I'm running Windows 10
As of lately, Mozilla Firefox has been completely hijacked. it will open new windows and tabs at random, even tuning the whole page into some kind of link where no matter where I click, it opens a new tab and takes me to some site. I've come here on Microsoft Edge, and so far I haven't seen any interference.
The second issue I noticed when I tried to use windows defender to scan my computer, after noticing the firefox issue. I get a window saying that windows defender is disabled due to group policy. I haven't figured out how to get it to run again. I downloaded bitdefender and that has issues running as well.
Also, I get notifications about a potential threat in my windows update folder, "windowsupdate.exe" not sure what that means, but I haven't noticed any windows updates since these issues started happening. could be that no updates have been pushed since all this. my FRST logs are as follows:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-03-2017
Ran by [removed] (administrator) on DESKTOP-PHRHDSR (10-03-2017 05:27:18)
Running from C:\Users\[removed]\Downloads
[removed]
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel(R) Corporation) C:\Program Files\Intel\BCA\pabeSvc64.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oculus VR) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
Failed to access process -> rundll32.exe
Failed to access process -> rundll32.exe
Failed to access process -> rundll32.exe
Failed to access process -> rundll32.exe
() C:\Program Files (x86)\ViveSetup\PCClient\ViveportService.exe
(HTC Corporation) C:\Program Files\HTC Account\Htc.Identity.Service.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
() C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(Oculus VR) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
(Microsoft Corporation) C:\Windows\System32\CastSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
() C:\Program Files (x86)\ViveSetup\PCClient\HTCVRMarketplaceUserContextHelper.exe
() C:\Program Files (x86)\ViveSetup\PCClient\HTCVRMarketplaceUserContextHelper.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
(HTC) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\lighthouse\bin\win64\vivelink.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8495320 2015-06-23] (Realtek Semiconductor)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-06] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [WindowsUpdate] => C:\Users\Default\WindowsUpdate\WindowsUpdate.exe [27648 2017-02-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480 2016-03-20] (Oracle Corporation)
HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-03-25] (Plays.tv, LLC)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-03-25] (Raptr, Inc)
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
HKLM-x32\...\Run: [GammingApp] => C:\Program Files (x86)\MSI\Gaming APP\SGamingApp.exe --min
HKLM-x32\...\Run: [HTC Store User Content Helper] => C:\Program Files (x86)\ViveSetup\PCClient\HTCVRMarketplaceUserContextHelper.exe [112464 2017-02-24] ()
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-03-09] (Valve Corporation)
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [Spotify Web Helper] => C:\Users\jakeg\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524336 2016-02-18] (Spotify Ltd)
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [GameJoltClient] => C:\Users\jakeg\AppData\Local\GameJoltClient\GameJoltClient.exe [46705152 2016-03-10] ()
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [VivePCClient] => C:\Program Files (x86)\ViveSetup\PCClient\Vive.exe [3613520 2017-02-24] (HTC Corp.)
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [Gaijin.Net Agent] => "C:\Users\jakeg\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe"
HKU\S-1-5-18\...\Run: [script_fcbd] => C:\Users\jakeg\Far Cry 3 Blood Dragon\fcbd.bat [307 2016-12-07] ()
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\start_swu.lnk [2017-01-30]
ShortcutTarget: start_swu.lnk -> C:\Program Files\devnullnull2017\SWU\start.vbs ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{35e8f816-6cc9-49ba-8ec3-fb8fff532b1d}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e60e1757-83b3-407b-bf50-9bfddfddc44c}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f51feabd-2c2c-42a4-b229-b0629e97d160}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_77\bin\ssv.dll [2016-03-29] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-29] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-03-29] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-29] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: u7rl4wfp.default
FF ProfilePath: C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default [2017-03-09]
FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\u7rl4wfp.default -> Bing
FF Homepage: Mozilla\Firefox\Profiles\u7rl4wfp.default -> hxxp://www.nexusmods.com/skyrimspecialedition/?
FF Extension: (Adguard AdBlocker) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-01-13]
FF Extension: (Fast search) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\amcontextmenu@loucypher [2017-02-25]
FF Extension: (MEGA) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-03-09]
FF Extension: (Reddit Enhancement Suite) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-02-19]
FF Extension: (uBlock Origin) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-03-04]
FF Extension: (Video DownloadHelper) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-01-01]
FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\features\{01cf2deb-67a4-4cf5-ac22-4c29fa9423d9}\[removed] [2017-03-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-28] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [No File]
FF Plugin: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-29] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-29] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-28] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [No File]
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [No File]
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-29] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-29] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-09] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-09] (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin HKU\S-1-5-21-2362767239-1170048716-167344883-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2016-12-17] ()
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-06-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [136616 2011-10-13] ()
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-07-22] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-07-22] () [File not signed]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1465352 2017-01-14] ()
S2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [4646440 2015-09-14] (Binary Fortress Software)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [395024 2016-12-27] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-08-11] (Futuremark)
R2 HTC Account Service; C:\Program Files\HTC Account\Htc.Identity.Service.exe [20712 2016-12-15] (HTC Corporation)
R2 IntelBCAsvc; C:\Program Files\Intel\BCA\pabeSvc64.exe [3026584 2016-05-06] (Intel(R) Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-09] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-01-20] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2017-02-14] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2184208 2017-02-14] (Electronic Arts)
S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [185640 2017-02-24] (Oculus VR, LLC)
R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [474064 2017-02-24] (Oculus VR)
S2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-03-25] (Plays.tv, LLC)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1100392 2016-10-28] (Bitdefender)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [908256 2016-07-22] (McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [15736 2016-07-22] (McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2016-07-22] (McAfee, Inc.)
R2 Viveport; C:\Program Files (x86)\ViveSetup\PCClient\ViveportService.exe [72016 2017-02-24] ()
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2016-11-30] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2016-11-30] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S3 iPod Service; "C:\Program Files\iPod\bin\iPodService.exe" [X]
S2 MSI_ActiveX_Service; "C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe" [X]
S2 NVIDIA Wireless Controller Service; "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe" [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.)
R2 AODDriver4.1; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [55936 2011-10-13] (Advanced Micro Devices)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-07-22] ()
R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [1605376 2016-09-20] (BitDefender)
R3 avckf; C:\WINDOWS\System32\DRIVERS\avckf.sys [878072 2016-09-20] (BitDefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [23672 2016-03-14] (Bitdefender)
R1 bdfwfpf; C:\Program Files\Bitdefender Antivirus Free\bdfwfpf.sys [127312 2016-02-22] (BitDefender LLC)
R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [66184 2017-03-07] (Broadcom Corporation.)
R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [108608 2016-09-24] (Dokan Project)
S3 edrsensor; C:\WINDOWS\System32\DRIVERS\edrsensor.sys [342016 2016-12-13] (BitDefender S.R.L. Bucharest, ROMANIA)
S3 GVTDrv64; C:\WINDOWS\GVTDrv64.sys [30528 2016-10-23] ()
R0 gzflt; C:\WINDOWS\System32\drivers\gzflt.sys [182944 2016-10-29] (BitDefender LLC)
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
S3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2013-07-02] (ASUSTeK Computer Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 NTIOLib_MB; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [13808 2014-03-13] (MSI)
S3 NVFLASH; C:\WINDOWS\system32\drivers\nvflash.sys [15648 2014-01-06] ()
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0cc477a6fec64d8c\nvlddmkm.sys [14516664 2017-02-10] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-01-20] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46016 2017-01-20] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13512 2015-12-09] ()
R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [3042520 2014-01-16] (Realtek Semiconductor Corporation )
S3 RtlWlanu_OldIC; C:\WINDOWS\System32\drivers\rtwlanu_oldIC.sys [3814400 2016-07-16] (Realtek Semiconductor Corporation )
R0 trufos; C:\WINDOWS\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [36808 2017-01-30] (Wellbia.com Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-10 05:27 - 2017-03-10 05:28 - 00020490 _____ C:\Users\jakeg\Downloads\FRST.txt
2017-03-10 05:26 - 2017-03-10 05:27 - 00000000 ____D C:\FRST
2017-03-10 05:26 - 2017-03-10 05:26 - 02423808 _____ (Farbar) C:\Users\jakeg\Downloads\FRST64.exe
2017-03-10 04:48 - 2017-03-10 04:48 - 00000000 ___HD C:\OneDriveTemp
2017-03-09 00:52 - 2017-03-09 00:52 - 02025886 _____ C:\Users\jakeg\Downloads\vivecraft-1.7.10-jrbudda-38pre-installer.exe
2017-03-09 00:42 - 2017-03-09 00:42 - 03378021 _____ C:\Users\jakeg\Downloads\forge-1.7.10-10.13.4.1614-1.7.10-installer.jar
2017-03-07 19:01 - 2017-03-07 19:02 - 00547556 _____ C:\WINDOWS\Minidump\030717-25453-01.dmp
2017-03-07 17:59 - 2017-03-07 17:59 - 00000000 ____D C:\Users\jakeg\AppData\Local\CAPCOM
2017-03-07 17:58 - 2017-03-07 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Marvel vs. Capcom 3
2017-03-07 17:27 - 2017-03-07 17:27 - 00000000 ____D C:\Users\jakeg\AppData\Local\THQ
2017-03-07 17:25 - 2017-03-07 17:25 - 00000000 ____D C:\WINDOWS\System32\Tasks\saints row 2
2017-03-07 05:10 - 2017-03-07 05:10 - 00000000 ____D C:\WINDOWS\System32\Tasks\break time!
2017-03-07 05:10 - 2017-03-07 05:10 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Space Toast Games
2017-03-07 04:44 - 2017-03-07 04:44 - 00000000 ____D C:\WINDOWS\LastGood
2017-03-07 04:43 - 2017-03-07 04:43 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\matzman666
2017-03-06 04:51 - 2017-03-06 04:51 - 00000000 ____D C:\WINDOWS\System32\Tasks\my summer car
2017-03-06 04:34 - 2017-03-06 04:34 - 00945664 _____ (VIA Soft) C:\Users\jakeg\Desktop\UnityAssetsExplorer.exe
2017-03-05 18:20 - 2017-03-05 18:20 - 00000000 ____D C:\Program Files\OpenVR-AdvancedSettings
2017-03-05 18:19 - 2017-03-05 18:20 - 24273669 _____ C:\Users\jakeg\Downloads\OpenVR-AdvancedSettings-Installer-v2.3.exe
2017-03-05 17:22 - 2017-03-05 17:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\steamvrperformancetest
2017-03-05 01:37 - 2017-03-05 01:37 - 00000000 ____D C:\WINDOWS\System32\Tasks\broomball vr
2017-03-05 00:29 - 2017-03-05 00:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\wakeup
2017-03-05 00:29 - 2017-03-05 00:29 - 00000000 ____D C:\Users\jakeg\AppData\Local\WakeUpProject
2017-03-04 22:21 - 2017-03-04 22:21 - 00000000 ____D C:\WINDOWS\System32\Tasks\9347a360-c6ea-4e35-aaf1-9fab4f41cb79
2017-03-04 22:17 - 2017-03-04 22:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\inmind
2017-03-04 22:17 - 2017-03-04 22:17 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Nival VR
2017-03-04 20:29 - 2017-03-04 20:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\pcars
2017-03-04 18:58 - 2017-03-04 18:58 - 00000000 ____D C:\Users\jakeg\AppData\Local\Pavlov
2017-03-04 18:57 - 2017-03-04 18:58 - 00000000 ____D C:\WINDOWS\System32\Tasks\pavlovvr
2017-03-04 18:44 - 2017-03-04 18:44 - 00000000 ____D C:\WINDOWS\System32\Tasks\drunkn bar fight
2017-03-04 18:11 - 2017-03-04 18:11 - 00000000 ____D C:\WINDOWS\System32\Tasks\the cubicle
2017-03-04 02:01 - 2017-03-04 02:01 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Free Lives
2017-03-04 02:00 - 2017-03-04 02:00 - 00000000 ____D C:\Users\jakeg\Desktop\GORN
2017-03-04 01:58 - 2017-03-04 01:59 - 142284460 _____ C:\Users\jakeg\Downloads\GORN.zip
2017-03-03 23:23 - 2017-03-03 23:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\runtime
2017-03-01 19:39 - 2017-03-01 19:39 - 00016830 _____ C:\WINDOWS\System32\Tasks\minecraftlauncher
2017-03-01 05:10 - 2017-03-01 05:11 - 00000000 ____D C:\Users\jakeg\AppData\Local\FindIp
2017-03-01 04:43 - 2017-03-01 04:43 - 00016818 _____ C:\WINDOWS\System32\Tasks\x64launcher
2017-03-01 04:43 - 2017-03-01 04:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\nvidia vr funhouse
2017-03-01 04:36 - 2017-03-01 04:36 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\4iLab
2017-03-01 03:57 - 2017-03-01 03:58 - 00000000 ____D C:\Users\jakeg\Documents\SportsBarVR
2017-03-01 03:56 - 2017-03-01 03:56 - 00000000 ____D C:\Users\jakeg\AppData\Local\PoolNationVR
2017-03-01 00:15 - 2017-03-01 00:15 - 00000844 _____ C:\Users\Public\Desktop\Dolphin VR.lnk
2017-02-28 23:40 - 2017-02-28 23:40 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\SLR
2017-02-28 23:25 - 2017-02-28 23:25 - 00003248 _____ C:\WINDOWS\System32\Tasks\{B4A3957B-F72D-4631-9143-F0F9F3857609}
2017-02-28 23:13 - 2017-02-28 23:13 - 00000000 ____D C:\Users\Default\WindowsUpdate
2017-02-28 23:13 - 2017-02-28 23:13 - 00000000 ____D C:\Users\Default\windiskutility
2017-02-28 06:44 - 2017-02-28 06:54 - 05251682 _____ C:\Users\jakeg\Downloads\89203_VRBANGERS_naughty_dreams_UHD_180x180_3dh.mp4.part
2017-02-28 04:40 - 2017-02-28 04:40 - 00497316 _____ C:\WINDOWS\Minidump\022817-27375-01.dmp
2017-02-28 04:15 - 2017-02-28 04:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\ark
2017-02-27 19:13 - 2017-02-27 19:13 - 00000000 ____D C:\Users\jakeg\ansel
2017-02-27 19:02 - 2017-02-27 19:02 - 00000000 ____D C:\Users\jakeg\AppData\Local\Gaijin
2017-02-27 19:01 - 2017-02-28 05:21 - 00000000 ____D C:\WINDOWS\System32\Tasks\war thunder
2017-02-27 19:01 - 2017-02-27 19:01 - 00000000 ____D C:\ProgramData\Gaijin
2017-02-27 16:15 - 2017-02-27 16:15 - 00016824 _____ C:\WINDOWS\System32\Tasks\systemsettings
2017-02-27 06:50 - 2017-02-27 06:50 - 00000000 ____D C:\WINDOWS\System32\Tasks\nevrosa prelude
2017-02-27 06:50 - 2017-02-27 06:50 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\GexagonVR
2017-02-27 06:43 - 2017-02-27 06:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\acan's call
2017-02-27 06:43 - 2017-02-27 06:43 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Cyberith
2017-02-27 06:02 - 2017-03-07 06:16 - 00000000 ____D C:\WINDOWS\System32\Tasks\h3vr
2017-02-27 05:45 - 2017-03-02 00:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\updater
2017-02-27 05:45 - 2017-02-27 05:46 - 00000000 ____D C:\WINDOWS\System32\Tasks\cef
2017-02-27 05:45 - 2017-02-27 05:45 - 00016836 _____ C:\WINDOWS\System32\Tasks\76f3774w1994G186-dll
2017-02-27 05:44 - 2017-03-02 00:45 - 00000000 ____D C:\WINDOWS\System32\Tasks\pcclient
2017-02-27 05:43 - 2017-02-27 05:43 - 00028751 _____ C:\ProgramData\agent.1488192165.bdinstall.bin
2017-02-27 00:30 - 2017-02-27 00:30 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Outer Brain Studios
2017-02-26 23:54 - 2017-02-26 23:54 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Aldin
2017-02-26 22:23 - 2017-02-26 22:23 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Sunshine
2017-02-26 19:27 - 2017-02-26 19:27 - 00001199 _____ C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free.lnk
2017-02-26 19:27 - 2017-02-26 19:27 - 00000000 ____D C:\Users\jakeg\AppData\Local\Bitdefender Antivirus Free
2017-02-26 19:18 - 2016-03-14 22:04 - 00023672 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2017-02-26 19:16 - 2017-02-26 19:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free
2017-02-26 19:16 - 2017-02-26 19:16 - 00000000 ____D C:\ProgramData\Bitdefender
2017-02-26 18:44 - 2016-12-13 18:18 - 00342016 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\edrsensor.sys
2017-02-26 18:44 - 2016-10-29 09:54 - 00182944 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2017-02-26 18:43 - 2016-09-20 04:17 - 01605376 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2017-02-26 18:43 - 2016-09-20 04:16 - 00878072 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys
2017-02-26 18:36 - 2016-06-22 15:40 - 00520032 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2017-02-26 18:35 - 2017-03-10 05:27 - 00000000 ____D C:\Program Files\Bitdefender Antivirus Free
2017-02-26 18:35 - 2017-02-26 18:35 - 00003794 _____ C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-02-26 18:35 - 2017-02-26 18:35 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\QuickScan
2017-02-26 18:33 - 2017-03-10 04:47 - 00000000 ____D C:\Program Files\Bitdefender Agent
2017-02-26 18:33 - 2017-02-26 18:33 - 08459976 _____ C:\Users\jakeg\Downloads\bitdefender_online.exe
2017-02-26 18:33 - 2017-02-26 18:33 - 00047225 _____ C:\ProgramData\agent.1488152019.bdinstall.bin
2017-02-26 18:33 - 2017-02-26 18:33 - 00000000 ____D C:\ProgramData\Bitdefender Agent
2017-02-26 18:33 - 2017-02-26 18:33 - 00000000 ____D C:\ProgramData\BDLogging
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnonymizerGadget
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\AppData\Local\AnonymizerLauncher
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\.proxycheck
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\.AnonymizerLauncher
2017-02-26 18:14 - 2017-02-28 04:06 - 00000000 ____D C:\Users\jakeg\AppData\Local\AppTrailers
2017-02-26 18:13 - 2017-02-26 18:13 - 00016828 _____ C:\WINDOWS\System32\Tasks\76f3774w1994G186
2017-02-26 18:13 - 2017-02-26 18:13 - 00002048 _____ C:\Users\jakeg\AppData\Local\uninstallro.exe
2017-02-26 18:13 - 2017-02-26 18:13 - 00000000 ___HD C:\ProgramData\76f3774w1994G186
2017-02-26 18:13 - 2017-02-26 18:13 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\InstantSupport
2017-02-26 18:12 - 2017-03-01 05:10 - 00000000 ____D C:\ProgramData\vCore
2017-02-26 18:12 - 2017-02-26 18:13 - 00000000 ____D C:\Program Files (x86)\PreparedFolder
2017-02-26 17:59 - 2017-02-26 18:00 - 09742576 _____ C:\Users\jakeg\Downloads\PlayClubVR_0.9.6.zip
2017-02-26 01:22 - 2017-02-26 01:22 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\KeithKurby
2017-02-25 23:44 - 2017-02-25 23:44 - 00000000 ____D C:\Users\jakeg\AppData\Local\EverestVR
2017-02-25 23:42 - 2017-02-25 23:42 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\HTC
2017-02-25 23:42 - 2017-02-25 23:42 - 00000000 ____D C:\ProgramData\boost_interprocess
2017-02-25 22:39 - 2017-02-25 22:39 - 00000000 ____D C:\Users\jakeg\AppData\Local\Lift
2017-02-25 22:12 - 2017-02-25 22:12 - 00000000 ____D C:\Users\jakeg\AppData\Local\TouchNUX
2017-02-25 22:11 - 2017-02-25 22:11 - 00000000 ____D C:\Users\jakeg\AppData\Local\Dreamdeck
2017-02-25 22:10 - 2017-02-25 22:11 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Revive
2017-02-25 22:10 - 2017-02-25 22:10 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revive
2017-02-25 22:06 - 2017-02-25 22:06 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\OculusClient
2017-02-25 22:05 - 2017-02-25 22:06 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Oculus
2017-02-25 22:05 - 2017-02-25 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Oculus
2017-02-25 22:01 - 2017-02-25 22:01 - 00000020 ___SH C:\Users\OVRLibraryService\ntuser.ini
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\My Documents
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\Documents\My Videos
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\Documents\My Pictures
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\Documents\My Music
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 ____D C:\Users\OVRLibraryService
2017-02-25 22:00 - 2017-02-28 23:11 - 00000000 ____D C:\Program Files\Oculus
2017-02-25 21:31 - 2017-02-25 21:31 - 49549402 _____ C:\Users\jakeg\Downloads\ReviveInstaller.exe
2017-02-25 21:30 - 2017-03-10 04:47 - 00000000 ____D C:\Users\jakeg\AppData\Local\Oculus
2017-02-25 21:30 - 2017-02-25 21:30 - 03567912 _____ (Oculus VR, LLC) C:\Users\jakeg\Downloads\OculusSetup.exe
2017-02-25 21:27 - 2017-02-09 17:39 - 00134592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-02-25 21:22 - 2017-02-25 21:22 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2017-02-25 21:18 - 2017-02-09 21:33 - 40192056 _____ C:\WINDOWS\system32\nvcompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 35272760 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 34979384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 19007016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 14674896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 11122728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 11019704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 09305984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 08990072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 03168192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 02717752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 01983424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437866.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 01589696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437866.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 01052096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00959424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00946456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00944224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00910784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00721952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00719856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00687224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00618416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00609728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00605120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00576192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00573448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00499136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00483384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00447984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-02-25 21:09 - 2017-02-25 21:09 - 00000030 _____ C:\Users\jakeg\AppData\Roaming\alsoft.ini
2017-02-25 21:07 - 2017-02-25 21:07 - 02277272 _____ C:\Users\jakeg\Downloads\vivecraft-1.11.2-jrbudda-7r1-installer.exe
2017-02-25 20:19 - 2017-02-25 20:19 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Acceleroto
2017-02-25 19:37 - 2017-03-05 00:32 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\DefaultCompany
2017-02-25 19:05 - 2017-02-25 19:05 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Whirligig
2017-02-25 19:05 - 2017-02-25 19:05 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\phileday
2017-02-25 17:57 - 2017-02-25 17:57 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Cloudhead Games LTD
2017-02-25 17:43 - 2017-02-25 17:43 - 00000000 ____D C:\Users\jakeg\AppData\Local\Google
2017-02-25 17:43 - 2017-02-25 17:43 - 00000000 ____D C:\ProgramData\Google
2017-02-25 16:19 - 2017-02-25 16:19 - 00000000 ____D C:\Users\jakeg\Documents\Rec Room
2017-02-25 16:05 - 2017-02-25 16:05 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\AgainstGravity
2017-02-25 16:01 - 2017-02-25 16:01 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\RUST LTD
2017-02-25 15:45 - 2017-02-28 04:15 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Valve
2017-02-25 15:20 - 2017-02-25 15:20 - 00000000 ____D C:\Users\jakeg\AppData\Local\VRFunhouse
2017-02-25 15:13 - 2017-02-25 15:13 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Bigscreen, Inc_
2017-02-25 15:13 - 2017-02-25 15:13 - 00000000 ____D C:\Users\jakeg\AppData\Local\Crashpad
2017-02-25 15:13 - 2017-02-25 15:13 - 00000000 ____D C:\Users\jakeg\AppData\Local\Bigscreen
2017-02-25 14:27 - 2017-02-25 17:30 - 00000000 ____D C:\Users\jakeg\AppData\Local\ViveDashboard
2017-02-25 14:27 - 2017-02-25 14:27 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\HTC
2017-02-25 11:30 - 2017-02-25 11:30 - 05652480 _____ C:\Users\jakeg\Downloads\Tilt_Brush_v9_0_VR.iso
2017-02-25 11:30 - 2017-02-25 11:30 - 05652480 _____ C:\Users\jakeg\Downloads\Tilt_Brush_v9_0_VR(1).iso
2017-02-24 06:57 - 2017-03-10 04:49 - 00000000 ____D C:\Users\jakeg\AppData\Local\HTC_Neo
2017-02-24 06:40 - 2017-03-01 00:14 - 00000000 ____D C:\Users\jakeg\Desktop\VR
2017-02-24 06:33 - 2017-02-24 06:33 - 00000000 ____D C:\Program Files\Common Files\HTC
2017-02-24 06:33 - 2016-09-24 17:24 - 00108608 _____ (Dokan Project) C:\WINDOWS\system32\Drivers\dokan1.sys
2017-02-24 06:10 - 2017-02-24 06:56 - 00000000 ____D C:\Users\jakeg\AppData\Local\HTC
2017-02-24 06:10 - 2017-02-24 06:33 - 00000000 ____D C:\ProgramData\HTC
2017-02-24 06:10 - 2017-02-24 06:10 - 00000000 ____D C:\Program Files\HTC Account
2017-02-24 06:09 - 2017-03-07 04:44 - 00066184 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwusb.sys
2017-02-24 06:09 - 2017-02-24 06:09 - 00122112 _____ (Broadcom Corporation.) C:\WINDOWS\system32\btw_ci.dll
2017-02-24 06:09 - 2017-02-24 06:09 - 00109252 _____ C:\WINDOWS\system32\Drivers\BCM20703A1_00[removed].0481.hex
2017-02-24 06:09 - 2017-02-24 06:09 - 00073984 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwsecfl.sys
2017-02-24 06:07 - 2017-03-02 00:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIVE Software
2017-02-24 06:07 - 2017-02-24 06:52 - 00000000 ____D C:\Program Files (x86)\ViveSetup
2017-02-24 06:06 - 2017-02-24 06:06 - 00000000 ____D C:\Users\jakeg\AppData\Local\VIVE_Setup
2017-02-24 05:59 - 2017-02-24 06:02 - 64443232 _____ (HTC Corp.) C:\Users\jakeg\Downloads\ViveSetup.exe
2017-02-24 05:32 - 2017-02-24 05:32 - 00001251 _____ C:\Users\Public\Desktop\ROCCAT Power-Grid.lnk
2017-02-24 05:32 - 2017-02-24 05:32 - 00000000 ____D C:\Users\jakeg\Documents\ROCCAT
2017-02-24 05:32 - 2017-02-24 05:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT
2017-02-24 05:31 - 2017-02-24 05:31 - 00000000 ____D C:\Program Files (x86)\ROCCAT
2017-02-24 05:29 - 2017-02-24 05:30 - 40787128 _____ (ROCCAT GmbH ) C:\Users\jakeg\Downloads\ROCCAT_Power_Grid_setup-0461.exe
2017-02-19 17:24 - 2017-03-04 00:21 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\vlc
2017-02-19 17:23 - 2017-02-19 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-02-19 17:23 - 2017-02-19 17:23 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2017-02-19 17:21 - 2017-02-19 17:21 - 30533688 _____ C:\Users\jakeg\Downloads\vlc-2.2.4-win32.exe
2017-02-19 06:04 - 2017-02-19 06:04 - 00000000 ____D C:\Users\jakeg\AppData\Local\Kona
2017-02-16 17:00 - 2017-02-16 17:00 - 00000545 _____ C:\Users\Public\Desktop\Fallout 4.lnk
2017-02-16 05:42 - 2017-02-16 05:59 - 00000000 ____D C:\Users\jakeg\Documents\Lords of the Fallen
2017-02-16 00:24 - 2017-02-16 00:24 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\SUPERHOT_Team
2017-02-16 00:24 - 2017-02-16 00:24 - 00000000 ____D C:\Users\jakeg\AppData\Local\SUPERHOT_Sp_z_o.o
2017-02-15 23:54 - 2017-02-15 23:54 - 00367750 _____ C:\Users\jakeg\Downloads\8D093136AC0D2183A850FC9D2AA69A3349D74739.torrent
2017-02-15 23:13 - 2017-02-15 23:14 - 14710036 _____ C:\Users\jakeg\Downloads\Star_Wars_Battlefront_Graphic_Mod__Without_Movie_Border_.rar
2017-02-14 18:58 - 2017-02-15 23:17 - 00000000 ____D C:\Users\jakeg\Documents\STAR WARS Battlefront
2017-02-14 18:42 - 2017-02-14 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront
2017-02-14 17:41 - 2017-02-14 17:41 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Unknown Worlds
2017-02-13 20:46 - 2017-02-13 20:46 - 00001098 _____ C:\Users\jakeg\Downloads\MagicLauncher_1.3.4.exe - Shortcut (2).lnk
2017-02-13 20:45 - 2017-02-13 20:45 - 00397996 _____ (hxxp://magiclauncher.com) C:\Users\jakeg\Downloads\MagicLauncher_1.3.4.exe
2017-02-13 20:23 - 2017-02-13 20:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dovetail Games - Flight
2017-02-13 18:59 - 2017-03-04 22:54 - 00000000 ____D C:\Users\jakeg\Documents\American Truck Simulator
2017-02-12 18:58 - 2017-02-12 18:58 - 00003483 _____ C:\Users\jakeg\AppData\Local\recently-used.xbel
2017-02-11 23:58 - 2017-02-11 23:58 - 00692743 _____ C:\Users\jakeg\Downloads\1224_desktop.rar
2017-02-10 19:12 - 2017-02-10 19:12 - 00000000 ____D C:\Users\jakeg\Desktop\MSCeditor1.02
2017-02-09 15:19 - 2017-02-09 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 3 Complete Collection
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-10 05:18 - 2016-02-18 19:30 - 00000000 ____D C:\Users\jakeg\AppData\Local\CrashDumps
2017-03-10 05:12 - 2016-08-05 19:54 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-03-10 05:00 - 2016-02-17 22:16 - 00000000 ____D C:\Program Files (x86)\Steam
2017-03-10 04:56 - 2016-11-20 23:08 - 00000000 ____D C:\Users\jakeg\Desktop\Everything
2017-03-10 04:56 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-03-10 04:54 - 2016-08-10 02:56 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-03-10 04:54 - 2016-08-05 19:56 - 00000000 ____D C:\ProgramData\NVIDIA
2017-03-10 04:53 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-03-10 04:51 - 2017-01-28 04:08 - 00003204 _____ C:\WINDOWS\System32\Tasks\FRAPS
2017-03-10 04:51 - 2017-01-28 04:07 - 00000000 ____D C:\Fraps
2017-03-10 04:51 - 2016-08-26 14:43 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2017-03-10 04:48 - 2016-02-17 16:41 - 00000000 ___RD C:\Users\jakeg\OneDrive
2017-03-10 04:46 - 2016-08-05 20:00 - 00000000 ____D C:\Users\jakeg
2017-03-09 04:36 - 2016-08-10 02:56 - 00003142 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2017-03-09 01:15 - 2016-02-20 19:27 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\.minecraft
2017-03-09 01:00 - 2016-11-20 13:35 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Mozilla
2017-03-09 00:42 - 2016-07-16 06:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-03-08 05:25 - 2016-07-12 03:33 - 00000000 ____D C:\Users\jakeg\AppData\Local\Frontier_Developments
2017-03-08 05:01 - 2016-06-24 21:30 - 00000000 ____D C:\Users\jakeg\Documents\BeamNG.drive
2017-03-07 19:24 - 2016-02-18 12:07 - 00000000 ____D C:\Users\jakeg\Documents\my games
2017-03-07 19:05 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\Registration
2017-03-07 19:01 - 2016-10-29 03:53 - 00000000 ____D C:\WINDOWS\Minidump
2017-03-07 19:00 - 2016-06-29 17:20 - 913346354 _____ C:\WINDOWS\MEMORY.DMP
2017-03-07 06:16 - 2016-01-27 08:57 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-07 04:44 - 2016-07-16 06:45 - 00000000 ____D C:\WINDOWS\INF
2017-03-06 04:22 - 2015-07-20 12:07 - 01836844 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-03-05 18:22 - 2016-07-16 01:04 - 01572864 _____ C:\WINDOWS\system32\config\BBI
2017-03-05 00:29 - 2016-11-12 00:43 - 00466456 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2017-03-05 00:29 - 2016-11-12 00:43 - 00444952 _____ (Creative Labs) C:\WINDOWS\SysWOW64\wrap_oal.dll
2017-03-05 00:29 - 2016-11-12 00:43 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2017-03-05 00:29 - 2016-11-12 00:43 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\OpenAL32.dll
2017-03-04 18:58 - 2016-03-02 12:28 - 00000000 ____D C:\Users\jakeg\AppData\Local\UnrealEngine
2017-03-04 03:55 - 2016-02-17 23:14 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-03-01 05:16 - 2016-11-13 02:11 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\uTorrent
2017-03-01 05:16 - 2016-02-21 17:37 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\uTorrent
2017-03-01 00:16 - 2016-03-14 03:06 - 00000000 ____D C:\Program Files\Dolphin
2017-02-27 19:02 - 2016-12-13 05:07 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-02-27 19:01 - 2016-02-17 16:41 - 00002370 _____ C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-02-26 19:31 - 2016-01-27 08:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-02-26 19:29 - 2016-08-05 19:53 - 00197720 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-02-26 18:12 - 2016-04-05 15:47 - 00000000 ____D C:\Users\jakeg\AppData\Local\Downloaded Installations
2017-02-26 04:50 - 2017-02-01 04:22 - 00000000 ____D C:\Users\jakeg\Documents\Project CARS
2017-02-25 21:57 - 2016-03-14 04:09 - 00000000 ____D C:\Users\jakeg\Documents\Dolphin Emulator
2017-02-25 21:31 - 2016-08-05 19:56 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-02-25 21:27 - 2016-03-07 22:32 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-02-24 05:52 - 2016-01-27 08:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-02-24 05:50 - 2016-02-17 16:39 - 00000000 ____D C:\Users\jakeg\AppData\Local\Packages
2017-02-24 05:35 - 2016-03-29 18:16 - 00000000 ____D C:\Temp
2017-02-22 23:46 - 2016-07-16 06:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-02-22 23:46 - 2016-02-18 15:36 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-02-22 23:43 - 2016-02-18 15:36 - 138020592 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-02-19 18:59 - 2016-04-22 15:52 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Warner Bros. Interactive Entertainment
2017-02-19 06:57 - 2016-03-14 03:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin
2017-02-19 05:45 - 2016-02-26 07:22 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Origin
2017-02-19 05:45 - 2016-02-26 07:15 - 00000000 ____D C:\ProgramData\Origin
2017-02-16 20:20 - 2016-03-16 02:53 - 00000000 ____D C:\Users\jakeg\AppData\Local\Fallout4
2017-02-14 16:56 - 2016-02-26 07:14 - 00000000 ____D C:\Program Files (x86)\Origin
2017-02-13 20:54 - 2016-02-20 19:23 - 00000000 ____D C:\Program Files (x86)\Minecraft
2017-02-13 20:38 - 2016-03-11 01:23 - 00000000 ____D C:\Users\jakeg\AppData\Local\ElevatedDiagnostics
2017-02-12 18:58 - 2016-02-19 17:10 - 00000000 ____D C:\Users\jakeg\AppData\Local\gtk-2.0
2017-02-12 18:58 - 2016-02-19 17:08 - 00000000 ____D C:\Users\jakeg\.gimp-2.8
2017-02-12 17:50 - 2016-03-16 00:59 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\SmartSteamEmu
2017-02-10 10:50 - 2017-01-29 05:13 - 00000000 ____D C:\Users\jakeg\AppData\Local\BlackDesertOnline
2017-02-10 00:29 - 2016-11-28 14:58 - 00000000 ____D C:\BethINI
2017-02-09 21:33 - 2017-01-26 00:19 - 28242488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-02-09 21:33 - 2017-01-26 00:19 - 00991288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-02-09 21:33 - 2016-11-28 14:44 - 00043556 _____ C:\WINDOWS\system32\nvinfo.pb
2017-02-09 21:33 - 2016-06-28 02:33 - 04078008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-02-09 21:33 - 2016-06-28 02:33 - 03597128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-02-09 18:13 - 2016-10-13 16:31 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-02-09 17:57 - 2016-08-05 19:56 - 07791217 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-02-09 17:57 - 2016-08-05 19:56 - 06403640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 02477504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 01764408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00548288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00393784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00083512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00071224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-02-09 11:32 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-02-08 13:42 - 2016-12-15 15:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-02-08 13:42 - 2016-02-18 01:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
==================== Files in the root of some directories =======
2017-02-25 21:09 - 2017-02-25 21:09 - 0000030 _____ () C:\Users\jakeg\AppData\Roaming\alsoft.ini
2017-02-12 18:58 - 2017-02-12 18:58 - 0003483 _____ () C:\Users\jakeg\AppData\Local\recently-used.xbel
2016-02-19 01:34 - 2017-01-19 22:55 - 0007609 _____ () C:\Users\jakeg\AppData\Local\resmon.resmoncfg
2017-02-26 18:13 - 2017-02-26 18:13 - 0002048 _____ () C:\Users\jakeg\AppData\Local\uninstallro.exe
2017-02-26 18:33 - 2017-02-26 18:33 - 0047225 _____ () C:\ProgramData\agent.1488152019.bdinstall.bin
2017-02-27 05:43 - 2017-02-27 05:43 - 0028751 _____ () C:\ProgramData\agent.1488192165.bdinstall.bin
2016-08-05 19:55 - 2016-08-05 19:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-12-29 17:44 - 2017-01-25 23:53 - 0016772 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-29 17:44 - 2017-01-18 14:36 - 0004188 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
Files to move or delete:
====================
C:\Users\jakeg\Superior Installer.exe
Some files in TEMP:
====================
2017-03-01 05:10 - 2017-03-01 05:10 - 2037434 _____ ( ) C:\Users\jakeg\AppData\Local\Temp\4f3d4284-fe67-11e6-9c4f-408d5c74bb85.exe
2017-01-30 04:30 - 2017-01-30 04:30 - 0000512 _____ () C:\Users\jakeg\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 1138176 _____ () C:\Users\jakeg\AppData\Local\Temp\AMDCleanupUtility.exe
2017-02-26 18:13 - 2017-02-26 18:13 - 0889024 _____ () C:\Users\jakeg\AppData\Local\Temp\AnonymizerGadgetSetup.1.000.1680.exe
2017-02-26 18:12 - 2017-02-26 18:13 - 29136048 _____ (AppTrailers) C:\Users\jakeg\AppData\Local\Temp\AppTrailers.9.1.10amt.exe
2017-01-30 04:31 - 2017-01-30 04:31 - 0000069 _____ () C:\Users\jakeg\AppData\Local\Temp\cfc6e1877a0eccbf5f7c8d5a2a656bff.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 0232960 _____ () C:\Users\jakeg\AppData\Local\Temp\Cleanup.dll
2017-02-25 11:31 - 2017-02-25 11:31 - 0065535 _____ () C:\Users\jakeg\AppData\Local\Temp\component.exe
2016-08-21 17:24 - 2016-08-21 17:24 - 0065536 _____ (Windows (R) Server 2003 DDK provider) C:\Users\jakeg\AppData\Local\Temp\ddu.exe
2016-08-21 17:24 - 2016-08-21 17:24 - 0414152 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\difxapi.dll
2016-10-19 13:16 - 2016-10-19 13:16 - 0204800 _____ (Sony DADC Austria AG) C:\Users\jakeg\AppData\Local\Temp\drm_dyndata_7380012.dll
2016-12-01 22:49 - 2017-01-21 03:27 - 0204800 _____ (Sony DADC Austria AG) C:\Users\jakeg\AppData\Local\Temp\drm_dyndata_7380014.dll
2017-02-26 18:15 - 2017-02-26 18:15 - 0294912 _____ () C:\Users\jakeg\AppData\Local\Temp\gC84D.tmp.exe
2017-02-26 18:15 - 2017-02-26 18:15 - 0191488 _____ () C:\Users\jakeg\AppData\Local\Temp\gC928.tmp.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 0387036 _____ ( ) C:\Users\jakeg\AppData\Local\Temp\global_installer.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 2387665 _____ () C:\Users\jakeg\AppData\Local\Temp\Install.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 0098384 _____ (Installer Technology © 2015) C:\Users\jakeg\AppData\Local\Temp\installer.exe
2017-01-28 03:48 - 2017-01-28 03:48 - 0549376 _____ () C:\Users\jakeg\AppData\Local\Temp\is-JVNML.tmpsetup.exe
2016-08-21 17:24 - 2016-08-21 17:24 - 0516096 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\msvcm80.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 1061376 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\msvcp80.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 0796672 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\msvcr80.dll
2017-02-26 18:12 - 2017-02-26 18:12 - 0380928 _____ (Oracle ) C:\Users\jakeg\AppData\Local\Temp\netstream.exe
2016-08-14 14:46 - 2016-08-14 14:46 - 6359496 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.61.23.exe
2016-10-31 05:43 - 2016-10-31 05:43 - 6449992 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.63.5.exe
2016-11-12 01:37 - 2016-11-12 01:38 - 6452312 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.63.7.exe
2016-11-17 23:37 - 2016-11-17 23:38 - 6453608 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.63.9.exe
2016-06-28 02:36 - 2017-01-20 09:07 - 0757240 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvSCPAPI.dll
2016-06-28 02:36 - 2017-01-20 09:07 - 0872088 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvSCPAPI64.dll
2017-01-26 00:22 - 2017-01-20 09:07 - 0390072 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvStereoApiI.dll
2016-08-22 21:17 - 2017-01-20 09:07 - 0352704 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvStInst.exe
2016-10-13 16:31 - 2016-11-17 08:45 - 1135552 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\NvTelemetry.dll
2016-10-13 16:31 - 2016-12-12 18:36 - 0253376 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\NvTelemetryAPI32.dll
2016-10-13 16:31 - 2016-12-12 18:36 - 0334272 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\NvTelemetryAPI64.dll
2011-11-03 09:13 - 2011-11-03 09:13 - 1786688 _____ () C:\Users\jakeg\AppData\Local\Temp\sonarinst.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 1199825 _____ () C:\Users\jakeg\AppData\Local\Temp\unins000.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 1239469 _____ (VideoBox ) C:\Users\jakeg\AppData\Local\Temp\videobox.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-03-10 05:12
==================== End of FRST.txt ============================
As of lately, Mozilla Firefox has been completely hijacked. it will open new windows and tabs at random, even tuning the whole page into some kind of link where no matter where I click, it opens a new tab and takes me to some site. I've come here on Microsoft Edge, and so far I haven't seen any interference.
The second issue I noticed when I tried to use windows defender to scan my computer, after noticing the firefox issue. I get a window saying that windows defender is disabled due to group policy. I haven't figured out how to get it to run again. I downloaded bitdefender and that has issues running as well.
Also, I get notifications about a potential threat in my windows update folder, "windowsupdate.exe" not sure what that means, but I haven't noticed any windows updates since these issues started happening. could be that no updates have been pushed since all this. my FRST logs are as follows:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-03-2017
Ran by [removed] (administrator) on DESKTOP-PHRHDSR (10-03-2017 05:27:18)
Running from C:\Users\[removed]\Downloads
[removed]
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel(R) Corporation) C:\Program Files\Intel\BCA\pabeSvc64.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oculus VR) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
Failed to access process -> rundll32.exe
Failed to access process -> rundll32.exe
Failed to access process -> rundll32.exe
Failed to access process -> rundll32.exe
() C:\Program Files (x86)\ViveSetup\PCClient\ViveportService.exe
(HTC Corporation) C:\Program Files\HTC Account\Htc.Identity.Service.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
() C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(Oculus VR) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
(Microsoft Corporation) C:\Windows\System32\CastSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
() C:\Program Files (x86)\ViveSetup\PCClient\HTCVRMarketplaceUserContextHelper.exe
() C:\Program Files (x86)\ViveSetup\PCClient\HTCVRMarketplaceUserContextHelper.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
() C:\Program Files (x86)\ViveSetup\PCClient\web\apps\phone\nw.exe
(HTC) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\lighthouse\bin\win64\vivelink.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8495320 2015-06-23] (Realtek Semiconductor)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-06] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [WindowsUpdate] => C:\Users\Default\WindowsUpdate\WindowsUpdate.exe [27648 2017-02-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480 2016-03-20] (Oracle Corporation)
HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-03-25] (Plays.tv, LLC)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-03-25] (Raptr, Inc)
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
HKLM-x32\...\Run: [GammingApp] => C:\Program Files (x86)\MSI\Gaming APP\SGamingApp.exe --min
HKLM-x32\...\Run: [HTC Store User Content Helper] => C:\Program Files (x86)\ViveSetup\PCClient\HTCVRMarketplaceUserContextHelper.exe [112464 2017-02-24] ()
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-03-09] (Valve Corporation)
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [Spotify Web Helper] => C:\Users\jakeg\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524336 2016-02-18] (Spotify Ltd)
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [GameJoltClient] => C:\Users\jakeg\AppData\Local\GameJoltClient\GameJoltClient.exe [46705152 2016-03-10] ()
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [VivePCClient] => C:\Program Files (x86)\ViveSetup\PCClient\Vive.exe [3613520 2017-02-24] (HTC Corp.)
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\...\Run: [Gaijin.Net Agent] => "C:\Users\jakeg\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe"
HKU\S-1-5-18\...\Run: [script_fcbd] => C:\Users\jakeg\Far Cry 3 Blood Dragon\fcbd.bat [307 2016-12-07] ()
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\start_swu.lnk [2017-01-30]
ShortcutTarget: start_swu.lnk -> C:\Program Files\devnullnull2017\SWU\start.vbs ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{35e8f816-6cc9-49ba-8ec3-fb8fff532b1d}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e60e1757-83b3-407b-bf50-9bfddfddc44c}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f51feabd-2c2c-42a4-b229-b0629e97d160}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2362767239-1170048716-167344883-1002\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_77\bin\ssv.dll [2016-03-29] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-29] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-03-29] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-29] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: u7rl4wfp.default
FF ProfilePath: C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default [2017-03-09]
FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\u7rl4wfp.default -> Bing
FF Homepage: Mozilla\Firefox\Profiles\u7rl4wfp.default -> hxxp://www.nexusmods.com/skyrimspecialedition/?
FF Extension: (Adguard AdBlocker) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-01-13]
FF Extension: (Fast search) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\amcontextmenu@loucypher [2017-02-25]
FF Extension: (MEGA) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-03-09]
FF Extension: (Reddit Enhancement Suite) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-02-19]
FF Extension: (uBlock Origin) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\[removed] [2017-03-04]
FF Extension: (Video DownloadHelper) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-01-01]
FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\jakeg\AppData\Roaming\Mozilla\Firefox\Profiles\u7rl4wfp.default\features\{01cf2deb-67a4-4cf5-ac22-4c29fa9423d9}\[removed] [2017-03-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-28] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [No File]
FF Plugin: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-29] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-29] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-28] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [No File]
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [No File]
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-29] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-29] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-09] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-09] (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin HKU\S-1-5-21-2362767239-1170048716-167344883-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2016-12-17] ()
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-06-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [136616 2011-10-13] ()
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-07-22] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-07-22] () [File not signed]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1465352 2017-01-14] ()
S2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [4646440 2015-09-14] (Binary Fortress Software)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [395024 2016-12-27] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-08-11] (Futuremark)
R2 HTC Account Service; C:\Program Files\HTC Account\Htc.Identity.Service.exe [20712 2016-12-15] (HTC Corporation)
R2 IntelBCAsvc; C:\Program Files\Intel\BCA\pabeSvc64.exe [3026584 2016-05-06] (Intel(R) Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-09] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-01-20] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2017-02-14] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2184208 2017-02-14] (Electronic Arts)
S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [185640 2017-02-24] (Oculus VR, LLC)
R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [474064 2017-02-24] (Oculus VR)
S2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-03-25] (Plays.tv, LLC)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1100392 2016-10-28] (Bitdefender)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [908256 2016-07-22] (McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [15736 2016-07-22] (McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2016-07-22] (McAfee, Inc.)
R2 Viveport; C:\Program Files (x86)\ViveSetup\PCClient\ViveportService.exe [72016 2017-02-24] ()
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2016-11-30] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2016-11-30] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S3 iPod Service; "C:\Program Files\iPod\bin\iPodService.exe" [X]
S2 MSI_ActiveX_Service; "C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe" [X]
S2 NVIDIA Wireless Controller Service; "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe" [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.)
R2 AODDriver4.1; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [55936 2011-10-13] (Advanced Micro Devices)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-07-22] ()
R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [1605376 2016-09-20] (BitDefender)
R3 avckf; C:\WINDOWS\System32\DRIVERS\avckf.sys [878072 2016-09-20] (BitDefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [23672 2016-03-14] (Bitdefender)
R1 bdfwfpf; C:\Program Files\Bitdefender Antivirus Free\bdfwfpf.sys [127312 2016-02-22] (BitDefender LLC)
R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [66184 2017-03-07] (Broadcom Corporation.)
R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [108608 2016-09-24] (Dokan Project)
S3 edrsensor; C:\WINDOWS\System32\DRIVERS\edrsensor.sys [342016 2016-12-13] (BitDefender S.R.L. Bucharest, ROMANIA)
S3 GVTDrv64; C:\WINDOWS\GVTDrv64.sys [30528 2016-10-23] ()
R0 gzflt; C:\WINDOWS\System32\drivers\gzflt.sys [182944 2016-10-29] (BitDefender LLC)
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
S3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2013-07-02] (ASUSTeK Computer Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 NTIOLib_MB; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [13808 2014-03-13] (MSI)
S3 NVFLASH; C:\WINDOWS\system32\drivers\nvflash.sys [15648 2014-01-06] ()
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0cc477a6fec64d8c\nvlddmkm.sys [14516664 2017-02-10] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-01-20] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46016 2017-01-20] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13512 2015-12-09] ()
R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [3042520 2014-01-16] (Realtek Semiconductor Corporation )
S3 RtlWlanu_OldIC; C:\WINDOWS\System32\drivers\rtwlanu_oldIC.sys [3814400 2016-07-16] (Realtek Semiconductor Corporation )
R0 trufos; C:\WINDOWS\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [36808 2017-01-30] (Wellbia.com Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-10 05:27 - 2017-03-10 05:28 - 00020490 _____ C:\Users\jakeg\Downloads\FRST.txt
2017-03-10 05:26 - 2017-03-10 05:27 - 00000000 ____D C:\FRST
2017-03-10 05:26 - 2017-03-10 05:26 - 02423808 _____ (Farbar) C:\Users\jakeg\Downloads\FRST64.exe
2017-03-10 04:48 - 2017-03-10 04:48 - 00000000 ___HD C:\OneDriveTemp
2017-03-09 00:52 - 2017-03-09 00:52 - 02025886 _____ C:\Users\jakeg\Downloads\vivecraft-1.7.10-jrbudda-38pre-installer.exe
2017-03-09 00:42 - 2017-03-09 00:42 - 03378021 _____ C:\Users\jakeg\Downloads\forge-1.7.10-10.13.4.1614-1.7.10-installer.jar
2017-03-07 19:01 - 2017-03-07 19:02 - 00547556 _____ C:\WINDOWS\Minidump\030717-25453-01.dmp
2017-03-07 17:59 - 2017-03-07 17:59 - 00000000 ____D C:\Users\jakeg\AppData\Local\CAPCOM
2017-03-07 17:58 - 2017-03-07 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Marvel vs. Capcom 3
2017-03-07 17:27 - 2017-03-07 17:27 - 00000000 ____D C:\Users\jakeg\AppData\Local\THQ
2017-03-07 17:25 - 2017-03-07 17:25 - 00000000 ____D C:\WINDOWS\System32\Tasks\saints row 2
2017-03-07 05:10 - 2017-03-07 05:10 - 00000000 ____D C:\WINDOWS\System32\Tasks\break time!
2017-03-07 05:10 - 2017-03-07 05:10 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Space Toast Games
2017-03-07 04:44 - 2017-03-07 04:44 - 00000000 ____D C:\WINDOWS\LastGood
2017-03-07 04:43 - 2017-03-07 04:43 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\matzman666
2017-03-06 04:51 - 2017-03-06 04:51 - 00000000 ____D C:\WINDOWS\System32\Tasks\my summer car
2017-03-06 04:34 - 2017-03-06 04:34 - 00945664 _____ (VIA Soft) C:\Users\jakeg\Desktop\UnityAssetsExplorer.exe
2017-03-05 18:20 - 2017-03-05 18:20 - 00000000 ____D C:\Program Files\OpenVR-AdvancedSettings
2017-03-05 18:19 - 2017-03-05 18:20 - 24273669 _____ C:\Users\jakeg\Downloads\OpenVR-AdvancedSettings-Installer-v2.3.exe
2017-03-05 17:22 - 2017-03-05 17:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\steamvrperformancetest
2017-03-05 01:37 - 2017-03-05 01:37 - 00000000 ____D C:\WINDOWS\System32\Tasks\broomball vr
2017-03-05 00:29 - 2017-03-05 00:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\wakeup
2017-03-05 00:29 - 2017-03-05 00:29 - 00000000 ____D C:\Users\jakeg\AppData\Local\WakeUpProject
2017-03-04 22:21 - 2017-03-04 22:21 - 00000000 ____D C:\WINDOWS\System32\Tasks\9347a360-c6ea-4e35-aaf1-9fab4f41cb79
2017-03-04 22:17 - 2017-03-04 22:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\inmind
2017-03-04 22:17 - 2017-03-04 22:17 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Nival VR
2017-03-04 20:29 - 2017-03-04 20:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\pcars
2017-03-04 18:58 - 2017-03-04 18:58 - 00000000 ____D C:\Users\jakeg\AppData\Local\Pavlov
2017-03-04 18:57 - 2017-03-04 18:58 - 00000000 ____D C:\WINDOWS\System32\Tasks\pavlovvr
2017-03-04 18:44 - 2017-03-04 18:44 - 00000000 ____D C:\WINDOWS\System32\Tasks\drunkn bar fight
2017-03-04 18:11 - 2017-03-04 18:11 - 00000000 ____D C:\WINDOWS\System32\Tasks\the cubicle
2017-03-04 02:01 - 2017-03-04 02:01 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Free Lives
2017-03-04 02:00 - 2017-03-04 02:00 - 00000000 ____D C:\Users\jakeg\Desktop\GORN
2017-03-04 01:58 - 2017-03-04 01:59 - 142284460 _____ C:\Users\jakeg\Downloads\GORN.zip
2017-03-03 23:23 - 2017-03-03 23:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\runtime
2017-03-01 19:39 - 2017-03-01 19:39 - 00016830 _____ C:\WINDOWS\System32\Tasks\minecraftlauncher
2017-03-01 05:10 - 2017-03-01 05:11 - 00000000 ____D C:\Users\jakeg\AppData\Local\FindIp
2017-03-01 04:43 - 2017-03-01 04:43 - 00016818 _____ C:\WINDOWS\System32\Tasks\x64launcher
2017-03-01 04:43 - 2017-03-01 04:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\nvidia vr funhouse
2017-03-01 04:36 - 2017-03-01 04:36 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\4iLab
2017-03-01 03:57 - 2017-03-01 03:58 - 00000000 ____D C:\Users\jakeg\Documents\SportsBarVR
2017-03-01 03:56 - 2017-03-01 03:56 - 00000000 ____D C:\Users\jakeg\AppData\Local\PoolNationVR
2017-03-01 00:15 - 2017-03-01 00:15 - 00000844 _____ C:\Users\Public\Desktop\Dolphin VR.lnk
2017-02-28 23:40 - 2017-02-28 23:40 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\SLR
2017-02-28 23:25 - 2017-02-28 23:25 - 00003248 _____ C:\WINDOWS\System32\Tasks\{B4A3957B-F72D-4631-9143-F0F9F3857609}
2017-02-28 23:13 - 2017-02-28 23:13 - 00000000 ____D C:\Users\Default\WindowsUpdate
2017-02-28 23:13 - 2017-02-28 23:13 - 00000000 ____D C:\Users\Default\windiskutility
2017-02-28 06:44 - 2017-02-28 06:54 - 05251682 _____ C:\Users\jakeg\Downloads\89203_VRBANGERS_naughty_dreams_UHD_180x180_3dh.mp4.part
2017-02-28 04:40 - 2017-02-28 04:40 - 00497316 _____ C:\WINDOWS\Minidump\022817-27375-01.dmp
2017-02-28 04:15 - 2017-02-28 04:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\ark
2017-02-27 19:13 - 2017-02-27 19:13 - 00000000 ____D C:\Users\jakeg\ansel
2017-02-27 19:02 - 2017-02-27 19:02 - 00000000 ____D C:\Users\jakeg\AppData\Local\Gaijin
2017-02-27 19:01 - 2017-02-28 05:21 - 00000000 ____D C:\WINDOWS\System32\Tasks\war thunder
2017-02-27 19:01 - 2017-02-27 19:01 - 00000000 ____D C:\ProgramData\Gaijin
2017-02-27 16:15 - 2017-02-27 16:15 - 00016824 _____ C:\WINDOWS\System32\Tasks\systemsettings
2017-02-27 06:50 - 2017-02-27 06:50 - 00000000 ____D C:\WINDOWS\System32\Tasks\nevrosa prelude
2017-02-27 06:50 - 2017-02-27 06:50 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\GexagonVR
2017-02-27 06:43 - 2017-02-27 06:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\acan's call
2017-02-27 06:43 - 2017-02-27 06:43 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Cyberith
2017-02-27 06:02 - 2017-03-07 06:16 - 00000000 ____D C:\WINDOWS\System32\Tasks\h3vr
2017-02-27 05:45 - 2017-03-02 00:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\updater
2017-02-27 05:45 - 2017-02-27 05:46 - 00000000 ____D C:\WINDOWS\System32\Tasks\cef
2017-02-27 05:45 - 2017-02-27 05:45 - 00016836 _____ C:\WINDOWS\System32\Tasks\76f3774w1994G186-dll
2017-02-27 05:44 - 2017-03-02 00:45 - 00000000 ____D C:\WINDOWS\System32\Tasks\pcclient
2017-02-27 05:43 - 2017-02-27 05:43 - 00028751 _____ C:\ProgramData\agent.1488192165.bdinstall.bin
2017-02-27 00:30 - 2017-02-27 00:30 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Outer Brain Studios
2017-02-26 23:54 - 2017-02-26 23:54 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Aldin
2017-02-26 22:23 - 2017-02-26 22:23 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Sunshine
2017-02-26 19:27 - 2017-02-26 19:27 - 00001199 _____ C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free.lnk
2017-02-26 19:27 - 2017-02-26 19:27 - 00000000 ____D C:\Users\jakeg\AppData\Local\Bitdefender Antivirus Free
2017-02-26 19:18 - 2016-03-14 22:04 - 00023672 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2017-02-26 19:16 - 2017-02-26 19:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free
2017-02-26 19:16 - 2017-02-26 19:16 - 00000000 ____D C:\ProgramData\Bitdefender
2017-02-26 18:44 - 2016-12-13 18:18 - 00342016 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\edrsensor.sys
2017-02-26 18:44 - 2016-10-29 09:54 - 00182944 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2017-02-26 18:43 - 2016-09-20 04:17 - 01605376 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2017-02-26 18:43 - 2016-09-20 04:16 - 00878072 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys
2017-02-26 18:36 - 2016-06-22 15:40 - 00520032 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2017-02-26 18:35 - 2017-03-10 05:27 - 00000000 ____D C:\Program Files\Bitdefender Antivirus Free
2017-02-26 18:35 - 2017-02-26 18:35 - 00003794 _____ C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-02-26 18:35 - 2017-02-26 18:35 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\QuickScan
2017-02-26 18:33 - 2017-03-10 04:47 - 00000000 ____D C:\Program Files\Bitdefender Agent
2017-02-26 18:33 - 2017-02-26 18:33 - 08459976 _____ C:\Users\jakeg\Downloads\bitdefender_online.exe
2017-02-26 18:33 - 2017-02-26 18:33 - 00047225 _____ C:\ProgramData\agent.1488152019.bdinstall.bin
2017-02-26 18:33 - 2017-02-26 18:33 - 00000000 ____D C:\ProgramData\Bitdefender Agent
2017-02-26 18:33 - 2017-02-26 18:33 - 00000000 ____D C:\ProgramData\BDLogging
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnonymizerGadget
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\AppData\Local\AnonymizerLauncher
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\.proxycheck
2017-02-26 18:15 - 2017-02-26 18:15 - 00000000 ____D C:\Users\jakeg\.AnonymizerLauncher
2017-02-26 18:14 - 2017-02-28 04:06 - 00000000 ____D C:\Users\jakeg\AppData\Local\AppTrailers
2017-02-26 18:13 - 2017-02-26 18:13 - 00016828 _____ C:\WINDOWS\System32\Tasks\76f3774w1994G186
2017-02-26 18:13 - 2017-02-26 18:13 - 00002048 _____ C:\Users\jakeg\AppData\Local\uninstallro.exe
2017-02-26 18:13 - 2017-02-26 18:13 - 00000000 ___HD C:\ProgramData\76f3774w1994G186
2017-02-26 18:13 - 2017-02-26 18:13 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\InstantSupport
2017-02-26 18:12 - 2017-03-01 05:10 - 00000000 ____D C:\ProgramData\vCore
2017-02-26 18:12 - 2017-02-26 18:13 - 00000000 ____D C:\Program Files (x86)\PreparedFolder
2017-02-26 17:59 - 2017-02-26 18:00 - 09742576 _____ C:\Users\jakeg\Downloads\PlayClubVR_0.9.6.zip
2017-02-26 01:22 - 2017-02-26 01:22 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\KeithKurby
2017-02-25 23:44 - 2017-02-25 23:44 - 00000000 ____D C:\Users\jakeg\AppData\Local\EverestVR
2017-02-25 23:42 - 2017-02-25 23:42 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\HTC
2017-02-25 23:42 - 2017-02-25 23:42 - 00000000 ____D C:\ProgramData\boost_interprocess
2017-02-25 22:39 - 2017-02-25 22:39 - 00000000 ____D C:\Users\jakeg\AppData\Local\Lift
2017-02-25 22:12 - 2017-02-25 22:12 - 00000000 ____D C:\Users\jakeg\AppData\Local\TouchNUX
2017-02-25 22:11 - 2017-02-25 22:11 - 00000000 ____D C:\Users\jakeg\AppData\Local\Dreamdeck
2017-02-25 22:10 - 2017-02-25 22:11 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Revive
2017-02-25 22:10 - 2017-02-25 22:10 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revive
2017-02-25 22:06 - 2017-02-25 22:06 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\OculusClient
2017-02-25 22:05 - 2017-02-25 22:06 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Oculus
2017-02-25 22:05 - 2017-02-25 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Oculus
2017-02-25 22:01 - 2017-02-25 22:01 - 00000020 ___SH C:\Users\OVRLibraryService\ntuser.ini
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\My Documents
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\Documents\My Videos
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\Documents\My Pictures
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 _SHDL C:\Users\OVRLibraryService\Documents\My Music
2017-02-25 22:01 - 2017-02-25 22:01 - 00000000 ____D C:\Users\OVRLibraryService
2017-02-25 22:00 - 2017-02-28 23:11 - 00000000 ____D C:\Program Files\Oculus
2017-02-25 21:31 - 2017-02-25 21:31 - 49549402 _____ C:\Users\jakeg\Downloads\ReviveInstaller.exe
2017-02-25 21:30 - 2017-03-10 04:47 - 00000000 ____D C:\Users\jakeg\AppData\Local\Oculus
2017-02-25 21:30 - 2017-02-25 21:30 - 03567912 _____ (Oculus VR, LLC) C:\Users\jakeg\Downloads\OculusSetup.exe
2017-02-25 21:27 - 2017-02-09 17:39 - 00134592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-02-25 21:22 - 2017-02-25 21:22 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2017-02-25 21:18 - 2017-02-09 21:33 - 40192056 _____ C:\WINDOWS\system32\nvcompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 35272760 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 34979384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 19007016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 14674896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 11122728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 11019704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 09305984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 08990072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 03168192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 02717752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 01983424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437866.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 01589696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437866.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 01052096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00959424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00946456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00944224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00910784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00721952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00719856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00687224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00618416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00609728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00605120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00576192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00573448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00499136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00483384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-02-25 21:18 - 2017-02-09 21:33 - 00447984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-02-25 21:09 - 2017-02-25 21:09 - 00000030 _____ C:\Users\jakeg\AppData\Roaming\alsoft.ini
2017-02-25 21:07 - 2017-02-25 21:07 - 02277272 _____ C:\Users\jakeg\Downloads\vivecraft-1.11.2-jrbudda-7r1-installer.exe
2017-02-25 20:19 - 2017-02-25 20:19 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Acceleroto
2017-02-25 19:37 - 2017-03-05 00:32 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\DefaultCompany
2017-02-25 19:05 - 2017-02-25 19:05 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Whirligig
2017-02-25 19:05 - 2017-02-25 19:05 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\phileday
2017-02-25 17:57 - 2017-02-25 17:57 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Cloudhead Games LTD
2017-02-25 17:43 - 2017-02-25 17:43 - 00000000 ____D C:\Users\jakeg\AppData\Local\Google
2017-02-25 17:43 - 2017-02-25 17:43 - 00000000 ____D C:\ProgramData\Google
2017-02-25 16:19 - 2017-02-25 16:19 - 00000000 ____D C:\Users\jakeg\Documents\Rec Room
2017-02-25 16:05 - 2017-02-25 16:05 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\AgainstGravity
2017-02-25 16:01 - 2017-02-25 16:01 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\RUST LTD
2017-02-25 15:45 - 2017-02-28 04:15 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Valve
2017-02-25 15:20 - 2017-02-25 15:20 - 00000000 ____D C:\Users\jakeg\AppData\Local\VRFunhouse
2017-02-25 15:13 - 2017-02-25 15:13 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Bigscreen, Inc_
2017-02-25 15:13 - 2017-02-25 15:13 - 00000000 ____D C:\Users\jakeg\AppData\Local\Crashpad
2017-02-25 15:13 - 2017-02-25 15:13 - 00000000 ____D C:\Users\jakeg\AppData\Local\Bigscreen
2017-02-25 14:27 - 2017-02-25 17:30 - 00000000 ____D C:\Users\jakeg\AppData\Local\ViveDashboard
2017-02-25 14:27 - 2017-02-25 14:27 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\HTC
2017-02-25 11:30 - 2017-02-25 11:30 - 05652480 _____ C:\Users\jakeg\Downloads\Tilt_Brush_v9_0_VR.iso
2017-02-25 11:30 - 2017-02-25 11:30 - 05652480 _____ C:\Users\jakeg\Downloads\Tilt_Brush_v9_0_VR(1).iso
2017-02-24 06:57 - 2017-03-10 04:49 - 00000000 ____D C:\Users\jakeg\AppData\Local\HTC_Neo
2017-02-24 06:40 - 2017-03-01 00:14 - 00000000 ____D C:\Users\jakeg\Desktop\VR
2017-02-24 06:33 - 2017-02-24 06:33 - 00000000 ____D C:\Program Files\Common Files\HTC
2017-02-24 06:33 - 2016-09-24 17:24 - 00108608 _____ (Dokan Project) C:\WINDOWS\system32\Drivers\dokan1.sys
2017-02-24 06:10 - 2017-02-24 06:56 - 00000000 ____D C:\Users\jakeg\AppData\Local\HTC
2017-02-24 06:10 - 2017-02-24 06:33 - 00000000 ____D C:\ProgramData\HTC
2017-02-24 06:10 - 2017-02-24 06:10 - 00000000 ____D C:\Program Files\HTC Account
2017-02-24 06:09 - 2017-03-07 04:44 - 00066184 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwusb.sys
2017-02-24 06:09 - 2017-02-24 06:09 - 00122112 _____ (Broadcom Corporation.) C:\WINDOWS\system32\btw_ci.dll
2017-02-24 06:09 - 2017-02-24 06:09 - 00109252 _____ C:\WINDOWS\system32\Drivers\BCM20703A1_00[removed].0481.hex
2017-02-24 06:09 - 2017-02-24 06:09 - 00073984 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwsecfl.sys
2017-02-24 06:07 - 2017-03-02 00:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIVE Software
2017-02-24 06:07 - 2017-02-24 06:52 - 00000000 ____D C:\Program Files (x86)\ViveSetup
2017-02-24 06:06 - 2017-02-24 06:06 - 00000000 ____D C:\Users\jakeg\AppData\Local\VIVE_Setup
2017-02-24 05:59 - 2017-02-24 06:02 - 64443232 _____ (HTC Corp.) C:\Users\jakeg\Downloads\ViveSetup.exe
2017-02-24 05:32 - 2017-02-24 05:32 - 00001251 _____ C:\Users\Public\Desktop\ROCCAT Power-Grid.lnk
2017-02-24 05:32 - 2017-02-24 05:32 - 00000000 ____D C:\Users\jakeg\Documents\ROCCAT
2017-02-24 05:32 - 2017-02-24 05:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT
2017-02-24 05:31 - 2017-02-24 05:31 - 00000000 ____D C:\Program Files (x86)\ROCCAT
2017-02-24 05:29 - 2017-02-24 05:30 - 40787128 _____ (ROCCAT GmbH ) C:\Users\jakeg\Downloads\ROCCAT_Power_Grid_setup-0461.exe
2017-02-19 17:24 - 2017-03-04 00:21 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\vlc
2017-02-19 17:23 - 2017-02-19 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-02-19 17:23 - 2017-02-19 17:23 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2017-02-19 17:21 - 2017-02-19 17:21 - 30533688 _____ C:\Users\jakeg\Downloads\vlc-2.2.4-win32.exe
2017-02-19 06:04 - 2017-02-19 06:04 - 00000000 ____D C:\Users\jakeg\AppData\Local\Kona
2017-02-16 17:00 - 2017-02-16 17:00 - 00000545 _____ C:\Users\Public\Desktop\Fallout 4.lnk
2017-02-16 05:42 - 2017-02-16 05:59 - 00000000 ____D C:\Users\jakeg\Documents\Lords of the Fallen
2017-02-16 00:24 - 2017-02-16 00:24 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\SUPERHOT_Team
2017-02-16 00:24 - 2017-02-16 00:24 - 00000000 ____D C:\Users\jakeg\AppData\Local\SUPERHOT_Sp_z_o.o
2017-02-15 23:54 - 2017-02-15 23:54 - 00367750 _____ C:\Users\jakeg\Downloads\8D093136AC0D2183A850FC9D2AA69A3349D74739.torrent
2017-02-15 23:13 - 2017-02-15 23:14 - 14710036 _____ C:\Users\jakeg\Downloads\Star_Wars_Battlefront_Graphic_Mod__Without_Movie_Border_.rar
2017-02-14 18:58 - 2017-02-15 23:17 - 00000000 ____D C:\Users\jakeg\Documents\STAR WARS Battlefront
2017-02-14 18:42 - 2017-02-14 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront
2017-02-14 17:41 - 2017-02-14 17:41 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Unknown Worlds
2017-02-13 20:46 - 2017-02-13 20:46 - 00001098 _____ C:\Users\jakeg\Downloads\MagicLauncher_1.3.4.exe - Shortcut (2).lnk
2017-02-13 20:45 - 2017-02-13 20:45 - 00397996 _____ (hxxp://magiclauncher.com) C:\Users\jakeg\Downloads\MagicLauncher_1.3.4.exe
2017-02-13 20:23 - 2017-02-13 20:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dovetail Games - Flight
2017-02-13 18:59 - 2017-03-04 22:54 - 00000000 ____D C:\Users\jakeg\Documents\American Truck Simulator
2017-02-12 18:58 - 2017-02-12 18:58 - 00003483 _____ C:\Users\jakeg\AppData\Local\recently-used.xbel
2017-02-11 23:58 - 2017-02-11 23:58 - 00692743 _____ C:\Users\jakeg\Downloads\1224_desktop.rar
2017-02-10 19:12 - 2017-02-10 19:12 - 00000000 ____D C:\Users\jakeg\Desktop\MSCeditor1.02
2017-02-09 15:19 - 2017-02-09 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 3 Complete Collection
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-10 05:18 - 2016-02-18 19:30 - 00000000 ____D C:\Users\jakeg\AppData\Local\CrashDumps
2017-03-10 05:12 - 2016-08-05 19:54 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-03-10 05:00 - 2016-02-17 22:16 - 00000000 ____D C:\Program Files (x86)\Steam
2017-03-10 04:56 - 2016-11-20 23:08 - 00000000 ____D C:\Users\jakeg\Desktop\Everything
2017-03-10 04:56 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-03-10 04:54 - 2016-08-10 02:56 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-03-10 04:54 - 2016-08-05 19:56 - 00000000 ____D C:\ProgramData\NVIDIA
2017-03-10 04:53 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-03-10 04:51 - 2017-01-28 04:08 - 00003204 _____ C:\WINDOWS\System32\Tasks\FRAPS
2017-03-10 04:51 - 2017-01-28 04:07 - 00000000 ____D C:\Fraps
2017-03-10 04:51 - 2016-08-26 14:43 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2017-03-10 04:48 - 2016-02-17 16:41 - 00000000 ___RD C:\Users\jakeg\OneDrive
2017-03-10 04:46 - 2016-08-05 20:00 - 00000000 ____D C:\Users\jakeg
2017-03-09 04:36 - 2016-08-10 02:56 - 00003142 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2017-03-09 01:15 - 2016-02-20 19:27 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\.minecraft
2017-03-09 01:00 - 2016-11-20 13:35 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\Mozilla
2017-03-09 00:42 - 2016-07-16 06:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-03-08 05:25 - 2016-07-12 03:33 - 00000000 ____D C:\Users\jakeg\AppData\Local\Frontier_Developments
2017-03-08 05:01 - 2016-06-24 21:30 - 00000000 ____D C:\Users\jakeg\Documents\BeamNG.drive
2017-03-07 19:24 - 2016-02-18 12:07 - 00000000 ____D C:\Users\jakeg\Documents\my games
2017-03-07 19:05 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\Registration
2017-03-07 19:01 - 2016-10-29 03:53 - 00000000 ____D C:\WINDOWS\Minidump
2017-03-07 19:00 - 2016-06-29 17:20 - 913346354 _____ C:\WINDOWS\MEMORY.DMP
2017-03-07 06:16 - 2016-01-27 08:57 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-07 04:44 - 2016-07-16 06:45 - 00000000 ____D C:\WINDOWS\INF
2017-03-06 04:22 - 2015-07-20 12:07 - 01836844 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-03-05 18:22 - 2016-07-16 01:04 - 01572864 _____ C:\WINDOWS\system32\config\BBI
2017-03-05 00:29 - 2016-11-12 00:43 - 00466456 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2017-03-05 00:29 - 2016-11-12 00:43 - 00444952 _____ (Creative Labs) C:\WINDOWS\SysWOW64\wrap_oal.dll
2017-03-05 00:29 - 2016-11-12 00:43 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2017-03-05 00:29 - 2016-11-12 00:43 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\OpenAL32.dll
2017-03-04 18:58 - 2016-03-02 12:28 - 00000000 ____D C:\Users\jakeg\AppData\Local\UnrealEngine
2017-03-04 03:55 - 2016-02-17 23:14 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-03-01 05:16 - 2016-11-13 02:11 - 00000000 ____D C:\Users\jakeg\AppData\LocalLow\uTorrent
2017-03-01 05:16 - 2016-02-21 17:37 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\uTorrent
2017-03-01 00:16 - 2016-03-14 03:06 - 00000000 ____D C:\Program Files\Dolphin
2017-02-27 19:02 - 2016-12-13 05:07 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-02-27 19:01 - 2016-02-17 16:41 - 00002370 _____ C:\Users\jakeg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-02-26 19:31 - 2016-01-27 08:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-02-26 19:29 - 2016-08-05 19:53 - 00197720 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-02-26 18:12 - 2016-04-05 15:47 - 00000000 ____D C:\Users\jakeg\AppData\Local\Downloaded Installations
2017-02-26 04:50 - 2017-02-01 04:22 - 00000000 ____D C:\Users\jakeg\Documents\Project CARS
2017-02-25 21:57 - 2016-03-14 04:09 - 00000000 ____D C:\Users\jakeg\Documents\Dolphin Emulator
2017-02-25 21:31 - 2016-08-05 19:56 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-02-25 21:27 - 2016-03-07 22:32 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-02-24 05:52 - 2016-01-27 08:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-02-24 05:50 - 2016-02-17 16:39 - 00000000 ____D C:\Users\jakeg\AppData\Local\Packages
2017-02-24 05:35 - 2016-03-29 18:16 - 00000000 ____D C:\Temp
2017-02-22 23:46 - 2016-07-16 06:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-02-22 23:46 - 2016-02-18 15:36 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-02-22 23:43 - 2016-02-18 15:36 - 138020592 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-02-19 18:59 - 2016-04-22 15:52 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Warner Bros. Interactive Entertainment
2017-02-19 06:57 - 2016-03-14 03:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin
2017-02-19 05:45 - 2016-02-26 07:22 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\Origin
2017-02-19 05:45 - 2016-02-26 07:15 - 00000000 ____D C:\ProgramData\Origin
2017-02-16 20:20 - 2016-03-16 02:53 - 00000000 ____D C:\Users\jakeg\AppData\Local\Fallout4
2017-02-14 16:56 - 2016-02-26 07:14 - 00000000 ____D C:\Program Files (x86)\Origin
2017-02-13 20:54 - 2016-02-20 19:23 - 00000000 ____D C:\Program Files (x86)\Minecraft
2017-02-13 20:38 - 2016-03-11 01:23 - 00000000 ____D C:\Users\jakeg\AppData\Local\ElevatedDiagnostics
2017-02-12 18:58 - 2016-02-19 17:10 - 00000000 ____D C:\Users\jakeg\AppData\Local\gtk-2.0
2017-02-12 18:58 - 2016-02-19 17:08 - 00000000 ____D C:\Users\jakeg\.gimp-2.8
2017-02-12 17:50 - 2016-03-16 00:59 - 00000000 ____D C:\Users\jakeg\AppData\Roaming\SmartSteamEmu
2017-02-10 10:50 - 2017-01-29 05:13 - 00000000 ____D C:\Users\jakeg\AppData\Local\BlackDesertOnline
2017-02-10 00:29 - 2016-11-28 14:58 - 00000000 ____D C:\BethINI
2017-02-09 21:33 - 2017-01-26 00:19 - 28242488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-02-09 21:33 - 2017-01-26 00:19 - 00991288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-02-09 21:33 - 2016-11-28 14:44 - 00043556 _____ C:\WINDOWS\system32\nvinfo.pb
2017-02-09 21:33 - 2016-06-28 02:33 - 04078008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-02-09 21:33 - 2016-06-28 02:33 - 03597128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-02-09 18:13 - 2016-10-13 16:31 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-02-09 17:57 - 2016-08-05 19:56 - 07791217 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-02-09 17:57 - 2016-08-05 19:56 - 06403640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 02477504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 01764408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00548288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00393784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00083512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-02-09 17:57 - 2016-08-05 19:56 - 00071224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-02-09 11:32 - 2016-07-16 06:47 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-02-08 13:42 - 2016-12-15 15:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-02-08 13:42 - 2016-02-18 01:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
==================== Files in the root of some directories =======
2017-02-25 21:09 - 2017-02-25 21:09 - 0000030 _____ () C:\Users\jakeg\AppData\Roaming\alsoft.ini
2017-02-12 18:58 - 2017-02-12 18:58 - 0003483 _____ () C:\Users\jakeg\AppData\Local\recently-used.xbel
2016-02-19 01:34 - 2017-01-19 22:55 - 0007609 _____ () C:\Users\jakeg\AppData\Local\resmon.resmoncfg
2017-02-26 18:13 - 2017-02-26 18:13 - 0002048 _____ () C:\Users\jakeg\AppData\Local\uninstallro.exe
2017-02-26 18:33 - 2017-02-26 18:33 - 0047225 _____ () C:\ProgramData\agent.1488152019.bdinstall.bin
2017-02-27 05:43 - 2017-02-27 05:43 - 0028751 _____ () C:\ProgramData\agent.1488192165.bdinstall.bin
2016-08-05 19:55 - 2016-08-05 19:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-12-29 17:44 - 2017-01-25 23:53 - 0016772 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-29 17:44 - 2017-01-18 14:36 - 0004188 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1
Files to move or delete:
====================
C:\Users\jakeg\Superior Installer.exe
Some files in TEMP:
====================
2017-03-01 05:10 - 2017-03-01 05:10 - 2037434 _____ ( ) C:\Users\jakeg\AppData\Local\Temp\4f3d4284-fe67-11e6-9c4f-408d5c74bb85.exe
2017-01-30 04:30 - 2017-01-30 04:30 - 0000512 _____ () C:\Users\jakeg\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 1138176 _____ () C:\Users\jakeg\AppData\Local\Temp\AMDCleanupUtility.exe
2017-02-26 18:13 - 2017-02-26 18:13 - 0889024 _____ () C:\Users\jakeg\AppData\Local\Temp\AnonymizerGadgetSetup.1.000.1680.exe
2017-02-26 18:12 - 2017-02-26 18:13 - 29136048 _____ (AppTrailers) C:\Users\jakeg\AppData\Local\Temp\AppTrailers.9.1.10amt.exe
2017-01-30 04:31 - 2017-01-30 04:31 - 0000069 _____ () C:\Users\jakeg\AppData\Local\Temp\cfc6e1877a0eccbf5f7c8d5a2a656bff.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 0232960 _____ () C:\Users\jakeg\AppData\Local\Temp\Cleanup.dll
2017-02-25 11:31 - 2017-02-25 11:31 - 0065535 _____ () C:\Users\jakeg\AppData\Local\Temp\component.exe
2016-08-21 17:24 - 2016-08-21 17:24 - 0065536 _____ (Windows (R) Server 2003 DDK provider) C:\Users\jakeg\AppData\Local\Temp\ddu.exe
2016-08-21 17:24 - 2016-08-21 17:24 - 0414152 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\difxapi.dll
2016-10-19 13:16 - 2016-10-19 13:16 - 0204800 _____ (Sony DADC Austria AG) C:\Users\jakeg\AppData\Local\Temp\drm_dyndata_7380012.dll
2016-12-01 22:49 - 2017-01-21 03:27 - 0204800 _____ (Sony DADC Austria AG) C:\Users\jakeg\AppData\Local\Temp\drm_dyndata_7380014.dll
2017-02-26 18:15 - 2017-02-26 18:15 - 0294912 _____ () C:\Users\jakeg\AppData\Local\Temp\gC84D.tmp.exe
2017-02-26 18:15 - 2017-02-26 18:15 - 0191488 _____ () C:\Users\jakeg\AppData\Local\Temp\gC928.tmp.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 0387036 _____ ( ) C:\Users\jakeg\AppData\Local\Temp\global_installer.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 2387665 _____ () C:\Users\jakeg\AppData\Local\Temp\Install.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 0098384 _____ (Installer Technology © 2015) C:\Users\jakeg\AppData\Local\Temp\installer.exe
2017-01-28 03:48 - 2017-01-28 03:48 - 0549376 _____ () C:\Users\jakeg\AppData\Local\Temp\is-JVNML.tmpsetup.exe
2016-08-21 17:24 - 2016-08-21 17:24 - 0516096 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\msvcm80.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 1061376 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\msvcp80.dll
2016-08-21 17:24 - 2016-08-21 17:24 - 0796672 _____ (Microsoft Corporation) C:\Users\jakeg\AppData\Local\Temp\msvcr80.dll
2017-02-26 18:12 - 2017-02-26 18:12 - 0380928 _____ (Oracle ) C:\Users\jakeg\AppData\Local\Temp\netstream.exe
2016-08-14 14:46 - 2016-08-14 14:46 - 6359496 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.61.23.exe
2016-10-31 05:43 - 2016-10-31 05:43 - 6449992 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.63.5.exe
2016-11-12 01:37 - 2016-11-12 01:38 - 6452312 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.63.7.exe
2016-11-17 23:37 - 2016-11-17 23:38 - 6453608 _____ (Black Tree Gaming ) C:\Users\jakeg\AppData\Local\Temp\Nexus Mod Manager-0.63.9.exe
2016-06-28 02:36 - 2017-01-20 09:07 - 0757240 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvSCPAPI.dll
2016-06-28 02:36 - 2017-01-20 09:07 - 0872088 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvSCPAPI64.dll
2017-01-26 00:22 - 2017-01-20 09:07 - 0390072 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvStereoApiI.dll
2016-08-22 21:17 - 2017-01-20 09:07 - 0352704 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\nvStInst.exe
2016-10-13 16:31 - 2016-11-17 08:45 - 1135552 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\NvTelemetry.dll
2016-10-13 16:31 - 2016-12-12 18:36 - 0253376 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\NvTelemetryAPI32.dll
2016-10-13 16:31 - 2016-12-12 18:36 - 0334272 _____ (NVIDIA Corporation) C:\Users\jakeg\AppData\Local\Temp\NvTelemetryAPI64.dll
2011-11-03 09:13 - 2011-11-03 09:13 - 1786688 _____ () C:\Users\jakeg\AppData\Local\Temp\sonarinst.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 1199825 _____ () C:\Users\jakeg\AppData\Local\Temp\unins000.exe
2017-02-26 18:12 - 2017-02-26 18:12 - 1239469 _____ (VideoBox ) C:\Users\jakeg\AppData\Local\Temp\videobox.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-03-10 05:12
==================== End of FRST.txt ============================