Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Son's laptop slow, browser hangs, D/Ls sporadic or fail.

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 6th, 2014, 1:24 pm

My son's laptop is running very slowly, at least online. The browser often hangs and fails to load pages, though sometimes the page will load when you click on X to cancel the page loading. Download speeds are very sporadic and usually fail outright. Many times the first page will load fairly quickly but clicking on any links on that page will fail to load. I have removed Bittorent.

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17239 BrowserJavaVersion: 10.67.2
Run by owner at 13:09:38 on 2014-09-06
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.8082.5832 [GMT -4:00]
.
AV: Kaspersky PURE 3.0 *Enabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
SP: Kaspersky PURE 3.0 *Enabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky PURE 3.0 *Enabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe
C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\WUDFHost.exe
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Ruiware\WinPatrol\WinPatrol.exe
C:\Users\owner\AppData\Roaming\Search Protection\SearchProtection.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\igfxEM.exe
C:\Windows\system32\igfxHK.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\system32\igfxTray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\PhraseExpress\phraseexpress.exe
C:\Windows\splwow64.exe
C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://search.yahoo.com/?type=888596&fr=spigot-yhp-ie
mWinlogon: Userinit = userinit.exe
BHO: Browser Extensions: {34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5} - C:\Users\owner\AppData\Roaming\Browser Extensions\Coupons.dll
BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
BHO: RoboForm Toolbar Helper: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll
BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll
TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
uRun: [GUDelayStartup] "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun
uRun: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
uRun: [WinPatrol] C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe -expressboot
uRun: [SearchProtection] "C:\Users\owner\AppData\Roaming\Search Protection\SearchProtection.EXE" /autostart
uRun: [Browser Extensions] "C:\Users\owner\AppData\Roaming\Browser Extensions\CouponsHelper.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
mRun: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
mRun: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe"
StartupFolder: C:\Users\owner\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\PHRASE~1.LNK - C:\Program Files (x86)\PhraseExpress\phraseexpress.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ie_banner_deny.htm
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: Customize Menu - C:/Program Files (x86)/Siber Systems/AI RoboForm/RoboFormComCustomizeIEMenu.html
IE: Fill Forms - C:/Program Files (x86)/Siber Systems/AI RoboForm/RoboFormComFillForms.html
IE: Save Forms - C:/Program Files (x86)/Siber Systems/AI RoboForm/RoboFormComSavePass.html
IE: Show RoboForm Toolbar - C:/Program Files (x86)/Siber Systems/AI RoboForm/RoboFormComShowToolbar.html
IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll
TCP: NameServer = 75.75.75.75 75.75.76.76
TCP: Interfaces\{20185106-24BF-49B3-9078-6EF5B190DF33} : DHCPNameServer = 75.75.75.75 75.75.76.76
TCP: Interfaces\{3ACAF2E1-FC7F-4F91-A78B-33CCB448CD0E} : DHCPNameServer = 4.2.2.1 207.172.11.73 204.117.214.10
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: Browser Extensions: {34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5} - C:\Users\owner\AppData\Roaming\Browser Extensions\Coupons64.dll
x64-BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
x64-BHO: RoboForm Toolbar Helper: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll
x64-BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll
x64-TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [Fences] "C:\Program Files (x86)\Stardock\Fences\Fences.exe" /startup
x64-IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll
x64-Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-SSODL: WebCheck - <orphaned>
x64-STS: FencesShlExt Class - {1984DD45-52CF-49cd-AB77-18F378FEA264} - C:\Program Files (x86)\Stardock\Fences\FencesMenu64.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo!
FF - prefs.js: keyword.URL - hxxps://search.yahoo.com/search?fr=gree ... =888596&p=
FF - prefs.js: browser.startup.homepage - hxxps://search.yahoo.com/?type=888596&fr=spigot-yhp-ff
FF - plugin: C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrlui.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll
FF - ExtSQL: 2038-01-18 20:14; betteryoutube@ginatrapani.org; C:\Users\SpecialEd\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\extensions\betteryoutube@ginatrapani.org
FF - ExtSQL: !HIDDEN! 2011-01-11 15:35; smartwebprinting@hp.com; C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
============= SERVICES / DRIVERS ===============
.
R0 BootDefragDriver;BootDefragDriver;C:\Windows\System32\drivers\BootDefragDriver.sys [2014-8-28 17600]
R0 CSCrySec;InfoWatch Encrypt Sector Library driver;C:\Windows\System32\drivers\CSCrySec.sys [2014-8-31 84536]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-2-6 20464]
R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-9-7 17536]
R1 CSVirtualDiskDrv;InfoWatch Virtual Disk driver;C:\Windows\System32\drivers\CSVirtualDiskDrv.sys [2014-8-31 66616]
R1 GUBootStartup;GUBootStartup;C:\Windows\System32\drivers\GUBootStartup.sys [2014-8-28 20672]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\System32\drivers\klim6.sys [2012-8-2 29792]
R1 kltdi;kltdi;C:\Windows\System32\drivers\kltdi.sys [2013-11-11 54368]
R1 kneps;kneps;C:\Windows\System32\drivers\kneps.sys [2013-11-11 178448]
R1 veracrypt;veracrypt;C:\Windows\System32\drivers\veracrypt.sys [2014-9-1 231768]
R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-2 15416]
R2 AVP;Kaspersky Anti-Virus Service;C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [2013-11-11 356128]
R2 c2cautoupdatesvc;Skype Click to Call Updater;C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-7-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service;C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-7-14 1767520]
R2 CSObjectsSrv;CryptoStorage control service;C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [2013-9-25 818888]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2013-4-22 822504]
R2 DirMngr;DirMngr;C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [2014-9-3 216576]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\Windows\System32\igfxCUIService.exe [2014-5-21 314696]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-6-26 523944]
R2 TeamViewer9;TeamViewer 9;C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-8-28 5052224]
R3 ATP;ASUS PS/2 Port Input Device;C:\Windows\System32\drivers\AsusTP.sys [2012-10-31 61824]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-2-6 358896]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-2-6 795632]
R3 klkbdflt;Kaspersky Lab KLKBDFLT;C:\Windows\System32\drivers\klkbdflt.sys [2013-11-11 29280]
R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\System32\drivers\klmouflt.sys [2013-11-11 29280]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2014-8-28 252048]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2013-3-19 805088]
R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfslh.sys [2013-6-26 767144]
R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaylh.sys [2013-6-26 273576]
R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirlh.sys [2013-6-26 28840]
R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvollh.sys [2013-6-26 23208]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-6-26 207528]
R3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\drivers\wdcsam64.sys [2008-5-6 14464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-4-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-4-11 124088]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-4-3 315008]
S2 VyprVPN;VyprVPN;C:\Program Files (x86)\VyprVPN\VyprVPNService.exe [2014-8-27 116224]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-8-28 111616]
S3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-9-4 122584]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-3-19 19456]
S3 tapvyprvpn;TAP-VyprVPN Adapter V9;C:\Windows\System32\drivers\tapvyprvpn.sys [2014-8-27 44896]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2013-3-19 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-8-28 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2013-3-19 30208]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-8-28 1255736]
.
=============== Created Last 30 ================
.
2014-09-06 16:00:36 75888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2D7C2106-48F5-499F-8D4F-B21528A2F30F}\offreg.dll
2014-09-06 15:45:16 97803 ----a-w- C:\ProgramData\1410018152.bdinstall.bin
2014-09-06 15:42:42 -------- d-----w- C:\ProgramData\bdch
2014-09-06 15:42:32 37823 ----a-w- C:\ProgramData\1410018147.bdinstall.bin
2014-09-05 20:14:27 -------- d-----w- C:\Users\owner\AppData\Roaming\Browser Extensions
2014-09-05 20:14:23 -------- d-----w- C:\Users\owner\AppData\Roaming\Search Protection
2014-09-05 20:12:56 -------- d-----w- C:\Windows\SysWow64\C2MP
2014-09-05 17:27:05 244789 ----a-w- C:\ProgramData\1409937465.bdinstall.bin
2014-09-05 17:17:45 -------- d-----w- C:\Users\owner\AppData\Roaming\QuickScan
2014-09-04 14:51:17 122584 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-09-03 18:38:06 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2014-09-03 18:38:05 -------- d-----w- C:\Program Files (x86)\Steam
2014-09-03 15:50:25 -------- d-----w- C:\Users\owner\AppData\Roaming\WinPatrol
2014-09-03 15:50:09 -------- d-----w- C:\ProgramData\InstallMate
2014-09-03 15:50:09 -------- d-----w- C:\Program Files (x86)\Ruiware
2014-09-03 05:36:49 -------- d-----w- C:\ProgramData\Golden Frog, GmbH
2014-09-03 05:35:45 -------- d-----w- C:\ProgramData\Package Cache
2014-09-03 05:33:14 -------- d-----w- C:\Program Files (x86)\VyprVPN
2014-09-02 17:33:52 -------- d-----r- C:\Program Files (x86)\Skype
2014-09-02 09:44:54 11319192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2D7C2106-48F5-499F-8D4F-B21528A2F30F}\mpengine.dll
2014-09-02 02:49:24 -------- d-----w- C:\Users\owner\AppData\Roaming\gnupg
2014-09-02 02:49:23 -------- d-----w- C:\ProgramData\GNU
2014-09-02 02:49:17 -------- d-----w- C:\Program Files (x86)\GNU
2014-09-01 20:47:59 -------- d-----w- C:\Users\owner\AppData\Roaming\Solveig Multimedia
2014-09-01 20:47:35 -------- d-----w- C:\Program Files (x86)\Common Files\Solveig Multimedia
2014-09-01 20:47:33 -------- d-----w- C:\Program Files (x86)\Solveig Multimedia
2014-09-01 05:51:23 -------- d-----w- C:\Users\owner\AppData\Roaming\VeraCrypt
2014-09-01 05:49:46 -------- d-----w- C:\ProgramData\VirtualizedApplications
2014-09-01 05:49:00 231768 ----a-w- C:\Windows\System32\drivers\veracrypt.sys
2014-09-01 05:48:48 -------- d-----w- C:\Program Files\VeraCrypt
2014-09-01 04:54:19 -------- d-----w- C:\Users\owner\AppData\Local\Stardock
2014-09-01 04:54:19 -------- d-----w- C:\ProgramData\Stardock
2014-09-01 04:54:17 -------- d-----w- C:\Users\owner\AppData\Roaming\Stardock
2014-09-01 04:54:13 -------- d-----w- C:\Program Files (x86)\Stardock
2014-09-01 04:01:55 -------- d-----w- C:\Users\owner\AppData\Roaming\TrueCrypt
2014-09-01 04:01:05 230840 ----a-w- C:\Windows\System32\drivers\truecrypt.sys
2014-09-01 04:00:57 -------- d-----w- C:\Users\owner\FrostWire
2014-09-01 04:00:57 -------- d-----w- C:\Users\owner\.frostwire5
2014-09-01 04:00:47 -------- d-----w- C:\Program Files\TrueCrypt
2014-09-01 03:50:49 -------- d-----w- C:\Program Files\Axantum
2014-09-01 03:50:28 -------- d-----w- C:\Users\owner\AppData\Roaming\OpenCandy
2014-09-01 03:38:17 -------- d-----w- C:\Users\owner\AppData\Local\SoftGrid Client
2014-09-01 03:38:14 -------- d-----w- C:\Users\owner\AppData\Roaming\SoftGrid Client
2014-08-31 20:29:40 -------- d-----w- C:\Program Files (x86)\Password Safe
2014-08-31 19:56:07 230400 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\hpzppw71.dll
2014-08-31 19:13:07 -------- d-----w- C:\Users\owner\AppData\Roaming\uTorrent
2014-08-31 18:25:05 -------- d-----w- C:\Users\owner\AppData\Roaming\PhraseExpress
2014-08-31 18:24:52 -------- d-----w- C:\ProgramData\PhraseExpress
2014-08-31 18:24:52 -------- d-----w- C:\Program Files (x86)\PhraseExpress
2014-08-31 18:08:59 -------- d-----w- C:\Program Files (x86)\Sonos
2014-08-31 18:08:45 -------- d-----w- C:\ProgramData\Sonos,_Inc
2014-08-31 17:58:55 64856 ----a-w- C:\Windows\System32\klfphc.dll
2014-08-31 17:58:42 66616 ----a-w- C:\Windows\System32\drivers\CSVirtualDiskDrv.sys
2014-08-31 17:58:41 84536 ----a-w- C:\Windows\System32\drivers\CSCrySec.sys
2014-08-31 17:58:31 -------- d-----w- C:\Windows\ELAMBKUP
2014-08-31 17:58:29 -------- d-----w- C:\Program Files (x86)\Common Files\InfoWatch
2014-08-31 17:58:28 -------- d-----w- C:\ProgramData\Kaspersky Lab
2014-08-31 17:58:28 -------- d-----w- C:\Program Files (x86)\Kaspersky Lab
2014-08-31 17:58:18 92768 ----a-w- C:\Windows\System32\drivers\klflt.sys
2014-08-31 17:14:43 -------- d-----w- C:\Users\owner\AppData\Roaming\Efficient Software
2014-08-31 17:14:04 -------- d-----w- C:\Users\owner\AppData\Roaming\EfficientPIM
2014-08-31 17:14:01 -------- d-----w- C:\Program Files (x86)\EfficientPIM
2014-08-31 16:36:07 -------- d-----w- C:\Program Files (x86)\Siber Systems
2014-08-30 20:35:20 -------- d-----w- C:\ProgramData\Auslogics
2014-08-30 20:07:23 -------- d-----w- C:\Users\owner\AppData\Roaming\WeatherBug
2014-08-30 20:06:07 -------- d-----w- C:\Users\owner\AppData\Roaming\Softland
2014-08-30 20:06:06 -------- d-----w- C:\Users\owner\AppData\Roaming\OpenOffice.org
2014-08-30 20:05:02 18944 ----a-r- C:\Users\owner\AppData\Roaming\Microsoft\Installer\{297DCADA-86A1-4A42-8A13-66B7D7A09FD2}\IconBB6A16301.exe
2014-08-30 20:05:02 11264 ----a-r- C:\Users\owner\AppData\Roaming\Microsoft\Installer\{297DCADA-86A1-4A42-8A13-66B7D7A09FD2}\IconBB6A1630.exe
2014-08-30 20:05:01 -------- d-----w- C:\Users\owner\AppData\Roaming\Macrovision
2014-08-30 20:04:57 -------- d-----w- C:\Users\owner\AppData\Roaming\Intuit
2014-08-30 20:04:57 -------- d-----w- C:\Users\owner\AppData\Roaming\Intel
2014-08-30 20:04:57 -------- d-----w- C:\Users\owner\AppData\Roaming\Dell
2014-08-30 20:04:56 -------- d-----w- C:\Users\owner\AppData\Roaming\BitTorrent
2014-08-30 20:04:56 -------- d-----w- C:\Users\owner\AppData\Roaming\ASCOMP Software
2014-08-30 20:04:44 -------- d-----w- C:\Users\owner\AppData\Local\Yahoo!
2014-08-30 20:02:19 -------- d-----w- C:\Users\owner\AppData\Local\SupportSoft
2014-08-30 20:02:17 -------- d-----w- C:\Users\owner\AppData\Local\Mozilla Firefox
2014-08-30 20:01:05 -------- d-----w- C:\Users\owner\AppData\Local\MigWiz
2014-08-30 20:00:31 -------- d-----w- C:\Users\owner\AppData\Local\Ilivid Player
2014-08-30 20:00:31 -------- d-----w- C:\Users\owner\AppData\Local\Identities
2014-08-30 19:58:33 439296 ----a-w- C:\Users\owner\GoToAssist_phone__317_en.exe
2014-08-30 19:58:33 -------- d-----w- C:\Users\owner\WINDOWS
2014-08-30 19:58:33 -------- d-----w- C:\Users\owner\vw
2014-08-30 19:58:33 -------- d-----w- C:\Users\owner\System
2014-08-30 19:58:33 -------- d-----w- C:\Users\owner\PrivacIE
2014-08-30 19:58:32 -------- d-----w- C:\Users\owner\Incomplete
2014-08-30 19:58:32 -------- d-----w- C:\Users\owner\IETldCache
2014-08-30 19:58:32 -------- d-----w- C:\Users\owner\Gigabeat Original Firmware Backup
2014-08-30 19:58:32 -------- d-----w- C:\Users\owner\.freemind
2014-08-30 19:58:32 -------- d-----w- C:\Users\owner\.360Share
2014-08-30 15:27:11 -------- d-----w- C:\Users\owner\AppData\Local\WinZip
2014-08-30 15:27:11 -------- d-----w- C:\Users\owner\AppData\Local\Windows Live
2014-08-30 15:27:10 -------- d-----w- C:\Users\owner\AppData\Local\WinAVI
2014-08-30 15:27:09 -------- d-----w- C:\Users\owner\AppData\Local\Western Digital
2014-08-30 15:27:09 -------- d-----w- C:\Users\owner\AppData\Local\WeatherBug
2014-08-30 15:27:08 -------- d-----w- C:\Users\owner\AppData\Local\Thunderbird
2014-08-30 15:27:08 -------- d-----w- C:\Users\owner\AppData\Local\Temporary Projects
2014-08-30 15:26:59 -------- d-----w- C:\Users\owner\AppData\Local\Stardock_Corporation
2014-08-30 15:25:37 -------- d-----w- C:\Users\owner\AppData\Local\Spotify
2014-08-30 15:25:37 -------- d-----w- C:\Users\owner\AppData\Local\Sonos,_Inc
2014-08-30 15:25:36 -------- d-----w- C:\Users\owner\AppData\Local\SoftThinks
2014-08-30 15:25:36 -------- d-----w- C:\Users\owner\AppData\Local\Slick Savings
2014-08-30 15:25:33 -------- d-----w- C:\Users\owner\AppData\Local\Skype
2014-08-30 15:23:53 -------- d-----w- C:\Users\owner\AppData\Local\Golden_Frog,_GmbH
2014-08-30 15:22:56 -------- d-----w- C:\Users\owner\AppData\Local\Amazon
2014-08-30 15:22:51 -------- d-----w- C:\Users\owner\AppData\Local\Akamai
2014-08-30 15:22:51 -------- d-----w- C:\Users\owner\AppData\Local\Aimersoft
2014-08-30 15:21:01 17920 ----a-r- C:\Users\owner\Global_System_STDOLE_f1.8C0C59A0_7DC8_11D2_B95D_006097C4DE24
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\Tracing
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\temp
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\My Backup Files
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\.kde
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\.idlerc
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\.dvdcss
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\.clipbak
2014-08-30 15:21:01 -------- d-----w- C:\Users\owner\.android
2014-08-30 15:21:01 -------- d-----r- C:\Users\owner\SkyDrive
2014-08-28 22:04:20 41984 ----a-w- C:\Windows\System32\drivers\USB3Ver.dll
2014-08-28 21:57:03 -------- d-----w- C:\Program Files (x86)\Renesas Electronics
2014-08-28 21:56:38 -------- d-----w- C:\ProgramData\Downloaded Installations
2014-08-28 21:49:13 -------- d-----w- C:\Program Files (x86)\ASM104xUSB3
2014-08-28 21:39:48 -------- d-----w- C:\Windows\SysWow64\sda
2014-08-28 21:39:27 9888912 ----a-w- C:\Windows\SysWow64\RtsUStoricon.dll
2014-08-28 21:39:27 422544 ----a-w- C:\Windows\System32\RtsUStor.dll
2014-08-28 21:39:27 252048 ----a-w- C:\Windows\System32\drivers\RtsUStor.sys
2014-08-28 21:31:24 -------- d-----w- C:\Program Files (x86)\ASUS
2014-08-28 21:28:25 -------- d-----w- C:\Program Files (x86)\Realtek
2014-08-28 21:27:50 -------- d-----w- C:\Windows\Panther
2014-08-28 21:22:08 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll
2014-08-28 21:03:23 -------- d-----w- C:\Windows\PCHEALTH
2014-08-28 21:03:23 -------- d-----w- C:\Program Files (x86)\Microsoft Application Virtualization Client
2014-08-28 21:03:14 -------- d-----w- C:\Users\owner\AppData\Roaming\TP
2014-08-28 21:00:06 91352 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-08-28 21:00:06 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-08-28 21:00:06 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-08-28 21:00:06 -------- d-----w- C:\ProgramData\Malwarebytes
2014-08-28 21:00:06 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-08-28 21:00:02 -------- d-----w- C:\Users\owner\AppData\Roaming\Canneverbe Limited
2014-08-28 20:59:58 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin5.dll
2014-08-28 20:59:58 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin4.dll
2014-08-28 20:59:58 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin3.dll
2014-08-28 20:59:58 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin2.dll
2014-08-28 20:59:58 159744 ----a-w- C:\Program Files\Internet Explorer\Plugins\npqtplugin.dll
2014-08-28 20:59:40 -------- d-----w- C:\Users\owner\AppData\Local\Apple
2014-08-28 20:57:54 -------- d-----w- C:\Program Files (x86)\VideoLAN
2014-08-28 20:57:14 20672 ----a-w- C:\Windows\System32\drivers\GUBootStartup.sys
2014-08-28 20:57:13 17600 ----a-w- C:\Windows\System32\drivers\BootDefragDriver.sys
2014-08-28 20:57:13 118048 ----a-w- C:\Windows\System32\BootDefrag.exe
2014-08-28 20:57:13 -------- d-----w- C:\Users\owner\AppData\Roaming\GlarySoft
2014-08-28 20:57:13 -------- d-----w- C:\Users\owner\AppData\Roaming\DiskDefrag
2014-08-28 20:57:06 -------- d-----w- C:\Program Files (x86)\Glary Utilities 5
2014-08-28 20:56:04 -------- d-----w- C:\Program Files (x86)\TeamViewer
2014-08-28 20:55:54 -------- d-----w- C:\Program Files (x86)\Auslogics
2014-08-28 20:55:37 -------- d-----w- C:\Users\owner\AppData\Local\Programs
2014-08-28 20:55:24 -------- d-----w- C:\Windows\SysWow64\Adobe
2014-08-28 20:54:52 111016 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll
2014-08-28 20:54:20 98216 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2014-08-28 20:53:54 -------- d-----w- C:\Users\owner\AppData\Local\Adobe
2014-08-28 20:53:47 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-08-28 20:53:47 699568 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-08-28 20:53:01 -------- d-----w- C:\Users\owner\AppData\Local\Google
2014-08-28 20:32:09 7163744 ----a-r- C:\Windows\System32\R4EEP64A.dll
2014-08-28 20:32:09 123744 ----a-r- C:\Windows\System32\R4EEA64A.dll
2014-08-28 20:32:08 74592 ----a-r- C:\Windows\System32\R4EEG64A.dll
2014-08-28 20:32:08 433504 ----a-r- C:\Windows\System32\R4EED64A.dll
2014-08-28 20:32:08 141152 ----a-r- C:\Windows\System32\R4EEL64A.dll
2014-08-28 20:32:00 -------- d-----w- C:\Windows\SysWow64\RTCOM
2014-08-28 20:32:00 -------- d-----w- C:\Program Files\Realtek
2014-08-28 20:17:29 144 ----a-w- C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-08-28 20:06:13 -------- d-----w- C:\Windows\System32\MRT
2014-08-28 20:05:07 465920 ----a-w- C:\Windows\System32\WMPhoto.dll
2014-08-28 20:05:07 417792 ----a-w- C:\Windows\SysWow64\WMPhoto.dll
2014-08-28 20:05:06 2871808 ----a-w- C:\Windows\explorer.exe
2014-08-28 20:05:05 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe
2014-08-28 20:05:04 3928064 ----a-w- C:\Windows\System32\d2d1.dll
2014-08-28 20:05:04 3419136 ----a-w- C:\Windows\SysWow64\d2d1.dll
2014-08-28 20:05:04 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll
2014-08-28 20:05:04 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll
2014-08-28 20:05:04 1643520 ----a-w- C:\Windows\System32\DWrite.dll
2014-08-28 20:05:03 1247744 ----a-w- C:\Windows\SysWow64\DWrite.dll
2014-08-28 20:05:02 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2014-08-28 20:05:02 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2014-08-28 20:04:52 67072 ----a-w- C:\Windows\splwow64.exe
2014-08-28 19:50:55 -------- d-sh--w- C:\Users\owner\IntelGraphicsProfiles
2014-08-28 19:50:51 451 ----a-w- C:\Windows\System32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-08-28 19:44:39 -------- d-----w- C:\Windows\SysWow64\Wat
2014-08-28 19:44:39 -------- d-----w- C:\Windows\System32\Wat
2014-08-28 19:41:39 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2014-08-28 19:41:39 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2014-08-28 19:41:39 12625920 ----a-w- C:\Windows\System32\wmploc.DLL
2014-08-28 19:41:38 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL
2014-08-28 19:31:00 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2014-08-28 19:24:33 64000 ----a-w- C:\Windows\System32\OpenCL.DLL
2014-08-28 19:24:33 60416 ----a-w- C:\Windows\SysWow64\OpenCL.DLL
2014-08-28 19:24:33 -------- d-----w- C:\Intel
2014-08-28 19:24:21 -------- d-----w- C:\Program Files (x86)\Common Files\Intel
2014-08-28 19:23:06 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-08-28 19:23:06 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-08-28 19:23:05 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll
2014-08-28 19:23:05 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll
2014-08-28 19:23:04 744448 ----a-w- C:\Windows\System32\WUDFx.dll
2014-08-28 19:23:04 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll
2014-08-28 19:23:04 229888 ----a-w- C:\Windows\System32\WUDFHost.exe
2014-08-28 19:18:04 2776576 ----a-w- C:\Windows\System32\msmpeg2vdec.dll
2014-08-28 19:18:04 2284544 ----a-w- C:\Windows\SysWow64\msmpeg2vdec.dll
2014-08-28 19:18:04 221184 ----a-w- C:\Windows\System32\UIAnimation.dll
2014-08-28 19:18:04 187392 ----a-w- C:\Windows\SysWow64\UIAnimation.dll
2014-08-28 19:18:00 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-28 19:18:00 3584 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-28 19:18:00 10752 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-28 19:18:00 10752 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-28 19:14:57 99480 ----a-w- C:\Windows\SysWow64\infocardapi.dll
2014-08-28 19:14:57 171160 ----a-w- C:\Windows\System32\infocardapi.dll
2014-08-28 19:14:56 619672 ----a-w- C:\Windows\SysWow64\icardagt.exe
2014-08-28 19:14:56 1389208 ----a-w- C:\Windows\System32\icardagt.exe
2014-08-28 19:14:55 8856 ----a-w- C:\Windows\SysWow64\icardres.dll
2014-08-28 19:14:55 8856 ----a-w- C:\Windows\System32\icardres.dll
2014-08-28 19:14:39 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
2014-08-28 19:14:39 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe
2014-08-28 19:14:00 -------- d-s---w- C:\Windows\System32\CompatTel
2014-08-28 19:12:59 6574592 ----a-w- C:\Windows\System32\mstscax.dll
2014-08-28 19:11:59 985536 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-08-28 18:45:23 -------- d-----w- C:\Program Files\WindowsPowerShell
2014-08-28 18:45:23 -------- d-----w- C:\Program Files (x86)\WindowsPowerShell
2014-08-28 18:45:22 -------- d-----w- C:\Windows\System32\dsc
2014-08-28 18:45:22 -------- d-----w- C:\Windows\System32\Configuration
2014-08-28 18:43:08 642944 ----a-w- C:\Windows\System32\winload.efi
2014-08-28 18:43:08 605552 ----a-w- C:\Windows\System32\winload.exe
2014-08-28 18:43:08 566208 ----a-w- C:\Windows\System32\winresume.efi
2014-08-28 18:43:08 518672 ----a-w- C:\Windows\System32\winresume.exe
2014-08-28 18:43:08 20352 ----a-w- C:\Windows\System32\kdusb.dll
2014-08-28 18:43:08 19328 ----a-w- C:\Windows\System32\kd1394.dll
2014-08-28 18:43:08 17792 ----a-w- C:\Windows\System32\kdcom.dll
2014-08-28 18:39:39 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2014-08-28 18:39:39 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2014-08-28 18:39:39 362496 ----a-w- C:\Windows\System32\wow64win.dll
2014-08-28 18:39:39 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2014-08-28 18:39:39 243712 ----a-w- C:\Windows\System32\wow64.dll
2014-08-28 18:39:39 2048 ----a-w- C:\Windows\SysWow64\user.exe
2014-08-28 18:39:39 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2014-08-28 18:39:39 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2014-08-28 18:39:39 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2014-08-28 18:34:58 230400 ----a-w- C:\Windows\System32\drivers\portcls.sys
2014-08-28 18:34:58 116736 ----a-w- C:\Windows\System32\drivers\drmk.sys
2014-08-28 18:34:41 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2014-08-28 18:34:41 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2014-08-28 18:33:44 1474048 ----a-w- C:\Windows\System32\crypt32.dll
2014-08-28 18:33:44 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll
2014-08-28 18:33:06 861184 ----a-w- C:\Windows\System32\IKEEXT.DLL
2014-08-28 18:33:06 832000 ----a-w- C:\Windows\System32\nshwfp.dll
2014-08-28 18:33:06 706560 ----a-w- C:\Windows\System32\BFE.DLL
2014-08-28 18:33:06 657920 ----a-w- C:\Windows\SysWow64\nshwfp.dll
2014-08-28 18:33:06 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2014-08-28 18:33:06 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL
2014-08-28 18:32:32 185344 ----a-w- C:\Windows\System32\drivers\usbvideo.sys
2014-08-28 18:32:32 100864 ----a-w- C:\Windows\System32\drivers\usbcir.sys
2014-08-28 18:32:15 9728 ----a-w- C:\Windows\System32\Wdfres.dll
2014-08-28 18:32:15 785624 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2014-08-28 18:32:15 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2014-08-28 18:30:11 124112 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2014-08-28 18:30:11 102608 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2014-08-28 18:28:36 39936 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys
2014-08-28 18:28:17 224256 ----a-w- C:\Windows\System32\wintrust.dll
2014-08-28 18:28:17 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2014-08-28 18:28:17 175104 ----a-w- C:\Windows\SysWow64\wintrust.dll
2014-08-28 18:28:17 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2014-08-28 18:28:17 139776 ----a-w- C:\Windows\System32\cryptnet.dll
2014-08-28 18:28:17 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2014-08-28 18:27:56 9216 ----a-w- C:\Program Files (x86)\Windows Defender\MpAsDesc.dll
2014-08-28 18:27:56 571904 ----a-w- C:\Program Files\Windows Defender\MpClient.dll
2014-08-28 18:27:56 54784 ----a-w- C:\Program Files (x86)\Windows Defender\MpOAV.dll
2014-08-28 18:27:56 4608 ----a-w- C:\Program Files (x86)\Windows Defender\MsMpLics.dll
2014-08-28 18:27:56 392704 ----a-w- C:\Program Files (x86)\Windows Defender\MpClient.dll
2014-08-28 18:27:56 314880 ----a-w- C:\Program Files\Windows Defender\MpCommu.dll
2014-08-28 18:27:56 1011712 ----a-w- C:\Program Files\Windows Defender\MpSvc.dll
2014-08-28 18:26:24 751104 ----a-w- C:\Windows\System32\win32spl.dll
2014-08-28 18:26:24 492544 ----a-w- C:\Windows\SysWow64\win32spl.dll
2014-08-28 18:26:07 903168 ----a-w- C:\Windows\SysWow64\certutil.exe
2014-08-28 18:26:07 52224 ----a-w- C:\Windows\System32\certenc.dll
2014-08-28 18:26:07 43008 ----a-w- C:\Windows\SysWow64\certenc.dll
2014-08-28 18:26:07 1192448 ----a-w- C:\Windows\System32\certutil.exe
2014-08-28 18:25:09 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2014-08-28 18:22:25 478208 ----a-w- C:\Windows\System32\dpnet.dll
2014-08-28 18:22:25 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
2014-08-28 18:22:12 95744 ----a-w- C:\Windows\System32\synceng.dll
2014-08-28 18:22:12 78336 ----a-w- C:\Windows\SysWow64\synceng.dll
2014-08-28 18:20:47 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
2014-08-28 18:20:47 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
2014-08-28 18:20:47 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
2014-08-28 18:20:36 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-08-28 18:20:25 75120 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2014-08-28 18:19:29 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-08-28 18:19:29 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-08-28 18:19:29 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-08-28 18:19:18 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll
2014-08-28 18:19:18 634880 ----a-w- C:\Windows\System32\msvcrt.dll
2014-08-28 18:19:06 395776 ----a-w- C:\Windows\System32\webio.dll
2014-08-28 18:19:06 314880 ----a-w- C:\Windows\SysWow64\webio.dll
2014-08-28 18:18:54 1572864 ----a-w- C:\Windows\System32\quartz.dll
2014-08-28 18:18:54 1328128 ----a-w- C:\Windows\SysWow64\quartz.dll
2014-08-28 18:18:44 77312 ----a-w- C:\Windows\System32\packager.dll
2014-08-28 18:18:44 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-08-28 18:18:18 723456 ----a-w- C:\Windows\System32\EncDec.dll
2014-08-28 18:18:18 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll
2014-08-28 18:18:10 886784 ----a-w- C:\Program Files\Common Files\System\wab32.dll
2014-08-28 18:18:10 708608 ----a-w- C:\Program Files (x86)\Common Files\System\wab32.dll
2014-08-28 18:16:58 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2014-08-28 18:12:27 11319192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2014-08-28 18:09:09 792576 ----a-w- C:\Windows\SysWow64\TSWorkspace.dll
2014-08-28 18:09:09 1030144 ----a-w- C:\Windows\System32\TSWorkspace.dll
2014-08-28 18:04:29 75776 ----a-w- C:\Windows\System32\wbem\NCProv.dll
2014-08-28 17:57:25 -------- d-sh--w- C:\Windows\Installer
2014-08-28 17:50:52 327168 ----a-w- C:\Windows\System32\mswsock.dll
2014-08-28 17:50:52 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
2014-08-28 17:49:00 878080 ----a-w- C:\Windows\System32\advapi32.dll
2014-08-28 17:49:00 859648 ----a-w- C:\Windows\System32\tdh.dll
2014-08-28 17:49:00 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll
2014-08-28 17:49:00 619520 ----a-w- C:\Windows\SysWow64\tdh.dll
2014-08-28 17:49:00 1737688 ----a-w- C:\Windows\System32\ntdll.dll
2014-08-28 17:49:00 1296312 ----a-w- C:\Windows\SysWow64\ntdll.dll
2014-08-28 17:47:49 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2014-08-28 17:47:49 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2014-08-28 17:47:18 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2014-08-28 17:47:18 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-08-28 17:47:18 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2014-08-28 17:46:45 68608 ----a-w- C:\Windows\System32\taskhost.exe
2014-08-28 17:36:07 -------- d-----w- C:\Users\owner\AppData\Local\VirtualStore
2014-08-28 01:28:24 44896 ----a-w- C:\Windows\System32\drivers\tapvyprvpn.sys
2014-08-13 17:15:44 45384 ----a-w- C:\Windows\SysWow64\DiscHandler.exe
2014-08-12 23:00:10 4575232 ----a-w- C:\Windows\SysWow64\GPhotos.scr
2014-08-12 06:30:54 4009984 ----a-w- C:\Windows\System32\ffmpeg.dll
2014-08-12 06:30:34 474624 ----a-w- C:\Windows\System32\ff_kernelDeint.dll
2014-08-12 06:30:18 127488 ----a-w- C:\Windows\System32\ff_vfw.dll
2014-08-12 06:30:14 4374016 ----a-w- C:\Windows\System32\ffdshow.ax
2014-08-12 06:29:54 631296 ----a-w- C:\Windows\System32\TomsMoComp_ff.dll
2014-08-12 06:29:14 156672 ----a-w- C:\Windows\System32\ff_libmad.dll
2014-08-12 06:29:14 116224 ----a-w- C:\Windows\System32\ff_liba52.dll
2014-08-12 06:29:14 114688 ----a-w- C:\Windows\System32\ff_wmv9.dll
2014-08-12 06:29:12 222720 ----a-w- C:\Windows\System32\ff_libdts.dll
2014-08-12 06:29:12 183296 ----a-w- C:\Windows\System32\ff_unrar.dll
2014-08-12 06:29:12 1532928 ----a-w- C:\Windows\System32\ff_samplerate.dll
2014-08-12 06:29:10 190464 ----a-w- C:\Windows\System32\libmpeg2_ff.dll
2014-08-12 02:30:50 3916288 ----a-w- C:\Windows\SysWow64\ffmpeg.dll
2014-08-12 02:30:10 112640 ----a-w- C:\Windows\SysWow64\ff_vfw.dll
2014-08-12 02:30:08 3502080 ----a-w- C:\Windows\SysWow64\ffdshow.ax
2014-08-12 02:29:36 271360 ----a-w- C:\Windows\SysWow64\TomsMoComp_ff.dll
2014-08-12 02:29:16 99840 ----a-w- C:\Windows\SysWow64\ff_wmv9.dll
2014-08-12 02:29:16 157184 ----a-w- C:\Windows\SysWow64\ff_unrar.dll
2014-08-12 02:29:14 211968 ----a-w- C:\Windows\SysWow64\ff_libdts.dll
2014-08-12 02:29:14 1525760 ----a-w- C:\Windows\SysWow64\ff_samplerate.dll
2014-08-12 02:29:14 147456 ----a-w- C:\Windows\SysWow64\ff_libmad.dll
2014-08-12 02:29:14 114688 ----a-w- C:\Windows\SysWow64\ff_liba52.dll
2014-08-12 02:29:12 136704 ----a-w- C:\Windows\SysWow64\libmpeg2_ff.dll
.
==================== Find3M ====================
.
2014-08-31 18:54:44 29792 ----a-w- C:\Windows\System32\drivers\klim6.sys
2014-08-31 18:54:42 458336 ----a-w- C:\Windows\System32\drivers\kl1.sys
2014-08-28 18:39:39 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2014-08-28 18:31:57 633856 ----a-w- C:\Windows\System32\comctl32.dll
2014-08-28 18:29:52 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2014-08-28 18:21:22 59392 ----a-w- C:\Windows\System32\browcli.dll
2014-08-28 18:21:22 41984 ----a-w- C:\Windows\SysWow64\browcli.dll
2014-08-28 18:21:22 136704 ----a-w- C:\Windows\System32\browser.dll
2014-08-28 18:21:08 805376 ----a-w- C:\Windows\SysWow64\cdosys.dll
2014-08-28 18:21:08 1133568 ----a-w- C:\Windows\System32\cdosys.dll
2014-08-28 18:16:49 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2014-08-28 17:55:10 194048 ----a-w- C:\Windows\SysWow64\elshyph.dll
2014-08-23 02:07:00 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2014-08-23 00:59:33 3166720 ----a-w- C:\Windows\System32\win32k.sys
2014-08-07 02:06:41 529920 ----a-w- C:\Windows\System32\aepdu.dll
2014-08-07 02:01:34 424448 ----a-w- C:\Windows\System32\aeinv.dll
2014-08-06 21:45:46 11530960 ----a-w- C:\Windows\System32\drivers\NETwsw00.sys
2014-08-05 13:20:00 270496 ------w- C:\Windows\System32\MpSigStub.exe
2014-07-25 14:02:12 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-07-25 14:01:41 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2014-07-25 13:30:30 66048 ----a-w- C:\Windows\System32\iesetup.dll
2014-07-25 13:28:35 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2014-07-25 13:28:27 548352 ----a-w- C:\Windows\System32\vbscript.dll
2014-07-25 13:25:45 83968 ----a-w- C:\Windows\System32\MshtmlDac.dll
2014-07-25 13:04:40 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-07-25 13:00:51 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-07-25 13:00:25 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
2014-07-25 12:59:28 758272 ----a-w- C:\Windows\System32\jscript9diag.dll
2014-07-25 12:47:25 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-07-25 12:34:49 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll
2014-07-25 12:34:03 455168 ----a-w- C:\Windows\SysWow64\vbscript.dll
2014-07-25 12:33:08 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2014-07-25 12:30:32 61952 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
2014-07-25 12:28:15 5824512 ----a-w- C:\Windows\System32\jscript9.dll
2014-07-25 12:28:05 72704 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-07-25 12:10:15 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2014-07-25 12:08:47 597504 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2014-07-25 12:06:47 4204032 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-07-25 11:43:16 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2014-07-25 11:39:29 2087936 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-07-25 11:39:25 1249280 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2014-07-25 11:07:49 2001920 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-07-25 11:07:10 1068032 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
2014-07-25 10:52:06 2266624 ----a-w- C:\Windows\System32\wininet.dll
2014-07-25 10:05:23 1792512 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-07-16 03:22:08 2048 ----a-w- C:\Windows\System32\tzres.dll
2014-07-16 02:55:01 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2014-07-14 02:02:45 1216000 ----a-w- C:\Windows\System32\rpcrt4.dll
2014-07-14 01:40:58 664064 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
2014-06-18 02:18:30 692736 ----a-w- C:\Windows\System32\osk.exe
2014-06-18 01:51:32 646144 ----a-w- C:\Windows\SysWow64\osk.exe
.
============= FINISH: 13:09:50.56 ===============


.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 8/28/2014 1:35:45 PM
System Uptime: 9/6/2014 11:46:04 AM (2 hours ago)
.
Motherboard: ASUSTeK COMPUTER INC. | | Q500A
Processor: Intel(R) Core(TM) i7-3632QM CPU @ 2.20GHz | SOCKET 0 | 2201/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 931 GiB total, 496.721 GiB free.
D: is CDROM ()
E: is FIXED (NTFS) - 931 GiB total, 283.402 GiB free.
G: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: TAP-VyprVPN Adapter V9
Device ID: ROOT\NET\0000
Manufacturer: TAP-VyprVPN Provider V9
Name: TAP-VyprVPN Adapter V9
PNP Device ID: ROOT\NET\0000
Service: tapvyprvpn
.
==== System Restore Points ===================
.
RP30: 9/3/2014 1:35:31 AM - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
RP31: 9/3/2014 1:36:24 AM - Device Driver Package Install: TAP-VyprVPN Provider V9 Network adapters
RP32: 9/4/2014 3:00:10 AM - Windows Update
.
==== Installed Programs ======================
.
7-Zip 9.20 (x64 edition)
Adobe AIR
Adobe Flash Player 14 ActiveX
Adobe Flash Player 14 Plugin
Adobe Reader X (10.1.11)
Adobe Shockwave Player 12.1
Apple Application Support
Apple Software Update
Asmedia ASM104x USB 3.0 Host Controller Driver
ASUS Smart Gesture
ATK Package
Auslogics DiskDefrag
AxCrypt 1.7.3156.0
Browser Extensions
CDBurnerXP
EfficientPIM 3.71
Glary Utilities 5.6
Google Chrome
Google Update Helper
Gpg4win (2.2.2)
Intel(R) Processor Graphics
Intel(R) USB 3.0 eXtensible Host Controller Driver
Java 7 Update 67
Java 7 Update 67 (64-bit)
Java Auto Updater
Kaspersky PURE 3.0
Malwarebytes Anti-Malware version 2.0.2.1012
Microsoft .NET Framework 4.5.2
Microsoft Office Click-to-Run 2010
Microsoft Office Starter 2010 - English
Microsoft Silverlight
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
Mozilla Firefox 31.0 (x86 en-US)
Mozilla Maintenance Service
Mozilla Thunderbird 31.1.0 (x86 en-US)
Password Safe
PhraseExpress v10.5.16
Picasa 3
QuickTime 7
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Renesas Electronics USB 3.0 Host Controller Driver
RoboForm 7-9-9-1 (All Users)
Search Protection
Skype Click to Call
Skype™ 6.18
SolveigMM Video Splitter Home Edition
Sonos Controller
Stardock Fences 2
Steam
swMSM
TeamViewer 9
TrueCrypt
VeraCrypt
VLC media player
VyprVPN
Windows 7 Codec Pack 4.1.0
Windows Driver Package - ASUS (ATP) Mouse (10/13/2012 1.0.0.146)
WinPatrol


REST OF FILE(S) IN FOLLOWING POST
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am
Advertisement
Register to Remove

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 6th, 2014, 1:25 pm

REST OF FILE(S) THAT DID NOT FIT IN FIRST POST

.
==== Event Viewer Messages From Past Week ========
.
9/6/2014 12:54:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 30 time(s).
9/6/2014 12:54:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 29 time(s).
9/6/2014 12:37:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 28 time(s).
9/6/2014 12:37:27 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 27 time(s).
9/6/2014 12:32:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 26 time(s).
9/6/2014 12:32:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 25 time(s).
9/6/2014 12:32:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 24 time(s).
9/6/2014 12:18:53 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 23 time(s).
9/6/2014 12:18:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 22 time(s).
9/6/2014 12:16:21 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 175 time(s).
9/6/2014 12:15:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 21 time(s).
9/6/2014 12:14:46 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 174 time(s).
9/6/2014 12:14:30 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 173 time(s).
9/6/2014 12:02:34 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 20 time(s).
9/6/2014 12:01:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 19 time(s).
9/6/2014 12:01:32 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 18 time(s).
9/6/2014 12:01:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 17 time(s).
9/6/2014 12:00:35 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 16 time(s).
9/6/2014 12:00:29 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 15 time(s).
9/6/2014 12:00:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 14 time(s).
9/6/2014 12:00:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 13 time(s).
9/6/2014 12:00:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 12 time(s).
9/6/2014 12:00:15 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 11 time(s).
9/6/2014 11:59:49 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 9 time(s).
9/6/2014 11:59:49 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 10 time(s).
9/6/2014 11:59:46 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 8 time(s).
9/6/2014 11:59:43 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 7 time(s).
9/6/2014 11:59:23 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 6 time(s).
9/6/2014 11:59:22 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 5 time(s).
9/6/2014 11:59:19 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 4 time(s).
9/6/2014 11:51:15 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 3 time(s).
9/6/2014 11:50:44 AM, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
9/6/2014 11:50:35 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
9/6/2014 11:50:35 AM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
9/6/2014 11:50:13 AM, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
9/6/2014 11:47:19 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the VyprVPN service to connect.
9/6/2014 11:47:19 AM, Error: Service Control Manager [7000] - The VyprVPN service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
9/6/2014 11:45:44 AM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR1.
9/6/2014 11:42:45 AM, Error: Service Control Manager [7006] - The ScRegSetValueExW call failed for DeleteFlag with the following error: Access is denied.
9/6/2014 11:42:44 AM, Error: Service Control Manager [7031] - The Bitdefender Antivirus Free Edition service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service.
9/6/2014 11:42:40 AM, Error: Service Control Manager [7006] - The ScRegSetValueExW call failed for FailureActions with the following error: Access is denied.
9/6/2014 11:41:09 AM, Error: MTConfig [1] - An attempt to configure the input mode of a multitouch device failed.
9/6/2014 11:41:09 AM, Error: BTHUSB [17] - The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.
9/6/2014 10:26:10 AM, Error: bowser [8003] - The master browser has received a server announcement from the computer REDHEN-HP that believes that it is the master browser for the domain on transport NetBT_Tcpip_{20185106-24BF-49B3-9078-6EF5B190DF33}. The master browser is stopping or an election is being forced.
9/6/2014 1:57:32 AM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk2\DR2.
9/6/2014 1:57:05 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 177 time(s).
9/6/2014 1:56:50 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 176 time(s).
9/6/2014 1:09:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 40 time(s).
9/6/2014 1:09:38 PM, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-2147218170.
9/6/2014 1:09:32 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 39 time(s).
9/6/2014 1:09:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 38 time(s).
9/6/2014 1:09:27 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 37 time(s).
9/6/2014 1:09:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 36 time(s).
9/6/2014 1:08:52 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 35 time(s).
9/6/2014 1:08:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 34 time(s).
9/6/2014 1:08:34 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 33 time(s).
9/6/2014 1:08:23 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 32 time(s).
9/6/2014 1:08:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 31 time(s).
9/5/2014 8:10:33 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 159 time(s).
9/5/2014 8:10:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 158 time(s).
9/5/2014 8:10:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 157 time(s).
9/5/2014 8:10:14 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 156 time(s).
9/5/2014 8:10:08 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 155 time(s).
9/5/2014 8:04:43 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 154 time(s).
9/5/2014 8:04:43 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 153 time(s).
9/5/2014 8:00:46 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 152 time(s).
9/5/2014 8:00:30 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 151 time(s).
9/5/2014 6:55:12 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 150 time(s).
9/5/2014 6:55:11 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 149 time(s).
9/5/2014 6:54:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 148 time(s).
9/5/2014 6:52:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 147 time(s).
9/5/2014 6:48:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 146 time(s).
9/5/2014 6:48:24 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 145 time(s).
9/5/2014 6:48:23 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 144 time(s).
9/5/2014 6:47:16 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 143 time(s).
9/5/2014 6:45:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 142 time(s).
9/5/2014 6:45:08 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 141 time(s).
9/5/2014 6:26:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 140 time(s).
9/5/2014 6:01:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 139 time(s).
9/5/2014 5:43:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 138 time(s).
9/5/2014 5:43:04 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 137 time(s).
9/5/2014 5:07:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 136 time(s).
9/5/2014 4:59:50 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 135 time(s).
9/5/2014 4:58:23 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 134 time(s).
9/5/2014 4:53:12 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 133 time(s).
9/5/2014 4:52:57 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 132 time(s).
9/5/2014 4:45:10 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 131 time(s).
9/5/2014 4:44:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 130 time(s).
9/5/2014 4:44:17 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 129 time(s).
9/5/2014 4:44:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 128 time(s).
9/5/2014 4:44:06 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 127 time(s).
9/5/2014 4:42:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 126 time(s).
9/5/2014 4:42:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 125 time(s).
9/5/2014 4:41:39 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 124 time(s).
9/5/2014 4:41:23 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 123 time(s).
9/5/2014 4:41:01 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 122 time(s).
9/5/2014 4:40:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 121 time(s).
9/5/2014 4:40:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 120 time(s).
9/5/2014 4:40:03 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 119 time(s).
9/5/2014 4:39:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 118 time(s).
9/5/2014 4:39:17 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 117 time(s).
9/5/2014 4:38:45 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 116 time(s).
9/5/2014 4:38:19 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 115 time(s).
9/5/2014 4:38:10 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 114 time(s).
9/5/2014 4:38:03 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 113 time(s).
9/5/2014 4:37:59 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 112 time(s).
9/5/2014 4:37:54 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 111 time(s).
9/5/2014 4:37:46 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 110 time(s).
9/5/2014 4:37:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 109 time(s).
9/5/2014 4:36:56 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 108 time(s).
9/5/2014 4:35:29 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 107 time(s).
9/5/2014 4:20:57 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 106 time(s).
9/5/2014 4:19:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 105 time(s).
9/5/2014 4:19:10 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 104 time(s).
9/5/2014 4:17:29 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 103 time(s).
9/5/2014 4:17:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 102 time(s).
9/5/2014 4:15:24 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 101 time(s).
9/5/2014 4:15:23 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 100 time(s).
9/5/2014 4:15:07 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 99 time(s).
9/5/2014 4:14:53 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 98 time(s).
9/5/2014 4:14:48 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 97 time(s).
9/5/2014 4:14:47 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 96 time(s).
9/5/2014 4:14:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 95 time(s).
9/5/2014 4:12:51 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 94 time(s).
9/5/2014 4:12:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 93 time(s).
9/5/2014 4:06:54 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 92 time(s).
9/5/2014 4:05:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 91 time(s).
9/5/2014 4:05:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 90 time(s).
9/5/2014 4:04:33 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 89 time(s).
9/5/2014 4:04:32 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 88 time(s).
9/5/2014 4:01:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 87 time(s).
9/5/2014 4:01:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 86 time(s).
9/5/2014 4:01:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 85 time(s).
9/5/2014 4:00:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 84 time(s).
9/5/2014 3:58:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 83 time(s).
9/5/2014 3:56:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 82 time(s).
9/5/2014 3:55:58 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 81 time(s).
9/5/2014 3:55:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 80 time(s).
9/5/2014 3:51:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 79 time(s).
9/5/2014 3:51:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 78 time(s).
9/5/2014 3:50:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 77 time(s).
9/5/2014 3:45:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 76 time(s).
9/5/2014 3:40:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 75 time(s).
9/5/2014 3:37:43 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 74 time(s).
9/5/2014 3:37:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 73 time(s).
9/5/2014 3:35:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 72 time(s).
9/5/2014 3:30:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 71 time(s).
9/5/2014 3:26:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 70 time(s).
9/5/2014 3:25:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 69 time(s).
9/5/2014 3:20:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 68 time(s).
9/5/2014 3:15:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 67 time(s).
9/5/2014 3:10:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 66 time(s).
9/5/2014 3:05:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 65 time(s).
9/5/2014 3:03:30 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 64 time(s).
9/5/2014 3:03:15 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 63 time(s).
9/5/2014 3:00:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 62 time(s).
9/5/2014 2:55:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 61 time(s).
9/5/2014 2:53:45 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 60 time(s).
9/5/2014 2:53:29 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 59 time(s).
9/5/2014 2:50:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 58 time(s).
9/5/2014 2:49:59 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 57 time(s).
9/5/2014 2:49:54 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 56 time(s).
9/5/2014 2:49:51 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 55 time(s).
9/5/2014 2:49:48 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 54 time(s).
9/5/2014 2:49:23 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 53 time(s).
9/5/2014 2:49:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 52 time(s).
9/5/2014 2:49:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 51 time(s).
9/5/2014 2:47:04 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 50 time(s).
9/5/2014 2:47:03 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 49 time(s).
9/5/2014 2:45:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 48 time(s).
9/5/2014 2:45:07 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 47 time(s).
9/5/2014 2:44:04 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 46 time(s).
9/5/2014 2:43:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 45 time(s).
9/5/2014 2:39:32 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 44 time(s).
9/5/2014 2:22:28 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 43 time(s).
9/5/2014 2:22:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 42 time(s).
9/5/2014 2:15:10 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 41 time(s).
9/5/2014 10:33:12 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 172 time(s).
9/5/2014 10:33:11 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 171 time(s).
9/5/2014 10:33:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 170 time(s).
9/5/2014 10:26:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 169 time(s).
9/5/2014 10:25:46 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 168 time(s).
9/5/2014 10:24:29 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 167 time(s).
9/5/2014 10:24:01 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 166 time(s).
9/5/2014 10:24:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 165 time(s).
9/5/2014 10:20:19 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 164 time(s).
9/5/2014 10:20:04 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 163 time(s).
9/5/2014 10:18:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 162 time(s).
9/5/2014 10:10:19 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 161 time(s).
9/5/2014 10:09:17 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 160 time(s).
9/5/2014 1:26:48 PM, Error: Service Control Manager [7000] - The bdfwfpf service failed to start due to the following error: The system cannot find the file specified.
9/5/2014 1:01:04 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
9/4/2014 9:49:55 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 292 time(s).
9/4/2014 9:49:50 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 291 time(s).
9/4/2014 9:47:42 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 290 time(s).
9/4/2014 9:40:20 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 289 time(s).
9/4/2014 9:37:07 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 288 time(s).
9/4/2014 9:33:27 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 287 time(s).
9/4/2014 9:16:08 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 286 time(s).
9/4/2014 9:11:32 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 285 time(s).
9/4/2014 9:11:23 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 284 time(s).
9/4/2014 9:11:23 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 283 time(s).
9/4/2014 9:11:22 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 282 time(s).
9/4/2014 9:11:00 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 281 time(s).
9/4/2014 9:01:32 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 280 time(s).
9/4/2014 8:55:41 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 279 time(s).
9/4/2014 8:55:26 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 278 time(s).
9/4/2014 8:50:50 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 277 time(s).
9/4/2014 12:31:45 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 276 time(s).
9/4/2014 12:30:37 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 275 time(s).
9/4/2014 10:57:43 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 312 time(s).
9/4/2014 10:57:42 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 311 time(s).
9/4/2014 10:54:07 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 310 time(s).
9/4/2014 10:53:52 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 309 time(s).
9/4/2014 10:52:16 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 308 time(s).
9/4/2014 10:52:11 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 307 time(s).
9/4/2014 10:50:58 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 306 time(s).
9/4/2014 10:50:57 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 305 time(s).
9/4/2014 10:50:31 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 304 time(s).
9/4/2014 10:41:33 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 303 time(s).
9/4/2014 10:41:18 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 302 time(s).
9/4/2014 10:41:17 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 301 time(s).
9/4/2014 10:41:16 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 300 time(s).
9/4/2014 10:35:49 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 299 time(s).
9/4/2014 10:35:33 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 298 time(s).
9/4/2014 10:20:20 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 297 time(s).
9/4/2014 10:11:53 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 296 time(s).
9/4/2014 10:11:31 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 295 time(s).
9/4/2014 10:09:55 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 294 time(s).
9/4/2014 10:02:26 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 293 time(s).
9/3/2014 9:55:05 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 249 time(s).
9/3/2014 9:48:46 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 248 time(s).
9/3/2014 9:47:52 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 247 time(s).
9/3/2014 9:46:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 246 time(s).
9/3/2014 9:43:55 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 245 time(s).
9/3/2014 9:43:39 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 244 time(s).
9/3/2014 9:40:48 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 243 time(s).
9/3/2014 9:40:47 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 242 time(s).
9/3/2014 9:40:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 241 time(s).
9/3/2014 9:40:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 240 time(s).
9/3/2014 9:40:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 239 time(s).
9/3/2014 9:40:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 238 time(s).
9/3/2014 9:40:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 237 time(s).
9/3/2014 9:16:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 236 time(s).
9/3/2014 8:27:39 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 235 time(s).
9/3/2014 8:25:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 234 time(s).
9/3/2014 8:25:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 233 time(s).
9/3/2014 8:17:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 232 time(s).
9/3/2014 8:17:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 231 time(s).
9/3/2014 8:15:08 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 230 time(s).
9/3/2014 8:06:27 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 229 time(s).
9/3/2014 8:06:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 228 time(s).
9/3/2014 7:54:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 227 time(s).
9/3/2014 7:50:49 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 226 time(s).
9/3/2014 7:50:34 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 225 time(s).
9/3/2014 7:34:39 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 224 time(s).
9/3/2014 7:28:59 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 223 time(s).
9/3/2014 7:28:58 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 222 time(s).
9/3/2014 6:51:03 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 221 time(s).
9/3/2014 6:50:48 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 220 time(s).
9/3/2014 6:40:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 219 time(s).
9/3/2014 6:40:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 218 time(s).
9/3/2014 6:39:33 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 217 time(s).
9/3/2014 6:35:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 216 time(s).
9/3/2014 6:35:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 215 time(s).
9/3/2014 6:31:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 214 time(s).
9/3/2014 6:31:24 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 213 time(s).
9/3/2014 6:31:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 212 time(s).
9/3/2014 6:30:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 211 time(s).
9/3/2014 6:29:12 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 210 time(s).
9/3/2014 6:28:57 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 209 time(s).
9/3/2014 6:26:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 208 time(s).
9/3/2014 6:26:16 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 207 time(s).
9/3/2014 6:26:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 206 time(s).
9/3/2014 6:25:14 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 205 time(s).
9/3/2014 6:25:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 204 time(s).
9/3/2014 6:24:54 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 203 time(s).
9/3/2014 6:24:53 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 202 time(s).
9/3/2014 6:24:47 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 201 time(s).
9/3/2014 6:24:45 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 200 time(s).
9/3/2014 6:17:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 199 time(s).
9/3/2014 6:17:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 198 time(s).
9/3/2014 6:17:06 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 197 time(s).
9/3/2014 6:17:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 196 time(s).
9/3/2014 6:16:57 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 195 time(s).
9/3/2014 6:16:50 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 194 time(s).
9/3/2014 6:16:11 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 193 time(s).
9/3/2014 6:16:08 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 192 time(s).
9/3/2014 6:15:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 191 time(s).
9/3/2014 6:15:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 190 time(s).
9/3/2014 6:15:06 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 189 time(s).
9/3/2014 6:15:05 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 188 time(s).
9/3/2014 6:15:02 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 187 time(s).
9/3/2014 6:14:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 186 time(s).
9/3/2014 6:14:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 185 time(s).
9/3/2014 6:14:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 184 time(s).
9/3/2014 6:14:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 183 time(s).
9/3/2014 6:14:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 182 time(s).
9/3/2014 6:13:59 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 181 time(s).
9/3/2014 6:13:58 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 180 time(s).
9/3/2014 6:13:49 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 179 time(s).
9/3/2014 6:13:46 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 178 time(s).
9/3/2014 2:56:37 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
9/3/2014 2:56:37 PM, Error: Service Control Manager [7000] - The Steam Client Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
9/3/2014 11:36:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 274 time(s).
9/3/2014 11:36:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 273 time(s).
9/3/2014 11:34:57 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 272 time(s).
9/3/2014 11:34:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 271 time(s).
9/3/2014 11:34:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 270 time(s).
9/3/2014 11:34:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 269 time(s).
9/3/2014 11:29:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 268 time(s).
9/3/2014 11:29:15 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 267 time(s).
9/3/2014 11:29:14 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 266 time(s).
9/3/2014 11:29:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 265 time(s).
9/3/2014 11:27:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 264 time(s).
9/3/2014 11:27:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 263 time(s).
9/3/2014 11:27:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 262 time(s).
9/3/2014 11:27:07 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 261 time(s).
9/3/2014 11:27:06 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 260 time(s).
9/3/2014 11:18:20 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 259 time(s).
9/3/2014 11:07:14 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 258 time(s).
9/3/2014 11:03:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 257 time(s).
9/3/2014 11:01:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 256 time(s).
9/3/2014 11:01:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 255 time(s).
9/3/2014 10:58:49 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 254 time(s).
9/3/2014 10:33:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 253 time(s).
9/3/2014 10:04:52 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 252 time(s).
9/3/2014 10:04:51 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 251 time(s).
9/3/2014 10:02:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 250 time(s).
9/2/2014 12:13:40 AM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk2\DR6.
9/2/2014 12:11:50 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 402 time(s).
9/2/2014 12:11:49 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 401 time(s).
9/2/2014 12:02:12 AM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 400 time(s).
9/1/2014 9:54:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 347 time(s).
9/1/2014 9:53:56 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 346 time(s).
9/1/2014 9:30:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 345 time(s).
9/1/2014 9:29:58 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 344 time(s).
9/1/2014 9:29:50 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 343 time(s).
9/1/2014 9:29:44 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 342 time(s).
9/1/2014 9:29:43 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 341 time(s).
9/1/2014 9:29:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 340 time(s).
9/1/2014 9:29:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 339 time(s).
9/1/2014 9:29:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 338 time(s).
9/1/2014 9:29:16 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 337 time(s).
9/1/2014 9:29:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 336 time(s).
9/1/2014 8:51:22 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 335 time(s).
9/1/2014 8:48:48 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 334 time(s).
9/1/2014 8:36:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 333 time(s).
9/1/2014 8:33:59 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 332 time(s).
9/1/2014 8:33:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 331 time(s).
9/1/2014 8:27:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 330 time(s).
9/1/2014 8:21:46 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 329 time(s).
9/1/2014 8:21:29 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 328 time(s).
9/1/2014 7:28:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 327 time(s).
9/1/2014 7:27:54 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 326 time(s).
9/1/2014 7:27:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 325 time(s).
9/1/2014 7:27:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 324 time(s).
9/1/2014 7:27:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 323 time(s).
9/1/2014 7:27:33 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 322 time(s).
9/1/2014 7:26:58 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 321 time(s).
9/1/2014 7:26:49 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 320 time(s).
9/1/2014 7:26:47 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 319 time(s).
9/1/2014 7:26:45 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 318 time(s).
9/1/2014 7:26:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 317 time(s).
9/1/2014 7:26:09 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 316 time(s).
9/1/2014 7:26:04 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 315 time(s).
9/1/2014 7:26:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 314 time(s).
9/1/2014 4:57:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 313 time(s).
9/1/2014 11:53:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 399 time(s).
9/1/2014 11:48:19 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 398 time(s).
9/1/2014 11:47:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 397 time(s).
9/1/2014 11:38:55 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 396 time(s).
9/1/2014 11:31:41 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 395 time(s).
9/1/2014 11:31:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 394 time(s).
9/1/2014 11:31:06 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 393 time(s).
9/1/2014 11:31:05 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 392 time(s).
9/1/2014 11:31:05 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 391 time(s).
9/1/2014 11:30:51 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 390 time(s).
9/1/2014 11:30:51 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 389 time(s).
9/1/2014 11:30:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 388 time(s).
9/1/2014 11:23:15 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 387 time(s).
9/1/2014 11:23:01 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 386 time(s).
9/1/2014 11:23:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 385 time(s).
9/1/2014 11:22:10 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 384 time(s).
9/1/2014 11:08:48 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 383 time(s).
9/1/2014 11:07:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 382 time(s).
9/1/2014 11:07:34 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 381 time(s).
9/1/2014 11:07:18 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 380 time(s).
9/1/2014 11:06:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 379 time(s).
9/1/2014 11:06:40 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 378 time(s).
9/1/2014 11:06:39 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 377 time(s).
9/1/2014 11:06:37 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 376 time(s).
9/1/2014 10:58:39 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 375 time(s).
9/1/2014 10:57:55 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 374 time(s).
9/1/2014 10:57:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 373 time(s).
9/1/2014 10:54:55 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 372 time(s).
9/1/2014 10:54:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 371 time(s).
9/1/2014 10:48:00 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 370 time(s).
9/1/2014 10:47:54 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 369 time(s).
9/1/2014 10:47:27 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 368 time(s).
9/1/2014 10:44:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 367 time(s).
9/1/2014 10:42:28 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 366 time(s).
9/1/2014 10:41:52 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 365 time(s).
9/1/2014 10:35:26 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 364 time(s).
9/1/2014 10:33:15 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 363 time(s).
9/1/2014 10:33:01 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 362 time(s).
9/1/2014 10:32:44 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 361 time(s).
9/1/2014 10:20:21 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 360 time(s).
9/1/2014 10:20:15 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 359 time(s).
9/1/2014 10:19:25 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 358 time(s).
9/1/2014 10:15:52 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 357 time(s).
9/1/2014 10:15:36 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 356 time(s).
9/1/2014 10:15:31 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 355 time(s).
9/1/2014 10:14:52 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 354 time(s).
9/1/2014 10:13:13 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 353 time(s).
9/1/2014 10:07:12 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 352 time(s).
9/1/2014 10:01:57 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 351 time(s).
9/1/2014 10:01:42 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 350 time(s).
9/1/2014 10:01:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 349 time(s).
9/1/2014 10:01:38 PM, Error: Service Control Manager [7034] - The Windows Search service terminated unexpectedly. It has done this 348 time(s).
9/1/2014 1:06:06 PM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR3.
8/31/2014 11:38:43 AM, Error: Microsoft Antimalware [2001] -
8/30/2014 5:06:09 PM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
.
==== End Of File ===========================
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby wannabeageek » September 7th, 2014, 5:50 pm

Hello SpecialEd19, and Welcome to MalWare Removal forums!

My name is wannabeageek and I'll be helping you with any malware problems.

Before we begin, please read and follow these important guidelines, so things will proceed smoothly.
  1. The instructions being given are for YOUR computer and system only!
    Using these instructions on a different computer can cause damage to that computer and possibly render it inoperable!
  2. You must have Administrator rights, permissions for this computer.
  3. DO NOT run any other fix or removal tools unless instructed to do so!
  4. DO NOT install any other software (or hardware) during the cleaning process. This adds more items to be researched.
  5. Only post your problem at (1) one help site. Applying fixes from multiple help sites can cause problems.
  6. Print each set of instructions if possible - your Internet connection will not be available during some fix processes.
  7. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
  8. Only reply to this thread, do not start another one. Please, continue responding, until I give you the "All Clean!" :cheers:

    Absence of symptoms does not mean that everything is clear.

I am currently reviewing your logs and will return, as soon as possible, with additional instructions. In the meantime...

Note: If you haven't done so already, please read this topic ALL USERS OF THIS FORUM MUST READ THIS FIRST where the conditions for receiving help here are explained.

Please read all instructions carefully before executing and perform the steps, in the order given.
lf you have any questions or problems executing these instructions, <<STOP>> do not proceed, post back with the question or problem.

Please be aware that removing Malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.

Because of this, I advise you to backup any personal files and folders before you start
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby wannabeageek » September 7th, 2014, 8:58 pm

Hi SpecialEd19,

Please tell me what the primary use of this notebook is used for.

codecheck
  • Please download codecheck from here and save it to your Desktop.
  • Right-click codecheck.exe > select " Run as administrator "
  • After a very short time a codecheck.txt icon will appear on your Desktop
  • Double-click on the codecheck.txt icon on your Desktop and copy/paste the contents in your next reply.
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 7th, 2014, 9:45 pm

I am using it now for everyday stuff. Browsing the web, reading news and books (Kindle), socialmedia such as Facebook and special interest forums, watching videos and playing music, Daily journal/calendar/To-do, online banking. A general purpose machine really.

Codecheck Version 1.0

09007

Thanks,

Ed
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby wannabeageek » September 7th, 2014, 10:44 pm

Hi SpecialEd19,

AxCrypt 1.7.3156.0
TrueCrypt
VeraCrypt
These programs are used to encrypt files, partitions, and drives. If you have anything encrypted I suggest you remove them from the computer as I make no guarantee that the programs we use will not damage or remove them during the malware removal process.

wbg
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 7th, 2014, 10:46 pm

OK.
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby wannabeageek » September 7th, 2014, 10:53 pm

Hi SpecialEd19,

Please complete the following and post after each step.

Step 1.
AdwCleaner Download and Run
Click on this link to download : ADWCleaner
Click on the Download Now button and save it to your desktop.

NOTE: If using Internet Explorer and you get an alert that stops the program downloading click on Tools > Smartscreen Filter > Turn off Smartscreen Filter then click on OK in the box that opens. Then click on the link again.

Close your browser and double click on this icon on your desktop:

Image

You will then see the screen below. Click on the Scan button (as indicated), accept any prompts that appear and allow it to run.
It may take several minutes to complete. When it is done click on the Clean button, accept any prompts that appear and allow the system to reboot.
You will then be presented with the report. Copy & Paste it into your next post.

Image

Please post the content of the C:\AdwCleaner[S?].txt logfile in your next reply.



Step 2.
Junkware Removal Tool
  • Please download and run the following program: JRT.exe
  • Right-click JRT.exe and select " Run as administrator " to run it.
  • When the program is finished running, post the log JRT.txt in your next reply.


Step 3.
FRST - Farbar Recovery Scanner Tool for Vista-W7 Image
Please download FRST64.exe ... by Farbar. Save it to your desktop.

  1. Right click on FRST64.exe select "Run As Administrator" to run it. If prompted by UAC, please allow it. When the tool opens click Yes to disclaimer.
  2. Press Scan button. ... A log will be created FRST.txt in the same directory the tool is run.
  3. Please copy/paste FRST.txt it to your reply.
    The first time the tool is run, it makes also another log... Addition.txt.
  4. Please copy/paste Addition.txt in your reply.


What I need back from you:
Post each separately.
  1. Contents of C:\AdwCleaner[S?].txt
  2. Contents of JRT.txt
  3. Contents of FRST.txt
  4. Contents of Addition.txt
  5. Any problem executing the instructions?
Thanks,
wbg
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 8th, 2014, 12:31 pm

# AdwCleaner v3.309 - Report created 08/09/2014 at 11:23:22
# Updated 02/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : owner - PHONEIX
# Running from : C:\Users\owner\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\owner\AppData\Local\AVG SafeGuard toolbar
Folder Deleted : C:\Users\owner\AppData\Local\Conduit
Folder Deleted : C:\Users\owner\AppData\Local\Ilivid Player
Folder Deleted : C:\Users\owner\AppData\Local\Mobogenie
Folder Deleted : C:\Users\owner\AppData\Local\PackageAware
Folder Deleted : C:\Users\owner\AppData\Local\Slick Savings
Folder Deleted : C:\Users\owner\AppData\Local\Temp\Mega Browse
Folder Deleted : C:\Users\owner\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\owner\AppData\Roaming\Browser Extensions
Folder Deleted : C:\Users\owner\AppData\Roaming\Search Protection
Folder Deleted : C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid
Folder Deleted : C:\Users\owner\Documents\Aimersoft Video Converter Ultimate
Folder Deleted : C:\Users\owner\Documents\Mobogenie
Folder Deleted : C:\Users\owner\Documents\Optimizer Pro
Folder Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Conduit
Folder Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\ConduitEngine
Folder Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\engine@conduit.com
Folder Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{46eddf51-a4f6-4476-8d6c-31c5187b2a2f}
Folder Deleted : C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpoimibckejjdjcfbdnajaicnklhfplh
File Deleted : C:\Users\owner\daemonprocess.txt
File Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\searchplugins\Ask.xml
File Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\searchplugins\Askcom.xml
File Deleted : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\user.js
File Deleted : C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_lyrics.wikia.com_0.localstorage
File Deleted : C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsfreak.com_0.localstorage
File Deleted : C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsmode.com_0.localstorage

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lpoimibckejjdjcfbdnajaicnklhfplh
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3A787631-66A2-4634-B928-A37E73B58FB6}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239


-\\ Mozilla Firefox v31.0 (x86 en-US)

[ File : C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\prefs.js ]

Line Deleted : user_pref("CT2790392..clientLogIsEnabled", false);
Line Deleted : user_pref("CT2790392..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2790392..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2790392.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT2790392.CTID", "CT2790392");
Line Deleted : user_pref("CT2790392.CurrentServerDate", "31-3-2011");
Line Deleted : user_pref("CT2790392.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT2790392.DialogsGetterLastCheckTime", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT2790392.EMailNotifierPollDate", "Wed Mar 30 2011 22:26:42 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedLastCount129313977501788460", 154);
Line Deleted : user_pref("CT2790392.FeedPollDate129313974171006416", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313975698350231", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313976370850190", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313976648818968", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313977444757117", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313980389131455", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313980655381977", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313980886163259", "Wed Mar 30 2011 21:39:57 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313981234756535", "Wed Mar 30 2011 21:39:57 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313983226631720", "Wed Mar 30 2011 21:39:57 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedPollDate129313983607725691", "Wed Mar 30 2011 21:39:57 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.FeedTTL129313974171006416", 10);
Line Deleted : user_pref("CT2790392.FeedTTL129313977444757117", 15);
Line Deleted : user_pref("CT2790392.FeedTTL129313980655381977", 5);
Line Deleted : user_pref("CT2790392.FeedTTL129313981234756535", 5);
Line Deleted : user_pref("CT2790392.FirstServerDate", "31-3-2011");
Line Deleted : user_pref("CT2790392.FirstTime", true);
Line Deleted : user_pref("CT2790392.FirstTimeFF3", true);
Line Deleted : user_pref("CT2790392.FixPageNotFoundErrors", true);
Line Deleted : user_pref("CT2790392.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT2790392.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT2790392.HasUserGlobalKeys", true);
Line Deleted : user_pref("CT2790392.Initialize", true);
Line Deleted : user_pref("CT2790392.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT2790392.InstallationAndCookieDataSentCount", 1);
Line Deleted : user_pref("CT2790392.InstalledDate", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.IsGrouping", false);
Line Deleted : user_pref("CT2790392.IsMulticommunity", false);
Line Deleted : user_pref("CT2790392.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT2790392.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT2790392.LanguagePackLastCheckTime", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT2790392.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT2790392.LastLogin_3.3.3.2", "Wed Mar 30 2011 21:39:55 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.LatestVersion", "3.3.3.2");
Line Deleted : user_pref("CT2790392.Locale", "en");
Line Deleted : user_pref("CT2790392.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT2790392.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT2790392.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT2790392.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT2790392.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT2790392.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT2790392.SearchInNewTabLastCheckTime", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2790392.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2790392.ServiceMapLastCheckTime", "Wed Mar 30 2011 21:39:54 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.SettingsLastCheckTime", "Wed Mar 30 2011 21:39:54 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.SettingsLastUpdate", "1298422515");
Line Deleted : user_pref("CT2790392.ThirdPartyComponentsInterval", 504);
Line Deleted : user_pref("CT2790392.ThirdPartyComponentsLastCheck", "Wed Mar 30 2011 21:39:54 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.ThirdPartyComponentsLastUpdate", "1246790578");
Line Deleted : user_pref("CT2790392.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2790392");
Line Deleted : user_pref("CT2790392.UserID", "UN23514268859768084");
Line Deleted : user_pref("CT2790392.WeatherNetwork", "");
Line Deleted : user_pref("CT2790392.WeatherPollDate", "Wed Mar 30 2011 22:10:42 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.WeatherUnit", "F");
Line Deleted : user_pref("CT2790392.alertChannelId", "1182482");
Line Deleted : user_pref("CT2790392.generalConfigFromLogin", "{\"SocialDomains\":\"social.conduit.com;apps.conduit.com\"}");
Line Deleted : user_pref("CT2790392.globalFirstTimeInfoLastCheckTime", "Wed Mar 30 2011 21:39:55 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.isAppTrackingManagerOn", true);
Line Deleted : user_pref("CT2790392.myStuffEnabled", true);
Line Deleted : user_pref("CT2790392.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT2790392.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT2790392.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT2790392.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT2790392.testingCtid", "");
Line Deleted : user_pref("CT2790392.toolbarAppMetaDataLastCheckTime", "Wed Mar 30 2011 21:39:55 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.toolbarContextMenuLastCheckTime", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CT2790392.usagesFlag", 2);
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root ... 1178159/US", "\"0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root ... /905414/US", "\"0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-ser ... =CT2790392", "\"0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-serv ... &locale=en", "wVmmvqqOMqrv5xct1cJIHg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-serv ... &locale=en", "poKjTfHs0NrVUIalKI8jyg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-serv ... &locale=en", "Dclc8oo4TTv7+mAkSlUSWg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-serv ... &locale=en", "K4Vqu91uAzWURlxJRdXJOg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-ser ... rt/dlg.pkg", "\"01ffa8b1cc6cb1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.engine.conduit-se ... er=3.3.3.2", "\"0652eeacc6cb1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-s ... er=3.3.3.2", "\"0652eeacc6cb1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/ ... =CT2790392", "\"634333631231730000\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services ... r=FF&lut=0", "634356118310000000");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services ... =3/13/2011 11:17:11 AM", "634356118310000000");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit. ... /CT2790392", "\"1298422515\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-serv ... ?locale=en", "\"634351849102130000\"");
Line Deleted : user_pref("CommunityToolbar.EngineHiddenByUser", true);
Line Deleted : user_pref("CommunityToolbar.EngineOwner", "CT2790392");
Line Deleted : user_pref("CommunityToolbar.EngineOwnerGuid", "{88c7f2aa-f93f-432c-8f0e-b7d85967a527}");
Line Deleted : user_pref("CommunityToolbar.EngineOwnerToolbarId", "bittorrentbar");
Line Deleted : user_pref("CommunityToolbar.IsEngineShown", false);
Line Deleted : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2790392");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{88c7f2aa-f93f-432c-8f0e-b7d85967a527}");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "bittorrentbar");
Line Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://us.yhs.search.yahoo.com/avg/search?fr=yhs-avgb&type=yahoo_avg_hs2-tb-web_us&p=");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList", "ConduitEngine,CT2790392");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT2790392");
Line Deleted : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Wed Mar 30 2011 21:39:55 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Thu Apr 07 2011 12:34:52 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.locale", "en");
Line Deleted : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Thu Apr 07 2011 07:16:22 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1291048634");
Line Deleted : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Line Deleted : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Line Deleted : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Line Deleted : user_pref("CommunityToolbar.alert.userId", "aba1b2c7-b491-49cd-b96c-64cf26233c9a");
Line Deleted : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Wed Mar 30 2011 21:39:56 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("CommunityToolbar.globalUserId", "6c2ae42b-6473-404f-8409-9a361036008a");
Line Deleted : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2790392");
Line Deleted : user_pref("ConduitEngine.AppTrackingLastCheckTime", "Thu Mar 31 2011 08:15:49 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Sat Apr 02 2011 22:47:59 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.FirstServerDate", "03/31/2011 04");
Line Deleted : user_pref("ConduitEngine.FirstTime", true);
Line Deleted : user_pref("ConduitEngine.FirstTimeFF3", true);
Line Deleted : user_pref("ConduitEngine.HasUserGlobalKeys", true);
Line Deleted : user_pref("ConduitEngine.HideEngineAfterRestart", true);
Line Deleted : user_pref("ConduitEngine.Initialize", true);
Line Deleted : user_pref("ConduitEngine.InitializeCommonPrefs", true);
Line Deleted : user_pref("ConduitEngine.InstalledDate", "Wed Mar 30 2011 21:39:57 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.IsMulticommunity", false);
Line Deleted : user_pref("ConduitEngine.IsOpenThankYouPage", false);
Line Deleted : user_pref("ConduitEngine.IsOpenUninstallPage", true);
Line Deleted : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Sun Apr 03 2011 23:56:27 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.LastLogin_3.3.3.2", "Mon Apr 04 2011 18:38:19 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.PublisherContainerWidth", 0);
Line Deleted : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("ConduitEngine.SettingsLastCheckTime", "Mon Apr 04 2011 18:38:19 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.UserID", "UN88776633919271859");
Line Deleted : user_pref("ConduitEngine.engineLocale", "en-US");
Line Deleted : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Sun Apr 03 2011 23:56:27 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Mon Apr 04 2011 20:43:18 GMT-0400 (Eastern Daylight Time)");
Line Deleted : user_pref("ConduitEngine.initDone", true);
Line Deleted : user_pref("ConduitEngine.isAppTrackingManagerOn", true);
Line Deleted : user_pref("ConduitEngine.usagesFlag", 1);
Line Deleted : user_pref("Integration.GTDSearchQuickSave", true);
Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("extensions.snipit.askTbInstalled", true);

-\\ Google Chrome v37.0.2062.103

[ File : C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
Deleted [Extension] : lpoimibckejjdjcfbdnajaicnklhfplh

*************************

AdwCleaner[R0].txt - [18387 octets] - [08/09/2014 11:21:32]
AdwCleaner[S0].txt - [18679 octets] - [08/09/2014 11:23:22]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [18740 octets] ##########
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 8th, 2014, 12:32 pm

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by owner on Mon 09/08/2014 at 12:12:09.49
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Users\owner\appdata\locallow\bittorrentbar"



~~~ FireFox

Successfully deleted: [File] C:\Users\owner\AppData\Roaming\mozilla\firefox\profiles\t4vn3hew.default\searchplugins\bing-zugo.xml
Successfully deleted: [Folder] C:\Users\owner\AppData\Roaming\mozilla\firefox\profiles\t4vn3hew.default\extensions\staged
Successfully deleted: [Folder] C:\Users\owner\AppData\Roaming\mozilla\firefox\profiles\t4vn3hew.default\extensions\{3ec9c995-8072-4fc0-953e-4f30620d17f3}
Emptied folder: C:\Users\owner\AppData\Roaming\mozilla\firefox\profiles\t4vn3hew.default\minidumps [5 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 09/08/2014 at 12:19:04.74
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 8th, 2014, 12:37 pm

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-09-2014 01
Ran by owner (administrator) on PHONEIX on 08-09-2014 12:23:13
Running from C:\Users\owner\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe
() C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Ruiware LLC) C:\Program Files (x86)\Ruiware\WinPatrol\WinPatrol.exe
(Bartels Media GmbH) C:\Program Files (x86)\PhraseExpress\phraseexpress.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Golden Frog, GmbH.) C:\Program Files (x86)\VyprVPN\VyprVPNService.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
(Efficient Software) C:\Program Files (x86)\EfficientPIM\EfficientPIM.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Farbar) C:\Users\owner\Desktop\FRST64 (1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [Fences] => C:\Program Files (x86)\Stardock\Fences\Fences.exe [3993744 2014-05-22] (Stardock Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328064 2012-09-14] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184 2012-10-17] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088 2013-09-17] (Intel Corporation)
HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-11-11] (Kaspersky Lab ZAO)
HKU\S-1-5-21-3209393520-565817868-2189237008-1000\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [111320 2014-08-31] (Siber Systems)
HKU\S-1-5-21-3209393520-565817868-2189237008-1000\...\Run: [WinPatrol] => C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe [1154112 2014-07-20] (Ruiware LLC)
Startup: C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk
ShortcutTarget: PhraseExpress.lnk -> C:\Program Files (x86)\PhraseExpress\phraseexpress.exe (Bartels Media GmbH)
ShellIconOverlayIdentifiers: KAVOverlayIcon -> {dd230880-495a-11d1-b064-008048ec2fc5} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\shellex.dll (Kaspersky Lab ZAO)
ShellIconOverlayIdentifiers-x32: KAVOverlayIcon -> {dd230880-495a-11d1-b064-008048ec2fc5} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\shellex.dll (Kaspersky Lab ZAO)
BootExecute: autocheck autochk * BootDefrag.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
SearchScopes: HKLM - {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKCU - {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKCU - {7E552C10-B56C-43B7-8197-6BC8AB7954E0} URL = https://search.yahoo.com/search?fr=chr- ... =888596&p={searchTerms}
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (Siber Systems Inc.)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (Siber Systems Inc.)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76

FireFox:
========
FF ProfilePath: C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: https://search.yahoo.com/search?fr=gree ... =888596&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\searchplugins\hyperwords.xml
FF SearchPlugin: C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\searchplugins\yahoo_ff.xml
FF Extension: Better Gmail 2 - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\bettergmail2@ginatrapani.org [2014-08-30]
FF Extension: Better YouTube - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\betteryoutube@ginatrapani.org [2014-08-30]
FF Extension: United States English Spellchecker - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\en-US@dictionaries.addons.mozilla.org [2014-08-30]
FF Extension: Fire Encrypter - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\fireencrypter@jungsonn.com [2014-08-30]
FF Extension: Text Formatting Toolbar - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\format.bar@codefisher.org [2014-08-30]
FF Extension: People Search and Public Record Toolbar - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\peoplesearch@skipease.com [2014-08-30]
FF Extension: LastPass - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\support@lastpass.com [2014-08-30]
FF Extension: No Name - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\temp [2014-08-30]
FF Extension: Text Complete - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\textcomplete@cfavatar.com [2014-08-30]
FF Extension: WorldClocks - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\worldclocks@jrincon.pe [2014-08-30]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2014-08-30]
FF Extension: Facebook PhotoZoom - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{20cc25e2-48c9-45e1-9a1f-1ccc1882b81b} [2014-08-30]
FF Extension: Advanced Dork: - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{31E65147-5A53-4e52-8A64-FF7EBFA36D76} [2014-08-30]
FF Extension: Start Page - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{32da2f20-827d-40aa-a3b4-2fc4a294352e} [2014-09-05]
FF Extension: Back to Top - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{3C9A65A6-9563-4485-BA4A-4BCD698BCFB4} [2014-08-30]
FF Extension: Gmail Notifier - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{44d0a1b4-9c90-4f86-ac92-8680b5d6549e} [2014-08-30]
FF Extension: Map+ - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{5359A5B3-9AFD-49ee-8C39-0A8F97A2A2D6} [2014-08-30]
FF Extension: Amazon Shopping Assistant by Spigot - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{84a93d51-b7a9-431e-8ff8-d60e5d7f5df1} [2014-09-05]
FF Extension: Clippings - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{91aa5abe-9de4-4347-b7b5-322c38dd9271} [2014-08-30]
FF Extension: Hyperwords - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{9A752782-D706-479b-98F8-3F66BF921692} [2014-08-30]
FF Extension: mid - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{9ef1e09b-d4b2-4a55-ac3e-1cb330546bec} [2014-08-30]
FF Extension: Temporary Inbox - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{ac1e10b8-206d-4746-a18e-0483852dc20b} [2014-08-30]
FF Extension: BBCodeXtra - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{af79f858-4b25-4ca4-822b-b5db1be628fc} [2014-08-30]
FF Extension: ActiveInbox for Gmail and Google Apps - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{bcd47b5a-43be-433f-9051-7ce2cdf94ac0} [2014-08-30]
FF Extension: Fasterfox - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{c36177c0-224a-11da-8cd6-0800200c9a66} [2014-08-30]
FF Extension: Adobe DLM (powered by getPlus(R)) - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7} [2014-08-30]
FF Extension: FoxClocks - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{d37dc5d0-431d-44e5-8c91-49419370caa1} [2014-08-30]
FF Extension: DownThemAll! - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8} [2014-08-30]
FF Extension: Clipmarks - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{e1170235-2845-420c-acc3-42261a29dd46} [2014-08-30]
FF Extension: Ebay Shopping Assistant by Spigot - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{f894a29a-f065-40c3-bb19-da6057778493} [2014-09-05]
FF Extension: Image Zoom - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}.xpi [2014-09-03]
FF Extension: FireFTP - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}.xpi [2014-08-30]
FF Extension: ReminderFox - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae}.xpi [2014-08-30]
FF Extension: Dictionary Tooltip - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{C6128004-4838-4708-9A97-BB172D17767D}.xpi [2014-08-30]
FF Extension: Thumbnail Zoom - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{E10A6337-382E-4FE6-96DE-936ADC34DD04}.xpi [2014-08-30]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox
FF Extension: RoboForm Toolbar for Firefox - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox [2014-08-31]
FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2014-08-31]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2014-08-31]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com
FF Extension: Gevaarlijke websiteblokkering - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2014-08-31]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2014-08-31]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2014-08-31]
FF HKCU\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox

Chrome:
=======
CHR HomePage: Default ->
CHR DefaultSearchKeyword: Default -> F7F3A231B2CC92A73D0C88206248121A12D9AB86F5CD3D43719F0670B9D67E2C
CHR DefaultSearchProvider: Default -> 7FEDB8E0DC04EB919C5A76893B09383DA9AFF67B3D5529BC2ADFB4A9FDDBAE69
CHR DefaultSearchURL: Default -> E1E818D818DB67E2DC1EDB1F2208F181E772264B3C4F939F3EA4B5846436BF6B
CHR Profile: C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-08-28]
CHR Extension: (Google Docs) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-28]
CHR Extension: (Google Drive) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-28]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-08-28]
CHR Extension: (YouTube) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-28]
CHR Extension: (Learn States and Capitals) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdblkfkcegbngjbibiefbjbeofmbgonk [2014-09-07]
CHR Extension: (Google Search) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-28]
CHR Extension: (Kaspersky URL Advisor) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-08-31]
CHR Extension: (Photo Zoom for Facebook) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2014-09-07]
CHR Extension: (Select Search) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcjoilhmjjhfpeflkmlhejiaadbgfkgn [2014-09-07]
CHR Extension: (Google Sheets) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-08-28]
CHR Extension: (AdBlock) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-09-07]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2014-09-07]
CHR Extension: (Google Wallet) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-28]
CHR Extension: (Hover Zoom) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl [2014-09-07]
CHR Extension: (Gmail) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-28]
CHR Extension: (Anti-Banner) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-08-31]
CHR Extension: (RoboForm) - C:\Users\owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2014-08-31]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2013-11-11]
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2013-11-11]
CHR HKLM-x32\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2014-08-31]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-11-11] (Kaspersky Lab ZAO)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [818888 2013-09-25] (Infowatch)
R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [216576 2014-09-03] () [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-21] (Intel Corporation)
R2 VyprVPN; C:\Program Files (x86)\VyprVPN\VyprVPNService.exe [116224 2014-08-27] (Golden Frog, GmbH.) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ATP; C:\Windows\System32\DRIVERS\AsusTP.sys [61824 2012-10-31] (ASUS Corporation)
R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17600 2014-07-18] (Glarysoft Ltd)
R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch)
R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch)
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20672 2014-08-28] (Glarysoft Ltd)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-08-31] (Kaspersky Lab ZAO)
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [92768 2014-08-31] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [628288 2014-08-31] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2014-08-31] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-11-11] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-11-11] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-11-11] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-11-11] (Kaspersky Lab ZAO)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-13] (Brother Industries Ltd.)
S3 tapvyprvpn; C:\Windows\System32\DRIVERS\tapvyprvpn.sys [44896 2014-08-27] (The OpenVPN Project)
R1 veracrypt; C:\Windows\System32\drivers\veracrypt.sys [231768 2014-09-01] (IDRIX)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-08 12:23 - 2014-09-08 12:23 - 00028849 _____ () C:\Users\owner\Desktop\FRST.txt
2014-09-08 12:23 - 2014-09-08 12:23 - 00000000 ____D () C:\FRST
2014-09-08 12:19 - 2014-09-08 12:19 - 00001255 _____ () C:\Users\owner\Desktop\JRT.txt
2014-09-08 12:12 - 2014-09-08 12:12 - 00000000 ____D () C:\Windows\ERUNT
2014-09-08 12:10 - 2014-09-08 12:10 - 00000022 _____ () C:\Windows\S.dirmngr
2014-09-08 11:28 - 2014-09-08 11:28 - 00018821 _____ () C:\Users\owner\Desktop\AdwCleaner[S0].txt
2014-09-08 11:22 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-08 11:21 - 2014-09-08 11:23 - 00000000 ____D () C:\AdwCleaner
2014-09-07 23:55 - 2014-09-07 23:55 - 02105344 _____ (Farbar) C:\Users\owner\Desktop\FRST64 (1).exe
2014-09-07 23:27 - 2014-09-07 23:27 - 01016261 _____ (Thisisu) C:\Users\owner\Desktop\JRT.exe
2014-09-07 23:02 - 2014-09-07 23:04 - 01370467 _____ () C:\Users\owner\Desktop\AdwCleaner.exe
2014-09-07 21:41 - 2014-09-07 21:41 - 00025088 _____ () C:\Users\owner\Desktop\codecheck.exe
2014-09-07 13:16 - 2014-09-07 13:16 - 00001263 _____ () C:\Users\Public\Desktop\TEA 2.11.lnk
2014-09-07 13:16 - 2014-09-07 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TEA Crossword Helper 2.11
2014-09-07 13:16 - 2014-09-07 13:16 - 00000000 ____D () C:\ProgramData\Crossword Man
2014-09-07 13:16 - 2014-09-07 13:16 - 00000000 ____D () C:\Program Files (x86)\Crossword Man
2014-09-07 10:42 - 2014-09-07 10:42 - 11168296 _____ () C:\Users\owner\Downloads\SetupAnyDVD7510.exe
2014-09-07 09:17 - 2014-09-07 09:17 - 00019051 _____ () C:\HijackPatrol.log
2014-09-06 11:45 - 2014-09-06 11:45 - 00097803 _____ () C:\ProgramData\1410018152.bdinstall.bin
2014-09-06 11:42 - 2014-09-06 11:42 - 00037823 _____ () C:\ProgramData\1410018147.bdinstall.bin
2014-09-06 11:42 - 2014-09-06 11:42 - 00000000 ____D () C:\ProgramData\bdch
2014-09-05 16:13 - 2014-09-05 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack
2014-09-05 16:12 - 2014-09-05 16:13 - 00000000 ____D () C:\Windows\SysWOW64\C2MP
2014-09-05 13:27 - 2014-09-05 13:27 - 00244789 _____ () C:\ProgramData\1409937465.bdinstall.bin
2014-09-05 13:17 - 2014-09-05 13:24 - 00000000 ____D () C:\Users\owner\AppData\Roaming\QuickScan
2014-09-04 10:51 - 2014-09-07 16:25 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-09-03 14:38 - 2014-09-06 22:49 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-09-03 14:38 - 2014-09-03 14:38 - 00000963 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-09-03 14:38 - 2014-09-03 14:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\Users\owner\AppData\Roaming\WinPatrol
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\ProgramData\InstallMate
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\Program Files (x86)\Ruiware
2014-09-03 01:43 - 2014-09-03 01:43 - 00002948 _____ () C:\Windows\System32\Tasks\{1B5A1C1D-708B-4F06-84D6-60B1DD9DEBA5}
2014-09-03 01:41 - 2014-09-03 01:41 - 00002948 _____ () C:\Windows\System32\Tasks\{55ABC09F-F0A3-4260-A9D3-E81FEBC1BCBA}
2014-09-03 01:37 - 2014-09-03 01:37 - 00000963 _____ () C:\Users\Public\Desktop\VyprVPN.lnk
2014-09-03 01:37 - 2014-09-03 01:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Golden Frog, GmbH
2014-09-03 01:36 - 2014-09-03 01:36 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Golden Frog, GmbH
2014-09-03 01:36 - 2014-09-03 01:36 - 00000000 ____D () C:\ProgramData\Golden Frog, GmbH
2014-09-03 01:35 - 2014-09-03 01:35 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-03 01:33 - 2014-09-03 01:37 - 00000000 ____D () C:\Program Files (x86)\VyprVPN
2014-09-02 14:26 - 2014-09-03 02:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-09-02 13:33 - 2014-09-03 00:50 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-09-02 13:33 - 2014-09-03 00:50 - 00000000 ____D () C:\ProgramData\Skype
2014-09-02 13:33 - 2014-09-03 00:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-02 13:33 - 2014-09-02 13:35 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-02 13:30 - 2014-09-02 13:30 - 00003160 _____ () C:\Windows\System32\Tasks\{6AD2E35C-91D8-48B7-A575-BB0B2DC2C4BC}
2014-09-02 00:14 - 2014-09-08 11:25 - 00227200 _____ () C:\Windows\PFRO.log
2014-09-01 22:49 - 2014-09-04 19:51 - 00000000 ____D () C:\Users\owner\AppData\Roaming\gnupg
2014-09-01 22:49 - 2014-09-04 19:24 - 00002023 _____ () C:\Users\Public\Desktop\Kleopatra.lnk
2014-09-01 22:49 - 2014-09-04 19:24 - 00000000 ____D () C:\Users\Public\Desktop\Gpg4win Documentation
2014-09-01 22:49 - 2014-09-04 19:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gpg4win
2014-09-01 22:49 - 2014-09-01 22:49 - 00000000 ____D () C:\ProgramData\GNU
2014-09-01 22:49 - 2014-09-01 22:49 - 00000000 ____D () C:\Program Files (x86)\GNU
2014-09-01 16:47 - 2014-09-01 16:47 - 00001296 _____ () C:\Users\owner\Desktop\SolveigMM Video Splitter Home Edition.lnk
2014-09-01 16:47 - 2014-09-01 16:47 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Solveig Multimedia
2014-09-01 16:47 - 2014-09-01 16:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Solveig Multimedia
2014-09-01 16:47 - 2014-09-01 16:47 - 00000000 ____D () C:\Program Files (x86)\Solveig Multimedia
2014-09-01 15:25 - 2014-09-01 15:26 - 2147483648 _____ () C:\Users\owner\Documents\DistantDeeps
2014-09-01 11:51 - 2014-09-08 12:10 - 00005762 _____ () C:\Windows\setupact.log
2014-09-01 11:51 - 2014-09-01 11:51 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-01 01:52 - 2014-09-01 01:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)
2014-09-01 01:51 - 2014-09-01 01:51 - 00000000 ____D () C:\Users\owner\AppData\Roaming\VeraCrypt
2014-09-01 01:49 - 2014-09-01 01:51 - 00000000 ____D () C:\ProgramData\VirtualizedApplications
2014-09-01 01:49 - 2014-09-01 01:49 - 00231768 _____ (IDRIX) C:\Windows\system32\Drivers\veracrypt.sys
2014-09-01 01:49 - 2014-09-01 01:49 - 00000847 _____ () C:\Users\Public\Desktop\VeraCrypt.lnk
2014-09-01 01:49 - 2014-09-01 01:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VeraCrypt
2014-09-01 01:48 - 2014-09-01 01:49 - 00000000 ____D () C:\Program Files\VeraCrypt
2014-09-01 00:54 - 2014-09-01 00:54 - 00002026 _____ () C:\Users\owner\Desktop\Customize Fences.lnk
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\Users\owner\AppData\Local\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\ProgramData\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\Program Files (x86)\Stardock
2014-09-01 00:01 - 2014-09-01 00:01 - 00230840 _____ (TrueCrypt Foundation) C:\Windows\system32\Drivers\truecrypt.sys
2014-09-01 00:00 - 2014-09-02 14:20 - 00000000 ____D () C:\Users\owner\.frostwire5
2014-09-01 00:00 - 2014-09-02 14:18 - 00000000 ____D () C:\Users\owner\FrostWire
2014-08-31 23:50 - 2014-08-31 23:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt
2014-08-31 23:50 - 2014-08-31 23:50 - 00000000 ____D () C:\Program Files\Axantum
2014-08-31 23:38 - 2014-09-08 11:23 - 00000000 ____D () C:\Users\owner\AppData\Roaming\SoftGrid Client
2014-08-31 23:38 - 2014-08-31 23:38 - 00000000 ____D () C:\Users\owner\AppData\Local\SoftGrid Client
2014-08-31 19:34 - 2014-09-07 20:14 - 00000000 ____D () C:\Users\owner\AppData\Roaming\vlc
2014-08-31 16:29 - 2014-08-31 16:29 - 00001030 _____ () C:\Users\owner\Desktop\Password Safe.lnk
2014-08-31 16:29 - 2014-08-31 16:29 - 00000000 ____D () C:\Program Files (x86)\Password Safe
2014-08-31 15:56 - 2014-08-31 15:56 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-08-31 15:13 - 2014-09-06 11:42 - 00000000 ____D () C:\Users\owner\AppData\Roaming\uTorrent
2014-08-31 14:25 - 2014-08-31 14:26 - 00000000 ____D () C:\Users\owner\AppData\Roaming\PhraseExpress
2014-08-31 14:24 - 2014-09-04 20:04 - 00000000 ____D () C:\Users\Public\Documents\PhraseExpress
2014-08-31 14:24 - 2014-08-31 14:24 - 00000000 ____D () C:\ProgramData\PhraseExpress
2014-08-31 14:24 - 2014-08-31 14:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhraseExpress
2014-08-31 14:24 - 2014-08-31 14:24 - 00000000 ____D () C:\Program Files (x86)\PhraseExpress
2014-08-31 14:09 - 2014-08-31 14:09 - 00001953 _____ () C:\Users\Public\Desktop\Sonos.lnk
2014-08-31 14:09 - 2014-08-31 14:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonos
2014-08-31 14:08 - 2014-09-05 17:07 - 00000000 ____D () C:\ProgramData\Sonos,_Inc
2014-08-31 14:08 - 2014-08-31 14:08 - 00000000 ____D () C:\Program Files (x86)\Sonos
2014-08-31 13:59 - 2014-08-31 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky PURE 3.0
2014-08-31 13:58 - 2014-09-08 12:12 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-08-31 13:58 - 2014-08-31 14:54 - 00628288 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-08-31 13:58 - 2014-08-31 14:54 - 00092768 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-08-31 13:58 - 2014-08-31 13:58 - 00000000 ____D () C:\Windows\ELAMBKUP
2014-08-31 13:58 - 2014-08-31 13:58 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-08-31 13:58 - 2013-11-11 19:25 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll
2014-08-31 13:58 - 2011-06-02 14:39 - 00084536 _____ (Infowatch) C:\Windows\system32\Drivers\CSCrySec.sys
2014-08-31 13:58 - 2011-06-02 14:39 - 00066616 _____ (Infowatch) C:\Windows\system32\Drivers\CSVirtualDiskDrv.sys
2014-08-31 13:14 - 2014-09-01 23:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\EfficientPIM
2014-08-31 13:14 - 2014-08-31 13:14 - 00000983 _____ () C:\Users\owner\Desktop\EfficientPIM.lnk
2014-08-31 13:14 - 2014-08-31 13:14 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Efficient Software
2014-08-31 13:14 - 2014-08-31 13:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EfficientPIM
2014-08-31 13:14 - 2014-08-31 13:14 - 00000000 ____D () C:\Program Files (x86)\EfficientPIM
2014-08-31 12:38 - 2014-08-31 12:38 - 00004112 _____ () C:\Windows\System32\Tasks\Open URL by RoboForm
2014-08-31 12:38 - 2014-08-31 12:38 - 00003492 _____ () C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
2014-08-31 12:36 - 2014-08-31 12:36 - 00000000 ____D () C:\ProgramData\RoboForm
2014-08-31 12:36 - 2014-08-31 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
2014-08-31 12:36 - 2014-08-31 12:36 - 00000000 ____D () C:\Program Files (x86)\Siber Systems
2014-08-31 12:03 - 2014-08-31 12:03 - 00002098 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-08-31 12:03 - 2014-08-31 12:03 - 00002086 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2014-08-30 16:35 - 2014-08-30 16:35 - 00000000 ____D () C:\ProgramData\Auslogics
2014-08-30 16:07 - 2014-08-30 16:07 - 00000000 ____D () C:\Users\owner\Desktop\New Briefcase
2014-08-30 16:07 - 2011-04-10 10:42 - 00000000 ____D () C:\Users\owner\AppData\Roaming\WeatherBug
2014-08-30 16:07 - 2011-04-06 22:38 - 00011264 ___SH () C:\Users\owner\Downloads\Thumbs.db
2014-08-30 16:07 - 2011-03-26 09:51 - 00002429 _____ () C:\Users\owner\Desktop\Google Chrome.lnk
2014-08-30 16:07 - 2010-04-20 16:54 - 00001176 _____ () C:\Users\owner\Desktop\Edward.adu
2014-08-30 16:07 - 2010-01-22 19:52 - 00472064 _____ ( ) C:\Users\owner\Desktop\RootRepeal.exe
2014-08-30 16:07 - 2009-05-30 09:51 - 00000083 ___SH () C:\Users\owner\Documents\DESKTOP (1).INI
2014-08-30 16:07 - 2008-08-10 12:54 - 00001079 _____ () C:\Users\owner\Desktop\Notepad (2).lnk
2014-08-30 16:07 - 2005-02-08 18:09 - 00561207 _____ (Sysinternals) C:\Users\owner\Desktop\procexp.exe
2014-08-30 16:07 - 2004-08-10 14:01 - 00001387 _____ () C:\Users\owner\Desktop\WordPad.lnk
2014-08-30 16:06 - 2014-09-07 08:36 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Skype
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Thunderbird
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Softland
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\skypePM
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Roxio
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\OpenOffice.org
2014-08-30 16:05 - 2014-08-31 16:29 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Safe
2014-08-30 16:05 - 2014-08-30 16:31 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Mozilla
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Motive
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserPlus
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Best Buy
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Macrovision
2014-08-30 16:05 - 2011-01-05 16:05 - 00001415 _____ () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Intuit
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Intel
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\HP
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Dell
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\CyberLink
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\BitTorrent
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\ASCOMP Software
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Local\Yahoo!
2014-08-30 16:04 - 2011-04-10 10:38 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Amazon
2014-08-30 16:02 - 2014-08-30 16:02 - 00000000 ____D () C:\Users\owner\AppData\Local\SupportSoft
2014-08-30 16:02 - 2014-08-30 16:02 - 00000000 ____D () C:\Users\owner\AppData\Local\Mozilla Firefox
2014-08-30 16:01 - 2014-08-30 16:31 - 00000000 ____D () C:\Users\owner\AppData\Local\MigWiz
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\WINDOWS
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\vw
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\System
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\PrivacIE
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\Incomplete
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\IETldCache
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\Gigabeat Original Firmware Backup
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\Documents\My PSP8 Files
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\.freemind
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\.360Share
2014-08-30 15:58 - 2007-11-19 15:03 - 00439296 _____ (Citrix Online) C:\Users\owner\GoToAssist_phone__317_en.exe
2014-08-30 15:58 - 2007-10-29 10:08 - 00066648 _____ () C:\Users\owner\ex.err
2014-08-30 15:58 - 2006-08-25 15:13 - 05541888 _____ () C:\Users\owner\s-1-5-21-2731633163-1187809266-1330281862-1006.rrr
2014-08-30 15:58 - 2005-07-12 21:10 - 00000000 ____H () C:\Users\owner\S-1-5-21-2731633163-1187809266-1330281862-1006.rrr.LOG
2014-08-30 13:23 - 2014-09-07 10:28 - 00000000 ____D () C:\Users\owner\Documents\PhraseExpress
2014-08-30 13:23 - 2014-08-31 16:36 - 00000000 ____D () C:\Users\owner\Documents\My Safes
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\wordpat
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\WD_Quick_View_Setup_for_Windows
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\TurboTax
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\THE_THICK_OF_IT
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\Sound Effects
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\Solveig Multimedia
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\Recipes
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\ProjectMeditation
2014-08-30 13:22 - 2014-09-08 00:30 - 00000000 ____D () C:\Users\owner\Documents\My Kindle Content
2014-08-30 13:22 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\My RoboForm Data
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\My eBooks
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\My Digital Editions
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\Mixpad Projects
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\Kindle DRM Removal
2014-08-30 13:22 - 2012-05-08 12:08 - 00000000 ____D () C:\Users\owner\Documents\Kindle BL2
2014-08-30 13:22 - 2012-05-08 08:26 - 00000000 ____D () C:\Users\owner\Documents\Kindle BL
2014-08-30 13:22 - 2011-04-10 10:50 - 00000000 ____D () C:\Users\owner\Documents\My Albums
2014-08-30 13:18 - 2014-09-08 12:09 - 00000000 ____D () C:\Users\owner\Documents\Efficient Organizer AutoBackup
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\iTunes
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Freemake
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Family Speeches
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\ExcelAristoInteractiveSolver
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\EnigmaSim
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\EfficientPIM Backup
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\EfficientPIM AutoBackup
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Edraw Mind Map
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\DeDRM_v5.1_WinApp
2014-08-30 13:18 - 2013-08-23 16:56 - 00000000 ____D () C:\Users\owner\Documents\Efficient Organizer Backup
2014-08-30 13:17 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\CoffeeCup Software
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\codebooktool
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\CAM Development
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Bigasoft Video Downloader Pro
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Audible
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Any Video Editor
2014-08-30 13:17 - 2012-11-17 12:59 - 00000000 ____D () C:\Users\owner\Documents\AnyDVDHD
2014-08-30 13:16 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Any Video Converter Ultimate
2014-08-30 13:15 - 2014-08-30 13:16 - 00000000 ____D () C:\Users\owner\Documents\Any Video Converter
2014-08-30 13:15 - 2014-08-30 13:15 - 00000000 ____D () C:\Users\owner\Documents\Amazon MP3
2014-08-30 13:15 - 2014-08-30 13:15 - 00000000 ____D () C:\Users\owner\Documents\Alpha Realms
2014-08-30 11:30 - 2014-08-06 16:05 - 00011650 _____ () C:\Users\owner\Documents\TRANSPOSITIONS.xlsx
2014-08-30 11:30 - 2014-08-01 00:35 - 00011568 _____ () C:\Users\owner\Documents\VACUUM.xlsx
2014-08-30 11:30 - 2013-12-24 13:45 - 00016830 _____ () C:\Users\owner\Documents\Xmas-2013-xlsx.axx
2014-08-30 11:30 - 2013-11-18 10:21 - 00000055 _____ () C:\Users\owner\Documents\U571_16.eni
2014-08-30 11:30 - 2013-11-06 01:32 - 00014848 ___SH () C:\Users\owner\Documents\Thumbs.db
2014-08-30 11:30 - 2013-10-22 13:19 - 00013523 _____ () C:\Users\owner\Documents\VegetableBurgerComparisons.xlsx
2014-08-30 11:30 - 2013-06-19 14:34 - 00012617 _____ () C:\Users\owner\Documents\WeeklySchedule.xlsx
2014-08-30 11:30 - 2013-05-22 09:03 - 00039611 _____ () C:\Users\owner\Documents\Watch Red Hot Riding Hood on Video (Theatrical Cartoon) at BCD.flv
2014-08-30 11:30 - 2013-01-14 13:13 - 00016318 _____ () C:\Users\owner\Documents\Xmas-2012-xlsx.axx
2014-08-30 11:30 - 2012-04-04 14:00 - 00012326 _____ () C:\Users\owner\Documents\The Rainy Day.odt
2014-08-30 11:30 - 2012-02-02 13:13 - 00020890 _____ () C:\Users\owner\Documents\Valentines2011.odt
2014-08-30 11:30 - 2012-01-26 17:58 - 00017090 _____ () C:\Users\owner\Documents\Vigenere_Table.ods
2014-08-30 11:30 - 2012-01-16 11:55 - 00001716 _____ () C:\Users\owner\Documents\WordplayList.txt
2014-08-30 11:30 - 2011-12-23 14:47 - 00017838 _____ () C:\Users\owner\Documents\Xmas-2011-ods.axx
2014-08-30 11:30 - 2011-12-16 22:45 - 00000417 _____ () C:\Users\owner\Documents\Warhammer Activation key.txt
2014-08-30 11:30 - 2011-11-30 15:37 - 00006718 _____ () C:\Users\owner\Documents\Xmas-2010-xls.axx
2014-08-30 11:30 - 2011-05-03 12:43 - 00013709 _____ () C:\Users\owner\Documents\TomMorris.odt
2014-08-30 11:30 - 2011-04-30 21:59 - 00031026 _____ () C:\Users\owner\Documents\Why do Americans still dislike atheists.odt
2014-08-30 11:30 - 2009-12-22 16:22 - 00006350 _____ () C:\Users\owner\Documents\Xmas-2009-xls.axx
2014-08-30 11:30 - 2009-12-06 16:24 - 00007550 _____ () C:\Users\owner\Documents\Xmas-2008-xls.axx
2014-08-30 11:30 - 2009-08-28 14:03 - 00014411 _____ () C:\Users\owner\Documents\TheRainyDay.odt
2014-08-30 11:30 - 2008-08-02 18:13 - 00017408 _____ () C:\Users\owner\Documents\UpdatedTimeRecord.xls
2014-08-30 11:30 - 2008-01-12 12:26 - 00005737 _____ () C:\Users\owner\Documents\Xmas-2007-xls.axx
2014-08-30 11:30 - 2006-12-27 19:17 - 00004617 _____ () C:\Users\owner\Documents\Xmas-2006-xls.axx
2014-08-30 11:28 - 2014-09-08 12:20 - 14413824 _____ () C:\Users\owner\Documents\My Information.effx
2014-08-30 11:28 - 2014-08-06 16:47 - 00009358 _____ () C:\Users\owner\Documents\Excelsior-docx.axx
2014-08-30 11:28 - 2014-07-29 15:14 - 00012878 _____ () C:\Users\owner\Documents\LAH_KB_2ndQuarter.xlsx
2014-08-30 11:28 - 2014-05-23 16:54 - 00073682 _____ () C:\Users\owner\Documents\phrases.pxp
2014-08-30 11:28 - 2014-01-24 14:38 - 00013691 _____ () C:\Users\owner\Documents\DepositsOctoberDecember.xlsx
2014-08-30 11:28 - 2014-01-20 14:02 - 00166136 _____ () C:\Users\owner\Documents\Sue work schedule.xlsm
2014-08-30 11:28 - 2014-01-08 23:36 - 00000032 _____ () C:\Users\owner\Documents\Comcast.txt
2014-08-30 11:28 - 2013-12-03 14:53 - 00005251 _____ () C:\Users\owner\Documents\TaxDispute.odt
2014-08-30 11:28 - 2013-11-06 01:47 - 00004834 _____ () C:\Users\owner\Documents\HondaPaymentsX.ods
2014-08-30 11:28 - 2013-11-04 17:49 - 00001326 _____ () C:\Users\owner\Documents\ResumeStylesheet.css
2014-08-30 11:28 - 2013-11-04 17:47 - 00001073 _____ () C:\Users\owner\Documents\HTMLResume.html
2014-08-30 11:28 - 2013-11-02 18:23 - 00001134 _____ () C:\Users\owner\Documents\Documents - Shortcut.lnk
2014-08-30 11:28 - 2013-10-16 16:01 - 00000504 _____ () C:\Users\owner\Documents\spLog.log
2014-08-30 11:28 - 2013-10-15 13:33 - 00000000 _____ () C:\Users\owner\Documents\The 2013 Government Shutdown Wedding of the Century Pt. 2 - The Colbert Report - 2013-03-10 - Video Clip Comedy Centra.flv.ds
2014-08-30 11:28 - 2013-08-31 03:43 - 00011259 _____ () C:\Users\owner\Documents\Playfair.xlsx
2014-08-30 11:28 - 2013-08-25 04:24 - 00000585 _____ () C:\Users\owner\Documents\In Flanders fields.txt
2014-08-30 11:28 - 2013-08-21 21:32 - 00019456 _____ () C:\Users\owner\Documents\HondaPayments.xls
2014-08-30 11:28 - 2013-08-05 19:02 - 06561492 _____ () C:\Users\owner\Documents\NinaRidesAHorse_4.mp4
2014-08-30 11:28 - 2013-05-22 23:13 - 00054215 _____ () C:\Users\owner\Documents\MESGraduation.edx
2014-08-30 11:28 - 2013-05-19 19:37 - 00014331 _____ () C:\Users\owner\Documents\docuDoc.xlsx
2014-08-30 11:28 - 2013-04-10 20:51 - 00014294 _____ () C:\Users\owner\Documents\OfCourseI.odt
2014-08-30 11:28 - 2013-03-29 15:41 - 00017754 _____ () C:\Users\owner\Documents\CIPHERBLOCK.xlsx
2014-08-30 11:28 - 2013-03-28 16:27 - 00005878 _____ () C:\Users\owner\Documents\startup.txt
2014-08-30 11:28 - 2013-03-28 16:25 - 00035060 _____ () C:\Users\owner\Documents\cc_20130328_162448.reg
2014-08-30 11:28 - 2013-03-18 23:27 - 00001525 _____ () C:\Users\owner\Documents\HTML_CSS_Example.html
2014-08-30 11:28 - 2013-03-13 10:28 - 00000257 _____ () C:\Users\owner\Documents\Hello World again.htm.txt
2014-08-30 11:28 - 2013-03-13 10:19 - 00000069 _____ () C:\Users\owner\Documents\HTML_Template.txt
2014-08-30 11:28 - 2013-03-08 19:56 - 00011753 _____ () C:\Users\owner\Documents\Cipher1.xlsx
2014-08-30 11:28 - 2013-02-02 11:08 - 00076313 _____ () C:\Users\owner\Documents\bookmarks_2_2_13.html
2014-08-30 11:28 - 2012-11-21 13:45 - 00000397 _____ () C:\Users\owner\Documents\indexfile.txt
2014-08-30 11:28 - 2012-11-02 14:46 - 00013396 _____ () C:\Users\owner\Documents\LocalRepeaters.xlsx
2014-08-30 11:28 - 2012-11-02 14:46 - 00011039 _____ () C:\Users\owner\Documents\RepeaterListII.xlsx
2014-08-30 11:28 - 2012-10-16 07:59 - 00071847 _____ () C:\Users\owner\Documents\phrases.pxp.bak
2014-08-30 11:28 - 2012-10-14 12:43 - 00019220 _____ () C:\Users\owner\Documents\MattCribbSheet.odt
2014-08-30 11:28 - 2012-10-14 12:36 - 00071496 _____ () C:\Users\owner\Documents\MatthewMacdonald.xml
2014-08-30 11:28 - 2012-10-09 19:11 - 00009972 _____ () C:\Users\owner\Documents\Python Cheat Sheet.odt
2014-08-30 11:28 - 2012-10-08 16:22 - 00007168 _____ () C:\Users\owner\Documents\Rose1_V.xls
2014-08-30 11:28 - 2012-10-08 16:14 - 00011579 _____ () C:\Users\owner\Documents\Rose1_V.ods
2014-08-30 11:28 - 2012-10-08 16:11 - 00011735 _____ () C:\Users\owner\Documents\Rose1.ods
2014-08-30 11:28 - 2012-09-30 14:20 - 00041970 _____ () C:\Users\owner\Documents\2ndAmmendment.odt
2014-08-30 11:28 - 2012-09-03 14:30 - 00001433 _____ () C:\Users\owner\Documents\Fidlinaround.html
2014-08-30 11:28 - 2012-08-06 23:52 - 00002259 _____ () C:\Users\owner\Documents\my public key.asc
2014-08-30 11:28 - 2012-06-07 14:29 - 00010125 _____ () C:\Users\owner\Documents\Hamburger Helper.odt
2014-08-30 11:28 - 2012-05-25 09:23 - 00029919 _____ () C:\Users\owner\Documents\Sling shots.odt
2014-08-30 11:28 - 2012-04-15 17:22 - 00028673 _____ () C:\Users\owner\Documents\Stroke.odt
2014-08-30 11:28 - 2012-04-14 12:33 - 00003692 _____ () C:\Users\owner\Documents\cc_20120414_123258.reg
2014-08-30 11:28 - 2012-04-11 15:16 - 00016257 _____ () C:\Users\owner\Documents\Spreadshirt.odt
2014-08-30 11:28 - 2012-03-29 10:54 - 00021243 _____ () C:\Users\owner\Documents\Death Thoughts.odt
2014-08-30 11:28 - 2012-03-27 12:18 - 00000674 _____ () C:\Users\owner\Documents\MES_Proj_Text.txt
2014-08-30 11:28 - 2012-03-27 12:16 - 00012246 _____ () C:\Users\owner\Documents\MES_Psych_Project.odt
2014-08-30 11:28 - 2012-03-22 11:32 - 00013908 _____ () C:\Users\owner\Documents\Chores Checklist.odt
2014-08-30 11:28 - 2012-03-22 09:54 - 00392704 _____ () C:\Users\owner\Documents\Sweetbay Communications M 3-22-12.xls
2014-08-30 11:28 - 2012-03-07 10:36 - 00011424 _____ () C:\Users\owner\Documents\MedsList_3_7.odt
2014-08-30 11:28 - 2012-02-12 16:55 - 00020127 _____ () C:\Users\owner\Documents\BakedZiti.odt
2014-08-30 11:28 - 2012-02-09 02:39 - 00012992 _____ () C:\Users\owner\Documents\cc_20120209_013912.reg
2014-08-30 11:28 - 2012-02-05 14:00 - 00001758 _____ () C:\Users\owner\Documents\AsciCodes.txt
2014-08-30 11:28 - 2012-02-02 21:49 - 00011197 _____ () C:\Users\owner\Documents\MeskinArmyCipher.odt
2014-08-30 11:28 - 2012-02-01 12:47 - 00002259 _____ () C:\Users\owner\Documents\0x745D82C6.asc
2014-08-30 11:28 - 2012-02-01 12:27 - 00016750 _____ () C:\Users\owner\Documents\Supernatural Episodes List-odt.axx
2014-08-30 11:28 - 2012-02-01 11:05 - 00015167 _____ () C:\Users\owner\Documents\PIMCalendar.csv
2014-08-30 11:28 - 2012-01-28 12:21 - 00019967 _____ () C:\Users\owner\Documents\GarbonzoBeans.odt
2014-08-30 11:28 - 2012-01-24 16:04 - 00060038 _____ () C:\Users\owner\Documents\SalmonCertificate.odt
2014-08-30 11:28 - 2012-01-23 17:28 - 00022053 _____ () C:\Users\owner\Documents\Quotes.odt
2014-08-30 11:28 - 2012-01-07 13:19 - 00043693 _____ () C:\Users\owner\Documents\GoodRecipes.odt
2014-08-30 11:28 - 2011-12-29 01:12 - 00011071 _____ () C:\Users\owner\Documents\JEdgarAnalysis.ods
2014-08-30 11:28 - 2011-12-29 01:11 - 00011432 _____ () C:\Users\owner\Documents\CODEBOOK3.odt
2014-08-30 11:28 - 2011-12-28 22:44 - 00017464 _____ () C:\Users\owner\Documents\FrequencyAnalysis.odt
2014-08-30 11:28 - 2011-12-28 17:33 - 00011098 _____ () C:\Users\owner\Documents\JEdgarHoover.odt
2014-08-30 11:28 - 2011-12-27 16:25 - 00012873 _____ () C:\Users\owner\Documents\ElliotShiftCode.ods
2014-08-30 11:28 - 2011-12-26 20:36 - 00017949 _____ () C:\Users\owner\Documents\AlphabetFrequency.ods
2014-08-30 11:28 - 2011-12-13 12:50 - 00000026 _____ () C:\Users\owner\Documents\KeyKlub.txt
2014-08-30 11:28 - 2011-12-01 16:23 - 02330624 _____ () C:\Users\owner\Documents\My Information.eff
2014-08-30 11:28 - 2011-11-17 01:28 - 00028573 _____ () C:\Users\owner\Documents\Claire.odt
2014-08-30 11:28 - 2011-11-03 23:27 - 00009450 _____ () C:\Users\owner\Documents\cc_20111103_232649.reg
2014-08-30 11:28 - 2011-10-25 23:02 - 00000054 _____ () C:\Users\owner\Documents\My Other Key-File.txt
2014-08-30 11:28 - 2011-10-18 00:42 - 00010907 _____ () C:\Users\owner\Documents\lost and FOUND.odt
2014-08-30 11:28 - 2011-10-17 00:15 - 00062206 _____ () C:\Users\owner\Documents\cc_20111017_001502.reg
2014-08-30 11:28 - 2011-10-16 19:03 - 00013871 _____ () C:\Users\owner\Documents\LibraryHours.odt
2014-08-30 11:28 - 2011-10-16 17:02 - 00013279 _____ () C:\Users\owner\Documents\Animaniacs Episodes.odt
2014-08-30 11:28 - 2011-10-08 11:31 - 00001046 _____ () C:\Users\owner\Documents\Documents.lnk
2014-08-30 11:28 - 2011-09-28 13:53 - 00016407 _____ () C:\Users\owner\Documents\Supernatural Episodes List.odt
2014-08-30 11:28 - 2011-09-23 11:13 - 00013888 _____ () C:\Users\owner\Documents\GFT_Message.odt
2014-08-30 11:28 - 2011-09-21 16:39 - 00000622 _____ () C:\Users\owner\Documents\emailAttachment1-txt.axx
2014-08-30 11:28 - 2011-09-12 10:41 - 00019700 _____ () C:\Users\owner\Documents\Econ_Honors_Current_Event_Assignment.odt
2014-08-30 11:28 - 2011-09-12 10:40 - 00064974 _____ () C:\Users\owner\Documents\current_event_template (1).odt
2014-08-30 11:28 - 2011-09-06 23:07 - 00014986 _____ () C:\Users\owner\Documents\GroceryShoppingReminder.odt
2014-08-30 11:28 - 2011-08-29 09:34 - 00602112 _____ () C:\Users\owner\Documents\MyNotes.enf
2014-08-30 11:28 - 2011-08-19 17:20 - 00016303 _____ () C:\Users\owner\Documents\LaurelsCheatSheet.ods
2014-08-30 11:28 - 2011-08-09 01:19 - 00003279 _____ () C:\Users\owner\Documents\LooneyTunes.odb
2014-08-30 11:28 - 2011-06-22 12:52 - 00011448 _____ () C:\Users\owner\Documents\Basic Chili.odt
2014-08-30 11:28 - 2011-06-21 02:11 - 00009601 _____ () C:\Users\owner\Documents\Cooking Bucket List.odt
2014-08-30 11:28 - 2011-06-03 00:37 - 00000000 ____H () C:\Users\owner\Documents\Default.rdp
2014-08-30 11:28 - 2011-04-21 08:49 - 00013208 _____ () C:\Users\owner\Documents\cc_20110421_084916.reg
2014-08-30 11:28 - 2011-04-16 16:25 - 00014731 _____ () C:\Users\owner\Documents\reminderfox.ics
2014-08-30 11:28 - 2011-04-16 16:25 - 00008089 _____ () C:\Users\owner\Documents\clipdat2.rdf
2014-08-30 11:28 - 2011-04-16 14:16 - 00226479 _____ () C:\Users\owner\Documents\bookmarks.html
2014-08-30 11:28 - 2011-03-08 23:20 - 00022423 _____ () C:\Users\owner\Documents\Difference between jam vs. jelly vs. preserves.odt
2014-08-30 11:28 - 2011-03-02 18:10 - 00009728 _____ () C:\Users\owner\Documents\CharacterMap.xls
2014-08-30 11:28 - 2011-03-01 14:31 - 00011831 _____ () C:\Users\owner\Documents\Death In Tehran.odt
2014-08-30 11:28 - 2011-02-07 11:59 - 00000145 _____ () C:\Users\owner\Documents\Edward.adu
2014-08-30 11:28 - 2011-02-03 12:31 - 00024286 _____ () C:\Users\owner\Documents\Dear Dr. Laura.odt
2014-08-30 11:28 - 2011-02-01 12:31 - 00013188 _____ () C:\Users\owner\Documents\ChristmasBirthdayThankyous2011.odt
2014-08-30 11:28 - 2011-01-23 22:26 - 00012364 _____ () C:\Users\owner\Documents\SupplyInventory.ods
2014-08-30 11:28 - 2011-01-14 19:36 - 00017459 _____ () C:\Users\owner\Documents\redboxAddresses.ics
2014-08-30 11:28 - 2011-01-13 16:15 - 00016579 _____ () C:\Users\owner\Documents\addresses.eml
2014-08-30 11:28 - 2010-07-09 18:05 - 01601262 _____ () C:\Users\owner\Documents\Edward.zbk
2014-08-30 11:28 - 2010-02-24 11:53 - 00000169 _____ () C:\Users\owner\Documents\ebookpasswords.txt
2014-08-30 11:28 - 2009-10-20 07:43 - 00012128 _____ () C:\Users\owner\Documents\ScripList.ods
2014-08-30 11:28 - 2009-08-02 19:49 - 00019456 _____ () C:\Users\owner\Documents\Diskworld.xls
2014-08-30 11:28 - 2008-05-12 18:25 - 00021789 _____ () C:\Users\owner\Documents\FoodSources.fdx
2014-08-30 11:28 - 2008-05-09 08:51 - 00015872 _____ () C:\Users\owner\Documents\Monthly Expenses.xls
2014-08-30 11:28 - 2008-01-28 09:17 - 00018944 _____ () C:\Users\owner\Documents\by months.xls
2014-08-30 11:28 - 2007-12-03 16:12 - 00000471 _____ () C:\Users\owner\Documents\LivingCookBookLicenseFile.lix
2014-08-30 11:28 - 2007-10-27 18:49 - 00016896 _____ () C:\Users\owner\Documents\FiberLog.xls
2014-08-30 11:28 - 2007-09-11 18:31 - 00002641 _____ () C:\Users\owner\Documents\nyc.mmf
2014-08-30 11:28 - 2007-08-01 11:41 - 00004770 _____ () C:\Users\owner\Documents\address1.csv
2014-08-30 11:28 - 2007-05-05 20:58 - 00065536 _____ () C:\Users\owner\Documents\Anniversary2007.hcr
2014-08-30 11:28 - 2007-02-26 19:46 - 00521621 _____ () C:\Users\owner\Documents\PaellaRecipes.fdx
2014-08-30 11:28 - 2007-01-05 19:41 - 00067156 _____ () C:\Users\owner\Documents\Alpha2.rpb
2014-08-30 11:28 - 2006-11-22 19:29 - 00153600 _____ () C:\Users\owner\Documents\Backup of Reloading.xlk
2014-08-30 11:28 - 2006-11-22 19:14 - 00016384 _____ () C:\Users\owner\Documents\ReloadingSpreadSheet.xls
2014-08-30 11:28 - 2006-05-21 17:48 - 00870128 _____ () C:\Users\owner\Documents\mcs.rma
2014-08-30 11:28 - 2006-04-17 18:01 - 00013824 _____ () C:\Users\owner\Documents\fndATEcODE.xls
2014-08-30 11:28 - 2004-11-09 09:27 - 00017920 _____ () C:\Users\owner\Documents\NEIGHBORHOOD_DB.xls
2014-08-30 11:28 - 1995-09-27 16:12 - 00051732 _____ () C:\Users\owner\Documents\lesson.01
2014-08-30 11:27 - 2014-08-31 12:05 - 00000000 ____D () C:\Users\owner\AppData\Local\Thunderbird
2014-08-30 11:27 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Local\WeatherBug
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\WinZip
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\Windows Live
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\WinAVI
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\Western Digital
2014-08-30 11:27 - 2014-05-08 13:57 - 00000211 _____ () C:\Users\owner\Desktop\My Book Live Duo Public Share.url
2014-08-30 11:27 - 2014-05-08 13:56 - 00000203 _____ () C:\Users\owner\Desktop\My Book Live Duo Dashboard.url
2014-08-30 11:27 - 2014-04-06 01:38 - 00002237 _____ () C:\Users\owner\Desktop\Kindle.lnk
2014-08-30 11:27 - 2013-08-08 15:13 - 00000206 _____ () C:\Users\owner\Desktop\My Book Live Duo Learning Center.url
2014-08-30 11:27 - 2013-06-28 18:49 - 00000297 _____ () C:\Users\owner\Desktop\HP Printer Diagnostic Tools.url
2014-08-30 11:27 - 2012-02-05 00:39 - 00000136 _____ () C:\Users\owner\Desktop\Chess Titans.lnk
2014-08-30 11:27 - 2011-08-22 15:20 - 00000000 ____D () C:\Users\owner\AppData\Local\Temporary Projects
2014-08-30 11:26 - 2014-08-30 11:26 - 00000000 ____D () C:\Users\owner\AppData\Local\Stardock_Corporation
2014-08-30 11:25 - 2014-08-30 11:26 - 00000000 ____D () C:\Users\owner\AppData\Local\Spotify
2014-08-30 11:25 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\Sonos,_Inc
2014-08-30 11:25 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\SoftThinks
2014-08-30 11:25 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\Skype
2014-08-30 11:24 - 2014-09-04 19:48 - 00000000 ____D () C:\Users\owner\AppData\Local\PasswordSafe
2014-08-30 11:24 - 2014-08-30 16:00 - 00000000 ____D () C:\Users\owner\AppData\Local\IsolatedStorage
2014-08-30 11:24 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\RapidSolution
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 __SHD () C:\Users\owner\AppData\Local\icsxml
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Radium Technologies
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\PowerDVD DX
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Mozilla
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Microsoft Help
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Microsoft Games
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\MetaGeek,_LLC
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Macromedia
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\HP
2014-08-30 11:23 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Local\Apps\2.0
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Golden_Frog,_GmbH
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Golden Frog, GmbH
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\GNU
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Downloaded Installations
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Dell Edoc Viewer
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\DeDRMPrefs
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\CrashRpt
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Citrix
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\cache
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Best Buy pc app
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Apple Computer
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\AOL
2014-08-30 11:23 - 2014-01-30 14:04 - 00000000 ____D () C:\Users\owner\AppData\Local\Deployment
2014-08-30 11:22 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Amazon
2014-08-30 11:22 - 2014-08-30 11:22 - 00000000 ____D () C:\Users\owner\AppData\Local\Akamai
2014-08-30 11:22 - 2014-08-30 11:22 - 00000000 ____D () C:\Users\owner\AppData\Local\Aimersoft
2014-08-30 11:22 - 2014-07-29 18:39 - 00060928 _____ () C:\Users\owner\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-30 11:22 - 2014-03-24 17:43 - 00000037 ___SH () C:\Users\owner\AppData\Local\69ff07055291669bb2b218.72821112
2014-08-30 11:22 - 2013-05-11 16:01 - 00000037 ___SH () C:\Users\owner\AppData\Local\70149b02515b3bb20dd492.47983420
2014-08-30 11:21 - 2014-08-30 15:59 - 00000000 ____D () C:\Users\owner\.kde
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ___RD () C:\Users\owner\SkyDrive
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\Tracing
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.idlerc
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.dvdcss
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.clipbak
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.android
2014-08-30 11:21 - 2013-10-15 13:32 - 00000238 _____ () C:\Users\owner\.swfinfo
2014-08-30 11:21 - 2012-08-07 11:39 - 00000218 _____ () C:\Users\owner\.recently-used.xbel
2014-08-30 11:21 - 2012-01-02 11:50 - 00000000 ____D () C:\Users\owner\temp
2014-08-30 11:21 - 2011-07-17 00:21 - 00007577 _____ () C:\Users\owner\clipdat2.rdf
2014-08-30 11:21 - 2011-04-18 13:34 - 00000000 ____D () C:\Users\owner\My Backup Files
2014-08-30 11:21 - 2009-05-14 06:25 - 00017920 ____R (Microsoft Corporation) C:\Users\owner\Global_System_STDOLE_f1.8C0C59A0_7DC8_11D2_B95D_006097C4DE24
2014-08-30 11:19 - 2014-08-30 16:29 - 00007604 _____ () C:\Users\owner\AppData\Local\Resmon.ResmonCfg
2014-08-28 18:04 - 2014-08-28 18:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-08-28 18:04 - 2013-09-17 10:47 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll
2014-08-28 17:57 - 2014-08-28 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Renesas Electronics
2014-08-28 17:57 - 2014-08-28 17:57 - 00000000 ____D () C:\Program Files (x86)\Renesas Electronics
2014-08-28 17:56 - 2014-08-28 17:56 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-08-28 17:49 - 2014-08-28 17:49 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3
2014-08-28 17:41 - 2014-08-28 17:41 - 00002984 _____ () C:\Windows\System32\Tasks\ATKOSD2
2014-08-28 17:39 - 2014-08-28 17:39 - 00000000 ____D () C:\Windows\SysWOW64\sda
2014-08-28 17:39 - 2012-06-13 18:24 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsUStoricon.dll
2014-08-28 17:39 - 2012-06-13 18:24 - 00422544 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll
2014-08-28 17:39 - 2012-06-13 18:24 - 00252048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys
2014-08-28 17:31 - 2014-08-28 17:41 - 00000000 ____D () C:\Program Files (x86)\ASUS
2014-08-28 17:31 - 2014-08-28 17:31 - 00003542 _____ () C:\Windows\System32\Tasks\ASUS Touchpad Launcher (x64)
2014-08-28 17:31 - 2014-08-28 17:31 - 00000000 ____D () C:\Program Files\DIFX
2014-08-28 17:28 - 2014-08-28 17:57 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-08-28 17:28 - 2014-08-28 17:39 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-08-28 17:27 - 2014-08-30 16:31 - 00000000 ____D () C:\Windows\Panther
2014-08-28 17:24 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Apple Computer
2014-08-28 17:22 - 2012-07-04 10:55 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-08-28 17:03 - 2014-08-30 03:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Application Virtualization Client
2014-08-28 17:03 - 2014-08-28 17:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\TP
2014-08-28 17:03 - 2014-08-28 17:03 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-08-28 17:03 - 2014-08-28 17:03 - 00000000 ____D () C:\Windows\PCHEALTH
2014-08-28 17:03 - 2014-08-28 17:03 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-08-28 17:03 - 2014-08-28 17:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-08-28 17:00 - 2014-08-28 17:00 - 00001734 _____ () C:\Users\Public\Desktop\CDBurnerXP.lnk
2014-08-28 17:00 - 2014-08-28 17:00 - 00001692 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk
2014-08-28 17:00 - 2014-08-28 17:00 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-08-28 17:00 - 2014-08-28 17:00 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Canneverbe Limited
2014-08-28 17:00 - 2014-08-28 17:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-08-28 17:00 - 2014-08-28 17:00 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-08-28 17:00 - 2014-08-28 17:00 - 00000000 ____D () C:\Program Files\CDBurnerXP
2014-08-28 17:00 - 2014-08-28 17:00 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-08-28 17:00 - 2014-05-12 08:05 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-08-28 17:00 - 2014-05-12 08:05 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-08-28 17:00 - 2014-05-12 08:05 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-08-28 16:59 - 2014-08-28 16:59 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2014-08-28 16:59 - 2014-08-28 16:59 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\Users\owner\AppData\Local\Apple
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\ProgramData\Apple
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-08-28 16:59 - 2014-08-28 16:59 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-08-28 16:58 - 2014-08-28 16:59 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-08-28 16:58 - 2014-08-28 16:58 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-08-28 16:58 - 2014-08-28 16:58 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-28 16:58 - 2014-08-28 16:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-28 16:57 - 2014-09-08 12:11 - 00000332 _____ () C:\Windows\Tasks\GlaryInitialize 5.job
2014-08-28 16:57 - 2014-09-08 12:11 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 5
2014-08-28 16:57 - 2014-09-02 00:14 - 00000000 ____D () C:\Users\owner\AppData\Roaming\DiskDefrag
2014-08-28 16:57 - 2014-08-28 16:57 - 00020672 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\GUBootStartup.sys
2014-08-28 16:57 - 2014-08-28 16:57 - 00002972 _____ () C:\Windows\System32\Tasks\GU5SkipUAC
2014-08-28 16:57 - 2014-08-28 16:57 - 00002628 _____ () C:\Windows\System32\Tasks\GlaryInitialize 5
2014-08-28 16:57 - 2014-08-28 16:57 - 00001092 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2014-08-28 16:57 - 2014-08-28 16:57 - 00001080 _____ () C:\Users\Public\Desktop\Glary Utilities 5.lnk
2014-08-28 16:57 - 2014-08-28 16:57 - 00000000 ____D () C:\Users\owner\AppData\Roaming\GlarySoft
2014-08-28 16:57 - 2014-08-28 16:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
2014-08-28 16:57 - 2014-08-28 16:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
2014-08-28 16:57 - 2014-08-28 16:57 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-08-28 16:57 - 2014-08-17 21:06 - 00118048 _____ (Glarysoft Ltd) C:\Windows\system32\BootDefrag.exe
2014-08-28 16:57 - 2014-07-18 03:11 - 00017600 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\BootDefragDriver.sys
2014-08-28 16:56 - 2014-08-28 16:56 - 00001174 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-08-28 16:56 - 2014-08-28 16:56 - 00001162 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-08-28 16:56 - 2014-08-28 16:56 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-08-28 16:55 - 2014-08-28 16:55 - 00001169 _____ () C:\Users\owner\Desktop\Auslogics DiskDefrag.lnk
2014-08-28 16:55 - 2014-08-28 16:55 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-08-28 16:55 - 2014-08-28 16:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2014-08-28 16:55 - 2014-08-28 16:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-08-28 16:55 - 2014-08-28 16:55 - 00000000 ____D () C:\Program Files\7-Zip
2014-08-28 16:55 - 2014-08-28 16:55 - 00000000 ____D () C:\Program Files (x86)\Auslogics
2014-08-28 16:54 - 2014-08-28 16:54 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-08-28 16:54 - 2014-08-28 16:54 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-08-28 16:54 - 2014-08-28 16:54 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-08-28 16:54 - 2014-08-28 16:54 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-08-28 16:54 - 2014-08-28 16:54 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-08-28 16:54 - 2014-08-28 16:54 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-08-28 16:54 - 2014-08-28 16:54 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-08-28 16:54 - 2014-08-28 16:54 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-08-28 16:54 - 2014-08-28 16:54 - 00000000 ____D () C:\ProgramData\Sun
2014-08-28 16:54 - 2014-08-28 16:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-08-28 16:54 - 2014-08-28 16:54 - 00000000 ____D () C:\Program Files\Java
2014-08-28 16:54 - 2014-08-28 16:54 - 00000000 ____D () C:\Program Files (x86)\Java
2014-08-28 16:53 - 2014-09-08 12:10 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-28 16:53 - 2014-09-08 11:58 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-28 16:53 - 2014-09-08 11:52 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-28 16:53 - 2014-08-30 16:00 - 00000000 ____D () C:\Users\owner\AppData\Local\Google
2014-08-28 16:53 - 2014-08-30 15:59 - 00000000 ____D () C:\Users\owner\AppData\Local\Adobe
2014-08-28 16:53 - 2014-08-28 17:24 - 00000000 ____D () C:\ProgramData\Adobe
2014-08-28 16:53 - 2014-08-28 16:58 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-08-28 16:53 - 2014-08-28 16:57 - 00000000 ____D () C:\Program Files (x86)\Google
2014-08-28 16:53 - 2014-08-28 16:54 - 00699568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-08-28 16:53 - 2014-08-28 16:54 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-08-28 16:53 - 2014-08-28 16:54 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-08-28 16:53 - 2014-08-28 16:53 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-08-28 16:53 - 2014-08-28 16:53 - 00003642 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-08-28 16:53 - 2014-08-28 16:53 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-08-28 16:53 - 2014-08-28 16:53 - 00000000 ____D () C:\Windows\system32\Macromed
2014-08-28 16:53 - 2014-08-28 16:53 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Macromedia
2014-08-28 16:53 - 2014-08-28 16:53 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-08-28 16:53 - 2014-08-28 16:53 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-08-28 16:53 - 2014-08-28 16:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-28 16:52 - 2014-09-03 10:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-08-28 16:52 - 2014-08-28 16:52 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-08-28 16:52 - 2014-08-28 16:52 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-08-28 16:52 - 2014-08-28 16:52 - 00000000 ____D () C:\ProgramData\Mozilla
2014-08-28 16:52 - 2014-08-28 16:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-08-28 16:32 - 2014-08-28 16:32 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-08-28 16:32 - 2014-08-28 16:32 - 00000000 ____D () C:\Program Files\Realtek
2014-08-28 16:32 - 2012-05-17 11:29 - 07163744 ____R (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-08-28 16:32 - 2012-05-17 11:29 - 00433504 ____R (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-08-28 16:32 - 2012-05-17 11:29 - 00141152 ____R (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-08-28 16:32 - 2012-05-17 11:29 - 00123744 ____R (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-08-28 16:32 - 2012-05-17 11:29 - 00074592 ____R (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-08-28 16:31 - 2014-08-28 16:31 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-08-28 16:17 - 2014-08-28 16:17 - 00000144 _____ () C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-08-28 16:06 - 2014-08-28 16:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-08-28 16:06 - 2014-07-31 23:41 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-08-28 16:05 - 2014-02-03 22:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-08-28 16:05 - 2014-02-03 22:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-08-28 16:05 - 2013-12-24 19:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-08-28 16:05 - 2013-12-24 18:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-08-28 16:05 - 2013-11-26 04:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-08-28 16:05 - 2013-11-23 14:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-08-28 16:05 - 2013-11-23 13:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-08-28 16:05 - 2013-11-22 18:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-08-28 16:05 - 2013-04-09 19:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-08-28 16:05 - 2013-04-02 18:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-08-28 16:05 - 2011-02-25 02:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-08-28 16:05 - 2011-02-25 01:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-08-28 16:04 - 2012-02-11 02:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2014-08-28 15:50 - 2014-08-28 15:50 - 00000451 _____ () C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-08-28 15:41 - 2013-05-10 01:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-08-28 15:41 - 2013-05-10 01:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-08-28 15:41 - 2013-05-10 00:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-08-28 15:41 - 2013-05-10 00:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-08-28 15:24 - 2014-08-28 18:04 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-08-28 15:24 - 2014-08-28 15:24 - 00000000 ____D () C:\Program Files\Intel
2014-08-28 15:24 - 2014-08-28 15:24 - 00000000 ____D () C:\Intel
2014-08-28 15:24 - 2014-05-21 00:33 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2014-08-28 15:24 - 2014-05-21 00:33 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2014-08-28 15:23 - 2012-07-25 23:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-08-28 15:23 - 2012-07-25 23:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-08-28 15:23 - 2012-07-25 23:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-08-28 15:23 - 2012-07-25 23:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-08-28 15:23 - 2012-07-25 23:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-08-28 15:23 - 2012-07-25 22:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-08-28 15:23 - 2012-07-25 22:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-08-28 15:23 - 2012-06-02 10:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-08-28 15:18 - 2013-01-13 17:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-28 15:18 - 2013-01-13 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-28 15:18 - 2013-01-13 16:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-28 15:18 - 2013-01-13 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-28 15:18 - 2013-01-13 15:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-08-28 15:18 - 2013-01-13 15:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-08-28 15:18 - 2013-01-04 02:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-08-28 15:18 - 2013-01-04 02:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-08-28 15:17 - 2013-01-13 17:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 17:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 17:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-28 15:17 - 2013-01-13 17:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 17:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 17:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 17:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-28 15:17 - 2013-01-13 16:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-08-28 15:17 - 2013-01-13 16:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-08-28 15:17 - 2013-01-13 16:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-08-28 15:17 - 2013-01-13 15:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-08-28 15:17 - 2013-01-13 15:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-08-28 15:17 - 2013-01-13 15:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-08-28 15:17 - 2013-01-13 15:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-08-28 15:17 - 2013-01-13 15:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-08-28 15:17 - 2013-01-13 15:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-08-28 15:17 - 2013-01-13 15:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-08-28 15:17 - 2013-01-13 15:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-08-28 15:17 - 2013-01-13 15:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-08-28 15:17 - 2013-01-13 15:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-08-28 15:17 - 2013-01-13 15:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-08-28 15:17 - 2013-01-13 15:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-08-28 15:17 - 2013-01-13 14:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-08-28 15:17 - 2013-01-13 14:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-08-28 15:17 - 2013-01-13 13:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-08-28 15:17 - 2013-01-13 13:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-08-28 15:14 - 2014-08-28 15:14 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-08-28 15:14 - 2014-06-30 18:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-08-28 15:14 - 2014-06-30 18:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-08-28 15:14 - 2014-06-06 02:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-08-28 15:14 - 2014-06-06 02:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-08-28 15:14 - 2014-03-09 17:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-08-28 15:14 - 2014-03-09 17:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-08-28 15:14 - 2014-03-09 17:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-08-28 15:14 - 2014-03-09 17:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-08-28 15:13 - 2014-05-08 05:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-08-28 15:13 - 2014-05-08 05:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-08-28 15:13 - 2013-12-03 22:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-08-28 15:13 - 2013-12-03 22:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-08-28 15:13 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-08-28 15:13 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
f Log ============================
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 8th, 2014, 12:41 pm

First continued: 2/3

2014-08-28 15:13 - 2013-12-03 22:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-08-28 15:13 - 2013-12-03 22:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-08-28 15:13 - 2013-12-03 22:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-08-28 15:13 - 2013-12-03 22:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-08-28 15:13 - 2013-12-03 22:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-08-28 15:13 - 2013-12-03 22:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-08-28 15:13 - 2013-12-03 22:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-08-28 15:13 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-08-28 15:13 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-08-28 15:13 - 2013-12-03 22:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-08-28 15:13 - 2013-12-03 21:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-08-28 15:13 - 2013-12-03 21:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-08-28 15:13 - 2013-12-03 21:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-08-28 15:13 - 2013-12-03 21:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-08-28 15:13 - 2012-12-07 09:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-08-28 15:13 - 2012-12-07 09:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2014-08-28 15:13 - 2012-12-07 08:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2014-08-28 15:13 - 2012-12-07 08:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2014-08-28 15:13 - 2012-12-07 07:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2014-08-28 15:13 - 2012-12-07 07:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2014-08-28 15:13 - 2012-12-07 07:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2014-08-28 15:13 - 2012-12-07 07:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2014-08-28 15:13 - 2012-12-07 07:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2014-08-28 15:13 - 2012-12-07 07:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2014-08-28 15:13 - 2012-12-07 07:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2014-08-28 15:13 - 2012-12-07 07:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2014-08-28 15:13 - 2012-12-07 06:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2014-08-28 15:12 - 2014-07-15 23:22 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-08-28 15:12 - 2014-07-15 22:55 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-08-28 15:12 - 2014-06-17 22:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-08-28 15:12 - 2014-06-17 21:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-08-28 15:12 - 2014-06-06 06:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-08-28 15:12 - 2014-06-03 06:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-08-28 15:12 - 2014-06-03 06:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-08-28 15:12 - 2014-06-03 05:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-08-28 15:12 - 2014-06-03 05:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-08-28 15:12 - 2014-06-02 22:42 - 01942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-08-28 15:12 - 2014-06-02 22:42 - 00112576 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-08-28 15:12 - 2014-06-02 22:13 - 01806336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-08-28 15:12 - 2014-05-30 04:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-08-28 15:12 - 2014-05-30 03:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-08-28 15:12 - 2014-04-24 22:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-08-28 15:12 - 2014-04-24 22:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-08-28 15:12 - 2014-04-04 22:37 - 01897408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-08-28 15:12 - 2014-04-04 22:37 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-08-28 15:12 - 2014-04-04 22:37 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-08-28 15:12 - 2014-03-26 10:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-08-28 15:12 - 2014-03-26 10:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-08-28 15:12 - 2014-03-26 10:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-08-28 15:12 - 2014-03-26 10:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-08-28 15:12 - 2014-03-26 10:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-08-28 15:12 - 2014-03-26 10:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-08-28 15:12 - 2014-03-26 10:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-08-28 15:12 - 2014-03-26 10:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-08-28 15:12 - 2014-02-03 22:37 - 00191424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-08-28 15:12 - 2014-02-03 22:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-08-28 15:12 - 2014-02-03 22:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-08-28 15:12 - 2014-02-03 22:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-08-28 15:12 - 2014-02-03 22:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-08-28 15:12 - 2014-01-28 22:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-08-28 15:12 - 2014-01-28 22:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-08-28 15:12 - 2014-01-27 22:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-08-28 15:12 - 2014-01-08 22:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-08-28 15:12 - 2014-01-03 18:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-08-28 15:12 - 2013-12-31 19:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-08-28 15:12 - 2013-12-31 19:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-08-28 15:12 - 2013-10-29 22:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-08-28 15:12 - 2013-10-29 22:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-08-28 15:12 - 2013-10-03 22:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-08-28 15:12 - 2013-10-03 22:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-08-28 15:12 - 2013-10-03 21:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-08-28 15:12 - 2013-10-03 21:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2014-08-28 15:12 - 2013-08-04 22:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2014-08-28 15:12 - 2013-07-25 22:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-08-28 15:12 - 2013-07-25 21:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-08-28 15:12 - 2013-07-04 08:16 - 00264704 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-08-28 15:12 - 2013-07-04 08:10 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-08-28 15:12 - 2013-07-04 07:59 - 00209408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-08-28 15:12 - 2013-07-04 07:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2014-08-28 15:12 - 2013-07-04 05:54 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-08-28 15:12 - 2013-03-19 01:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2014-08-28 15:12 - 2013-02-27 01:23 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-08-28 15:12 - 2012-10-03 13:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2014-08-28 15:12 - 2012-10-03 13:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2014-08-28 15:12 - 2012-10-03 13:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-08-28 15:12 - 2012-10-03 12:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2014-08-28 15:12 - 2012-10-03 12:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2014-08-28 15:12 - 2012-10-03 12:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2014-08-28 15:12 - 2012-08-22 14:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-08-28 15:12 - 2012-08-21 17:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2014-08-28 15:12 - 2012-07-04 16:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2014-08-28 15:12 - 2012-01-04 06:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-08-28 15:12 - 2012-01-04 04:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2014-08-28 15:12 - 2011-12-30 02:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-08-28 15:12 - 2011-12-30 01:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2014-08-28 15:12 - 2011-06-16 01:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-08-28 15:12 - 2011-06-16 00:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2014-08-28 15:12 - 2011-05-04 01:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-08-28 15:12 - 2011-05-04 01:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-08-28 15:12 - 2011-05-04 01:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-08-28 15:12 - 2011-05-04 01:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-08-28 15:12 - 2011-05-04 01:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-08-28 15:12 - 2011-05-04 01:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-08-28 15:12 - 2011-05-04 01:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-08-28 15:12 - 2011-05-04 01:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-08-28 15:12 - 2011-05-04 01:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-08-28 15:12 - 2011-05-04 00:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2014-08-28 15:12 - 2011-05-04 00:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2014-08-28 15:12 - 2011-05-04 00:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2014-08-28 15:12 - 2011-05-04 00:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2014-08-28 15:12 - 2011-05-04 00:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2014-08-28 15:12 - 2011-05-04 00:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2014-08-28 15:12 - 2011-05-04 00:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2014-08-28 15:12 - 2011-05-04 00:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2014-08-28 15:12 - 2011-05-04 00:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2014-08-28 15:12 - 2011-04-09 02:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-08-28 15:12 - 2011-04-09 01:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-08-28 15:11 - 2014-07-31 19:41 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-28 15:11 - 2014-07-31 19:16 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-08-28 15:11 - 2014-07-25 10:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-08-28 15:11 - 2014-07-25 10:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-08-28 15:11 - 2014-07-25 10:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-08-28 15:11 - 2014-07-25 09:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-08-28 15:11 - 2014-07-25 09:30 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-08-28 15:11 - 2014-07-25 09:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-08-28 15:11 - 2014-07-25 09:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-08-28 15:11 - 2014-07-25 09:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-08-28 15:11 - 2014-07-25 09:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-08-28 15:11 - 2014-07-25 09:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-08-28 15:11 - 2014-07-25 09:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-08-28 15:11 - 2014-07-25 09:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-08-28 15:11 - 2014-07-25 09:03 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-08-28 15:11 - 2014-07-25 09:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-08-28 15:11 - 2014-07-25 09:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-08-28 15:11 - 2014-07-25 08:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-08-28 15:11 - 2014-07-25 08:47 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-28 15:11 - 2014-07-25 08:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-08-28 15:11 - 2014-07-25 08:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-08-28 15:11 - 2014-07-25 08:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-08-28 15:11 - 2014-07-25 08:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-08-28 15:11 - 2014-07-25 08:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-08-28 15:11 - 2014-07-25 08:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-08-28 15:11 - 2014-07-25 08:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-28 15:11 - 2014-07-25 08:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-08-28 15:11 - 2014-07-25 08:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-08-28 15:11 - 2014-07-25 08:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-08-28 15:11 - 2014-07-25 08:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-08-28 15:11 - 2014-07-25 08:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-08-28 15:11 - 2014-07-25 08:12 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-08-28 15:11 - 2014-07-25 08:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-08-28 15:11 - 2014-07-25 08:10 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-08-28 15:11 - 2014-07-25 08:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-08-28 15:11 - 2014-07-25 08:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-08-28 15:11 - 2014-07-25 07:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-08-28 15:11 - 2014-07-25 07:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-08-28 15:11 - 2014-07-25 07:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-28 15:11 - 2014-07-25 07:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-08-28 15:11 - 2014-07-25 07:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-08-28 15:11 - 2014-07-25 07:39 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-08-28 15:11 - 2014-07-25 07:36 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-08-28 15:11 - 2014-07-25 07:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-08-28 15:11 - 2014-07-25 07:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-08-28 15:11 - 2014-07-25 07:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-08-28 15:11 - 2014-07-25 07:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-08-28 15:11 - 2014-07-25 07:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-08-28 15:11 - 2014-07-25 07:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-08-28 15:11 - 2014-07-25 07:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-08-28 15:11 - 2014-07-25 06:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-08-28 15:11 - 2014-07-25 06:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-08-28 15:11 - 2014-07-25 06:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-08-28 15:11 - 2014-07-25 06:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-08-28 15:11 - 2014-07-25 06:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-08-28 15:11 - 2014-07-25 06:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-08-28 15:11 - 2014-06-15 22:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-08-28 15:11 - 2014-06-06 05:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-08-28 15:11 - 2014-05-30 02:41 - 00496640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-08-28 15:11 - 2012-07-06 16:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-08-28 15:11 - 2012-05-04 07:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-08-28 15:11 - 2012-05-04 05:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-08-28 15:06 - 2014-06-24 22:06 - 14179328 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-08-28 15:06 - 2014-06-24 21:37 - 12877312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-08-28 15:05 - 2014-08-22 22:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 15:05 - 2014-08-22 21:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 15:05 - 2014-08-22 20:59 - 03166720 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-28 15:05 - 2014-08-06 22:06 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-08-28 15:05 - 2014-08-06 22:01 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-28 15:05 - 2014-07-13 22:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-08-28 15:05 - 2014-07-13 21:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-08-28 15:05 - 2014-06-05 10:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-08-28 15:05 - 2014-06-05 10:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-08-28 15:05 - 2014-06-05 10:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-08-28 15:05 - 2014-01-23 22:40 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-08-28 15:05 - 2013-08-27 21:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-08-28 15:05 - 2013-05-10 01:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2014-08-28 15:05 - 2013-05-09 23:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2014-08-28 15:05 - 2013-01-24 02:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-08-28 15:05 - 2012-05-05 04:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-08-28 15:05 - 2012-05-05 03:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2014-08-28 15:05 - 2011-03-11 02:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-08-28 15:05 - 2011-03-11 02:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-08-28 15:05 - 2011-03-11 02:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-08-28 15:05 - 2011-03-11 02:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-08-28 15:05 - 2011-03-11 02:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-08-28 15:05 - 2011-03-11 02:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-08-28 15:05 - 2011-03-11 02:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-08-28 15:05 - 2011-03-11 01:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2014-08-28 15:05 - 2011-03-11 01:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2014-08-28 15:05 - 2011-02-18 06:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2014-08-28 15:05 - 2011-02-18 01:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2014-08-28 14:51 - 2014-09-01 01:03 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Adobe
2014-08-28 14:45 - 2014-08-28 14:45 - 00000000 ____D () C:\Windows\system32\dsc
2014-08-28 14:45 - 2014-08-28 14:45 - 00000000 ____D () C:\Windows\system32\Configuration
2014-08-28 14:45 - 2014-08-28 14:45 - 00000000 ____D () C:\Program Files\WindowsPowerShell
2014-08-28 14:45 - 2014-08-28 14:45 - 00000000 ____D () C:\Program Files (x86)\WindowsPowerShell
2014-08-28 14:44 - 2014-08-31 13:55 - 00001945 _____ () C:\Windows\epplauncher.mif
2014-08-28 14:43 - 2011-02-05 13:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-08-28 14:43 - 2011-02-05 13:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2014-08-28 14:43 - 2011-02-05 13:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2014-08-28 14:43 - 2011-02-05 13:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll
2014-08-28 14:43 - 2011-02-05 13:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-08-28 14:43 - 2011-02-05 13:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-08-28 14:43 - 2011-02-05 13:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 05553088 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 03974080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 03918784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-08-28 14:40 - 2014-08-28 14:40 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-08-28 14:40 - 2014-08-28 14:40 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-08-28 14:40 - 2014-08-28 14:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2014-08-28 14:40 - 2014-08-28 14:40 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2014-08-28 14:40 - 2014-08-28 14:40 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-08-28 14:40 - 2014-08-28 14:40 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-08-28 14:39 - 2014-08-28 14:39 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-08-28 14:39 - 2014-08-28 14:39 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-08-28 14:39 - 2014-08-28 14:39 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-08-28 14:35 - 2014-08-28 14:35 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-08-28 14:35 - 2014-08-28 14:35 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-08-28 14:35 - 2014-08-28 14:35 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-08-28 14:35 - 2014-08-28 14:35 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-08-28 14:35 - 2014-08-28 14:35 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-08-28 14:35 - 2014-08-28 14:35 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-08-28 14:35 - 2014-08-28 14:35 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-08-28 14:35 - 2014-08-28 14:35 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-08-28 14:35 - 2014-08-28 14:35 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-08-28 14:35 - 2014-08-28 14:35 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-08-28 14:35 - 2014-08-28 14:35 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-08-28 14:35 - 2014-08-28 14:35 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-08-28 14:35 - 2014-08-28 14:35 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-08-28 14:34 - 2014-08-28 14:34 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-08-28 14:34 - 2014-08-28 14:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-08-28 14:34 - 2014-08-28 14:34 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-08-28 14:34 - 2014-08-28 14:34 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-08-28 14:33 - 2014-08-28 14:33 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-08-28 14:33 - 2014-08-28 14:33 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-08-28 14:33 - 2014-08-28 14:33 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-08-28 14:33 - 2014-08-28 14:33 - 00832000 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-08-28 14:33 - 2014-08-28 14:33 - 00706560 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-08-28 14:33 - 2014-08-28 14:33 - 00657920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-08-28 14:33 - 2014-08-28 14:33 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-08-28 14:33 - 2014-08-28 14:33 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-08-28 14:32 - 2014-08-28 14:32 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-08-28 14:32 - 2014-08-28 14:32 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2014-08-28 14:32 - 2014-08-28 14:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-08-28 14:32 - 2014-08-28 14:32 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-08-28 14:32 - 2014-08-28 14:32 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-08-28 14:32 - 2014-08-28 14:32 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-08-28 14:31 - 2014-08-28 14:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-08-28 14:31 - 2014-08-28 14:31 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-08-28 14:31 - 2014-08-28 14:31 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-08-28 14:31 - 2014-08-28 14:31 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-08-28 14:31 - 2014-08-28 14:31 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-08-28 14:30 - 2014-08-28 14:30 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-08-28 14:30 - 2014-08-28 14:30 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-08-28 14:29 - 2014-08-28 14:29 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-08-28 14:29 - 2014-08-28 14:29 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-08-28 14:29 - 2014-08-28 14:29 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-08-28 14:29 - 2014-08-28 14:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-08-28 14:28 - 2014-08-28 14:28 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-08-28 14:26 - 2014-08-28 14:26 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-08-28 14:26 - 2014-08-28 14:26 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-08-28 14:26 - 2014-08-28 14:26 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-08-28 14:26 - 2014-08-28 14:26 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-08-28 14:26 - 2014-08-28 14:26 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-08-28 14:26 - 2014-08-28 14:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-08-28 14:25 - 2014-08-28 14:25 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-08-28 14:22 - 2014-08-28 14:22 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-08-28 14:22 - 2014-08-28 14:22 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2014-08-28 14:22 - 2014-08-28 14:22 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-08-28 14:22 - 2014-08-28 14:22 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2014-08-28 14:21 - 2014-08-28 14:21 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2014-08-28 14:20 - 2014-08-28 14:20 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-08-28 14:20 - 2014-08-28 14:20 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-08-28 14:20 - 2014-08-28 14:20 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2014-08-28 14:20 - 2014-08-28 14:20 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-08-28 14:20 - 2014-08-28 14:20 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2014-08-28 14:19 - 2014-08-28 14:19 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2014-08-28 14:19 - 2014-08-28 14:19 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-08-28 14:19 - 2014-08-28 14:19 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-08-28 14:19 - 2014-08-28 14:19 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-08-28 14:19 - 2014-08-28 14:19 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-08-28 14:19 - 2014-08-28 14:19 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2014-08-28 14:19 - 2014-08-28 14:19 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-08-28 14:18 - 2014-08-28 14:18 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-08-28 14:18 - 2014-08-28 14:18 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2014-08-28 14:18 - 2014-08-28 14:18 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-08-28 14:18 - 2014-08-28 14:18 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2014-08-28 14:18 - 2014-08-28 14:18 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-08-28 14:18 - 2014-08-28 14:18 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2014-08-28 14:17 - 2014-08-28 14:17 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-08-28 14:17 - 2014-08-28 14:17 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-08-28 14:17 - 2014-08-28 14:17 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2014-08-28 14:17 - 2014-08-28 14:17 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2014-08-28 14:17 - 2014-08-28 14:17 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2014-08-28 14:16 - 2014-08-28 14:16 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-08-28 14:16 - 2014-08-28 14:16 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2014-08-28 14:16 - 2014-08-28 14:16 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-08-28 14:16 - 2014-08-28 14:16 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-08-28 14:16 - 2014-08-28 14:16 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-08-28 14:16 - 2014-08-28 14:16 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-08-28 14:16 - 2014-08-28 14:16 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2014-08-28 14:09 - 2013-09-24 22:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-08-28 14:09 - 2013-09-24 21:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-08-28 14:06 - 2013-10-01 22:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-08-28 14:06 - 2013-10-01 22:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-08-28 14:06 - 2013-10-01 22:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-08-28 14:06 - 2013-10-01 21:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-08-28 14:06 - 2013-10-01 21:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-08-28 14:06 - 2013-10-01 21:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-08-28 14:06 - 2013-10-01 21:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-08-28 14:06 - 2013-10-01 20:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-08-28 14:06 - 2013-10-01 20:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-08-28 14:06 - 2013-10-01 20:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-08-28 14:06 - 2013-10-01 20:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-08-28 14:06 - 2013-10-01 20:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-08-28 14:06 - 2013-10-01 19:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-08-28 14:06 - 2013-10-01 19:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-08-28 14:06 - 2013-10-01 19:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-08-28 14:06 - 2013-10-01 18:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-08-28 14:04 - 2013-09-26 23:37 - 00001536 _____ (Microsoft Corporation) C:\Windows\system32\winrsmgr.dll
2014-08-28 14:04 - 2013-09-26 23:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2014-08-28 14:04 - 2013-09-26 23:20 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\mimofcodec.dll
2014-08-28 14:04 - 2013-09-26 23:19 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2014-08-28 14:04 - 2013-09-26 23:18 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\mi.dll
2014-08-28 14:04 - 2013-09-26 23:18 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2014-08-28 14:04 - 2013-09-26 23:17 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\mibincodec.dll
2014-08-28 14:04 - 2013-09-26 23:16 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\wecapi.dll
2014-08-28 14:04 - 2013-09-26 23:16 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2014-08-28 14:04 - 2013-09-26 23:16 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll
2014-08-28 14:04 - 2013-09-26 23:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\wevtfwd.dll
2014-08-28 14:04 - 2013-09-26 23:03 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Register-CimProvider.exe
2014-08-28 14:04 - 2013-09-26 22:59 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\wecutil.exe
2014-08-28 14:04 - 2013-09-26 22:58 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\wecsvc.dll
2014-08-28 14:04 - 2013-09-26 22:53 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\wmitomi.dll
2014-08-28 14:04 - 2013-09-26 22:53 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\prvdmofcomp.dll
2014-08-28 14:04 - 2013-09-26 22:50 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\wmidcom.dll
2014-08-28 14:04 - 2013-09-26 22:49 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn2.dll
2014-08-28 14:04 - 2013-09-26 22:48 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2014-08-28 14:04 - 2013-09-26 22:46 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2014-08-28 14:04 - 2013-09-26 22:45 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2014-08-28 14:04 - 2013-09-26 22:40 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2014-08-28 14:04 - 2013-09-26 22:34 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\DscCoreConfProv.dll
2014-08-28 14:04 - 2013-09-26 22:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe
2014-08-28 14:04 - 2013-09-26 22:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\system32\WsmGCDeps.dll
2014-08-28 14:04 - 2013-09-26 22:20 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\winrs.exe
2014-08-28 14:04 - 2013-09-26 22:19 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-08-28 14:04 - 2013-09-26 22:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2014-08-28 14:04 - 2013-09-26 22:18 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-08-28 14:04 - 2013-09-26 22:17 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-08-28 14:04 - 2013-09-26 22:17 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\winrscmd.dll
2014-08-28 14:04 - 2013-09-26 22:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\PSModuleDiscoveryProvider.dll
2014-08-28 14:04 - 2013-09-26 22:06 - 02475008 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-08-28 14:04 - 2013-09-26 22:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2014-08-28 14:04 - 2013-09-26 21:53 - 00001536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrsmgr.dll
2014-08-28 14:04 - 2013-09-26 21:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2014-08-28 14:04 - 2013-09-26 21:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimofcodec.dll
2014-08-28 14:04 - 2013-09-26 21:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2014-08-28 14:04 - 2013-09-26 21:36 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2014-08-28 14:04 - 2013-09-26 21:35 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mi.dll
2014-08-28 14:04 - 2013-09-26 21:34 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mibincodec.dll
2014-08-28 14:04 - 2013-09-26 21:34 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecapi.dll
2014-08-28 14:04 - 2013-09-26 21:34 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2014-08-28 14:04 - 2013-09-26 21:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrssrv.dll
2014-08-28 14:04 - 2013-09-26 21:31 - 00083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtfwd.dll
2014-08-28 14:04 - 2013-09-26 21:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Register-CimProvider.exe
2014-08-28 14:04 - 2013-09-26 21:21 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecutil.exe
2014-08-28 14:04 - 2013-09-26 21:15 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prvdmofcomp.dll
2014-08-28 14:04 - 2013-09-26 21:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmitomi.dll
2014-08-28 14:04 - 2013-09-26 21:12 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidcom.dll
2014-08-28 14:04 - 2013-09-26 21:11 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn2.dll
2014-08-28 14:04 - 2013-09-26 21:11 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll
2014-08-28 14:04 - 2013-09-26 21:09 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2014-08-28 14:04 - 2013-09-26 21:08 - 00190464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2014-08-28 14:04 - 2013-09-26 21:04 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2014-08-28 14:04 - 2013-09-26 21:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-08-28 14:04 - 2013-09-26 20:54 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrshost.exe
2014-08-28 14:04 - 2013-09-26 20:50 - 00515584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmGCDeps.dll
2014-08-28 14:04 - 2013-09-26 20:49 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrs.exe
2014-08-28 14:04 - 2013-09-26 20:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2014-08-28 14:04 - 2013-09-26 20:48 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-08-28 14:04 - 2013-09-26 20:48 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-08-28 14:04 - 2013-09-26 20:47 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-08-28 14:04 - 2013-09-26 20:47 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrscmd.dll
2014-08-28 14:04 - 2013-09-26 20:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PSModuleDiscoveryProvider.dll
2014-08-28 14:04 - 2013-09-26 20:38 - 02026496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-08-28 14:04 - 2013-09-26 20:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2014-08-28 14:04 - 2013-09-26 19:52 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-08-28 14:04 - 2013-09-26 18:48 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2014-08-28 14:01 - 2014-08-30 03:01 - 00798516 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-08-28 13:58 - 2014-08-28 15:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-08-28 13:57 - 2014-08-28 15:20 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-08-28 13:57 - 2014-08-28 15:20 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-08-28 13:55 - 2014-08-28 13:55 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-08-28 13:55 - 2014-08-28 13:55 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-08-28 13:55 - 2014-08-28 13:55 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-08-28 13:55 - 2014-08-28 13:55 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-08-28 13:55 - 2014-08-28 13:55 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-08-28 13:55 - 2014-08-28 13:55 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-08-28 13:55 - 2014-08-28 13:55 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-08-28 13:55 - 2014-08-28 13:55 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-08-28 13:55 - 2014-08-28 13:55 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-08-28 13:50 - 2013-09-07 22:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-08-28 13:50 - 2013-09-07 22:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-08-28 13:49 - 2013-08-28 22:21 - 01737688 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-08-28 13:49 - 2013-08-28 22:21 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-08-28 13:49 - 2013-08-28 22:18 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-08-28 13:49 - 2013-08-28 21:57 - 01296312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-08-28 13:49 - 2013-08-28 21:57 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-08-28 13:49 - 2013-08-28 21:54 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-08-28 13:47 - 2013-04-25 19:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-08-28 13:47 - 2013-03-31 18:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-08-28 13:47 - 2012-02-17 02:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-08-28 13:47 - 2012-02-17 01:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-08-28 13:47 - 2012-02-17 00:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-08-28 13:46 - 2012-11-22 23:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-08-28 13:41 - 2014-05-14 12:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-08-28 13:41 - 2014-05-14 12:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-08-28 13:41 - 2014-05-14 12:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-08-28 13:41 - 2014-05-14 12:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-08-28 13:41 - 2014-05-14 12:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-08-28 13:41 - 2014-05-14 12:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-08-28 13:41 - 2014-05-14 12:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-08-28 13:41 - 2014-05-14 12:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-08-28 13:41 - 2014-05-14 12:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-08-28 13:41 - 2014-05-14 12:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-08-28 13:41 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-08-28 13:41 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-08-28 13:41 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-08-28 13:41 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-08-28 13:36 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\VirtualStore
2014-08-28 13:36 - 2014-08-28 14:51 - 00001413 _____ () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-28 13:35 - 2014-09-08 12:14 - 02020423 _____ () C:\Windows\WindowsUpdate.log
2014-08-28 13:35 - 2014-09-08 11:23 - 00000000 ____D () C:\Users\owner
2014-08-28 13:35 - 2014-09-03 02:02 - 00060160 _____ () C:\Users\owner\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-28 13:35 - 2014-08-28 13:35 - 00000020 ___SH () C:\Users\owner\ntuser.ini
2014-08-28 13:35 - 2014-08-28 13:35 - 00000000 __SHD () C:\Recovery
2014-08-28 13:35 - 2009-07-14 00:54 - 00000000 ___RD () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-08-28 13:35 - 2009-07-14 00:49 - 00000000 ___RD () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-08-27 21:28 - 2014-08-27 21:28 - 00044896 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tapvyprvpn.sys
2014-08-13 13:15 - 2014-08-13 13:15 - 00045384 _____ () C:\Windows\SysWOW64\DiscHandler.exe
2014-08-12 19:00 - 2014-08-12 19:00 - 04575232 _____ (Google Inc.) C:\Windows\SysWOW64\GPhotos.scr
2014-08-12 02:30 - 2014-08-12 02:30 - 04374016 _____ () C:\Windows\system32\ffdshow.ax
2014-08-12 02:30 - 2014-08-12 02:30 - 04009984 _____ () C:\Windows\system32\ffmpeg.dll
2014-08-12 02:30 - 2014-08-12 02:30 - 00474624 _____ () C:\Windows\system32\ff_kernelDeint.dll
2014-08-12 02:30 - 2014-08-12 02:30 - 00127488 _____ () C:\Windows\system32\ff_vfw.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 01532928 _____ () C:\Windows\system32\ff_samplerate.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00631296 _____ () C:\Windows\system32\TomsMoComp_ff.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00222720 _____ () C:\Windows\system32\ff_libdts.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00190464 _____ () C:\Windows\system32\libmpeg2_ff.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00183296 _____ () C:\Windows\system32\ff_unrar.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00156672 _____ () C:\Windows\system32\ff_libmad.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00116224 _____ () C:\Windows\system32\ff_liba52.dll
2014-08-12 02:29 - 2014-08-12 02:29 - 00114688 _____ () C:\Windows\system32\ff_wmv9.dll
2014-08-11 22:30 - 2014-08-11 22:30 - 03916288 _____ () C:\Windows\SysWOW64\ffmpeg.dll
2014-08-11 22:30 - 2014-08-11 22:30 - 03502080 _____ () C:\Windows\SysWOW64\ffdshow.ax
2014-08-11 22:30 - 2014-08-11 22:30 - 00112640 _____ () C:\Windows\SysWOW64\ff_vfw.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 01525760 _____ () C:\Windows\SysWOW64\ff_samplerate.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00271360 _____ () C:\Windows\SysWOW64\TomsMoComp_ff.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00211968 _____ () C:\Windows\SysWOW64\ff_libdts.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00157184 _____ () C:\Windows\SysWOW64\ff_unrar.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00147456 _____ () C:\Windows\SysWOW64\ff_libmad.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00136704 _____ () C:\Windows\SysWOW64\libmpeg2_ff.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00114688 _____ () C:\Windows\SysWOW64\ff_liba52.dll
2014-08-11 22:29 - 2014-08-11 22:29 - 00099840 _____ () C:\Windows\SysWOW64\ff_wmv9.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-08 12:23 - 2014-09-08 12:23 - 00028849 _____ () C:\Users\owner\Desktop\FRST.txt
2014-09-08 12:23 - 2014-09-08 12:23 - 00000000 ____D () C:\FRST
2014-09-08 12:20 - 2014-08-30 11:28 - 14413824 _____ () C:\Users\owner\Documents\My Information.effx
2014-09-08 12:19 - 2014-09-08 12:19 - 00001255 _____ () C:\Users\owner\Desktop\JRT.txt
2014-09-08 12:18 - 2009-07-14 01:13 - 00782164 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-08 12:18 - 2009-07-14 00:45 - 00029120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-08 12:18 - 2009-07-14 00:45 - 00029120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-08 12:14 - 2014-08-28 13:35 - 02020423 _____ () C:\Windows\WindowsUpdate.log
2014-09-08 12:12 - 2014-09-08 12:12 - 00000000 ____D () C:\Windows\ERUNT
2014-09-08 12:12 - 2014-08-31 13:58 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-09-08 12:11 - 2014-08-28 16:57 - 00000332 _____ () C:\Windows\Tasks\GlaryInitialize 5.job
2014-09-08 12:11 - 2014-08-28 16:57 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 5
2014-09-08 12:10 - 2014-09-08 12:10 - 00000022 _____ () C:\Windows\S.dirmngr
2014-09-08 12:10 - 2014-09-01 11:51 - 00005762 _____ () C:\Windows\setupact.log
2014-09-08 12:10 - 2014-08-28 16:53 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-08 12:10 - 2009-07-14 01:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-08 12:09 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Efficient Organizer AutoBackup
2014-09-08 11:58 - 2014-08-28 16:53 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-08 11:52 - 2014-08-28 16:53 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-08 11:28 - 2014-09-08 11:28 - 00018821 _____ () C:\Users\owner\Desktop\AdwCleaner[S0].txt
2014-09-08 11:25 - 2014-09-02 00:14 - 00227200 _____ () C:\Windows\PFRO.log
2014-09-08 11:23 - 2014-09-08 11:21 - 00000000 ____D () C:\AdwCleaner
2014-09-08 11:23 - 2014-08-31 23:38 - 00000000 ____D () C:\Users\owner\AppData\Roaming\SoftGrid Client
2014-09-08 11:23 - 2014-08-28 13:35 - 00000000 ____D () C:\Users\owner
2014-09-08 00:30 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\My Kindle Content
2014-09-07 23:55 - 2014-09-07 23:55 - 02105344 _____ (Farbar) C:\Users\owner\Desktop\FRST64 (1).exe
2014-09-07 23:27 - 2014-09-07 23:27 - 01016261 _____ (Thisisu) C:\Users\owner\Desktop\JRT.exe
2014-09-07 23:04 - 2014-09-07 23:02 - 01370467 _____ () C:\Users\owner\Desktop\AdwCleaner.exe
2014-09-07 21:41 - 2014-09-07 21:41 - 00025088 _____ () C:\Users\owner\Desktop\codecheck.exe
2014-09-07 20:14 - 2014-08-31 19:34 - 00000000 ____D () C:\Users\owner\AppData\Roaming\vlc
2014-09-07 16:25 - 2014-09-04 10:51 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-09-07 13:16 - 2014-09-07 13:16 - 00001263 _____ () C:\Users\Public\Desktop\TEA 2.11.lnk
2014-09-07 13:16 - 2014-09-07 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TEA Crossword Helper 2.11
2014-09-07 13:16 - 2014-09-07 13:16 - 00000000 ____D () C:\ProgramData\Crossword Man
2014-09-07 13:16 - 2014-09-07 13:16 - 00000000 ____D () C:\Program Files (x86)\Crossword Man
2014-09-07 11:54 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\system
2014-09-07 10:42 - 2014-09-07 10:42 - 11168296 _____ () C:\Users\owner\Downloads\SetupAnyDVD7510.exe
2014-09-07 10:28 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\PhraseExpress
2014-09-07 09:17 - 2014-09-07 09:17 - 00019051 _____ () C:\HijackPatrol.log
2014-09-07 08:36 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Skype
2014-09-06 22:49 - 2014-09-03 14:38 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-09-06 11:45 - 2014-09-06 11:45 - 00097803 _____ () C:\ProgramData\1410018152.bdinstall.bin
2014-09-06 11:42 - 2014-09-06 11:42 - 00037823 _____ () C:\ProgramData\1410018147.bdinstall.bin
2014-09-06 11:42 - 2014-09-06 11:42 - 00000000 ____D () C:\ProgramData\bdch
2014-09-06 11:42 - 2014-08-31 15:13 - 00000000 ____D () C:\Users\owner\AppData\Roaming\uTorrent
2014-09-05 17:07 - 2014-08-31 14:08 - 00000000 ____D () C:\ProgramData\Sonos,_Inc
2014-09-05 16:13 - 2014-09-05 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack
2014-09-05 16:13 - 2014-09-05 16:12 - 00000000 ____D () C:\Windows\SysWOW64\C2MP
2014-09-05 13:27 - 2014-09-05 13:27 - 00244789 _____ () C:\ProgramData\1409937465.bdinstall.bin
2014-09-05 13:24 - 2014-09-05 13:17 - 00000000 ____D () C:\Users\owner\AppData\Roaming\QuickScan
2014-09-04 20:04 - 2014-08-31 14:24 - 00000000 ____D () C:\Users\Public\Documents\PhraseExpress
2014-09-04 19:51 - 2014-09-01 22:49 - 00000000 ____D () C:\Users\owner\AppData\Roaming\gnupg
2014-09-04 19:48 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\PasswordSafe
2014-09-04 19:24 - 2014-09-01 22:49 - 00002023 _____ () C:\Users\Public\Desktop\Kleopatra.lnk
2014-09-04 19:24 - 2014-09-01 22:49 - 00000000 ____D () C:\Users\Public\Desktop\Gpg4win Documentation
2014-09-04 19:24 - 2014-09-01 22:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gpg4win
2014-09-03 14:38 - 2014-09-03 14:38 - 00000963 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-09-03 14:38 - 2014-09-03 14:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\Users\owner\AppData\Roaming\WinPatrol
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\ProgramData\InstallMate
2014-09-03 11:50 - 2014-09-03 11:50 - 00000000 ____D () C:\Program Files (x86)\Ruiware
2014-09-03 10:17 - 2014-08-28 16:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-03 10:17 - 2009-07-14 00:45 - 00276128 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-09-03 10:09 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-03 02:26 - 2014-09-02 14:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-09-03 02:02 - 2014-08-28 13:35 - 00060160 _____ () C:\Users\owner\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-03 01:43 - 2014-09-03 01:43 - 00002948 _____ () C:\Windows\System32\Tasks\{1B5A1C1D-708B-4F06-84D6-60B1DD9DEBA5}
2014-09-03 01:41 - 2014-09-03 01:41 - 00002948 _____ () C:\Windows\System32\Tasks\{55ABC09F-F0A3-4260-A9D3-E81FEBC1BCBA}
2014-09-03 01:37 - 2014-09-03 01:37 - 00000963 _____ () C:\Users\Public\Desktop\VyprVPN.lnk
2014-09-03 01:37 - 2014-09-03 01:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Golden Frog, GmbH
2014-09-03 01:37 - 2014-09-03 01:33 - 00000000 ____D () C:\Program Files (x86)\VyprVPN
2014-09-03 01:36 - 2014-09-03 01:36 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Golden Frog, GmbH
2014-09-03 01:36 - 2014-09-03 01:36 - 00000000 ____D () C:\ProgramData\Golden Frog, GmbH
2014-09-03 01:35 - 2014-09-03 01:35 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-03 00:50 - 2014-09-02 13:33 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-09-03 00:50 - 2014-09-02 13:33 - 00000000 ____D () C:\ProgramData\Skype
2014-09-03 00:50 - 2014-09-02 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-02 20:27 - 2009-07-13 23:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-09-02 14:20 - 2014-09-01 00:00 - 00000000 ____D () C:\Users\owner\.frostwire5
2014-09-02 14:18 - 2014-09-01 00:00 - 00000000 ____D () C:\Users\owner\FrostWire
2014-09-02 13:35 - 2014-09-02 13:33 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-02 13:30 - 2014-09-02 13:30 - 00003160 _____ () C:\Windows\System32\Tasks\{6AD2E35C-91D8-48B7-A575-BB0B2DC2C4BC}
2014-09-02 00:14 - 2014-08-28 16:57 - 00000000 ____D () C:\Users\owner\AppData\Roaming\DiskDefrag
2014-09-01 23:06 - 2014-08-31 13:14 - 00000000 ____D () C:\Users\owner\AppData\Roaming\EfficientPIM
2014-09-01 22:49 - 2014-09-01 22:49 - 00000000 ____D () C:\ProgramData\GNU
2014-09-01 22:49 - 2014-09-01 22:49 - 00000000 ____D () C:\Program Files (x86)\GNU
2014-09-01 16:47 - 2014-09-01 16:47 - 00001296 _____ () C:\Users\owner\Desktop\SolveigMM Video Splitter Home Edition.lnk
2014-09-01 16:47 - 2014-09-01 16:47 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Solveig Multimedia
2014-09-01 16:47 - 2014-09-01 16:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Solveig Multimedia
2014-09-01 16:47 - 2014-09-01 16:47 - 00000000 ____D () C:\Program Files (x86)\Solveig Multimedia
2014-09-01 15:26 - 2014-09-01 15:25 - 2147483648 _____ () C:\Users\owner\Documents\DistantDeeps
2014-09-01 11:51 - 2014-09-01 11:51 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-01 01:52 - 2014-09-01 01:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English)
2014-09-01 01:51 - 2014-09-01 01:51 - 00000000 ____D () C:\Users\owner\AppData\Roaming\VeraCrypt
2014-09-01 01:51 - 2014-09-01 01:49 - 00000000 ____D () C:\ProgramData\VirtualizedApplications
2014-09-01 01:49 - 2014-09-01 01:49 - 00231768 _____ (IDRIX) C:\Windows\system32\Drivers\veracrypt.sys
2014-09-01 01:49 - 2014-09-01 01:49 - 00000847 _____ () C:\Users\Public\Desktop\VeraCrypt.lnk
2014-09-01 01:49 - 2014-09-01 01:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VeraCrypt
2014-09-01 01:49 - 2014-09-01 01:48 - 00000000 ____D () C:\Program Files\VeraCrypt
2014-09-01 01:03 - 2014-08-28 14:51 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Adobe
2014-09-01 00:54 - 2014-09-01 00:54 - 00002026 _____ () C:\Users\owner\Desktop\Customize Fences.lnk
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\Users\owner\AppData\Local\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\ProgramData\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
2014-09-01 00:54 - 2014-09-01 00:54 - 00000000 ____D () C:\Program Files (x86)\Stardock
2014-09-01 00:01 - 2014-09-01 00:01 - 00230840 _____ (TrueCrypt Foundation) C:\Windows\system32\Drivers\truecrypt.sys
2014-08-31 23:50 - 2014-08-31 23:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt
2014-08-31 23:50 - 2014-08-31 23:50 - 00000000 ____D () C:\Program Files\Axantum
2014-08-31 23:38 - 2014-08-31 23:38 - 00000000 ____D () C:\Users\owner\AppData\Local\SoftGrid Client
2014-08-31 16:36 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\My Safes
2014-08-31 16:29 - 2014-08-31 16:29 - 00001030 _____ () C:\Users\owner\Desktop\Password Safe.lnk
2014-08-31 16:29 - 2014-08-31 16:29 - 00000000 ____D () C:\Program Files (x86)\Password Safe
2014-08-31 16:29 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Safe
2014-08-31 15:56 - 2014-08-31 15:56 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-08-31 14:54 - 2014-08-31 13:58 - 00628288 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-08-31 14:54 - 2014-08-31 13:58 - 00092768 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-08-31 14:54 - 2013-11-11 19:25 - 00458336 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys
2014-08-31 14:54 - 2012-08-02 15:09 - 00029792 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klim6.sys
2014-08-31 14:26 - 2014-08-31 14:25 - 00000000 ____D () C:\Users\owner\AppData\Roaming\PhraseExpress
2014-08-31 14:24 - 2014-08-31 14:24 - 00000000 ____D () C:\ProgramData\PhraseExpress
2014-08-31 14:24 - 2014-08-31 14:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhraseExpress
2014-08-31 14:24 - 2014-08-31 14:24 - 00000000 ____D () C:\Program Files (x86)\PhraseExpress
2014-08-31 14:09 - 2014-08-31 14:09 - 00001953 _____ () C:\Users\Public\Desktop\Sonos.lnk
2014-08-31 14:09 - 2014-08-31 14:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonos
2014-08-31 14:08 - 2014-08-31 14:08 - 00000000 ____D () C:\Program Files (x86)\Sonos
2014-08-31 13:59 - 2014-08-31 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky PURE 3.0
2014-08-31 13:58 - 2014-08-31 13:58 - 00000000 ____D () C:\Windows\ELAMBKUP
2014-08-31 13:58 - 2014-08-31 13:58 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-08-31 13:55 - 2014-08-28 14:44 - 00001945 _____ () C:\Windows\epplauncher.mif
2014-08-31 13:14 - 2014-08-31 13:14 - 00000983 _____ () C:\Users\owner\Desktop\EfficientPIM.lnk
2014-08-31 13:14 - 2014-08-31 13:14 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Efficient Software
2014-08-31 13:14 - 2014-08-31 13:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EfficientPIM
2014-08-31 13:14 - 2014-08-31 13:14 - 00000000 ____D () C:\Program Files (x86)\EfficientPIM
2014-08-31 12:38 - 2014-08-31 12:38 - 00004112 _____ () C:\Windows\System32\Tasks\Open URL by RoboForm
2014-08-31 12:38 - 2014-08-31 12:38 - 00003492 _____ () C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 8th, 2014, 12:42 pm

First continued: 3/3

2014-08-31 12:36 - 2014-08-31 12:36 - 00000000 ____D () C:\ProgramData\RoboForm
2014-08-31 12:36 - 2014-08-31 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
2014-08-31 12:36 - 2014-08-31 12:36 - 00000000 ____D () C:\Program Files (x86)\Siber Systems
2014-08-31 12:05 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\Thunderbird
2014-08-31 12:03 - 2014-08-31 12:03 - 00002098 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-08-31 12:03 - 2014-08-31 12:03 - 00002086 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2014-08-30 16:35 - 2014-08-30 16:35 - 00000000 ____D () C:\ProgramData\Auslogics
2014-08-30 16:31 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
2014-08-30 16:31 - 2014-08-30 16:01 - 00000000 ____D () C:\Users\owner\AppData\Local\MigWiz
2014-08-30 16:31 - 2014-08-28 17:27 - 00000000 ____D () C:\Windows\Panther
2014-08-30 16:29 - 2014-08-30 11:19 - 00007604 _____ () C:\Users\owner\AppData\Local\Resmon.ResmonCfg
2014-08-30 16:07 - 2014-08-30 16:07 - 00000000 ____D () C:\Users\owner\Desktop\New Briefcase
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Thunderbird
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Softland
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\skypePM
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Roxio
2014-08-30 16:06 - 2014-08-30 16:06 - 00000000 ____D () C:\Users\owner\AppData\Roaming\OpenOffice.org
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Mozilla
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Motive
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserPlus
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Best Buy
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2014-08-30 16:05 - 2014-08-30 16:05 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Macrovision
2014-08-30 16:05 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Apps\2.0
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Intuit
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Intel
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\HP
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Dell
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\CyberLink
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\BitTorrent
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Roaming\ASCOMP Software
2014-08-30 16:04 - 2014-08-30 16:04 - 00000000 ____D () C:\Users\owner\AppData\Local\Yahoo!
2014-08-30 16:04 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\WeatherBug
2014-08-30 16:04 - 2014-08-28 17:24 - 00000000 ____D () C:\Users\owner\AppData\Roaming\Apple Computer
2014-08-30 16:02 - 2014-08-30 16:02 - 00000000 ____D () C:\Users\owner\AppData\Local\SupportSoft
2014-08-30 16:02 - 2014-08-30 16:02 - 00000000 ____D () C:\Users\owner\AppData\Local\Mozilla Firefox
2014-08-30 16:00 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\IsolatedStorage
2014-08-30 16:00 - 2014-08-28 16:53 - 00000000 ____D () C:\Users\owner\AppData\Local\Google
2014-08-30 15:59 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.kde
2014-08-30 15:59 - 2014-08-28 16:53 - 00000000 ____D () C:\Users\owner\AppData\Local\Adobe
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\WINDOWS
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\vw
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\System
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\PrivacIE
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\Incomplete
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\IETldCache
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\Gigabeat Original Firmware Backup
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\Documents\My PSP8 Files
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\.freemind
2014-08-30 15:58 - 2014-08-30 15:58 - 00000000 ____D () C:\Users\owner\.360Share
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\wordpat
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\WD_Quick_View_Setup_for_Windows
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\TurboTax
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\THE_THICK_OF_IT
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\Sound Effects
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\Solveig Multimedia
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\Recipes
2014-08-30 13:23 - 2014-08-30 13:23 - 00000000 ____D () C:\Users\owner\Documents\ProjectMeditation
2014-08-30 13:23 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\My RoboForm Data
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\My eBooks
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\My Digital Editions
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\Mixpad Projects
2014-08-30 13:22 - 2014-08-30 13:22 - 00000000 ____D () C:\Users\owner\Documents\Kindle DRM Removal
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\iTunes
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Freemake
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Family Speeches
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\ExcelAristoInteractiveSolver
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\EnigmaSim
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\EfficientPIM Backup
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\EfficientPIM AutoBackup
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\Edraw Mind Map
2014-08-30 13:18 - 2014-08-30 13:18 - 00000000 ____D () C:\Users\owner\Documents\DeDRM_v5.1_WinApp
2014-08-30 13:18 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\CoffeeCup Software
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\codebooktool
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\CAM Development
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Bigasoft Video Downloader Pro
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Audible
2014-08-30 13:17 - 2014-08-30 13:17 - 00000000 ____D () C:\Users\owner\Documents\Any Video Editor
2014-08-30 13:17 - 2014-08-30 13:16 - 00000000 ____D () C:\Users\owner\Documents\Any Video Converter Ultimate
2014-08-30 13:16 - 2014-08-30 13:15 - 00000000 ____D () C:\Users\owner\Documents\Any Video Converter
2014-08-30 13:15 - 2014-08-30 13:15 - 00000000 ____D () C:\Users\owner\Documents\Amazon MP3
2014-08-30 13:15 - 2014-08-30 13:15 - 00000000 ____D () C:\Users\owner\Documents\Alpha Realms
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\WinZip
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\Windows Live
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\WinAVI
2014-08-30 11:27 - 2014-08-30 11:27 - 00000000 ____D () C:\Users\owner\AppData\Local\Western Digital
2014-08-30 11:27 - 2014-08-28 13:36 - 00000000 ____D () C:\Users\owner\AppData\Local\VirtualStore
2014-08-30 11:26 - 2014-08-30 11:26 - 00000000 ____D () C:\Users\owner\AppData\Local\Stardock_Corporation
2014-08-30 11:26 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\Spotify
2014-08-30 11:25 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\Sonos,_Inc
2014-08-30 11:25 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\SoftThinks
2014-08-30 11:25 - 2014-08-30 11:25 - 00000000 ____D () C:\Users\owner\AppData\Local\Skype
2014-08-30 11:25 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\RapidSolution
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 __SHD () C:\Users\owner\AppData\Local\icsxml
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Radium Technologies
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\PowerDVD DX
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Mozilla
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Microsoft Help
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Microsoft Games
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\MetaGeek,_LLC
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\Macromedia
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\owner\AppData\Local\HP
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Golden_Frog,_GmbH
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Golden Frog, GmbH
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\GNU
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Downloaded Installations
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Dell Edoc Viewer
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\DeDRMPrefs
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\CrashRpt
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Citrix
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\cache
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Best Buy pc app
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\Apple Computer
2014-08-30 11:23 - 2014-08-30 11:23 - 00000000 ____D () C:\Users\owner\AppData\Local\AOL
2014-08-30 11:23 - 2014-08-30 11:22 - 00000000 ____D () C:\Users\owner\AppData\Local\Amazon
2014-08-30 11:22 - 2014-08-30 11:22 - 00000000 ____D () C:\Users\owner\AppData\Local\Akamai
2014-08-30 11:22 - 2014-08-30 11:22 - 00000000 ____D () C:\Users\owner\AppData\Local\Aimersoft
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ___RD () C:\Users\owner\SkyDrive
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\Tracing
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.idlerc
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.dvdcss
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.clipbak
2014-08-30 11:21 - 2014-08-30 11:21 - 00000000 ____D () C:\Users\owner\.android
2014-08-30 03:01 - 2014-08-28 17:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Application Virtualization Client
2014-08-30 03:01 - 2014-08-28 14:01 - 00798516 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
========== End O
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby SpecialEd19 » September 8th, 2014, 12:42 pm

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-09-2014 01
Ran by owner at 2014-09-08 12:24:26
Running from C:\Users\owner\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky PURE 3.0 (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AS: Kaspersky PURE 3.0 (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky PURE 3.0 (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.178 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.178 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.176 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated)
Adobe Reader X (10.1.11) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.12.9.0 - Asmedia Technology)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 1.0.35 - ASUS)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0025 - ASUS)
Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.4.0 - Auslogics Labs Pty Ltd)
AxCrypt 1.7.3156.0 (HKLM\...\{8B49CDB9-824C-44D6-A5D3-D0235D3030B8}) (Version: 1.7.3156.0 - Axantum Software AB)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5000 - CDBurnerXP)
EfficientPIM 3.71 (HKLM-x32\...\EfficientPIM_is1) (Version: - Efficient Software)
Glary Utilities 5.6 (HKLM-x32\...\Glary Utilities 5) (Version: 5.6.0.13 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\{5E326DEC-2D1F-30C1-AAC0-9716A5DA7707}) (Version: 66.3.32870 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Gpg4win (2.2.2) (HKLM-x32\...\GPG4Win) (Version: 2.2.2 - The Gpg4win Project)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.10.255 - Intel Corporation)
Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden
Kaspersky PURE 3.0 (HKLM-x32\...\InstallWIX_{D0702EE9-9DE4-419A-9C6C-4730B1C985BA}) (Version: 13.0.2.558 - Kaspersky Lab)
Kaspersky PURE 3.0 (x32 Version: 13.0.2.558 - Kaspersky Lab) Hidden
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Version: 4.5.51209 - Microsoft Corporation) Hidden
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
Mozilla Firefox 31.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 en-US)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
Mozilla Thunderbird 31.1.0 (x86 en-US) (HKLM-x32\...\Mozilla Thunderbird 31.1.0 (x86 en-US)) (Version: 31.1.0 - Mozilla)
Password Safe (HKLM-x32\...\Password Safe) (Version: - )
PhraseExpress v10.5.16 (HKLM-x32\...\PhraseExpress_is1) (Version: 10.5.16 - Bartels Media GmbH)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0029 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.30136 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden
RoboForm 7-9-9-1 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-9-1 - Siber Systems)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.)
SolveigMM Video Splitter Home Edition (HKLM-x32\...\SolveigMM Video Splitter Home Edition 4.0.1401.28) (Version: 4.0.1401.28 - Solveig Multimedia)
Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 26.1.77080 - Sonos, Inc.)
Stardock Fences 2 (HKLM-x32\...\Stardock Fences 2) (Version: 2.13 - Stardock Software, Inc.)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TEA Crossword Helper 2.11 (HKLM-x32\...\teawl211_is1) (Version: 2.11 - Crossword Man)
TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.31064 - TeamViewer)
VeraCrypt (HKLM-x32\...\VeraCrypt) (Version: 1.0d - VeraCrypt Foundation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VyprVPN (HKLM\...\{526B3DDC-6891-4F43-8F64-8B83DC9E4848}) (Version: 2.5.1.4094 - Golden Frog, GmbH.)
Windows 7 Codec Pack 4.1.0 (HKLM-x32\...\Windows 7 - Codec Pack) (Version: 4.1.0 - Windows 7 Codec Pack)
Windows Driver Package - ASUS (ATP) Mouse (10/13/2012 1.0.0.146) (HKLM\...\19BB77B03643718D26B01876FD391DC93B189805) (Version: 10/13/2012 1.0.0.146 - ASUS)
WinPatrol (HKLM\...\{6A206A04-6BC1-411B-AA04-4E52EDEEADF2}) (Version: 32.0.2014.5 - Ruiware)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3209393520-565817868-2189237008-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)

==================== Restore Points =========================

04-09-2014 07:00:10 Windows Update
08-09-2014 02:50:27 TrueCrypt uninstallation

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {021CDC0C-60B0-4DA2-9493-026DCD41E749} - System32\Tasks\{55ABC09F-F0A3-4260-A9D3-E81FEBC1BCBA} => C:\Program Files (x86)\VyprVPN\VyprVPN.exe [2014-08-27] (Golden Frog, GmbH.)
Task: {079A0DA9-ABD6-4EFA-80C2-6C207992FEE1} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2012-09-14] (ASUSTek Computer Inc.)
Task: {0D5A6BFE-FC0D-4356-BA73-D85D3C507844} - System32\Tasks\ASUS Touchpad Launcher (x64) => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2012-10-31] (AsusTek)
Task: {177BE755-2FB5-4917-831F-7F3792426E1F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-28] (Google Inc.)
Task: {2C268D8A-735F-4921-B8DB-3A31FEF26E4B} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2014-08-17] (Glarysoft Ltd)
Task: {334C9157-47E0-498C-961B-BC0CFDA0AD88} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2014-08-17] (Glarysoft Ltd)
Task: {48637976-6E37-47C4-83D0-01CC1F78BEC9} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {7F6FFAC3-11DD-42F5-BDB0-178B3743C8BC} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2014-08-31] (Siber Systems)
Task: {9C4CF207-64EE-4CE9-B3B3-23B5ECD30ED6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-28] (Adobe Systems Incorporated)
Task: {9F81FE75-AB58-4C1B-BB0B-51BBF4E8F218} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMLJMJJJKJLJLMMJKJCNOJMJOMMJCNLMGMOMJMCNHMGMOMJMCNPMMMKJLJOJOMGMOJHMJJIMJMJNJICMIMCNGMCNGMFMOMOMCNPMCNGMJMPMPMFMJMCNOMCNIMJMPMOMCNNMJNPICMPMFMOMNMKJPMOMFMOMPMPMGMJNHICMNJKIBJPMOMJNBJCMAJIIBJKJNIJNKJCMJNNICMJNDJCMKJBJJNMJCMNMFMOMKMNMFMOMJNFICMGJLJKJBJLIGJLIGJKJMIBNKJHIKJ"
Task: {A06ED810-6325-4DB7-A71D-564B09755DF0} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-13] (Microsoft Corporation)
Task: {B576FCF1-6EE1-4230-A43C-7ED64ADDA042} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-28] (Google Inc.)
Task: {BCDCAB0A-0DC8-4756-9C2A-74B67E471C82} - System32\Tasks\{1B5A1C1D-708B-4F06-84D6-60B1DD9DEBA5} => C:\Program Files (x86)\VyprVPN\VyprVPN.exe [2014-08-27] (Golden Frog, GmbH.)
Task: {EC049E2C-1BBB-40EA-B4DB-2A5CCE1A132C} - System32\Tasks\{6AD2E35C-91D8-48B7-A575-BB0B2DC2C4BC} => Chrome.exe http://www.skype.com/go/downloading?sou ... tError=404
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-09-03 07:07 - 2014-09-03 07:07 - 00216576 _____ () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe
2012-12-20 18:19 - 2012-12-20 18:19 - 00479752 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\dblite.dll
2012-12-20 18:19 - 2012-12-20 18:19 - 01310728 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\kpcengine.2.2.dll
2014-09-03 06:53 - 2014-09-03 06:53 - 00221184 _____ () C:\Program Files (x86)\GNU\GnuPG\libksba-8.dll
2014-09-03 06:48 - 2014-09-03 06:48 - 00038400 _____ () C:\Program Files (x86)\GNU\GnuPG\libgpg-error-0.dll
2014-09-03 06:41 - 2014-09-03 06:41 - 00050176 _____ () C:\Program Files (x86)\GNU\GnuPG\libw32pth-0.dll
2014-09-03 06:53 - 2014-09-03 06:53 - 00069632 _____ () C:\Program Files (x86)\GNU\GnuPG\libassuan-0.dll
2014-09-03 06:56 - 2014-09-03 06:56 - 00742400 _____ () C:\Program Files (x86)\GNU\GnuPG\libgcrypt-20.dll
2014-08-31 14:24 - 2014-08-06 10:40 - 00464680 _____ () C:\Program Files (x86)\PhraseExpress\pexlang.dll
2014-08-27 21:28 - 2014-08-27 21:28 - 00077824 _____ () C:\Program Files (x86)\VyprVPN\GoldenFrogWFP.dll
2014-08-17 21:06 - 2014-08-17 21:06 - 00080160 _____ () C:\Program Files (x86)\Glary Utilities 5\zlib1.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\owner\Documents\addresses.eml:OECustomProperty

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


==================== Faulty Device Manager Devices =============

Name: TAP-VyprVPN Adapter V9
Description: TAP-VyprVPN Adapter V9
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-VyprVPN Provider V9
Service: tapvyprvpn
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/08/2014 00:21:19 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
(Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: The server name or address could not be resolved


System errors:
=============
Error: (09/08/2014 00:20:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 7 time(s).

Error: (09/08/2014 00:20:17 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: The Windows Search service terminated with service-specific error %%-2147218170.


Microsoft Office Sessions:
=========================
Error: (09/08/2014 00:21:19 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: (Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: The server name or address could not be resolved


CodeIntegrity Errors:
===================================
Date: 2014-09-06 15:38:06.801
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-06 15:38:06.801
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-06 15:38:06.801
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-06 15:38:06.801
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-06 15:38:06.785
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-06 15:38:06.785
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-05 01:12:59.725
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-05 01:12:59.725
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-05 01:12:59.725
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system.

Date: 2014-09-05 01:12:59.710
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-3632QM CPU @ 2.20GHz
Percentage of memory in use: 25%
Total physical RAM: 8081.74 MB
Available physical RAM: 5995.18 MB
Total Pagefile: 16161.67 MB
Available Pagefile: 13968.87 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:500.75 GB) NTFS
Drive f: (My Passport) (Fixed) (Total:931.48 GB) (Free:268.72 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 155F20C4)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 23259827)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End Of Log ============================
SpecialEd19
Regular Member
 
Posts: 51
Joined: September 3rd, 2014, 10:23 am

Re: Son's laptop slow, browser hangs, D/Ls sporadic or fail.

Unread postby wannabeageek » September 11th, 2014, 3:24 pm

Hi SpecialEd19,

Step 1.
Registry Backup (TCRB)

Please download tweaking.com_registry_backup_setup.exe
Choose a download site for the installer... download and save it to your desktop.
Double click on the "...setup.exe" program and install the program. Let the install use the default installation. How to tutorial here.

Once the program is installed...
  1. Right mouse click the Tweaking.com Registry Backup icon, select "Run As Administrator" to run it... if UAC prompts, please allow it.
  2. It should open with the Backup Registry tab selected and all file options checked. Check any that are not already checked.
  3. Click on Backup Now to create a backup of your Registry.
    You'll see "Waiting for Volume Shadow Copy snapshot..." this may take a few moments, just be patient.
  4. When completed you should see a message saying something like ... Successful ??/?? Registry Files Backed Up ... ?? is total number of files, both numbers should match.
  5. Close and exit the program.

< STOP > If you did not successfully complete this step. < STOP > Do not continue with any other steps, post back and let me know!


Step 2.
  • Click Start
  • Type notepad.exe in the search programs and files box and click Enter.
  • A blank Notepad page should open.
    • Copy/Paste the contents of the code box below into Notepad.
    • To make this easy, click the "select all" button then hover over the highlighted text and right mouse click to select copy.
Code: Select all
FF Extension: Amazon Shopping Assistant by Spigot - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{84a93d51-b7a9-431e-8ff8-d60e5d7f5df1} [2014-09-05]
FF Extension: Ebay Shopping Assistant by Spigot - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\t4vn3hew.default\Extensions\{f894a29a-f065-40c3-bb19-da6057778493} [2014-09-05]
C:\Users\owner\.frostwire5
C:\Users\owner\FrostWire
C:\Users\owner\AppData\Roaming\uTorrent
C:\Users\owner\AppData\Roaming\BitTorrent
AlternateDataStreams: C:\Users\owner\Documents\addresses.eml:OECustomProperty

    • Save it to the same folder/directory that FRST64.exe is in, naming it as fixlist.txt

NOTICE: This script was written specifically for this user. Running it on another machine may cause damage to your operating system

  • Start FRST in a similar manner to when you ran a scan earlier, but this time when it opens ....
    • Press the Fix button once and wait.
    • FRST will process fixlist.txt
    • When finished, it will produce a log fixlog.txt in the same folder/directory as FRST64.exe
    • Please post me the log




Step 3.
Please download SystemLook from one of the links below and save it to your Desktop.
For 64 bit Systems:
Download Mirror #1
Download Mirror #2


  • Right mouse click SystemLook.exe, select "Run As Administrator" to run it... if UAC prompts, please allow it.
  • Copy and paste the content of the following codebox into the main textfield:
  • To make this easy, click the "select all" button then hover over the highlighted text and right mouse click to select copy.
    Code: Select all
    :filefind
    *AskToolbar*
    *Ask.com*
    *Bandoo*
    *Babylon*
    *Conduit*
    *datamngr*
    *searchab*
    *frostwire*
    *Fun4IM*
    *Funmoods*
    *iLivid*
    *IObit*
    *Iminent*
    *OpenCandy*
    *Searchqu*
    *Searchnu*
    *smartbar*
    *Tarma*
    *torrent*
    *trolltech*
    *Vafmusic2*
    *vshare*
    *whitesmoke*
    *Yontoo*
    
    :folderfind
    *AskToolbar*
    *Ask.com*
    *Babylon*
    *Bandoo*
    *Conduit*
    *datamngr*
    *searchab*
    *smartbar*
    *frostwire*
    *Fun4IM*
    *Funmoods*
    *iLivid*
    *IObit*
    *Iminent*
    *OpenCandy*
    *Searchqu*
    *Searchnu*
    *Tarma*
    *torrent*
    *trolltech*
    *Vafmusic2*
    *vshare*
    *whitesmoke*
    *Yontoo*
    
    :Regfind
    AskToolbar
    Ask.com
    Babylon
    Bandoo
    Conduit
    datamngr
    searchab
    frostwire
    Fun4IM
    Funmoods
    iLivid
    IObit
    Iminent
    OpenCandy
    Searchqu
    Searchnu
    smartbar
    Tarma
    torrent
    trolltech
    Vafmusic2
    vshare
    whitesmoke
    Yontoo
    
  • Click the Look button to start the scan.
    Because of the Registry searches, the scan may take 15 minutes or a bit more to run on a large machine. Please be patient.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt






What I need back from you:
Post each separately.
  1. Contents of fixlog.txt
  2. Contents of SystemLook.txt
  3. Any problem executing the instructions?
Thanks,
wbg
wannabeageek
MRU Master
MRU Master
 
Posts: 1871
Joined: November 23rd, 2009, 10:21 pm
Location: California
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 295 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware