Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Cannot complete Windows Updates


  • This topic is locked This topic is locked
49 replies to this topic

#1 MitziNadine

MitziNadine

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 25 February 2014 - 08:39 PM

Hello,

My computer has been crashing randomly many times per day. I had been restarting it "Normally in Windows" as I continued to try to fix both with Windows Update and my Norton Antivirus, which also generating numerous error messages.

Eventually, I was able to solve the Norton problem by going to the Norton on support and they remotely got it going again.

The Windows update program says I have "Never"been updated, even after I had just updated. At some point, all of the Windows updates (153) were listed to be installed. The computer crashed every time I tried to download and install.

Each time it generated a new error message and the error codes were different nearly every time. Some of the error codes were: 80080005; 802400E; C80003FA; and many more.

I ran the Windows Update Troubleshooter numerous times but it was unable to fix the problem. I visited the Microsoft Support pages, but the remedies did not work for any of the error codes.

At one point the blue screen crashes became worse and I could not restart Windows normally from the recover page. I pressed the F8 or the F12 keys until I arrived at a page where I could restore the machine to the manufactured state.

I had to reinstall antivirus, email etc. but the problem continued.

I posted to the, "Am I infected" area of Bleeping Computers, and a kind and patient technician, Boopme, tried any number of fixes and finally suggested I post here.

Below is the DDS.txt and I will do my best to attach the other file.

Thank you much,

MitziNadine

Sorry, but I cannot yet understand why the DDS.txt file will not paste here. I will go ahead and attach the other file and then may need to edit this in order to include the DDS.


DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16533
Run by Nadine at 16:59:56 on 2014-02-25
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3839.2399 [GMT -8:00]
.
AV: Norton Security Suite *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Norton Security Suite *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Security Suite *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\N360.exe
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\WUDFHost.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\N360.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\Nero\Update\NASvc.exe
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10m_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://xfinity.comcast.net/
uSearch Bar = Preserve
mStart Page = hxxp://acer.msn.com
mDefault_Page_URL = hxxp://acer.msn.com
mWinlogon: Userinit = userinit.exe
BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\coieplg.dll
BHO: Norton Vulnerability Protection: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\IPS\ipsbho.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\coieplg.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\coieplg.dll
mRun: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
mRun: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
mRun: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
mRun: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [ArcadeMovieService] "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
mRun: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
dRunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid}
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{8C88146B-469F-4507-A1D0-E0E034A31EBD} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{8C88146B-469F-4507-A1D0-E0E034A31EBD}\35348455C445A5 : DHCPNameServer = 192.168.1.1
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
x64-mStart Page = hxxp://acer.msn.com
x64-mDefault_Page_URL = hxxp://acer.msn.com
x64-BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine64\21.1.0.18\CoIEPlg.dll
x64-TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine64\21.1.0.18\CoIEPlg.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 SymDS;Symantec Data Store;C:\Windows\System32\drivers\N360x64\1501000.012\SymDS64.sys [2014-2-15 493656]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\N360x64\1501000.012\SymEFA64.sys [2014-2-15 1147480]
R1 BHDrvx64;BHDrvx64;C:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\BASHDefs\20140214.001\BHDrvx64.sys [2014-2-23 1526488]
R1 ccSet_N360;N360 Settings Manager;C:\Windows\System32\drivers\N360x64\1501000.012\ccSetx64.sys [2014-2-15 162392]
R1 IDSVia64;IDSVia64;C:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\IPSDefs\20140224.001\IDSviA64.sys [2014-2-25 521944]
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2011-4-13 22912]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2011-4-13 20328]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2011-4-13 62584]
R1 SymIRON;Symantec Iron Driver;C:\Windows\System32\drivers\N360x64\1501000.012\Ironx64.sys [2014-2-15 264280]
R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\System32\drivers\N360x64\1501000.012\symnets.sys [2014-2-15 590936]
R2 GREGService;GREGService;C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2010-1-8 23584]
R2 Live Updater Service;Live Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-4-13 244624]
R2 N360;Norton Security Suite;C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\N360.exe [2014-2-15 264360]
R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-5-4 503080]
R2 NOBU;Norton Online Backup;C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-6-1 2804568]
R3 RTL8192cu;Belkin Wireless Adapter;C:\Windows\System32\drivers\rtwlanu.sys [2014-2-15 1041000]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-3-1 183560]
S3 EgisTec Ticket Service;EgisTec Ticket Service;C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2010-9-27 172912]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-20 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-20 31232]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2014-02-25 20:10:55 -------- d-----w- C:\Users\Nadine\AppData\Local\{E7AD2C4D-8CB6-4594-A019-0B823FC724CB}
2014-02-25 18:39:11 633856 ----a-w- C:\Windows\System32\comctl32.dll
2014-02-25 18:39:11 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll
2014-02-25 18:39:00 175104 ----a-w- C:\Windows\SysWow64\wintrust.dll
2014-02-25 18:38:59 224256 ----a-w- C:\Windows\System32\wintrust.dll
2014-02-25 18:38:47 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2014-02-25 18:38:47 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll
2014-02-25 18:38:47 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2014-02-25 18:38:46 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2014-02-25 18:38:46 139776 ----a-w- C:\Windows\System32\cryptnet.dll
2014-02-25 18:38:45 1474048 ----a-w- C:\Windows\System32\crypt32.dll
2014-02-25 18:38:30 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2014-02-25 18:38:29 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2014-02-25 18:35:51 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2014-02-25 18:35:48 2048 ----a-w- C:\Windows\System32\tzres.dll
2014-02-25 18:14:55 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2014-02-25 18:13:24 3156480 ----a-w- C:\Windows\System32\win32k.sys
2014-02-25 17:30:51 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2014-02-25 17:30:51 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2014-02-25 17:30:50 12625920 ----a-w- C:\Windows\System32\wmploc.DLL
2014-02-25 17:30:50 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL
2014-02-25 17:14:45 1656680 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-02-25 16:59:41 -------- d-----w- C:\Users\Nadine\AppData\Roaming\TP
2014-02-25 15:31:20 663552 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
2014-02-25 15:31:20 1217024 ----a-w- C:\Windows\System32\rpcrt4.dll
2014-02-25 15:31:19 259584 ----a-w- C:\Windows\System32\WebClnt.dll
2014-02-25 15:31:19 205824 ----a-w- C:\Windows\SysWow64\WebClnt.dll
2014-02-25 15:31:19 102400 ----a-w- C:\Windows\System32\davclnt.dll
2014-02-25 15:31:18 81920 ----a-w- C:\Windows\SysWow64\davclnt.dll
2014-02-25 15:31:18 140800 ----a-w- C:\Windows\System32\drivers\mrxdav.sys
2014-02-25 07:18:12 -------- d-----w- C:\Users\Nadine\AppData\Local\{EDA95255-08E9-446D-87A0-FAEF2FE7856D}
2014-02-25 06:38:00 626688 ----a-w- C:\Windows\SysWow64\usp10.dll
2014-02-25 06:37:59 800768 ----a-w- C:\Windows\System32\usp10.dll
2014-02-25 06:07:21 -------- d-----w- C:\Intel
2014-02-25 05:33:18 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll
2014-02-25 05:33:17 2002432 ----a-w- C:\Windows\System32\msxml6.dll
2014-02-25 05:22:26 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
2014-02-25 05:22:23 478208 ----a-w- C:\Windows\System32\dpnet.dll
2014-02-25 05:18:13 245760 ----a-w- C:\Windows\System32\OxpsConverter.exe
2014-02-25 05:18:08 950128 ----a-w- C:\Windows\System32\drivers\ndis.sys
2014-02-25 05:18:08 41472 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys
2014-02-25 05:17:40 209920 ----a-w- C:\Windows\System32\profsvc.dll
2014-02-25 05:10:34 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll
2014-02-25 05:10:33 715776 ----a-w- C:\Windows\System32\kerberos.dll
2014-02-25 04:10:19 -------- d-----w- C:\Windows\System32\MRT
2014-02-25 04:08:39 9728 ----a-w- C:\Windows\System32\Wdfres.dll
2014-02-25 04:08:39 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2014-02-25 04:08:39 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2014-02-25 04:07:13 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-02-25 04:07:13 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-02-25 04:07:12 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll
2014-02-25 04:07:12 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll
2014-02-25 04:07:11 744448 ----a-w- C:\Windows\System32\WUDFx.dll
2014-02-25 04:07:11 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll
2014-02-25 04:07:11 229888 ----a-w- C:\Windows\System32\WUDFHost.exe
2014-02-25 01:09:48 142336 ----a-w- C:\Windows\System32\poqexec.exe
2014-02-25 01:09:48 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
2014-02-25 00:11:58 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll
2014-02-25 00:11:58 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll
2014-02-25 00:11:55 1395712 ----a-w- C:\Windows\System32\mfc42.dll
2014-02-25 00:11:55 1359872 ----a-w- C:\Windows\System32\mfc42u.dll
2014-02-25 00:10:35 3216384 ----a-w- C:\Windows\System32\msi.dll
2014-02-25 00:10:35 2342400 ----a-w- C:\Windows\SysWow64\msi.dll
2014-02-24 23:21:58 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2014-02-24 23:19:35 642944 ----a-w- C:\Windows\System32\winload.efi
2014-02-24 23:19:35 605552 ----a-w- C:\Windows\System32\winload.exe
2014-02-24 23:19:35 566208 ----a-w- C:\Windows\System32\winresume.efi
2014-02-24 23:19:35 518672 ----a-w- C:\Windows\System32\winresume.exe
2014-02-24 23:19:35 20352 ----a-w- C:\Windows\System32\kdusb.dll
2014-02-24 23:19:35 19328 ----a-w- C:\Windows\System32\kd1394.dll
2014-02-24 23:19:35 17792 ----a-w- C:\Windows\System32\kdcom.dll
2014-02-24 23:06:26 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2014-02-24 23:06:26 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-02-24 23:06:26 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2014-02-24 19:46:01 -------- d-----w- C:\Windows\Migration
2014-02-24 19:43:35 -------- d-----w- C:\Program Files (x86)\MSXML 4.0
2014-02-24 16:33:20 95744 ----a-w- C:\Windows\System32\synceng.dll
2014-02-24 16:33:20 78336 ----a-w- C:\Windows\SysWow64\synceng.dll
2014-02-24 16:19:55 -------- d-----w- C:\Users\Nadine\AppData\Local\{7D4BC1B6-D9C1-4429-A59B-6A144706D944}
2014-02-24 16:00:29 -------- d-----w- C:\Users\Nadine\AppData\Local\{8CE2C3BB-40F6-4F08-B76A-77645E71377E}
2014-02-24 05:27:46 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-02-24 05:27:46 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-02-24 05:27:46 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-02-24 05:10:59 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe
2014-02-24 05:10:59 31232 ----a-w- C:\Windows\System32\prevhost.exe
2014-02-23 22:46:16 -------- d-----w- C:\Users\Nadine\AppData\Local\{A0B77128-C440-4082-B342-9DDCC527780B}
2014-02-23 22:46:16 -------- d-----w- C:\Users\Nadine\AppData\Local\{69DD73A6-AD36-4B7B-B06E-EA07F95710E4}
2014-02-23 20:30:02 -------- d-----w- C:\Windows\System32\catroot2
2014-02-23 20:02:55 -------- d-----w- C:\Windows\System32\wbem\repository
2014-02-23 18:17:33 -------- d-----w- C:\Windows\System32\wbem\repository.003
2014-02-23 17:46:06 -------- d-----w- C:\Windows\System32\wbem\repository.002
2014-02-23 17:44:59 -------- d-----w- C:\Windows\SysWow64\wbem\Performance
2014-02-23 17:19:33 -------- d-----w- C:\Program Files (x86)\Tweaking.com
2014-02-23 17:03:59 -------- d-----w- C:\ProgramData\CDB
2014-02-23 16:59:29 -------- d--h--w- C:\ProgramData\Common Files
2014-02-16 00:33:56 -------- d-----w- C:\Windows\CheckSur
2014-02-15 23:11:34 -------- d-----w- C:\Users\Nadine\AppData\Local\{A4AD039E-F8FA-460C-805E-373291A457A3}
2014-02-15 20:40:59 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2014-02-15 20:40:52 99840 ----a-w- C:\Windows\System32\wudriver.dll
2014-02-15 20:40:37 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-02-15 20:40:37 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2014-02-15 20:35:41 1041000 ----a-r- C:\Windows\System32\drivers\rtwlanu.sys
2014-02-15 20:35:15 451072 ----a-w- C:\Windows\SysWow64\ISSRemoveSP.exe
2014-02-15 20:35:15 -------- d-----w- C:\Program Files (x86)\Belkin
2014-02-15 20:26:50 -------- d-----w- C:\Program Files (x86)\Common Files\Symantec Shared
2014-02-15 19:59:53 -------- d-----w- C:\Users\Nadine\AppData\Local\Diagnostics
2014-02-15 19:50:28 -------- d-----w- C:\Users\Nadine\AppData\Local\CrashDumps
2014-02-15 19:25:58 -------- d-----w- C:\Users\Nadine\AppData\Roaming\Windows Live Writer
2014-02-15 19:25:58 -------- d-----w- C:\Users\Nadine\AppData\Local\Windows Live Writer
2014-02-15 19:14:12 177752 ----a-w- C:\Windows\System32\drivers\SYMEVENT64x86.SYS
2014-02-15 19:14:12 -------- d-----w- C:\Program Files\Common Files\Symantec Shared
2014-02-15 19:05:44 -------- d-----w- C:\ProgramData\Norton
2014-02-15 18:55:44 -------- d-----w- C:\Users\Nadine\AppData\Local\ElevatedDiagnostics
2014-02-15 18:55:43 -------- d-----w- C:\ProgramData\Brother
2014-02-15 08:31:06 -------- d-----w- C:\ProgramData\clear.fi
2014-02-15 08:10:53 -------- d-----w- C:\Users\Nadine\AppData\Roaming\OEM
2014-02-15 08:10:53 -------- d-----w- C:\Users\Nadine\AppData\Local\EgisTec IPS
2014-02-15 08:09:26 -------- d-----w- C:\Program Files (x86)\OEM
2014-02-15 08:09:14 -------- d-----w- C:\ProgramData\OEM_E471269A730D
2014-02-15 08:09:11 -------- d-----w- C:\Users\Nadine\AppData\Local\Acer
2014-02-15 07:23:34 -------- d-----w- C:\Program Files (x86)\Barnes & Noble
2014-02-15 07:16:46 -------- d-----w- C:\Windows\en
2014-02-15 07:15:57 -------- d-----w- C:\Windows\fr
2014-02-15 07:15:24 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-02-15 07:10:59 1248016 ----a-w- C:\ProgramData\Microsoft\OEMOffice14\Office14\SingleImage.WW\PidGenX.dll
2014-02-15 07:09:35 -------- d-----w- C:\Program Files (x86)\Microsoft
2014-02-15 07:04:47 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
2014-02-15 07:01:16 -------- d-----w- C:\ProgramData\EgisTec
2014-02-15 06:55:13 -------- d-----w- C:\ProgramData\NVIDIA Corporation
2014-02-15 06:53:29 704000 ----a-w- C:\Windows\System32\cohelper.dll
2014-02-15 06:53:29 6136 ----a-w- C:\Windows\System32\drivers\nvphy.bin
2014-02-15 06:48:33 -------- d-----w- C:\Windows\NAPP_Dism_Log
2014-02-15 06:16:47 -------- d-----r- C:\Backup
2014-02-11 20:20:18 -------- d-----w- C:\a477725cd6cb99b9b20eb412c8
2014-02-07 15:29:16 -------- d-sh--w- C:\found.000
.
==================== Find3M ====================
.
2013-12-06 02:30:08 2048 ----a-w- C:\Windows\System32\msxml3r.dll
2013-12-06 02:30:08 1882112 ----a-w- C:\Windows\System32\msxml3.dll
2013-12-06 02:02:08 2048 ----a-w- C:\Windows\SysWow64\msxml3r.dll
2013-12-06 02:02:08 1237504 ----a-w- C:\Windows\SysWow64\msxml3.dll
2013-12-04 02:27:33 485888 ----a-w- C:\Windows\System32\secproc_isv.dll
2013-12-04 02:27:33 123392 ----a-w- C:\Windows\System32\secproc_ssp_isv.dll
2013-12-04 02:27:33 123392 ----a-w- C:\Windows\System32\secproc_ssp.dll
2013-12-04 02:27:16 488448 ----a-w- C:\Windows\System32\secproc.dll
2013-12-04 02:26:32 528384 ----a-w- C:\Windows\System32\msdrm.dll
2013-12-04 02:16:51 658432 ----a-w- C:\Windows\System32\RMActivate_isv.exe
2013-12-04 02:16:51 626176 ----a-w- C:\Windows\System32\RMActivate.exe
2013-12-04 02:16:50 552960 ----a-w- C:\Windows\System32\RMActivate_ssp_isv.exe
2013-12-04 02:16:48 553984 ----a-w- C:\Windows\System32\RMActivate_ssp.exe
2013-12-04 02:03:20 87040 ----a-w- C:\Windows\SysWow64\secproc_ssp_isv.dll
2013-12-04 02:03:20 87040 ----a-w- C:\Windows\SysWow64\secproc_ssp.dll
2013-12-04 02:03:20 423936 ----a-w- C:\Windows\SysWow64\secproc_isv.dll
2013-12-04 02:03:08 428032 ----a-w- C:\Windows\SysWow64\secproc.dll
2013-12-04 02:02:06 390144 ----a-w- C:\Windows\SysWow64\msdrm.dll
2013-12-04 01:54:14 510976 ----a-w- C:\Windows\SysWow64\RMActivate_ssp.exe
2013-12-04 01:54:10 594944 ----a-w- C:\Windows\SysWow64\RMActivate_isv.exe
2013-12-04 01:54:09 572416 ----a-w- C:\Windows\SysWow64\RMActivate.exe
2013-12-04 01:54:06 508928 ----a-w- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
.
============= FINISH: 17:00:37.07 ===============

Attached Files


Edited by MitziNadine, 25 February 2014 - 08:48 PM.


BC AdBot (Login to Remove)

 


m

#2 nasdaq

nasdaq

  • Malware Response Team
  • 38,264 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:03:39 AM

Posted 27 February 2014 - 09:20 AM

Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

Please download AdwCleaner by Xplode onto your Desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click the Scan button and wait for the process to complete.
  • Click the Report button and the report will open in Notepad.
IMPORTANT
  • If you click the Clean button all items listed in the report will be removed.
If you find some false positive items or programs that you wish to keep, Close the AdwCleaner windows.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click the Scan button and wait for the process to complete.
  • Check off the element(s) you wish to keep.
  • Click on the Clean button follow the prompts.
  • A log file will automatically open after the scan has finished.
  • Please post the content of that log file with your next answer.
  • You can find the log file at C:\AdwCleaner[Sn].txt (n is a number).
thisisujrt.gif Please download
Junkware Removal Tool to your Desktop.
  • Please close your security software to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or 7, right-mouse click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete, depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your Desktop and will automatically open.
  • Please post the contents of JRT.txt into your reply.
===

Download the correct version of this tool for your operating system.
Farbar Recovery Scan Tool (64 bit)
Farbar Recovery Scan Tool (32 bit)
and save it to a folder on your computer's Desktop.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

===

Please paste the logs in your next reply DO NOT ATTACH THEM unless specified.

Let me know what problem persists.

#3 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 27 February 2014 - 02:38 PM

Hello Nasdaq,

 

Thank you for taking up my problems.

 

I downloaded and ran the Adware Cleaner and will copy the files below.  There were actually 3 text files much alike except for the names Ro, R1 and SO.  I copied the SO text files as it appears to be minutes newer than the other 2.

 

I also downloaded the Junk Removal Tool, but after a few moments a box entitled Reg.exe-Application Error saying:

 

 

The application was unable to start correctly (0x0000008).  Click to close the application.

 

I did that and then decided to download again, as I did have to re-download the Adware Cleaner. 

 

The second time was the same result for the Junkware Removal tool.  I decided I had better send you the first file now, and not go on with your instructions until you have this much.

 

Thank you,

 

Mitzi

# AdwCleaner v3.020 - Report created 27/02/2014 at 11:08:22
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Nadine - NADINE-PC
# Running from : C:\Users\Nadine\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4LF72MEW\adwcleaner (1).exe
# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

File Deleted : C:\END
File Deleted : C:\Users\Public\Desktop\eBay.lnk

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16533

*************************

AdwCleaner[R0].txt - [1761 octets] - [27/02/2014 10:55:58]
AdwCleaner[R1].txt - [1825 octets] - [27/02/2014 11:07:01]
AdwCleaner[S0].txt - [1766 octets] - [27/02/2014 11:08:22]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1826 octets] ##########



#4 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 27 February 2014 - 06:05 PM

Hi again,

 

Since I downloaded the Adware cleaner, and tried to download the Junkware Tool, things have gotten a lot worse.

 

The browser no longer works at all, and there seem to be problems with Windows Live  Mail.  I will be communicating via my husbands laptop until mine is working again.  I wil check often to see wether you have some suggestion for getting it going again.

 

Thanks,

 

MitziNadine



#5 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 27 February 2014 - 08:51 PM

I shut it down, and now my browser seems to be working somewhat.  It opens a new window for each site.

 

Email has problems, but It apperas that I can still receive email.  When I send messages, there is no copy in the Sent box. 2 messages remain in the Outbox which are never sent and the information in them is missing so I cannot open them.  When exiting the Windows Live Mail, I continue to get a message that 2 messages are left to be sent.  I tell it "yes" to send them, but it never does.

 

I once had Internet 11, but when I first began having problems with crashes, I decided to go back to Internet 9.  It looked as that had helped for a time, but no longer. 

 

The computer had a blue-screen crash again just after I closed the Windows Live Mail.  Anyway, for the time being, I can still use the browser.

 

Those are the only changes I know of, although I am not trying any other programs until we get the bugs out of the browser and end the crashing.

 

Thanks for reading all of my woes.

 

Mitzi



#6 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 27 February 2014 - 10:25 PM

Nasdaq,

 

The report is only slightly different from the other 3.  This one is missing the list of 12 keys, so I will paste a copy.

 

Also my Norton Suite now has more problems.  It shows an error code of 8504,101 and then,  I received a notice from Norton Autofix saying:

"We were unable to find an automated fix for this issue.  Please go to our support web site for further assistance."

 

I closed the box instead.  I've seen this error before and somehow it just fixes itself when I either crash or restart.

 

This is all of the weird stuff for now.

 

Mitzi

 

# AdwCleaner v3.020 - Report created 27/02/2014 at 19:13:49
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Nadine - NADINE-PC
# Running from : C:\Users\Nadine\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WJ8KOOV6\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

***** [ Shortcuts ] *****

***** [ Registry ] *****

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16533

*************************

AdwCleaner[R0].txt - [1761 octets] - [27/02/2014 10:55:58]
AdwCleaner[R1].txt - [1825 octets] - [27/02/2014 11:07:01]
AdwCleaner[R2].txt - [888 octets] - [27/02/2014 19:03:29]
AdwCleaner[S0].txt - [1914 octets] - [27/02/2014 11:08:22]
AdwCleaner[S1].txt - [810 octets] - [27/02/2014 19:13:49]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [869 octets] ##########



#7 nasdaq

nasdaq

  • Malware Response Team
  • 38,264 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:03:39 AM

Posted 28 February 2014 - 08:51 AM

A damaged Norton installation can be a pain.

Remove your version using this un-installer.

Download and run the Norton Removal Tool FOR YOUR CURRENT PROGRAM.
https://www-secure.symantec.com/norton-support/jsp/help-solutions.jsp?docid=20080710133834EN&lg=english&ct=united+states&product=home&version=1&pvid=f-home&entsrc=redirect_pubweb

When completed restart the computer normally.

Re-install the application.

Let me know what problem persists.

#8 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 28 February 2014 - 12:46 PM

Nasdaq,

 

My last note must seem crazy.  I must have forgotten to actually post one message, or else I posted in the wrong area.

 

I had re-read all of your instructions to me, and found that I had skipped a step in the ADWclean program.  I had not pressed "Report", so I decided to re-run ADWcleaner. 

 

That is why I sent that log again.  It was a little different from the first ones that I located in C drive rather than on the desktop as it should have been.  It may make no difference now.

 

I will follow directions for fixing Norton.  I hope it will work as my Norton is provided by Comcast.

 

Thank you.



#9 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 28 February 2014 - 01:19 PM

I ran the link and uninstalled the Norton Suite.  It appeared that the reinstallation was working.  I received the pin number but then the program would not continue.

 

Upon restart, I received a message saying:

 

"Display Driver stopped responding and has recovered.

Display driver NVIDIA Windows Kernel Mode Driver, Version 307.83 stopped responding and has successfully recovered."

 

I will go back and run the uninstall link again and try once more to re-install.

 

Thanks



#10 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 28 February 2014 - 01:51 PM

Hi Nasdaq,

 

Finally this seems to be working correctly.

 

I will wait to see whether you think I should go back and try to run the Junkware Removal Tool and the Farbar Recovery Scan Tool which you had sent me in your first message.

 

Thank you,

 

Mitzi



#11 nasdaq

nasdaq

  • Malware Response Team
  • 38,264 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:03:39 AM

Posted 28 February 2014 - 02:05 PM

Just run the Farbar Recovery Scan Tool and post the log.

Add this log also.

Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
p.s.
If the SecurityCheck program fails to run for any reason, run it as an Administrator.
===

#12 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 28 February 2014 - 03:06 PM

Hi,

 

My computer crashed the moment I clicked on the Farbar Recovery Tool. 

 

The computer has started making a funny rumbling or growling sound when it restarts.

 

I went back and tried the Farbar Recovery Tool, and it worked.  Copies posted of FRST.txt and Addition attached.

 

Meantime an Attention Notice from Norton Autofix reports a Norton Security Suite Error # 3035,6.

 

In a box:

 

REPAIR - Installation

RESULT - Failed.

 

It gives me a choice to open the Support Web site.  I decided to go ahead and run Secutiry Check first, and then I can go back to the Norton Support web site if you think I should.

 

Mitzi

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-02-2014 02
Ran by Nadine (administrator) on NADINE-PC on 28-02-2014 11:48:47
Running from C:\Users\Nadine\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\N360.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\N360.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10m_ActiveX.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10060320 2010-02-09] (Realtek Semiconductor)
HKLM-x32\...\Run: [SuiteTray] - C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340336 2010-09-27] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] - C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-09-17] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisUpdate] - C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-09-17] (Egis Technology Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ArcadeMovieService] - C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-02-18] (CyberLink Corp.)
HKLM-x32\...\Run: [Hotkey Utility] - C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [620136 2011-01-18] ()
HKU\.DEFAULT\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-3471232787-2172839767-866825202-1001\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-3471232787-2172839767-866825202-1001\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://xfinity.comcast.net/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x7801727C2434CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://acer.msn.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation)
Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\syswow64\urlmon.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

==================== Services (Whitelisted) =================

R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [626208 2009-08-10] ()
R2 N360; C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\N360.exe [264360 2013-10-18] (Symantec Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [206880 2009-08-10] ()

==================== Drivers (Whitelisted) ====================

R1 BHDrvx64; C:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\BASHDefs\20140214.001\BHDrvx64.sys [1526488 2014-02-14] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1501000.012\ccSetx64.sys [162392 2013-09-25] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2014-02-28] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2014-02-28] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\IPSDefs\20140227.001\IDSvia64.sys [521944 2014-02-27] (Symantec Corporation)
S3 NAVENG; C:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\VirusDefs\20140228.002\ENG64.SYS [126040 2014-02-28] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\VirusDefs\20140228.002\EX64.SYS [2099288 2014-02-28] (Symantec Corporation)
R3 RTL8192cu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1041000 2012-02-01] (Realtek Semiconductor Corporation                           )
R3 SRTSP; C:\Windows\system32\drivers\N360x64\1501000.012\SRTSP64.SYS [858200 2013-09-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1501000.012\SRTSPX64.SYS [36952 2013-09-09] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\N360x64\1501000.012\SYMDS64.SYS [493656 2013-09-09] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\N360x64\1501000.012\SYMEFA64.SYS [1147480 2013-09-26] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-02-28] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1501000.012\Ironx64.SYS [264280 2013-09-26] (Symantec Corporation)
R1 SymNetS; C:\Windows\system32\drivers\N360x64\1501000.012\SYMNETS.SYS [590936 2013-09-25] (Symantec Corporation)
S3 cpuz134; \??\C:\Users\Nadine\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2014-02-28 11:48 - 2014-02-28 11:48 - 02155520 _____ (Farbar) C:\Users\Nadine\Downloads\FRST64.exe
2014-02-28 11:48 - 2014-02-28 11:48 - 00009607 _____ () C:\Users\Nadine\Downloads\FRST.txt
2014-02-28 11:48 - 2014-02-28 11:48 - 00000000 ____D () C:\FRST
2014-02-28 11:44 - 2014-02-28 11:44 - 00284840 _____ () C:\Windows\Minidump\022814-20295-01.dmp
2014-02-28 10:39 - 2014-02-28 10:39 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Security Suite
2014-02-28 10:37 - 2014-02-28 10:37 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-02-28 10:37 - 2014-02-28 10:37 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-02-28 10:37 - 2014-02-28 10:37 - 00002516 _____ () C:\Users\Public\Desktop\Norton Security Suite.lnk
2014-02-28 10:37 - 2014-02-28 10:37 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2014-02-28 10:37 - 2014-02-28 10:37 - 00000000 ____D () C:\Program Files (x86)\Norton Security Suite
2014-02-28 10:29 - 2014-02-28 10:29 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{77850463-021A-45F7-9461-9E8A2F4B988E}
2014-02-28 10:20 - 2014-02-28 10:21 - 00869456 _____ () C:\Users\Nadine\Downloads\Norton_Removal_Tool.exe
2014-02-28 10:02 - 2014-02-28 10:03 - 01021632 _____ (Symantec Corporation) C:\Users\Nadine\Downloads\Norton_Download_Manager.exe
2014-02-27 20:11 - 2014-02-27 20:12 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-27 20:11 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Roaming\Macromedia
2014-02-27 20:11 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Roaming\Adobe
2014-02-27 20:11 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Adobe
2014-02-27 20:11 - 2011-04-13 01:28 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Downloaded Installations
2014-02-27 20:11 - 2011-04-13 01:22 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\Windows Live
2014-02-27 20:11 - 2011-04-13 01:21 - 00057560 _____ () C:\Users\UpdatusUser\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-27 20:11 - 2010-11-20 19:40 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-27 20:11 - 2010-11-20 19:40 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-27 20:11 - 2010-11-20 18:51 - 00001449 _____ () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-27 20:11 - 2010-11-20 18:51 - 00001415 _____ () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-02-27 20:11 - 2010-11-20 18:50 - 00000020 ___SH () C:\Users\UpdatusUser\ntuser.ini
2014-02-27 20:11 - 2009-07-13 20:54 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-27 20:11 - 2009-07-13 20:49 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-27 20:10 - 2013-01-31 01:25 - 06207776 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-02-27 20:10 - 2013-01-31 01:25 - 03300640 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-02-27 20:10 - 2013-01-31 01:24 - 02558240 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-02-27 20:10 - 2013-01-31 01:24 - 00878368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-02-27 20:10 - 2013-01-31 01:24 - 00118560 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-02-27 20:10 - 2013-01-31 01:24 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-02-27 19:18 - 2014-02-27 19:18 - 00283672 _____ () C:\Windows\Minidump\022714-20061-01.dmp
2014-02-27 18:24 - 2014-02-27 18:24 - 00281080 _____ () C:\Windows\Minidump\022714-32619-01.dmp
2014-02-27 17:57 - 2014-02-27 17:57 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-02-27 17:57 - 2014-02-27 17:57 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-02-27 17:41 - 2014-02-27 17:41 - 00286000 _____ () C:\Windows\Minidump\022714-20638-01.dmp
2014-02-27 14:04 - 2014-02-27 14:04 - 00283400 _____ () C:\Windows\Minidump\022714-26457-01.dmp
2014-02-27 11:16 - 2014-02-27 11:16 - 00000000 ____D () C:\Windows\ERUNT
2014-02-27 10:55 - 2014-02-27 19:13 - 00000000 ____D () C:\AdwCleaner
2014-02-27 10:48 - 2014-02-27 10:49 - 00280776 _____ () C:\Windows\Minidump\022714-26566-01.dmp
2014-02-27 10:26 - 2014-02-27 10:26 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{4F4223AE-2A4B-48C3-A207-3B66E9F4182D}
2014-02-25 17:01 - 2014-02-25 17:40 - 00020270 _____ () C:\Users\Nadine\Desktop\dds.txt
2014-02-25 17:01 - 2014-02-25 17:01 - 00083617 _____ () C:\Users\Nadine\Desktop\attach.txt
2014-02-25 16:57 - 2014-02-25 16:57 - 00688992 ____R (Swearware) C:\Users\Nadine\Desktop\dds.com
2014-02-25 16:55 - 2014-02-25 16:55 - 00688992 _____ (Swearware) C:\Users\Nadine\Downloads\dds (2).com
2014-02-25 16:50 - 2014-02-25 16:50 - 00688992 _____ (Swearware) C:\Users\Nadine\Downloads\dds (1).com
2014-02-25 16:48 - 2014-02-25 16:48 - 00688992 _____ (Swearware) C:\Users\Nadine\Downloads\dds.com
2014-02-25 12:10 - 2014-02-25 12:11 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{E7AD2C4D-8CB6-4594-A019-0B823FC724CB}
2014-02-25 11:25 - 2014-02-25 11:26 - 00280200 _____ () C:\Windows\Minidump\022514-37221-01.dmp
2014-02-25 10:39 - 2013-07-08 20:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-02-25 10:39 - 2013-07-04 04:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-02-25 10:39 - 2013-07-04 03:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-02-25 10:38 - 2013-10-18 18:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-02-25 10:38 - 2013-10-18 17:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-02-25 10:38 - 2013-10-05 12:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-02-25 10:38 - 2013-10-05 11:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-02-25 10:38 - 2013-07-08 21:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-02-25 10:38 - 2013-07-08 21:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-02-25 10:38 - 2013-07-08 21:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-02-25 10:38 - 2013-07-08 20:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-02-25 10:38 - 2013-07-08 20:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-02-25 10:35 - 2013-12-31 15:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-25 10:35 - 2013-12-31 15:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-25 10:35 - 2013-11-11 18:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-02-25 10:35 - 2013-11-11 18:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-02-25 10:15 - 2013-12-05 18:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-25 10:15 - 2013-12-05 18:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-25 10:15 - 2013-12-05 18:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-25 10:15 - 2013-12-05 18:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-25 10:15 - 2013-10-03 18:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-02-25 10:15 - 2013-10-03 18:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-02-25 10:15 - 2013-10-03 18:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-02-25 10:15 - 2013-10-03 18:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-02-25 10:15 - 2013-10-03 17:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-02-25 10:15 - 2013-10-03 17:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-02-25 10:15 - 2013-10-03 17:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2014-02-25 10:15 - 2013-10-03 17:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-02-25 10:15 - 2013-09-27 17:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-02-25 10:14 - 2013-11-26 17:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-02-25 10:14 - 2013-09-24 18:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-02-25 10:14 - 2013-09-24 18:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-02-25 10:14 - 2013-09-24 18:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-02-25 10:14 - 2013-09-24 18:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-02-25 10:14 - 2013-09-24 18:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-02-25 10:14 - 2013-09-24 18:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-02-25 10:14 - 2013-09-24 18:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-02-25 10:14 - 2013-09-24 18:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-02-25 10:14 - 2013-09-24 17:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-02-25 10:14 - 2013-09-24 17:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-02-25 10:14 - 2013-09-24 17:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-02-25 10:14 - 2013-09-24 17:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-02-25 10:14 - 2013-09-24 17:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-02-25 10:14 - 2013-08-01 18:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-02-25 10:14 - 2013-08-01 18:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-02-25 10:14 - 2013-08-01 18:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-02-25 10:14 - 2013-08-01 18:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-02-25 10:14 - 2013-08-01 18:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-02-25 10:14 - 2013-08-01 18:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-02-25 10:14 - 2013-08-01 18:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-02-25 10:14 - 2013-08-01 18:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-02-25 10:14 - 2013-08-01 18:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 18:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-02-25 10:14 - 2013-08-01 17:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-02-25 10:14 - 2013-08-01 17:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-02-25 10:14 - 2013-08-01 17:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-02-25 10:14 - 2013-08-01 17:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-02-25 10:14 - 2013-08-01 17:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 17:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-02-25 10:14 - 2013-08-01 16:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-02-25 10:14 - 2013-08-01 16:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-02-25 10:14 - 2013-08-01 16:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-02-25 10:14 - 2013-08-01 16:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-02-25 10:14 - 2013-08-01 16:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-02-25 10:14 - 2013-08-01 16:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 16:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 16:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-02-25 10:14 - 2013-08-01 16:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-02-25 10:14 - 2013-07-12 02:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-02-25 10:14 - 2013-07-04 04:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-02-25 10:14 - 2013-06-25 14:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-02-25 10:13 - 2013-11-26 02:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-02-25 10:03 - 2014-02-25 10:03 - 00279952 _____ () C:\Windows\Minidump\022514-43274-01.dmp
2014-02-25 09:38 - 2014-02-25 09:39 - 00281080 _____ () C:\Windows\Minidump\022514-25989-01.dmp
2014-02-25 09:30 - 2013-05-09 21:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-02-25 09:30 - 2013-05-09 21:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-02-25 09:30 - 2013-05-09 20:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-02-25 09:30 - 2013-05-09 20:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-02-25 09:15 - 2013-12-03 18:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-25 09:15 - 2013-12-03 18:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-25 09:15 - 2013-12-03 18:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-25 09:15 - 2013-12-03 18:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-25 09:15 - 2013-12-03 18:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-25 09:15 - 2013-12-03 18:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-25 09:15 - 2013-12-03 18:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-25 09:15 - 2013-12-03 18:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-25 09:15 - 2013-12-03 18:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-25 09:15 - 2013-12-03 18:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-25 09:15 - 2013-12-03 18:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-25 09:15 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-25 09:15 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-25 09:15 - 2013-12-03 18:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-25 09:15 - 2013-12-03 17:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-25 09:15 - 2013-12-03 17:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-25 09:15 - 2013-12-03 17:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-25 09:15 - 2013-12-03 17:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-25 09:14 - 2013-04-12 06:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-02-25 09:13 - 2013-07-02 20:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-02-25 09:13 - 2013-07-02 20:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-02-25 09:13 - 2013-06-14 20:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-02-25 09:13 - 2013-06-05 21:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-02-25 09:13 - 2013-06-05 21:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-02-25 09:13 - 2013-06-05 21:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-02-25 09:13 - 2013-06-05 21:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-02-25 09:13 - 2013-06-05 20:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-02-25 09:13 - 2013-06-05 20:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-02-25 09:13 - 2013-06-05 20:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-02-25 09:13 - 2013-06-05 19:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-02-25 09:13 - 2013-06-05 19:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-02-25 09:13 - 2013-06-05 19:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-02-25 08:59 - 2014-02-25 09:00 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\TP
2014-02-25 08:20 - 2014-02-25 08:20 - 00280920 _____ () C:\Windows\Minidump\022514-18673-01.dmp
2014-02-25 07:31 - 2013-07-08 21:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-02-25 07:31 - 2013-07-08 20:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-02-25 07:31 - 2013-07-04 04:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-02-25 07:31 - 2013-07-04 04:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-02-25 07:31 - 2013-07-04 03:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-02-25 07:31 - 2013-07-04 03:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2014-02-25 07:31 - 2013-07-04 02:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-02-25 07:24 - 2014-02-25 07:24 - 00281288 _____ () C:\Windows\Minidump\022514-43056-01.dmp
2014-02-24 23:18 - 2014-02-24 23:18 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{EDA95255-08E9-446D-87A0-FAEF2FE7856D}
2014-02-24 22:56 - 2014-02-24 22:56 - 00281400 _____ () C:\Windows\Minidump\022414-20046-01.dmp
2014-02-24 22:46 - 2014-02-24 22:46 - 17849344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 12345344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 09739264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-02-24 22:46 - 2014-02-24 22:46 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-02-24 22:46 - 2014-02-24 22:46 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-24 22:46 - 2014-02-24 22:46 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-24 22:46 - 2014-02-24 22:46 - 02334720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-24 22:46 - 2014-02-24 22:46 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-24 22:46 - 2014-02-24 22:46 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01347072 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01105408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-02-24 22:46 - 2014-02-24 22:46 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-02-24 22:46 - 2014-02-24 22:46 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-02-24 22:46 - 2014-02-24 22:46 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-02-24 22:46 - 2014-02-24 22:46 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-02-24 22:38 - 2012-11-21 20:45 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-02-24 22:37 - 2012-11-21 21:44 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-02-24 22:07 - 2014-02-24 22:07 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-02-24 22:07 - 2014-02-24 22:07 - 00000000 ____D () C:\Intel
2014-02-24 21:33 - 2012-10-31 21:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-02-24 21:33 - 2012-10-31 20:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-02-24 21:30 - 2014-02-24 21:30 - 00280840 _____ () C:\Windows\Minidump\022414-33462-01.dmp
2014-02-24 21:29 - 2014-02-24 21:29 - 00019856 ____N () C:\bootsqm.dat
2014-02-24 21:22 - 2012-11-01 21:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-02-24 21:22 - 2012-11-01 21:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2014-02-24 21:18 - 2012-08-22 10:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-02-24 21:18 - 2012-08-21 13:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2014-02-24 21:18 - 2012-07-04 12:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2014-02-24 21:17 - 2012-04-30 21:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-02-24 21:15 - 2014-02-24 21:15 - 00281432 _____ () C:\Windows\Minidump\022414-31434-01.dmp
2014-02-24 21:10 - 2012-08-10 16:56 - 00715776 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-02-24 21:10 - 2012-08-10 15:56 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-02-24 20:10 - 2014-02-24 20:11 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-24 20:10 - 2014-02-04 19:09 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-24 20:08 - 2012-07-25 20:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-02-24 20:08 - 2012-07-25 18:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-02-24 20:08 - 2012-06-02 06:35 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-02-24 20:07 - 2012-07-25 19:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-02-24 20:07 - 2012-07-25 19:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-02-24 20:07 - 2012-07-25 19:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-02-24 20:07 - 2012-07-25 19:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-02-24 20:07 - 2012-07-25 19:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-02-24 20:07 - 2012-07-25 18:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-02-24 20:07 - 2012-07-25 18:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-02-24 20:07 - 2012-06-02 06:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-02-24 17:09 - 2011-04-08 22:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-02-24 17:09 - 2011-04-08 21:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-02-24 17:01 - 2014-02-24 17:01 - 00280904 _____ () C:\Windows\Minidump\022414-21512-01.dmp
2014-02-24 16:12 - 2012-01-04 02:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-02-24 16:12 - 2012-01-04 00:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2014-02-24 16:12 - 2011-12-29 22:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-02-24 16:12 - 2011-12-29 21:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2014-02-24 16:12 - 2011-11-16 22:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-02-24 16:12 - 2011-11-16 21:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-02-24 16:12 - 2011-10-25 21:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-02-24 16:12 - 2011-10-25 21:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-02-24 16:12 - 2011-10-25 20:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2014-02-24 16:12 - 2011-10-25 20:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-02-24 16:12 - 2011-07-08 18:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-02-24 16:12 - 2011-06-15 02:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-02-24 16:12 - 2011-06-15 02:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-02-24 16:12 - 2011-06-15 02:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-02-24 16:12 - 2011-06-15 02:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-02-24 16:12 - 2011-06-15 00:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2014-02-24 16:12 - 2011-06-15 00:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2014-02-24 16:12 - 2011-06-15 00:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2014-02-24 16:12 - 2011-06-15 00:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2014-02-24 16:12 - 2011-06-15 00:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2014-02-24 16:12 - 2011-04-26 18:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-02-24 16:12 - 2011-04-26 18:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-02-24 16:12 - 2010-12-23 02:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-02-24 16:12 - 2010-12-23 02:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-02-24 16:12 - 2010-12-23 02:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-02-24 16:12 - 2010-12-22 21:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2014-02-24 16:12 - 2010-12-22 21:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2014-02-24 16:12 - 2010-12-22 21:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2014-02-24 16:11 - 2011-03-10 22:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2014-02-24 16:11 - 2011-03-10 22:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2014-02-24 16:11 - 2011-03-10 21:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2014-02-24 16:11 - 2011-03-10 21:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2014-02-24 16:10 - 2012-04-07 04:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-02-24 16:10 - 2012-04-07 03:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-02-24 15:27 - 2011-06-15 21:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-02-24 15:27 - 2011-06-15 20:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2014-02-24 15:27 - 2011-05-03 21:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-02-24 15:27 - 2011-05-03 21:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-02-24 15:27 - 2011-05-03 21:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-02-24 15:27 - 2011-05-03 21:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-02-24 15:27 - 2011-05-03 21:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-02-24 15:27 - 2011-05-03 21:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-02-24 15:27 - 2011-05-03 21:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-02-24 15:27 - 2011-05-03 21:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-02-24 15:27 - 2011-05-03 21:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-02-24 15:27 - 2011-05-03 20:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2014-02-24 15:27 - 2011-05-03 20:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2014-02-24 15:27 - 2011-05-03 20:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2014-02-24 15:27 - 2011-05-03 20:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2014-02-24 15:27 - 2011-05-03 20:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2014-02-24 15:27 - 2011-05-03 20:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2014-02-24 15:27 - 2011-05-03 20:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2014-02-24 15:27 - 2011-05-03 20:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2014-02-24 15:27 - 2011-05-03 20:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2014-02-24 15:21 - 2011-04-22 14:15 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-02-24 15:19 - 2011-02-05 09:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-02-24 15:19 - 2011-02-05 09:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2014-02-24 15:19 - 2011-02-05 09:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2014-02-24 15:19 - 2011-02-05 09:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll
2014-02-24 15:19 - 2011-02-05 09:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-02-24 15:19 - 2011-02-05 09:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-02-24 15:19 - 2011-02-05 09:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-02-24 15:11 - 2012-04-27 19:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-02-24 15:11 - 2012-03-16 23:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-02-24 15:11 - 2011-08-16 21:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-02-24 15:11 - 2011-08-16 21:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-02-24 15:11 - 2011-08-16 20:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2014-02-24 15:11 - 2011-08-16 20:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2014-02-24 15:11 - 2011-04-28 19:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-02-24 15:11 - 2011-04-28 19:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-02-24 15:11 - 2011-04-28 19:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-02-24 15:11 - 2011-03-02 22:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-02-24 15:11 - 2011-03-02 22:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-02-24 15:11 - 2011-03-02 22:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-02-24 15:11 - 2011-03-02 21:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-02-24 15:11 - 2011-03-02 21:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2014-02-24 15:06 - 2012-02-16 22:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-02-24 15:06 - 2012-02-16 21:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-02-24 15:06 - 2012-02-16 20:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-02-24 14:59 - 2014-02-24 14:59 - 00280928 _____ () C:\Windows\Minidump\022414-19188-01.dmp
2014-02-24 12:01 - 2014-02-24 12:01 - 00281464 _____ () C:\Windows\Minidump\022414-39624-01.dmp
2014-02-24 11:43 - 2014-02-24 11:44 - 00295202 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-02-24 11:43 - 2014-02-24 11:43 - 00295798 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-02-24 11:43 - 2014-02-24 11:43 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-02-24 11:42 - 2014-02-24 22:46 - 00006547 _____ () C:\Windows\IE9_main.log
2014-02-24 10:57 - 2014-02-24 10:57 - 00279856 _____ () C:\Windows\Minidump\022414-25116-01.dmp
2014-02-24 09:24 - 2014-02-24 09:24 - 00280904 _____ () C:\Windows\Minidump\022414-32042-01.dmp
2014-02-24 08:33 - 2012-09-25 14:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2014-02-24 08:33 - 2012-09-25 14:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-02-24 08:29 - 2013-07-25 17:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-02-24 08:29 - 2013-07-25 17:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-02-24 08:28 - 2013-10-02 18:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-02-24 08:28 - 2013-10-02 18:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-02-24 08:28 - 2013-07-25 18:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-02-24 08:28 - 2013-07-25 18:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-02-24 08:28 - 2013-07-20 02:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-02-24 08:28 - 2013-07-20 02:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-02-24 08:28 - 2013-05-12 21:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-02-24 08:28 - 2013-05-12 19:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-02-24 08:28 - 2013-05-12 19:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-02-24 08:28 - 2013-05-12 19:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-02-24 08:28 - 2013-05-09 21:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2014-02-24 08:28 - 2013-05-09 19:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2014-02-24 08:28 - 2013-04-25 21:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-02-24 08:28 - 2013-04-25 20:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-02-24 08:28 - 2012-11-22 19:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-02-24 08:28 - 2011-05-02 21:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-02-24 08:28 - 2011-05-02 20:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-02-24 08:19 - 2014-02-24 08:20 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{7D4BC1B6-D9C1-4429-A59B-6A144706D944}
2014-02-24 08:03 - 2014-02-24 08:03 - 00285656 _____ () C:\Windows\Minidump\022414-19796-01.dmp
2014-02-24 08:00 - 2014-02-24 08:00 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{8CE2C3BB-40F6-4F08-B76A-77645E71377E}
2014-02-24 03:48 - 2014-02-24 03:48 - 00279504 _____ () C:\Windows\Minidump\022414-21590-01.dmp
2014-02-23 23:39 - 2014-02-23 23:39 - 00279760 _____ () C:\Windows\Minidump\022314-53882-01.dmp
2014-02-23 21:27 - 2012-02-29 22:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-02-23 21:27 - 2012-02-29 22:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-02-23 21:27 - 2012-02-29 21:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2014-02-23 21:11 - 2013-07-05 22:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-02-23 21:11 - 2013-01-23 22:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-02-23 21:11 - 2013-01-02 22:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-02-23 21:11 - 2012-08-22 10:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-02-23 21:11 - 2012-07-04 14:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-02-23 21:11 - 2012-07-04 14:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-02-23 21:11 - 2012-07-04 14:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-02-23 21:11 - 2012-07-04 13:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2014-02-23 21:11 - 2012-07-04 13:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2014-02-23 21:11 - 2011-05-24 03:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-02-23 21:11 - 2011-05-24 02:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2014-02-23 21:11 - 2011-05-24 02:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2014-02-23 21:11 - 2011-05-24 02:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2014-02-23 21:11 - 2011-05-24 02:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2014-02-23 21:10 - 2011-02-18 02:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2014-02-23 21:10 - 2011-02-17 21:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2014-02-23 21:09 - 2013-10-11 18:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-02-23 21:09 - 2013-10-11 18:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-02-23 21:09 - 2013-10-11 18:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-02-23 21:09 - 2013-10-11 18:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-02-23 21:09 - 2013-10-11 18:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-02-23 21:09 - 2013-10-11 18:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-02-23 21:09 - 2013-10-11 18:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-02-23 21:09 - 2013-10-11 18:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-02-23 21:09 - 2013-10-11 18:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-02-23 21:09 - 2013-10-11 17:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-02-23 21:09 - 2013-10-11 17:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-02-23 21:09 - 2013-10-11 17:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-02-23 21:09 - 2013-10-11 17:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-02-23 21:09 - 2013-08-27 17:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-02-23 21:09 - 2013-08-27 01:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-02-23 21:09 - 2013-08-27 01:01 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-02-23 21:09 - 2013-08-27 00:21 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-02-23 21:09 - 2013-08-01 04:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-02-23 21:09 - 2013-04-09 22:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-02-23 21:09 - 2012-06-05 22:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2014-02-23 21:09 - 2012-06-05 21:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2014-02-23 21:09 - 2012-05-13 21:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-02-23 21:09 - 2012-05-05 00:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-02-23 21:09 - 2012-05-04 23:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2014-02-23 21:09 - 2011-12-16 00:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-02-23 21:09 - 2011-12-15 23:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2014-02-23 21:09 - 2011-11-19 06:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-02-23 21:09 - 2011-11-19 06:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-02-23 21:09 - 2011-10-14 22:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-02-23 21:09 - 2011-10-14 21:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2014-02-23 21:09 - 2011-08-26 21:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-02-23 21:09 - 2011-08-26 21:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-02-23 21:09 - 2011-08-26 20:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-02-23 21:09 - 2011-08-26 20:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2014-02-23 21:09 - 2011-02-22 20:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-02-23 21:09 - 2011-02-12 03:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2014-02-23 21:09 - 2011-02-03 03:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-02-23 21:05 - 2014-02-23 21:05 - 00281256 _____ () C:\Windows\Minidump\022314-33805-01.dmp
2014-02-23 20:33 - 2014-02-23 20:33 - 00003591 _____ () C:\Users\Nadine\Desktop\Msirepair.reg
2014-02-23 20:16 - 2014-02-23 20:16 - 00007908 _____ () C:\Users\Nadine\Documents\registrybackup5.reg
2014-02-23 20:15 - 2014-02-23 20:15 - 167658404 _____ () C:\Users\Nadine\Documents\registrybackup3.reg
2014-02-23 20:15 - 2014-02-23 20:15 - 06288502 _____ () C:\Users\Nadine\Documents\registrybackup4.reg
2014-02-23 20:14 - 2014-02-23 20:14 - 31869040 _____ () C:\Users\Nadine\Documents\registrybackup.reg
2014-02-23 20:14 - 2014-02-23 20:14 - 03541062 _____ () C:\Users\Nadine\Documents\registrybackup2.reg
2014-02-23 14:46 - 2014-02-23 14:46 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{A0B77128-C440-4082-B342-9DDCC527780B}
2014-02-23 14:46 - 2014-02-23 14:46 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{69DD73A6-AD36-4B7B-B06E-EA07F95710E4}
2014-02-23 12:19 - 2014-02-23 12:19 - 00281384 _____ () C:\Windows\Minidump\022314-26551-01.dmp
2014-02-23 09:44 - 2014-02-27 17:59 - 00757952 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-23 09:42 - 2014-02-23 12:10 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE
2014-02-23 09:22 - 2014-02-23 09:22 - 00002163 _____ () C:\Users\Nadine\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2014-02-23 09:19 - 2014-02-23 09:19 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2014-02-23 09:03 - 2014-02-23 09:04 - 00000000 ____D () C:\ProgramData\CDB
2014-02-15 18:58 - 2014-02-15 18:58 - 00281504 _____ () C:\Windows\Minidump\021514-24538-01.dmp
2014-02-15 16:33 - 2014-02-15 16:33 - 00000000 ____D () C:\Windows\CheckSur
2014-02-15 15:11 - 2014-02-15 15:11 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{A4AD039E-F8FA-460C-805E-373291A457A3}
2014-02-15 12:40 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-02-15 12:40 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-02-15 12:40 - 2012-06-02 14:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-02-15 12:40 - 2012-06-02 14:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-02-15 12:40 - 2012-06-02 14:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-02-15 12:40 - 2012-06-02 14:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-02-15 12:40 - 2012-06-02 14:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-02-15 12:40 - 2012-06-02 14:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-02-15 12:40 - 2012-06-02 14:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-02-15 12:35 - 2014-02-15 12:35 - 00000000 ____D () C:\Program Files (x86)\Belkin
2014-02-15 12:35 - 2012-02-22 17:01 - 00451072 _____ () C:\Windows\SysWOW64\ISSRemoveSP.exe
2014-02-15 12:35 - 2012-02-01 00:19 - 01041000 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtwlanu.sys
2014-02-15 12:34 - 2014-02-15 12:34 - 00281464 _____ () C:\Windows\Minidump\021514-17472-01.dmp
2014-02-15 12:21 - 2014-02-15 12:21 - 00282848 _____ () C:\Windows\Minidump\021514-19422-01.dmp
2014-02-15 11:50 - 2014-02-28 10:06 - 00000000 ____D () C:\Users\Nadine\AppData\Local\CrashDumps
2014-02-15 11:25 - 2014-02-27 12:57 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Windows Live Writer
2014-02-15 11:25 - 2014-02-27 12:52 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\Windows Live Writer
2014-02-15 11:14 - 2014-02-28 10:37 - 00003228 _____ () C:\Windows\System32\Tasks\Norton WSC Integration
2014-02-15 11:13 - 2014-02-15 11:13 - 00000000 ____D () C:\Windows\system32\Drivers\N360x64
2014-02-15 11:13 - 2014-02-15 11:13 - 00000000 ____D () C:\Users\Nadine\Documents\Symantec
2014-02-15 11:05 - 2014-02-28 10:38 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
2014-02-15 11:05 - 2014-02-28 10:38 - 00000000 ____D () C:\ProgramData\Norton
2014-02-15 11:05 - 2014-02-28 10:36 - 00001234 _____ () C:\Users\Nadine\Desktop\Norton Installation Files.lnk
2014-02-15 11:05 - 2014-02-15 11:05 - 00000000 ____D () C:\Users\Public\Downloads\Norton
2014-02-15 10:55 - 2014-02-15 10:55 - 00000000 ____D () C:\ProgramData\Brother
2014-02-15 00:31 - 2014-02-28 11:44 - 00000000 ____D () C:\ProgramData\clear.fi
2014-02-15 00:29 - 2014-02-28 11:44 - 476371405 _____ () C:\Windows\MEMORY.DMP
2014-02-15 00:29 - 2014-02-28 11:44 - 00000000 ____D () C:\Windows\Minidump
2014-02-15 00:29 - 2014-02-15 00:29 - 00281840 _____ () C:\Windows\Minidump\021514-18610-01.dmp
2014-02-15 00:11 - 2014-02-28 11:30 - 00000388 _____ () C:\Windows\Tasks\Acer Registration - Data Sending task.job
2014-02-15 00:11 - 2014-02-15 00:11 - 00003462 _____ () C:\Windows\System32\Tasks\Acer Registration - Data Sending task
2014-02-15 00:10 - 2014-02-15 00:10 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\OEM
2014-02-15 00:10 - 2014-02-15 00:10 - 00000000 ____D () C:\Users\Nadine\AppData\Local\EgisTec IPS
2014-02-15 00:09 - 2014-02-15 00:09 - 00002102 _____ () C:\Users\Public\Desktop\Netflix.lnk
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\CyberLink
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Acer
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\ProgramData\OEM_E471269A730D
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\Program Files (x86)\OEM
2014-02-15 00:08 - 2014-02-25 12:32 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Windows Live
2014-02-15 00:08 - 2014-02-25 10:04 - 00000000 ___RD () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-15 00:08 - 2014-02-25 10:04 - 00000000 ___RD () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-15 00:08 - 2014-02-24 23:18 - 00058016 _____ () C:\Users\Nadine\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-15 00:08 - 2014-02-24 22:57 - 00001447 _____ () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-15 00:08 - 2014-02-24 22:57 - 00001413 _____ () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-02-15 00:08 - 2014-02-15 00:10 - 00000000 ____D () C:\Users\Nadine\AppData\Local\PowerCinema
2014-02-15 00:08 - 2014-02-15 00:08 - 00000915 _____ () C:\Users\Public\Desktop\Times Reader.lnk
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 __SHD () C:\Recovery
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine\AppData\Local\VirtualStore
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Adobe
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Program Files (x86)\Times Reader
2014-02-15 00:08 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\Macromedia
2014-02-15 00:08 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\Adobe
2014-02-15 00:08 - 2011-04-13 01:28 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Downloaded Installations
2014-02-15 00:08 - 2010-11-20 18:50 - 00000020 ___SH () C:\Users\Nadine\ntuser.ini
2014-02-15 00:08 - 2009-07-13 20:54 - 00000000 ___RD () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-15 00:08 - 2009-07-13 20:49 - 00000000 ___RD () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-14 23:23 - 2014-02-14 23:23 - 00001212 _____ () C:\Users\Public\Desktop\NOOK for PC.lnk
2014-02-14 23:23 - 2014-02-14 23:23 - 00000000 ____D () C:\Program Files (x86)\Barnes & Noble
2014-02-14 23:19 - 2014-02-14 23:19 - 00003418 _____ () C:\Windows\System32\Tasks\clear.fi
2014-02-14 23:19 - 2014-02-14 23:19 - 00003366 _____ () C:\Windows\System32\Tasks\DMREngine
2014-02-14 23:19 - 2014-02-14 23:19 - 00003348 _____ () C:\Windows\System32\Tasks\clear.fiAgent
2014-02-14 23:19 - 2014-02-14 23:19 - 00002171 _____ () C:\Users\Public\Desktop\clear.fi.lnk
2014-02-14 23:18 - 2014-02-14 23:18 - 00000000 ____D () C:\Program Files (x86)\Cyberlink
2014-02-14 23:17 - 2014-02-14 23:20 - 00015148 _____ () C:\ProgramData\ArcadeDeluxe5.log
2014-02-14 23:17 - 2014-02-14 23:20 - 00000000 ____D () C:\ProgramData\CyberLink
2014-02-14 23:16 - 2014-02-14 23:16 - 00000000 ____D () C:\Windows\en
2014-02-14 23:15 - 2014-02-14 23:15 - 00000000 ____D () C:\Windows\fr
2014-02-14 23:15 - 2014-02-14 23:15 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-02-14 23:13 - 2014-02-14 23:24 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-02-14 23:13 - 2014-02-14 23:13 - 00000000 ____D () C:\Program Files\Windows Live
2014-02-14 23:12 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-02-14 23:12 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-02-14 23:12 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-02-14 23:12 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-02-14 23:12 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-02-14 23:12 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-02-14 23:11 - 2014-02-14 23:11 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-02-14 23:04 - 2014-02-27 20:11 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-02-14 23:01 - 2014-02-14 23:01 - 00000000 ____D () C:\ProgramData\EgisTec
2014-02-14 22:56 - 2014-02-14 22:56 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-02-14 22:56 - 2014-02-14 22:56 - 00000000 ____D () C:\Program Files\Realtek
2014-02-14 22:56 - 2014-02-14 22:56 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-02-14 22:56 - 2010-02-09 07:37 - 01872416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-02-14 22:56 - 2010-02-09 07:37 - 00612384 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-02-14 22:56 - 2010-02-09 07:37 - 00332320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-02-14 22:56 - 2010-02-09 07:37 - 00149536 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-02-14 22:56 - 2010-02-09 07:36 - 01631776 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-02-14 22:56 - 2010-02-09 07:36 - 01210912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-02-14 22:56 - 2010-02-09 07:36 - 00477216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-02-14 22:56 - 2010-02-09 07:36 - 00069664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2014-02-14 22:56 - 2010-02-09 07:28 - 02269600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-02-14 22:56 - 2010-02-01 00:14 - 01247776 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-02-14 22:56 - 2010-01-27 20:23 - 00325904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-02-14 22:56 - 2010-01-25 19:38 - 00168288 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-02-14 22:56 - 2010-01-25 03:12 - 00321440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-02-14 22:56 - 2010-01-04 21:41 - 01325328 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:41 - 00474896 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 01178384 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 01110800 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 00504592 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 00315152 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 00268560 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 00265488 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 00123664 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2014-02-14 22:56 - 2010-01-04 21:40 - 00123152 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2014-02-14 22:56 - 2009-12-15 02:26 - 00372936 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-02-14 22:56 - 2009-12-15 02:26 - 00201928 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-02-14 22:56 - 2009-12-15 02:26 - 00099016 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-02-14 22:56 - 2009-12-15 02:26 - 00076488 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-02-14 22:56 - 2009-12-10 17:55 - 00307920 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-02-14 22:56 - 2009-12-10 17:55 - 00307920 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-02-14 22:56 - 2009-11-23 17:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-02-14 22:56 - 2009-11-23 17:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-02-14 22:56 - 2009-11-23 17:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-02-14 22:56 - 2009-11-23 17:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-02-14 22:56 - 2009-11-18 02:42 - 02719504 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2014-02-14 22:56 - 2009-11-18 02:42 - 02197264 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2014-02-14 22:56 - 2009-11-17 02:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-02-14 22:55 - 2014-02-14 22:55 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-02-14 22:54 - 2014-02-28 11:47 - 01890530 _____ () C:\Windows\WindowsUpdate.log
2014-02-14 22:54 - 2014-02-27 20:11 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-02-14 22:54 - 2013-02-19 22:32 - 18376008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-02-14 22:54 - 2013-02-19 22:32 - 00016843 _____ () C:\Windows\system32\nvinfo.pb
2014-02-14 22:54 - 2011-01-26 18:05 - 01614440 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco642090.dll
2014-02-14 22:54 - 2011-01-26 18:05 - 01359976 _____ (NVIDIA Corporation) C:\Windows\system32\nvgenco642040.dll
2014-02-14 22:54 - 2011-01-26 18:05 - 00067176 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-02-14 22:54 - 2011-01-26 18:05 - 00057960 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-02-14 22:54 - 2011-01-26 18:05 - 00011240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvBridge.kmd
2014-02-14 22:53 - 2014-02-14 22:53 - 00005060 _____ () C:\Windows\DPINST.LOG
2014-02-14 22:53 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-02-14 22:53 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Adobe
2014-02-14 22:53 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Default\AppData\Local\Adobe
2014-02-14 22:53 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-02-14 22:53 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Adobe
2014-02-14 22:53 - 2011-04-13 01:32 - 00000000 ____D () C:\Users\Default User\AppData\Local\Adobe
2014-02-14 22:53 - 2011-04-13 01:28 - 00000000 ____D () C:\Users\Default\AppData\Local\Downloaded Installations
2014-02-14 22:53 - 2011-04-13 01:28 - 00000000 ____D () C:\Users\Default User\AppData\Local\Downloaded Installations
2014-02-14 22:53 - 2011-04-13 01:22 - 00000000 ____D () C:\Users\Default\AppData\Local\Windows Live
2014-02-14 22:53 - 2011-04-13 01:22 - 00000000 ____D () C:\Users\Default User\AppData\Local\Windows Live
2014-02-14 22:53 - 2011-04-13 01:21 - 00057560 _____ () C:\Users\Default\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-14 22:53 - 2011-04-13 01:21 - 00057560 _____ () C:\Users\Default User\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-14 22:53 - 2010-11-20 19:40 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-14 22:53 - 2010-11-20 19:40 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-14 22:53 - 2010-11-20 19:40 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-14 22:53 - 2010-11-20 19:40 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-14 22:53 - 2010-11-20 18:51 - 00001449 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-14 22:53 - 2010-11-20 18:51 - 00001449 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-14 22:53 - 2010-11-20 18:51 - 00001415 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-02-14 22:53 - 2010-11-20 18:51 - 00001415 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-02-14 22:53 - 2010-11-20 18:50 - 00000020 ___SH () C:\Users\Default\ntuser.ini
2014-02-14 22:53 - 2009-08-05 00:10 - 00006136 _____ () C:\Windows\system32\Drivers\nvphy.bin
2014-02-14 22:53 - 2009-07-30 00:48 - 00704000 _____ (NVIDIA Corporation) C:\Windows\system32\cohelper.dll
2014-02-14 22:48 - 2014-02-14 22:48 - 00000000 ____D () C:\Windows\NAPP_Dism_Log
2014-02-14 22:16 - 2014-02-14 22:27 - 00000000 ___RD () C:\Backup
2014-02-11 12:20 - 2014-02-11 12:20 - 00000000 ____D () C:\a477725cd6cb99b9b20eb412c8
2014-02-07 07:29 - 2014-02-07 07:29 - 00000000 __SHD () C:\found.000

==================== One Month Modified Files and Folders =======

2014-02-28 11:48 - 2014-02-28 11:48 - 02155520 _____ (Farbar) C:\Users\Nadine\Downloads\FRST64.exe
2014-02-28 11:48 - 2014-02-28 11:48 - 00009607 _____ () C:\Users\Nadine\Downloads\FRST.txt
2014-02-28 11:48 - 2014-02-28 11:48 - 00000000 ____D () C:\FRST
2014-02-28 11:48 - 2009-07-13 21:13 - 00781298 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-28 11:47 - 2014-02-14 22:54 - 01890530 _____ () C:\Windows\WindowsUpdate.log
2014-02-28 11:44 - 2014-02-28 11:44 - 00284840 _____ () C:\Windows\Minidump\022814-20295-01.dmp
2014-02-28 11:44 - 2014-02-15 00:31 - 00000000 ____D () C:\ProgramData\clear.fi
2014-02-28 11:44 - 2014-02-15 00:29 - 476371405 _____ () C:\Windows\MEMORY.DMP
2014-02-28 11:44 - 2014-02-15 00:29 - 00000000 ____D () C:\Windows\Minidump
2014-02-28 11:44 - 2010-11-20 19:47 - 00269522 _____ () C:\Windows\PFRO.log
2014-02-28 11:44 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-28 11:44 - 2009-07-13 20:51 - 00038991 _____ () C:\Windows\setupact.log
2014-02-28 11:30 - 2014-02-15 00:11 - 00000388 _____ () C:\Windows\Tasks\Acer Registration - Data Sending task.job
2014-02-28 10:46 - 2009-07-13 20:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-28 10:46 - 2009-07-13 20:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-28 10:39 - 2014-02-28 10:39 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Security Suite
2014-02-28 10:38 - 2014-02-15 11:05 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
2014-02-28 10:38 - 2014-02-15 11:05 - 00000000 ____D () C:\ProgramData\Norton
2014-02-28 10:37 - 2014-02-28 10:37 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-02-28 10:37 - 2014-02-28 10:37 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-02-28 10:37 - 2014-02-28 10:37 - 00002516 _____ () C:\Users\Public\Desktop\Norton Security Suite.lnk
2014-02-28 10:37 - 2014-02-28 10:37 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2014-02-28 10:37 - 2014-02-28 10:37 - 00000000 ____D () C:\Program Files (x86)\Norton Security Suite
2014-02-28 10:37 - 2014-02-15 11:14 - 00003228 _____ () C:\Windows\System32\Tasks\Norton WSC Integration
2014-02-28 10:36 - 2014-02-15 11:05 - 00001234 _____ () C:\Users\Nadine\Desktop\Norton Installation Files.lnk
2014-02-28 10:29 - 2014-02-28 10:29 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{77850463-021A-45F7-9461-9E8A2F4B988E}
2014-02-28 10:21 - 2014-02-28 10:20 - 00869456 _____ () C:\Users\Nadine\Downloads\Norton_Removal_Tool.exe
2014-02-28 10:13 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-02-28 10:11 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-02-28 10:06 - 2014-02-15 11:50 - 00000000 ____D () C:\Users\Nadine\AppData\Local\CrashDumps
2014-02-28 10:03 - 2014-02-28 10:02 - 01021632 _____ (Symantec Corporation) C:\Users\Nadine\Downloads\Norton_Download_Manager.exe
2014-02-27 20:12 - 2014-02-27 20:11 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-27 20:11 - 2014-02-14 23:04 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-02-27 20:11 - 2014-02-14 22:54 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-02-27 19:18 - 2014-02-27 19:18 - 00283672 _____ () C:\Windows\Minidump\022714-20061-01.dmp
2014-02-27 19:13 - 2014-02-27 10:55 - 00000000 ____D () C:\AdwCleaner
2014-02-27 18:24 - 2014-02-27 18:24 - 00281080 _____ () C:\Windows\Minidump\022714-32619-01.dmp
2014-02-27 17:59 - 2014-02-23 09:44 - 00757952 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-27 17:57 - 2014-02-27 17:57 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-02-27 17:57 - 2014-02-27 17:57 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-02-27 17:41 - 2014-02-27 17:41 - 00286000 _____ () C:\Windows\Minidump\022714-20638-01.dmp
2014-02-27 17:37 - 2009-07-13 21:08 - 00032732 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-02-27 14:04 - 2014-02-27 14:04 - 00283400 _____ () C:\Windows\Minidump\022714-26457-01.dmp
2014-02-27 12:57 - 2014-02-15 11:25 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Windows Live Writer
2014-02-27 12:52 - 2014-02-15 11:25 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\Windows Live Writer
2014-02-27 11:16 - 2014-02-27 11:16 - 00000000 ____D () C:\Windows\ERUNT
2014-02-27 10:49 - 2014-02-27 10:48 - 00280776 _____ () C:\Windows\Minidump\022714-26566-01.dmp
2014-02-27 10:26 - 2014-02-27 10:26 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{4F4223AE-2A4B-48C3-A207-3B66E9F4182D}
2014-02-25 17:40 - 2014-02-25 17:01 - 00020270 _____ () C:\Users\Nadine\Desktop\dds.txt
2014-02-25 17:01 - 2014-02-25 17:01 - 00083617 _____ () C:\Users\Nadine\Desktop\attach.txt
2014-02-25 16:57 - 2014-02-25 16:57 - 00688992 ____R (Swearware) C:\Users\Nadine\Desktop\dds.com
2014-02-25 16:55 - 2014-02-25 16:55 - 00688992 _____ (Swearware) C:\Users\Nadine\Downloads\dds (2).com
2014-02-25 16:50 - 2014-02-25 16:50 - 00688992 _____ (Swearware) C:\Users\Nadine\Downloads\dds (1).com
2014-02-25 16:48 - 2014-02-25 16:48 - 00688992 _____ (Swearware) C:\Users\Nadine\Downloads\dds.com
2014-02-25 12:32 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Windows Live
2014-02-25 12:11 - 2014-02-25 12:10 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{E7AD2C4D-8CB6-4594-A019-0B823FC724CB}
2014-02-25 11:42 - 2009-07-13 20:45 - 00275712 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-25 11:26 - 2014-02-25 11:25 - 00280200 _____ () C:\Windows\Minidump\022514-37221-01.dmp
2014-02-25 10:04 - 2014-02-15 00:08 - 00000000 ___RD () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-25 10:04 - 2014-02-15 00:08 - 00000000 ___RD () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-25 10:03 - 2014-02-25 10:03 - 00279952 _____ () C:\Windows\Minidump\022514-43274-01.dmp
2014-02-25 09:39 - 2014-02-25 09:38 - 00281080 _____ () C:\Windows\Minidump\022514-25989-01.dmp
2014-02-25 09:31 - 2009-07-13 21:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-02-25 09:31 - 2009-07-13 21:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-02-25 09:00 - 2014-02-25 08:59 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\TP
2014-02-25 08:20 - 2014-02-25 08:20 - 00280920 _____ () C:\Windows\Minidump\022514-18673-01.dmp
2014-02-25 07:24 - 2014-02-25 07:24 - 00281288 _____ () C:\Windows\Minidump\022514-43056-01.dmp
2014-02-24 23:18 - 2014-02-24 23:18 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{EDA95255-08E9-446D-87A0-FAEF2FE7856D}
2014-02-24 23:18 - 2014-02-15 00:08 - 00058016 _____ () C:\Users\Nadine\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-24 22:57 - 2014-02-15 00:08 - 00001447 _____ () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-24 22:57 - 2014-02-15 00:08 - 00001413 _____ () C:\Users\Nadine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-02-24 22:56 - 2014-02-24 22:56 - 00281400 _____ () C:\Windows\Minidump\022414-20046-01.dmp
2014-02-24 22:47 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-02-24 22:46 - 2014-02-24 22:46 - 17849344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 12345344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 09739264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-02-24 22:46 - 2014-02-24 22:46 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-02-24 22:46 - 2014-02-24 22:46 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-24 22:46 - 2014-02-24 22:46 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-24 22:46 - 2014-02-24 22:46 - 02334720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-24 22:46 - 2014-02-24 22:46 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-24 22:46 - 2014-02-24 22:46 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01347072 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 01105408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-02-24 22:46 - 2014-02-24 22:46 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-02-24 22:46 - 2014-02-24 22:46 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-02-24 22:46 - 2014-02-24 22:46 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-02-24 22:46 - 2014-02-24 22:46 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-02-24 22:46 - 2014-02-24 22:46 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-02-24 22:46 - 2014-02-24 22:46 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-02-24 22:46 - 2014-02-24 11:42 - 00006547 _____ () C:\Windows\IE9_main.log
2014-02-24 22:07 - 2014-02-24 22:07 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-02-24 22:07 - 2014-02-24 22:07 - 00000000 ____D () C:\Intel
2014-02-24 22:07 - 2011-04-13 01:21 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-24 21:30 - 2014-02-24 21:30 - 00280840 _____ () C:\Windows\Minidump\022414-33462-01.dmp
2014-02-24 21:29 - 2014-02-24 21:29 - 00019856 ____N () C:\bootsqm.dat
2014-02-24 21:15 - 2014-02-24 21:15 - 00281432 _____ () C:\Windows\Minidump\022414-31434-01.dmp
2014-02-24 20:12 - 2009-07-13 19:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-02-24 20:11 - 2014-02-24 20:10 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-24 17:01 - 2014-02-24 17:01 - 00280904 _____ () C:\Windows\Minidump\022414-21512-01.dmp
2014-02-24 14:59 - 2014-02-24 14:59 - 00280928 _____ () C:\Windows\Minidump\022414-19188-01.dmp
2014-02-24 12:01 - 2014-02-24 12:01 - 00281464 _____ () C:\Windows\Minidump\022414-39624-01.dmp
2014-02-24 11:44 - 2014-02-24 11:43 - 00295202 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-02-24 11:43 - 2014-02-24 11:43 - 00295798 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-02-24 11:43 - 2014-02-24 11:43 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-02-24 10:57 - 2014-02-24 10:57 - 00279856 _____ () C:\Windows\Minidump\022414-25116-01.dmp
2014-02-24 09:24 - 2014-02-24 09:24 - 00280904 _____ () C:\Windows\Minidump\022414-32042-01.dmp
2014-02-24 08:20 - 2014-02-24 08:19 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{7D4BC1B6-D9C1-4429-A59B-6A144706D944}
2014-02-24 08:03 - 2014-02-24 08:03 - 00285656 _____ () C:\Windows\Minidump\022414-19796-01.dmp
2014-02-24 08:00 - 2014-02-24 08:00 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{8CE2C3BB-40F6-4F08-B76A-77645E71377E}
2014-02-24 03:48 - 2014-02-24 03:48 - 00279504 _____ () C:\Windows\Minidump\022414-21590-01.dmp
2014-02-23 23:39 - 2014-02-23 23:39 - 00279760 _____ () C:\Windows\Minidump\022314-53882-01.dmp
2014-02-23 23:26 - 2010-11-20 23:17 - 00000000 ____D () C:\Program Files\Windows Journal
2014-02-23 23:16 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\rescache
2014-02-23 21:05 - 2014-02-23 21:05 - 00281256 _____ () C:\Windows\Minidump\022314-33805-01.dmp
2014-02-23 20:33 - 2014-02-23 20:33 - 00003591 _____ () C:\Users\Nadine\Desktop\Msirepair.reg
2014-02-23 20:16 - 2014-02-23 20:16 - 00007908 _____ () C:\Users\Nadine\Documents\registrybackup5.reg
2014-02-23 20:15 - 2014-02-23 20:15 - 167658404 _____ () C:\Users\Nadine\Documents\registrybackup3.reg
2014-02-23 20:15 - 2014-02-23 20:15 - 06288502 _____ () C:\Users\Nadine\Documents\registrybackup4.reg
2014-02-23 20:14 - 2014-02-23 20:14 - 31869040 _____ () C:\Users\Nadine\Documents\registrybackup.reg
2014-02-23 20:14 - 2014-02-23 20:14 - 03541062 _____ () C:\Users\Nadine\Documents\registrybackup2.reg
2014-02-23 14:46 - 2014-02-23 14:46 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{A0B77128-C440-4082-B342-9DDCC527780B}
2014-02-23 14:46 - 2014-02-23 14:46 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{69DD73A6-AD36-4B7B-B06E-EA07F95710E4}
2014-02-23 12:19 - 2014-02-23 12:19 - 00281384 _____ () C:\Windows\Minidump\022314-26551-01.dmp
2014-02-23 12:10 - 2014-02-23 09:42 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE
2014-02-23 12:07 - 2009-07-13 18:34 - 00000504 _____ () C:\Windows\win.ini
2014-02-23 10:21 - 2009-07-13 18:34 - 00000855 _____ () C:\Windows\system32\Drivers\etc\hosts_bak_903
2014-02-23 09:54 - 2010-11-20 23:16 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-02-23 09:50 - 2009-07-13 18:34 - 00000855 _____ () C:\Windows\system32\Drivers\etc\hosts_bak_164
2014-02-23 09:22 - 2014-02-23 09:22 - 00002163 _____ () C:\Users\Nadine\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2014-02-23 09:19 - 2014-02-23 09:19 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2014-02-23 09:04 - 2014-02-23 09:03 - 00000000 ____D () C:\ProgramData\CDB
2014-02-15 18:58 - 2014-02-15 18:58 - 00281504 _____ () C:\Windows\Minidump\021514-24538-01.dmp
2014-02-15 16:33 - 2014-02-15 16:33 - 00000000 ____D () C:\Windows\CheckSur
2014-02-15 15:11 - 2014-02-15 15:11 - 00000000 ____D () C:\Users\Nadine\AppData\Local\{A4AD039E-F8FA-460C-805E-373291A457A3}
2014-02-15 12:35 - 2014-02-15 12:35 - 00000000 ____D () C:\Program Files (x86)\Belkin
2014-02-15 12:34 - 2014-02-15 12:34 - 00281464 _____ () C:\Windows\Minidump\021514-17472-01.dmp
2014-02-15 12:34 - 2009-07-13 21:32 - 00000000 ____D () C:\Windows\system32\restore
2014-02-15 12:21 - 2014-02-15 12:21 - 00282848 _____ () C:\Windows\Minidump\021514-19422-01.dmp
2014-02-15 11:13 - 2014-02-15 11:13 - 00000000 ____D () C:\Windows\system32\Drivers\N360x64
2014-02-15 11:13 - 2014-02-15 11:13 - 00000000 ____D () C:\Users\Nadine\Documents\Symantec
2014-02-15 11:05 - 2014-02-15 11:05 - 00000000 ____D () C:\Users\Public\Downloads\Norton
2014-02-15 10:55 - 2014-02-15 10:55 - 00000000 ____D () C:\ProgramData\Brother
2014-02-15 10:46 - 2011-04-13 01:17 - 00000000 ____D () C:\ProgramData\McAfee
2014-02-15 00:29 - 2014-02-15 00:29 - 00281840 _____ () C:\Windows\Minidump\021514-18610-01.dmp
2014-02-15 00:11 - 2014-02-15 00:11 - 00003462 _____ () C:\Windows\System32\Tasks\Acer Registration - Data Sending task
2014-02-15 00:10 - 2014-02-15 00:10 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\OEM
2014-02-15 00:10 - 2014-02-15 00:10 - 00000000 ____D () C:\Users\Nadine\AppData\Local\EgisTec IPS
2014-02-15 00:10 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine\AppData\Local\PowerCinema
2014-02-15 00:10 - 2011-04-13 01:57 - 00000000 ___HD () C:\OEM
2014-02-15 00:10 - 2011-04-13 01:31 - 00000000 ____D () C:\ProgramData\oem
2014-02-15 00:10 - 2011-04-13 01:20 - 00055689 _____ () C:\Windows\patch.log
2014-02-15 00:09 - 2014-02-15 00:09 - 00002102 _____ () C:\Users\Public\Desktop\Netflix.lnk
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\Users\Nadine\AppData\Roaming\CyberLink
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Acer
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\ProgramData\OEM_E471269A730D
2014-02-15 00:09 - 2014-02-15 00:09 - 00000000 ____D () C:\Program Files (x86)\OEM
2014-02-15 00:09 - 2011-04-13 01:17 - 00000000 ____D () C:\Program Files\Preload
2014-02-15 00:08 - 2014-02-15 00:08 - 00000915 _____ () C:\Users\Public\Desktop\Times Reader.lnk
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 __SHD () C:\Recovery
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine\AppData\Local\VirtualStore
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine\AppData\Local\Adobe
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Users\Nadine
2014-02-15 00:08 - 2014-02-15 00:08 - 00000000 ____D () C:\Program Files (x86)\Times Reader
2014-02-15 00:08 - 2011-04-13 01:32 - 00000000 ____D () C:\ProgramData\Adobe
2014-02-15 00:08 - 2011-04-13 01:31 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-02-15 00:08 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-02-14 23:45 - 2009-07-13 20:46 - 00004059 _____ () C:\Windows\DtcInstall.log
2014-02-14 23:45 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-02-14 23:45 - 2007-07-11 17:49 - 00000000 ____D () C:\Windows\Panther
2014-02-14 23:27 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\Help
2014-02-14 23:24 - 2014-02-14 23:13 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-02-14 23:24 - 2011-04-13 01:22 - 00000911 _____ () C:\Windows\DirectX.log
2014-02-14 23:23 - 2014-02-14 23:23 - 00001212 _____ () C:\Users\Public\Desktop\NOOK for PC.lnk
2014-02-14 23:23 - 2014-02-14 23:23 - 00000000 ____D () C:\Program Files (x86)\Barnes & Noble
2014-02-14 23:23 - 2011-04-13 01:20 - 00000000 ____D () C:\Program Files (x86)\Acer
2014-02-14 23:20 - 2014-02-14 23:17 - 00015148 _____ () C:\ProgramData\ArcadeDeluxe5.log
2014-02-14 23:20 - 2014-02-14 23:17 - 00000000 ____D () C:\ProgramData\CyberLink
2014-02-14 23:19 - 2014-02-14 23:19 - 00003418 _____ () C:\Windows\System32\Tasks\clear.fi
2014-02-14 23:19 - 2014-02-14 23:19 - 00003366 _____ () C:\Windows\System32\Tasks\DMREngine
2014-02-14 23:19 - 2014-02-14 23:19 - 00003348 _____ () C:\Windows\System32\Tasks\clear.fiAgent
2014-02-14 23:19 - 2014-02-14 23:19 - 00002171 _____ () C:\Users\Public\Desktop\clear.fi.lnk
2014-02-14 23:18 - 2014-02-14 23:18 - 00000000 ____D () C:\Program Files (x86)\Cyberlink
2014-02-14 23:16 - 2014-02-14 23:16 - 00000000 ____D () C:\Windows\en
2014-02-14 23:15 - 2014-02-14 23:15 - 00000000 ____D () C:\Windows\fr
2014-02-14 23:15 - 2014-02-14 23:15 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-02-14 23:13 - 2014-02-14 23:13 - 00000000 ____D () C:\Program Files\Windows Live
2014-02-14 23:12 - 2009-07-13 19:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-02-14 23:11 - 2014-02-14 23:11 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-02-14 23:03 - 2011-02-11 19:12 - 00000000 ____D () C:\Windows\DeployWinRE2
2014-02-14 23:01 - 2014-02-14 23:01 - 00000000 ____D () C:\ProgramData\EgisTec
2014-02-14 23:01 - 2011-04-13 01:27 - 00000000 ____D () C:\ProgramData\EgisTec IPS
2014-02-14 22:56 - 2014-02-14 22:56 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-02-14 22:56 - 2014-02-14 22:56 - 00000000 ____D () C:\Program Files\Realtek
2014-02-14 22:56 - 2014-02-14 22:56 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-02-14 22:55 - 2014-02-14 22:55 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-02-14 22:53 - 2014-02-14 22:53 - 00005060 _____ () C:\Windows\DPINST.LOG
2014-02-14 22:53 - 2011-04-13 01:03 - 00003652 _____ () C:\Windows\TSSysprep.log
2014-02-14 22:53 - 2009-07-13 19:20 - 00000000 __RHD () C:\Users\Default
2014-02-14 22:48 - 2014-02-14 22:48 - 00000000 ____D () C:\Windows\NAPP_Dism_Log
2014-02-14 22:46 - 2009-07-13 21:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-02-14 22:46 - 2009-07-13 21:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-02-14 22:27 - 2014-02-14 22:16 - 00000000 ___RD () C:\Backup
2014-02-11 12:20 - 2014-02-11 12:20 - 00000000 ____D () C:\a477725cd6cb99b9b20eb412c8
2014-02-07 07:29 - 2014-02-07 07:29 - 00000000 __SHD () C:\found.000
2014-02-04 19:09 - 2014-02-24 20:10 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

Some content of TEMP:
====================
C:\Users\Nadine\AppData\Local\Temp\Quarantine.exe

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

LastRegBack: 2014-02-23 23:09

==================== End Of Log ============================

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-02-2014 02
Ran by Nadine at 2014-02-28 11:49:29
Running from C:\Users\Nadine\Downloads
Boot Mode: Normal
==========================================================

==================== Security Center ========================

AV: Norton Security Suite (Enabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF}
AS: Norton Security Suite (Enabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Security Suite (Enabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}

==================== Installed Programs ======================

Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3002 - Acer Incorporated)
Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.4 - WildTangent)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0825.2010 - Acer Incorporated)
Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3005 - Acer Incorporated)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.0.2.12610 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 2.0.2.12610 - Adobe Systems Inc.) Hidden
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.2.152.26 - Adobe Systems Incorporated)
Adobe Reader 9.1 MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated)
Agatha Christie - 4:50 from Paddington (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Belkin N600 DB USB Wireless Adapter (HKLM-x32\...\{B20F9D1C-A0A5-4CD8-8306-DA03872311B1}) (Version: 1.00.0184.1 - Belkin International, Inc.)
Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1422.15 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1422.15 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.7418 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3009 - Acer Incorporated)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
eBay Worldwide (HKLM-x32\...\{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}) (Version: 2.1.0901 - OEM)
Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Hotkey Utility (HKLM-x32\...\Hotkey Utility) (Version: 2.05.3014 - Acer Incorporated)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3006 - Acer Incorporated)
Jewel Quest Heritage (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
MediaEspresso (x32 Version: 1.0.1423_35858 - CyberLink Corp.) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery P.I. - Stolen in San Francisco (x32 Version: 2.2.0.95 - WildTangent) Hidden
MyWinLocker (Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.11 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden
Nero Control Center 10 (x32 Version: 10.2.11100.1.1 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.18100.8.8 - Nero AG) Hidden
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.2.10500.2.100 - Nero AG)
Nero DiscSpeed 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.2.12000.21.100 - Nero AG)
Nero Express 10 Help (CHM) (x32 Version: 10.5.10200 - Nero AG) Hidden
Nero Multimedia Suite 10 Essentials (HKLM-x32\...\{62BF4BD3-B1F6-4FA2-8388-CC0647ACBF86}) (Version: 10.5.10300 - Nero AG)
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.2.11600.14.100 - Nero AG)
Nero StartSmart 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG)
newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.)
newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden
NOOK for PC (HKLM-x32\...\BN_DesktopReader) (Version: 2.5.1.237 - Barnesandnoble.com)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
Norton Security Suite (HKLM-x32\...\N360) (Version: 21.1.0.18 - Symantec Corporation)
NVIDIA Control Panel 307.83 (Version: 307.83 - NVIDIA Corporation) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.8 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (HKLM-x32\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.7316 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (Version: 1.00.7316 - NVIDIA Corporation) Hidden
NVIDIA Graphics Driver 307.83 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 307.83 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.109.706 - NVIDIA Corporation) Hidden
NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6045 - Realtek Semiconductor Corp.)
Shredder (Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Times Reader (HKLM-x32\...\com.nyt.timesreader.78C54164786ADE80CB31E1C5D95607D0938C987A.1) (Version: 2.055 - The New York Times Company)
Times Reader (x32 Version: 2.055 - The New York Times Company) Hidden
Torchlight (x32 Version: 2.2.0.95 - WildTangent) Hidden
Tweaking.com - Windows Repair (All in One) (HKLM-x32\...\Tweaking.com - Windows Repair (All in One)) (Version: 2.4.1 - Tweaking.com)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3102 - Acer Incorporated)
WildTangent Games App (Acer Games) (x32 Version: 4.0.3.57 - WildTangent) Hidden
Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Zuma's Revenge (x32 Version: 2.2.0.95 - WildTangent) Hidden

==================== Restore Points  =========================

25-02-2014 06:44:12 Windows Update
25-02-2014 15:32:36 Windows Update
25-02-2014 17:09:09 Windows Update
25-02-2014 17:29:17 Windows Update
25-02-2014 17:42:56 Windows Update
25-02-2014 18:32:22 Windows Modules Installer
25-02-2014 19:30:51 Windows Update
25-02-2014 19:38:53 Windows Update
28-02-2014 01:55:36 Windows Update
28-02-2014 04:08:11 Windows Update
28-02-2014 04:14:27 Windows Update

==================== Hosts content: ==========================

2009-07-13 18:34 - 2014-02-23 12:07 - 00000855 ____N C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {0297F33C-16F3-4115-A879-2166317E7593} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-02-22] (CyberLink Corp.)
Task: {29F236E2-ABA1-44AE-B3A6-23AA58FF8463} - System32\Tasks\Acer Registration - Data Sending task => C:\Program Files (x86)\Acer\Registration\GREG.exe [2010-04-27] (Acer Incorporated)
Task: {2A888F0D-0240-4314-8830-41BF1C8B03D4} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-02-22] (Acer Incorporated)
Task: {6D549600-B0C7-48E8-8333-52A13AEFEF39} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\WSCStub.exe [2013-10-08] (Symantec Corporation)
Task: {70D143A4-15FD-4324-99EF-A9D4593573F9} - System32\Tasks\Norton Security Suite\Norton Error Analyzer => C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\SymErr.exe [2013-08-01] (Symantec Corporation)
Task: {D34368D6-B5C3-408C-96A7-07F07084B80F} - System32\Tasks\Norton Security Suite\Norton Error Processor => C:\Program Files (x86)\Norton Security Suite\Engine\21.1.0.18\SymErr.exe [2013-08-01] (Symantec Corporation)
Task: {D7DC4CD1-2931-40EF-A3B9-1F1702C48E68} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-02-22] (CyberLink)
Task: C:\Windows\Tasks\Acer Registration - Data Sending task.job => C:\Program Files (x86)\Acer\Registration\GREG.exe

==================== Loaded Modules (whitelisted) =============

2014-02-27 20:10 - 2013-01-31 01:25 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2009-08-10 16:01 - 2009-08-10 16:01 - 00626208 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
2009-08-10 16:00 - 2009-08-10 16:00 - 00070176 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll
2009-08-10 16:01 - 2009-08-10 16:01 - 00578592 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\SpecialCase.dll
2009-08-10 16:01 - 2009-08-10 16:01 - 00206880 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
2011-01-18 17:08 - 2011-01-18 17:08 - 00620136 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
2011-01-18 17:08 - 2011-01-18 17:08 - 00151656 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyHook.dll
2011-02-22 10:01 - 2011-02-22 10:01 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll

==================== Alternate Data Streams (whitelisted) =========

==================== Safe Mode (whitelisted) ===================

==================== Disabled items from MSCONFIG ==============

==================== Faulty Device Manager Devices =============

Name: F:\
Description: Multi-Card     
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: Generic-
Service: WUDFRd
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
 This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.

Name: TOSHIBA
Description: TransMemory    
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: TOSHIBA
Service: WUDFRd
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
 This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.

==================== Event log errors: =========================

Application errors:
==================
Error: (02/28/2014 11:46:08 AM) (Source: Windows Search Service) (User: )
Description: The index cannot be initialized.

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:46:08 AM) (Source: Windows Search Service) (User: )
Description: The application cannot be initialized.

Context: Windows Application

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:46:08 AM) (Source: Windows Search Service) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:45:10 AM) (Source: Windows Search Service) (User: )
Description: The index cannot be initialized.

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:45:10 AM) (Source: Windows Search Service) (User: )
Description: The application cannot be initialized.

Context: Windows Application

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:45:10 AM) (Source: Windows Search Service) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:44:49 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (02/28/2014 11:44:39 AM) (Source: Windows Search Service) (User: )
Description: The index cannot be initialized.

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:44:39 AM) (Source: Windows Search Service) (User: )
Description: The application cannot be initialized.

Context: Windows Application

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:44:39 AM) (Source: Windows Search Service) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
 (HRESULT : 0x80040154) (0x80040154)

System errors:
=============
Error: (02/28/2014 11:49:37 AM) (Source: Service Control Manager) (User: )
Description: The Symantec Real Time Storage Protection x64 service failed to start due to the following error:
%%31

Error: (02/28/2014 11:49:37 AM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.

Error: (02/28/2014 11:49:37 AM) (Source: Service Control Manager) (User: )
Description: The Symantec Real Time Storage Protection x64 service failed to start due to the following error:
%%31

Error: (02/28/2014 11:49:37 AM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.

Error: (02/28/2014 11:49:30 AM) (Source: Service Control Manager) (User: )
Description: The Symantec Real Time Storage Protection x64 service failed to start due to the following error:
%%31

Error: (02/28/2014 11:49:30 AM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.

Error: (02/28/2014 11:49:23 AM) (Source: Service Control Manager) (User: )
Description: The Symantec Real Time Storage Protection x64 service failed to start due to the following error:
%%31

Error: (02/28/2014 11:49:23 AM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.

Error: (02/28/2014 11:49:17 AM) (Source: Service Control Manager) (User: )
Description: The Symantec Real Time Storage Protection x64 service failed to start due to the following error:
%%31

Error: (02/28/2014 11:49:17 AM) (Source: SRTSP) (User: )
Description: Error loading virus definitions.

Microsoft Office Sessions:
=========================
Error: (02/28/2014 11:46:08 AM) (Source: Windows Search Service)(User: )
Description:
Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:46:08 AM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:46:08 AM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:45:10 AM) (Source: Windows Search Service)(User: )
Description:
Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:45:10 AM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:45:10 AM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:44:49 AM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe

Error: (02/28/2014 11:44:39 AM) (Source: Windows Search Service)(User: )
Description:
Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:44:39 AM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application

Details:
 (HRESULT : 0x80040154) (0x80040154)

Error: (02/28/2014 11:44:39 AM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog

Details:
 (HRESULT : 0x80040154) (0x80040154)

CodeIntegrity Errors:
===================================
  Date: 2014-02-27 18:26:30.675
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\VirusDefs\20140227.009\ex64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-02-25 11:00:16.627
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\N360x64\1501000.012\srtsp64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

Percentage of memory in use: 27%
Total physical RAM: 3839.37 MB
Available physical RAM: 2786.39 MB
Total Pagefile: 7676.92 MB
Available Pagefile: 6447.33 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:913.83 GB) (Free:860.93 GB) NTFS
Drive e: (TOSHIBA) (Removable) (Total:1.92 GB) (Free:1.68 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 4F15EAD8)
Partition 1: (Not Active) - (Size=18 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=914 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 2 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================

 

I forgot how to attach, so I hope pasting was ok.



#13 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 28 February 2014 - 03:13 PM

The Security Check worked fine.

 

Here are results:

 

 Results of screen317's Security Check version 0.99.79 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
Norton Security Suite  
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 Adobe Flash Player 10 Flash Player out of Date!
 Adobe Reader 9 Adobe Reader out of Date!
````````Process Check: objlist.exe by Laurent```````` 
 Symantec Norton Online Backup NOBuAgent.exe 
 Symantec Norton Online Backup NOBuClient.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 1%
````````````````````End of Log``````````````````````
 



#14 nasdaq

nasdaq

  • Malware Response Team
  • 38,264 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:03:39 AM

Posted 01 March 2014 - 09:00 AM

The FRST log is clean.

Update these 3rd party programs.

Critical vulnerabilities have been identified in old version of Adobe Flash Player please get the latest version.

Summary: Adobe has released security updates for Adobe Flash Player 11.9.900.152 and earlier versions for Windows and Macintosh and Adobe Flash Player 11.2.202.327 and earlier versions for Linux. These updates address vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system.

Flash test site:
http://www.adobe.com/software/flash/about/
If you have the latest version close the windows.

Flash Player Help / Find version
http://helpx.adobe.com/flash-player/kb/find-version-flash-player.html#main_Find_the_Flash_Player_version_installed_on_your_machine

===

Get the latest version of the Adobe Reader.
http://get.adobe.com/reader/
Before your download I suggest you unckeck the box on the top right "Yes, install McAfee Security Scan Plus - optional" this is not required if you are not a McAfee subscriber. While the installation is in progress you can also deny the installation of any other programs that may be suggested.

When installed remove your old version of the Reader using the Add/Remove Programs applet if present.
<<<>>>

Please let me know what problem persists with this computer.

#15 MitziNadine

MitziNadine
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:03:39 AM

Posted 01 March 2014 - 12:58 PM

Hello Nasdaq.

 

Thank you for the help.  The computer seems as though it doesn't crash quite as often.  It is better, but still has some problems especially with the Windows Update.

 

When I first start it up, there is an internal clunking sound which doesn't last - only at start up.

 

Thankfully, I was able to download and install the new Adobe updates after a few stops and goes. 

 

When I try to use Windows Update, it still says that I have never updated. 

 

An error occurred while checking for new updates - Error code 8024000E which had appeared numerous times before along with various other codes.  On retry, I received the same Error Code so I ran the Windows Update Troubleshooter.

 

It found some problems listed in a box:

 

Windows updater error 0x8007000D(2014-03-01-T-08_50_25A - NOT FIXED

Problem initially resent updates - NOT FIXED

Cryptographic Service Registered - NOT FIXED

Check for missing or corrupt files - DETECTED

Some security settings are missing or have been changed - FIXED

Service registration is missing or corrupt _FIXED

 

I restarted and decided to try the Windows update once more.

 

I will end this just in case a crash might occur before I can finish all I need to tell you.  I'll repost that.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users