Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-08-2016
Ran by terenceche (administrator) on DRNGWA (06-09-2016 08:37:57)
Running from C:\Users\terenceche\Downloads
Loaded Profiles: terenceche (Available Profiles: terenceche)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\tbaseprovisioning.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(ESET) C:\Program Files\ESET\ESET Antivirus\x86\ekrn.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.113.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(CyberLink Corp.) C:\Program Files (x86)\Cyberlink\YouCam\YouCamService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe
(Piriform Ltd) C:\Program Files (x86)\CCleaner\CCleaner64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\wbengine.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\terenceche\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Antivirus\egui.exe [5595848 2015-07-08] (ESET)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0
HKLM\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-3719833260-3083536140-2909629863-1002\...\Run: [CCleaner Monitoring] => C:\Program Files (x86)\CCleaner\CCleaner64.exe [8891608 2016-07-13] (Piriform Ltd)
HKU\S-1-5-21-3719833260-3083536140-2909629863-1002\...\RunOnce: [Uninstall C:\Users\terenceche\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\terenceche\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"
HKU\S-1-5-21-3719833260-3083536140-2909629863-1002\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-3719833260-3083536140-2909629863-1002\...\Policies\Explorer: [HideSCAHealth] 0
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{57383a05-e414-42ea-83e2-e08ea95ed2d3}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{57383a05-e414-42ea-83e2-e08ea95ed2d3}: [DhcpNameServer] 82.163.142.7
Tcpip\..\Interfaces\{6b7d73cc-55c5-477c-b354-91b80a1c052d}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{7b1f1b7b-b6d1-4483-b030-a81af03f04aa}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{7b1f1b7b-b6d1-4483-b030-a81af03f04aa}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c9f4f44e-e988-48ab-bd64-8e3bdf0088a1}: [DhcpNameServer] 82.163.142.7
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-3719833260-3083536140-2909629863-1002 -> OldSearch URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-16] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-16] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default
FF NewTab: about:newtab
FF DefaultSearchEngine: Google
FF DefaultSearchUrl: hxxps://www.google.com/search?trackid=sp-006
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxps://www.google.com/?trackid=sp-006
FF Keyword.URL: hxxps://www.google.com/search?trackid=sp-006
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1221171.dll [2015-10-19] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-08-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-08-16] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-05] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF SearchPlugin: C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\searchplugins\google-avast.xml [2016-04-15]
FF Extension: (Adblock Plus Pop-up Addon) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\extensions\adblockpopups@jessehakanen.net.xpi [2016-09-03]
FF Extension: (NoScript) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-09-03]
FF Extension: (AdBlocker Ultimate) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\Extensions\adblockultimate@adblockultimate.net.xpi [2016-07-07]
FF Extension: (Adguard AdBlocker) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\Extensions\adguardadblocker@adguard.com.xpi [2016-07-07]
FF Extension: (Firefox Hotfix) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-03]
FF Extension: (AdBlock Lite) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\Extensions\jid1-dwtFBkQjb3SIQp@jetpack.xpi [2016-09-03]
FF Extension: (Adblock Plus) - C:\Users\terenceche\AppData\Roaming\Mozilla\Firefox\Profiles\5nwao8pj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-07-07]
FF HKLM-x32\...\Firefox\Extensions: [firefox@bho.com] - C:\Program Files\Hewlett-Packard\SimplePass\FFBHOExt => not found
Chrome:
=======
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\WidevineCdm\1.4.8.903\_platform_specific\win_x64\widevinecdmadapter.dll (Google Inc.)
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.89\PepperFlash\pepflashplayer.dll ()
CHR Profile: C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-26]
CHR Extension: (YouTube) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-26]
CHR Extension: (Adblock Plus) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-09-06]
CHR Extension: (uBlock Origin) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2016-08-30]
CHR Extension: (Wikiwand: Wikipedia Modernized) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\emffkefkbkpkgpdeeooapgaicgmcbolj [2016-04-02]
CHR Extension: (AdBlock) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-09-06]
CHR Extension: (Ghostery) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2016-09-05]
CHR Extension: (Chrome Web Store Payments) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR Extension: (Gmail) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-26]
CHR Extension: (Chrome Media Router) - C:\Users\terenceche\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-04]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
Opera:
=======
OPR Extension: (Stormcrow) - C:\Users\terenceche\AppData\Roaming\Opera Software\Opera Stable\Extensions\eenddkdfifnnmgbohackpefaggccbcgp [2016-09-05]
OPR Extension: (uBlock Origin) - C:\Users\terenceche\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2016-09-05]
OPR Extension: (Adblock Plus) - C:\Users\terenceche\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2016-09-05]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AdaptiveSleepService; c:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [138752 2015-02-10] () [File not signed]
R2 AMD FUEL Service; c:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-02-10] (Advanced Micro Devices, Inc.) [File not signed]
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [108248 2015-02-04] ()
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R2 ekrn; C:\Program Files\ESET\ESET Antivirus\x86\ekrn.exe [1353720 2015-07-08] (ESET)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [135496 2016-09-05] (SurfRight B.V.)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [580872 2015-02-02] (Hewlett-Packard Development Company, L.P.)
R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [103424 2015-01-30] (Softex Inc.) [File not signed]
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-06-24] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [260216 2015-12-09] (Synaptics Incorporated)
R2 tbaseprovisioning; C:\Windows\SysWOW64\tbaseprovisioning.exe [60432 2015-06-23] (Advanced Micro Devices, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17640 2015-02-26] (Advanced Micro Devices, INC.)
S3 amdkmcsp; C:\Windows\system32\DRIVERS\amdkmcsp.sys [101104 2015-06-23] (Advanced Micro Devices, Inc. )
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [62152 2015-02-26] (Advanced Micro Devices, Inc.)
R0 amdpsp; C:\Windows\System32\DRIVERS\amdpsp.sys [277240 2015-06-23] (Advanced Micro Devices, Inc. )
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [130688 2016-07-22] (Samsung Electronics Co., Ltd.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [255240 2015-07-13] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [251632 2015-07-13] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [178520 2015-07-13] (ESET)
R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [168208 2015-07-13] (ESET)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-03-05] ()
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 NPF; C:\Windows\System32\drivers\NPF.sys [35344 2011-02-11] (CACE Technologies, Inc.)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2016-02-02] (Secunia)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-07-17] (Realtek )
R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [624424 2015-12-03] (Realtek Semiconductor Corporation)
R3 RTWlanE; C:\Windows\System32\drivers\rtwlane.sys [5144064 2016-07-16] (Realtek Semiconductor Corporation )
R3 SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver_AMDASF.sys [67704 2015-12-09] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [33448 2015-04-07] (Synaptics Incorporated)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-05 21:31 - 2016-09-05 21:31 - 00001129 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2016-09-05 21:31 - 2016-09-05 21:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2016-09-05 21:31 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys
2016-09-05 21:30 - 2016-09-05 21:30 - 00000000 ____D C:\Program Files\VS Revo Group
2016-09-05 21:28 - 2016-09-05 21:28 - 00000000 ____D C:\Users\terenceche\Downloads\Revo Uninstaller Pro 3.1.5 FINAL + Crack [TechTools.net]
2016-09-05 21:16 - 2016-09-05 21:16 - 00000000 ____D C:\WINDOWS\pss
2016-09-05 21:07 - 2016-09-05 21:07 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\CleanMyPC Software
2016-09-05 21:05 - 2016-09-05 21:05 - 00000000 ____D C:\Users\terenceche\Downloads\CleanMyPC.Registry.Cleaner.v4.41.Incl.Keygen.X64-Lz0
2016-09-05 20:32 - 2016-09-05 21:51 - 00000000 ____D C:\Program Files (x86)\Opera
2016-09-05 20:32 - 2016-09-05 20:32 - 00962992 _____ (Opera Software) C:\Users\terenceche\Downloads\OperaSetup.exe
2016-09-05 20:32 - 2016-09-05 20:32 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Opera Software
2016-09-05 20:32 - 2016-09-05 20:32 - 00000000 ____D C:\Users\terenceche\AppData\Local\Opera Software
2016-09-05 20:24 - 2016-09-05 20:24 - 00002355 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-09-05 20:24 - 2016-09-05 20:24 - 00002343 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-09-05 20:23 - 2016-09-05 21:48 - 00000920 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-05 20:23 - 2016-09-05 21:48 - 00000916 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-05 20:23 - 2016-09-05 20:23 - 00003978 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-09-05 20:23 - 2016-09-05 20:23 - 00003746 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-09-05 20:22 - 2016-09-05 20:22 - 01065376 _____ (Google Inc.) C:\Users\terenceche\Downloads\ChromeSetup (3).exe
2016-09-05 20:16 - 2016-09-05 20:16 - 00001153 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk
2016-09-05 19:47 - 2016-09-05 21:48 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-09-05 19:47 - 2016-09-05 21:48 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-05 19:47 - 2016-09-05 19:47 - 00003964 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-09-05 19:47 - 2016-09-05 19:47 - 00003806 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-09-05 19:26 - 2016-09-05 19:26 - 00001394 _____ C:\WINDOWS\system32\.crusader
2016-09-05 19:18 - 2016-09-05 19:18 - 00000000 ____D C:\Program Files (x86)\Secunia
2016-09-05 19:17 - 2016-09-05 19:18 - 04002104 _____ (Secunia) C:\Users\terenceche\Downloads\PSISetup.exe
2016-09-05 19:15 - 2016-09-05 19:15 - 00465024 _____ (Bleeping Computer, LLC) C:\Users\terenceche\Downloads\sc-cleaner (1).exe
2016-09-05 19:13 - 2016-09-05 19:13 - 00001973 _____ C:\Users\Public\Desktop\HitmanPro.lnk
2016-09-05 19:13 - 2016-09-05 19:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2016-09-05 19:13 - 2016-09-05 19:13 - 00000000 ____D C:\Program Files\HitmanPro
2016-09-05 19:12 - 2016-09-05 19:26 - 00000000 ____D C:\ProgramData\HitmanPro
2016-09-05 19:12 - 2016-09-05 19:13 - 11438608 _____ (SurfRight B.V.) C:\Users\terenceche\Downloads\HitmanPro_x64.exe
2016-09-05 19:11 - 2016-09-05 19:12 - 00465024 _____ (Bleeping Computer, LLC) C:\Users\terenceche\Downloads\sc-cleaner.exe
2016-09-05 18:46 - 2016-09-05 18:46 - 03826240 _____ C:\Users\terenceche\Downloads\adwcleaner_6.010 (1).exe
2016-09-05 18:30 - 2016-09-05 18:30 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\terenceche\Downloads\rkill.scr
2016-09-05 18:25 - 2016-09-05 18:25 - 02397696 _____ (Farbar) C:\Users\terenceche\Downloads\FRST64 (1).exe
2016-09-05 18:18 - 2016-09-05 18:25 - 00050477 _____ C:\Users\terenceche\Downloads\Defogger.exe
2016-09-04 17:15 - 2016-09-05 21:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol
2016-09-04 17:15 - 2016-09-04 17:17 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\WinPatrol
2016-09-04 17:14 - 2016-09-04 17:14 - 01292424 _____ (Ruiware) C:\Users\terenceche\Downloads\wpsetup.exe
2016-09-04 17:10 - 2016-09-04 17:23 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\terenceche\Downloads\rkill.com
2016-09-04 17:07 - 2016-09-04 17:07 - 00912452 _____ C:\Users\terenceche\Downloads\rkill.zip
2016-09-03 14:03 - 2016-09-03 14:03 - 00000000 ____D C:\Users\terenceche\AppData\Local\ElevatedDiagnostics
2016-09-01 18:14 - 2016-08-27 06:12 - 04130944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-09-01 18:14 - 2016-08-27 06:12 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-09-01 18:14 - 2016-08-27 05:58 - 03893376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-09-01 18:14 - 2016-08-27 05:58 - 00121368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-09-01 18:14 - 2016-08-27 05:39 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-09-01 18:14 - 2016-08-27 05:38 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-09-01 18:14 - 2016-08-27 05:38 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll
2016-09-01 18:14 - 2016-08-27 05:37 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2016-09-01 18:14 - 2016-08-27 05:25 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-09-01 18:14 - 2016-08-20 07:06 - 01046976 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-01 18:14 - 2016-08-20 07:06 - 00885832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-01 18:14 - 2016-08-20 07:05 - 01377008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-01 18:14 - 2016-08-20 07:04 - 07814488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-01 18:14 - 2016-08-20 07:04 - 01349120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-01 18:14 - 2016-08-20 07:04 - 01163696 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-01 18:14 - 2016-08-20 07:03 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-09-01 18:14 - 2016-08-20 06:52 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-01 18:14 - 2016-08-20 06:52 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-01 18:14 - 2016-08-20 06:52 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-01 18:14 - 2016-08-20 06:52 - 01279328 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-01 18:14 - 2016-08-20 06:52 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-09-01 18:14 - 2016-08-20 06:52 - 00658776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-09-01 18:14 - 2016-08-20 06:52 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-09-01 18:14 - 2016-08-20 06:52 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-09-01 18:14 - 2016-08-20 06:51 - 00681312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-09-01 18:14 - 2016-08-20 06:50 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-09-01 18:14 - 2016-08-20 06:50 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-09-01 18:14 - 2016-08-20 06:50 - 01099608 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-09-01 18:14 - 2016-08-20 06:50 - 00987992 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-09-01 18:14 - 2016-08-20 06:50 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2016-09-01 18:14 - 2016-08-20 06:50 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-09-01 18:14 - 2016-08-20 06:50 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2016-09-01 18:14 - 2016-08-20 06:47 - 22218808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-09-01 18:14 - 2016-08-20 06:47 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-09-01 18:14 - 2016-08-20 06:47 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-09-01 18:14 - 2016-08-20 06:46 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-09-01 18:14 - 2016-08-20 06:43 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-01 18:14 - 2016-08-20 06:34 - 01430200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-09-01 18:14 - 2016-08-20 06:34 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-09-01 18:14 - 2016-08-20 06:34 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2016-09-01 18:14 - 2016-08-20 06:33 - 05722312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-09-01 18:14 - 2016-08-20 06:33 - 00852824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-09-01 18:14 - 2016-08-20 06:32 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-09-01 18:14 - 2016-08-20 06:32 - 00846552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-09-01 18:14 - 2016-08-20 06:29 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-09-01 18:14 - 2016-08-20 06:29 - 01360464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-09-01 18:14 - 2016-08-20 06:29 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-09-01 18:14 - 2016-08-20 06:25 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-09-01 18:14 - 2016-08-20 06:22 - 22571008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-09-01 18:14 - 2016-08-20 06:22 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-09-01 18:14 - 2016-08-20 06:21 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-09-01 18:14 - 2016-08-20 06:21 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-09-01 18:14 - 2016-08-20 06:21 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL
2016-09-01 18:14 - 2016-08-20 06:21 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2016-09-01 18:14 - 2016-08-20 06:21 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-09-01 18:14 - 2016-08-20 06:21 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-09-01 18:14 - 2016-08-20 06:21 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2016-09-01 18:14 - 2016-08-20 06:20 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-09-01 18:14 - 2016-08-20 06:20 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-09-01 18:14 - 2016-08-20 06:20 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-09-01 18:14 - 2016-08-20 06:20 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2016-09-01 18:14 - 2016-08-20 06:19 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-09-01 18:14 - 2016-08-20 06:19 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-09-01 18:14 - 2016-08-20 06:18 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-09-01 18:14 - 2016-08-20 06:18 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-09-01 18:14 - 2016-08-20 06:18 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-09-01 18:14 - 2016-08-20 06:17 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-09-01 18:14 - 2016-08-20 06:17 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-09-01 18:14 - 2016-08-20 06:17 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-09-01 18:14 - 2016-08-20 06:16 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-09-01 18:14 - 2016-08-20 06:16 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-09-01 18:14 - 2016-08-20 06:16 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2016-09-01 18:14 - 2016-08-20 06:15 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-09-01 18:14 - 2016-08-20 06:15 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-09-01 18:14 - 2016-08-20 06:15 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-09-01 18:14 - 2016-08-20 06:15 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-09-01 18:14 - 2016-08-20 06:15 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-09-01 18:14 - 2016-08-20 06:14 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_G18030.DLL
2016-09-01 18:14 - 2016-08-20 06:14 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-09-01 18:14 - 2016-08-20 06:14 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2016-09-01 18:14 - 2016-08-20 06:14 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-09-01 18:14 - 2016-08-20 06:14 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_IS2022.DLL
2016-09-01 18:14 - 2016-08-20 06:14 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\c_GSM7.DLL
2016-09-01 18:14 - 2016-08-20 06:13 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-09-01 18:14 - 2016-08-20 06:13 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-09-01 18:14 - 2016-08-20 06:13 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-09-01 18:14 - 2016-08-20 06:13 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-09-01 18:14 - 2016-08-20 06:12 - 01014784 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-09-01 18:14 - 2016-08-20 06:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-09-01 18:14 - 2016-08-20 06:12 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-09-01 18:14 - 2016-08-20 06:12 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-01 18:14 - 2016-08-20 06:12 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-09-01 18:14 - 2016-08-20 06:12 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-09-01 18:14 - 2016-08-20 06:11 - 00965120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-09-01 18:14 - 2016-08-20 06:11 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-01 18:14 - 2016-08-20 06:11 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-01 18:14 - 2016-08-20 06:11 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-09-01 18:14 - 2016-08-20 06:10 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-09-01 18:14 - 2016-08-20 06:10 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-09-01 18:14 - 2016-08-20 06:09 - 09128448 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-09-01 18:14 - 2016-08-20 06:09 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-09-01 18:14 - 2016-08-20 06:09 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-09-01 18:14 - 2016-08-20 06:08 - 01906176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-01 18:14 - 2016-08-20 06:08 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-01 18:14 - 2016-08-20 06:08 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-09-01 18:14 - 2016-08-20 06:08 - 00204288 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2016-09-01 18:14 - 2016-08-20 06:08 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-09-01 18:14 - 2016-08-20 06:08 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll
2016-09-01 18:14 - 2016-08-20 06:07 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-09-01 18:14 - 2016-08-20 06:06 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-09-01 18:14 - 2016-08-20 06:06 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-09-01 18:14 - 2016-08-20 06:06 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2016-09-01 18:14 - 2016-08-20 06:05 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-09-01 18:14 - 2016-08-20 06:04 - 23682560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-01 18:14 - 2016-08-20 06:04 - 03245056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-01 18:14 - 2016-08-20 06:04 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-01 18:14 - 2016-08-20 06:04 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-09-01 18:14 - 2016-08-20 06:04 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-09-01 18:14 - 2016-08-20 06:04 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2016-09-01 18:14 - 2016-08-20 06:03 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2016-09-01 18:14 - 2016-08-20 06:03 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-01 18:14 - 2016-08-20 06:03 - 02846208 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-01 18:14 - 2016-08-20 06:02 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-01 18:14 - 2016-08-20 06:01 - 04612096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-09-01 18:14 - 2016-08-20 06:01 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-09-01 18:14 - 2016-08-20 06:01 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-09-01 18:14 - 2016-08-20 06:00 - 19423232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-09-01 18:14 - 2016-08-20 06:00 - 08124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-09-01 18:14 - 2016-08-20 06:00 - 01316352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-09-01 18:14 - 2016-08-20 06:00 - 00141824 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\SysWOW64\DscCoreConfProv.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 07624192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 01106944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2016-09-01 18:14 - 2016-08-20 05:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll
2016-09-01 18:14 - 2016-08-20 05:58 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-01 18:14 - 2016-08-20 05:58 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi_passthru.dll
2016-09-01 18:14 - 2016-08-20 05:57 - 02680832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-01 18:14 - 2016-08-20 05:57 - 02264064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-01 18:14 - 2016-08-20 05:57 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 02711040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 02289664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 02143232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 01006080 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-09-01 18:14 - 2016-08-20 05:56 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll
2016-09-01 18:14 - 2016-08-20 05:55 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-01 18:14 - 2016-08-20 05:55 - 00726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-09-01 18:14 - 2016-08-20 05:54 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-09-01 18:14 - 2016-08-20 05:53 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-09-01 18:14 - 2016-08-20 05:52 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-09-01 18:14 - 2016-08-20 05:51 - 06044672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-09-01 18:14 - 2016-08-20 05:51 - 01992704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-09-01 18:14 - 2016-08-20 05:51 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-09-01 18:14 - 2016-08-20 05:50 - 01875456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-09-01 18:13 - 2016-08-27 13:45 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-09-01 18:13 - 2016-08-27 10:37 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll
2016-09-01 18:13 - 2016-08-27 05:44 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2016-09-01 18:13 - 2016-08-27 05:43 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\encapi.dll
2016-09-01 18:13 - 2016-08-20 07:26 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-09-01 18:13 - 2016-08-20 07:13 - 00590952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-09-01 18:13 - 2016-08-20 07:06 - 00108384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-09-01 18:13 - 2016-08-20 07:03 - 02257248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-09-01 18:13 - 2016-08-20 06:50 - 00942424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-09-01 18:13 - 2016-08-20 06:50 - 00807776 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-09-01 18:13 - 2016-08-20 06:42 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-09-01 18:13 - 2016-08-20 06:20 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-09-01 18:13 - 2016-08-20 06:14 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2016-09-01 18:13 - 2016-08-20 06:12 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-09-01 18:13 - 2016-08-20 06:11 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-09-01 18:13 - 2016-08-20 06:10 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-09-01 18:13 - 2016-08-20 06:09 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-09-01 18:13 - 2016-08-20 06:05 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-09-01 18:13 - 2016-08-20 06:04 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-09-01 18:13 - 2016-08-20 06:03 - 00944640 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-01 18:13 - 2016-08-20 05:57 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-09-01 18:13 - 2016-08-20 05:56 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-01 18:13 - 2016-08-20 05:53 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-09-01 18:13 - 2016-08-20 05:53 - 03299328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-09-01 18:13 - 2016-08-20 05:49 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-09-01 18:13 - 2016-08-20 05:46 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-09-01 18:13 - 2016-08-19 02:33 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS
2016-08-26 09:32 - 2016-08-26 22:07 - 00000000 ____D C:\Users\terenceche\Downloads\eBooks Med 2011
2016-08-26 04:45 - 2016-08-26 04:46 - 00000000 ____D C:\Users\terenceche\Downloads\The.Hobbit.Battle.Of.The.Five.Armies.2014.1080p.WEBRip.x264-tomcat12[ETRG]
2016-08-26 04:10 - 2016-08-26 04:14 - 00000000 ____D C:\Users\terenceche\Downloads\The.Affair.S02E01.HDTV.x264-BATV[ettv]
2016-08-26 04:09 - 2016-08-26 04:32 - 00000000 ____D C:\Users\terenceche\Downloads\The Affair Season 2 HDTV.XviD-AFG[Pawulon]
2016-08-26 03:23 - 2016-08-26 03:23 - 00000282 _____ C:\Users\terenceche\Downloads\6B42A36622160CF3AED23AAB19FD3AAF (1).torrent
2016-08-26 03:19 - 2016-08-26 03:19 - 11150147 _____ C:\Users\terenceche\Downloads\6b42a36622160cf3aed23aab19fd3aaf
2016-08-26 03:18 - 2016-08-26 03:18 - 00000282 _____ C:\Users\terenceche\Downloads\6B42A36622160CF3AED23AAB19FD3AAF.torrent
2016-08-26 01:05 - 2016-08-26 01:05 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\subinacl.exe
2016-08-26 01:05 - 2016-08-26 01:05 - 00000000 ____D C:\Program Files (x86)\Adware Removal Tool by TSA
2016-08-26 01:04 - 2016-08-26 01:04 - 00752296 _____ C:\Users\terenceche\Downloads\Adware Removal Tool by TSA.exe
2016-08-26 00:06 - 2016-08-26 00:07 - 03826240 _____ C:\Users\terenceche\Downloads\adwcleaner_6.010.exe
2016-08-25 21:09 - 2016-08-25 21:09 - 01065376 _____ (Google Inc.) C:\Users\terenceche\Downloads\ChromeSetup (2).exe
2016-08-25 21:06 - 2016-08-25 21:06 - 01065376 _____ (Google Inc.) C:\Users\terenceche\Downloads\ChromeSetup (1).exe
2016-08-25 19:45 - 2016-08-25 19:45 - 00001018 _____ C:\Users\terenceche\Downloads\ab7de3250446bbe11b1ad25f44610834_release.txt
2016-08-25 19:39 - 2016-08-25 19:39 - 00001008 _____ C:\Users\terenceche\Downloads\ab7de3250446bbe11b1ad25f44610834.txt
2016-08-25 19:39 - 2016-08-25 19:39 - 00001008 _____ C:\Users\terenceche\Downloads\ab7de3250446bbe11b1ad25f44610834 (1).txt
2016-08-25 19:08 - 2016-08-25 19:08 - 00009592 _____ C:\Users\terenceche\Downloads\Creighton_Neurology_Observership_Application.pdf
2016-08-25 18:11 - 2016-08-25 18:11 - 00001008 _____ C:\Users\terenceche\Downloads\19d7ca86a70de2ade2756c2feac35c2f.txt
2016-08-25 16:06 - 2016-08-25 16:06 - 00052601 _____ C:\Users\terenceche\Downloads\Docfoc.com-Basic and clinical biostatistics 4th edition pdf.pdf
2016-08-25 15:58 - 2016-08-25 15:58 - 00059788 _____ C:\Users\terenceche\Downloads\CREST-MAS-Biostat_I_2013 Syllabus.pdf
2016-08-25 15:22 - 2016-08-25 15:22 - 00041698 _____ C:\Users\terenceche\Downloads\Basic-Clinical-Biostatistics-Beth-Dawson-007141018x.pdf
2016-08-25 15:15 - 2016-08-25 15:15 - 00000000 ____D C:\Users\terenceche\Downloads\MedStudy 2014 Internal Medicine Board-Style Questions & Answers [PDF] [UnitedVRG]
2016-08-25 15:14 - 2016-08-25 15:14 - 00009385 _____ C:\Users\terenceche\Downloads\[limetorrents.cc]MedStudy.2014.Internal.Medicine.Board-Style.Questions.&.Answers.[PDF].[UnitedVRG].torrent
2016-08-25 14:25 - 2016-08-25 14:25 - 00000000 ____D C:\Users\terenceche\Documents\HpReg_Backup
2016-08-25 04:27 - 2016-08-25 04:50 - 00000000 ____D C:\Users\terenceche\Downloads\The.Piano.Teacher.2001.iNTERNAL.BDRip.x264-MARS[rarbg]
2016-08-25 04:16 - 2016-08-25 04:24 - 00000000 ____D C:\Users\terenceche\Downloads\Masters of Sex S03 Season 3 Complete 720p HDTV x265 AAC E-Subs [GWC]
2016-08-25 03:56 - 2016-08-25 04:30 - 00000000 ____D C:\Users\terenceche\Downloads\Masters of Sex Season 1 Complete 720p.Web.Dl.Sujaidr
2016-08-24 17:39 - 2016-08-24 17:39 - 00275839 _____ C:\Users\terenceche\Downloads\passport_application (3).pdf
2016-08-24 15:43 - 2016-08-24 15:43 - 00083055 _____ C:\Users\terenceche\Downloads\myreport (7) (1).PDF
2016-08-24 14:13 - 2016-08-24 14:13 - 00712783 _____ C:\Users\terenceche\Downloads\MEDICAL SCHOOL TRANSCRIPT FRONT PAGE.pdf
2016-08-24 14:13 - 2016-08-24 14:13 - 00712783 _____ C:\Users\terenceche\Downloads\MEDICAL SCHOOL TRANSCRIPT FRONT PAGE (1).pdf
2016-08-24 13:23 - 2016-08-24 13:23 - 00025721 _____ C:\Users\terenceche\Downloads\Copy of Exhibit A - Visiting Observer Application Form_Revised 5.pdf
2016-08-24 03:43 - 2016-08-24 03:47 - 365400928 _____ C:\Users\terenceche\Downloads\The.Affair.S01E02.HDTV.x264-KILLERS.mp4
2016-08-24 03:01 - 2016-08-24 03:05 - 486806026 _____ C:\Users\terenceche\Downloads\The.Affair.S01E01.HDTV.x264-BATV.mp4
2016-08-24 03:00 - 2016-08-24 03:03 - 00000000 ____D C:\Users\terenceche\Downloads\The Affair 2014 Season 1 Complete 1080p WEB-DL [Coo7]
2016-08-23 18:49 - 2016-08-06 04:31 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-08-23 18:48 - 2016-08-06 05:33 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-08-23 18:48 - 2016-08-06 05:31 - 00041824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2016-08-23 18:48 - 2016-08-06 05:29 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-08-23 18:48 - 2016-08-06 05:26 - 01176664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-08-23 18:48 - 2016-08-06 05:18 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-23 18:48 - 2016-08-06 05:18 - 00396168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-08-23 18:48 - 2016-08-06 05:17 - 00790760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-08-23 18:48 - 2016-08-06 05:17 - 00450400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-08-23 18:48 - 2016-08-06 05:17 - 00224096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-08-23 18:48 - 2016-08-06 05:16 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-08-23 18:48 - 2016-08-06 05:15 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2016-08-23 18:48 - 2016-08-06 05:13 - 01066096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-08-23 18:48 - 2016-08-06 05:13 - 00381760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-08-23 18:48 - 2016-08-06 05:09 - 00151224 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-08-23 18:48 - 2016-08-06 05:08 - 02251432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-08-23 18:48 - 2016-08-06 05:08 - 00509784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-08-23 18:48 - 2016-08-06 05:04 - 00361096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2016-08-23 18:48 - 2016-08-06 05:03 - 01557296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-08-23 18:48 - 2016-08-06 05:03 - 01343928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-08-23 18:48 - 2016-08-06 05:03 - 00955008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-08-23 18:48 - 2016-08-06 05:03 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-08-23 18:48 - 2016-08-06 05:03 - 00036168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-08-23 18:48 - 2016-08-06 04:48 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-08-23 18:48 - 2016-08-06 04:48 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-08-23 18:48 - 2016-08-06 04:48 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2016-08-23 18:48 - 2016-08-06 04:47 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-08-23 18:48 - 2016-08-06 04:47 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-08-23 18:48 - 2016-08-06 04:46 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-08-23 18:48 - 2016-08-06 04:45 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2016-08-23 18:48 - 2016-08-06 04:45 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-08-23 18:48 - 2016-08-06 04:45 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-08-23 18:48 - 2016-08-06 04:45 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2016-08-23 18:48 - 2016-08-06 04:45 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2016-08-23 18:48 - 2016-08-06 04:45 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2016-08-23 18:48 - 2016-08-06 04:44 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2016-08-23 18:48 - 2016-08-06 04:44 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-08-23 18:48 - 2016-08-06 04:43 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-08-23 18:48 - 2016-08-06 04:43 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-08-23 18:48 - 2016-08-06 04:42 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-08-23 18:48 - 2016-08-06 04:41 - 13867520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-08-23 18:48 - 2016-08-06 04:41 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-08-23 18:48 - 2016-08-06 04:41 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-08-23 18:48 - 2016-08-06 04:41 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-08-23 18:48 - 2016-08-06 04:41 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2016-08-23 18:48 - 2016-08-06 04:40 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-08-23 18:48 - 2016-08-06 04:40 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-08-23 18:48 - 2016-08-06 04:40 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll
2016-08-23 18:48 - 2016-08-06 04:40 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll
2016-08-23 18:48 - 2016-08-06 04:39 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-08-23 18:48 - 2016-08-06 04:39 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-08-23 18:48 - 2016-08-06 04:39 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
2016-08-23 18:48 - 2016-08-06 04:38 - 17187328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-23 18:48 - 2016-08-06 04:38 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-23 18:48 - 2016-08-06 04:37 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-08-23 18:48 - 2016-08-06 04:33 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-08-23 18:48 - 2016-08-06 04:33 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-08-23 18:48 - 2016-08-06 04:31 - 12174336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-08-23 18:48 - 2016-08-06 04:31 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-08-23 18:48 - 2016-08-06 04:30 - 13080576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-08-23 18:48 - 2016-08-06 04:29 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2016-08-23 18:48 - 2016-08-06 04:29 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-08-23 18:48 - 2016-08-06 04:28 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2016-08-23 18:48 - 2016-08-06 04:28 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-08-23 18:48 - 2016-08-06 04:26 - 02422784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-08-23 18:48 - 2016-08-06 04:26 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-08-23 18:48 - 2016-08-06 04:26 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-08-23 18:48 - 2016-08-06 04:25 - 03116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-08-23 18:48 - 2016-08-06 04:24 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-08-23 18:48 - 2016-08-06 04:24 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-08-23 18:48 - 2016-08-06 04:23 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-08-23 18:48 - 2016-08-06 04:23 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-08-23 18:48 - 2016-08-06 04:23 - 01062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-08-23 18:48 - 2016-08-06 04:23 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-08-23 18:48 - 2016-08-06 04:21 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-08-23 18:48 - 2016-08-06 04:19 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2016-08-23 18:48 - 2016-08-05 10:14 - 01066328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2016-08-23 18:48 - 2016-08-05 10:12 - 05622600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-08-23 18:48 - 2016-08-05 10:10 - 00939872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2016-08-23 18:48 - 2016-08-05 10:05 - 00665768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe
2016-08-23 18:48 - 2016-08-05 09:29 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2016-08-23 18:48 - 2016-08-05 09:28 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2016-08-23 18:48 - 2016-08-05 09:22 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2016-08-23 18:48 - 2016-08-05 09:20 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-08-23 18:48 - 2016-08-05 09:20 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2016-08-23 18:48 - 2016-08-05 09:08 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2016-08-23 18:47 - 2016-08-06 05:31 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-08-23 18:47 - 2016-08-06 05:29 - 00199008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2016-08-23 18:47 - 2016-08-06 05:23 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-08-23 18:47 - 2016-08-06 05:18 - 02745224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-08-23 18:47 - 2016-08-06 05:17 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-08-23 18:47 - 2016-08-06 05:13 - 01847048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-08-23 18:47 - 2016-08-06 05:13 - 01694200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-08-23 18:47 - 2016-08-06 05:13 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-08-23 18:47 - 2016-08-06 05:13 - 00044472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-08-23 18:47 - 2016-08-06 05:08 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-08-23 18:47 - 2016-08-06 05:08 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-08-23 18:47 - 2016-08-06 05:08 - 00313560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-08-23 18:47 - 2016-08-06 05:08 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-23 18:47 - 2016-08-06 05:02 - 00321280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-08-23 18:47 - 2016-08-06 04:48 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-08-23 18:47 - 2016-08-06 04:48 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2016-08-23 18:47 - 2016-08-06 04:48 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-08-23 18:47 - 2016-08-06 04:48 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2016-08-23 18:47 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2016-08-23 18:47 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2016-08-23 18:47 - 2016-08-06 04:47 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-08-23 18:47 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-08-23 18:47 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-08-23 18:47 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-08-23 18:47 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-08-23 18:47 - 2016-08-06 04:46 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2016-08-23 18:47 - 2016-08-06 04:46 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-08-23 18:47 - 2016-08-06 04:46 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-08-23 18:47 - 2016-08-06 04:45 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2016-08-23 18:47 - 2016-08-06 04:45 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-08-23 18:47 - 2016-08-06 04:44 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2016-08-23 18:47 - 2016-08-06 04:44 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-08-23 18:47 - 2016-08-06 04:43 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-08-23 18:47 - 2016-08-06 04:43 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-08-23 18:47 - 2016-08-06 04:41 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2016-08-23 18:47 - 2016-08-06 04:41 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2016-08-23 18:47 - 2016-08-06 04:41 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
2016-08-23 18:47 - 2016-08-06 04:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-08-23 18:47 - 2016-08-06 04:39 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2016-08-23 18:47 - 2016-08-06 04:36 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-08-23 18:47 - 2016-08-06 04:31 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-08-23 18:47 - 2016-08-06 04:31 - 01052672 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-08-23 18:47 - 2016-08-06 04:30 - 12345344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-08-23 18:47 - 2016-08-06 04:30 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-08-23 18:47 - 2016-08-06 04:29 - 13433856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-08-23 18:47 - 2016-08-06 04:29 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-08-23 18:47 - 2016-08-06 04:28 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-08-23 18:47 - 2016-08-06 04:25 - 01595904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-08-23 18:47 - 2016-08-06 04:23 - 01780736 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-08-23 18:47 - 2016-08-06 04:23 - 01508864 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-08-23 18:47 - 2016-08-06 04:23 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-08-23 18:47 - 2016-08-06 04:23 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-08-23 18:47 - 2016-08-06 04:19 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-08-23 18:47 - 2016-08-05 09:23 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2016-08-23 18:47 - 2016-08-05 09:18 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2016-08-23 15:14 - 2016-08-23 15:14 - 00000000 ____D C:\Users\terenceche\Downloads\Mulholland Drive (2001) BRRip x264 720p ~ MrKickASS
2016-08-20 18:46 - 2016-08-20 18:48 - 00000000 ____D C:\Users\terenceche\Downloads\Good Will Hunting (1997) 720p BRRip X264 (Dual Audio) [Hindi-English] {R@J@T}
2016-08-20 15:13 - 2016-08-20 15:17 - 00000000 ____D C:\Users\terenceche\Downloads\Eternal.Sunshine.of.the.Spotless.Mind.2004.1080p.BluRay.x264.anoXmous
2016-08-20 11:16 - 2016-08-25 17:04 - 00000000 ____D C:\WINDOWS\Minidump
2016-08-20 00:49 - 2016-08-20 00:54 - 00000000 ____D C:\Users\terenceche\Downloads\The Lord of the Rings The Two Towers EXTENDED (2002)
2016-08-20 00:24 - 2016-08-20 00:24 - 00000000 ____D C:\Users\terenceche\Downloads\Stranger.Things.Season.1.Complete.720p.WebRip.EN-SUB.x264-[MULVAcoded]
2016-08-19 17:54 - 2016-08-19 18:04 - 00000000 ____D C:\Users\terenceche\Downloads\Adobe.Acrobat.Reader.PRO.7.0.[CZ].[Krytak]
2016-08-19 11:32 - 2016-08-19 11:38 - 00000000 ____D C:\Users\terenceche\Downloads\Batman The Dark Knight (2008) [1080p]
2016-08-17 16:27 - 2016-08-17 16:27 - 00235214 _____ C:\Users\terenceche\Downloads\EligibilityRequirements.pdf
2016-08-15 15:24 - 2016-08-15 15:24 - 00002874 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-08-15 15:24 - 2016-08-15 15:24 - 00001097 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-08-15 15:24 - 2016-08-15 15:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-08-15 15:24 - 2016-08-15 15:24 - 00000000 ____D C:\Program Files (x86)\CCleaner
2016-08-15 15:23 - 2016-08-15 15:24 - 08136664 _____ (Piriform Ltd) C:\Users\terenceche\Downloads\ccsetup520.exe
2016-08-15 08:09 - 2016-08-15 08:09 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-08-15 08:05 - 2016-08-15 15:20 - 00000000 ____D C:\Users\terenceche\AppData\Local\ConnectedDevicesPlatform
2016-08-15 08:05 - 2016-08-15 08:05 - 00000000 ____D C:\ProgramData\USOShared
2016-08-15 08:04 - 2016-08-15 08:04 - 00000020 ___SH C:\Users\terenceche\ntuser.ini
2016-08-15 05:52 - 2016-08-15 15:25 - 00000000 ___DC C:\WINDOWS\Panther
2016-08-15 05:45 - 2016-08-29 08:51 - 00000000 ____D C:\Windows.old
2016-08-15 05:44 - 2016-08-15 05:44 - 01708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2016-08-15 05:44 - 2016-08-15 05:44 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2016-08-15 05:41 - 2016-08-15 05:41 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-08-15 05:38 - 2016-08-25 20:41 - 00000000 ____D C:\inetpub
2016-08-15 05:38 - 2016-08-15 05:38 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-08-15 05:38 - 2016-08-15 05:38 - 00000000 ____D C:\Program Files\MSBuild
2016-08-15 05:38 - 2016-08-15 05:38 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-08-15 05:38 - 2016-08-15 05:38 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-08-15 05:37 - 2016-05-25 15:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-08-15 05:37 - 2016-05-25 15:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-08-15 05:37 - 2016-05-25 15:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-08-15 05:37 - 2016-05-25 12:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-08-15 05:37 - 2016-05-25 12:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-08-15 05:37 - 2016-05-25 12:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-08-15 05:34 - 2016-08-15 05:37 - 00007623 _____ C:\WINDOWS\diagwrn.xml
2016-08-15 05:34 - 2016-08-15 05:37 - 00007623 _____ C:\WINDOWS\diagerr.xml
2016-08-15 05:24 - 2016-08-15 05:24 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2016-08-15 05:23 - 2016-09-05 22:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-08-15 05:23 - 2016-09-04 17:03 - 00003278 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForterenceche
2016-08-15 05:23 - 2016-08-15 05:24 - 00003302 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{27F0622F-BB70-4438-8D34-A44A4369A3BB}
2016-08-15 05:23 - 2016-08-15 05:24 - 00002408 _____ C:\WINDOWS\System32\Tasks\{DBCF4AAD-8C10-41AB-BA90-153B17E9D01B}
2016-08-15 05:23 - 2016-08-15 05:23 - 00003082 _____ C:\WINDOWS\System32\Tasks\{6A4FEC0F-FE04-25F1-BE86-CA54DE4D7346}
2016-08-15 05:23 - 2016-08-15 05:23 - 00002940 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3719833260-3083536140-2909629863-1002
2016-08-15 05:23 - 2016-08-15 05:23 - 00002700 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP Deskjet 2540 series
2016-08-15 05:23 - 2016-08-15 05:23 - 00002530 _____ C:\WINDOWS\System32\Tasks\YCMServiceAgent
2016-08-15 05:23 - 2016-08-15 05:23 - 00002380 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3719833260-3083536140-2909629863-500
2016-08-15 05:23 - 2016-08-15 05:23 - 00002372 _____ C:\WINDOWS\System32\Tasks\DropboxOEM
2016-08-15 05:23 - 2016-08-15 05:23 - 00002306 _____ C:\WINDOWS\System32\Tasks\Start SimplePass
2016-08-15 05:23 - 2016-08-15 05:23 - 00002244 _____ C:\WINDOWS\System32\Tasks\Start OPBHOBrokerDesktop
2016-08-15 05:23 - 2016-08-15 05:23 - 00002232 _____ C:\WINDOWS\System32\Tasks\Start OPBHOBroker
2016-08-15 05:23 - 2016-08-15 05:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\Remediation
2016-08-15 05:23 - 2016-08-15 05:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform
2016-08-15 05:23 - 2016-08-15 05:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\Norton Identity Safe
2016-08-15 05:23 - 2016-08-15 05:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\McAfee
2016-08-15 05:23 - 2016-08-15 05:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard
2016-08-15 05:23 - 2015-05-27 15:11 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3917786224-3607267564-1809118489-500
2016-08-15 05:23 - 2015-04-11 20:05 - 00003592 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2731679316-150021648-174694628-500
2016-08-15 05:23 - 2014-12-15 11:04 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1220581250-1106200143-1492867289-500
2016-08-15 05:23 - 2014-12-10 05:57 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3029088036-972593967-1456461706-500
2016-08-15 05:12 - 2016-08-15 05:12 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default\Documents\hp.system.package.metadata
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default\Documents\hp.applications.package.appdata
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default\AppData\Roaming\Performix LLC
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default User\Documents\hp.system.package.metadata
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default User\Documents\hp.applications.package.appdata
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Performix LLC
2016-08-15 05:12 - 2016-08-15 05:12 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-08-15 05:06 - 2016-08-15 05:14 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-08-15 05:02 - 2016-09-05 22:21 - 00000000 ____D C:\Users\terenceche
2016-08-15 05:01 - 2016-09-05 22:50 - 01336678 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-15 05:01 - 2016-08-15 05:01 - 00932736 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-08-15 04:57 - 2016-09-05 22:02 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-08-15 04:57 - 2016-08-15 05:06 - 00000000 ____D C:\Program Files\AMD
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_AMDASF_01011.Wdf
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 ____D C:\Program Files\Synaptics
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-08-15 04:57 - 2016-08-15 04:57 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-08-15 04:56 - 2016-08-15 05:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
2016-08-15 04:56 - 2016-08-15 04:56 - 00012321 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2016-08-15 04:56 - 2016-08-15 04:56 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-08-15 04:56 - 2016-08-15 04:56 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-08-15 04:56 - 2016-08-15 04:56 - 00000000 ____D C:\Program Files\Realtek
2016-08-15 04:56 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-08-15 04:54 - 2016-09-06 07:37 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-08-15 04:54 - 2016-09-02 13:07 - 00355952 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-15 04:54 - 2016-08-15 04:54 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-08-13 10:15 - 2016-08-13 10:18 - 00000000 ____D C:\Users\terenceche\Downloads\13 Assassins (2010) EXTENDED.720p.BRrip.sujaidr
2016-08-12 09:35 - 2016-08-12 09:35 - 00000000 ____D C:\Users\terenceche\Downloads\medstudy derma
2016-08-11 13:56 - 2016-08-11 13:56 - 00000000 ____D C:\Users\terenceche\Downloads\McGraw-Hill Specialty Board Review Pediatrics, 2E [Epub & Mobi] [StormRG]
2016-08-11 08:08 - 2016-08-11 08:08 - 00000000 ____D C:\Users\terenceche\Downloads\The Tibetan Book of The Dead - Penguin Classics
2016-08-09 19:53 - 2016-09-02 18:27 - 00000000 ____D C:\Users\terenceche\Desktop\docs
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-06 08:37 - 2016-03-07 19:33 - 00019651 _____ C:\Users\terenceche\Downloads\FRST.txt
2016-09-06 08:37 - 2016-03-07 19:33 - 00000000 ____D C:\FRST
2016-09-05 22:49 - 2015-08-24 19:03 - 00000000 ____D C:\Users\terenceche\Documents\Youcam
2016-09-05 22:46 - 2015-05-27 14:11 - 10401451 _____ C:\WINDOWS\SysWOW64\rootpa.e2e
2016-09-05 22:11 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-05 22:11 - 2015-08-24 18:58 - 00000000 ____D C:\Users\terenceche\AppData\Local\Packages
2016-09-05 22:10 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-05 22:02 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-09-05 21:52 - 2015-05-27 14:25 - 00000000 ____D C:\ProgramData\Temp
2016-09-05 21:35 - 2015-08-24 22:28 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\deluge
2016-09-05 20:24 - 2015-08-24 19:38 - 00000000 ____D C:\Program Files (x86)\Google
2016-09-05 19:47 - 2015-10-20 16:50 - 00000000 ____D C:\Users\terenceche\AppData\Local\Adobe
2016-09-05 19:33 - 2015-08-27 06:42 - 00001074 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-09-05 19:26 - 2016-07-13 20:36 - 00000000 ____D C:\Users\terenceche\Downloads\Adguard Premium v6.0.204.1025 Setup + Crack
2016-09-05 18:57 - 2016-05-10 07:40 - 00000366 _____ C:\WINDOWS\Tasks\HPCeeScheduleForterenceche.job
2016-09-05 18:56 - 2016-03-05 18:46 - 00000000 ____D C:\AdwCleaner
2016-09-05 18:27 - 2016-03-05 12:37 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-09-05 12:02 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
2016-09-04 16:26 - 2015-08-27 06:42 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\vlc
2016-09-04 12:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-09-02 14:12 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF
2016-09-02 14:08 - 2015-08-24 17:44 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\es-MX
2016-09-02 13:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-09-02 13:05 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-09-02 13:05 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-09-02 13:05 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Provisioning
2016-09-02 09:46 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-01 18:08 - 2016-07-16 12:42 - 00409952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-09-01 18:07 - 2016-07-16 12:43 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-09-01 18:07 - 2016-07-16 12:43 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-01 18:07 - 2016-07-16 12:43 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-09-01 18:07 - 2016-07-16 12:43 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-09-01 18:07 - 2016-07-16 12:43 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-01 18:07 - 2016-07-16 12:43 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-09-01 18:07 - 2016-07-16 12:42 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-09-01 18:07 - 2016-07-16 12:42 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-09-01 18:07 - 2016-07-16 12:42 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-09-01 18:07 - 2016-07-16 12:42 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-09-01 18:07 - 2016-07-16 12:42 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-09-01 18:07 - 2016-07-16 12:42 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-09-01 18:06 - 2016-07-16 12:43 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-09-01 18:06 - 2016-07-16 12:42 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-09-01 18:06 - 2016-07-16 12:42 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-09-01 18:06 - 2016-07-16 12:42 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2016-09-01 18:06 - 2016-07-16 12:42 - 00079544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2016-08-26 06:43 - 2016-07-16 12:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-08-26 06:43 - 2016-07-16 12:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-08-25 21:38 - 2015-10-19 16:02 - 00000000 ____D C:\ProgramData\Freemake
2016-08-25 20:41 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-08-25 20:41 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-08-25 20:40 - 2016-07-16 12:43 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspperf.dll
2016-08-25 20:40 - 2016-07-16 12:43 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspperf.dll
2016-08-25 14:45 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-08-24 04:01 - 2016-05-12 03:19 - 00000000 ____D C:\Users\terenceche\Downloads\Game.of.Thrones.S06E03.1080p.HDTV.x264-BATV[ettv]
2016-08-23 21:04 - 2015-04-11 19:37 - 00000000 ____D C:\ProgramData\Package Cache
2016-08-16 20:45 - 2015-12-19 22:50 - 00000000 ____D C:\ProgramData\Oracle
2016-08-16 20:43 - 2015-12-19 22:53 - 00002528 _____ C:\Users\terenceche\Desktop\UWorld Qbank.lnk
2016-08-16 20:43 - 2015-12-19 22:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-08-16 20:42 - 2015-12-19 22:50 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-08-16 20:42 - 2015-12-19 22:50 - 00000000 ____D C:\Users\terenceche\.oracle_jre_usage
2016-08-16 20:41 - 2015-12-19 22:50 - 00000000 ____D C:\Program Files (x86)\Java
2016-08-16 09:03 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\appcompat
2016-08-15 15:25 - 2015-09-18 18:08 - 00000000 ____D C:\Users\terenceche\AppData\Local\CrashDumps
2016-08-15 15:13 - 2015-12-22 07:32 - 00000258 __RSH C:\ProgramData\ntuser.pol
2016-08-15 08:10 - 2015-08-25 07:04 - 00002426 _____ C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-08-15 08:10 - 2015-08-24 19:05 - 00000000 ___RD C:\Users\terenceche\OneDrive
2016-08-15 08:05 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-08-15 05:52 - 2016-07-16 12:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-08-15 05:38 - 2016-07-16 12:43 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-08-15 05:38 - 2016-07-16 12:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-08-15 05:38 - 2016-07-16 12:43 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-08-15 05:38 - 2016-07-16 12:43 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-08-15 05:38 - 2016-07-16 12:43 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-08-15 05:38 - 2016-07-16 12:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-08-15 05:38 - 2016-07-16 12:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2016-08-15 05:37 - 2016-07-16 12:44 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2016-08-15 05:37 - 2016-07-16 12:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2016-08-15 05:37 - 2016-07-16 12:44 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2016-08-15 05:37 - 2016-07-16 12:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2016-08-15 05:37 - 2016-07-16 12:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2016-08-15 05:37 - 2016-07-16 12:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2016-08-15 05:37 - 2016-07-16 12:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2016-08-15 05:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-08-15 05:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Registration
2016-08-15 05:33 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-08-15 05:23 - 2015-08-25 00:22 - 00022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-08-15 05:18 - 2016-07-13 23:38 - 00000255 _____ C:\WINDOWS\SysWOW64\Drivers\vwifikerneldrv.sys
2016-08-15 05:18 - 2016-07-13 23:38 - 00000255 _____ C:\WINDOWS\SysWOW64\d3dx9_11.dll.tmp
2016-08-15 05:18 - 2016-07-13 23:38 - 00000255 _____ C:\ProgramData\fontcacheev1.dat
2016-08-15 05:15 - 2016-04-15 02:17 - 00000000 ____D C:\WINDOWS\system32\SSL
2016-08-15 05:14 - 2016-08-01 19:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-08-15 05:14 - 2016-04-28 09:58 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UWorld SimExam
2016-08-15 05:14 - 2016-04-22 16:17 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UWorld Qbank
2016-08-15 05:14 - 2016-03-05 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-08-15 05:14 - 2016-03-05 12:55 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-08-15 05:14 - 2016-01-24 16:18 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-08-15 05:14 - 2016-01-24 16:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-08-15 05:14 - 2015-12-21 20:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Word To PDF
2016-08-15 05:14 - 2015-09-29 09:48 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WriteItNow
2016-08-15 05:14 - 2015-09-08 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDjView
2016-08-15 05:14 - 2015-08-28 21:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sigil
2016-08-15 05:14 - 2015-08-27 10:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-08-15 05:14 - 2015-08-27 06:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-08-15 05:14 - 2015-08-25 10:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightscreen
2016-08-15 05:14 - 2015-08-24 21:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge
2016-08-15 05:14 - 2015-05-27 14:35 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
2016-08-15 05:14 - 2015-05-27 14:16 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-08-15 05:14 - 2015-05-27 13:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2016-08-15 05:14 - 2015-04-11 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
2016-08-15 05:14 - 2015-04-11 19:38 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2016-08-15 05:12 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-08-15 05:12 - 2015-10-30 07:28 - 00000000 ____D C:\Users\Default.migrated
2016-08-15 05:09 - 2016-07-16 23:49 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-08-15 05:09 - 2016-07-16 23:49 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\spool
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-08-15 05:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-08-15 05:09 - 2015-04-11 19:39 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe
2016-08-15 05:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-08-15 05:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-08-15 05:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-08-15 05:07 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\InputMethod
2016-08-15 05:07 - 2016-04-19 11:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-08-15 05:07 - 2016-04-19 03:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TNod User & Password Finder
2016-08-15 05:07 - 2016-01-23 11:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-08-15 05:06 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-08-15 05:06 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-08-15 05:04 - 2015-08-25 17:13 - 00000000 ____D C:\Users\terenceche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2016-08-15 05:01 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-08-15 04:58 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-08-15 04:58 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-08-10 21:05 - 2016-07-07 11:30 - 00000000 ____D C:\Users\terenceche\Desktop\usmle step 3
2016-08-10 13:24 - 2015-08-25 09:07 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-08-10 13:16 - 2015-08-25 09:07 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
==================== Files in the root of some directories =======
2015-09-24 10:36 - 2015-09-24 10:36 - 0058880 _____ () C:\Users\terenceche\AppData\Local\N360
2015-09-24 10:36 - 2015-09-24 10:36 - 0055808 _____ () C:\Users\terenceche\AppData\Local\NAV
2015-09-24 10:36 - 2015-09-24 10:36 - 0054272 _____ () C:\Users\terenceche\AppData\Local\NIS
2016-07-08 21:26 - 2016-07-08 21:26 - 0000218 _____ () C:\Users\terenceche\AppData\Local\recently-used.xbel
2015-11-16 06:13 - 2015-11-16 06:13 - 0986955 _____ () C:\Users\terenceche\AppData\Local\Word-to-PDF-Converter_1357.rar
2015-08-27 10:31 - 2015-08-27 10:31 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-07-13 23:38 - 2016-08-15 05:18 - 0000255 _____ () C:\ProgramData\fontcacheev1.dat
Files to move or delete:
====================
C:\ProgramData\fontcacheev1.dat
Some files in TEMP:
====================
C:\Users\terenceche\AppData\Local\Temp\libeay32.dll
C:\Users\terenceche\AppData\Local\Temp\msvcr120.dll
C:\Users\terenceche\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-08-30 07:24
==================== End of FRST.txt ============================