Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- DDS (Ver_2012-11-20.01) - NTFS_AMD64
- Internet Explorer: 11.0.9600.16518 BrowserJavaVersion: 10.51.2
- Run by Ron at 12:04:16 on 2014-03-28
- Microsoft Windows 8.1 Pro 6.3.9600.0.1252.1.1033.18.8136.6381 [GMT -5:00]
- .
- AV: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- .
- ============== Running Processes ===============
- .
- C:\Windows\system32\svchost.exe -k DcomLaunch
- C:\Windows\system32\svchost.exe -k RPCSS
- C:\Windows\system32\dwm.exe
- C:\Windows\system32\nvvsvc.exe
- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
- C:\Windows\system32\nvvsvc.exe
- C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
- C:\Windows\system32\svchost.exe -k netsvcs
- C:\Windows\system32\svchost.exe -k LocalService
- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
- C:\Windows\system32\svchost.exe -k NetworkService
- C:\Windows\System32\spoolsv.exe
- C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
- C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
- C:\Windows\system32\taskhostex.exe
- C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
- C:\Windows\system32\taskeng.exe
- C:\Windows\Explorer.EXE
- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
- C:\Windows\system32\dashost.exe
- Z:\cleanup\Malwarebytes Anti-Malware\mbamscheduler.exe
- Z:\cleanup\Malwarebytes Anti-Malware\mbamservice.exe
- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- Z:\cleanup\Malwarebytes Anti-Malware\mbam.exe
- C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
- C:\Program Files (x86)\Skype\Updater\Updater.exe
- C:\Windows\Microsoft\System Update kb77600\WindowsUpdater.exe
- C:\Program Files (x86)\MSR\Privoxy\privoxy.exe
- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
- C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
- C:\Windows\system32\wbem\wmiprvse.exe
- C:\Windows\system32\SearchIndexer.exe
- C:\Windows\system32\SearchProtocolHost.exe
- C:\Windows\system32\SearchFilterHost.exe
- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
- C:\Program Files\Windows Defender\MpCmdRun.exe
- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- C:\Windows\System32\rundll32.exe
- C:\Program Files (x86)\Skype\Phone\Skype.exe
- C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
- C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe
- Z:\PowerISO\PWRISOVM.EXE
- Z:\UniServerZ\UniController.exe
- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
- Z:\UniServerZ\core\apache2\bin\httpd_z.exe
- Z:\UniServerZ\core\apache2\bin\httpd_z.exe
- Z:\UniServerZ\core\mysql\bin\mysqld_z.exe
- C:\Windows\System32\cscript.exe
- .
- ============== Pseudo HJT Report ===============
- .
- uStart Page = hxxp://www.google.com
- uProxyServer = hxxp=127.0.0.1:8118;https=127.0.0.1:8118
- mWinlogon: Userinit = userinit.exe,
- BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
- BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL
- BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
- uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
- mRun: [Sound Blaster Cinema] "C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe" /r
- mRun: [UpdReg] C:\Windows\UpdReg.EXE
- mRun: [PWRISOVM.EXE] Z:\PowerISO\PWRISOVM.EXE -startup
- mRun: [UniServerRun] Z:\UniServerZ\UniController.exe pc_win_start
- mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
- StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\KILLER~1.LNK - C:\Windows\Installer\{A003678C-C125-49A0-90D0-99AE485F6F92}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
- IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
- IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
- IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll
- IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
- TCP: NameServer = 192.168.1.1
- TCP: Interfaces\{FE4AE4A8-C0BB-455B-897D-C3528C3A242F} : DHCPNameServer = 192.168.1.1
- Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL
- Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
- SSODL: WebCheck - <orphaned>
- LSA: Security Packages = ""
- mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
- x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
- x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
- x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
- x64-Run: [IgfxTray] "C:\Windows\System32\igfxtray.exe"
- x64-Run: [HotKeysCmds] "C:\Windows\System32\hkcmd.exe"
- x64-Run: [Persistence] "C:\Windows\System32\igfxpers.exe"
- x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
- x64-Run: [MBCfg64] C:\Windows\System32\RunDLL32.exe C:\Windows\System32\MBCfg64.dll,RunDLLEntry MBCfg64
- x64-Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
- x64-Run: [ShadowPlay] C:\Windows\System32\rundll32.exe C:\Windows\System32\nvspcap64.dll,ShadowPlayOnSystemStart
- x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
- x64-Run: [Logitech Download Assistant] C:\Windows\System32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
- x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
- x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
- x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
- x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
- x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
- x64-Notify: igfxcui - igfxdev.dll
- x64-SSODL: WebCheck - <orphaned>
- x64-mASetup: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
- x64-mASetup: {89820200-ECBD-11cf-8B85-00AA005B4340} - U
- .
