Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:28-06-2015 01
- Ran by Joe (administrator) on JOE-PC on 04-07-2015 09:20:02
- Running from C:\Users\Joe\Desktop
- Loaded Profiles: Joe (Available Profiles: Joe)
- Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English (United States)
- Internet Explorer Version 11 (Default browser: Chrome)
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
- (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
- (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
- (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
- (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
- (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
- (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
- () C:\Program Files\pia_manager\pia_manager.exe
- (Malwarebytes Corporation) D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
- (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
- (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
- (Google Inc.) C:\Users\Joe\AppData\Local\Google\Update\GoogleUpdate.exe
- (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
- (Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe
- (Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe
- (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
- (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
- (Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe
- (Corsair Components, Inc.) D:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairHID.exe
- (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
- (Malwarebytes Corporation) D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- () C:\Windows\SysWOW64\PnkBstrA.exe
- () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
- (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- (Malwarebytes Corporation) D:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
- (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
- (http://www.ruby-lang.org/) C:\Users\Joe\AppData\Local\Temp\ocr383E.tmp\bin\rubyw.exe
- () C:\Program Files\pia_manager\pia_manager.exe
- (Valve Corporation) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- (http://www.ruby-lang.org/) C:\Users\Joe\AppData\Local\Temp\ocr70CB.tmp\bin\rubyw.exe
- () C:\Program Files\pia_manager\pia_tray\pia_tray.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- ==================== Registry (Whitelisted) ==================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6827664 2012-08-07] (Realtek Semiconductor)
- HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
- HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Commnucations)
- HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
- HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-41 (the data entry has 36 more characters).
- HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated)
- HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
- HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
- HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-24] (NVIDIA Corporation)
- HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585536 2015-01-06] (Razer Inc.)
- HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [] => [X]
- HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2015-02-19] (Kaspersky Lab ZAO)
- HKLM-x32\...\Run: [Kraken71ChromaHelper] => C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [1599808 2014-07-08] (Razer Inc)
- HKLM-x32\...\Run: [Corsair Utility Engine] => D:\Program Files (x86)\Corsair\Corsair Utility Engine\CorsairHID.exe [11753792 2015-05-22] (Corsair Components, Inc.)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21969480 2015-05-19] (Google)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [Google Update] => C:\Users\Joe\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-02-02] (Google Inc.)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [AdobeBridge] => [X]
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [GoogleChromeAutoLaunch_D08BC2BD8F1B6BE4ACC60C8748C6E102] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896 2015-06-20] (Google Inc.)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [28785280 2015-06-02] (Skype Technologies S.A.)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [3095840 2015-04-30] (Nota Inc.)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [2892992 2015-06-04] (Valve Corporation)
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\Run: [SpybotSD TeaTimer] => D:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\...\MountPoints2: {13dc5f8f-0949-11e5-b479-0026833c2be0} - F:\setup.exe
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\THEMAT~1.SCR
- ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
- ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
- ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
- ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
- ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
- BootExecute: autocheck autochk * sdnclean64.exe
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
- HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=EIE9HP&PC=UP50
- SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-27] (Oracle Corporation)
- BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
- BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-27] (Oracle Corporation)
- BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-21] (Oracle Corporation)
- BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
- BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
- BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\OnlineBanking\online_banking_bho.dll [2015-02-19] (Kaspersky Lab ZAO)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-21] (Oracle Corporation)
- BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll [2015-02-19] (Kaspersky Lab ZAO)
- DPF: HKLM-x32 {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/select/asusTek_sys_ctrl3.cab
- Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Tcpip\..\Interfaces\{5E526B5B-6660-4B9C-BDF6-69AAB5AD1E69}: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Tcpip\..\Interfaces\{6E86391F-8A83-48D6-AFE3-E8EDE1B57AF5}: [DhcpNameServer] 209.222.18.222 209.222.18.218
- Tcpip\..\Interfaces\{72033C57-D075-4ED6-AECE-6BB6EB4BA39F}: [DhcpNameServer] 172.20.10.1
- FireFox:
- ========
- FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll [2014-12-24] ()
- FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
- FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-27] (Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-27] (Oracle Corporation)
- FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2013-02-02] (Microsoft Corporation)
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2013-03-21] (Adobe Systems)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll [2014-12-24] ()
- FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation)
- FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-21] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-21] (Oracle Corporation)
- FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2013-02-02] (Microsoft Corporation)
- FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)
- FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-18] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-18] (Google Inc.)
- FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-22] (VideoLAN)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
- FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2013-03-21] (Adobe Systems)
- FF Plugin HKU\S-1-5-21-2788560562-4048622476-3075615082-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Joe\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
- FF Plugin HKU\S-1-5-21-2788560562-4048622476-3075615082-1000: @talk.google.com/O1DPlugin -> C:\Users\Joe\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-04-17] (Google)
- FF Plugin HKU\S-1-5-21-2788560562-4048622476-3075615082-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Joe\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
- FF Plugin HKU\S-1-5-21-2788560562-4048622476-3075615082-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Joe\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
- FF Plugin ProgramFiles/Appdata: C:\Users\Joe\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
- FF Plugin ProgramFiles/Appdata: C:\Users\Joe\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-04-17] (Google)
- FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
- FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com [2015-02-19]
- FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
- FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com [2015-02-19]
- FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
- FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com [2015-02-19]
- Chrome:
- =======
- CHR Profile: C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default
- CHR Extension: (Google Drive) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-16]
- CHR Extension: (YouTube) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-16]
- CHR Extension: (Adblock Plus) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-02-16]
- CHR Extension: (Google Search) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-16]
- CHR Extension: (AdBlock) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-09-27]
- CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13]
- CHR Extension: (Google Mail Checker) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-10-15]
- CHR Extension: (Google Wallet) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21]
- CHR Extension: (Gmail) - C:\Users\Joe\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-16]
- CHR HKU\S-1-5-21-2788560562-4048622476-3075615082-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx [2013-01-14]
- CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx [2013-01-14]
- CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx [2013-01-14]
- CHR HKLM-x32\...\Chrome\Extension: [lpoimibckejjdjcfbdnajaicnklhfplh] - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh
- ==================== Services (Whitelisted) =================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2014-06-11] ()
- R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2014-06-11] (ASUSTeK Computer Inc.)
- R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
- R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2015-02-19] (Kaspersky Lab ZAO)
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1060352 2015-06-10] ()
- S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [235744 2015-05-29] (EasyAntiCheat Ltd)
- R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-24] (NVIDIA Corporation)
- R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation)
- R2 MBAMScheduler; D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
- R2 MBAMService; D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
- S2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2015-01-30] (Microsoft Corporation)
- R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432 2015-06-24] (NVIDIA Corporation)
- R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-24] (NVIDIA Corporation)
- S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1931632 2015-05-28] (Electronic Arts)
- R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-11-05] ()
- R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-03-02] ()
- R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [186048 2014-12-09] ()
- S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
- R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
- ==================== Drivers (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S3 AVer330C875; C:\Windows\System32\DRIVERS\AVer330C875.sys [1504512 2013-03-28] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
- S3 AVer330USB; C:\Windows\System32\DRIVERS\AVer330USB.sys [1516160 2014-03-12] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
- R3 CorsairVBusDriver; C:\Windows\System32\DRIVERS\CorsairVBusDriver.sys [47840 2015-05-18] (Corsair)
- R3 CorsairVHidDriver; C:\Windows\System32\DRIVERS\CorsairVHidDriver.sys [21728 2015-05-18] (Corsair)
- S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-06-02] (Disc Soft Ltd)
- S3 ElgatoGC656Y; C:\Windows\System32\Drivers\ElgatoGC656.sys [94440 2014-07-07] (UB658)
- R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2015-02-19] (Kaspersky Lab ZAO)
- U5 klflt; C:\Windows\System32\Drivers\klflt.sys [91008 2015-02-19] (Kaspersky Lab ZAO) [File not signed]
- R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [628320 2015-02-19] (Kaspersky Lab ZAO)
- R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2015-02-19] (Kaspersky Lab ZAO)
- R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2015-02-19] (Kaspersky Lab ZAO)
- R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2015-02-19] (Kaspersky Lab ZAO)
- R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2015-02-19] (Kaspersky Lab ZAO)
- R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [177864 2015-02-19] (Kaspersky Lab ZAO)
- S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [107736 2015-07-03] (Malwarebytes Corporation)
- R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
- R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-07-04] (Malwarebytes Corporation)
- R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
- R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [274696 2014-11-15] (Microsoft Corporation)
- S3 Netaapl; C:\Windows\System32\DRIVERS\netaapl64.sys [23040 2014-08-15] (Apple Inc.) [File not signed]
- R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-24] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46768 2015-05-18] (NVIDIA Corporation)
- S3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [39592 2014-12-30] (Razer Inc)
- R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2014-12-09] (Razer, Inc.)
- R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2014-11-17] (Razer, Inc.)
- U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-06-29] ()
- S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-08-16] (Apple, Inc.) [File not signed]
- R3 VBAudioVMVAIOMME; C:\Windows\System32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2014-09-04] (Windows (R) Win 7 DDK provider)
- R3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [21504 2008-12-26] (Avnex)
- S1 AsIO; SysWow64\drivers\AsIO.sys [X]
- S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
- S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
- S3 VGPU; System32\drivers\rdvgkmd.sys [X]
- S3 WinRing0_1_2_0; \??\D:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2015-07-04 09:20 - 2015-07-04 09:20 - 00027948 _____ C:\Users\Joe\Desktop\FRST.txt
- 2015-07-04 09:10 - 2015-07-04 09:10 - 00000000 ___RD C:\Users\Joe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
- 2015-07-03 22:20 - 2015-05-18 23:29 - 00046768 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
- 2015-07-03 22:20 - 2015-05-18 23:14 - 00057520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
- 2015-07-03 19:47 - 2015-07-03 19:47 - 00003136 _____ C:\Windows\System32\Tasks\{B097058F-B827-49DF-8E28-2413FA1B8075}
- 2015-07-03 19:35 - 2015-07-03 19:45 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
- 2015-07-03 18:46 - 2015-07-03 18:46 - 00000000 ____D C:\Users\Joe\.p2
- 2015-07-03 18:46 - 2015-07-03 18:46 - 00000000 ____D C:\Users\Joe\.eclipse
- 2015-07-03 18:36 - 2015-07-03 18:36 - 00000043 _____ C:\Users\Joe\AppData\Roaming\mbam.context.scan
- 2015-07-03 12:58 - 2015-07-04 09:10 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
- 2015-07-03 12:58 - 2015-07-03 19:34 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
- 2015-07-03 12:58 - 2015-07-03 12:59 - 00000810 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
- 2015-07-03 12:58 - 2015-07-03 12:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
- 2015-07-03 12:58 - 2015-06-18 08:41 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
- 2015-07-03 12:55 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
- 2015-07-03 11:20 - 2015-07-04 09:20 - 00000000 ___DC C:\FRST
- 2015-07-03 11:18 - 2015-07-03 11:18 - 02112512 _____ (Farbar) C:\Users\Joe\Desktop\FRST64.exe
- 2015-06-29 22:28 - 2015-07-04 09:10 - 00001671 _____ C:\Windows\setupact.log
- 2015-06-29 22:28 - 2015-06-29 22:28 - 00000000 _____ C:\Windows\setuperr.log
- 2015-06-29 02:23 - 2015-06-29 02:28 - 00000000 ____D C:\ProgramData\RogueKiller
- 2015-06-29 02:23 - 2015-06-29 02:23 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
- 2015-06-28 16:41 - 2015-06-28 16:41 - 00000000 ____D C:\Users\Joe\AppData\Local\ESET
- 2015-06-27 19:42 - 2015-04-01 23:10 - 00001524 _____ C:\Users\Joe\Desktop\arma3 - Shortcut.lnk
- 2015-06-24 18:29 - 2015-06-24 18:29 - 00000000 ____D C:\Users\Joe\.m2
- 2015-06-24 14:39 - 2015-06-24 14:39 - 00000925 _____ C:\Users\Joe\Desktop\Corsair Utility Engine.lnk
- 2015-06-24 14:37 - 2015-06-24 14:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair Utility Engine
- 2015-06-15 06:30 - 2015-06-15 06:30 - 00000042 _____ C:\Users\Joe\Desktop\SIGN IN INFO.txt
- 2015-06-13 00:25 - 2015-06-16 08:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EyeMax DVR
- 2015-06-13 00:25 - 2015-06-13 00:26 - 00000010 _____ C:\Windows\dvr2.ini
- 2015-06-13 00:25 - 2015-06-13 00:25 - 00045056 _____ () C:\Windows\SysWOW64\uninst.exe
- 2015-06-12 19:16 - 2015-06-12 19:16 - 00000000 ____D C:\Windows\rescache
- 2015-06-11 22:05 - 2015-06-11 22:05 - 00000055 _____ C:\Users\Joe\Desktop\NTUU's post on Vine.url
- 2015-06-09 15:29 - 2015-06-01 15:16 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
- 2015-06-09 15:29 - 2015-06-01 14:07 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
- 2015-06-09 15:29 - 2015-05-27 10:35 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
- 2015-06-09 15:29 - 2015-05-27 10:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
- 2015-06-09 15:29 - 2015-05-25 13:08 - 03206144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
- 2015-06-09 15:29 - 2015-05-22 23:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
- 2015-06-09 15:29 - 2015-05-22 23:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
- 2015-06-09 15:29 - 2015-05-22 23:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
- 2015-06-09 15:29 - 2015-05-22 23:15 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
- 2015-06-09 15:29 - 2015-05-22 23:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
- 2015-06-09 15:29 - 2015-05-22 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
- 2015-06-09 15:29 - 2015-05-22 23:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
- 2015-06-09 15:29 - 2015-05-22 23:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
- 2015-06-09 15:29 - 2015-05-22 23:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
- 2015-06-09 15:29 - 2015-05-22 23:06 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
- 2015-06-09 15:29 - 2015-05-22 23:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
- 2015-06-09 15:29 - 2015-05-22 23:05 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
- 2015-06-09 15:29 - 2015-05-22 23:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
- 2015-06-09 15:29 - 2015-05-22 22:57 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
- 2015-06-09 15:29 - 2015-05-22 22:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
- 2015-06-09 15:29 - 2015-05-22 22:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
- 2015-06-09 15:29 - 2015-05-22 22:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
- 2015-06-09 15:29 - 2015-05-22 22:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
- 2015-06-09 15:29 - 2015-05-22 22:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
- 2015-06-09 15:29 - 2015-05-22 22:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
- 2015-06-09 15:29 - 2015-05-22 22:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
- 2015-06-09 15:29 - 2015-05-22 22:37 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
- 2015-06-09 15:29 - 2015-05-22 22:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
- 2015-06-09 15:29 - 2015-05-22 22:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
- 2015-06-09 15:29 - 2015-05-22 22:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
- 2015-06-09 15:29 - 2015-05-22 22:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
- 2015-06-09 15:29 - 2015-05-22 15:16 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
- 2015-06-09 15:29 - 2015-05-22 15:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
- 2015-06-09 15:29 - 2015-05-22 15:01 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
- 2015-06-09 15:29 - 2015-05-22 15:00 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
- 2015-06-09 15:29 - 2015-05-22 15:00 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
- 2015-06-09 15:29 - 2015-05-22 15:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
- 2015-06-09 15:29 - 2015-05-22 15:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
- 2015-06-09 15:29 - 2015-05-22 14:59 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
- 2015-06-09 15:29 - 2015-05-22 14:53 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
- 2015-06-09 15:29 - 2015-05-22 14:52 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
- 2015-06-09 15:29 - 2015-05-22 14:52 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
- 2015-06-09 15:29 - 2015-05-22 14:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
- 2015-06-09 15:29 - 2015-05-22 14:47 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
- 2015-06-09 15:29 - 2015-05-22 14:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
- 2015-06-09 15:29 - 2015-05-22 14:47 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
- 2015-06-09 15:29 - 2015-05-22 14:47 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
- 2015-06-09 15:29 - 2015-05-22 14:40 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
- 2015-06-09 15:29 - 2015-05-22 14:36 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
- 2015-06-09 15:29 - 2015-05-22 14:29 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
- 2015-06-09 15:29 - 2015-05-22 14:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
- 2015-06-09 15:29 - 2015-05-22 14:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
- 2015-06-09 15:29 - 2015-05-22 14:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
- 2015-06-09 15:29 - 2015-05-22 14:07 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
- 2015-06-09 15:29 - 2015-05-22 14:06 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
- 2015-06-09 15:29 - 2015-05-22 14:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
- 2015-06-09 15:29 - 2015-05-22 14:05 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
- 2015-06-09 15:29 - 2015-05-22 13:57 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
- 2015-06-09 15:29 - 2015-05-22 13:50 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
- 2015-06-09 15:29 - 2015-05-22 13:38 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
- 2015-06-09 15:29 - 2015-05-22 13:26 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
- 2015-06-09 15:29 - 2015-05-08 23:27 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
- 2015-06-09 15:29 - 2015-05-08 23:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
- 2015-06-09 15:29 - 2015-05-08 23:27 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
- 2015-06-09 15:29 - 2015-05-08 23:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
- 2015-06-09 15:29 - 2015-05-08 23:26 - 01162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
- 2015-06-09 15:29 - 2015-05-08 23:26 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
- 2015-06-09 15:29 - 2015-05-08 23:26 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
- 2015-06-09 15:29 - 2015-05-08 23:25 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
- 2015-06-09 15:29 - 2015-05-08 23:13 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
- 2015-06-09 15:29 - 2015-05-08 23:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
- 2015-06-09 15:29 - 2015-05-08 23:12 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
- 2015-06-09 15:29 - 2015-05-08 23:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 23:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 22:01 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
- 2015-06-09 15:29 - 2015-05-08 22:01 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
- 2015-06-09 15:29 - 2015-05-08 21:59 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 21:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 21:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
- 2015-06-09 15:29 - 2015-05-08 21:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
- 2015-06-09 15:29 - 2015-04-29 14:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
- 2015-06-09 15:29 - 2015-04-29 14:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
- 2015-06-09 15:29 - 2015-04-29 14:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
- 2015-06-09 15:29 - 2015-04-29 14:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
- 2015-06-09 15:29 - 2015-04-29 14:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
- 2015-06-09 15:29 - 2015-04-29 14:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
- 2015-06-09 15:29 - 2015-04-29 14:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
- 2015-06-09 15:29 - 2015-04-29 14:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
- 2015-06-09 15:29 - 2015-04-29 14:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
- 2015-06-09 15:29 - 2015-04-29 14:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
- 2015-06-09 15:29 - 2015-04-24 14:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
- 2015-06-09 15:29 - 2015-04-24 13:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
- 2015-06-09 00:54 - 2015-06-09 00:54 - 00000000 ____D C:\ProgramData\boost_interprocess
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2015-07-04 09:18 - 2009-07-14 00:45 - 00019904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2015-07-04 09:18 - 2009-07-14 00:45 - 00019904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2015-07-04 09:16 - 2015-02-19 12:59 - 00000000 ____D C:\ProgramData\Kaspersky Lab
- 2015-07-04 09:16 - 2013-02-02 19:28 - 01085775 _____ C:\Windows\WindowsUpdate.log
- 2015-07-04 09:16 - 2009-07-14 01:13 - 00782594 _____ C:\Windows\system32\PerfStringBackup.INI
- 2015-07-04 09:11 - 2013-02-02 22:57 - 00000000 ____D C:\Users\Joe\AppData\Roaming\Skype
- 2015-07-04 09:10 - 2015-06-02 23:23 - 00000326 _____ C:\Windows\Tasks\NOJDL1.job
- 2015-07-04 09:10 - 2015-02-08 16:03 - 00457482 _____ C:\Windows\PFRO.log
- 2015-07-04 09:10 - 2013-02-02 20:47 - 00000000 ___RD C:\Users\Joe\Google Drive
- 2015-07-04 09:10 - 2013-02-02 20:14 - 00000000 ____D C:\ProgramData\NVIDIA
- 2015-07-04 09:10 - 2013-02-02 19:50 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
- 2015-07-04 09:10 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
- 2015-07-04 06:01 - 2013-02-02 19:50 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
- 2015-07-04 02:11 - 2014-12-29 23:07 - 00280792 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
- 2015-07-04 02:11 - 2014-12-29 20:01 - 00280792 _____ C:\Windows\SysWOW64\PnkBstrB.exe
- 2015-07-04 02:08 - 2014-12-29 20:01 - 00280856 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
- 2015-07-04 02:00 - 2013-02-03 03:22 - 00000000 ____D C:\Users\Joe\AppData\Local\Adobe
- 2015-07-04 01:08 - 2014-11-21 22:38 - 00000000 ____D C:\Users\Joe\AppData\Roaming\TS3Client
- 2015-07-04 00:38 - 2014-03-04 15:38 - 00000000 ____D C:\Users\Joe\Documents\Images
- 2015-07-04 00:13 - 2014-06-13 19:02 - 00000000 ____D C:\Users\Joe\AppData\Local\CrashDumps
- 2015-07-04 00:07 - 2013-02-17 17:31 - 00000848 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788560562-4048622476-3075615082-1000Core.job
- 2015-07-03 23:55 - 2015-04-14 00:19 - 00000080 _____ C:\Users\Joe\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦
- 2015-07-03 23:53 - 2014-02-25 14:18 - 00000000 ____D C:\Users\Joe\AppData\Roaming\.minecraft
- 2015-07-03 22:27 - 2013-02-02 20:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
- 2015-07-03 22:21 - 2015-01-13 01:36 - 00001381 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
- 2015-07-03 18:46 - 2013-02-02 19:28 - 00000000 ____D C:\Users\Joe
- 2015-07-03 18:45 - 2015-01-01 21:23 - 00000000 ____D C:\Users\Joe\AppData\Local\Eclipse
- 2015-07-03 17:00 - 2013-02-02 19:46 - 00003910 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{657297BD-9494-478F-813E-15A9B42BB610}
- 2015-07-03 14:26 - 2014-12-23 18:40 - 00000160 _____ C:\Windows\wininit.ini
- 2015-07-03 14:26 - 2014-12-23 12:26 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
- 2015-07-03 13:02 - 2013-02-02 20:13 - 00000000 ____D C:\Users\Joe\AppData\Roaming\uTorrent
- 2015-07-03 12:58 - 2013-02-02 21:49 - 00000000 ____D C:\Users\Joe\AppData\Roaming\Malwarebytes
- 2015-07-03 12:58 - 2013-02-02 21:49 - 00000000 ____D C:\ProgramData\Malwarebytes
- 2015-06-30 03:43 - 2015-05-06 22:50 - 00000000 ____D C:\Users\Joe\Desktop\GTA V MODS
- 2015-06-30 03:38 - 2015-05-06 10:26 - 00000000 ____D C:\Users\Joe\AppData\Local\Bilago
- 2015-06-29 21:30 - 2014-12-22 21:48 - 00000000 ____D C:\Windows\ERUNT
- 2015-06-28 18:02 - 2013-12-13 12:16 - 00000000 ____D C:\Program Files (x86)\SK Supporter
- 2015-06-28 01:31 - 2013-06-26 14:57 - 00000000 ____D C:\Users\Joe\AppData\Local\Arma 3
- 2015-06-27 01:42 - 2015-02-01 17:37 - 00290660 _____ C:\Windows\DirectX.log
- 2015-06-27 01:18 - 2013-07-20 18:26 - 00000000 ____D C:\Users\Joe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
- 2015-06-27 01:08 - 2009-07-14 01:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- 2015-06-26 19:51 - 2014-09-27 03:45 - 00000000 ____D C:\Users\Joe\AppData\Local\Arma 3 Launcher
- 2015-06-25 04:12 - 2013-02-02 22:55 - 00000000 ____D C:\Users\Joe\AppData\Roaming\vlc
- 2015-06-25 00:37 - 2014-12-19 00:12 - 00000000 ____D C:\Users\Joe\Desktop\1.7.9 Server
- 2015-06-24 07:36 - 2015-01-14 16:58 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
- 2015-06-24 07:36 - 2015-01-14 16:58 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
- 2015-06-24 07:36 - 2015-01-13 01:35 - 01571696 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
- 2015-06-24 07:36 - 2015-01-13 01:35 - 01320120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
- 2015-06-23 18:26 - 2014-12-23 16:28 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
- 2015-06-23 18:25 - 2013-02-02 19:50 - 00002259 _____ C:\Users\Joe\Desktop\Google Chrome.lnk
- 2015-06-17 17:36 - 2013-02-02 22:57 - 00000000 ____D C:\ProgramData\Skype
- 2015-06-16 01:10 - 2015-01-11 17:40 - 00000132 _____ C:\Users\Joe\AppData\Roaming\Adobe PNG Format CS5 Prefs
- 2015-06-14 17:15 - 2014-12-10 18:04 - 00000000 ____D C:\Users\Joe\Desktop\Christmas
- 2015-06-14 03:42 - 2014-12-22 19:26 - 00000000 __SHD C:\Users\Joe\AppData\Local\EmieBrowserModeList
- 2015-06-14 03:42 - 2014-05-28 19:54 - 00000000 __SHD C:\Users\Joe\AppData\Local\EmieUserList
- 2015-06-14 03:42 - 2014-05-28 19:54 - 00000000 __SHD C:\Users\Joe\AppData\Local\EmieSiteList
- 2015-06-12 17:02 - 2013-02-02 20:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
- 2015-06-12 16:29 - 2009-07-14 01:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
- 2015-06-10 15:02 - 2015-04-14 00:13 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
- 2015-06-10 15:02 - 2015-04-14 00:12 - 00000000 ____D C:\Program Files\Rockstar Games
- 2015-06-10 13:56 - 2009-07-14 00:45 - 05158456 _____ C:\Windows\system32\FNTCACHE.DAT
- 2015-06-10 13:56 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\PolicyDefinitions
- 2015-06-10 03:00 - 2013-07-20 23:04 - 00000000 ____D C:\Windows\system32\MRT
- 2015-06-10 03:00 - 2013-05-07 15:29 - 00000000 ____D C:\ProgramData\Microsoft Help
- 2015-06-10 02:57 - 2013-02-02 20:08 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
- 2015-06-09 15:22 - 2013-11-19 14:44 - 00000000 ____D C:\Users\Joe\AppData\Local\NVIDIA Corporation
- ==================== Files in the root of some directories =======
- 2015-02-21 21:40 - 2015-02-21 21:40 - 0000132 _____ () C:\Users\Joe\AppData\Roaming\Adobe BMP Format CS5 Prefs
- 2015-01-11 17:40 - 2015-06-16 01:10 - 0000132 _____ () C:\Users\Joe\AppData\Roaming\Adobe PNG Format CS5 Prefs
- 2014-03-06 00:48 - 2014-12-21 19:54 - 0000132 _____ () C:\Users\Joe\AppData\Roaming\Adobe PNG Format CS6 Prefs
- 2015-07-03 18:36 - 2015-07-03 18:36 - 0000043 _____ () C:\Users\Joe\AppData\Roaming\mbam.context.scan
- 2013-09-10 18:52 - 2013-09-10 18:52 - 0083968 ___SH () C:\Users\Joe\AppData\Roaming\Thumbs.db
- 2014-09-04 16:27 - 2014-09-04 17:41 - 0001113 _____ () C:\Users\Joe\AppData\Roaming\VoiceMeeterDefault.xml
- 2013-02-02 21:38 - 2013-02-03 03:29 - 0000103 ___SH () C:\Users\Joe\AppData\Local\00000114
- 2014-10-15 21:52 - 2014-10-15 21:52 - 0005893 _____ () C:\Users\Joe\AppData\Local\recently-used.xbel
- 2013-06-25 17:35 - 2013-06-25 17:35 - 0000017 _____ () C:\Users\Joe\AppData\Local\resmon.resmoncfg
- 2008-02-05 15:28 - 2008-02-05 15:28 - 0000051 _____ () C:\Users\Joe\AppData\Local\setup.txt
- 2014-12-27 18:15 - 2014-12-27 18:15 - 0267054 _____ () C:\ProgramData\1419718497.bdinstall.bin
- Some files in TEMP:
- ====================
- C:\Users\Joe\AppData\Local\Temp\0Kraken71ChromaDevProps.dll
- C:\Users\Joe\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.9-R0.1-10-g8688bd4-b3092jnks.dll
- ==================== Bamital & volsnap Check =================
- (There is no automatic fix for files that do not pass verification.)
- C:\Windows\System32\winlogon.exe => File is digitally signed
- C:\Windows\System32\wininit.exe => File is digitally signed
- C:\Windows\SysWOW64\wininit.exe => File is digitally signed
- C:\Windows\explorer.exe => File is digitally signed
- C:\Windows\SysWOW64\explorer.exe => File is digitally signed
- C:\Windows\System32\svchost.exe => File is digitally signed
- C:\Windows\SysWOW64\svchost.exe => File is digitally signed
- C:\Windows\System32\services.exe => File is digitally signed
- C:\Windows\System32\User32.dll => File is digitally signed
- C:\Windows\SysWOW64\User32.dll => File is digitally signed
- C:\Windows\System32\userinit.exe => File is digitally signed
- C:\Windows\SysWOW64\userinit.exe => File is digitally signed
- C:\Windows\System32\rpcss.dll => File is digitally signed
- C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2015-06-26 21:28
- ==================== End of log ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement