I had another thread open but didn't reply within the three days, I understand the need to close inactive threads and have apologised to the person who was helping me.
Thanks to the work of capnkruch my PC seems to be in pretty good shape now but I know we hadn't finished.
I have included FRST log if anyone could look at it and help
thanks
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-01-2015 01
Ran by stephen (administrator) on MAGGIE (18-01-2016 15:08:20)
Running from C:\Users\stephen\Downloads
Loaded Profiles: stephen (Available Profiles: stephen & maggi_000 & cmcga_000)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [MouseDriver] => C:\windows\system32\TiltWheelMouse.exe [241152 2013-04-09] (Pixart Imaging Inc)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2757424 2015-11-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-09-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912 2015-09-17] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WinCalendar V4] => C:\Program Files (x86)\WinCalendar V4\WinCalendarV4_SysTray.exe [81944 2015-04-01] (Sapro Systems)
HKLM-x32\...\Run: [AdobeCS4ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [522784 2015-11-17] (Autodesk Inc.)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [457088 2015-09-23] (Sony)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [NvLedServiceHost] => C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe [87160 2015-11-12] ()
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [28917376 2015-05-14] (Skype Technologies S.A.)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [AdobeBridge] => C:\Program Files (x86)\Adobe\Adobe Bridge CS4\Bridge.exe [13145448 2008-08-28] (Adobe Systems, Inc.)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1310088 2015-01-27] (Autodesk, Inc.)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [Akamai NetSession Interface] => C:\Users\stephen\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [787592 2015-10-22] (Sandboxie Holdings, LLC)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll [2015-02-06] (Autodesk, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-01-16]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.11.266\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\stephen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2016-01-06]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{9aaae056-d5ce-4a6d-8bc3-858c059e961a}: [DhcpNameServer] 194.168.4.100 194.168.8.100
Internet Explorer:
==================
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkI ... id=UE01DHP
HKU\S-1-5-21-3488279127-63086370-3813774398-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-gb/?pc=UE01&ocid=UE01DHP
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3488279127-63086370-3813774398-1001 -> DefaultScope {C2415D81-242C-4BA6-B59A-8EDB5E7B07F7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-3488279127-63086370-3813774398-1001 -> {C2415D81-242C-4BA6-B59A-8EDB5E7B07F7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-12-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-11-22] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-12-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-22] (Oracle Corporation)
Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll No File
FireFox:
========
FF ProfilePath: C:\Users\stephen\AppData\Roaming\Mozilla\Firefox\Profiles\iqn7ummx.default-1449965770414
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-29] ()
FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-22] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-22] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-09-17] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [No File]
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-03-20] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-03-20] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-22] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-02-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-12] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-12] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-09-17] (Adobe Systems)
FF Plugin HKU\S-1-5-21-3488279127-63086370-3813774398-1001: sony.com/MediaGoDetector -> C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll [2015-11-20] (Sony Network Entertainment International LLC)
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [ihenkjeihefokohmemphikjnjbmegdik] - "C:\Program Files (x86)\Sony\Media Go\MediaGoDetector.crx" <not found>
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1139744 2015-11-17] (Autodesk Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872 2015-09-15] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016448 2015-11-25] (Adobe Systems, Incorporated)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-01-28] ()
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2802360 2015-11-24] (Microsoft Corporation)
R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [249328 2015-06-24] (DTS, Inc)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400 2015-11-12] (NVIDIA Corporation)
S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-03-20] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.11.266\McCHSvc.exe [235696 2015-12-02] (McAfee, Inc.)
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-11-12] (NVIDIA Corporation)
S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424 2015-11-12] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440 2015-11-12] (NVIDIA Corporation)
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [177800 2015-10-22] (Sandboxie Holdings, LLC)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S3 AdobeFlashPlayerUpdateSvc; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-28] ()
R3 ElcMouLFlt; C:\Windows\System32\drivers\ElcMouLFlt.sys [28648 2015-12-04] (ELECOM)
R3 ElcMouUFlt; C:\Windows\System32\drivers\ElcMouUFlt.sys [27624 2015-12-04] (ELECOM)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [28416 2008-04-16] (Research In Motion Limited)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [192648 2015-10-22] (Sandboxie Holdings, LLC)
R3 t_mouse.sys; C:\Windows\system32\DRIVERS\t_mouse.sys [6144 2013-04-09] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-18 08:27 - 2016-01-18 08:28 - 00686249 _____ C:\Users\maggi_000\Downloads\Poster(1).pdf
2016-01-17 19:11 - 2016-01-17 19:11 - 00000264 _____ C:\Users\stephen\Desktop\teamspeak.ini
2016-01-17 12:37 - 2016-01-17 12:37 - 03422072 _____ C:\Users\maggi_000\Downloads\APPX 4 Working it Out Report.PDF
2016-01-17 12:36 - 2016-01-17 12:36 - 00742236 _____ C:\Users\maggi_000\Downloads\APPX 6 GHN Annual ODM Monitoring Report 2014-15 FINAL.pdf
2016-01-17 12:36 - 2016-01-17 12:36 - 00323177 _____ C:\Users\maggi_000\Downloads\APPX 5 Money Talks Survey.pdf
2016-01-17 12:32 - 2016-01-17 12:32 - 02641949 _____ C:\Users\maggi_000\Downloads\APPX 2 Argyll & Bute Strategic Plan Consultation.pdf
2016-01-17 12:30 - 2016-01-17 12:30 - 00373864 _____ C:\Users\maggi_000\Downloads\APPX 3 GHN Homelessness 10 Year Audit.pdf
2016-01-17 12:28 - 2016-01-17 12:28 - 00509583 _____ C:\Users\maggi_000\Downloads\NES - EbyE Tender Response ALLIN FINAL.pdf
2016-01-17 12:26 - 2016-01-17 12:26 - 00497574 _____ C:\Users\maggi_000\Downloads\A&B ADP Tender Response (IE at GHN).pdf
2016-01-17 11:42 - 2016-01-17 11:42 - 00686249 _____ C:\Users\maggi_000\Downloads\Poster.pdf
2016-01-16 19:30 - 2016-01-16 19:30 - 00331357 _____ C:\Users\maggi_000\Downloads\Hostelworld_PDF_Guide_Glasgow.pdf
2016-01-16 18:25 - 2016-01-16 18:25 - 00820607 _____ C:\Users\maggi_000\Downloads\The-Golden-Lion-Chrismas-Brochure.pdf
2016-01-16 11:03 - 2016-01-16 11:03 - 00002233 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2016-01-16 11:03 - 2016-01-16 11:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-01-16 11:03 - 2016-01-16 11:03 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2016-01-16 11:03 - 2016-01-16 11:03 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan
2016-01-16 07:40 - 2016-01-16 07:40 - 01856929 _____ C:\Users\maggi_000\Downloads\HomelessnessMonitorScotland_FINAL.pdf
2016-01-16 01:58 - 2016-01-16 01:58 - 00033618 _____ C:\Users\stephen\Downloads\Fixlog.txt
2016-01-14 22:53 - 2016-01-14 22:53 - 00002560 _____ C:\WINDOWS\_MSRSTRT.EXE
2016-01-14 01:12 - 2016-01-14 01:17 - 01754112 _____ C:\Users\stephen\Desktop\adwcleaner_5.029.exe
2016-01-14 01:02 - 2016-01-14 01:02 - 00000085 _____ C:\WINDOWS\wininit.ini
2016-01-13 07:48 - 2016-01-13 07:48 - 00433106 _____ C:\Users\maggi_000\Downloads\UKMail-Delivery-Card-0564321.pdf
2016-01-13 07:35 - 2016-01-13 07:35 - 00325087 _____ C:\Users\maggi_000\Downloads\Invitation to Tender - ASL Market Testing project - Jan 2016.pdf
2016-01-13 01:27 - 2016-01-13 01:27 - 00006098 _____ C:\Users\stephen\Desktop\report.txt
2016-01-13 01:23 - 2016-01-13 01:23 - 00000239 _____ C:\Users\stephen\Desktop\ckfiles.txt
2016-01-13 01:22 - 2016-01-13 01:23 - 00468480 _____ () C:\Users\stephen\Desktop\CKScanner.exe
2016-01-12 22:50 - 2016-01-05 02:51 - 07477600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-01-12 22:50 - 2016-01-05 02:51 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-01-12 22:50 - 2016-01-05 02:51 - 01141496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-01-12 22:50 - 2016-01-05 02:50 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-01-12 22:50 - 2016-01-05 02:50 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-01-12 22:50 - 2016-01-05 02:50 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-01-12 22:50 - 2016-01-05 02:49 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-01-12 22:50 - 2016-01-05 02:48 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-01-12 22:50 - 2016-01-05 02:45 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-01-12 22:50 - 2016-01-05 02:42 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-01-12 22:50 - 2016-01-05 02:37 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-01-12 22:50 - 2016-01-05 02:36 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-01-12 22:50 - 2016-01-05 02:33 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-01-12 22:50 - 2016-01-05 02:33 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-01-12 22:50 - 2016-01-05 02:33 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-01-12 22:50 - 2016-01-05 02:33 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-01-12 22:50 - 2016-01-05 02:33 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-01-12 22:50 - 2016-01-05 02:33 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-01-12 22:50 - 2016-01-05 02:33 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-01-12 22:50 - 2016-01-05 02:31 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-01-12 22:50 - 2016-01-05 02:27 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-01-12 22:50 - 2016-01-05 02:24 - 00796352 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-01-12 22:50 - 2016-01-05 02:23 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-01-12 22:50 - 2016-01-05 02:23 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-01-12 22:50 - 2016-01-05 02:23 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-01-12 22:50 - 2016-01-05 02:23 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-01-12 22:50 - 2016-01-05 02:21 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-01-12 22:50 - 2016-01-05 02:17 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-01-12 22:50 - 2016-01-05 02:16 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-01-12 22:50 - 2016-01-05 01:59 - 22393856 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-01-12 22:50 - 2016-01-05 01:57 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-12 22:50 - 2016-01-05 01:57 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-01-12 22:50 - 2016-01-05 01:57 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-01-12 22:50 - 2016-01-05 01:56 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-01-12 22:50 - 2016-01-05 01:54 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-01-12 22:50 - 2016-01-05 01:53 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-01-12 22:50 - 2016-01-05 01:52 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-01-12 22:50 - 2016-01-05 01:51 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-01-12 22:50 - 2016-01-05 01:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-01-12 22:50 - 2016-01-05 01:50 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-01-12 22:50 - 2016-01-05 01:50 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-01-12 22:50 - 2016-01-05 01:50 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-01-12 22:50 - 2016-01-05 01:49 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-01-12 22:50 - 2016-01-05 01:49 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-01-12 22:50 - 2016-01-05 01:49 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-01-12 22:50 - 2016-01-05 01:49 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-01-12 22:50 - 2016-01-05 01:49 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-01-12 22:50 - 2016-01-05 01:49 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-01-12 22:50 - 2016-01-05 01:48 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-01-12 22:50 - 2016-01-05 01:48 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-01-12 22:50 - 2016-01-05 01:48 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-01-12 22:50 - 2016-01-05 01:47 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-01-12 22:50 - 2016-01-05 01:47 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-01-12 22:50 - 2016-01-05 01:47 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-01-12 22:50 - 2016-01-05 01:45 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-01-12 22:50 - 2016-01-05 01:45 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-01-12 22:50 - 2016-01-05 01:44 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-01-12 22:50 - 2016-01-05 01:43 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-01-12 22:50 - 2016-01-05 01:43 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-01-12 22:50 - 2016-01-05 01:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-01-12 22:50 - 2016-01-05 01:42 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-01-12 22:50 - 2016-01-05 01:41 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-01-12 22:50 - 2016-01-05 01:41 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-01-12 22:50 - 2016-01-05 01:41 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-01-12 22:50 - 2016-01-05 01:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-01-12 22:50 - 2016-01-05 01:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-01-12 22:50 - 2016-01-05 01:39 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-01-12 22:50 - 2016-01-05 01:39 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-01-12 22:50 - 2016-01-05 01:39 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-01-12 22:50 - 2016-01-05 01:39 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-01-12 22:50 - 2016-01-05 01:38 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-01-12 22:50 - 2016-01-05 01:36 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-01-12 22:50 - 2016-01-05 01:36 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-01-12 22:50 - 2016-01-05 01:33 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-01-12 22:50 - 2016-01-05 01:30 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-01-12 22:50 - 2016-01-05 01:30 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-01-12 22:50 - 2016-01-05 01:29 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-01-12 22:50 - 2016-01-05 01:28 - 07826432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-01-12 22:50 - 2016-01-05 01:28 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-01-12 22:50 - 2016-01-05 01:28 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-01-12 22:50 - 2016-01-05 01:25 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-01-12 15:52 - 2016-01-12 15:52 - 00000000 ___RD C:\Sandbox
2016-01-12 15:51 - 2016-01-12 15:50 - 00000944 _____ C:\Users\stephen\Desktop\Sandboxed Web Browser.lnk
2016-01-12 15:50 - 2016-01-13 16:16 - 00001730 _____ C:\WINDOWS\Sandboxie.ini
2016-01-12 15:50 - 2016-01-12 15:50 - 08518280 _____ (Sandboxie Holdings, LLC) C:\Users\stephen\Downloads\SandboxieInstall.exe
2016-01-12 15:50 - 2016-01-12 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
2016-01-12 15:50 - 2016-01-12 15:50 - 00000000 ____D C:\Program Files\Sandboxie
2016-01-12 14:40 - 2016-01-12 14:40 - 00388608 _____ (Trend Micro Inc.) C:\Users\stephen\Downloads\HijackThis(1).exe
2016-01-12 14:35 - 2016-01-12 14:35 - 00388608 _____ (Trend Micro Inc.) C:\Users\stephen\Downloads\HijackThis.exe
2016-01-12 13:42 - 2016-01-12 13:46 - 00000000 ____D C:\Users\stephen\AppData\Roaming\ImgBurn
2016-01-12 13:31 - 2016-01-12 13:31 - 00001953 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk
2016-01-12 13:31 - 2016-01-12 13:31 - 00001941 _____ C:\Users\Public\Desktop\ImgBurn.lnk
2016-01-12 13:31 - 2016-01-12 13:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn
2016-01-12 13:31 - 2016-01-12 13:31 - 00000000 ____D C:\Program Files (x86)\ImgBurn
2016-01-12 13:29 - 2016-01-12 13:30 - 03469871 _____ (LIGHTNING UK!) C:\Users\stephen\Downloads\SetupImgBurn_2.5.8.0(1).exe
2016-01-12 13:29 - 2016-01-12 13:29 - 00000000 _____ C:\Users\stephen\Downloads\SetupImgBurn_2.5.8.0.exe
2016-01-12 13:24 - 2016-01-12 13:26 - 1054867456 _____ C:\Users\stephen\Downloads\ubuntu-14.04.3-desktop-amd64.iso
2016-01-12 00:33 - 2016-01-12 00:33 - 02370560 _____ (Farbar) C:\Users\stephen\Downloads\FRST64(2).exe
2016-01-12 00:11 - 2016-01-12 00:11 - 02370560 _____ (Farbar) C:\Users\stephen\Downloads\FRST64(1).exe
2016-01-12 00:08 - 2016-01-12 00:09 - 00058014 _____ C:\Users\stephen\Documents\cc_20160112_000856.reg
2016-01-11 23:41 - 2016-01-18 15:08 - 00018334 _____ C:\Users\stephen\Downloads\FRST.txt
2016-01-11 23:41 - 2016-01-16 02:06 - 00054487 _____ C:\Users\stephen\Downloads\Addition.txt
2016-01-11 23:40 - 2016-01-18 15:08 - 00000000 ____D C:\FRST
2016-01-11 23:40 - 2016-01-11 23:40 - 02370560 _____ (Farbar) C:\Users\stephen\Downloads\FRST64.exe
2016-01-11 15:41 - 2016-01-11 15:41 - 00291534 _____ C:\Users\stephen\Documents\cc_20160111_154141.reg
2016-01-11 15:40 - 2016-01-11 15:40 - 06805440 _____ (Piriform Ltd) C:\Users\stephen\Downloads\ccsetup513.exe
2016-01-11 15:40 - 2016-01-11 15:40 - 00000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-01-11 15:37 - 2016-01-11 15:37 - 00001235 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-01-11 15:37 - 2016-01-11 15:37 - 00001223 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-01-11 15:37 - 2016-01-11 15:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-01-09 11:32 - 2016-01-09 11:32 - 00668602 _____ C:\Users\maggi_000\Downloads\Important information about charges_07012016.pdf
2016-01-08 20:15 - 2016-01-08 20:15 - 01592131 _____ C:\Users\maggi_000\Downloads\interim-ll2u-leaflet-july-2015-v1a.pdf
2016-01-08 18:35 - 2016-01-08 18:35 - 00235046 _____ C:\Users\maggi_000\Downloads\bef30f_316d48295b844ad8b4980721cfe3b9a5(2).pdf
2016-01-08 18:34 - 2016-01-08 18:34 - 00235046 _____ C:\Users\maggi_000\Downloads\bef30f_316d48295b844ad8b4980721cfe3b9a5(1).pdf
2016-01-08 08:47 - 2016-01-08 08:47 - 00046069 _____ C:\Users\maggi_000\Downloads\Invoice-24191791.pdf
2016-01-07 20:17 - 2016-01-07 20:17 - 00242118 _____ C:\Users\maggi_000\Downloads\Order-24191791-Docs-080130.pdf
2016-01-07 20:17 - 2016-01-07 20:17 - 00010982 _____ C:\Users\maggi_000\Downloads\footwear-declaration.pdf
2016-01-07 19:55 - 2016-01-07 19:55 - 00309039 _____ C:\Users\maggi_000\Downloads\20150731_ReturnForm.pdf
2016-01-07 19:33 - 2016-01-16 01:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-01-07 07:16 - 2016-01-07 07:16 - 00055367 _____ C:\Users\maggi_000\Downloads\Your account is still overdrawn_04012016.pdf
2016-01-07 07:16 - 2016-01-07 07:16 - 00054156 _____ C:\Users\maggi_000\Downloads\Information about your overdraft charges_06012016.pdf
2016-01-07 00:33 - 2016-01-07 00:33 - 00000744 _____ C:\Users\stephen\Desktop\College 2016 - Shortcut.lnk
2016-01-06 21:54 - 2016-01-06 22:03 - 00001178 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-01-06 21:54 - 2016-01-06 21:55 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-01-06 21:54 - 2016-01-06 21:54 - 22908888 _____ (Malwarebytes ) C:\Users\stephen\Downloads\mbam-setup-2.2.0.1024(1).exe
2016-01-06 21:54 - 2016-01-06 21:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-06 21:54 - 2016-01-06 21:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-06 21:54 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-01-06 21:54 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-01-06 21:54 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-01-06 21:53 - 2016-01-06 21:53 - 22908888 _____ (Malwarebytes ) C:\Users\stephen\Downloads\mbam-setup-2.2.0.1024.exe
2016-01-06 21:42 - 2016-01-06 21:42 - 03399774 _____ C:\Users\stephen\Downloads\03 Track 3(1).wma
2016-01-06 21:42 - 2016-01-06 21:42 - 02975478 _____ C:\Users\stephen\Downloads\07 Track 7(1).wma
2016-01-06 21:41 - 2016-01-06 21:41 - 04720470 _____ C:\Users\stephen\Downloads\08 Track 8(1).wma
2016-01-06 21:41 - 2016-01-06 21:41 - 02975478 _____ C:\Users\stephen\Downloads\07 Track 7.wma
2016-01-06 21:40 - 2016-01-06 21:41 - 03399774 _____ C:\Users\stephen\Downloads\03 Track 3.wma
2016-01-06 20:51 - 2016-01-06 20:51 - 05587535 _____ C:\Users\stephen\Downloads\Building_Adapta.pdf
2016-01-06 18:45 - 2016-01-06 18:45 - 04720470 _____ C:\Users\stephen\Downloads\08 Track 8.wma
2016-01-06 18:27 - 2016-01-06 18:27 - 00037954 _____ C:\Users\stephen\Downloads\excell tutorial(1).htm
2016-01-06 12:42 - 2016-01-06 22:03 - 00002649 _____ C:\Users\stephen\Desktop\Microsoft Office Project 2007.lnk
2016-01-05 23:09 - 2016-01-05 23:09 - 00280841 _____ C:\Users\stephen\Downloads\CT_Ind_-_Com_Tutorial_LO1-_2015_B(1).pdf
2016-01-05 17:32 - 2016-01-05 17:32 - 00006548 _____ C:\Users\maggi_000\Downloads\Payslip for Tax Week_40, Tax Year_2015-2016.pdf
2016-01-05 17:32 - 2016-01-05 17:32 - 00006548 _____ C:\Users\maggi_000\Downloads\Payslip for Tax Week_40, Tax Year_2015-2016(1).pdf
2016-01-04 13:00 - 2016-01-04 13:00 - 00496846 _____ C:\Users\maggi_000\Downloads\S430-0415-web.pdf
2016-01-04 11:19 - 2016-01-04 11:19 - 01693393 _____ C:\Users\maggi_000\Downloads\The_Next_Piece_2015.pdf
2016-01-04 11:18 - 2016-01-04 11:18 - 01036107 _____ C:\Users\maggi_000\Downloads\What_piece_next_poster..pdf
2016-01-03 10:44 - 2016-01-03 10:44 - 00109494 _____ C:\Users\maggi_000\Downloads\TSB-VISA-DEBIT-T-and-Cs.pdf
2016-01-03 04:52 - 2016-01-03 04:52 - 02026520 _____ (BitTorrent Inc.) C:\Users\stephen\Downloads\uTorrent.exe
2016-01-02 10:53 - 2016-01-02 10:53 - 00235046 _____ C:\Users\maggi_000\Downloads\bef30f_316d48295b844ad8b4980721cfe3b9a5.pdf
2016-01-01 11:20 - 2016-01-11 13:40 - 00002543 _____ C:\Users\maggi_000\Desktop\Kindle.lnk
2016-01-01 11:20 - 2016-01-01 14:42 - 00000000 ____D C:\Users\maggi_000\Documents\My Kindle Content
2016-01-01 11:20 - 2016-01-01 11:20 - 00000000 ____D C:\Users\maggi_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2016-01-01 11:20 - 2016-01-01 11:20 - 00000000 ____D C:\Users\maggi_000\AppData\Local\Amazon
2015-12-31 08:24 - 2015-12-31 08:24 - 00055874 _____ C:\Users\maggi_000\Downloads\Information about your overdraft charges_30122015.pdf
2015-12-29 14:54 - 2015-12-29 14:54 - 00313224 _____ C:\Users\maggi_000\Downloads\SCoDCon16 Invite V1.pdf
2015-12-27 23:33 - 2087-05-20 11:08 - 03407872 _____ C:\Users\stephen\Desktop\SPOT0000.avi
2015-12-27 12:22 - 2015-12-27 12:22 - 00838493 _____ C:\Users\maggi_000\Downloads\Calendar 1(1).pdf
2015-12-27 12:21 - 2015-12-27 12:21 - 00838493 _____ C:\Users\maggi_000\Downloads\Calendar 1.pdf
2015-12-27 12:21 - 2015-12-27 12:21 - 00054524 _____ C:\Users\maggi_000\Downloads\Street A-Z.pdf
2015-12-26 12:36 - 2015-12-26 12:36 - 00958641 _____ C:\Users\maggi_000\Downloads\Royal-Mail-UK-and-international-parcel-and-letter-prices-30-March-2015.pdf
2015-12-26 12:17 - 2015-12-26 12:17 - 00179804 _____ C:\Users\maggi_000\Downloads\20151127_ReturnForm.pdf
2015-12-25 12:54 - 2015-12-25 12:54 - 00076244 _____ C:\Users\maggi_000\Downloads\voucher_262038954.pdf
2015-12-25 12:50 - 2015-12-25 12:50 - 00110021 _____ C:\Users\maggi_000\Downloads\Groupon-75CA5F54AD.pdf
2015-12-25 12:50 - 2015-12-25 12:50 - 00110021 _____ C:\Users\maggi_000\Downloads\Groupon-75CA5F54AD(1).pdf
2015-12-22 03:11 - 2015-12-22 03:11 - 00000000 ____D C:\Users\stephen\AppData\Roaming\NBS
2015-12-21 18:27 - 2015-12-21 18:32 - 136685138 _____ C:\Users\stephen\Downloads\NBSCreate_1_5_3_08_12_15.zip
2015-12-21 17:58 - 2015-12-21 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NBS
2015-12-21 17:58 - 2015-12-21 17:58 - 00000000 ____D C:\Program Files (x86)\NBS
2015-12-21 17:57 - 2015-12-21 17:57 - 00000000 ____D C:\Users\stephen\Desktop\nbsCreate_1_5_3_08_12_15
2015-12-21 15:21 - 2015-12-21 15:21 - 07493736 _____ C:\Users\stephen\Downloads\eml(2)
2015-12-21 15:20 - 2015-12-21 15:20 - 07493736 _____ C:\Users\stephen\Downloads\eml(1)
2015-12-21 15:12 - 2015-12-21 15:12 - 00000000 ____D C:\Users\stephen\Documents\Autodesk Application Manager
2015-12-21 15:11 - 2015-12-21 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk ReCap 2016
2015-12-21 15:10 - 2015-12-21 15:10 - 00000133 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2015-12-21 15:05 - 2015-12-21 15:05 - 16873592 _____ C:\Users\stephen\Downloads\AutoCAD_2016_English_Win_64bit_r1_wi_en-us_Setup.exe
2015-12-21 15:05 - 2015-12-21 15:05 - 00338296 _____ (Autodesk Inc.) C:\Users\stephen\Downloads\AutoCAD_2016_English_Win_64bit_r1_wi_en-us_Setup_webinstall.exe
2015-12-21 12:01 - 2015-12-21 12:01 - 00608096 _____ C:\Users\maggi_000\Downloads\Is_Scotland_Fair_Enough(1).pdf
2015-12-21 11:49 - 2015-12-21 11:49 - 01045966 _____ C:\Users\maggi_000\Downloads\Health_and_Homelessness_Report_2015_final_(3).pdf
2015-12-21 11:49 - 2015-12-21 11:49 - 01045966 _____ C:\Users\maggi_000\Downloads\Health_and_Homelessness_Report_2015_final_(2).pdf
2015-12-21 11:43 - 2015-12-21 11:44 - 06803438 _____ C:\Users\maggi_000\Downloads\Argyll & Bute HSCP Strategic Plan Consultation - Main Report.pdf
2015-12-20 18:43 - 2015-12-20 18:43 - 00135939 _____ C:\Users\maggi_000\Downloads\GHN Staffing Structure Nov 2015.pdf
2015-12-20 18:09 - 2015-12-20 18:09 - 01045966 _____ C:\Users\maggi_000\Downloads\Health and Homelessness Report 2015 (final).pdf
2015-12-20 16:23 - 2016-01-06 22:03 - 00001978 _____ C:\Users\stephen\Desktop\Install Now Autodesk® AutoCAD® 2015.lnk
2015-12-20 16:22 - 2015-12-20 16:22 - 14934512 _____ C:\Users\stephen\Downloads\AutoCAD_2015_English_Win_32_64bit_Trial_wi_en-us_Setup.exe
2015-12-20 16:22 - 2015-12-20 16:22 - 00338320 _____ (Autodesk Inc.) C:\Users\stephen\Downloads\AutoCAD_2015_English_Win_32_64bit_Trial_wi_en-us_Setup_webinstall.exe
2015-12-20 16:20 - 2015-12-20 16:20 - 00338296 _____ (Autodesk Inc.) C:\Users\stephen\Downloads\AutoCAD_2014_English_Win_32_64bit_wi_en-us_Setup_webinstall(1).exe
2015-12-20 16:17 - 2015-12-21 15:06 - 00000000 ____D C:\Users\stephen\AppData\Local\Akamai
2015-12-20 16:16 - 2015-12-20 16:21 - 10934800 _____ C:\Users\stephen\Downloads\AutoCAD_2014_English_Win_32_64bit_wi_en-us_Setup.exe
2015-12-20 16:16 - 2015-12-20 16:16 - 00338296 _____ (Autodesk Inc.) C:\Users\stephen\Downloads\AutoCAD_2014_English_Win_32_64bit_wi_en-us_Setup_webinstall.exe
2015-12-20 14:44 - 2015-12-20 14:44 - 00084446 _____ C:\Users\maggi_000\Downloads\Annex 1 - List of eligible Commonwealth Foundation member countries.pdf
2015-12-20 14:23 - 2015-12-20 14:24 - 03743168 _____ C:\Users\maggi_000\Downloads\Draft 23.pdf
2015-12-20 11:22 - 2015-12-20 11:22 - 01045966 _____ C:\Users\maggi_000\Downloads\Conference Report GHN 2015 FINAL.pdf
2015-12-20 10:57 - 2015-12-20 10:57 - 01045966 _____ C:\Users\maggi_000\Downloads\Health_and_Homelessness_Report_2015_final_(1).pdf
2015-12-20 10:45 - 2015-12-20 10:45 - 01045966 _____ C:\Users\maggi_000\Downloads\Health_and_Homelessness_Report_2015_final_.pdf
2015-12-20 00:19 - 2015-12-20 00:40 - 102691212 _____ (Aslain ) C:\Users\stephen\Downloads\Aslains_XVM_WoT_Modpack_Installer_v.9.13.07.exe
2015-12-19 21:02 - 2015-12-19 21:02 - 00037954 _____ C:\Users\stephen\Downloads\excell tutorial.htm
2015-12-19 15:57 - 2016-01-06 12:47 - 00561682 _____ C:\Users\stephen\Desktop\CT_Ind_-_Com_Tutorial_LO1-_2015_B.pdf
2015-12-19 15:56 - 2015-12-19 15:56 - 00280841 _____ C:\Users\stephen\Downloads\CT_Ind_-_Com_Tutorial_LO1-_2015_B.pdf
2015-12-19 14:06 - 2015-12-19 14:07 - 02641949 _____ C:\Users\maggi_000\Downloads\Argyll & Bute Strategic Plan Consultation - Complete Report (small).pdf
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-18 14:47 - 2015-10-30 07:21 - 00000000 ____D C:\WINDOWS\INF
2016-01-18 14:47 - 2015-08-11 11:25 - 00879220 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-18 14:46 - 2015-10-05 21:26 - 00000916 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-18 14:46 - 2014-06-15 10:28 - 00000000 __RDO C:\Users\maggi_000\OneDrive
2016-01-18 14:41 - 2014-06-07 14:06 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-18 14:36 - 2015-10-05 21:26 - 00000920 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-18 09:22 - 2015-05-22 18:59 - 00000000 ____D C:\ProgramData\WinCalendarV4
2016-01-18 02:41 - 2015-02-21 14:00 - 00000000 ____D C:\Users\stephen\AppData\Roaming\TS3Client
2016-01-18 02:00 - 2014-07-19 10:51 - 00000000 ____D C:\Users\stephen\AppData\Local\Adobe
2016-01-17 19:12 - 2015-07-20 18:09 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-01-17 19:12 - 2015-07-20 18:09 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-01-17 14:14 - 2014-06-15 10:50 - 00004154 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{AF793571-E11C-48A3-B5C9-1D59E4B08831}
2016-01-17 07:42 - 2015-12-10 04:03 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-01-17 07:42 - 2015-12-10 03:56 - 00000000 ____D C:\ProgramData\NVIDIA
2016-01-17 03:09 - 2015-03-23 22:26 - 00000000 ____D C:\Users\stephen\AppData\Roaming\vlc
2016-01-16 22:50 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-01-16 11:17 - 2014-07-19 10:50 - 00000000 ____D C:\Users\maggi_000\AppData\Local\Adobe
2016-01-16 02:06 - 2015-10-30 06:28 - 00000000 ____D C:\Windows
2016-01-16 01:58 - 2015-10-30 06:28 - 01048576 ___SH C:\WINDOWS\system32\config\BBI
2016-01-16 01:58 - 2015-06-25 07:36 - 00000000 ____D C:\Program Files\Common Files\AV
2016-01-16 01:58 - 2015-05-09 15:06 - 00000000 ____D C:\Users\stephen\AppData\LocalLow\Temp
2016-01-16 01:54 - 2014-06-10 16:43 - 00004150 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B1A324D8-A069-4CDA-8F5D-86DAF40AA30B}
2016-01-16 01:46 - 2015-04-06 08:48 - 00000000 ____D C:\AdwCleaner
2016-01-15 21:58 - 2015-10-30 07:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-01-14 22:52 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-01-14 22:49 - 2015-12-08 02:41 - 00000000 ____D C:\Users\stephen\AppData\Local\AvgSetupLog
2016-01-14 22:49 - 2014-09-24 17:42 - 00000000 ____D C:\ProgramData\AVG
2016-01-14 22:48 - 2014-09-24 17:46 - 00000000 ____D C:\Users\stephen\AppData\Local\Avg
2016-01-14 22:48 - 2014-09-05 20:51 - 00000000 ____D C:\ProgramData\MFAData
2016-01-14 22:45 - 2015-10-30 07:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-01-14 21:52 - 2014-08-18 09:13 - 00004154 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3A0A23C3-EEE7-4D3A-958A-5A37272D507E}
2016-01-14 19:35 - 2015-10-30 06:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-01-14 01:15 - 2015-05-27 13:33 - 00003952 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1432733584
2016-01-14 01:15 - 2015-05-27 13:33 - 00001127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-01-14 01:15 - 2015-05-27 13:32 - 00000000 ____D C:\Program Files (x86)\Opera
2016-01-14 01:05 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-01-13 12:40 - 2015-08-14 18:18 - 00000000 ____D C:\Users\cmcga_000\AppData\Local\Comms
2016-01-13 11:13 - 2014-08-17 17:11 - 00000000 ____D C:\Users\cmcga_000\AppData\Local\Packages
2016-01-13 00:41 - 2014-06-27 22:43 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-01-13 00:41 - 2014-06-27 22:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-01-13 00:40 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-01-12 23:10 - 2015-11-26 19:23 - 00000000 ____D C:\ProgramData\Microsoft Help
2016-01-12 23:10 - 2015-02-01 02:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-01-12 23:10 - 2014-06-27 22:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-01-12 23:09 - 2015-10-30 07:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-01-12 23:08 - 2014-06-12 00:18 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-01-12 23:06 - 2014-06-12 00:18 - 143671360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-01-12 06:58 - 2015-12-10 03:57 - 00000000 ____D C:\Users\maggi_000
2016-01-12 06:58 - 2015-12-10 03:57 - 00000000 ____D C:\Users\cmcga_000
2016-01-12 00:01 - 2015-11-26 19:23 - 00000000 ____D C:\Program Files\Microsoft Office
2016-01-12 00:01 - 2015-10-30 07:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-01-12 00:01 - 2014-09-10 16:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-01-12 00:01 - 2014-09-10 16:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2016-01-11 15:42 - 2014-06-07 11:05 - 00000000 ____D C:\Users\stephen\AppData\Local\Packages
2016-01-11 13:25 - 2015-12-10 03:57 - 00000000 ____D C:\Users\stephen
2016-01-08 18:33 - 2014-09-14 11:10 - 00186016 _____ C:\Users\maggi_000\AppData\Local\GDIPFONTCACHEV1.DAT
2016-01-07 19:08 - 2014-06-16 08:13 - 00000551 _____ C:\Users\maggi_000\Desktop\our nos.txt
2016-01-07 00:03 - 2014-10-06 09:00 - 00000000 ____D C:\Users\cmcga_000\AppData\Local\Avg
2016-01-07 00:03 - 2014-09-25 06:56 - 00000000 ____D C:\Users\maggi_000\AppData\Local\Avg
2016-01-06 22:03 - 2015-12-10 04:00 - 00001552 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-01-06 22:03 - 2015-10-05 21:26 - 00002240 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk
2016-01-06 22:03 - 2015-10-05 11:31 - 00001136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2016-01-06 22:03 - 2015-09-29 18:26 - 00001205 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CS4.lnk
2016-01-06 22:03 - 2015-09-29 18:25 - 00001524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Drive CS4.lnk
2016-01-06 22:03 - 2015-09-29 18:25 - 00001179 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS4.lnk
2016-01-06 22:03 - 2015-09-29 18:22 - 00001491 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS4.lnk
2016-01-06 22:03 - 2015-09-29 18:22 - 00001363 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS4.lnk
2016-01-06 22:03 - 2015-08-11 17:41 - 00002533 _____ C:\Users\stephen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-01-06 22:03 - 2015-05-02 16:00 - 00000992 _____ C:\Users\stephen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2016-01-06 22:03 - 2015-04-16 17:14 - 00000690 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\leafDrums 2.lnk
2016-01-06 22:03 - 2014-09-10 16:56 - 00002619 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Open Office Document.lnk
2016-01-06 22:03 - 2014-09-10 16:56 - 00002609 _____ C:\ProgramData\Microsoft\Windows\Start Menu\New Office Document.lnk
2016-01-06 22:03 - 2014-07-28 11:48 - 00001062 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk
2016-01-06 22:03 - 2014-07-22 09:45 - 00002302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2016-01-06 22:03 - 2014-07-19 10:53 - 00001305 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2016-01-06 22:02 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\PLA
2016-01-06 21:46 - 2015-12-10 03:55 - 00000000 ___DC C:\WINDOWS\Panther
2016-01-05 19:23 - 2014-09-15 12:11 - 00186016 _____ C:\Users\stephen\AppData\Local\GDIPFONTCACHEV1.DAT
2016-01-05 06:26 - 2015-12-10 03:55 - 03184824 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-01-05 06:24 - 2015-10-30 18:08 - 00000000 ____D C:\WINDOWS\ShellNew
2016-01-03 01:40 - 2015-10-30 07:26 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-01-03 01:40 - 2015-10-30 07:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-01-02 05:41 - 2014-12-03 20:59 - 00000482 _____ C:\WINDOWS\Tasks\SDMsgUpdate (TE).job
2016-01-01 11:31 - 2014-06-15 10:26 - 00000000 ____D C:\Users\maggi_000\AppData\Roaming\Adobe
2015-12-30 03:19 - 2014-07-05 10:05 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-12-30 03:19 - 2014-06-28 08:39 - 00000000 ____D C:\Users\stephen\AppData\Roaming\Autodesk
2015-12-30 03:19 - 2014-06-28 08:39 - 00000000 ____D C:\ProgramData\Autodesk
2015-12-30 03:18 - 2015-02-01 02:09 - 00000000 ____D C:\Users\stephen\AppData\Local\Microsoft Help
2015-12-29 05:41 - 2014-06-07 14:06 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-12-21 15:21 - 2015-12-16 19:46 - 07493736 _____ C:\Users\stephen\Desktop\Re_ HND Building Surveying Year 2 Graded Unit.eml
2015-12-21 15:12 - 2014-06-28 08:47 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
2015-12-21 15:12 - 2014-06-28 08:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2015-12-21 15:12 - 2014-06-05 10:43 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-21 15:10 - 2014-06-28 08:47 - 00000000 ____D C:\Users\Public\Documents\Autodesk
2015-12-21 15:08 - 2015-02-26 23:01 - 00000000 ____D C:\Program Files\Autodesk
2015-12-21 15:05 - 2015-02-26 22:58 - 00000000 ____D C:\Autodesk
2015-12-19 04:43 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\Provisioning
2015-12-19 04:43 - 2015-10-30 07:24 - 00000000 ____D C:\WINDOWS\bcastdvr
==================== Files in the root of some directories =======
2015-11-09 12:48 - 2015-11-09 12:48 - 0219654 _____ () C:\Users\stephen\AppData\Local\ars.cache
2015-11-09 12:48 - 2015-11-09 12:48 - 0516250 _____ () C:\Users\stephen\AppData\Local\census.cache
2015-11-09 12:41 - 2015-11-09 12:41 - 0000036 _____ () C:\Users\stephen\AppData\Local\housecall.guid.cache
2014-06-08 11:28 - 2015-09-08 23:02 - 0007601 _____ () C:\Users\stephen\AppData\Local\Resmon.ResmonCfg
2015-11-09 12:46 - 2015-11-09 12:46 - 0000010 _____ () C:\Users\stephen\AppData\Local\sponge.last.runtime.cache
2015-12-10 03:56 - 2015-12-10 03:56 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-06-28 08:42 - 2014-06-28 08:42 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2015-12-21 15:10 - 2015-12-21 15:10 - 0000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-01-14 08:26
==================== End of FRST.txt ============================