- ================= FIREFOX ===================
- .
- FF - ProfilePath - C:\Users\Ron\AppData\Roaming\Mozilla\Firefox\Profiles\blv172cg.default\
- FF - prefs.js: network.proxy.ssl_port - 8118
- FF - plugin: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll
- FF - plugin: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npdeployJava1.dll
- FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
- FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
- FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
- FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
- .
- ============= SERVICES / DRIVERS ===============
- .
- R0 intelpep;Intel(R) Power Engine Plug-in Driver;C:\Windows\System32\drivers\intelpep.sys [2014-3-7 39768]
- R1 ahcache;Application Compatibility Cache;C:\Windows\System32\drivers\ahcache.sys [2013-8-22 76800]
- R1 BfLwf;Qualcomm Atheros Bandwidth Control;C:\Windows\System32\drivers\bwcW8x64.sys [2013-2-13 75056]
- R2 ClickToRunSvc;Microsoft Office ClickToRun Service;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2014-3-16 2169016]
- R2 MBAMScheduler;MBAMScheduler;Z:\cleanup\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-3-28 1809720]
- R2 MBAMService;MBAMService;Z:\cleanup\Malwarebytes Anti-Malware\mbamservice.exe [2014-3-28 857912]
- R2 NvNetworkService;NVIDIA Network Service;C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-3-6 1593632]
- R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-3-6 16939296]
- R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2;C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-9-11 340480]
- R2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
- R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-3-10 411936]
- R2 System Update kb77600;System Update kb77600;C:\Windows\Microsoft\System Update kb77600\WindowsUpdater.exe [2014-3-24 17920]
- R3 ISCT;Intel(R) Smart Connect Technology Device Driver;C:\Windows\System32\drivers\ISCTD64.sys [2013-7-31 47008]
- R3 iwdbus;IWD Bus Enumerator;C:\Windows\System32\drivers\iwdbus.sys [2013-8-8 26008]
- R3 Ke2200;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller;C:\Windows\System32\drivers\e22w8x64.sys [2013-3-20 163536]
- R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2014-3-28 25816]
- R3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-3-28 119512]
- R3 MBAMWebAccessControl;MBAMWebAccessControl;C:\Windows\System32\drivers\mwac.sys [2014-3-28 63192]
- R3 MBfilt;MBfilt;C:\Windows\System32\drivers\MBfilt64.sys [2014-3-5 32344]
- R3 NcbService;Network Connection Broker;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2013-8-22 37768]
- R3 NdisVirtualBus;Microsoft Virtual Network Adapter Enumerator;C:\Windows\System32\drivers\NdisVirtualBus.sys [2013-8-22 16384]
- R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2014-3-6 39200]
- R3 SaiK0CC3;SaiK0CC3;C:\Windows\System32\drivers\SaiK0CC3.sys [2010-4-22 171016]
- R3 SaiU0CC3;SaiU0CC3;C:\Windows\System32\drivers\SaiU0CC3.sys [2010-4-22 41096]
- R3 WdNisDrv;Windows Defender Network Inspection System Driver;C:\Windows\System32\drivers\WdNisDrv.sys [2014-3-11 124760]
- R3 WdNisSvc;Windows Defender Network Inspection Service;C:\Program Files\Windows Defender\NisSrv.exe [2014-3-11 348392]
- S3 ADP80XX;ADP80XX;C:\Windows\System32\drivers\adp80xx.sys [2013-8-22 782176]
- S3 AppReadiness;App Readiness;C:\Windows\System32\svchost.exe -k AppReadiness [2013-8-22 37768]
- S3 AppXSvc;AppX Deployment Service (AppXSVC);C:\Windows\System32\svchost.exe -k wsappx [2013-8-22 37768]
- S3 bcmfn2;bcmfn2 Service;C:\Windows\System32\drivers\bcmfn2.sys [2013-8-22 17624]
- S3 iaLPSSi_GPIO;Intel(R) Serial IO GPIO Controller Driver;C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [2013-8-22 24568]
- S3 iaLPSSi_I2C;Intel(R) Serial IO I2C Controller Driver;C:\Windows\System32\drivers\iaLPSSi_I2C.sys [2013-8-22 99320]
- S3 iaStorAV;Intel(R) SATA RAID Controller Windows;C:\Windows\System32\drivers\iaStorAV.sys [2013-8-22 651248]
- S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-3-7 111616]
- S3 intaud_WaveExtensible;Intel WiDi Audio Device;C:\Windows\System32\drivers\intelaud.sys [2013-8-8 39320]
- S3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2014-3-5 449528]
- S3 kbldfltr;kbldfltr;C:\Windows\System32\drivers\kbldfltr.sys [2013-8-22 22272]
- S3 lfsvc;Windows Location Framework Service;C:\Windows\System32\svchost.exe -k netsvcs [2013-8-22 37768]
- S3 LSI_SAS3;LSI_SAS3;C:\Windows\System32\drivers\lsi_sas3.sys [2013-8-22 81760]
- S3 netvsc;netvsc;C:\Windows\System32\drivers\netvsc63.sys [2013-8-22 87040]
- S3 ReFS;ReFS;C:\Windows\System32\drivers\refs.sys [2013-8-22 924512]
- S3 ScDeviceEnum;Smart Card Device Enumeration Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2013-8-22 37768]
- S3 SerCx2;Serial UART Support Library;C:\Windows\System32\drivers\SerCx2.sys [2014-3-7 146776]
- S3 smphost;Microsoft Storage Spaces SMP;C:\Windows\System32\svchost.exe -k smphost [2013-8-22 37768]
- S3 stornvme;Microsoft Standard NVM Express Driver;C:\Windows\System32\drivers\stornvme.sys [2014-3-7 57176]
- S3 UEFI;Microsoft UEFI Driver;C:\Windows\System32\drivers\uefi.sys [2013-8-22 26976]
- S3 vmbusr;Virtual Machine Bus Provider;C:\Windows\System32\drivers\vmbusr.sys [2013-8-22 129536]
- S3 vmicguestinterface;Hyper-V Guest Service Interface;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2013-8-22 37768]
- S3 WEPHOSTSVC;Windows Encryption Provider Host Service;C:\Windows\System32\svchost.exe -k WepHostSvcGroup [2013-8-22 37768]
- S3 workfolderssvc;Work Folders;C:\Windows\System32\svchost.exe -k LocalService [2013-8-22 37768]
- S3 xusb22;Xbox 360 Wireless Receiver Driver Service 22;C:\Windows\System32\drivers\xusb22.sys [2013-8-22 87040]
- S4 MsKeyboardFilter;Microsoft Keyboard Filter;C:\Windows\System32\svchost.exe -k netsvcs [2013-8-22 37768]
- .
- =============== Created Last 30 ================
- .
- 2014-03-28 16:47:56 -------- d-----w- C:\Users\Ron\AppData\Local\ElevatedDiagnostics
- 2014-03-28 16:25:49 -------- d-----w- C:\Windows\pss
- 2014-03-28 12:54:51 10521840 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41874D46-B8B3-47D7-8973-E1AEB50CA0DF}\mpengine.dll
- 2014-03-28 06:37:03 -------- d-----w- C:\Users\Ron\AppData\Local\Mozilla
- 2014-03-28 06:13:46 119512 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
- 2014-03-28 06:13:37 88280 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
- 2014-03-28 06:13:37 63192 ----a-w- C:\Windows\System32\drivers\mwac.sys
- 2014-03-28 06:13:37 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
- 2014-03-28 06:13:37 -------- d-----w- C:\ProgramData\Malwarebytes
- 2014-03-28 06:11:29 -------- d-----w- C:\Windows\ERUNT
- 2014-03-28 06:06:32 -------- d-----w- C:\AdwCleaner
- 2014-03-27 17:53:20 10521840 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
- 2014-03-25 10:37:34 1031560 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{76CD7A33-3D9E-4A73-8B1A-5F00F78F67EA}\gapaengine.dll
- 2014-03-24 19:34:28 139776 ----a-w- C:\Windows\System32\poqexec.exe
- 2014-03-24 19:34:28 124416 ----a-w- C:\Windows\SysWow64\poqexec.exe
- 2014-03-24 05:42:00 -------- d-----w- C:\Windows\Microsoft
- 2014-03-24 05:41:58 -------- d-----w- C:\Program Files (x86)\MSR
- 2014-03-24 05:41:55 -------- d-----w- C:\Users\Ron\AppData\Local\Programs
- 2014-03-24 05:41:49 1172736 ----a-w- C:\Users\Ron\AppData\Local\nsj3A1.tmp
- 2014-03-24 05:41:35 -------- d-----w- C:\Users\Ron\AppData\Local\Popajar
- 2014-03-19 04:42:30 -------- d-----w- C:\Users\Ron\AppData\Roaming\.minecraft
- 2014-03-19 04:31:44 -------- d-----w- C:\ProgramData\Oracle
- 2014-03-19 04:31:42 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
- 2014-03-17 01:56:01 -------- d-----r- C:\Users\Ron\OneDrive
- 2014-03-17 01:55:57 -------- d-----w- C:\ProgramData\Microsoft OneDrive
- 2014-03-17 01:52:30 578256 ----a-w- C:\ProgramData\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe
- 2014-03-17 01:49:57 -------- d-----w- C:\Program Files\Microsoft Office 15
- 2014-03-11 08:17:08 -------- d-----w- C:\Users\Ron\AppData\Roaming\OBS
- 2014-03-11 08:17:04 -------- d-----w- C:\Program Files\OBS
- 2014-03-11 08:17:03 -------- d-----w- C:\Program Files (x86)\OBS
- 2014-03-11 08:15:59 24920 ----a-w- C:\Windows\System32\X3DAudio1_7.dll
- 2014-03-11 08:15:59 238936 ----a-w- C:\Windows\SysWow64\xactengine3_6.dll
- 2014-03-11 08:15:59 22360 ----a-w- C:\Windows\SysWow64\X3DAudio1_7.dll
- 2014-03-11 08:15:59 176984 ----a-w- C:\Windows\System32\xactengine3_6.dll
- 2014-03-11 08:14:55 -------- d-----w- C:\Windows\SysWow64\directx
- 2014-03-10 09:40:34 599840 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
- 2014-03-09 17:49:46 5554512 ----a-w- C:\Windows\System32\d3dcsx_42.dll
- 2014-03-09 17:48:31 -------- d-----w- C:\Users\Ron\AppData\Local\FalloutNV
- 2014-03-09 17:47:37 -------- d-----w- C:\Users\Ron\AppData\Local\Black_Tree_Gaming
- 2014-03-08 16:19:51 -------- d-----w- C:\Users\Ron\AppData\Local\Wizards of the Coast
- 2014-03-08 16:19:46 -------- d-----w- C:\ProgramData\Gibraltar
- 2014-03-08 16:18:59 -------- d-----w- C:\Users\Ron\AppData\Local\Deployment
- 2014-03-08 16:18:59 -------- d-----w- C:\Users\Ron\AppData\Local\Apps
- 2014-03-07 18:24:03 -------- d-----w- C:\Users\Ron\AppData\Local\Creative
- 2014-03-07 16:49:29 -------- d-----w- C:\Program Files\Microsoft Mouse and Keyboard Center
- 2014-03-07 14:32:36 -------- d-----w- C:\Users\Ron\AppData\Roaming\PowerISO
- 2014-03-07 14:31:43 439296 ----a-w- C:\Windows\System32\plsapp64.dll
- 2014-03-07 14:31:25 129944 ----a-w- C:\Windows\System32\drivers\scdemu.sys
- 2014-03-07 14:31:14 -------- d-----w- C:\Program Files\PowerISO
- 2014-03-07 14:21:18 -------- d-----w- C:\Windows\System32\appmgmt
- 2014-03-07 10:35:02 23492992 ----a-w- C:\Program Files\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
- 2014-03-07 10:35:02 22808656 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
- 2014-03-07 10:34:16 -------- d-----w- C:\Windows\System32\MRT
- 2014-03-07 05:41:38 3210528 ----a-w- C:\Windows\System32\msmpeg2vdec.dll
- 2014-03-07 05:39:22 869888 ----a-w- C:\Windows\SysWow64\twinui.appcore.dll
- 2014-03-07 05:38:59 76800 ----a-w- C:\Windows\System32\BulkOperationHost.exe
- 2014-03-07 05:37:35 1245696 ----a-w- C:\Windows\System32\sysmain.dll
- 2014-03-07 05:36:35 270496 ------w- C:\Windows\System32\MpSigStub.exe
- 2014-03-07 05:35:20 1286552 ----a-w- C:\Windows\System32\msctf.dll
- 2014-03-07 05:35:20 1217024 ----a-w- C:\Windows\System32\Windows.Media.Streaming.dll
- 2014-03-07 05:35:20 1018960 ----a-w- C:\Windows\SysWow64\msctf.dll
- 2014-03-07 05:35:19 977408 ----a-w- C:\Windows\SysWow64\Windows.Media.Streaming.dll
- 2014-03-07 05:35:19 294400 ----a-w- C:\Windows\System32\Windows.Devices.Sensors.dll
- 2014-03-07 05:35:19 225792 ----a-w- C:\Windows\SysWow64\Windows.Devices.Sensors.dll
- 2014-03-07 04:48:29 -------- d-----w- C:\Users\Ron\AppData\Roaming\NVIDIA
- 2014-03-06 17:37:26 -------- d-----w- C:\Users\Ron\AppData\Local\Blizzard
- 2014-03-06 17:30:06 -------- d-----w- C:\Program Files (x86)\Hearthstone
- 2014-03-06 17:28:30 -------- d-----w- C:\Users\Ron\AppData\Roaming\Battle.net
- 2014-03-06 17:28:30 -------- d-----w- C:\Users\Ron\AppData\Local\Battle.net
- 2014-03-06 17:28:26 -------- d-----w- C:\ProgramData\Blizzard Entertainment
- 2014-03-06 17:28:26 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment
- 2014-03-06 17:28:26 -------- d-----w- C:\Program Files (x86)\Battle.net
- 2014-03-06 17:27:55 -------- d-----w- C:\ProgramData\Battle.net
- 2014-03-06 17:11:09 -------- d-----w- C:\Users\Ron\AppData\Roaming\LolClient
- 2014-03-06 17:01:33 -------- d-----w- C:\Users\Ron\AppData\Local\Skype
- 2014-03-06 17:01:29 -------- d-----r- C:\Program Files (x86)\Skype
- 2014-03-06 15:53:41 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
- 2014-03-06 09:25:11 778936 ----a-w- C:\Windows\SysWow64\PresentationNative_v0300.dll
- 2014-03-06 09:25:11 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
- 2014-03-06 09:25:11 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe
- 2014-03-06 09:25:11 124112 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
- 2014-03-06 09:25:11 1166520 ----a-w- C:\Windows\System32\PresentationNative_v0300.dll
- 2014-03-06 09:25:11 102608 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
- 2014-03-06 09:24:37 68616 ----a-w- C:\Windows\SysWow64\XAPOFX1_1.dll
- 2014-03-06 09:24:37 509448 ----a-w- C:\Windows\SysWow64\XAudio2_2.dll
- 2014-03-06 09:24:37 467984 ----a-w- C:\Windows\SysWow64\d3dx10_39.dll
- 2014-03-06 09:24:37 3851784 ----a-w- C:\Windows\SysWow64\D3DX9_39.dll
- 2014-03-06 09:24:37 1493528 ----a-w- C:\Windows\SysWow64\D3DCompiler_39.dll
- 2014-03-06 09:24:34 -------- d-----w- C:\Riot Games
- 2014-03-06 09:14:10 -------- d-----w- C:\Program Files (x86)\Pando Networks
- 2014-03-06 09:13:45 -------- d-----w- C:\Users\Ron\AppData\Roaming\Riot Games
- 2014-03-06 09:13:00 31520 ----a-w- C:\Windows\System32\nvhdap64.dll
- 2014-03-06 09:13:00 197408 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
- 2014-03-06 09:13:00 1885472 ----a-w- C:\Windows\System32\nvdispco6433489.dll
- 2014-03-06 09:13:00 1515296 ----a-w- C:\Windows\System32\nvhdagenco6420103.dll
- 2014-03-06 09:13:00 1515296 ----a-w- C:\Windows\System32\nvdispgenco6433489.dll
- 2014-03-06 09:10:25 511328 ----a-w- C:\Windows\System32\d3dx10_43.dll
- 2014-03-06 09:10:25 470880 ----a-w- C:\Windows\SysWow64\d3dx10_43.dll
- 2014-03-06 09:10:25 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll
- 2014-03-06 09:10:25 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll
- 2014-03-06 09:10:25 2401112 ----a-w- C:\Windows\System32\D3DX9_43.dll
- 2014-03-06 09:10:25 1998168 ----a-w- C:\Windows\SysWow64\D3DX9_43.dll
- 2014-03-06 09:10:22 -------- d-----w- C:\Users\Ron\AppData\Local\NVIDIA Corporation
- 2014-03-06 09:10:09 39200 ----a-w- C:\Windows\System32\drivers\nvvad64v.sys
- 2014-03-06 09:10:09 33056 ----a-w- C:\Windows\SysWow64\nvaudcap32v.dll
- 2014-03-06 09:10:01 -------- d-----w- C:\Users\Ron\AppData\Local\NVIDIA
- 2014-03-06 09:09:17 1179576 ----a-w- C:\Windows\System32\nvspcap64.dll
- 2014-03-06 09:09:17 1048152 ----a-w- C:\Windows\SysWow64\nvspcap.dll
- 2014-03-06 09:09:05 922968 ----a-w- C:\Windows\System32\nvvsvc.exe
- 2014-03-06 09:09:05 6714312 ----a-w- C:\Windows\System32\nvcpl.dll
- 2014-03-06 09:09:05 64968 ----a-w- C:\Windows\System32\nvshext.dll
- 2014-03-06 09:09:05 386336 ----a-w- C:\Windows\System32\nvmctray.dll
- 2014-03-06 09:09:05 3649185 ----a-w- C:\Windows\System32\nvcoproc.bin
- 2014-03-06 09:09:05 3497816 ----a-w- C:\Windows\System32\nvsvc64.dll
- 2014-03-06 09:09:05 2559776 ----a-w- C:\Windows\System32\nvsvcr.dll
- 2014-03-06 09:08:54 -------- d-----w- C:\ProgramData\NVIDIA Corporation
- 2014-03-06 09:08:53 17536 ----a-w- C:\ProgramData\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
- 2014-03-06 09:08:52 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
- 2014-03-06 09:08:43 35104 ----a-w- C:\Windows\System32\nvaudcap64v.dll
- 2014-03-06 09:08:43 1884448 ----a-w- C:\Windows\System32\nvdispco6433165.dll
- 2014-03-06 09:08:43 1511712 ----a-w- C:\Windows\System32\nvdispgenco6433165.dll
- 2014-03-06 09:08:43 1510176 ----a-w- C:\Windows\System32\nvhdagenco64.dll
- 2014-03-06 09:08:42 947808 ----a-w- C:\Windows\System32\nvumdshimx.dll
- 2014-03-06 09:08:42 3093280 ----a-w- C:\Windows\System32\nvapi64.dll
- 2014-03-06 09:08:42 2715264 ----a-w- C:\Windows\SysWow64\nvapi.dll
- 2014-03-06 09:08:42 18302384 ----a-w- C:\Windows\System32\nvwgf2umx.dll
- 2014-03-06 09:08:42 14709720 ----a-w- C:\Windows\SysWow64\nvd3dum.dll
- 2014-03-06 09:07:58 -------- d-----w- C:\Program Files\NVIDIA Corporation
- 2014-03-06 00:08:34 729088 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll
- 2014-03-06 00:08:34 69715 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll
- 2014-03-06 00:08:34 5632 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe
- 2014-03-06 00:08:34 266240 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll
- 2014-03-06 00:08:34 192512 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll
- 2014-03-06 00:08:26 311428 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll
- 2014-03-06 00:08:26 188548 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll
- 2014-03-06 00:08:09 -------- d-----w- C:\Users\Ron\AppData\Local\Google
- 2014-03-06 00:06:51 -------- d-----w- C:\ProgramData\Qualcomm
- 2014-03-06 00:06:40 -------- d-----w- C:\Program Files\Qualcomm Atheros
- 2014-03-06 00:06:33 -------- d-----w- C:\ProgramData\Downloaded Installations
- 2014-03-06 00:06:02 449528 ----a-w- C:\Windows\System32\drivers\IntcDAud.sys
- 2014-03-06 00:03:37 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll
- 2014-03-06 00:03:05 -------- d-----w- C:\Intel
- 2014-03-06 00:02:45 -------- d-----w- C:\MSI
- 2014-03-06 00:01:36 -------- d-----w- C:\Users\Ron\AppData\Local\Diagnostics
- 2014-03-05 23:53:28 -------- d-----w- C:\NVIDIA
- 2014-03-05 23:29:06 -------- d-----w- C:\Windows\System32\wbem\Performance
- 2014-03-05 23:27:02 2407936 ----a-w- C:\Windows\SysWow64\PrintConfig.dll
- 2014-03-05 23:26:00 -------- d-----r- C:\Users\Ron\Searches
- 2014-03-05 23:26:00 -------- d-----r- C:\Users\Ron\Contacts
- 2014-03-05 23:13:59 -------- d-----w- C:\Windows\Panther
- 2014-03-02 21:23:56 773968 ----a-w- C:\Windows\SysWow64\msvcr100.dll
- 2014-03-02 21:23:56 421200 ----a-w- C:\Windows\SysWow64\msvcp100.dll
- .
- ==================== Find3M ====================
- .
- 2014-03-04 22:53:05 105464 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
- 2014-03-04 22:53:04 693240 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
- 2014-03-02 22:48:02 829264 ----a-w- C:\Windows\System32\msvcr100.dll
- 2014-03-02 22:48:02 608080 ----a-w- C:\Windows\System32\msvcp100.dll
- 2014-03-01 03:54:33 5768704 ----a-w- C:\Windows\System32\jscript9.dll
- 2014-03-01 03:14:15 4244480 ----a-w- C:\Windows\SysWow64\jscript9.dll
- 2014-03-01 03:10:28 2334208 ----a-w- C:\Windows\System32\wininet.dll
- 2014-03-01 02:32:16 1820160 ----a-w- C:\Windows\SysWow64\wininet.dll
- 2014-02-11 03:04:35 4189184 ----a-w- C:\Windows\System32\win32k.sys
- 2014-02-11 02:43:06 488448 ----a-w- C:\Windows\SysWow64\qedit.dll
- 2014-02-11 02:04:45 586240 ----a-w- C:\Windows\System32\qedit.dll
- 2014-02-06 11:30:46 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
- 2014-02-06 11:30:12 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
- 2014-02-06 11:07:39 66048 ----a-w- C:\Windows\System32\iesetup.dll
- 2014-02-06 11:06:47 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
- 2014-02-06 10:49:03 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
- 2014-02-06 10:48:45 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
- 2014-02-06 10:48:11 708608 ----a-w- C:\Windows\System32\jscript9diag.dll
- 2014-02-06 10:20:26 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
- 2014-02-06 10:01:36 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll
- 2014-02-06 10:00:46 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
- 2014-02-06 09:50:32 2041856 ----a-w- C:\Windows\System32\inetcpl.cpl
- 2014-02-06 09:47:22 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
- 2014-02-06 09:46:27 553472 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
- 2014-02-06 09:09:30 1964032 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
- 2014-01-31 16:15:23 311640 -c--a-w- C:\Windows\System32\drivers\volsnap.sys
- 2014-01-31 16:07:00 233920 ----a-w- C:\Windows\System32\mfps.dll
- 2014-01-31 16:06:52 2133208 ----a-w- C:\Windows\System32\mfcore.dll
- 2014-01-31 13:47:35 2143960 ----a-w- C:\Windows\SysWow64\mfcore.dll
- 2014-01-31 09:06:05 716288 ----a-w- C:\Windows\System32\swprv.dll
- 2014-01-29 08:53:43 458616 ----a-w- C:\Windows\System32\WerFault.exe
- 2014-01-29 08:53:43 407024 ----a-w- C:\Windows\System32\Faultrep.dll
- 2014-01-29 08:49:19 1928144 ----a-w- C:\Windows\System32\combase.dll
- 2014-01-29 08:47:44 2543960 ----a-w- C:\Windows\System32\drivers\tcpip.sys
- 2014-01-29 07:44:15 408480 ----a-w- C:\Windows\SysWow64\WerFault.exe
- 2014-01-29 07:44:15 369280 ----a-w- C:\Windows\SysWow64\Faultrep.dll
- 2014-01-29 07:44:10 1371824 ----a-w- C:\Windows\SysWow64\combase.dll
- 2014-01-29 06:41:41 208896 ----a-w- C:\Windows\SysWow64\rdpencom.dll
- 2014-01-29 00:36:40 249856 ----a-w- C:\Windows\System32\rdpencom.dll
- 2014-01-27 19:07:57 4175360 ----a-w- C:\Windows\System32\dbgeng.dll
- 2014-01-27 19:06:07 64512 ----a-w- C:\Windows\System32\tsgqec.dll
- 2014-01-27 19:04:17 160256 ----a-w- C:\Windows\System32\DWWIN.EXE
- 2014-01-27 18:23:33 2873344 ----a-w- C:\Windows\SysWow64\dbgeng.dll
- 2014-01-27 18:21:36 53248 ----a-w- C:\Windows\SysWow64\tsgqec.dll
- 2014-01-27 18:20:16 138752 ----a-w- C:\Windows\SysWow64\DWWIN.EXE
- 2014-01-27 18:15:28 1057280 ----a-w- C:\Windows\System32\rdvidcrl.dll
- 2014-01-27 17:43:19 855552 ----a-w- C:\Windows\SysWow64\rdvidcrl.dll
- 2014-01-27 17:18:53 1486848 ----a-w- C:\Windows\System32\dbghelp.dll
- 2014-01-27 17:00:35 1238016 ----a-w- C:\Windows\SysWow64\dbghelp.dll
- 2014-01-27 15:58:36 5770752 ----a-w- C:\Windows\SysWow64\mstscax.dll
- 2014-01-27 15:50:47 6640640 ----a-w- C:\Windows\System32\mstscax.dll
- 2014-01-17 23:04:14 764864 ----a-w- C:\Windows\System32\mfmpeg2srcsnk.dll
- 2014-01-17 21:54:30 669352 ----a-w- C:\Windows\SysWow64\mfmpeg2srcsnk.dll
- 2014-01-09 08:25:10 2804224 ----a-w- C:\Windows\System32\actxprxy.dll
- 2014-01-09 07:59:06 115712 ----a-w- C:\Windows\System32\winbici.dll
- 2014-01-09 07:59:02 1020928 ----a-w- C:\Windows\SysWow64\actxprxy.dll
- 2014-01-09 07:49:48 919040 ----a-w- C:\Windows\System32\MrmCoreR.dll
- 2014-01-09 07:44:45 720384 ----a-w- C:\Windows\System32\SkyDriveTelemetry.dll
- 2014-01-09 07:43:12 121344 ----a-w- C:\Windows\System32\SkyDriveShell.dll
- 2014-01-09 07:29:28 105984 ----a-w- C:\Windows\SysWow64\SkyDriveShell.dll
- 2014-01-09 07:28:45 628736 ----a-w- C:\Windows\SysWow64\MrmCoreR.dll
- 2014-01-09 07:28:44 4217344 ----a-w- C:\Windows\System32\SyncEngine.dll
- 2014-01-09 07:18:50 870912 ----a-w- C:\Windows\System32\SkyDrive.exe
- 2014-01-08 01:46:27 325464 ----a-w- C:\Windows\System32\drivers\USBXHCI.SYS
- 2014-01-08 01:41:24 382808 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
- 2014-01-08 01:41:24 1530712 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
- 2014-01-07 07:03:30 18944 ----a-w- C:\Windows\System32\pcaui.exe
- 2014-01-07 05:59:03 17408 ----a-w- C:\Windows\SysWow64\pcaui.exe
- 2014-01-07 05:00:20 2397184 ----a-w- C:\Windows\System32\d3d10warp.dll
- 2014-01-07 04:30:31 2071552 ----a-w- C:\Windows\SysWow64\d3d10warp.dll
- 2014-01-04 20:50:05 1462216 ----a-w- C:\Windows\System32\propsys.dll
- 2014-01-04 19:22:49 1202888 ----a-w- C:\Windows\SysWow64\propsys.dll
- 2014-01-04 15:59:06 219648 ----a-w- C:\Windows\System32\drivers\UMDF\LocationProvider.dll
- 2014-01-04 15:54:54 138240 ----a-w- C:\Windows\System32\OEMLicense.dll
- 2014-01-04 15:08:49 103936 ----a-w- C:\Windows\SysWow64\OEMLicense.dll
- 2014-01-04 14:52:01 2414592 ----a-w- C:\Windows\apppatch\AcGenral.dll
- 2014-01-04 14:30:03 13209088 ----a-w- C:\Windows\System32\twinui.dll
- 2014-01-04 14:23:19 11702272 ----a-w- C:\Windows\SysWow64\twinui.dll
- 2014-01-04 14:08:33 206336 ----a-w- C:\Windows\System32\WSClient.dll
- 2014-01-04 13:53:05 174592 ----a-w- C:\Windows\SysWow64\WSClient.dll
- 2014-01-04 13:42:04 1105408 ----a-w- C:\Windows\System32\SearchFolder.dll
- 2014-01-04 13:40:27 7416832 ----a-w- C:\Windows\System32\Windows.UI.Search.dll
- 2014-01-04 13:36:27 830976 ----a-w- C:\Windows\SysWow64\SearchFolder.dll
- 2014-01-04 13:28:24 4961792 ----a-w- C:\Windows\SysWow64\Windows.UI.Search.dll
- 2014-01-02 23:54:03 461312 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
- 2014-01-02 23:48:13 336896 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll
- 2014-01-01 01:55:10 1720560 ----a-w- C:\Windows\System32\ntdll.dll
- 2014-01-01 01:52:37 481944 ----a-w- C:\Windows\System32\mfsvr.dll
- 2014-01-01 00:56:41 1472048 ----a-w- C:\Windows\SysWow64\ntdll.dll
- 2014-01-01 00:55:58 381168 ----a-w- C:\Windows\SysWow64\mfsvr.dll
- 2013-12-31 23:59:29 802816 ----a-w- C:\Windows\SysWow64\MFMediaEngine.dll
- 2013-12-31 23:57:55 1214976 ----a-w- C:\Windows\System32\schedsvc.dll
- 2013-12-31 23:56:35 960512 ----a-w- C:\Windows\System32\MFMediaEngine.dll
- 2013-12-30 23:34:06 218112 ----a-w- C:\Windows\SysWow64\sti.dll
- 2013-12-30 23:33:43 770560 ----a-w- C:\Windows\SysWow64\ReAgent.dll
- 2013-12-30 23:32:11 303616 ----a-w- C:\Windows\System32\sti.dll
- 2013-12-30 23:31:47 914944 ----a-w- C:\Windows\System32\ReAgent.dll
- 2013-12-30 23:31:46 947712 ----a-w- C:\Windows\System32\reseteng.dll
- .
- ============= FINISH: 12:04:27.07 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement