Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 12.9.2014 г. 00:13:14 - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\MinasTirith\Downloads
- 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
- Internet Explorer (Version = 9.11.9600.17280)
- Locale: 00000402 | Country: България | Language: BGR | Date Format: d.M.yyyy 'г.'
- 3,96 Gb Total Physical Memory | 2,13 Gb Available Physical Memory | 53,78% Memory free
- 7,92 Gb Paging File | 5,20 Gb Available in Paging File | 65,64% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 488,18 Gb Total Space | 103,60 Gb Free Space | 21,22% Space Free | Partition Type: NTFS
- Drive D: | 1374,73 Gb Total Space | 367,59 Gb Free Space | 26,74% Space Free | Partition Type: NTFS
- Drive E: | 7,27 Gb Total Space | 3,51 Gb Free Space | 48,25% Space Free | Partition Type: NTFS
- Computer Name: MINASTIRITH-PC | User Name: MinasTirith | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
- Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - [2014.09.12 00:12:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\MinasTirith\Downloads\OTL.exe
- PRC - [2014.09.04 16:32:19 | 004,085,896 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\avastui.exe
- PRC - [2014.09.04 16:31:22 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
- PRC - [2014.09.04 06:01:19 | 000,852,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- PRC - [2014.08.20 05:31:28 | 036,415,760 | ---- | M] (Dropbox, Inc.) -- C:\Users\MinasTirith\AppData\Roaming\Dropbox\bin\Dropbox.exe
- PRC - [2014.07.25 16:41:43 | 000,908,800 | ---- | M] () -- D:\Android project\adt-bundle-windows-x86\sdk\platform-tools\adb.exe
- PRC - [2013.09.17 06:49:50 | 000,292,088 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
- PRC - [2013.09.16 12:18:28 | 000,390,616 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- PRC - [2013.09.16 12:17:42 | 000,169,432 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- PRC - [2009.07.29 14:28:40 | 000,252,424 | ---- | M] (Avid Technology, Inc.) -- C:\Windows\SysWOW64\MAFWTray.exe
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - [2014.09.11 11:27:30 | 000,043,008 | ---- | M] () -- c:\Users\MinasTirith\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpuodhd_.dll
- MOD - [2014.09.04 16:31:22 | 019,329,904 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
- MOD - [2014.09.04 16:31:22 | 000,301,152 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\aswProperty.dll
- MOD - [2014.09.04 06:01:18 | 000,331,592 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppgooglenaclpluginchrome.dll
- MOD - [2014.09.04 06:01:16 | 008,577,864 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll
- MOD - [2014.09.04 06:01:12 | 001,098,056 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libglesv2.dll
- MOD - [2014.09.04 06:01:10 | 000,174,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libegl.dll
- MOD - [2014.09.04 06:01:09 | 001,660,232 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ffmpegsumo.dll
- MOD - [2014.08.20 05:28:44 | 003,610,624 | ---- | M] () -- C:\Users\MinasTirith\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
- MOD - [2014.07.25 16:41:43 | 000,908,800 | ---- | M] () -- D:\Android project\adt-bundle-windows-x86\sdk\platform-tools\adb.exe
- MOD - [2014.05.01 17:15:20 | 000,463,360 | ---- | M] () -- C:\ProgramData\MEGAsync\ShellExtX32.dll
- MOD - [2014.01.21 20:07:52 | 008,878,248 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
- MOD - [2013.10.19 02:55:03 | 025,100,288 | ---- | M] () -- C:\Users\MinasTirith\AppData\Roaming\Dropbox\bin\libcef.dll
- [color=#E56717]========== Services (SafeList) ==========[/color]
- SRV:[b]64bit:[/b] - [2014.09.04 16:31:22 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
- SRV:[b]64bit:[/b] - [2014.08.19 01:03:37 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
- SRV:[b]64bit:[/b] - [2013.08.27 14:32:30 | 000,828,376 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
- SRV:[b]64bit:[/b] - [2013.08.27 14:32:14 | 000,747,520 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
- SRV:[b]64bit:[/b] - [2013.05.27 08:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
- SRV:[b]64bit:[/b] - [2012.09.28 04:38:16 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
- SRV:[b]64bit:[/b] - [2009.07.14 04:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
- SRV - [2014.08.28 14:48:02 | 000,833,728 | ---- | M] (Valve Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
- SRV - [2014.04.03 20:21:48 | 000,315,008 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
- SRV - [2014.03.21 01:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
- SRV - [2013.09.16 12:18:28 | 000,390,616 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
- SRV - [2013.09.16 12:17:42 | 000,169,432 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
- SRV - [2013.09.11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV:[b]64bit:[/b] - [2014.09.04 17:07:18 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
- DRV:[b]64bit:[/b] - [2014.09.04 16:32:18 | 000,427,360 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:23 | 001,041,168 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:23 | 000,224,896 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:23 | 000,092,008 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:23 | 000,079,184 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:23 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:22 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
- DRV:[b]64bit:[/b] - [2014.09.04 16:31:22 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
- DRV:[b]64bit:[/b] - [2013.09.17 06:48:32 | 000,795,632 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
- DRV:[b]64bit:[/b] - [2013.09.17 06:48:32 | 000,358,896 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
- DRV:[b]64bit:[/b] - [2013.09.17 06:48:32 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
- DRV:[b]64bit:[/b] - [2013.09.16 12:17:42 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
- DRV:[b]64bit:[/b] - [2013.05.05 09:56:39 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
- DRV:[b]64bit:[/b] - [2013.05.05 09:56:39 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
- DRV:[b]64bit:[/b] - [2013.05.05 09:44:25 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
- DRV:[b]64bit:[/b] - [2012.09.28 05:21:20 | 010,697,216 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
- DRV:[b]64bit:[/b] - [2012.09.28 04:12:52 | 000,460,288 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
- DRV:[b]64bit:[/b] - [2012.06.22 03:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
- DRV:[b]64bit:[/b] - [2012.06.12 17:00:48 | 000,726,160 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
- DRV:[b]64bit:[/b] - [2012.05.14 09:12:30 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
- DRV:[b]64bit:[/b] - [2012.01.18 06:44:28 | 000,351,136 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
- DRV:[b]64bit:[/b] - [2010.11.21 06:24:43 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
- DRV:[b]64bit:[/b] - [2010.11.21 06:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
- DRV:[b]64bit:[/b] - [2010.11.21 06:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tsusbhub.sys -- (tsusbhub)
- DRV:[b]64bit:[/b] - [2010.11.21 06:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
- DRV:[b]64bit:[/b] - [2010.11.21 06:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
- DRV:[b]64bit:[/b] - [2010.11.21 06:23:48 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
- DRV:[b]64bit:[/b] - [2010.11.21 06:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
- DRV:[b]64bit:[/b] - [2010.11.21 06:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
- DRV:[b]64bit:[/b] - [2009.07.29 14:28:24 | 000,231,944 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mafw.sys -- (MAFW)
- DRV:[b]64bit:[/b] - [2009.07.14 04:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
- DRV:[b]64bit:[/b] - [2009.07.14 04:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
- DRV:[b]64bit:[/b] - [2009.07.14 04:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
- DRV:[b]64bit:[/b] - [2009.06.10 23:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
- DRV:[b]64bit:[/b] - [2009.06.10 23:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
- DRV:[b]64bit:[/b] - [2009.06.10 23:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
- DRV:[b]64bit:[/b] - [2009.06.10 23:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
- DRV - [2009.07.14 04:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
- IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = bg-BG
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = AD CF B6 A7 43 C8 CF 01 [binary data]
- IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
- IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- [color=#E56717]========== FireFox ==========[/color]
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll File not found
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
- FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.67.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
- FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2014.09.04 16:31:23 | 000,000,000 | ---D | M]
- [2014.01.21 20:07:48 | 000,034,072 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll
- [color=#E56717]========== Chrome ==========[/color]
- CHR - plugin: Error reading preferences file
- CHR - Extension: Google Voice Search Hotword (Beta) = C:\Users\MinasTirith\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
- CHR - Extension: Adblock Plus = C:\Users\MinasTirith\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.5_0\
- CHR - Extension: avast! Online Security = C:\Users\MinasTirith\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2022.121_0\
- CHR - Extension: Google Wallet = C:\Users\MinasTirith\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
- O1 HOSTS File: ([2009.06.11 00:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
- O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
- O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
- O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
- O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
- O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
- O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
- O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
- O4 - HKLM..\Run: [M-Audio Taskbar Icon] C:\Windows\SysWOW64\MAFWTray.exe (Avid Technology, Inc.)
- O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
- O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
- O4 - Startup: C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\MinasTirith\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
- O13[b]64bit:[/b] - gopher Prefix: missing
- O13 - gopher Prefix: missing
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9CCEA6E2-7FD2-48AE-BC0E-58C05A813D43}: DhcpNameServer = 192.168.1.1
- O18 - Protocol\Handler\ms-help - No CLSID value found
- O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
- O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O32 - HKLM CDRom: AutoRun - 1
- O32 - AutoRun File - [2014.09.04 15:28:08 | 000,000,122 | ---- | M] () - E:\autorun.inf -- [ NTFS ]
- O33 - MountPoints2\{6413647e-343c-11e4-a422-902b34dcfeb8}\Shell - "" = AutoRun
- O33 - MountPoints2\{6413647e-343c-11e4-a422-902b34dcfeb8}\Shell\AutoRun\command - "" = F:\setup.exe
- O33 - MountPoints2\{641364af-343c-11e4-a422-902b34dcfeb8}\Shell - "" = AutoRun
- O33 - MountPoints2\{641364af-343c-11e4-a422-902b34dcfeb8}\Shell\AutoRun\command - "" = G:\SETUP.EXE
- O33 - MountPoints2\{641364af-343c-11e4-a422-902b34dcfeb8}\Shell\configure\command - "" = G:\SETUP.EXE
- O33 - MountPoints2\{641364af-343c-11e4-a422-902b34dcfeb8}\Shell\install\command - "" = G:\SETUP.EXE
- O34 - HKLM BootExecute: (autocheck autochk /r \??\C:)
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
- O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
- O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
- O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2014.09.08 16:34:25 | 000,000,000 | -HSD | C] -- C:\found.000
- [2014.09.08 14:49:37 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\.android
- [2014.09.08 14:42:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
- [2014.09.08 14:41:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
- [2014.09.08 14:40:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
- [2014.09.08 14:40:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
- [2014.09.08 14:38:18 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Intel
- [2014.09.08 14:36:37 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
- [2014.09.08 14:35:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
- [2014.09.08 14:35:40 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
- [2014.09.08 14:35:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent
- [2014.09.07 22:41:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
- [2014.09.07 22:41:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam
- [2014.09.07 22:16:50 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WMV9 VCM
- [2014.09.07 22:16:49 | 000,000,000 | ---D | C] -- C:\Program Files\WMV9_VCM
- [2014.09.07 22:16:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Island
- [2014.09.07 22:01:24 | 000,000,000 | ---D | C] -- C:\Games
- [2014.09.07 17:20:11 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Saved Games
- [2014.09.07 16:28:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crysis 2 Game of the Year
- [2014.09.07 16:18:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Games
- [2014.09.07 15:27:05 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Impact Steel
- [2014.09.07 15:22:10 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Epic Drums
- [2014.09.07 15:20:29 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Drums Of War
- [2014.09.07 15:15:16 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Curio Cinematic Toy Piano
- [2014.09.07 13:51:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
- [2014.09.07 13:04:11 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Koto
- [2014.09.07 12:02:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Serious Sam HD - The Second Encounter
- [2014.09.07 12:01:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Serious Sam HD - The Second Encounter
- [2014.09.07 12:00:41 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Serious Sam HD - The Second Encounter
- [2014.09.06 19:59:06 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Steam
- [2014.09.06 19:59:06 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Documents\My Games
- [2014.09.06 19:55:52 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
- [2014.09.06 19:46:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Rising 3
- [2014.09.06 19:22:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dead Rising 3
- [2014.09.06 15:55:56 | 000,000,000 | ---D | C] -- C:\Windows\pss
- [2014.09.06 15:31:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
- [2014.09.06 15:26:44 | 000,000,000 | ---D | C] -- C:\Program Files\Java
- [2014.09.06 15:17:21 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Mega Limited
- [2014.09.06 15:17:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
- [2014.09.06 15:17:09 | 000,000,000 | ---D | C] -- C:\ProgramData\MEGAsync
- [2014.09.06 15:13:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft OneDrive
- [2014.09.06 15:13:50 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\OneDrive
- [2014.09.06 15:13:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft OneDrive
- [2014.09.06 15:03:54 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
- [2014.09.06 14:31:30 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\logishrd
- [2014.09.06 14:28:11 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Skype
- [2014.09.06 14:28:05 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Skype
- [2014.09.06 14:27:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
- [2014.09.06 14:27:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
- [2014.09.06 14:27:55 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
- [2014.09.06 14:27:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
- [2014.09.06 13:35:35 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Documents\Cakewalk
- [2014.09.06 13:35:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cakewalk
- [2014.09.06 13:32:36 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Documents\Nomad Factory
- [2014.09.06 13:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Propellerhead Software
- [2014.09.06 12:36:06 | 000,000,000 | -H-D | C] -- C:\ProgramData\{1031BEE2-FFB6-4712-A121-A76C0E587B14}
- [2014.09.06 04:35:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat
- [2014.09.06 04:35:33 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat
- [2014.09.06 04:35:14 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\CompatTel
- [2014.09.06 04:04:29 | 000,000,000 | ---D | C] -- C:\Windows\Migration
- [2014.09.06 01:48:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\{53CCD988-BD51-4E0A-BDFB-F2F3B1E1B649}
- [2014.09.06 01:44:11 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F9426D43-E8B8-409B-A4C5-3AFD53B7412E}
- [2014.09.06 01:35:24 | 000,000,000 | -H-D | C] -- C:\ProgramData\{27AE6DBC-0CA4-4761-8752-2B1ADDB90175}
- [2014.09.06 01:35:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Avid
- [2014.09.06 01:10:40 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Desktop\New folder
- [2014.09.06 01:06:49 | 000,000,000 | -H-D | C] -- C:\ProgramData\{6032CB49-DE54-4192-9F71-65859D0B544F}
- [2014.09.06 01:06:45 | 000,000,000 | -H-D | C] -- C:\ProgramData\{78915E0A-25F8-47A2-9793-CEBC2D28F274}
- [2014.09.06 01:06:42 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\The Mouth
- [2014.09.06 01:06:38 | 000,000,000 | -H-D | C] -- C:\ProgramData\{98F83ED2-DF89-465B-8EB3-F87E179CFA56}
- [2014.09.06 01:06:35 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\The Finger R2
- [2014.09.06 01:06:30 | 000,000,000 | -H-D | C] -- C:\ProgramData\{7C702C5F-ADE3-4D28-9619-90BA76D4E1ED}
- [2014.09.06 01:06:24 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Skanner XT
- [2014.09.06 01:06:08 | 000,000,000 | -H-D | C] -- C:\ProgramData\{A9FC06D6-E75C-4DA2-B8D2-8D91C1A269C3}
- [2014.09.06 01:06:05 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Reaktor Spark R2
- [2014.09.06 01:06:01 | 000,000,000 | -H-D | C] -- C:\ProgramData\{C693A367-F08F-4F42-A5DE-8996D6AC24F0}
- [2014.09.06 01:05:57 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Reaktor Prism
- [2014.09.06 01:05:53 | 000,000,000 | -H-D | C] -- C:\ProgramData\{DEBC0451-D249-4B4C-B907-F6510028BC75}
- [2014.09.06 01:05:49 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Razor
- [2014.09.06 01:05:44 | 000,000,000 | -H-D | C] -- C:\ProgramData\{849C3EA7-6C44-4D64-BFD2-FC5AF841BE83}
- [2014.09.06 01:05:40 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Monark
- [2014.09.06 01:05:33 | 000,000,000 | -H-D | C] -- C:\ProgramData\{DB1D6CD1-3172-48C0-B63A-490B0D2C6D72}
- [2014.09.06 01:05:30 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Traktors 12 for Maschine
- [2014.09.06 01:05:25 | 000,000,000 | -H-D | C] -- C:\ProgramData\{3DFBC806-D62A-4312-81FF-5F343DDCB5DC}
- [2014.09.06 01:05:19 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Traktors 12
- [2014.09.06 01:05:15 | 000,000,000 | -H-D | C] -- C:\ProgramData\{03697879-2B80-4810-9B4D-D8EF1EE777F0}
- [2014.09.06 01:05:11 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Reflektor for Maschine
- [2014.09.06 01:05:08 | 000,000,000 | -H-D | C] -- C:\ProgramData\{0A583E76-A7A0-45F8-9386-AEE1E529A4DE}
- [2014.09.06 01:04:54 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Reflektor Library
- [2014.09.06 01:04:52 | 000,000,000 | -H-D | C] -- C:\ProgramData\{63F2E427-F976-4EE0-BB21-8FA7DAC2E7F2}
- [2014.09.06 01:04:48 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Rammfire for Maschine
- [2014.09.06 01:04:43 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B0DF9098-245E-479F-A4ED-B5F91EA4948B}
- [2014.09.06 01:04:39 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Rammfire
- [2014.09.06 01:04:35 | 000,000,000 | -H-D | C] -- C:\ProgramData\{0209395A-8E4A-48E1-A5E3-C830292F263C}
- [2014.09.06 01:04:27 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Guitar Rig Pro Library for Maschine
- [2014.09.06 01:04:19 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F409EA92-6713-4D2D-AF88-0C51B1CF1D2A}
- [2014.09.06 01:03:47 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\West Africa Library
- [2014.09.06 01:03:43 | 000,000,000 | -H-D | C] -- C:\ProgramData\{80A0A482-175E-4DE8-9D32-C8C8463D1362}
- [2014.09.06 01:03:09 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Vintage Organs Library
- [2014.09.06 01:03:04 | 000,000,000 | -H-D | C] -- C:\ProgramData\{2FF04994-9599-464E-AD99-B09CBE2122AE}
- [2014.09.06 01:01:57 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Vienna Concert Grand Library
- [2014.09.06 01:01:53 | 000,000,000 | -H-D | C] -- C:\ProgramData\{786FEDEA-8E71-4900-8D2F-40933D86B376}
- [2014.09.06 01:01:01 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Upright Piano Library
- [2014.09.06 01:00:57 | 000,000,000 | -H-D | C] -- C:\ProgramData\{1C7A6EB7-BED0-4444-B0DA-4BFDCF83C380}
- [2014.09.06 00:59:39 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\The Giant Library
- [2014.09.06 00:59:35 | 000,000,000 | -H-D | C] -- C:\ProgramData\{926BF989-2A51-492D-8A6A-E9D533417C34}
- [2014.09.06 00:57:03 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Studio Drummer Library
- [2014.09.06 00:56:58 | 000,000,000 | -H-D | C] -- C:\ProgramData\{93015F0A-7AF2-4308-A5B3-13D4FCE429C6}
- [2014.09.06 00:45:38 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Session Strings Pro Library
- [2014.09.06 00:45:34 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B96A0118-1095-4E34-9C27-D87092B77F67}
- [2014.09.06 00:44:00 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Session Horns Library
- [2014.09.06 00:43:56 | 000,000,000 | -H-D | C] -- C:\ProgramData\{727F248C-CA81-4A68-8E01-27236ED99D98}
- [2014.09.06 00:41:46 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee Vintage Keys Library
- [2014.09.06 00:41:42 | 000,000,000 | -H-D | C] -- C:\ProgramData\{DFAB8828-7DA2-4573-A254-15D802A10A7E}
- [2014.09.06 00:39:22 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee Rickenbacker Bass Library
- [2014.09.06 00:39:17 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B8AB470F-A90B-4652-A8F5-160A08FD7411}
- [2014.09.06 00:34:43 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee Pre-Bass Amped Library
- [2014.09.06 00:34:39 | 000,000,000 | -H-D | C] -- C:\ProgramData\{7FC6C6B3-C2D5-4F17-BBEF-A11135E1A668}
- [2014.09.06 00:33:28 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee Pre-Bass Library
- [2014.09.06 00:33:25 | 000,000,000 | -H-D | C] -- C:\ProgramData\{8A9976F0-1DB6-4A1D-823B-E9E459F6EE39}
- [2014.09.06 00:29:03 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee MM-Bass Amped Library
- [2014.09.06 00:28:57 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F2026C51-8509-47B4-816D-CCD2DB993FC1}
- [2014.09.06 00:27:34 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee MM-Bass Library
- [2014.09.06 00:27:30 | 000,000,000 | -H-D | C] -- C:\ProgramData\{624486AF-AD5B-4BB3-BEEE-A0D2D4D112DF}
- [2014.09.06 00:26:34 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee Jay-Bass Library
- [2014.09.06 00:26:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\{BA0B7444-2ABA-463C-862A-7EC7F0AD0FA2}
- [2014.09.06 00:23:36 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Scarbee Funk Guitarist Library
- [2014.09.06 00:23:32 | 000,000,000 | -H-D | C] -- C:\ProgramData\{4AD6F65B-2A15-4CFF-9AF7-830F277D0157}
- [2014.09.06 00:22:02 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Retro Machines Mk2 Library
- [2014.09.06 00:21:58 | 000,000,000 | -H-D | C] -- C:\ProgramData\{5309003E-4102-4141-A0C9-7507F0E10F52}
- [2014.09.06 00:20:49 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\New York Concert Grand Library
- [2014.09.06 00:20:46 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B7CF1107-3BD9-48BA-BC77-54B909022641}
- [2014.09.06 00:20:41 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Maschine Drum Selection Library
- [2014.09.06 00:20:30 | 000,000,000 | -H-D | C] -- C:\ProgramData\{1CCB05D7-901D-4CCB-816F-73AC0098D30A}
- [2014.09.06 00:19:22 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\George Duke Soul Treasures Library
- [2014.09.06 00:19:17 | 000,000,000 | -H-D | C] -- C:\ProgramData\{A793ECF9-34FC-47F0-8CBE-0B3DEA468C01}
- [2014.09.06 00:17:53 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Evolve R2 Library
- [2014.09.06 00:17:49 | 000,000,000 | -H-D | C] -- C:\ProgramData\{6B3E9A08-404E-4FBF-A80D-1E9DA9E75171}
- [2014.09.06 00:16:58 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Evolve Mutations 2 Library
- [2014.09.06 00:16:52 | 000,000,000 | -H-D | C] -- C:\ProgramData\{4C01754A-32F9-4A34-8B9F-E06DD553B755}
- [2014.09.06 00:16:00 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Evolve Mutations Library
- [2014.09.06 00:15:53 | 000,000,000 | -H-D | C] -- C:\ProgramData\{0221FDDB-41E3-4971-AC93-5048F8D7CAAC}
- [2014.09.06 00:11:28 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Damage Library
- [2014.09.06 00:11:22 | 000,000,000 | -H-D | C] -- C:\ProgramData\{499D67BC-046E-4931-8BFB-D5ABB500E67C}
- [2014.09.06 00:10:22 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Berlin Concert Grand Library
- [2014.09.06 00:10:18 | 000,000,000 | -H-D | C] -- C:\ProgramData\{7B7672F5-5EA2-4D83-BC77-1AFCA8846266}
- [2014.09.06 00:09:39 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Balinese Gamelan Library
- [2014.09.06 00:09:35 | 000,000,000 | -H-D | C] -- C:\ProgramData\{229D9A22-9BEA-4D2B-813E-85E0FACBA99C}
- [2014.09.06 00:07:35 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Alicias Keys Library
- [2014.09.06 00:07:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F036CC43-6BE8-4CBD-91C3-76F4BC8FFD6F}
- [2014.09.06 00:04:38 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Action Strings Library
- [2014.09.06 00:04:34 | 000,000,000 | -H-D | C] -- C:\ProgramData\{A6377726-7317-464A-87EB-693294E9F383}
- [2014.09.06 00:02:28 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Abbey Road Vintage Drummer Library
- [2014.09.06 00:02:24 | 000,000,000 | -H-D | C] -- C:\ProgramData\{6B991D2A-5E91-44B4-BE28-CFDCED1835AB}
- [2014.09.06 00:00:06 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Abbey Road Modern Drummer Library
- [2014.09.06 00:00:01 | 000,000,000 | -H-D | C] -- C:\ProgramData\{18869C94-495B-4D97-8C75-E405CF6509CB}
- [2014.09.05 23:57:37 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Abbey Road 80s Drummer Library
- [2014.09.05 23:57:32 | 000,000,000 | -H-D | C] -- C:\ProgramData\{D53B5F71-B715-494C-AFD4-BB0C94C787E5}
- [2014.09.05 23:55:26 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Abbey Road 70s Drummer Library
- [2014.09.05 23:55:21 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B54CEF12-4612-4E77-B06C-403C662468E7}
- [2014.09.05 23:49:56 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Abbey Road 60s Drummer Library
- [2014.09.05 23:49:49 | 000,000,000 | -H-D | C] -- C:\ProgramData\{35B46D49-85E2-40EA-8EC6-43B281EDD8E7}
- [2014.09.05 23:29:20 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Kontakt Factory Library
- [2014.09.05 23:22:45 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Battery 4 Factory Library
- [2014.09.05 23:22:41 | 000,000,000 | -H-D | C] -- C:\ProgramData\{EFEC7DCC-2F91-4828-B49D-8506F9F0D9FF}
- [2014.09.05 23:22:12 | 000,000,000 | -H-D | C] -- C:\ProgramData\{7AFFCFD3-F022-420B-8E87-BBAED1C983C8}
- [2014.09.05 23:21:36 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F4C30B44-15B7-482B-8B80-38AA0AB0956A}
- [2014.09.05 23:21:09 | 000,000,000 | -H-D | C] -- C:\ProgramData\{03149E88-061F-4C01-98FF-736811F5AEF5}
- [2014.09.05 23:20:48 | 000,000,000 | -H-D | C] -- C:\ProgramData\{AD7B6000-2063-4CF8-A07D-49A34A4164E7}
- [2014.09.05 23:20:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\{F565CCC6-40E0-4D3B-A268-394489E1A288}
- [2014.09.05 23:20:11 | 000,000,000 | -H-D | C] -- C:\ProgramData\{BC4F73B4-86E2-45AA-A4F8-3D7C23012DDF}
- [2014.09.05 23:19:48 | 000,000,000 | -H-D | C] -- C:\ProgramData\{831278B3-E363-4BCB-B754-70A9488477C9}
- [2014.09.05 23:19:27 | 000,000,000 | -H-D | C] -- C:\ProgramData\{E753D955-673D-4851-B06F-9A9D0C44C02C}
- [2014.09.05 23:19:04 | 000,000,000 | -H-D | C] -- C:\ProgramData\{87A1E31E-1C63-4A99-AEEA-EA57A3043C1D}
- [2014.09.05 23:18:44 | 000,000,000 | -H-D | C] -- C:\ProgramData\{34163C5E-1AE4-49D8-B5F9-A3C2422AAB96}
- [2014.09.05 23:16:25 | 000,000,000 | -H-D | C] -- C:\ProgramData\{450C7B07-81AD-445F-87F1-27917FA78AB4}
- [2014.09.05 23:09:36 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B9F39E05-2A83-4A5C-873C-9004232BF507}
- [2014.09.05 23:05:00 | 000,000,000 | -H-D | C] -- C:\ProgramData\{B7072B15-6E80-42FF-A9AE-4E62AF2B2418}
- [2014.09.05 23:01:04 | 000,000,000 | -H-D | C] -- C:\ProgramData\{EC39AE66-34A3-419D-BCB8-29619DA92C37}
- [2014.09.05 22:56:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cakewalk
- [2014.09.05 22:56:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Avid
- [2014.09.05 22:52:15 | 000,000,000 | -H-D | C] -- C:\ProgramData\{E2A3D3D3-946E-4752-90FB-AF37CC248734}
- [2014.09.05 22:52:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Native Instruments
- [2014.09.05 22:52:13 | 000,000,000 | ---D | C] -- C:\Program Files\Native Instruments
- [2014.09.05 22:52:13 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Native Instruments
- [2014.09.05 02:54:54 | 000,000,000 | ---D | C] -- C:\Windows\Panther
- [2014.09.04 20:25:34 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
- [2014.09.04 19:41:58 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
- [2014.09.04 19:41:55 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
- [2014.09.04 19:37:13 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Apple Computer
- [2014.09.04 19:37:13 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Apple Computer
- [2014.09.04 19:34:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Safari
- [2014.09.04 19:34:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
- [2014.09.04 19:33:52 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Apple
- [2014.09.04 19:33:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
- [2014.09.04 19:33:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
- [2014.09.04 19:26:11 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\WinRAR
- [2014.09.04 19:26:05 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
- [2014.09.04 19:26:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
- [2014.09.04 19:26:03 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
- [2014.09.04 19:15:50 | 000,056,336 | ---- | C] (Corel Corporation) -- C:\Windows\SysNative\drivers\PxHlpa64.sys
- [2014.09.04 19:15:50 | 000,011,376 | ---- | C] (Corel Corporation) -- C:\Windows\SysNative\drivers\cdralw2k.sys
- [2014.09.04 19:15:50 | 000,010,864 | ---- | C] (Corel Corporation) -- C:\Windows\SysNative\drivers\cdr4_xp.sys
- [2014.09.04 19:15:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sonic Shared
- [2014.09.04 19:15:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
- [2014.09.04 19:03:02 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1986-12.com.adobe
- [2014.09.04 19:02:30 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
- [2014.09.04 19:02:00 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Native Instruments
- [2014.09.04 19:00:24 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Documents\Native Instruments
- [2014.09.04 19:00:24 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments
- [2014.09.04 19:00:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
- [2014.09.04 19:00:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
- [2014.09.04 19:00:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Native Instruments
- [2014.09.04 19:00:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Digidesign
- [2014.09.04 18:59:39 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\TruePianos Settings
- [2014.09.04 18:59:10 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Applied Acoustics Systems
- [2014.09.04 18:58:49 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Overloud
- [2014.09.04 18:57:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
- [2014.09.04 18:55:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-Audio
- [2014.09.04 18:55:20 | 000,000,000 | ---D | C] -- C:\Program Files\M-Audio
- [2014.09.04 18:53:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
- [2014.09.04 18:53:12 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Macromedia
- [2014.09.04 18:53:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
- [2014.09.04 18:52:45 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Adobe
- [2014.09.04 18:50:14 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Cakewalk
- [2014.09.04 18:48:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Identities
- [2014.09.04 18:47:49 | 000,000,000 | ---D | C] -- C:\Cakewalk Projects
- [2014.09.04 18:43:54 | 000,000,000 | ---D | C] -- C:\Windows\AutoKMS
- [2014.09.04 18:41:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Toolkit
- [2014.09.04 17:31:45 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
- [2014.09.04 17:30:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
- [2014.09.04 17:29:44 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
- [2014.09.04 17:29:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server
- [2014.09.04 17:29:21 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1991-06.com.microsoft
- [2014.09.04 17:28:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
- [2014.09.04 17:27:15 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
- [2014.09.04 17:27:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
- [2014.09.04 17:22:08 | 000,000,000 | ---D | C] -- C:\Cakewalk Content
- [2014.09.04 17:21:31 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
- [2014.09.04 17:21:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
- [2014.09.04 17:20:47 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Microsoft Help
- [2014.09.04 17:20:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
- [2014.09.04 17:20:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
- [2014.09.04 17:20:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
- [2014.09.04 17:19:14 | 000,000,000 | RH-D | C] -- C:\MSOCache
- [2014.09.04 17:16:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Overloud
- [2014.09.04 17:16:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Cakewalk
- [2014.09.04 17:16:57 | 000,000,000 | ---D | C] -- C:\Program Files\Cakewalk
- [2014.09.04 17:09:35 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
- [2014.09.04 17:09:08 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
- [2014.09.04 17:09:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
- [2014.09.04 17:09:06 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Notepad++
- [2014.09.04 17:09:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Notepad++
- [2014.09.04 17:07:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
- [2014.09.04 17:07:56 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\GRETECH
- [2014.09.04 17:07:53 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Dropbox
- [2014.09.04 17:07:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
- [2014.09.04 17:07:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GRETECH
- [2014.09.04 17:07:18 | 000,283,064 | ---- | C] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
- [2014.09.04 17:07:15 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\DAEMON Tools Lite
- [2014.09.04 17:07:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
- [2014.09.04 17:06:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
- [2014.09.04 17:06:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
- [2014.09.04 17:06:40 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
- [2014.09.04 17:06:03 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Programs
- [2014.09.04 16:55:14 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\uTorrent
- [2014.09.04 16:54:57 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\Desktop\Chrome
- [2014.09.04 16:48:00 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
- [2014.09.04 16:46:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
- [2014.09.04 16:46:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
- [2014.09.04 16:46:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
- [2014.09.04 16:46:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
- [2014.09.04 16:45:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
- [2014.09.04 16:45:04 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
- [2014.09.04 16:42:11 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\ATI
- [2014.09.04 16:42:11 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\ATI
- [2014.09.04 16:38:41 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\library_dir
- [2014.09.04 16:38:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Raptr
- [2014.09.04 16:38:16 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
- [2014.09.04 16:37:13 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
- [2014.09.04 16:36:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
- [2014.09.04 16:36:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
- [2014.09.04 16:36:01 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
- [2014.09.04 16:35:21 | 000,000,000 | ---D | C] -- C:\AMD
- [2014.09.04 16:32:27 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\AVAST Software
- [2014.09.04 16:32:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
- [2014.09.04 16:32:13 | 000,000,000 | ---D | C] -- C:\Program Files\Google
- [2014.09.04 16:32:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
- [2014.09.04 16:31:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
- [2014.09.04 16:31:30 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Google
- [2014.09.04 16:31:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
- [2014.09.04 16:31:26 | 001,041,168 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
- [2014.09.04 16:31:26 | 000,092,008 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
- [2014.09.04 16:31:25 | 000,427,360 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
- [2014.09.04 16:31:25 | 000,079,184 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
- [2014.09.04 16:31:24 | 000,093,568 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
- [2014.09.04 16:31:23 | 000,307,344 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
- [2014.09.04 16:31:22 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
- [2014.09.04 16:30:01 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
- [2014.09.04 16:29:48 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
- [2014.09.04 16:27:06 | 000,000,000 | ---D | C] -- C:\Intel
- [2014.09.04 16:27:03 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
- [2014.09.04 16:27:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
- [2014.09.04 16:27:02 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\InstallShield
- [2014.09.04 16:18:50 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Adobe
- [2014.09.04 16:18:49 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
- [2014.09.04 16:18:49 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Searches
- [2014.09.04 16:18:49 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
- [2014.09.04 16:18:49 | 000,000,000 | -H-D | C] -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
- [2014.09.04 16:18:42 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Identities
- [2014.09.04 16:18:40 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Contacts
- [2014.09.04 16:18:39 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\VirtualStore
- [2014.09.04 16:18:36 | 000,000,000 | --SD | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Videos
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Pictures
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Music
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Links
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Favorites
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Downloads
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Documents
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\Desktop
- [2014.09.04 16:18:36 | 000,000,000 | R--D | C] -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\AppData\Local\Temporary Internet Files
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Templates
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Start Menu
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\SendTo
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Recent
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\PrintHood
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\NetHood
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Documents\My Videos
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Documents\My Pictures
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Documents\My Music
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\My Documents
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Local Settings
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\AppData\Local\History
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Cookies
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\Application Data
- [2014.09.04 16:18:36 | 000,000,000 | -HSD | C] -- C:\Users\MinasTirith\AppData\Local\Application Data
- [2014.09.04 16:18:36 | 000,000,000 | -H-D | C] -- C:\Users\MinasTirith\AppData
- [2014.09.04 16:18:36 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Temp
- [2014.09.04 16:18:36 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Local\Microsoft
- [2014.09.04 16:18:36 | 000,000,000 | ---D | C] -- C:\Users\MinasTirith\AppData\Roaming\Media Center Programs
- [2014.09.04 16:08:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
- [2014.09.04 16:07:58 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
- [2014.09.04 16:07:00 | 000,000,000 | -HSD | C] -- C:\Recovery
- [2014.09.04 16:06:57 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
- [2014.09.04 15:55:58 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
- [2014.09.04 15:55:33 | 000,000,000 | -HSD | C] -- C:\System Volume Information
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2014.09.11 23:42:06 | 000,001,008 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
- [2014.09.11 17:56:17 | 000,026,576 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- [2014.09.11 17:56:17 | 000,026,576 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- [2014.09.11 16:42:00 | 000,001,004 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
- [2014.09.11 11:32:54 | 000,781,790 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
- [2014.09.11 11:32:54 | 000,653,930 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
- [2014.09.11 11:32:54 | 000,121,802 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
- [2014.09.11 11:26:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
- [2014.09.11 11:26:35 | 3189,149,696 | -HS- | M] () -- C:\hiberfil.sys
- [2014.09.11 02:09:25 | 000,765,656 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
- [2014.09.08 16:06:24 | 019,565,218 | ---- | M] () -- C:\Users\MinasTirith\Desktop\Untitled-1.psd
- [2014.09.08 14:35:11 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
- [2014.09.07 22:41:20 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk
- [2014.09.07 22:16:44 | 000,000,763 | ---- | M] () -- C:\Users\MinasTirith\Desktop\Dead Island.lnk
- [2014.09.07 16:28:34 | 000,001,335 | ---- | M] () -- C:\Users\MinasTirith\Desktop\Crysis 2 Maximum Edition.lnk
- [2014.09.07 15:29:17 | 000,002,202 | ---- | M] () -- C:\Users\MinasTirith\Desktop\Microsoft OneDrive.lnk
- [2014.09.07 12:03:44 | 000,001,309 | ---- | M] () -- C:\Users\MinasTirith\Desktop\Serious Sam HD - The Second Encounter.lnk
- [2014.09.07 01:39:21 | 000,057,147 | ---- | M] () -- C:\Users\MinasTirith\Desktop\601417_10151321724756840_972331103_n.jpg
- [2014.09.06 19:46:51 | 000,001,061 | ---- | M] () -- C:\Users\MinasTirith\Desktop\Dead Rising 3.lnk
- [2014.09.06 15:17:15 | 000,000,758 | ---- | M] () -- C:\Users\Public\Desktop\MEGAsync.lnk
- [2014.09.06 14:27:56 | 000,002,515 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
- [2014.09.06 13:35:36 | 000,001,908 | ---- | M] () -- C:\Users\Public\Desktop\SONAR X3 Producer (x64).lnk
- [2014.09.06 04:38:20 | 005,102,408 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
- [2014.09.06 03:55:59 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
- [2014.09.06 03:55:57 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
- [2014.09.05 22:52:15 | 000,001,059 | ---- | M] () -- C:\Users\Public\Desktop\Service Center.lnk
- [2014.09.05 22:13:58 | 000,001,908 | ---- | M] () -- C:\Windows\diagwrn.xml
- [2014.09.05 22:13:58 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml
- [2014.09.05 00:25:58 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01009.Wdf
- [2014.09.05 00:24:45 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
- [2014.09.04 20:25:09 | 721,950,785 | ---- | M] () -- C:\Windows\MEMORY.DMP
- [2014.09.04 17:15:02 | 000,001,061 | ---- | M] () -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
- [2014.09.04 17:07:58 | 000,001,213 | ---- | M] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk
- [2014.09.04 17:07:18 | 000,283,064 | ---- | M] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
- [2014.09.04 16:55:37 | 000,000,843 | ---- | M] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
- [2014.09.04 16:50:44 | 000,002,283 | ---- | M] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
- [2014.09.04 16:47:17 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
- [2014.09.04 16:32:18 | 000,427,360 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
- [2014.09.04 16:31:23 | 001,041,168 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
- [2014.09.04 16:31:23 | 000,224,896 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
- [2014.09.04 16:31:23 | 000,092,008 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
- [2014.09.04 16:31:23 | 000,079,184 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
- [2014.09.04 16:31:23 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
- [2014.09.04 16:31:22 | 000,307,344 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
- [2014.09.04 16:31:22 | 000,093,568 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
- [2014.09.04 16:31:22 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
- [2014.09.04 16:31:22 | 000,029,208 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys
- [2014.09.04 16:28:45 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
- [2014.09.04 16:25:02 | 000,001,411 | ---- | M] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
- [2014.09.04 15:59:25 | 000,116,385 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
- [2014.09.04 15:59:25 | 000,116,385 | ---- | M] () -- C:\Windows\SysNative\license.rtf
- [2014.09.04 15:57:29 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2014.09.08 15:13:51 | 019,565,218 | ---- | C] () -- C:\Users\MinasTirith\Desktop\Untitled-1.psd
- [2014.09.08 14:35:11 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
- [2014.09.07 22:41:20 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk
- [2014.09.07 22:16:44 | 000,000,763 | ---- | C] () -- C:\Users\MinasTirith\Desktop\Dead Island.lnk
- [2014.09.07 16:28:34 | 000,001,335 | ---- | C] () -- C:\Users\MinasTirith\Desktop\Crysis 2 Maximum Edition.lnk
- [2014.09.07 12:00:41 | 000,001,309 | ---- | C] () -- C:\Users\MinasTirith\Desktop\Serious Sam HD - The Second Encounter.lnk
- [2014.09.07 01:39:21 | 000,057,147 | ---- | C] () -- C:\Users\MinasTirith\Desktop\601417_10151321724756840_972331103_n.jpg
- [2014.09.06 19:46:51 | 000,001,061 | ---- | C] () -- C:\Users\MinasTirith\Desktop\Dead Rising 3.lnk
- [2014.09.06 15:17:15 | 000,000,758 | ---- | C] () -- C:\Users\Public\Desktop\MEGAsync.lnk
- [2014.09.06 15:13:50 | 000,002,202 | ---- | C] () -- C:\Users\MinasTirith\Desktop\Microsoft OneDrive.lnk
- [2014.09.06 14:27:56 | 000,002,515 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
- [2014.09.06 13:35:36 | 000,001,908 | ---- | C] () -- C:\Users\Public\Desktop\SONAR X3 Producer (x64).lnk
- [2014.09.06 03:55:59 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
- [2014.09.06 03:55:57 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
- [2014.09.05 22:52:14 | 000,001,059 | ---- | C] () -- C:\Users\Public\Desktop\Service Center.lnk
- [2014.09.05 22:13:29 | 000,001,908 | ---- | C] () -- C:\Windows\diagwrn.xml
- [2014.09.05 22:13:29 | 000,001,908 | ---- | C] () -- C:\Windows\diagerr.xml
- [2014.09.05 00:25:58 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01009.Wdf
- [2014.09.05 00:24:45 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
- [2014.09.04 20:25:09 | 721,950,785 | ---- | C] () -- C:\Windows\MEMORY.DMP
- [2014.09.04 19:35:06 | 000,002,503 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
- [2014.09.04 19:33:50 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
- [2014.09.04 19:16:56 | 000,001,038 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Audition CC.lnk
- [2014.09.04 19:07:12 | 000,002,104 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Update Management Tool.lnk
- [2014.09.04 19:02:51 | 000,001,068 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC (64 Bit).lnk
- [2014.09.04 19:01:10 | 000,001,204 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC.lnk
- [2014.09.04 18:54:55 | 000,001,534 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
- [2014.09.04 17:15:02 | 000,001,061 | ---- | C] () -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
- [2014.09.04 17:07:58 | 000,001,213 | ---- | C] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk
- [2014.09.04 17:06:52 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
- [2014.09.04 16:55:37 | 000,000,843 | ---- | C] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
- [2014.09.04 16:47:17 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
- [2014.09.04 16:31:53 | 000,002,283 | ---- | C] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
- [2014.09.04 16:31:33 | 000,001,008 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
- [2014.09.04 16:31:32 | 000,001,004 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
- [2014.09.04 16:31:26 | 000,224,896 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys
- [2014.09.04 16:31:25 | 000,065,776 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
- [2014.09.04 16:31:25 | 000,029,208 | ---- | C] () -- C:\Windows\SysNative\drivers\aswHwid.sys
- [2014.09.04 16:28:45 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
- [2014.09.04 16:25:02 | 000,001,411 | ---- | C] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
- [2014.09.04 16:18:50 | 000,001,417 | ---- | C] () -- C:\Users\MinasTirith\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
- [2014.09.04 16:18:36 | 000,000,290 | ---- | C] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
- [2014.09.04 16:18:36 | 000,000,272 | ---- | C] () -- C:\Users\MinasTirith\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
- [2014.09.04 16:08:59 | 000,765,656 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
- [2014.09.04 15:59:00 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
- [2014.09.04 15:58:49 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
- [2014.09.04 15:57:29 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
- [2014.09.04 15:55:33 | 3189,149,696 | -HS- | C] () -- C:\hiberfil.sys
- [2014.04.18 05:22:56 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
- [2014.04.18 05:22:56 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
- [2014.04.18 04:25:52 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
- [2014.04.18 04:25:50 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
- [2013.08.27 14:00:08 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
- [color=#E56717]========== ZeroAccess Check ==========[/color]
- [2009.07.14 07:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
- [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- "" = C:\Windows\SysNative\shell32.dll -- [2014.06.25 05:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- "" = %SystemRoot%\system32\shell32.dll -- [2014.06.25 04:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 04:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
- "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 06:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 04:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Both
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
- [color=#E56717]========== LOP Check ==========[/color]
- [2014.09.04 18:59:31 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\Applied Acoustics Systems
- [2014.09.04 16:32:27 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\AVAST Software
- [2014.09.04 18:58:47 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\Cakewalk
- [2014.09.04 17:18:03 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\DAEMON Tools Lite
- [2014.09.11 11:27:52 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\Dropbox
- [2014.09.04 16:38:41 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\library_dir
- [2014.09.04 19:12:30 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\Notepad++
- [2014.09.04 18:58:52 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\Overloud
- [2014.09.06 19:59:06 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\Steam
- [2014.09.12 00:07:34 | 000,000,000 | ---D | M] -- C:\Users\MinasTirith\AppData\Roaming\uTorrent
- [color=#E56717]========== Purity Check ==========[/color]
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement