Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-01-2017
Ran by DigiHead (administrator) on DESKTOP-T6ECQPQ (04-02-2017 11:52:10)
Running from C:\Users\DigiHead\Downloads
Loaded Profiles: DigiHead (Available Profiles: defaultuser0 & DigiHead)
Platform: Microsoft Windows 10 Pro Version 1607 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
(Intel Corporation) C:\Windows\System32\esif_uf.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Dropbox, Inc.) C:\Program Files\Dropbox\Update\DropboxUpdate.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(H.D.S. Hungary) C:\Program Files\Hard Disk Sentinel\HDSentinel.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Lenovo) C:\Program Files\MagicPlus\MagicPlus_helper.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
(Dropbox, Inc.) C:\Program Files\Dropbox\Client\Dropbox.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IDMan.exe
(BitTorrent Inc.) C:\Users\DigiHead\AppData\Roaming\uTorrent\uTorrent.exe
(LAN Messenger) C:\Program Files\LAN Messenger\lmc.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IEMonitor.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\EXCEL.EXE
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [7894536 2016-10-04] (Realtek Semiconductor)
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-22] (Adobe Systems Inc.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [Dropbox] => C:\Program Files\Dropbox\Client\Dropbox.exe [26219896 2017-01-30] (Dropbox, Inc.)
HKLM\...\Run: [MagicPlusHelper] => C:\Program Files\MagicPlus\MagicPlus_helper.exe [2499240 2014-09-29] (Lenovo)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\Run: [IDMan] => C:\Program Files\Internet Download Manager\IDMan.exe [3952696 2016-07-14] (Tonec Inc.)
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\Run: [uTorrent] => C:\Users\DigiHead\AppData\Roaming\uTorrent\uTorrent.exe [2710208 2016-12-17] (BitTorrent Inc.)
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\Run: [LAN Messenger] => C:\Program Files\LAN Messenger\lmc.exe [1721344 2012-07-25] (LAN Messenger)
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7175384 2016-12-06] (Piriform Ltd)
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\MountPoints2: {3ec0bd50-d946-11e6-b1ff-9457a506dff2} - "D:\WD Drive Unlock.exe" autoplay=true
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\MountPoints2: {3ec0bffb-d946-11e6-b1ff-9457a506dff2} - "D:\Lenovo_Suite.exe"
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\MountPoints2: {3ec0c007-d946-11e6-b1ff-9457a506dff2} - "D:\Lenovo_Suite.exe"
HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\MountPoints2: {8b46e981-c43c-11e6-b1f0-707781bf9e56} - "D:\Lenovo_Suite.exe"
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
IFEO\SppExtComObj.exe: [Debugger] SppExtComObjPatcher.exe
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.14.0.dll [2017-01-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files\Internet Download Manager\IDMShellExt.dll [2015-08-14] (Tonec Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk [2016-12-20]
ShortcutTarget: Adobe Acrobat Speed Launcher.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Synchronizer.lnk [2016-12-20]
ShortcutTarget: Adobe Acrobat Synchronizer.lnk -> C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 4.2.2.2 8.8.8.8
Tcpip\..\Interfaces\{0646145c-3a3a-4912-b2ba-6d2f8d95c0f1}: [DhcpNameServer] 4.2.2.2 8.8.8.8
Internet Explorer:
==================
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2016-07-13] (Internet Download Manager, Tonec Inc.)
BHO: Adobe PDF Reader Link Helper -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-07-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-01-23] (Oracle Corporation)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-22] (Adobe Systems Incorporated)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-07-12] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-23] (Oracle Corporation)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-22] (Adobe Systems Incorporated)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2016-05-17] (Microsoft Corporation)
FireFox:
========
FF HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\DigiHead\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\DigiHead\AppData\Roaming\IDM\idmmzcc5 [2017-02-04] [not signed]
FF HKU\S-1-5-21-3518530213-2598402463-2486072489-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files\Internet Download Manager\idmmzcc2.xpi [2016-06-08]
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-23] (Oracle Corporation)
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin:
@tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin:
@tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-07-19] (Microsoft Corporation)
Chrome:
=======
CHR StartupUrls: Default -> "hxxps://www.google.co.in/","hxxps://www.google.com/"
CHR Profile: C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default [2017-02-04]
CHR Extension: (Google Translate) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2016-12-17]
CHR Extension: (Google Slides) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-12-17]
CHR Extension: (Allow Copy - Click to activate on this tab) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\abidndjnodakeaicodfpgcnlkpppapah [2016-12-17]
CHR Extension: (Google Docs) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-17]
CHR Extension: (Google Drive) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-17]
CHR Extension: (YouTube) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-17]
CHR Extension: (Adblock Plus) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-12-17]
CHR Extension: (OneTab) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2016-12-17]
CHR Extension: (Copy All Urls) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\djdmadneanknadilpjiknlnanaolmbfk [2017-02-03]
CHR Extension: (Google Sheets) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-12-17]
CHR Extension: (Chrome Remote Desktop) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2017-02-03]
CHR Extension: (Google Docs Offline) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-17]
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2017-01-13]
CHR Extension: (Pinterest Save Button) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2016-12-17]
CHR Extension: (Hunter) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgmhmanijnjhaffoampdlllchpolkdnj [2017-01-28]
CHR Extension: (goo.gl URL Shortener) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk [2016-12-17]
CHR Extension: (Cisco WebEx Extension) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2017-01-28]
CHR Extension: (Linkedin Search Page Scraper) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfdambiipdjjbjdoooaffbhffajoomkp [2016-12-17]
CHR Extension: (IDM Integration Module) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-12-31]
CHR Extension: (Chrome Web Store Payments) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-19]
CHR Extension: (Gmail) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-17]
CHR Extension: (Chrome Media Router) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-01-28]
CHR Extension: (Scraper) - C:\Users\DigiHead\AppData\Local\Google\Chrome\User Data\Default\Extensions\poegfpiagjgnenagjphgdklmgcpjaofi [2016-12-17]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2016-07-13]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [292832 2016-12-22] (Intel Corporation)
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2017-01-02] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2017-01-02] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [40256 2017-01-30] (Dropbox, Inc.)
R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [391656 2016-08-24] (Digital Wave Ltd.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2166040 2016-12-17] (ESET)
R2 esifsvc; C:\Windows\system32\esif_uf.exe [1304728 2015-12-21] (Intel Corporation)
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2016-12-20] (Macrovision Europe Ltd.) [File not signed]
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [310752 2016-12-22] (Intel Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [3303888 2017-01-20] (Malwarebytes)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [275464 2016-10-04] (Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [1887272 2016-09-15] (Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [238192 2016-05-27] (Synaptics Incorporated)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7183632 2016-07-18] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [271496 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [84928 2016-07-16] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [47080 2015-12-21] (Intel Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [206472 2016-12-17] (ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [14976 2016-12-17] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [156288 2016-12-17] (ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [122496 2016-12-17] (ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [162952 2016-12-17] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [52872 2016-12-17] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [71304 2016-12-17] (ESET)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [227816 2015-12-21] (Intel Corporation)
R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-04] () [File not signed]
R0 iaStorA; C:\Windows\System32\drivers\iaStorA.sys [1992192 2015-11-24] (Intel Corporation)
R3 int0800; C:\Windows\System32\drivers\flashud.sys [42496 2009-09-09] (Intel Corporation)
R3 MEI; C:\Windows\System32\drivers\TeeDriverW8.sys [172096 2016-02-10] (Intel Corporation)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [62976 2016-07-16] ()
R3 rt640x86; C:\Windows\System32\drivers\rt640x86.sys [494080 2016-07-16] (Realtek )
R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [537880 2015-10-07] (Realtek Semiconductor Corporation)
R3 RTWlanE; C:\Windows\System32\drivers\rtwlane.sys [5236736 2017-02-01] (Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [69744 2016-05-27] (Synaptics Incorporated)
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-30] (Almico Software)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [37912 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [244576 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [100192 2016-07-16] (Microsoft Corporation)
R3 WirelessButtonDriver86; C:\Windows\System32\drivers\WirelessButtonDriver86.sys [29688 2015-08-13] (HP)
R3 WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [161280 2016-07-16] (Microsoft Corporation)
S3 dbx; system32\DRIVERS\dbx.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-02-04 11:52 - 2017-02-04 11:53 - 00022436 _____ C:\Users\DigiHead\Downloads\FRST.txt
2017-02-04 11:50 - 2017-02-04 11:52 - 00000000 ____D C:\FRST
2017-02-04 11:48 - 2017-02-04 11:50 - 01762816 _____ (Farbar) C:\Users\DigiHead\Downloads\FRST.exe
2017-02-04 10:32 - 2017-02-04 10:35 - 00009584 _____ C:\Users\DigiHead\Desktop\Prashant bhai.xlsx
2017-02-04 10:17 - 2017-02-04 10:19 - 00073672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-02-04 10:17 - 2017-02-04 10:17 - 00152512 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-02-04 10:17 - 2017-02-04 10:17 - 00094656 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-02-04 10:17 - 2017-02-04 10:17 - 00039360 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-02-04 10:16 - 2017-02-04 10:16 - 00219584 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-02-04 10:16 - 2017-02-04 10:16 - 00002097 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-02-04 10:16 - 2017-02-04 10:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-02-04 10:16 - 2017-02-04 10:16 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-02-04 10:16 - 2017-02-04 10:16 - 00000000 ____D C:\Program Files\Malwarebytes
2017-02-04 10:16 - 2017-01-20 07:47 - 00059976 _____ C:\Windows\system32\Drivers\mbae.sys
2017-02-04 09:57 - 2017-02-04 10:02 - 00000000 ____D C:\Users\DigiHead\Downloads\The.Blacklist.S04E12.HDTV.x264-KILLERS[ettv]
2017-02-03 15:05 - 2017-02-03 15:05 - 00003527 _____ C:\Users\DigiHead\Downloads\20206E644D895751C9E525CB8C376F7F4143484E.torrent
2017-02-03 14:44 - 2017-02-03 14:44 - 00023055 _____ C:\Users\DigiHead\Desktop\Manifest-0da972e28e5547ad-03-Feb-2017-14-44-35.pdf
2017-02-03 11:58 - 2017-02-03 12:04 - 00000000 ____D C:\SWSetup
2017-02-03 11:58 - 2017-02-03 11:58 - 00024576 __RSH C:\Backup.bcd
2017-02-03 11:58 - 2017-02-03 11:58 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2017-02-03 11:10 - 2017-02-03 18:20 - 00090323 _____ C:\Users\DigiHead\Desktop\New Text Document.txt
2017-02-03 10:59 - 2017-02-03 10:59 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\Hard Disk Sentinel
2017-02-03 10:57 - 2017-02-03 14:28 - 00000000 ____D C:\Program Files\Hard Disk Sentinel
2017-02-03 10:57 - 2017-02-03 10:57 - 00001118 _____ C:\Users\DigiHead\Desktop\Hard Disk Sentinel.lnk
2017-02-03 10:57 - 2017-02-03 10:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel
2017-02-03 10:56 - 2017-02-03 10:56 - 00000000 ____D C:\Users\DigiHead\Downloads\Hard Disk Sentinel Pro 4.71.10 Build 8128 Beta Multilingual + Patch [SadeemPC]
2017-02-03 10:54 - 2017-02-03 10:56 - 24302835 _____ C:\Users\DigiHead\Downloads\Hard Disk Sentinel Pro 4.71.10 Build 8128 Beta Multilingual + Patch [SadeemPC].zip
2017-02-03 10:46 - 2017-02-03 10:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-02-03 10:37 - 2017-02-03 10:37 - 00018246 _____ C:\Users\DigiHead\Desktop\Flipkart-Labels-03-Feb-2017-10-37.pdf
2017-02-02 11:43 - 2017-02-02 11:43 - 00000000 ____D C:\Users\DigiHead\Downloads\Automatic Call Recorder Pro v1.09 Apk-XpoZ
2017-02-02 10:07 - 2017-02-02 10:07 - 00000000 ____D C:\Windows\LastGood
2017-02-01 14:28 - 2017-02-03 14:48 - 00000000 ____D C:\Users\DigiHead\Downloads\Black Hawk Down - Extend.Edtion (2001) HQ 1080p Blu-Ray x264 DTSHD-MA 5.1 -DDR
2017-02-01 00:35 - 2017-02-01 00:35 - 05236736 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtwlane.sys
2017-02-01 00:35 - 2017-02-01 00:35 - 01026560 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\Rtlihvs.dll
2017-01-31 17:08 - 2017-02-03 15:06 - 00000000 ____D C:\Users\DigiHead\Desktop\Jammu & Kashmir
2017-01-31 09:52 - 2017-01-31 09:52 - 00099796 _____ C:\Users\DigiHead\Downloads\16032944606_BLJxxxxx7M_A4.pdf
2017-01-30 19:32 - 2017-01-30 19:32 - 00040256 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2017-01-30 19:32 - 2017-01-30 19:32 - 00035440 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2017-01-30 19:32 - 2017-01-30 19:32 - 00035440 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2017-01-30 19:32 - 2017-01-30 19:32 - 00035440 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2017-01-30 18:18 - 2017-01-30 18:24 - 00016588 _____ C:\Users\DigiHead\Desktop\Rajasthan Super Stockists FINAL.xlsx
2017-01-30 13:41 - 2017-01-30 13:41 - 00048608 _____ C:\Users\DigiHead\Desktop\01880100017892.pdf
2017-01-30 13:38 - 2017-01-30 14:09 - 303971872 _____ C:\Users\DigiHead\Downloads\All Activation Windows 7-8-10 v12.0 (Windows & Office Activator) [SadeemPC].zip
2017-01-30 12:06 - 2017-01-30 12:11 - 00000000 ____D C:\Users\DigiHead\Downloads\Dangal (2017) 1GB x264 DesiSCR AAC 2.0 -DDR
2017-01-29 18:49 - 2017-01-29 20:40 - 00009680 _____ C:\Users\DigiHead\Desktop\Ronak Group.xlsx
2017-01-28 16:33 - 2017-01-28 16:34 - 01928703 _____ C:\Users\DigiHead\Desktop\report.pdf
2017-01-28 15:59 - 2017-01-28 15:59 - 00000877 _____ C:\Users\DigiHead\Downloads\4364237279017137.txt
2017-01-28 15:06 - 2017-01-28 15:06 - 00141123 _____ C:\Users\DigiHead\Downloads\APF List.xlsx
2017-01-28 12:15 - 2016-02-27 10:57 - 07332825 _____ C:\Users\DigiHead\Desktop\VID-20160227-WA0000.mp4
2017-01-27 16:50 - 2017-01-27 16:50 - 00000000 ____D C:\Users\DigiHead\Desktop\AMAZON
2017-01-27 10:50 - 2017-01-27 10:51 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-01-25 17:24 - 2016-12-21 10:14 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2017-01-24 17:02 - 2017-01-24 17:02 - 00528838 _____ C:\Users\DigiHead\Desktop\Challan for Ronak ( 23035040 ).pdf
2017-01-24 17:00 - 2017-01-24 17:00 - 00532175 _____ C:\Users\DigiHead\Desktop\23035040 - Ronak - Baroda.pdf
2017-01-24 15:53 - 2017-01-24 15:53 - 00000839 _____ C:\Users\DigiHead\Downloads\4934415653017190.txt
2017-01-24 15:50 - 2017-01-24 15:50 - 00002406 _____ C:\Users\DigiHead\Downloads\4933486145017190.txt
2017-01-24 10:13 - 2017-02-04 11:43 - 00000000 ____D C:\Users\DigiHead\Desktop\STONE
2017-01-23 17:07 - 2017-01-23 17:07 - 00000000 ____D C:\Program Files\Common Files\Java
2017-01-20 13:54 - 2017-01-20 13:54 - 01520509 _____ C:\Users\DigiHead\183797492-PUNJAB-Industry.pdf
2017-01-20 12:10 - 2017-01-31 17:09 - 00000000 ____D C:\Users\DigiHead\Desktop\PUNJAB
2017-01-20 11:21 - 2016-10-29 12:29 - 00729182 _____ C:\Users\DigiHead\Desktop\Laction e_broucher.pdf
2017-01-20 11:21 - 2016-10-29 12:26 - 00510339 _____ C:\Users\DigiHead\Desktop\FUGEN e_broucher.pdf
2017-01-17 12:14 - 2017-01-17 12:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobile Assistant
2017-01-17 12:14 - 2017-01-17 12:14 - 00000000 ____D C:\Program Files\MagicPlus
2017-01-16 18:56 - 2017-01-16 18:56 - 00000000 ____D C:\ProgramData\Western Digital
2017-01-16 18:15 - 2017-01-16 18:16 - 00000000 ____D C:\Users\DigiHead\Downloads\Wondershare Data Recovery 5.0.6.1 FULL + Crack [TechTools.ME]
2017-01-15 12:26 - 2017-02-01 15:56 - 00000000 ____D C:\Users\DigiHead\Desktop\FLIPKART
2017-01-13 11:35 - 2017-01-13 11:37 - 00058977 _____ C:\Users\DigiHead\Desktop\for one tab.xlsx
2017-01-13 09:42 - 2017-01-13 09:42 - 00000000 ____D C:\ProgramData\Synaptics
2017-01-12 12:49 - 2016-12-21 11:29 - 00101728 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2017-01-12 12:49 - 2016-12-21 10:50 - 06020448 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-01-12 12:49 - 2016-12-21 10:39 - 00263472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 03892864 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 01852720 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 01360464 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 01277344 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 01201872 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 00980832 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2017-01-12 12:49 - 2016-12-21 10:32 - 00080224 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2017-01-12 12:49 - 2016-12-21 10:30 - 01384704 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-01-12 12:49 - 2016-12-21 10:17 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2017-01-12 12:49 - 2016-12-21 10:15 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2017-01-12 12:49 - 2016-12-21 10:14 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2017-01-12 12:49 - 2016-12-21 10:13 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2017-01-12 12:49 - 2016-12-21 10:12 - 00330752 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2017-01-12 12:49 - 2016-12-21 10:11 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2017-01-12 12:49 - 2016-12-21 10:10 - 00557568 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2017-01-12 12:49 - 2016-12-21 10:10 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2017-01-12 12:49 - 2016-12-21 10:10 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-12 12:49 - 2016-12-21 10:10 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2017-01-12 12:49 - 2016-12-21 10:09 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2017-01-12 12:49 - 2016-12-21 10:08 - 00866816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2017-01-12 12:49 - 2016-12-21 10:05 - 04612608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2017-01-12 12:49 - 2016-12-21 10:00 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2017-01-12 12:49 - 2016-12-21 09:57 - 00640000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2017-01-12 12:49 - 2016-12-21 09:56 - 03776000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2017-01-12 12:49 - 2016-12-21 09:55 - 07469056 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-01-12 12:49 - 2016-12-21 09:55 - 06474752 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2017-01-12 12:49 - 2016-12-21 09:54 - 06044160 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2017-01-12 12:49 - 2016-12-21 09:54 - 00886272 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2017-01-12 12:49 - 2016-12-21 09:52 - 03596800 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2017-01-12 12:49 - 2016-12-21 09:52 - 01883648 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2017-01-12 12:49 - 2016-12-14 10:51 - 02206496 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-01-12 12:49 - 2016-12-14 10:38 - 00341344 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-12 12:49 - 2016-12-14 10:36 - 00509792 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2017-01-12 12:49 - 2016-12-14 10:31 - 01557808 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-01-12 12:49 - 2016-12-14 10:15 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-01-12 12:49 - 2016-12-14 10:12 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2017-01-12 12:49 - 2016-12-14 10:11 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2017-01-12 12:49 - 2016-12-14 10:10 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2017-01-12 12:49 - 2016-12-14 10:10 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2017-01-12 12:49 - 2016-12-14 10:08 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2017-01-12 12:49 - 2016-12-14 10:06 - 00824320 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2017-01-12 12:49 - 2016-12-14 10:06 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2017-01-12 12:49 - 2016-12-14 10:06 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2017-01-12 12:49 - 2016-12-14 10:06 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2017-01-12 12:49 - 2016-12-14 10:05 - 01722368 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2017-01-12 12:49 - 2016-12-14 10:05 - 00755712 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-12 12:49 - 2016-12-14 10:05 - 00712192 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-01-12 12:49 - 2016-12-14 10:05 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2017-01-12 12:49 - 2016-12-14 09:54 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\MSVP9DEC.dll
2017-01-12 12:49 - 2016-12-14 09:53 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-01-12 12:49 - 2016-12-14 09:53 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2017-01-12 12:49 - 2016-12-14 09:52 - 02998272 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2017-01-12 12:49 - 2016-12-14 09:52 - 02748416 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-01-12 12:49 - 2016-12-14 09:52 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-01-12 12:49 - 2016-12-14 09:52 - 01235456 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2017-01-12 12:49 - 2016-12-14 09:51 - 00860672 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2017-01-12 12:49 - 2016-08-02 10:00 - 00822784 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2017-01-12 12:48 - 2016-12-21 11:29 - 00218976 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2017-01-12 12:48 - 2016-12-21 10:35 - 00523784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-01-12 12:48 - 2016-12-21 10:31 - 00198496 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2017-01-12 12:48 - 2016-12-21 10:11 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-12 12:48 - 2016-12-21 10:05 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2017-01-12 12:48 - 2016-12-21 10:03 - 19413504 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2017-01-12 12:48 - 2016-12-21 10:02 - 19417600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-01-12 12:48 - 2016-12-21 10:00 - 05398016 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2017-01-12 12:48 - 2016-12-21 10:00 - 01406976 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2017-01-12 12:48 - 2016-12-21 10:00 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-01-12 12:48 - 2016-12-21 09:54 - 03733504 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-01-12 12:48 - 2016-12-21 09:53 - 01120256 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-12 12:48 - 2016-12-14 11:28 - 01026912 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 01469792 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems32.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 01136992 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 01127040 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2017-01-12 12:48 - 2016-12-14 10:56 - 00911712 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00812896 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00615264 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2017-01-12 12:48 - 2016-12-14 10:56 - 00558432 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00550240 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00541024 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00498016 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00492384 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00401248 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00372576 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00290656 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2017-01-12 12:48 - 2016-12-14 10:56 - 00141664 _____ (Microsoft Corporation) C:\Windows\system32\AppVNice.exe
2017-01-12 12:48 - 2016-12-14 10:31 - 00382784 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2017-01-12 12:48 - 2016-12-14 10:31 - 00076984 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2017-01-12 12:48 - 2016-12-14 10:16 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-01-12 12:48 - 2016-12-14 10:10 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\CloudBackupSettings.dll
2017-01-12 12:48 - 2016-12-14 10:10 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-12 12:48 - 2016-12-14 10:08 - 13869056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2017-01-12 12:48 - 2016-12-14 10:08 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2017-01-12 12:48 - 2016-12-14 10:07 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2017-01-12 12:48 - 2016-12-14 10:07 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2017-01-12 12:48 - 2016-12-14 10:07 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-01-12 12:48 - 2016-12-14 10:05 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2017-01-12 12:48 - 2016-12-14 10:02 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2017-01-12 12:48 - 2016-12-14 10:02 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2017-01-12 12:48 - 2016-12-14 09:52 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2017-01-12 12:48 - 2016-11-02 17:31 - 00484584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-01-12 12:48 - 2016-11-02 16:35 - 00313088 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2017-01-12 12:48 - 2016-11-02 16:02 - 00786432 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-01-12 12:47 - 2016-12-14 10:35 - 00544608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-01-12 12:47 - 2016-12-14 10:34 - 00261984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2017-01-12 12:42 - 2017-01-12 12:42 - 00000000 ____D C:\Program Files\Synaptics
2017-01-12 12:42 - 2016-05-27 15:42 - 00069744 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2017-01-12 12:09 - 2017-01-12 12:09 - 00000000 ____D C:\Windows\system32\appmgmt
2017-01-12 10:32 - 2017-01-12 10:32 - 00000165 ____H C:\Users\DigiHead\Desktop\~$BUILDING STONE FINAL.xlsx
2017-01-10 12:40 - 2017-01-10 12:40 - 00000000 ____D C:\Users\DigiHead\Desktop\TRUSTSHOP
2017-01-10 11:15 - 2017-01-10 11:15 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\FFSJ
2017-01-10 11:02 - 2017-01-10 11:02 - 00794906 _____ C:\Windows\unins000.exe
2017-01-10 11:02 - 2017-01-10 11:02 - 00004161 _____ C:\Windows\unins000.dat
2017-01-10 11:02 - 2017-01-10 11:02 - 00000983 _____ C:\Users\Public\Desktop\File Splitter & Joiner.lnk
2017-01-10 11:02 - 2017-01-10 11:02 - 00000000 ____D C:\Windows\system32\FFSJ
2017-01-09 17:05 - 2017-01-09 17:05 - 00549034 _____ C:\Users\DigiHead\Documents\SCULPTURE HANDICRAFTS.csv
2017-01-09 16:41 - 2017-01-09 16:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2017-01-09 16:40 - 2017-01-09 16:41 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\DVDVideoSoft
2017-01-09 16:40 - 2017-01-09 16:41 - 00000000 ____D C:\Program Files\DVDVideoSoft
2017-01-09 16:40 - 2017-01-09 16:40 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2017-01-09 16:30 - 2017-01-09 16:30 - 00000000 ____D C:\Users\DigiHead\AppData\Local\FreemakeVideoConverter
2017-01-09 16:29 - 2017-01-12 12:12 - 00000000 ____D C:\ProgramData\Freemake
2017-01-09 16:29 - 2017-01-09 16:30 - 00000000 ____D C:\Users\DigiHead\Documents\Freemake
2017-01-09 14:45 - 2017-01-30 15:43 - 00000000 ____D C:\Users\DigiHead\Desktop\PAYTM
2017-01-09 11:46 - 2017-01-09 11:46 - 00007000 _____ C:\Users\DigiHead\Downloads\0da972e28e5547ad_2016-11-01_2016-11-30.csv
2017-01-07 11:01 - 2017-01-07 11:02 - 16464331 _____ C:\Users\DigiHead\Downloads\com.whatsapp-2.11.515-450271-minAPI7.apk
2017-01-06 15:24 - 2017-01-06 15:24 - 03004235 _____ C:\Users\DigiHead\Downloads\fwsemiiicam.zip
2017-01-06 15:23 - 2017-01-06 15:24 - 03290034 _____ C:\Users\DigiHead\Downloads\fwfwstudymaterialforcomputers.zip
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-02-04 11:52 - 2016-12-17 14:31 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\uTorrent
2017-02-04 11:14 - 2016-12-18 01:26 - 00000000 ____D C:\Windows\system32\SleepStudy
2017-02-04 10:23 - 2016-12-19 13:14 - 00000000 ____D C:\ProgramData\Ashampoo
2017-02-04 10:17 - 2016-12-17 13:45 - 00000000 ____D C:\Users\DigiHead\Documents\Outlook Files
2017-02-04 10:15 - 2016-12-17 19:48 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\MPC-HC
2017-02-04 10:13 - 2016-12-17 14:28 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\IDM
2017-02-04 09:53 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\AppReadiness
2017-02-04 09:52 - 2016-12-28 14:35 - 00000000 ___RD C:\Users\DigiHead\Dropbox
2017-02-04 09:51 - 2016-12-17 12:32 - 00000000 __SHD C:\Users\DigiHead\IntelGraphicsProfiles
2017-02-04 09:51 - 2016-12-17 12:30 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-02-03 22:38 - 2016-12-17 14:28 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\DMCache
2017-02-03 18:37 - 2016-12-18 01:35 - 00000000 ____D C:\Users\DigiHead
2017-02-03 18:34 - 2016-07-16 13:58 - 00000000 ____D C:\Windows\INF
2017-02-03 12:03 - 2016-12-18 01:26 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-02-03 11:59 - 2016-07-16 07:52 - 00262144 _____ C:\Windows\system32\config\BBI
2017-02-03 11:10 - 2016-12-17 12:28 - 00000000 ____D C:\Users\DigiHead\AppData\Local\VirtualStore
2017-02-03 10:46 - 2016-12-28 14:25 - 00000000 ____D C:\Program Files\Dropbox
2017-02-03 09:46 - 2016-07-16 13:59 - 00000000 ___HD C:\Program Files\WindowsApps
2017-02-02 14:01 - 2016-12-18 01:36 - 00000000 ____D C:\Users\DigiHead\AppData\Local\Packages
2017-02-02 11:53 - 2016-12-18 01:37 - 01191310 _____ C:\Windows\system32\PerfStringBackup.INI
2017-02-02 09:59 - 2016-12-17 12:40 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-02 09:59 - 2016-12-17 12:40 - 00002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-02-01 15:55 - 2016-12-19 17:39 - 00000000 ___HD C:\Users\DigiHead\Desktop\.picasaoriginals
2017-01-30 18:17 - 2016-12-17 14:48 - 00000000 ____D C:\Users\DigiHead\Documents\Received Files
2017-01-27 10:51 - 2016-12-17 12:30 - 00000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2017-01-27 10:51 - 2016-12-17 12:16 - 00000000 ____D C:\Program Files\Intel
2017-01-25 18:09 - 2016-07-16 13:49 - 00000000 ____D C:\Windows\CbsTemp
2017-01-23 17:07 - 2016-12-17 12:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-01-23 17:07 - 2016-12-17 12:41 - 00000000 ____D C:\ProgramData\Oracle
2017-01-23 17:07 - 2016-12-17 12:41 - 00000000 ____D C:\Program Files\Java
2017-01-23 17:06 - 2016-12-17 12:42 - 00095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2017-01-20 18:03 - 2017-01-04 09:45 - 00000000 ____D C:\Users\DigiHead\Desktop\SNap Deal
2017-01-18 17:14 - 2016-12-17 12:38 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\vlc
2017-01-17 12:14 - 2016-12-19 17:20 - 00000527 _____ C:\Users\DigiHead\ticket1.xml
2017-01-16 11:06 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\rescache
2017-01-13 09:41 - 2016-12-18 01:25 - 00343496 _____ C:\Windows\system32\FNTCACHE.DAT
2017-01-13 08:12 - 2016-07-16 13:59 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2017-01-13 08:12 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2017-01-13 08:12 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\system32\oobe
2017-01-13 08:12 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\ShellExperiences
2017-01-13 08:12 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\Provisioning
2017-01-13 08:12 - 2016-07-16 13:59 - 00000000 ____D C:\Windows\PolicyDefinitions
2017-01-12 18:13 - 2016-12-17 12:58 - 00000000 ____D C:\Users\DigiHead\AppData\Local\Microsoft Help
2017-01-12 13:20 - 2016-12-17 13:58 - 00000000 ____D C:\Windows\system32\MRT
2017-01-12 13:14 - 2016-12-17 13:57 - 133456224 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-01-12 12:14 - 2016-12-19 17:19 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\Lenovo
2017-01-12 12:14 - 2016-12-18 01:38 - 00000000 ___RD C:\Users\DigiHead\OneDrive
2017-01-12 12:13 - 2016-12-19 12:22 - 00000000 ____D C:\ProgramData\Wondershare
2017-01-12 12:13 - 2016-12-19 12:22 - 00000000 ____D C:\Program Files\Wondershare
2017-01-12 12:13 - 2016-12-17 12:28 - 00000000 ____D C:\Users\DigiHead\AppData\Roaming\Synaptics
2017-01-12 12:09 - 2016-12-17 15:50 - 00000000 ____D C:\Program Files\Adobe
2017-01-11 16:42 - 2016-12-17 14:34 - 00002669 _____ C:\Users\DigiHead\Desktop\µTorrent.lnk
2017-01-05 09:47 - 2017-01-02 11:44 - 00000932 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2017-01-05 09:47 - 2017-01-02 11:44 - 00000928 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-02-03 09:53
==================== End of FRST.txt ============================