My computer has been infected with major malware. There are many programs that have been installed automatically that I cannot uninstall. It eats up memory to the point that computer is nearly unusable. Please help! I thank you in advance!
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-05-2015 01
Ran by Max (administrator) on LEVIATHAN on 08-05-2015 18:41:39
Running from C:\Users\Max\Desktop
Loaded Profiles: Max (Available profiles: Max)
Platform: Windows 8.1 Pro (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files\shopperz\grunt.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
( ) C:\Windows\Temp\mrtC40B.tmp\stdrt.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Cinema PlusV27.04) C:\Program Files (x86)\CinemaPlus-3.2cV27.04\88e2d631-cef4-4b3b-959f-542c0d09b78a-1-6.exe
(Cinema PlusV27.04) C:\Program Files (x86)\CinemaPlus-3.2cV27.04\88e2d631-cef4-4b3b-959f-542c0d09b78a-10.exe
(Cinema PlusV16.04) C:\Program Files (x86)\Lights Cinema 1.3betaV16.04\3cbeff34-7ffd-46c4-8208-b17f0452902a-1-6.exe
(Cinema PlusV16.04) C:\Program Files (x86)\Lights Cinema 1.3betaV16.04\3cbeff34-7ffd-46c4-8208-b17f0452902a-10.exe
(ConsumerInput) C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
() C:\Program Files (x86)\version42BlockAndSurf\J4BlockAndSurfJ52.exe
(globalUpdate) C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
() C:\Program Files (x86)\Optimizer Pro 3.84\OptProSmartScan.exe
() C:\Program Files (x86)\Optimizer Pro 3.84\OptProReminder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe
() C:\Program Files\shopperz\csrcc.exe
() C:\ProgramData\FlashBeat\FlashBeat.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Gambali OEM Software) C:\ProgramData\FlashBeat\Gambali.exe
(Infonaut) C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe
() C:\Windows\lah.exe
() C:\Windows\mlah.exe
() C:\Users\Max\AppData\Roaming\00000000-1430191811-0000-0000-6C626DB6DAC3\jnsp89F0.tmp
() C:\Users\Max\AppData\Roaming\00000000-1429243423-0000-0000-6C626DB6DAC3\jnsiF0DB.tmp
() C:\Users\Max\AppData\Roaming\00000000-1430191811-0000-0000-6C626DB6DAC3\nsr4204.tmpfs
(Quick Ref) C:\Program Files (x86)\QuickRef_1.10.0.12\Service\qrsvc.exe
() C:\Program Files\shopperz\nseven.exe
(Search Module Plus Ltd.) C:\Program Files\Common Files\Goobzo\GBUpdatePlus\smu.exe
() C:\Users\Max\AppData\Roaming\00000000-1429243423-0000-0000-6C626DB6DAC3\nsaB737.tmpfs
(WebWatcher) C:\Program Files (x86)\SysFiles\WebWatcherProxy.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Useful Technology) C:\ProgramData\DQZCqeZhJD\SwdrFREjyLh.exe
() C:\Program Files\shopperz\wrex.exe
() C:\Program Files\shopperz\wrex64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Goobzo) C:\Program Files (x86)\YTDownloader\BrowserHelper.exe
() C:\Program Files (x86)\version42BlockAndSurf\BlockAndSurf.exe
() C:\Users\Max\AppData\Local\ospd_us_1014\upospd_us_1014.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(zik.mu) C:\Program Files\BubbleSound\3D BubbleSound.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(YTDownloader) C:\Program Files (x86)\YTDownloader\YTDownloader.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Crossbrowse) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
() C:\Program Files (x86)\ospd_us_1014\ospd_us_1014.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Crossbrowse) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
(PC Utilities Software Limited) C:\ProgramData\{578b7a49-b228-dc64-578b-b7a49b22e926}\hqghumeaylnlf.exe
(SoftBrain Technologies Ltd.) C:\Users\Max\AppData\Local\SmartWeb\SmartWebHelper.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(SoftBrain Technologies Ltd.) C:\Users\Max\AppData\Local\SmartWeb\SmartWebApp.exe
() C:\Program Files (x86)\gmsd_us_493\gmsd_us_493.exe
(Crossbrowse) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
() C:\Users\Max\AppData\Local\Temp\nsf3C56.tmp
() C:\Program Files (x86)\SafeGuard\SafeGuardApp.exe
() C:\Program Files (x86)\OLBPre\OLBPre.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta.exe
(Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
Failed to access process -> CCC.exe
(Microsoft Corporation) C:\Windows\System32\WerFault.exe
(Web Bar Media) C:\Program Files\WebBar\2.0.5527.25142\wb.exe
() C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
() C:\Users\Max\AppData\Local\Temp\nsq4706.tmp
() C:\ProgramData\Browser\prompt.exe
() C:\ProgramData\NetEngine\bin\D10\netengine.exe
() C:\Users\Max\AppData\Local\Temp\isdkckxTWgwl\ISightHost.exe
() C:\ProgramData\Browser\prompt.exe
() C:\ProgramData\NetEngine\bin\D10\netengine.exe
(Software ) C:\Users\Max\AppData\Local\Temp\is-IG6FD.tmp\package_priceless_p_installer_multilang.exe
() C:\Users\Max\AppData\Local\Temp\is-6QUVK.tmp\package_priceless_p_installer_multilang.tmp
(Software ) C:\Users\Max\AppData\Local\Temp\is-IG6FD.tmp\package_SByoutube_installer_multilang.exe
() C:\Users\Max\AppData\Local\Temp\is-6H688.tmp\package_SByoutube_installer_multilang.tmp
() C:\Users\Max\AppData\Local\Temp\is-BGP8Q.tmp\priceless_p_soft_partner.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Users\Max\AppData\Local\Temp\is-21HV5.tmp\ytdkietut_tutdk_setup.exe
() C:\Users\Max\AppData\Local\Temp\BFF8\temp\priceless_p_soft_partner.exe
() C:\Users\Max\AppData\Local\Temp\nso5FB4.tmp\DCytdkietut_tutdk_setup.exe
() C:\Users\Max\AppData\Local\Temp\nso5FB4.tmp\DCytdkietut_tutdk_setup.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe [14115328 2015-01-09] (zik.mu)
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe [430456 2015-03-11] ()
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe [461176 2015-03-11] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ospd_us_1014] => C:\Program Files (x86)\ospd_us_1014\ospd_us_1014.exe [3981256 2015-04-10] ()
HKLM-x32\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988528 2015-04-15] (YTDownloader)
HKLM-x32\...\Run: [WinCheck] => C:\Users\Max\AppData\Local\00000000-1430166663-0000-0000-6C626DB6DAC3\bnslFE2A.exe [191488 2015-04-27] ()
HKLM-x32\...\Run: [gmsd_us_458] => [X]
HKLM-x32\...\Run: [SmartWeb] => C:\Users\Max\AppData\Local\SmartWeb\SmartWebHelper.exe [270368 2015-02-17] (SoftBrain Technologies Ltd.)
HKLM-x32\...\Run: [gmsd_us_493] => C:\Program Files (x86)\gmsd_us_493\gmsd_us_493.exe [3980744 2015-04-24] ()
HKLM-x32\...\Run: [SafeGuard] => C:\Program Files (x86)\SafeGuard\SafeGuardApp.exe [1537552 2015-04-01] ()
HKLM-x32\...\RunOnce: [upospd_us_1014.exe] => C:\Users\Max\AppData\Local\ospd_us_1014\upospd_us_1014.exe [3308488 2015-04-10] ()
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Run: [SwvUpdtr] => C:\Users\Max\AppData\Local\30034\Updater.exe [1248256 2015-04-16] ()
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988528 2015-04-15] (YTDownloader)
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31280256 2015-04-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.84\OptProLauncher.exe [148008 2015-04-22] ()
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Run: [GoogleChromeAutoLaunch_3D1EE8F760F37097E3AF05CAB8B9C5AC] => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440 2015-03-16] (Crossbrowse)
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\PhotoScreensaver.scr [589312 2014-10-28] (Microsoft Corporation)
AppInit_DLLs-x32: C:/PROGRA~3/{3807D~1/193~1.1/mite.dll => C:\ProgramData\{3807D0C4-6885-0142-D903-71C00981A24E}\1.9.3.1\mite.dll [1010688 2015-04-27] ()
AppInit_DLLs-x32: _C:\PROGRA~2\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32Loader.dll [223504 2015-04-12] ()
Startup: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [2015-04-27]
ShortcutTarget: crossbrowse.lnk -> C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (Crossbrowse)
Startup: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hqghumeaylnlf.lnk [2015-04-27]
ShortcutTarget: hqghumeaylnlf.lnk -> C:\ProgramData\{578b7a49-b228-dc64-578b-b7a49b22e926}\hqghumeaylnlf.exe (PC Utilities Software Limited)
Startup: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk [2015-04-27]
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\OLBPre\OLBPre.exe ()
Startup: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-04-16]
ShortcutTarget: SmartWeb.lnk -> C:\Users\Max\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://taplika.com/?f=1&a=tpl_tuto13_15 ... 614151&ir=
HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.msn.com/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www-searching.com/search.aspx?s= ... c5eb83,&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www-searching.com/search.aspx?s= ... c5eb83,&q={searchTerms}
SearchScopes: HKLM -> {589B893E-773C-4941-88C2-0DCC718E621C} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3369700690-3850376273-3648611264-1001 -> DefaultScope {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_tuto13_15_18&cd=2XzuyEtN2Y1L1QzuyC0CyCtByC0D0ByC0D0A0CtAzz0AtCyEtN0D0Tzu0StCtBtCtBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAzz0D0A0CtCyEzytGzzyEyB0FtGzytAzz0CtG0B0DyCtCtGtC0AyDyCtAtC0FyBzz0AyCyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0A0F0DyEtB0DtGtD0CyC0BtGyEtC0D0AtGzy0BtB0FtGtCyCzytCyBtC0B0FyDtDtDtA2QtN0A0LzuyEtN1B2Z1V1T1S1NzuyBtCyB&cr=1537614151&ir=
SearchScopes: HKU\S-1-5-21-3369700690-3850376273-3648611264-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_tuto13_15_18&cd=2XzuyEtN2Y1L1QzuyC0CyCtByC0D0ByC0D0A0CtAzz0AtCyEtN0D0Tzu0StCtBtCtBtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAzz0D0A0CtCyEzytGzzyEyB0FtGzytAzz0CtG0B0DyCtCtGtC0AyDyCtAtC0FyBzz0AyCyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0A0F0DyEtB0DtGtD0CyC0BtGyEtC0D0AtGzy0BtB0FtGtCyCzytCyBtC0B0FyDtDtDtA2QtN0A0LzuyEtN1B2Z1V1T1S1NzuyBtCyB&cr=1537614151&ir=
SearchScopes: HKU\S-1-5-21-3369700690-3850376273-3648611264-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www-searching.com/search.aspx?s= ... c5eb83,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3369700690-3850376273-3648611264-1001 -> {589B893E-773C-4941-88C2-0DCC718E621C} URL = http://www.trovi.com/Results.aspx?gd=&c ... 90FDA38&q={searchTerms}&D=041715&SSPV=SP22230TA_sp_ie
SearchScopes: HKU\S-1-5-21-3369700690-3850376273-3648611264-1001 -> {89804BA5-1501-4E4F-8667-82EDEE5D6F77} URL = https://search.yahoo.com/search?fr=chr- ... =667671&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3369700690-3850376273-3648611264-1001 -> {A850D08E-BE4F-4EDB-AF3B-B9AABC646600} URL = http://www-searching.com/search.aspx?s= ... c5eb83,&q={searchTerms}
BHO: BlockAndSurf -> {79AAD48C-7658-E566-0E71-9D097E9E899C} -> C:\Program Files (x86)\version42BlockAndSurf\192_x64.dll [2015-04-27] ()
BHO: Consumer Input DCA BHO -> {B49699FC-1665-4414-A1CB-C4A2A4A13EEC} -> C:\Program Files (x86)\Consumer Input\InternetExplorer\x64\dca-bho.dll [2015-02-25] (Compete, Inc.)
BHO-x32: BlockAndSurf -> {79AAD48C-7658-E566-0E71-9D097E9E899C} -> C:\Program Files (x86)\version42BlockAndSurf\192.dll [2015-04-27] ()
BHO-x32: Consumer Input DCA BHO -> {B49699FC-1665-4414-A1CB-C4A2A4A13EEC} -> C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-bho.dll [2015-02-25] (Compete, Inc.)
Winsock: Catalog9 01 C:\WINDOWS\SysWOW64\Gambali.dll [340944 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9 02 C:\WINDOWS\SysWOW64\Gambali.dll [340944 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9 03 C:\WINDOWS\SysWOW64\Gambali.dll [340944 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9 04 C:\WINDOWS\SysWOW64\Gambali.dll [340944 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9 15 C:\WINDOWS\SysWOW64\Gambali.dll [340944 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9-x64 01 C:\WINDOWS\system32\Gambali64.dll [408424 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9-x64 02 C:\WINDOWS\system32\Gambali64.dll [408424 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9-x64 03 C:\WINDOWS\system32\Gambali64.dll [408424 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9-x64 04 C:\WINDOWS\system32\Gambali64.dll [408424 2015-04-16] (Gambali OEM Software)
Winsock: Catalog9-x64 05 C:\WINDOWS\system32\WebWatcherLSP64.dll [415272 2015-04-16] (WebWatcher)
Winsock: Catalog9-x64 06 C:\WINDOWS\system32\WebWatcherLSP64.dll [415272 2015-04-16] (WebWatcher)
Winsock: Catalog9-x64 07 C:\WINDOWS\system32\WebWatcherLSP64.dll [415272 2015-04-16] (WebWatcher)
Winsock: Catalog9-x64 08 C:\WINDOWS\system32\WebWatcherLSP64.dll [415272 2015-04-16] (WebWatcher)
Winsock: Catalog9-x64 19 C:\WINDOWS\system32\WebWatcherLSP64.dll [415272 2015-04-16] (WebWatcher)
Winsock: Catalog9-x64 20 C:\WINDOWS\system32\Gambali64.dll [408424 2015-04-16] (Gambali OEM Software)
Tcpip\Parameters: [DhcpNameServer] 68.105.28.12 68.105.29.12 68.105.28.11
Tcpip\..\Interfaces\{1FD4CAA7-EB74-4F00-8A1E-887D577F4861}: [NameServer] 31.168.228.251,82.166.96.251
Tcpip\..\Interfaces\{67C2E777-3C2A-440A-8BDE-083FEBFD7A85}: [NameServer] 31.168.228.251,82.166.96.251
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default
FF NewTab: about:newtab
FF DefaultSearchEngine: Trovi
FF DefaultSearchEngine.US: Taplika
FF SelectedSearchEngine: Trovi
FF Homepage: hxxp://taplika.com/?f=1&a=tpl_tuto13_15 ... 614151&ir=
FF Keyword.URL: hxxp://www-searching.com/search.aspx?s= ... c5eb83,&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-14] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll [2015-04-27] (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll [2015-04-27] (globalUpdate)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-22] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-22] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-02] (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\user.js [2015-04-27]
FF SearchPlugin: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\searchplugins\firefox-add-ons.xml [2014-11-11]
FF SearchPlugin: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\searchplugins\taplika.xml [2015-04-27]
FF SearchPlugin: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\searchplugins\trovi.xml [2015-04-27]
FF SearchPlugin: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\searchplugins\youtube.xml [2014-11-09]
FF Extension: Lights Cinema 1.3betaV16.04 - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\973ba634716b4639a1c150b40c@5afc24a09e55466bb60878000.com [2015-04-16]
FF Extension: CinemaPlus-3.2cV27.04 - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com [2015-04-27]
FF Extension: Mozilla Firefox Hotfixer - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\veggy@veggyAddon.com [2015-04-27]
FF Extension: Zoom It - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\{472163d2-803b-9e6b-36d3-8299782cb243} [2015-04-27]
FF Extension: ColorZilla - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} [2015-01-03]
FF Extension: Add to Search Bar - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\add-to-searchbox@maltekraus.de.xpi [2014-11-27]
FF Extension: IMDb ratings for watchever - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\jid1-FpyZ8qozEHjs2A@jetpack.xpi [2014-11-11]
FF Extension: IMDB Search - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\{c4080853-c699-4120-b8e0-618bff8a4474}.xpi [2014-11-11]
FF Extension: Web Developer - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2015-01-03]
FF Extension: Adblock Plus - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\174u8fal.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-03]
FF Extension: Healthcare Gov Tool - C:\Program Files (x86)\Mozilla Firefox\extensions\healthcare@healthcaregovtool.com.xpi [2015-03-31]
FF Extension: Healthcare Gov Tool - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\healthcare@healthcaregovtool.com.xpi [2015-03-31]
FF HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Firefox\Extensions: [ConsumerInput@Compete] - C:\Program Files (x86)\Consumer Input\Firefox\ciff-3.2.0-12099.xpi
FF Extension: No Name - C:\Program Files (x86)\Consumer Input\Firefox\ciff-3.2.0-12099.xpi [2015-01-21]
FF HKU\S-1-5-21-3369700690-3850376273-3648611264-1001\...\Firefox\Extensions: [{EDFB8DAF-FFDE-A9DE-F341-F0A7EC5530DB}] - C:\Program Files (x86)\version42BlockAndSurf\192.xpi
FF Extension: No Name - C:\Program Files (x86)\version42BlockAndSurf\192.xpi [2015-04-27]
StartMenuInternet: FIREFOX.EXE - firefox.exe
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 70F4EEDB-1367-4b4f-8247-3133551A7415; C:\Program Files\shopperz\grunt.exe [282488 2015-03-11] ()
R2 a4b494b4; c:\Program Files (x86)\Optimizer Pro 3.84\OptProMon.dll [1752104 2015-04-27] () <==== ATTENTION
S2 Adobe Licensing Console; C:\Windows\SysWOW64\lnsecsl.exe [1202396 2015-04-16] ( ) [File not signed] <==== ATTENTION
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 BrsHelper; C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe [112560 2015-04-15] ()
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)
S2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [3251472 2015-04-12] () [File not signed]
S2 consumerinput_update; C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe [106296 2015-04-16] (ConsumerInput)
S3 consumerinput_updatem; C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe [106296 2015-04-16] (ConsumerInput)
R2 csrcc; C:\Program Files\shopperz\csrcc.exe [1446264 2015-03-11] ()
R2 FlashBeat; C:\ProgramData\FlashBeat\FlashBeat.exe [317440 2015-04-17] () [File not signed]
R2 Gambali; C:\ProgramData\FlashBeat\Gambali.exe [1916456 2015-03-31] (Gambali OEM Software) [File not signed]
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-04-27] (globalUpdate) [File not signed] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-04-27] (globalUpdate) [File not signed] <==== ATTENTION
R2 insvc_1.10.0.14; C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe [278600 2015-04-10] (Infonaut)
R2 lah; c:\windows\lah.exe [417792 2015-04-27] () [File not signed]
R2 mlah; c:\windows\mlah.exe [408576 2015-04-27] () [File not signed]
R2 musyriki; C:\Users\Max\AppData\Roaming\00000000-1430191811-0000-0000-6C626DB6DAC3\jnsp89F0.tmp [108544 2015-04-27] () [File not signed]
R2 poxuwyvy; C:\Users\Max\AppData\Roaming\00000000-1429243423-0000-0000-6C626DB6DAC3\jnsiF0DB.tmp [117248 2015-04-16] () [File not signed]
R2 qrsvc_1.10.0.12; C:\Program Files (x86)\QuickRef_1.10.0.12\Service\qrsvc.exe [278592 2015-03-26] (Quick Ref)
R2 shopperz Updater; C:\Program Files\shopperz\nseven.exe [170360 2015-03-11] ()
R2 SMUpdPlus; C:\Program Files\Common Files\Goobzo\GBUpdatePlus\smu.exe [2717992 2015-04-07] (Search Module Plus Ltd.)
R2 SwdrFREjyLh; C:\ProgramData\DQZCqeZhJD\SwdrFREjyLh.exe [2731488 2015-04-27] (Useful Technology)
S2 wbsvc; C:\Program Files\WebBar\wbsvc.exe [37144 2015-02-18] (Web Bar Media)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
R2 WebWatcherProxy; C:\Program Files (x86)\SysFiles\WebWatcherProxy.exe [1856832 2015-04-07] (WebWatcher)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)
R2 qofemujy; C:\Users\Max\AppData\Roaming\00000000-1430191811-0000-0000-6C626DB6DAC3\nsr4204.tmpfs [X]
R2 solomero; C:\Users\Max\AppData\Roaming\00000000-1429243423-0000-0000-6C626DB6DAC3\nsaB737.tmpfs [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-22] (Advanced Micro Devices, Inc.)
R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-06-21] (Advanced Micro Devices)
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R1 innfd_1_10_0_14; C:\Windows\System32\drivers\innfd_1_10_0_14.sys [58224 2015-04-10] (Infonaut)
R1 qrnfd_1_10_0_12; C:\Windows\System32\drivers\qrnfd_1_10_0_12.sys [58224 2015-03-26] (Quick Ref)
R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58528 2015-04-15] (YTDownloader)
R3 SMUpdd; C:\Program Files\Common Files\Goobzo\GBUpdatePlus\smw.sys [42656 2015-04-07] ()
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
R2 webTinstMKTN84; C:\WINDOWS\system32\Drivers\webTinstMKTN84.sys [50216 2015-04-27] ()
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-08 18:41 - 2015-05-08 18:42 - 00004390 _____ () C:\WINDOWS\System32\Tasks\Installer_shopperpro
2015-05-08 18:41 - 2015-05-08 18:42 - 00004378 _____ () C:\WINDOWS\System32\Tasks\Installer_geforce
2015-05-08 18:41 - 2015-05-08 18:42 - 00000000 ____D () C:\ProgramData\11277746069964851351
2015-05-08 18:41 - 2015-05-08 18:41 - 00027895 _____ () C:\Users\Max\Desktop\FRST.txt
2015-05-08 18:41 - 2015-05-08 18:41 - 00003590 _____ () C:\WINDOWS\System32\Tasks\SMWUpd
2015-05-08 18:41 - 2015-05-08 18:41 - 00003534 _____ () C:\WINDOWS\System32\Tasks\Inst_Rep
2015-05-08 18:40 - 2015-05-08 18:40 - 00000000 ____D () C:\ProgramData\Browser
2015-05-08 18:38 - 2015-05-08 18:38 - 00000000 ____D () C:\Program Files (x86)\Edu App
2015-05-08 18:36 - 2015-05-08 18:36 - 00000000 ____D () C:\Users\Max\AppData\Local\Crossbrowse
2015-05-08 18:35 - 2015-05-08 18:35 - 00002178 _____ () C:\WINDOWS\patsearch.bin
2015-05-08 18:35 - 2015-05-08 18:35 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2015-04-27 21:06 - 2015-05-08 18:34 - 00000460 _____ () C:\WINDOWS\Tasks\BlockAndSurf Update.job
2015-04-27 21:06 - 2015-04-27 21:06 - 00003096 _____ () C:\WINDOWS\System32\Tasks\BlockAndSurf Update
2015-04-27 21:04 - 2015-05-08 18:35 - 00001016 _____ () C:\WINDOWS\Tasks\PcMb9sgy4Hax8V4w.job
2015-04-27 21:04 - 2015-05-08 18:34 - 00003154 _____ () C:\WINDOWS\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-1-7.job
2015-04-27 21:04 - 2015-05-08 18:34 - 00003154 _____ () C:\WINDOWS\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-1-6.job
2015-04-27 21:04 - 2015-05-08 18:34 - 00002462 _____ () C:\WINDOWS\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-5_user.job
2015-04-27 21:04 - 2015-05-08 18:34 - 00002462 _____ () C:\WINDOWS\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-5.job
2015-04-27 21:04 - 2015-04-27 21:04 - 00006158 _____ () C:\WINDOWS\System32\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-1-7
2015-04-27 21:04 - 2015-04-27 21:04 - 00006158 _____ () C:\WINDOWS\System32\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-1-6
2015-04-27 21:04 - 2015-04-27 21:04 - 00005466 _____ () C:\WINDOWS\System32\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-5
2015-04-27 21:04 - 2015-04-27 21:04 - 00004020 _____ () C:\WINDOWS\System32\Tasks\PcMb9sgy4Hax8V4w
2015-04-27 21:04 - 2015-04-27 21:04 - 00000000 ____D () C:\Program Files (x86)\version42BlockAndSurf
2015-04-27 21:04 - 2015-04-27 21:03 - 00050216 _____ () C:\WINDOWS\system32\Drivers\webTinstMKTN84.sys
2015-04-27 21:03 - 2015-05-08 18:34 - 00004510 _____ () C:\WINDOWS\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-4.job
2015-04-27 21:03 - 2015-05-08 18:34 - 00002128 _____ () C:\WINDOWS\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-10_user.job
2015-04-27 21:03 - 2015-05-08 18:34 - 00001072 _____ () C:\WINDOWS\Tasks\Crossbrowse.job
2015-04-27 21:03 - 2015-04-27 21:04 - 00000000 ____D () C:\Program Files (x86)\CinemaPlus-3.2cV27.04
2015-04-27 21:03 - 2015-04-27 21:03 - 00007514 _____ () C:\WINDOWS\System32\Tasks\88e2d631-cef4-4b3b-959f-542c0d09b78a-4
2015-04-27 21:03 - 2015-04-27 21:03 - 00004076 _____ () C:\WINDOWS\System32\Tasks\Crossbrowse
2015-04-27 21:03 - 2015-04-27 21:03 - 00002418 _____ () C:\Users\Public\Desktop\Crossbrowse.lnk
2015-04-27 21:03 - 2015-04-27 21:03 - 00000000 ____D () C:\Users\Max\AppData\Local\SafeGuard
2015-04-27 21:03 - 2015-04-27 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SafeGuard
2015-04-27 21:03 - 2015-04-27 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
2015-04-27 21:03 - 2015-04-27 21:03 - 00000000 ____D () C:\Program Files (x86)\SafeGuard
2015-04-27 21:03 - 2015-04-27 21:03 - 00000000 ____D () C:\Program Files (x86)\Crossbrowse
2015-04-27 21:03 - 2015-04-27 21:03 - 00000000 _____ () C:\WINDOWS\SysWOW64\Number of results
2015-04-27 20:52 - 2015-04-27 20:52 - 00000000 ____D () C:\Users\Max\Documents\FRST
2015-04-27 20:46 - 2015-04-27 20:46 - 00001879 _____ () C:\Users\Max\Desktop\MyPC Backup.lnk
2015-04-27 20:46 - 2015-04-27 20:46 - 00000000 ____D () C:\Program Files (x86)\OLBPre
2015-04-27 20:43 - 2015-04-27 21:02 - 00000000 ____D () C:\Users\Max\AppData\Local\gmsd_us_493
2015-04-27 20:43 - 2015-04-27 21:02 - 00000000 ____D () C:\Program Files (x86)\gmsd_us_493
2015-04-27 20:38 - 2015-04-27 20:51 - 00001132 _____ () C:\Users\Max\Desktop\Continue Live Installation.lnk
2015-04-27 20:38 - 2015-04-27 20:38 - 00003248 _____ () C:\WINDOWS\System32\Tasks\Optimizer Pro Schedule
2015-04-27 20:38 - 2015-04-27 20:38 - 00000000 ____D () C:\Users\Max\Documents\Optimizer Pro
2015-04-27 20:38 - 2015-04-27 20:38 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Optimizer Pro
2015-04-27 20:34 - 2015-05-08 18:40 - 00003454 _____ () C:\WINDOWS\System32\Tasks\NetEngine
2015-04-27 20:34 - 2015-04-27 20:34 - 00000000 ____D () C:\ProgramData\NetEngine
2015-04-27 20:33 - 2015-04-27 20:34 - 00000000 ____D () C:\Users\Max\AppData\Local\00000000-1430166821-0000-0000-6C626DB6DAC3
2015-04-27 20:33 - 2015-04-27 20:33 - 00000000 ____D () C:\Users\Max\AppData\Local\00000000-1430166802-0000-0000-6C626DB6DAC3
2015-04-27 20:32 - 2015-05-08 18:36 - 00000000 ____D () C:\ProgramData\{578b7a49-b228-dc64-578b-b7a49b22e926}
2015-04-27 20:32 - 2015-04-27 20:32 - 00688992 _____ (Swearware) C:\Users\Max\Downloads\dds(1).scr
2015-04-27 20:32 - 2015-04-27 20:32 - 00001115 _____ () C:\Users\Max\Desktop\Optimizer Pro.lnk
2015-04-27 20:32 - 2015-04-27 20:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-04-27 20:32 - 2015-04-27 20:32 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.84
2015-04-27 20:31 - 2015-04-27 20:31 - 00000000 ____D () C:\Users\Max\AppData\Local\00000000-1430166663-0000-0000-6C626DB6DAC3
2015-04-27 20:30 - 2015-04-27 20:30 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage
2015-04-27 20:30 - 2015-04-27 20:30 - 00000000 ____D () C:\Users\Max\AppData\Roaming\ASPackage
2015-04-27 20:30 - 2015-04-27 20:30 - 00000000 ____D () C:\Users\Max\AppData\Roaming\00000000-1430191812-0000-0000-6C626DB6DAC3
2015-04-27 20:30 - 2015-04-27 20:30 - 00000000 ____D () C:\Users\Max\AppData\Roaming\00000000-1430191811-0000-0000-6C626DB6DAC3
2015-04-27 20:29 - 2015-04-27 20:52 - 00000000 ____D () C:\Users\Max\AppData\Local\BreakingNewsAlert
2015-04-27 20:29 - 2015-04-27 20:29 - 00002713 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-04-27 20:29 - 2015-04-27 20:29 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-04-27 20:29 - 2015-04-27 20:29 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Skype
2015-04-27 20:29 - 2015-04-27 20:29 - 00000000 ____D () C:\Users\Max\AppData\Local\Skype
2015-04-27 20:29 - 2015-04-27 20:29 - 00000000 ____D () C:\ProgramData\Skype
2015-04-27 20:29 - 2015-04-27 20:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-04-27 20:29 - 2015-04-27 20:29 - 00000000 ____D () C:\Program Files (x86)\predm
2015-04-27 20:28 - 2015-04-27 20:29 - 00000000 ____D () C:\ProgramData\DQZCqeZhJD
2015-04-27 20:28 - 2015-04-27 20:29 - 00000000 ____D () C:\ProgramData\BreakingNewsAlert
2015-04-27 20:28 - 2015-04-27 20:28 - 00631296 _____ () C:\WINDOWS\lah.dat
2015-04-27 20:28 - 2015-04-27 20:28 - 00417792 _____ () C:\WINDOWS\lah.exe
2015-04-27 20:28 - 2015-04-27 20:28 - 00408576 _____ () C:\WINDOWS\mlah.exe
2015-04-27 20:28 - 2015-04-27 20:28 - 00003616 _____ () C:\WINDOWS\System32\Tasks\gtaUpt
2015-04-27 20:28 - 2015-04-27 20:28 - 00002105 _____ () C:\Users\Max\Desktop\Continue GamesDesktop Uninstaller.lnk
2015-04-27 20:28 - 2015-04-27 20:28 - 00001035 _____ () C:\Users\Max\Desktop\PepperZip.lnk
2015-04-27 20:28 - 2015-04-27 20:28 - 00001023 _____ () C:\Users\Max\Desktop\GUPlayer.lnk
2015-04-27 20:28 - 2015-04-27 20:28 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip
2015-04-27 20:28 - 2015-04-27 20:28 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer
2015-04-27 20:28 - 2015-04-27 20:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
2015-04-27 20:28 - 2015-04-27 20:28 - 00000000 ____D () C:\Program Files\shopperz
2015-04-27 20:28 - 2015-04-27 20:28 - 00000000 ____D () C:\Program Files (x86)\PepperZip
2015-04-27 20:28 - 2015-04-27 20:28 - 00000000 ____D () C:\Program Files (x86)\GUPlayer
2015-04-27 20:28 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\WINDOWS\system32\Drivers\cherimoya.sys
2015-04-27 20:24 - 2015-05-08 18:34 - 00000784 _____ () C:\WINDOWS\Tasks\Taplika mite.job
2015-04-27 20:24 - 2015-05-08 18:34 - 00000304 _____ () C:\WINDOWS\Tasks\Wse_taplika.job
2015-04-27 20:24 - 2015-04-27 20:25 - 00000000 ____D () C:\Program Files\BubbleSound
2015-04-27 20:24 - 2015-04-27 20:24 - 00003782 _____ () C:\WINDOWS\System32\Tasks\Taplika mite
2015-04-27 20:24 - 2015-04-27 20:24 - 00002642 _____ () C:\WINDOWS\System32\Tasks\Wse_taplika
2015-04-27 20:24 - 2015-04-27 20:24 - 00000875 _____ () C:\Users\Max\Desktop\3D BubbleSound.lnk
2015-04-27 20:24 - 2015-04-27 20:24 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Wse_taplika
2015-04-27 20:24 - 2015-04-27 20:24 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0
2015-04-27 20:24 - 2015-04-27 20:24 - 00000000 ____D () C:\ProgramData\{3807D0C4-6885-0142-D903-71C00981A24E}
2015-04-27 20:24 - 2015-04-27 20:24 - 00000000 ____D () C:\Program Files (x86)\QuickRef_1.10.0.12
2015-04-27 20:23 - 2015-04-27 20:24 - 00000000 ____D () C:\Program Files (x86)\WSE_Taplika
2015-04-20 20:41 - 2014-06-09 15:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-04-20 20:41 - 2014-06-09 15:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-04-20 07:05 - 2015-04-20 07:05 - 01246720 _____ () C:\Users\Max\AppData\Roaming\PcMb9sgy4Hax8V4w.exe
2015-04-16 22:04 - 2015-04-16 22:04 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Compete
2015-04-16 21:59 - 2015-04-16 21:59 - 00001798 _____ () C:\WINDOWS\SysWOW64\soft.exe
2015-04-16 21:57 - 2015-04-16 21:57 - 00003456 _____ () C:\WINDOWS\System32\Tasks\avaavaevy
2015-04-16 21:57 - 2015-04-16 21:57 - 00000000 ____D () C:\Users\Max\AppData\Local\00000000-1429221433-0000-0000-6C626DB6DAC3
2015-04-16 21:56 - 2015-04-27 20:21 - 00000000 ____D () C:\Users\Max\AppData\Local\avaavaevy
2015-04-16 21:56 - 2015-04-16 21:56 - 00000000 ____D () C:\Users\Max\AppData\Local\SmartWeb
2015-04-16 21:56 - 2015-04-16 21:56 - 00000000 ____D () C:\Users\Max\AppData\Local\SearchProtect
2015-04-16 21:56 - 2015-04-16 21:56 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2015-04-16 21:55 - 2015-04-16 21:55 - 00000000 ____D () C:\Program Files (x86)\Infonaut_1.10.0.14
2015-04-16 21:54 - 2015-05-08 18:34 - 00000004 _____ () C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-04-16 21:53 - 2015-04-16 21:53 - 00000000 ____D () C:\Users\Max\AppData\Local\Google
2015-04-16 21:17 - 2015-05-08 18:36 - 00000105 _____ () C:\WINDOWS\SysWOW64\get.dat
2015-04-16 21:15 - 2015-04-16 21:15 - 00000000 _____ () C:\WINDOWS\SysWOW64\x64.txt
2015-04-16 21:09 - 2015-04-16 21:09 - 00000000 ____D () C:\Program Files\Reference Assemblies
2015-04-16 21:09 - 2015-04-16 21:09 - 00000000 ____D () C:\Program Files\MSBuild
2015-04-16 21:09 - 2015-04-16 21:09 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2015-04-16 21:09 - 2015-04-16 21:09 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-04-16 21:04 - 2015-05-08 18:42 - 00000376 _____ () C:\WINDOWS\Tasks\CIMT_S-1-5-21-3369700690-3850376273-3648611264-1001.job
2015-04-16 21:04 - 2015-05-08 18:41 - 00000980 _____ () C:\WINDOWS\Tasks\ConsumerInputUpdateTaskMachineCore.job
2015-04-16 21:04 - 2015-05-08 18:34 - 00000984 _____ () C:\WINDOWS\Tasks\ConsumerInputUpdateTaskMachineUA.job
2015-04-16 21:04 - 2015-04-27 21:09 - 00000410 _____ () C:\WINDOWS\Tasks\CIMT_daily_S-1-5-21-3369700690-3850376273-3648611264-1001.job
2015-04-16 21:04 - 2015-04-20 21:09 - 00003382 _____ () C:\WINDOWS\System32\Tasks\CIMT_daily_S-1-5-21-3369700690-3850376273-3648611264-1001
2015-04-16 21:04 - 2015-04-20 21:09 - 00003264 _____ () C:\WINDOWS\System32\Tasks\CIMT_S-1-5-21-3369700690-3850376273-3648611264-1001
2015-04-16 21:04 - 2015-04-16 21:04 - 00003854 _____ () C:\WINDOWS\System32\Tasks\ConsumerInputUpdateTaskMachineUA
2015-04-16 21:04 - 2015-04-16 21:04 - 00003618 _____ () C:\WINDOWS\System32\Tasks\ConsumerInputUpdateTaskMachineCore
2015-04-16 21:04 - 2015-04-16 21:04 - 00000000 ____D () C:\Users\Max\AppData\Local\Consumer Input
2015-04-16 21:03 - 2015-04-21 20:15 - 00000000 ____D () C:\Users\Max\AppData\Roaming\00000000-1429243423-0000-0000-6C626DB6DAC3
2015-04-16 21:03 - 2015-04-16 21:04 - 00000000 ____D () C:\Program Files (x86)\Consumer Input
2015-04-16 21:02 - 2015-04-16 21:02 - 00003902 _____ () C:\WINDOWS\System32\Tasks\YTDownloaderUpd
2015-04-16 21:02 - 2015-04-16 21:02 - 00003720 _____ () C:\WINDOWS\System32\Tasks\SMupdate1
2015-04-16 21:02 - 2015-04-16 21:02 - 00003580 _____ () C:\WINDOWS\System32\Tasks\YTDownloader
2015-04-16 21:02 - 2015-04-16 21:02 - 00001965 _____ () C:\Users\Max\Desktop\YTDownloader.lnk
2015-04-16 21:02 - 2015-04-16 21:02 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader
2015-04-16 21:02 - 2015-04-16 21:02 - 00000000 ____D () C:\Users\Max\AppData\Local\BrowserHelper
2015-04-16 21:02 - 2015-04-16 21:02 - 00000000 ____D () C:\Users\Max\AppData\Local\30034
2015-04-16 21:02 - 2015-04-16 21:02 - 00000000 ____D () C:\Program Files (x86)\YTDownloader
2015-04-16 21:01 - 2015-05-08 18:41 - 00000000 ____D () C:\Users\Max\AppData\Local\ospd_us_1014
2015-04-16 21:01 - 2015-05-08 18:41 - 00000000 ____D () C:\Program Files\Common Files\Goobzo
2015-04-16 21:01 - 2015-04-16 21:01 - 00004250 _____ () C:\WINDOWS\System32\Tasks\SMW_UpdateTask_Time_3134393136333034302d23787845322a5b3434322d57
2015-04-16 21:01 - 2015-04-16 21:01 - 00003598 _____ () C:\WINDOWS\System32\Tasks\SMWPUpd
2015-04-16 21:01 - 2015-04-16 21:01 - 00000000 ____D () C:\Users\Max\AppData\Local\CrashRpt
2015-04-16 21:01 - 2015-04-16 21:01 - 00000000 ____D () C:\ProgramData\SearchModulePlus
2015-04-16 21:01 - 2015-04-16 21:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONESOFTPERDAY
2015-04-16 21:01 - 2015-04-16 21:01 - 00000000 ____D () C:\Program Files (x86)\ospd_us_1014
2015-04-16 20:58 - 2013-08-02 21:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-04-16 20:58 - 2013-08-02 21:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-04-16 20:58 - 2013-08-02 21:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-04-16 20:58 - 2013-08-02 21:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-04-16 20:56 - 2015-04-16 21:06 - 00000000 ____D () C:\Users\Max\AppData\Local\WebBar
2015-04-16 20:56 - 2015-04-16 20:56 - 00003784 _____ () C:\WINDOWS\System32\Tasks\WebBarUpdateTask
2015-04-16 20:56 - 2015-04-16 20:56 - 00003260 _____ () C:\WINDOWS\System32\Tasks\WebBarLaunchTask
2015-04-16 20:56 - 2015-04-16 20:56 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Pro PC Cleaner
2015-04-16 20:56 - 2015-04-16 20:56 - 00000000 ____D () C:\ProgramData\InstallSightSDK
2015-04-16 20:56 - 2015-04-16 20:56 - 00000000 ____D () C:\Program Files\WebBar
2015-04-16 20:55 - 2015-04-16 20:55 - 00026430 _____ () C:\WINDOWS\System32\Tasks\CloudHIDEAWAY
2015-04-16 20:55 - 2015-04-16 20:55 - 00000000 ____D () C:\ProgramData\LolliScan
2015-04-16 20:55 - 2015-04-16 20:55 - 00000000 ____D () C:\Program Files (x86)\CloudScout Parental Control
2015-04-16 20:52 - 2015-04-16 20:52 - 01202396 _____ ( ) C:\WINDOWS\SysWOW64\lnsecsl.exe
2015-04-16 20:46 - 2015-04-16 20:46 - 00000000 ____D () C:\Program Files (x86)\MSS
2015-04-16 20:45 - 2015-05-08 18:37 - 00000000 ____D () C:\ProgramData\FlashBeat
2015-04-16 20:45 - 2015-05-08 18:34 - 00009016 _____ () C:\WINDOWS\SysWOW64\GambaliOff.ini
2015-04-16 20:45 - 2015-05-08 18:34 - 00009016 _____ () C:\WINDOWS\system32\GambaliOff.ini
2015-04-16 20:45 - 2015-04-16 20:45 - 00003552 _____ () C:\WINDOWS\System32\Tasks\KCXOIF
2015-04-16 20:45 - 2015-04-16 20:45 - 00000000 ____D () C:\ProgramData\e29c40da53af42a3895e10c22c3d76c2
2015-04-16 20:45 - 2015-04-16 20:45 - 00000000 ____D () C:\ProgramData\5d027cc9a7cc4294a0da1eb9d4a04143
2015-04-16 20:45 - 2015-04-16 20:45 - 00000000 ____D () C:\Program Files (x86)\SDU
2015-04-16 20:45 - 2015-04-16 20:45 - 00000000 ____D () C:\Program Files (x86)\FlashBeat
2015-04-16 20:45 - 2015-03-31 15:18 - 00408424 _____ (Gambali OEM Software) C:\WINDOWS\system32\Gambali64.dll
2015-04-16 20:45 - 2015-03-31 15:18 - 00340944 _____ (Gambali OEM Software) C:\WINDOWS\SysWOW64\Gambali.dll
2015-04-16 20:44 - 2015-05-08 18:35 - 00002474 _____ () C:\WINDOWS\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-5_user.job
2015-04-16 20:44 - 2015-05-08 18:35 - 00002474 _____ () C:\WINDOWS\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-5.job
2015-04-16 20:44 - 2015-05-08 18:34 - 00003502 _____ () C:\WINDOWS\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-1-7.job
2015-04-16 20:44 - 2015-05-08 18:34 - 00003166 _____ () C:\WINDOWS\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-1-6.job
2015-04-16 20:44 - 2015-05-08 18:34 - 00001346 _____ () C:\WINDOWS\Tasks\XBNK.job
2015-04-16 20:44 - 2015-04-16 20:44 - 01535488 _____ (Cinema PlusV16.04) C:\Users\Max\AppData\Roaming\XBNK.exe
2015-04-16 20:44 - 2015-04-16 20:44 - 00006506 _____ () C:\WINDOWS\System32\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-1-7
2015-04-16 20:44 - 2015-04-16 20:44 - 00006170 _____ () C:\WINDOWS\System32\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-1-6
2015-04-16 20:44 - 2015-04-16 20:44 - 00005478 _____ () C:\WINDOWS\System32\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-5
2015-04-16 20:44 - 2015-04-16 20:44 - 00004352 _____ () C:\WINDOWS\System32\Tasks\XBNK
2015-04-16 20:43 - 2015-05-08 18:34 - 00004522 _____ () C:\WINDOWS\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-4.job
2015-04-16 20:43 - 2015-05-08 18:34 - 00002140 _____ () C:\WINDOWS\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-10_user.job
2015-04-16 20:43 - 2015-05-08 18:34 - 00001348 _____ () C:\WINDOWS\Tasks\LKVYT.job
2015-04-16 20:43 - 2015-05-08 18:34 - 00000986 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-04-16 20:43 - 2015-04-27 21:08 - 00000990 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-04-16 20:43 - 2015-04-27 21:03 - 00003962 _____ () C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-04-16 20:43 - 2015-04-27 21:03 - 00003726 _____ () C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-04-16 20:43 - 2015-04-16 21:15 - 00000000 ____D () C:\Program Files (x86)\Steel Cut
2015-04-16 20:43 - 2015-04-16 20:44 - 00000000 ____D () C:\Program Files (x86)\Lights Cinema 1.3betaV16.04
2015-04-16 20:43 - 2015-04-16 20:43 - 01774080 _____ (Cinema PlusV16.04) C:\Users\Max\AppData\Roaming\LKVYT.exe
2015-04-16 20:43 - 2015-04-16 20:43 - 00007526 _____ () C:\WINDOWS\System32\Tasks\3cbeff34-7ffd-46c4-8208-b17f0452902a-4
2015-04-16 20:43 - 2015-04-16 20:43 - 00004352 _____ () C:\WINDOWS\System32\Tasks\LKVYT
2015-04-16 20:43 - 2015-04-16 20:43 - 00000000 ____D () C:\Users\Max\AppData\Local\globalUpdate
2015-04-16 20:43 - 2015-04-16 20:43 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-04-16 20:42 - 2015-04-16 21:57 - 00000008 _____ () C:\end
2015-04-16 20:42 - 2015-04-16 21:16 - 00009816 _____ () C:\WINDOWS\SysWOW64\WebWatcherProxyOff.ini
2015-04-16 20:42 - 2015-04-16 21:16 - 00009816 _____ () C:\WINDOWS\system32\WebWatcherProxyOff.ini
2015-04-16 20:42 - 2015-04-16 20:42 - 00004080 _____ () C:\WINDOWS\System32\Tasks\SysHealth_Controller_Mon
2015-04-16 20:41 - 2015-04-27 20:46 - 00003982 _____ () C:\WINDOWS\System32\Tasks\LaunchPreSignup
2015-04-16 20:41 - 2015-04-20 20:42 - 00000000 ____D () C:\Program Files (x86)\Priceless
2015-04-16 20:41 - 2015-04-16 20:42 - 00000000 ____D () C:\Program Files (x86)\SysFiles
2015-04-16 20:41 - 2015-04-16 20:41 - 00000000 ____D () C:\WINDOWS\SysHealthController
2015-04-16 20:41 - 2015-04-16 20:41 - 00000000 ____D () C:\WINDOWS\SysFilesController
2015-04-16 20:41 - 2015-04-16 20:41 - 00000000 ____D () C:\Program Files (x86)\app_setup
2015-04-16 20:41 - 2015-04-07 16:56 - 00415272 _____ (WebWatcher) C:\WINDOWS\system32\WebWatcherLSP64.dll
2015-04-16 20:41 - 2015-04-07 16:56 - 00347832 _____ (WebWatcher) C:\WINDOWS\SysWOW64\WebWatcherLSP.dll
2015-04-16 20:40 - 2015-04-16 20:40 - 01521680 _____ (Dummy, Ltd.) C:\Users\Max\Downloads\iain.banks.the.wasp.factory_10924_i53165781_il345.exe
2015-04-16 20:40 - 2015-04-16 20:40 - 00001299 _____ () C:\Users\Max\Desktop\Continue installation .lnk
2015-04-15 21:25 - 2015-04-15 21:25 - 00001765 _____ () C:\Users\Public\Desktop\iTunes.lnk
2015-04-15 21:25 - 2015-04-15 21:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-04-15 21:24 - 2015-04-15 21:25 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-04-15 21:24 - 2015-04-15 21:25 - 00000000 ____D () C:\Program Files\iTunes
2015-04-15 21:24 - 2015-04-15 21:24 - 00000000 ____D () C:\Program Files\iPod
2015-04-15 21:24 - 2015-04-15 21:24 - 00000000 ____D () C:\Program Files (x86)\iTunes
2015-04-15 21:05 - 2014-10-30 21:50 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2015-04-15 21:05 - 2014-10-30 20:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2015-04-15 21:05 - 2014-10-30 20:23 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-04-15 21:05 - 2014-10-30 20:22 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2015-04-15 21:05 - 2014-10-30 20:18 - 04840960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2015-04-15 21:05 - 2014-10-30 20:09 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2015-04-15 21:05 - 2014-10-30 19:12 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2015-04-15 21:05 - 2014-10-28 21:03 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-04-15 21:05 - 2014-10-28 20:59 - 00014144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys
2015-04-15 21:05 - 2014-10-28 19:45 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2015-04-15 21:05 - 2014-10-28 19:22 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-04-15 21:05 - 2014-10-28 19:19 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-04-15 21:05 - 2014-10-28 19:08 - 18822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-04-15 21:05 - 2014-10-28 19:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2015-04-15 21:05 - 2014-10-28 18:45 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-04-15 21:05 - 2014-10-28 18:42 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2015-04-15 21:05 - 2014-10-28 18:17 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-04-15 21:05 - 2014-10-28 18:10 - 02344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-04-15 21:05 - 2014-10-28 17:51 - 01554432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-04-15 21:04 - 2014-10-28 21:10 - 01816008 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2015-04-15 21:04 - 2014-10-28 21:00 - 02314952 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-04-15 21:04 - 2014-10-28 21:00 - 02229168 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-04-15 21:04 - 2014-10-28 21:00 - 01540696 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-04-15 21:04 - 2014-10-28 20:59 - 03460472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-04-15 21:04 - 2014-10-28 20:59 - 02529856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-04-15 21:04 - 2014-10-28 20:58 - 00014528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2015-04-15 21:04 - 2014-10-28 20:57 - 03138720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2015-04-15 21:04 - 2014-10-28 20:57 - 03118096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2015-04-15 21:04 - 2014-10-28 20:57 - 02745160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-04-15 21:04 - 2014-10-28 20:57 - 02450216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL
2015-04-15 21:04 - 2014-10-28 20:57 - 01286048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2015-04-15 21:04 - 2014-10-28 20:55 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2015-04-15 21:04 - 2014-10-28 20:55 - 01660528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-04-15 21:04 - 2014-10-28 20:55 - 01543768 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-04-15 21:04 - 2014-10-28 20:52 - 02334080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 01518504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 01509688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 01288096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 01165744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 01064720 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmv2clt.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 00988544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 00952384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-04-15 21:04 - 2014-10-28 20:52 - 00821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-04-15 21:04 - 2014-10-28 20:51 - 01310912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-04-15 21:04 - 2014-10-28 20:13 - 01901240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-04-15 21:04 - 2014-10-28 20:12 - 01946144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-04-15 21:04 - 2014-10-28 20:12 - 01907384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-04-15 21:04 - 2014-10-28 20:11 - 02689392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2015-04-15 21:04 - 2014-10-28 20:11 - 02528760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2015-04-15 21:04 - 2014-10-28 20:11 - 02447104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVENCOD.DLL
2015-04-15 21:04 - 2014-10-28 20:11 - 01024200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2015-04-15 21:04 - 2014-10-28 20:10 - 01564464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2015-04-15 21:04 - 2014-10-28 20:10 - 01209624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-04-15 21:04 - 2014-10-28 20:10 - 01178104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2015-04-15 21:04 - 2014-10-28 20:07 - 02324208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-04-15 21:04 - 2014-10-28 20:07 - 01321192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-04-15 21:04 - 2014-10-28 20:07 - 01115104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2015-04-15 21:04 - 2014-10-28 20:07 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-04-15 21:04 - 2014-10-28 20:07 - 00857384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-04-15 21:04 - 2014-10-28 19:59 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-04-15 21:04 - 2014-10-28 19:29 - 04483072 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-04-15 21:04 - 2014-10-28 19:28 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll
2015-04-15 21:04 - 2014-10-28 19:25 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll
2015-04-15 21:04 - 2014-10-28 19:24 - 04418560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-04-15 21:04 - 2014-10-28 19:17 - 02003456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2015-04-15 21:04 - 2014-10-28 19:10 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-04-15 21:04 - 2014-10-28 19:08 - 01540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2015-04-15 21:04 - 2014-10-28 19:00 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-04-15 21:04 - 2014-10-28 18:57 - 02924032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2015-04-15 21:04 - 2014-10-28 18:56 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2015-04-15 21:04 - 2014-10-28 18:56 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2015-04-15 21:04 - 2014-10-28 18:55 - 01697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2015-04-15 21:04 - 2014-10-28 18:51 - 00941056 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2015-04-15 21:04 - 2014-10-28 18:50 - 01289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2015-04-15 21:04 - 2014-10-28 18:48 - 01080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2015-04-15 21:04 - 2014-10-28 18:47 - 02072064 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2015-04-15 21:04 - 2014-10-28 18:45 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\blackbox.dll
2015-04-15 21:04 - 2014-10-28 18:45 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2015-04-15 21:04 - 2014-10-28 18:44 - 02984448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-04-15 21:04 - 2014-10-28 18:43 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2015-04-15 21:04 - 2014-10-28 18:42 - 03724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2015-04-15 21:04 - 2014-10-28 18:42 - 01999872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-04-15 21:04 - 2014-10-28 18:40 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2015-04-15 21:04 - 2014-10-28 18:39 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-04-15 21:04 - 2014-10-28 18:38 - 04690432 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2015-04-15 21:04 - 2014-10-28 18:35 - 04709888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-04-15 21:04 - 2014-10-28 18:35 - 03256320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2015-04-15 21:04 - 2014-10-28 18:33 - 15157760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-04-15 21:04 - 2014-10-28 18:32 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2015-04-15 21:04 - 2014-10-28 18:32 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-04-15 21:04 - 2014-10-28 18:31 - 02941952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2015-04-15 21:04 - 2014-10-28 18:28 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2015-04-15 21:04 - 2014-10-28 18:26 - 03561984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-04-15 21:04 - 2014-10-28 18:25 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-04-15 21:04 - 2014-10-28 18:24 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2015-04-15 21:04 - 2014-10-28 18:24 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2015-04-15 21:04 - 2014-10-28 18:23 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2015-04-15 21:04 - 2014-10-28 18:22 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-04-15 21:04 - 2014-10-28 18:22 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2015-04-15 21:04 - 2014-10-28 18:22 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-04-15 21:04 - 2014-10-28 18:22 - 00945152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCacheProvider.dll
2015-04-15 21:04 - 2014-10-28 18:21 - 01250816 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-04-15 21:04 - 2014-10-28 18:19 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2015-04-15 21:04 - 2014-10-28 18:18 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-04-15 21:04 - 2014-10-28 18:17 - 01402368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2015-04-15 21:04 - 2014-10-28 18:17 - 01360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2015-04-15 21:04 - 2014-10-28 18:16 - 05267968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2015-04-15 21:04 - 2014-10-28 18:14 - 03553280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2015-04-15 21:04 - 2014-10-28 18:12 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-04-15 21:04 - 2014-10-28 18:11 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-04-15 21:04 - 2014-10-28 18:10 - 02469888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2015-04-15 21:04 - 2014-10-28 18:08 - 02608640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-04-15 21:04 - 2014-10-28 18:08 - 02542080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-04-15 21:04 - 2014-10-28 18:08 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2015-04-15 21:04 - 2014-10-28 18:08 - 01822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2015-04-15 21:04 - 2014-10-28 18:08 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-04-15 21:04 - 2014-10-28 18:05 - 03273216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2015-04-15 21:04 - 2014-10-28 18:04 - 01376256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-04-15 21:04 - 2014-10-28 18:03 - 04067840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-04-15 21:04 - 2014-10-28 18:03 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2015-04-15 21:04 - 2014-10-28 18:03 - 02487296 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2015-04-15 21:04 - 2014-10-28 18:02 - 14354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-04-15 21:04 - 2014-10-28 18:00 - 01705984 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-04-15 21:04 - 2014-10-28 17:59 - 02252800 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2015-04-15 21:04 - 2014-10-28 17:59 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-04-15 21:04 - 2014-10-28 17:59 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-04-15 21:04 - 2014-10-28 17:56 - 01337344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-04-15 21:04 - 2014-10-28 17:56 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-04-15 21:04 - 2014-10-28 17:56 - 01001984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2015-04-15 21:04 - 2014-10-28 17:54 - 07784960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-04-15 21:04 - 2014-10-28 17:52 - 15432704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-04-15 21:04 - 2014-10-28 17:52 - 02554880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-04-15 21:04 - 2014-10-28 17:52 - 02170368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2015-04-15 21:04 - 2014-10-28 17:52 - 01461248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2015-04-15 21:04 - 2014-10-28 17:52 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-04-15 21:04 - 2014-10-28 17:50 - 12749824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-04-15 21:04 - 2014-10-28 17:50 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2015-04-15 21:04 - 2014-10-28 17:50 - 01482752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2015-04-15 21:04 - 2014-10-28 17:48 - 03056128 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2015-04-15 21:04 - 2014-10-28 17:47 - 02090496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-04-15 21:04 - 2014-10-28 17:46 - 09530368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-04-15 21:04 - 2014-10-28 17:46 - 01919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2015-04-15 21:04 - 2014-10-28 17:46 - 01348096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-04-15 21:04 - 2014-10-28 17:45 - 13318144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-04-15 21:04 - 2014-10-28 17:45 - 01725952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-04-15 21:04 - 2014-10-28 17:43 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-04-15 21:04 - 2014-10-28 17:42 - 01922560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-04-15 21:04 - 2014-10-28 17:42 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-04-15 21:04 - 2014-10-28 17:41 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-04-15 21:04 - 2014-10-28 17:41 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2015-04-15 21:04 - 2014-10-28 17:40 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2015-04-15 21:04 - 2014-10-28 17:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-04-15 21:04 - 2014-10-28 17:39 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-04-15 21:04 - 2014-10-28 17:38 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-04-15 21:04 - 2014-10-28 17:37 - 06386176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-04-15 21:04 - 2014-10-28 17:36 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-04-15 21:04 - 2014-10-28 17:35 - 01668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2015-04-15 21:04 - 2014-10-28 17:34 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-04-15 21:04 - 2014-10-28 17:33 - 06213632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-04-15 21:04 - 2014-10-15 01:32 - 02025792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-04-15 21:04 - 2014-10-06 23:45 - 03307112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2015-04-15 21:04 - 2014-10-06 20:44 - 02890296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2015-04-15 21:03 - 2014-10-28 21:10 - 00430728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2015-04-15 21:03 - 2014-10-28 21:09 - 01950280 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2015-04-15 21:03 - 2014-10-28 21:09 - 01309744 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-04-15 21:03 - 2014-10-28 21:09 - 01239576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2015-04-15 21:03 - 2014-10-28 21:04 - 00397192 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2015-04-15 21:03 - 2014-10-28 21:04 - 00324864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-04-15 21:03 - 2014-10-28 21:04 - 00105872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-04-15 21:03 - 2014-10-28 21:03 - 00435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-04-15 21:03 - 2014-10-28 21:00 - 01385216 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-04-15 21:03 - 2014-10-28 21:00 - 00740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2015-04-15 21:03 - 2014-10-28 21:00 - 00544408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-04-15 21:03 - 2014-10-28 21:00 - 00379568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-04-15 21:03 - 2014-10-28 20:59 - 00520536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-04-15 21:03 - 2014-10-28 20:59 - 00498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2015-04-15 21:03 - 2014-10-28 20:57 - 01576312 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2015-04-15 21:03 - 2014-10-28 20:57 - 01552704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-04-15 21:03 - 2014-10-28 20:57 - 01210176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2015-04-15 21:03 - 2014-10-28 20:57 - 01150208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2015-04-15 21:03 - 2014-10-28 20:57 - 00725672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2015-04-15 21:03 - 2014-10-28 20:57 - 00662120 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.exe
2015-04-15 21:03 - 2014-10-28 20:57 - 00643064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-04-15 21:03 - 2014-10-28 20:57 - 00557832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL
2015-04-15 21:03 - 2014-10-28 20:57 - 00389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-04-15 21:03 - 2014-10-28 20:57 - 00295432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL
2015-04-15 21:03 - 2014-10-28 20:57 - 00256744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2015-04-15 21:03 - 2014-10-28 20:55 - 01133200 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-04-15 21:03 - 2014-10-28 20:55 - 01063432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2015-04-15 21:03 - 2014-10-28 20:55 - 00730824 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2015-04-15 21:03 - 2014-10-28 20:55 - 00426120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2015-04-15 21:03 - 2014-10-28 20:55 - 00359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2015-04-15 21:03 - 2014-10-28 20:54 - 00685408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2015-04-15 21:03 - 2014-10-28 20:53 - 00687496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2015-04-15 21:03 - 2014-10-28 20:53 - 00411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-04-15 21:03 - 2014-10-28 20:52 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00850656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00734448 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00634768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00580024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00497936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00444728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00405456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00356936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00311448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00225696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2015-04-15 21:03 - 2014-10-28 20:52 - 00020160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2015-04-15 21:03 - 2014-10-28 20:51 - 00363080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2015-04-15 21:03 - 2014-10-28 20:18 - 01782912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2015-04-15 21:03 - 2014-10-28 20:18 - 01103768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2015-04-15 21:03 - 2014-10-28 20:18 - 00848568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2015-04-15 21:03 - 2014-10-28 20:18 - 00320736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2015-04-15 21:03 - 2014-10-28 20:18 - 00016504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2015-04-15 21:03 - 2014-10-28 20:15 - 00340848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2015-04-15 21:03 - 2014-10-28 20:15 - 00340288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-04-15 21:03 - 2014-10-28 20:15 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-04-15 21:03 - 2014-10-28 20:15 - 00089856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2015-04-15 21:03 - 2014-10-28 20:12 - 00616704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2015-04-15 21:03 - 2014-10-28 20:12 - 00430176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-04-15 21:03 - 2014-10-28 20:12 - 00403776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2015-04-15 21:03 - 2014-10-28 20:11 - 01037656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2015-04-15 21:03 - 2014-10-28 20:11 - 00914648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2015-04-15 21:03 - 2014-10-28 20:11 - 00492704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSDECD.DLL
2015-04-15 21:03 - 2014-10-28 20:11 - 00488064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2015-04-15 21:03 - 2014-10-28 20:11 - 00463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2015-04-15 21:03 - 2014-10-28 20:10 - 01287112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2015-04-15 21:03 - 2014-10-28 20:10 - 00569128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2015-04-15 21:03 - 2014-10-28 20:10 - 00547992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2015-04-15 21:03 - 2014-10-28 20:10 - 00492232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-04-15 21:03 - 2014-10-28 20:10 - 00367248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00785568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00705008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00700328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00584120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00551064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00482360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00409040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00399752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00331048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2015-04-15 21:03 - 2014-10-28 20:07 - 00320256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2015-04-15 21:03 - 2014-10-28 20:06 - 00800008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2015-04-15 21:03 - 2014-10-28 20:06 - 00507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2015-04-15 21:03 - 2014-10-28 20:05 - 00890128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmv2clt.dll
2015-04-15 21:03 - 2014-10-28 19:56 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-04-15 21:03 - 2014-10-28 19:50 - 01192960 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-04-15 21:03 - 2014-10-28 19:48 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2015-04-15 21:03 - 2014-10-28 19:48 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2015-04-15 21:03 - 2014-10-28 19:45 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll
2015-04-15 21:03 - 2014-10-28 19:45 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2015-04-15 21:03 - 2014-10-28 19:44 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-04-15 21:03 - 2014-10-28 19:44 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2015-04-15 21:03 - 2014-10-28 19:43 - 00685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll
2015-04-15 21:03 - 2014-10-28 19:42 - 01091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2015-04-15 21:03 - 2014-10-28 19:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2015-04-15 21:03 - 2014-10-28 19:37 - 02329088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0404.dll
2015-04-15 21:03 - 2014-10-28 19:36 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcese40.dll
2015-04-15 21:03 - 2014-10-28 19:34 - 03438592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0804.dll