo activar la aplicación Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App debido al error: -2147023170. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
 
Error: (01/11/2016 09:16:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: ShellExperienceHost.exe, versión: 10.0.10240.16515, marca de tiempo: 0x55fa599a
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000
Código de excepción: 0xe0464645
Desplazamiento de errores: 0x0000000000000000
Identificador del proceso con errores: 0x29b4
Hora de inicio de la aplicación con errores: 0xShellExperienceHost.exe0
Ruta de acceso de la aplicación con errores: ShellExperienceHost.exe1
Ruta de acceso del módulo con errores: ShellExperienceHost.exe2
Identificador del informe: ShellExperienceHost.exe3
Nombre completo del paquete con errores: ShellExperienceHost.exe4
Identificador de aplicación relativa del paquete con errores: ShellExperienceHost.exe5
 
Error: (01/11/2016 09:14:14 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().
 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Protocolo de detección de nivel de vínculo de Microsoft.
 
System Error:
Acceso denegado.
.
 
Error: (01/11/2016 06:56:58 AM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (5384) No se puede crear un nuevo archivo de registro, la base de datos no puede escribir en la unidad de registro. Puede que la unidad sea de sólo lectura, no tenga espacio disponible, esté incorrectamente configurada o esté dañada. Error -1032.
 
Error: (01/11/2016 06:56:58 AM) (Source: ESENT) (EventID: 488) (User: )
Description: SettingSyncHost (5384) Al intentar crear el archivo "C:\WINDOWS\system32\edbtmp.log" se produjo el error de sistema 5 (0x00000005): "Acceso denegado. ". La operación de creación del archivo se cerrará con el error -1032 (0xfffffbf8).
 
Error: (01/11/2016 06:56:48 AM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (5384) No se puede crear un nuevo archivo de registro, la base de datos no puede escribir en la unidad de registro. Puede que la unidad sea de sólo lectura, no tenga espacio disponible, esté incorrectamente configurada o esté dañada. Error -1032.
 
Error: (01/11/2016 06:56:48 AM) (Source: ESENT) (EventID: 488) (User: )
Description: SettingSyncHost (5384) Al intentar crear el archivo "C:\WINDOWS\system32\edbtmp.log" se produjo el error de sistema 5 (0x00000005): "Acceso denegado. ". La operación de creación del archivo se cerrará con el error -1032 (0xfffffbf8).
 
Error: (01/11/2016 06:56:37 AM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (5384) No se puede crear un nuevo archivo de registro, la base de datos no puede escribir en la unidad de registro. Puede que la unidad sea de sólo lectura, no tenga espacio disponible, esté incorrectamente configurada o esté dañada. Error -1032.
 
Error: (01/11/2016 06:56:37 AM) (Source: ESENT) (EventID: 488) (User: )
Description: SettingSyncHost (5384) Al intentar crear el archivo "C:\WINDOWS\system32\edbtmp.log" se produjo el error de sistema 5 (0x00000005): "Acceso denegado. ". La operación de creación del archivo se cerrará con el error -1032 (0xfffffbf8).
 
Error: (01/11/2016 06:56:27 AM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (5384) No se puede crear un nuevo archivo de registro, la base de datos no puede escribir en la unidad de registro. Puede que la unidad sea de sólo lectura, no tenga espacio disponible, esté incorrectamente configurada o esté dañada. Error -1032.
 
 
System errors:
=============
Error: (01/10/2016 10:25:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Steam Client Service no pudo iniciarse debido al siguiente error: 
%%1053
 
Error: (01/10/2016 10:25:15 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Steam Client Service.
 
Error: (01/09/2016 03:06:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Steam Client Service no pudo iniciarse debido al siguiente error: 
%%1053
 
Error: (01/09/2016 03:06:24 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Steam Client Service.
 
Error: (01/09/2016 03:02:43 PM) (Source: DCOM) (EventID: 10010) (User: ASUS)
Description: {4991D34B-80A1-4291-83B6-3328366B9097}
 
Error: (01/09/2016 03:02:43 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio BITS.
 
Error: (01/09/2016 03:02:13 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio ShellHWDetection.
 
Error: (01/09/2016 02:58:29 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x00000050 (0xfffff96055e4ee00, 0x0000000000000010, 0xfffff96055e4ee00, 0x0000000000000002)C:\WINDOWS\MEMORY.DMP010916-26781-01
 
Error: (01/09/2016 02:57:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio LogMeIn Hamachi Tunneling Engine no pudo iniciarse debido al siguiente error: 
%%1053
 
Error: (01/09/2016 02:57:59 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio LogMeIn Hamachi Tunneling Engine.
 
 
CodeIntegrity:
===================================
  Date: 2015-08-29 15:12:10.125
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:10.024
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.885
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.779
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.557
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.541
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.504
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.487
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.406
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2015-08-29 15:12:09.351
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-4510U CPU @ 2.00GHz
Percentage of memory in use: 53%
Total physical RAM: 8075.1 MB
Available physical RAM: 3732.81 MB
Total Virtual: 10763.1 MB
Available Virtual: 4925.68 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:372.6 GB) (Free:97.93 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (Data) (Fixed) (Total:537.8 GB) (Free:185.33 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 543DAE44)
 
Partition: GPT.
 
==================== End of Addition.txt ============================

  • 0

#4
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,090 posts
You need to turn off windows defender since you have Avast installed. See instruction below;

To open Windows Defender
1. Open Windows Defender by clicking the Start button . In the search box, type Defender, and then, in the list of results, click Windows Defender.
2. Click Tools, and then click Options.
3. Click Administrator, select or clear the Use this program check box, and then click Save.

Next
Download the enclosed file ==>Attached File  fixlist.txt   463bytes   207 downloads Save it in the location FRST64 is.(Your downloads folder) Run FRST64 and click on the Fix button. Wait until finished.
The tool will make a log in the location FRST64 is, (Fixlog.txt). Please post it to your reply.

Next

Please download AdwCleaner by Xplode onto your Desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click the Scan button and wait for the process to complete.
  • Click the logfile button and the log will open in Notepad.
  • Click on the Clean button follow the prompts.
  • A log file will automatically open after the scan has finished and the PC has rebooted.
  • Please post the content of that log file with your next answer.
  • The report will be saved in the C:\AdwCleaner folder.

    Next

    Please download Junkware Removal Tool to your Desktop.
    Please close your security software to avoid potential conflicts. See Here how to disable you security protection (Anti Virus)
    Run the tool by double-clicking it. If you are using Windows Vista or 7, right-mouse click it and select Run as administrator.
    The tool will open and start scanning your system.
    Please be patient as this can take a while to complete, depending on your system's specifications.
    On completion, a log (JRT.txt) is saved to your Desktop and will automatically open.
    Please post the contents of JRT.txt into your reply.

    In your next reply post;
  • Fixlog.txt
  • The AdwCleaner [SO].txt Log
  • The JRT.txt Log

  • 0

#5
Domiman

Domiman

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts

Fixlog.txt:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
Ran by x450 (2016-01-11 15:48:27) Run:1
Running from C:\Users\x450\Downloads
Loaded Profiles: x450 (Available Profiles: x450)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:
SearchScopes: HKU\S-1-5-21-2461279538-2166252596-3339692539-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: No Name -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> No File
2015-12-28 13:18 - 2015-03-09 19:36 - 00000000 ____D C:\Users\x450\AppData\Roaming\uTorrent
C:\Users\Public\VOIP.dat
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset catalog
CMD: ipconfig /flushdns
RemoveProxy:
hosts:
Emptytemp:
*****************
 
Processes closed successfully.
Restore point was successfully created.
"HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. 
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}" => key removed successfully
"HKCR\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}" => key removed successfully
C:\Users\x450\AppData\Roaming\uTorrent => moved successfully
C:\Users\Public\VOIP.dat => moved successfully
 
=========  bitsadmin /reset /allusers =========
 
 
BITSADMIN version 3.0 [ 7.8.10240 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.
 
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
 
Unable to cancel {EE6ACD9C-6E25-45A3-9949-0CC969DB1D2F}.
0 out of 1 jobs canceled.
 
========= End of CMD: =========
 
 
=========  netsh winsock reset catalog =========
 
 
El cat�logo Winsock se restableci� correctamente.
Debe reiniciar el equipo para completar el restablecimiento.
 
 
========= End of CMD: =========
 
 
=========  ipconfig /flushdns =========
 
 
Configuraci�n IP de Windows
 
Se vaci� correctamente la cach� de resoluci�n de DNS.
 
========= End of CMD: =========
 
 
========= RemoveProxy: =========
 
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-2461279538-2166252596-3339692539-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
 
 
========= End of RemoveProxy: =========
 
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 477.6 MB temporary data Removed.
 
 
The system needed a reboot.
 
==== End of Fixlog 15:49:19 ====
 
AdwCleaner [S1].txt 
 
# AdwCleaner v5.029 - Logfile created 11/01/2016 at 23:47:26
# Updated 11/01/2016 by Xplode
# Database : 2016-01-11.4 [Server]
# Operating system : Windows 10 Home Single Language  (x64)
# Username : x450 - ASUS
# Running from : C:\Users\x450\Downloads\adwcleaner_5.029.exe
# Option : Scan
 
***** [ Services ] *****
 
 
***** [ Folders ] *****
 
Folder Found : C:\Program Files (x86)\Viewpoint
Folder Found : C:\Program Files (x86)\myfree codec
Folder Found : C:\ProgramData\Viewpoint
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found : C:\Users\x450\AppData\Local\slimware utilities inc
 
***** [ Files ] *****
 
 
***** [ DLL ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Registry ] *****
 
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key Found : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKCU\Software\Myfree Codec
Key Found : HKCU\Software\SlimWare Utilities Inc
Key Found : HKLM\SOFTWARE\MetaStream
Key Found : HKLM\SOFTWARE\Myfree Codec
Key Found : HKLM\SOFTWARE\Viewpoint
Key Found : HKLM\SOFTWARE\SlimWare Utilities Inc
Key Found : HKLM\SOFTWARE\SLIMWARE UTILITIES, INC.
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
 
***** [ Web browsers ] *****
 
[C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : search.conduit.com
[C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : winds-pro.en.softonic.com
[C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : logmein-hamachi.softonic.com
[C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : ask.com
 
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [2807 bytes] ##########
 
JRT.log
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.2 (01.06.2016)
Operating System: Windows 10 Home Single Language x64 
Ran by x450 (Administrator) on mar. 12/01/2016 at  0:02:22,08
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
File System: 9 
 
Successfully deleted: C:\users\Public\Documents\downloaded installers (Folder) 
Successfully deleted: C:\Users\x450\AppData\Local\crashrpt (Folder) 
Successfully deleted: C:\Users\x450\AppData\Local\Google\Chrome\User Data\Default\Extensions\icpgjfneehieebagbmdbhnlpiopdcmna (Folder) 
Successfully deleted: C:\Users\x450\AppData\Local\slimware utilities inc (Folder) 
Successfully deleted: C:\Users\x450\AppData\Roaming\sp_data.sys (File) 
Successfully deleted: C:\WINDOWS\Tasks\SlimDrivers Startup.job (Task) 
Successfully deleted: C:\WINDOWS\system32\REN4B0B.tmp (File) 
Successfully deleted: C:\WINDOWS\SysWOW64\RENDFF.tmp (File) 
Successfully deleted: C:\WINDOWS\SysWOW64\RENED4E.tmp (File) 
 
 
 
Registry: 0 
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on mar. 12/01/2016 at  0:07:23,85
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

  • 0

#6
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,090 posts
Hello and thank you for those logs,

Please download MiniToolBox http://download.blee...iniToolBox.exe and run it.

Checkmark following boxes:
  • List IP configuration
  • List Winsock Entries
  • List Users, Partitions and Memory size
  • List Restore Points
    Click Go and post the result.

    Next
  • Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mbam-setup-version.exe and follow the prompts to install the program.
  • Launch Malwarebytes Anti-Malware
  • Then click Finish.
  • If an update is found, you will be prompted to download and install the latest version.
  • Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
  • When the scan is complete , make sure that that all Threats are selected, and click Remove Selected.
  • Reboot your computer if prompted.


    Posting the Malwarebytes log.
  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the Scan Log which shows the Date and time of the scan just performed.
  • Click 'Export'.
  • Click 'Text file (*.txt)'
  • In the Save File dialog box which appears, click on Desktop.
  • In the File name: box type a name for your scan log.
  • A message box named 'File Saved' should appear stating "Your file has been successfully exported".
  • Click Ok
  • post that saved log to your next reply.

    Post the Malwarebytes log
    Post the MiniToolBox log.
  • [/list]

  • 0

#7
Domiman

Domiman

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts
MiniToolBox by Farbar  Version: 02-11-2015
Ran by x450 (administrator) on 12-01-2016 at 13:30:53
Running from "C:\Users\x450\Downloads"
Microsoft Windows 10 Home Single Language  (X64)
Model: X450LN Manufacturer: ASUSTeK COMPUTER INC.
Boot Mode: Normal
***************************************************************************
========================= IP Configuration: ================================
 
802.11n Wireless LAN Card = Wi-Fi (Connected)
LogMeIn Hamachi Virtual Ethernet Adapter = Ethernet 2 (Connected)
Qualcomm Atheros AR8171/8175 PCI-E Gigabit Ethernet Controller (NDIS 6.30) = Ethernet (Media disconnected)
 
 
# ----------------------------------
# Configuraci�n de IPv4
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled taskoffload=disabled
add route prefix=0.0.0.0/0 interface="Ethernet 2" nexthop=25.0.0.1 publish=S�
add route prefix=0.0.0.0/0 interface="Hamachi" nexthop=25.0.0.1 publish=S�
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Conexi�n de �rea local* 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Conexi�n de �rea local* 5" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Hamachi" forwarding=enabled advertise=enabled metric=9000 nud=enabled ignoredefaultroutes=disabled
set interface interface="Conexi�n de �rea local* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet 2" forwarding=disabled advertise=disabled metric=9000 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled ecncapability=ecndisabled
 
 
popd
# Fin de la configuraci�n de IPv4
 
 
 
Configuraci�n IP de Windows
 
   Nombre de host. . . . . . . . . : Asus
   Sufijo DNS principal  . . . . . : 
   Tipo de nodo. . . . . . . . . . : h�brido
   Enrutamiento IP habilitado. . . : no
   Proxy WINS habilitado . . . . . : no
 
Adaptador de Ethernet Ethernet:
 
   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec�fico para la conexi�n. . : 
   Descripci�n . . . . . . . . . . . . . . . : Qualcomm Atheros AR8171/8175 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
   Direcci�n f�sica. . . . . . . . . . . . . : 54-A0-50-AA-6C-13
   DHCP habilitado . . . . . . . . . . . . . : s�
   Configuraci�n autom�tica habilitada . . . : s�
 
Adaptador de Ethernet Ethernet 2:
 
   Sufijo DNS espec�fico para la conexi�n. . : 
   Descripci�n . . . . . . . . . . . . . . . : LogMeIn Hamachi Virtual Ethernet Adapter #2
   Direcci�n f�sica. . . . . . . . . . . . . : 7A-79-19-45-0A-70
   DHCP habilitado . . . . . . . . . . . . . : s�
   Configuraci�n autom�tica habilitada . . . : s�
   Direcci�n IPv6 . . . . . . . . . . : 2620:9b::1945:a70(Preferido) 
   V�nculo: direcci�n IPv6 local. . . : fe80::44c9:6f52:5b74:735a%13(Preferido) 
   Direcci�n IPv4. . . . . . . . . . . . . . : 25.69.10.112(Preferido) 
   M�scara de subred . . . . . . . . . . . . : 255.0.0.0
   Concesi�n obtenida. . . . . . . . . . . . : martes, 12 de enero de 2016 12:16:41 p. m.
   La concesi�n expira . . . . . . . . . . . : mi�rcoles, 11 de enero de 2017 12:16:41 p. m.
   Puerta de enlace predeterminada . . . . . : 2620:9b::1900:1
                                       25.0.0.1
   Servidor DHCP . . . . . . . . . . . . . . : 25.0.0.1
   IAID DHCPv6 . . . . . . . . . . . . . . . : 33706226
   DUID de cliente DHCPv6. . . . . . . . . . : 00-01-00-01-1B-FE-97-D4-54-A0-50-AA-6C-13
   Servidores DNS. . . . . . . . . . . . . . : fec0:0:0:ffff::1%1
                                       fec0:0:0:ffff::2%1
                                       fec0:0:0:ffff::3%1
   NetBIOS sobre TCP/IP. . . . . . . . . . . : habilitado
 
Adaptador de LAN inal�mbrica Conexi�n de �rea local* 2:
 
   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec�fico para la conexi�n. . : 
   Descripci�n . . . . . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
   Direcci�n f�sica. . . . . . . . . . . . . : 38-B1-DB-44-94-C1
   DHCP habilitado . . . . . . . . . . . . . : s�
   Configuraci�n autom�tica habilitada . . . : s�
 
Adaptador de LAN inal�mbrica Wi-Fi:
 
   Sufijo DNS espec�fico para la conexi�n. . : 
   Descripci�n . . . . . . . . . . . . . . . : 802.11n Wireless LAN Card
   Direcci�n f�sica. . . . . . . . . . . . . : 38-B1-DB-44-94-C7
   DHCP habilitado . . . . . . . . . . . . . : s�
   Configuraci�n autom�tica habilitada . . . : s�
   V�nculo: direcci�n IPv6 local. . . : fe80::a599:857f:4283:c6f3%6(Preferido) 
   Direcci�n IPv4. . . . . . . . . . . . . . : 192.168.0.5(Preferido) 
   M�scara de subred . . . . . . . . . . . . : 255.255.255.0
   Concesi�n obtenida. . . . . . . . . . . . : martes, 12 de enero de 2016 12:16:44 p. m.
   La concesi�n expira . . . . . . . . . . . : martes, 12 de enero de 2016 2:16:44 p. m.
   Puerta de enlace predeterminada . . . . . : 192.168.0.1
   Servidor DHCP . . . . . . . . . . . . . . : 192.168.0.1
   IAID DHCPv6 . . . . . . . . . . . . . . . : 54047195
   DUID de cliente DHCPv6. . . . . . . . . . : 00-01-00-01-1B-FE-97-D4-54-A0-50-AA-6C-13
   Servidores DNS. . . . . . . . . . . . . . : 8.8.8.8
                                       8.8.4.4
   NetBIOS sobre TCP/IP. . . . . . . . . . . : habilitado
Servidor:  google-public-dns-a.google.com
Address:  8.8.8.8
 
Nombre:  google.com
Addresses:  2800:3f0:4002:802::1009
 173.194.42.64
 173.194.42.78
 173.194.42.71
 173.194.42.65
 173.194.42.67
 173.194.42.72
 173.194.42.73
 173.194.42.70
 173.194.42.68
 173.194.42.69
 173.194.42.66
 
 
Haciendo ping a google.com [173.194.42.97] con 32 bytes de datos:
Respuesta desde 173.194.42.97: bytes=32 tiempo=37ms TTL=55
Respuesta desde 173.194.42.97: bytes=32 tiempo=20ms TTL=55
 
Estad�sticas de ping para 173.194.42.97:
    Paquetes: enviados = 2, recibidos = 2, perdidos = 0
    (0% perdidos),
Tiempos aproximados de ida y vuelta en milisegundos:
    M�nimo = 20ms, M�ximo = 37ms, Media = 28ms
Servidor:  google-public-dns-a.google.com
Address:  8.8.8.8
 
Nombre:  yahoo.com
Addresses:  2001:4998:44:204::a7
 2001:4998:58:c02::a9
 2001:4998:c:a06::2:4008
 206.190.36.45
 98.139.183.24
 98.138.253.109
 
 
Haciendo ping a yahoo.com [206.190.36.45] con 32 bytes de datos:
Respuesta desde 206.190.36.45: bytes=32 tiempo=208ms TTL=51
Respuesta desde 206.190.36.45: bytes=32 tiempo=234ms TTL=51
 
Estad�sticas de ping para 206.190.36.45:
    Paquetes: enviados = 2, recibidos = 2, perdidos = 0
    (0% perdidos),
Tiempos aproximados de ida y vuelta en milisegundos:
    M�nimo = 208ms, M�ximo = 234ms, Media = 221ms
 
Haciendo ping a 127.0.0.1 con 32 bytes de datos:
Respuesta desde 127.0.0.1: bytes=32 tiempo<1m TTL=128
Respuesta desde 127.0.0.1: bytes=32 tiempo<1m TTL=128
 
Estad�sticas de ping para 127.0.0.1:
    Paquetes: enviados = 2, recibidos = 2, perdidos = 0
    (0% perdidos),
Tiempos aproximados de ida y vuelta en milisegundos:
    M�nimo = 0ms, M�ximo = 0ms, Media = 0ms
===========================================================================
ILista de interfaces
 12...54 a0 50 aa 6c 13 ......Qualcomm Atheros AR8171/8175 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
 13...7a 79 19 45 0a 70 ......LogMeIn Hamachi Virtual Ethernet Adapter #2
  2...38 b1 db 44 94 c1 ......Microsoft Wi-Fi Direct Virtual Adapter
  6...38 b1 db 44 94 c7 ......802.11n Wireless LAN Card
  1...........................Software Loopback Interface 1
===========================================================================
 
IPv4 Tabla de enrutamiento
===========================================================================
Rutas activas:
Destino de red        M�scara de red   Puerta de enlace   Interfaz  M�trica
          0.0.0.0          0.0.0.0         25.0.0.1     25.69.10.112   9256
          0.0.0.0          0.0.0.0      192.168.0.1      192.168.0.5     25
         25.0.0.0        255.0.0.0      En v�nculo      25.69.10.112   9256
     25.69.10.112  255.255.255.255      En v�nculo      25.69.10.112   9256
   25.255.255.255  255.255.255.255      En v�nculo      25.69.10.112   9256
        127.0.0.0        255.0.0.0      En v�nculo         127.0.0.1    306
        127.0.0.1  255.255.255.255      En v�nculo         127.0.0.1    306
  127.255.255.255  255.255.255.255      En v�nculo         127.0.0.1    306
      192.168.0.0    255.255.255.0      En v�nculo       192.168.0.5    281
      192.168.0.5  255.255.255.255      En v�nculo       192.168.0.5    281
    192.168.0.255  255.255.255.255      En v�nculo       192.168.0.5    281
        224.0.0.0        240.0.0.0      En v�nculo         127.0.0.1    306
        224.0.0.0        240.0.0.0      En v�nculo       192.168.0.5    281
        224.0.0.0        240.0.0.0      En v�nculo      25.69.10.112   9256
  255.255.255.255  255.255.255.255      En v�nculo         127.0.0.1    306
  255.255.255.255  255.255.255.255      En v�nculo       192.168.0.5    281
  255.255.255.255  255.255.255.255      En v�nculo      25.69.10.112   9256
===========================================================================
Rutas persistentes:
  Direcci�n de red  M�scara de red  Direcci�n de puerta de enlace  M�trica
          0.0.0.0          0.0.0.0         25.0.0.1  Predeterminada 
          0.0.0.0          0.0.0.0         25.0.0.1  Predeterminada 
===========================================================================
 
IPv6 Tabla de enrutamiento
===========================================================================
Rutas activas:
 Cuando destino de red m�trica      Puerta de enlace
 13   9005 ::/0                     2620:9b::1900:1
  1    306 ::1/128                  En v�nculo
 13    261 2620:9b::/64             En v�nculo
 13    261 2620:9b::/96             En v�nculo
 13    261 2620:9b::1945:a70/128    En v�nculo
  6    281 fe80::/64                En v�nculo
 13    261 fe80::/64                En v�nculo
 13    261 fe80::44c9:6f52:5b74:735a/128
                                    En v�nculo
  6    281 fe80::a599:857f:4283:c6f3/128
                                    En v�nculo
  1    306 ff00::/8                 En v�nculo
  6    281 ff00::/8                 En v�nculo
 13    261 ff00::/8                 En v�nculo
===========================================================================
Rutas persistentes:
 Cuando destino de red m�trica      Puerta de enlace
  0   9000 ::/0                     2620:9b::1900:1
  0 4294967295 2620:9b::/96             En v�nculo
  0 4294967295 2620:9b::/96             En v�nculo
  0   9000 ::/0                     2620:9b::1900:1
===========================================================================
========================= Winsock entries =====================================
 
Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [54784] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70144] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70144] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\SysWOW64\NLAapi.dll [64000] (Microsoft Corporation)
Catalog5 05 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog5 06 C:\WINDOWS\SysWOW64\winrnr.dll [23552] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [67072] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [79872] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [31744] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 63%
Total physical RAM: 8075.1 MB
Available physical RAM: 2983.12 MB
Total Virtual: 9876.17 MB
Available Virtual: 2740.44 MB
 
========================= Partitions: =====================================
 
1 Drive c: (OS) (Fixed) (Total:372.6 GB) (Free:95.28 GB) NTFS
2 Drive d: (Data) (Fixed) (Total:537.8 GB) (Free:184.94 GB) NTFS
 
========================= Users: ========================================
 
Cuentas de usuario de \\ASUS
 
Administrador            DefaultAccount           Invitado                 
x450                     
Se ha completado el comando correctamente.
 
========================= Restore Points ==================================
 
26-12-2015 14:46:04 Punto de control programado
29-12-2015 03:41:07 Eliminado League of Legends
04-01-2016 17:21:33 Se ha instalado DirectX
05-01-2016 20:25:31 SlimDrivers Installing Drivers
05-01-2016 20:48:31 SlimDrivers Installing Drivers
05-01-2016 21:00:25 SlimDrivers Installing Drivers
05-01-2016 21:03:08 SlimDrivers Installing Drivers
09-01-2016 15:14:36 Windows Update
11-01-2016 12:13:54 Se ha instalado DirectX
11-01-2016 18:29:45 Se ha instalado DirectX
12-01-2016 03:02:27 JRT Pre-Junkware Removal
 
**** End of log ****
 
 
Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 12/1/2016
Scan Time: 9:55 p. m.
Logfile: asd.txt
Administrator: Yes
 
Version: 2.2.0.1024
Malware Database: v2016.01.13.01
Rootkit Database: v2016.01.09.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
 
OS: Windows 10
CPU: x64
File System: NTFS
User: x450
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 392735
Time Elapsed: 25 min, 2 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 0
(No malicious items detected)
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)

  • 0

#8
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,090 posts
Hello,

There was some adware that has been removed. How is the computer ? Run it for a while and let me know.
  • 0

#9
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 8,090 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP