Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Icloud installer - windows installer does not have the administrator privilegies


  • This topic is locked This topic is locked
53 replies to this topic

#1 gauchio

gauchio

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 26 May 2014 - 03:23 AM

Hello I'm David,

I'm new in the forum. As the title says, I have some problem  installing the icloud control panel in windows. At the end of the installation, the installer says that it has not the administrator privilegies to write in C:\ProgramData\microsoft\windos\Startmenu\programs\icloud.

I tried to used (in this sequence):

1- Malwarebytes anti malware

2-adwcleaner

3-JRT

4-OTL

In the following i'm posting the log of the programs (Hijackthis file included)

Can you help me in find what it is the problem?

 

Regards

 

P.S.

I opened everything as administrator not always the anti malware program even the icloud setup.

Attached Files


Edited by gauchio, 26 May 2014 - 11:21 AM.
Moved from Win 7 to Malware Removal Logs - Hamluis.


BC AdBot (Login to Remove)

 


#2 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 26 May 2014 - 11:24 AM

I run Window Repair all in one too putting the MSI (windows installer) repair, but unfortunatly nothing changed



#3 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 27 May 2014 - 02:30 AM

Ok, i tried a lot of things but i didn't succeed. Maybe the last thing that remains to do is  to format again ;-(



#4 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 30 May 2014 - 02:46 AM

Really sorry for posting more, but I run into a BSOD.

Here the code obtained by bluescreenview :

053014-14258-01.dmp    30/05/2014 09:22:08    KMODE_EXCEPTION_NOT_HANDLED    0x0000001e    00000000`00000000    00000000`00000000    00000000`00000000    00000000`00000000    ntoskrnl.exe    ntoskrnl.exe+75b90    NT Kernel & System    Microsoft® Windows® Operating System    Microsoft Corporation    6.1.7601.18409 (win7sp1_gdr.140303-2144)    64bit    ntoskrnl.exe+75b90                    C:\Windows\Minidump\053014-14258-01.dmp    8    15    7601    284.616    30/05/2014 09:22:53   .
 



#5 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,668 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:11:27 PM

Posted 31 May 2014 - 03:25 AM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/535544 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#6 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 03 June 2014 - 01:42 AM

In the following i'm posting the required files.
I have my windows 7 home edition dvd disc.
 
Regards
 
David

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17041 BrowserJavaVersion: 10.55.2
Run by David at 8:38:12 on 2014-06-03
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.39.1033.18.8123.5615 [GMT 2:00]
.
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Disabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\lkads.exe
C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\CNAB4RPD.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\SysWOW64\lkcitdl.exe
C:\Windows\SysWOW64\lktsrv.exe
C:\Windows\System32\wbem\WmiPrvSE.exe
C:\Windows\System32\wbem\WmiPrvSE.exe
C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Windows\System32\wbem\unsecapp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreamsDownloader.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\taskeng.exe
c:\program files\windows defender\MpCmdRun.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.it/
mWinlogon: Userinit = userinit.exe,
BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL
BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
uRun: [NIRegistrationWizard] C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1040
uRun: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
uRun: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
mRun: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
mRun: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
mRun: [NI Update Service] "C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe" -startupTask
mRun: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
mRun: [ITSecMng] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\CANONL~1.LNK - C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\NIERRO~2.LNK - C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\NIERRO~1.LNK - C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&sporta in Microsoft Excel - C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000
IE: I&nvia a OneNote - C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
TCP: Interfaces\{1EE96F17-481B-40AF-B31D-906D4EE44573} : NameServer = 160.80.1.1,160.80.2.5
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
x64-mSearch Page = hxxp://www.google.com
x64-mDefault_Search_URL = hxxp://www.google.com
x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL
x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL
x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
x64-Run: [ShadowPlay] C:\Windows\System32\rundll32.exe C:\Windows\System32\nvspcap64.dll,ShadowPlayOnSystemStart
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
.
INFO: x64-HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
x64-Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
x64-SSODL: WebCheck - <orphaned>
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\jleriq67.default-1400586669721\
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
FF - plugin: C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npIMAQAXControl.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\nplv2011win32.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\nplv2012win32.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\nplv2013win32.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\nplv2013win64.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2014-5-19 65776]
R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2014-5-19 208416]
R0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;C:\Windows\System32\drivers\Thpevm.sys [2009-6-29 14784]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswsnx.sys [2014-5-19 1039096]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswsp.sys [2014-5-19 423240]
R2 aswHwid;avast! HardwareID;C:\Windows\System32\drivers\aswHwid.sys [2014-5-19 29208]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2014-5-19 79184]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-5-19 50344]
R2 NIApplicationWebServer;NI Application Web Server;C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [2013-6-8 57696]
R2 nimDNSResponder;NI mDNS Responder Service;C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [2013-5-11 260976]
R2 NINetworkDiscovery;NI Network Discovery;C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [2013-6-19 176512]
R2 NISystemWebServer;NI System Web Server;C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [2013-6-8 57680]
R2 NvNetworkService;NVIDIA Network Service;C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-5-19 1631008]
R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-5-19 21055432]
R2 RtkAudioService;Realtek Audio Service;C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE [2014-5-21 290520]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-5-20 2081752]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-5-20 171928]
R3 enecir;ENE CIR Receiver;C:\Windows\System32\drivers\enecir.sys [2014-5-21 64000]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2009-9-17 56344]
R3 NvStreamKms;NvStreamKms;C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-5-20 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2014-5-20 40392]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2013-7-23 769168]
S2 aswStm;aswStm;C:\Windows\System32\drivers\aswstm.sys [2014-5-19 85328]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-5-20 1738200]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-4-3 315008]
S3 enecirhid;ENE CIR HID Receiver;C:\Windows\System32\drivers\enecirhid.sys [2012-8-24 14848]
S3 enecirhidma;ENE CIR HIDmini Filter;C:\Windows\System32\drivers\enecirhidma.sys [2014-5-21 6656]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-5-20 111616]
S3 JMCR;JMCR;C:\Windows\System32\drivers\jmcr.sys [2013-1-2 175928]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-1 178824]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-5-20 19456]
S3 SWDUMon;SWDUMon;C:\Windows\System32\drivers\SWDUMon.sys [2014-5-21 16152]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-5-20 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2014-5-20 30208]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2013-3-18 54784]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-5-19 1255736]
S4 NIApplicationWebServer64;NI Application Web Server (64-bit);C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [2013-6-8 81248]
.
=============== Created Last 30 ================
.
2014-06-03 06:38:03 75888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A474F97A-0052-4B1E-9688-373996BF4131}\offreg.dll
2014-06-03 06:31:52 10702536 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A474F97A-0052-4B1E-9688-373996BF4131}\mpengine.dll
2014-06-03 06:31:20 1715176 ----a-w- C:\Windows\System32\nvspbridge64.dll
2014-06-03 06:31:20 1291232 ----a-w- C:\Windows\SysWow64\nvspbridge.dll
2014-05-30 08:21:05 -------- d-----w- C:\ProgramData\DriverReviver.exe
2014-05-30 08:20:05 -------- d-----w- C:\ProgramData\ReviverSoft
2014-05-30 07:53:23 -------- d-----w- C:\Program Files\ReviverSoft
2014-05-28 06:54:23 -------- d-----w- C:\Program Files\CCleaner Professional v4.14.4707 Portable
2014-05-27 08:21:43 3774821 ----a-w- C:\Windows\System32\nvcoproc.bin
2014-05-27 08:19:30 -------- d-----w- C:\Users\David\AppData\Local\21861321-95C2-43BE-839D-C2332E02E07E.aplzod
2014-05-23 15:03:13 -------- d-----w- C:\Windows\SysWow64\wbem\Performance
2014-05-23 14:26:14 -------- d-----w- C:\Program Files (x86)\Tweaking.com
2014-05-23 08:14:43 -------- d-----w- C:\Windows\ERUNT
2014-05-23 08:11:57 -------- d-----w- C:\AdwCleaner
2014-05-23 08:03:29 122584 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-05-23 08:03:19 91352 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-05-23 08:03:19 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-05-23 08:03:19 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-05-23 08:03:19 -------- d-----w- C:\ProgramData\Malwarebytes
2014-05-23 08:03:19 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-22 12:30:52 -------- d-----w- C:\Users\David\AppData\Local\Mendeley Ltd
2014-05-22 12:30:40 -------- d-----w- C:\Program Files (x86)\Mendeley Desktop
2014-05-22 07:57:27 -------- d-----w- C:\Users\David\AppData\Roaming\NVIDIA
2014-05-22 07:57:23 -------- d-----w- C:\Users\David\AppData\Local\Blizzard Entertainment
2014-05-22 07:54:26 -------- d-----w- C:\ProgramData\Blizzard Entertainment
2014-05-22 07:48:37 -------- d-----w- C:\ProgramData\Battle.net
2014-05-21 10:37:43 6656 ----a-w- C:\Windows\System32\drivers\enecirhidma.sys
2014-05-21 10:37:43 64000 ----a-w- C:\Windows\System32\drivers\enecir.sys
2014-05-21 10:21:14 -------- d-----w- C:\Users\David\AppData\Local\DriverTuner
2014-05-21 10:20:36 -------- d-----w- C:\Program Files (x86)\DriverTuner
2014-05-21 10:16:42 -------- d-----w- C:\Users\David\AppData\Local\Toshiba
2014-05-21 10:05:54 40832 ----a-w- C:\Windows\System32\drivers\TosBtCi.dll
2014-05-21 09:48:34 -------- d-----w- C:\Program Files (x86)\UEFI WinFlash
2014-05-21 09:35:31 -------- d-----w- C:\Program Files (x86)\JMicron
2014-05-21 09:35:25 -------- d-----w- C:\Windows\SysWow64\SDA
2014-05-21 09:31:50 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll
2014-05-21 09:26:18 -------- d-----w- C:\Program Files (x86)\Cisco
2014-05-21 09:25:46 6656 ----a-w- C:\Windows\System32\bcmwlrc.dll
2014-05-21 09:25:45 95472 ----a-w- C:\Windows\System32\bcmwlcoi.dll
2014-05-21 09:25:45 3891200 ----a-w- C:\Windows\System32\bcmihvsrv64.dll
2014-05-21 09:25:45 3555840 ----a-w- C:\Windows\System32\bcmihvui64.dll
2014-05-21 09:25:45 3058168 ----a-w- C:\Windows\System32\drivers\BCMWL664.SYS
2014-05-21 09:25:45 -------- d-----w- C:\Program Files\Broadcom
2014-05-21 09:21:53 16152 ----a-w- C:\Windows\System32\drivers\SWDUMon.sys
2014-05-21 09:21:52 -------- d-----w- C:\Users\David\AppData\Local\SlimWare Utilities Inc
2014-05-21 08:25:13 -------- d-----w- C:\Program Files\Synaptics
2014-05-21 08:00:02 -------- d-----w- C:\Users\David\AppData\Roaming\JKI
2014-05-21 07:15:19 -------- d-----w- C:\National Instruments Downloads
2014-05-21 07:14:29 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-05-21 01:05:18 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-05-21 01:05:18 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-05-20 15:49:19 -------- d-----w- C:\Users\David\AppData\Roaming\Subversion
2014-05-20 15:49:17 -------- d-----w- C:\Users\David\AppData\Local\MathWorks
2014-05-20 15:49:12 -------- d-----w- C:\Users\David\AppData\Roaming\MathWorks
2014-05-20 15:45:22 -------- d-----w- C:\ProgramData\MathWorks
2014-05-20 15:27:02 -------- d-----w- C:\Program Files\MATLAB
2014-05-20 15:08:34 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server
2014-05-20 15:08:17 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft
2014-05-20 15:07:48 -------- d-----w- C:\Windows\PCHEALTH
2014-05-20 15:07:48 -------- d-----w- C:\Program Files\Microsoft SQL Server
2014-05-20 15:06:03 -------- d-----w- C:\Program Files\Microsoft Analysis Services
2014-05-20 15:06:03 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
2014-05-20 15:06:00 -------- d-----w- C:\Users\David\AppData\Local\Microsoft Help
2014-05-20 15:04:17 -------- d-----w- C:\Users\David\AppData\Local\National Instruments
2014-05-20 14:29:54 -------- d-----w- C:\Program Files (x86)\JKI
2014-05-20 14:29:53 -------- d-----w- C:\ProgramData\JKI
2014-05-20 14:29:22 -------- d-----w- C:\Program Files (x86)\Common Files\OPC Foundation
2014-05-20 14:16:19 -------- d-----w- C:\Windows\System32\cvirte
2014-05-20 14:16:14 -------- d-----w- C:\Windows\SysWow64\cvirte
2014-05-20 14:15:57 -------- d-----w- C:\Program Files (x86)\Common Files\Merge Modules
2014-05-20 14:15:45 -------- d-----w- C:\Program Files\National Instruments
2014-05-20 14:13:15 -------- d-----w- C:\Program Files (x86)\National Instruments
2014-05-20 14:11:48 -------- d-----w- C:\ProgramData\National Instruments
2014-05-20 14:10:49 -------- d-----w- C:\Users\David\AppData\Local\Apps
2014-05-20 13:54:48 40392 ----a-w- C:\Windows\System32\drivers\nvvad64v.sys
2014-05-20 13:54:48 34760 ----a-w- C:\Windows\SysWow64\nvaudcap32v.dll
2014-05-20 13:53:40 -------- d-----w- C:\Users\David\AppData\Local\Thunderbird
2014-05-20 13:03:15 -------- d-----w- C:\Program Files (x86)\Elaborate Bytes
2014-05-20 11:39:43 124928 ----a-w- C:\Windows\System32\CNAB4SMD.DLL
2014-05-20 11:39:42 64000 ----a-w- C:\Windows\System32\CNAB4PTD.DLL
2014-05-20 11:39:42 63936 ----a-w- C:\Windows\System32\CNAB4RPD.EXE
2014-05-20 11:39:42 58880 ----a-w- C:\Windows\System32\CNAB4LMD.DLL
2014-05-20 11:39:42 202752 ----a-w- C:\Windows\System32\CNAB4EMD.DLL
2014-05-20 11:36:37 -------- d-----w- C:\Program Files\Canon
2014-05-20 11:25:34 21040 ----a-w- C:\Windows\System32\sdnclean64.exe
2014-05-20 11:25:32 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2014-05-20 11:25:26 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-20 10:15:29 -------- d-----w- C:\Users\David\AppData\Local\Skype
2014-05-20 10:15:22 -------- d-----r- C:\Program Files (x86)\Skype
2014-05-20 10:11:44 -------- d-sh--w- C:\Users\David\AppData\Local\EmieUserList
2014-05-20 10:11:44 -------- d-sh--w- C:\Users\David\AppData\Local\EmieSiteList
2014-05-20 09:08:50 15360 ----a-w- C:\Windows\System32\RdpGroupPolicyExtension.dll
2014-05-20 09:08:48 30208 ----a-w- C:\Windows\System32\drivers\TsUsbGD.sys
2014-05-20 09:08:48 19456 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys
2014-05-20 09:08:46 243200 ----a-w- C:\Windows\System32\rdpudd.dll
2014-05-20 09:08:46 192000 ----a-w- C:\Windows\SysWow64\rdpendp_winip.dll
2014-05-20 09:08:45 3174912 ----a-w- C:\Windows\System32\rdpcorets.dll
2014-05-20 09:08:45 228864 ----a-w- C:\Windows\System32\rdpendp_winip.dll
2014-05-20 09:08:13 792576 ----a-w- C:\Windows\SysWow64\TSWorkspace.dll
2014-05-20 09:08:13 1030144 ----a-w- C:\Windows\System32\TSWorkspace.dll
2014-05-20 09:08:08 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll
2014-05-20 09:08:08 366592 ----a-w- C:\Windows\System32\qdvd.dll
2014-05-20 08:58:28 -------- d-----w- C:\Users\David\AppData\Local\OriginLab
2014-05-20 08:58:21 -------- d-----w- C:\ProgramData\OriginLab
2014-05-20 08:56:43 -------- d-----w- C:\Program Files\OriginLab
2014-05-20 08:00:45 -------- d-----w- C:\Windows\Migration
2014-05-20 07:53:40 -------- d-----w- C:\Program Files (x86)\NetSetMan
2014-05-19 22:57:09 -------- d-----w- C:\Windows\Panther
2014-05-19 18:02:33 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2014-05-19 18:02:33 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2014-05-19 18:02:32 12625920 ----a-w- C:\Windows\System32\wmploc.DLL
2014-05-19 18:02:31 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL
2014-05-19 18:00:59 -------- d-----w- C:\Windows\SysWow64\Wat
2014-05-19 18:00:58 -------- d-----w- C:\Windows\System32\Wat
2014-05-19 17:55:11 -------- d-----w- C:\CorsoJava
2014-05-19 17:53:08 -------- d-----w- C:\Program Files (x86)\NETGEAR ReadyNAS
2014-05-19 17:32:49 -------- d-----w- C:\Program Files\VESTA-win64
2014-05-19 17:28:09 -------- d-----w- C:\Program Files\Gwyddion
2014-05-19 14:55:15 -------- d-s---w- C:\Windows\System32\CompatTel
2014-05-19 14:43:39 10702536 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2014-05-19 14:40:02 -------- d-----w- C:\Users\David\AppData\Local\Macromedia
2014-05-19 14:39:59 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2014-05-19 14:33:33 294912 ----a-w- C:\Windows\System32\browserchoice.exe
2014-05-19 14:27:20 -------- d-----w- C:\Windows\System32\MRT
2014-05-19 14:24:39 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-05-19 14:24:39 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-05-19 14:24:38 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll
2014-05-19 14:24:38 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll
2014-05-19 14:24:37 744448 ----a-w- C:\Windows\System32\WUDFx.dll
2014-05-19 14:24:37 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll
2014-05-19 14:24:37 229888 ----a-w- C:\Windows\System32\WUDFHost.exe
2014-05-19 14:21:49 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-05-19 14:21:49 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-05-19 14:21:49 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-05-19 14:18:57 70144 ----a-w- C:\Windows\System32\appinfo.dll
2014-05-19 14:17:42 903168 ----a-w- C:\Windows\SysWow64\certutil.exe
2014-05-19 14:15:50 1684928 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-05-19 14:14:35 30720 ----a-w- C:\Windows\System32\cryptdlg.dll
2014-05-19 14:13:19 878080 ----a-w- C:\Windows\System32\advapi32.dll
2014-05-19 14:13:19 859648 ----a-w- C:\Windows\System32\tdh.dll
2014-05-19 14:13:19 619520 ----a-w- C:\Windows\SysWow64\tdh.dll
2014-05-19 14:13:19 1732032 ----a-w- C:\Windows\System32\ntdll.dll
2014-05-19 14:13:18 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll
2014-05-19 14:13:18 1292192 ----a-w- C:\Windows\SysWow64\ntdll.dll
2014-05-19 14:05:19 461312 ----a-w- C:\Windows\System32\scavengeui.dll
2014-05-19 14:02:27 77312 ----a-w- C:\Windows\System32\packager.dll
2014-05-19 14:02:27 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-05-19 13:53:46 -------- d-----w- C:\Users\David\AppData\Local\Apple Computer
2014-05-19 13:53:39 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2014-05-19 13:53:35 -------- d-----w- C:\Program Files (x86)\VideoLAN
2014-05-19 13:53:21 -------- d-----w- C:\Program Files\iPod
2014-05-19 13:53:20 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-19 13:53:20 -------- d-----w- C:\Program Files\iTunes
2014-05-19 13:53:20 -------- d-----w- C:\Program Files (x86)\iTunes
2014-05-19 13:52:36 -------- d-----w- C:\Users\David\AppData\Local\5888
2014-05-19 13:52:18 -------- d-----w- C:\Users\David\AppData\Local\Apple
2014-05-19 13:52:06 -------- d-----w- C:\Program Files\Bonjour
2014-05-19 13:52:06 -------- d-----w- C:\Program Files (x86)\Bonjour
2014-05-19 13:51:21 -------- d-----w- C:\Users\David\AppData\Roaming\AVAST Software
2014-05-19 13:49:57 -------- d-----w- C:\Users\David\AppData\Local\NVIDIA Corporation
2014-05-19 13:49:38 -------- d-----w- C:\ProgramData\AVAST Software
2014-05-19 13:48:47 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll
2014-05-19 13:48:47 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll
2014-05-19 13:48:46 511328 ----a-w- C:\Windows\System32\d3dx10_43.dll
2014-05-19 13:48:46 470880 ----a-w- C:\Windows\SysWow64\d3dx10_43.dll
2014-05-19 13:48:46 2401112 ----a-w- C:\Windows\System32\D3DX9_43.dll
2014-05-19 13:48:46 1998168 ----a-w- C:\Windows\SysWow64\D3DX9_43.dll
2014-05-19 13:48:38 1279480 ----a-w- C:\Windows\System32\nvspcap64.dll
2014-05-19 13:48:38 1122312 ----a-w- C:\Windows\SysWow64\nvspcap.dll
2014-05-19 13:48:38 -------- d-----w- C:\Users\David\AppData\Local\NVIDIA
2014-05-19 13:48:10 -------- d-----w- C:\Users\David\AppData\Local\JDownloader v2.0
2014-05-19 13:47:59 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
2014-05-19 13:47:49 927520 ----a-w- C:\Windows\System32\nvvsvc.exe
2014-05-19 13:47:49 6769096 ----a-w- C:\Windows\System32\nvcpl.dll
2014-05-19 13:47:49 62808 ----a-w- C:\Windows\System32\nvshext.dll
2014-05-19 13:47:49 387528 ----a-w- C:\Windows\System32\nvmctray.dll
2014-05-19 13:47:49 3514144 ----a-w- C:\Windows\System32\nvsvc64.dll
2014-05-19 13:47:49 2560968 ----a-w- C:\Windows\System32\nvsvcr.dll
2014-05-19 13:47:36 61216 ----a-w- C:\Windows\System32\OpenCL.dll
2014-05-19 13:47:36 52056 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2014-05-19 13:47:32 -------- d-----w- C:\ProgramData\NVIDIA Corporation
2014-05-19 13:43:11 37320 ----a-w- C:\Windows\System32\nvaudcap64v.dll
2014-05-19 13:43:11 31520 ----a-w- C:\Windows\System32\nvhdap64.dll
2014-05-19 13:43:11 3109248 ----a-w- C:\Windows\System32\nvapi64.dll
2014-05-19 13:43:11 2730208 ----a-w- C:\Windows\SysWow64\nvapi.dll
2014-05-19 13:43:11 197408 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
2014-05-19 13:43:11 1885472 ----a-w- C:\Windows\System32\nvdispco6433523.dll
2014-05-19 13:43:11 18531568 ----a-w- C:\Windows\System32\nvwgf2umx.dll
2014-05-19 13:43:11 16003912 ----a-w- C:\Windows\SysWow64\nvwgf2um.dll
2014-05-19 13:43:11 1516488 ----a-w- C:\Windows\System32\nvdispgenco6433523.dll
2014-05-19 13:43:11 1515296 ----a-w- C:\Windows\System32\nvhdagenco6420103.dll
2014-05-19 13:43:11 14434704 ----a-w- C:\Windows\SysWow64\nvd3dum.dll
2014-05-19 13:42:09 -------- d-----w- C:\Users\David\AppData\Local\Programs
2014-05-19 13:41:15 -------- d-----w- C:\Program Files\NVIDIA Corporation
2014-05-19 13:37:53 -------- d-----w- C:\Users\David\AppData\Local\Adobe
2014-05-19 13:35:54 70832 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-19 13:35:54 692400 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-05-19 13:33:38 -------- d-----w- C:\ProgramData\Oracle
2014-05-19 13:33:31 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2014-05-19 13:30:40 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2014-05-19 13:30:40 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-05-19 13:30:40 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2014-05-19 13:28:47 -------- d-sh--w- C:\Windows\Installer
2014-05-19 13:27:35 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2014-05-19 13:27:34 99840 ----a-w- C:\Windows\System32\wudriver.dll
2014-05-19 13:27:33 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-05-19 13:27:33 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2014-05-19 13:26:51 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll
2014-05-19 13:26:48 -------- d-----w- C:\Program Files (x86)\Realtek
2014-05-19 13:26:35 -------- d-----w- C:\Users\David\AppData\Roaming\WinBatch
2014-05-19 13:07:28 -------- d-----w- C:\Users\David\AppData\Local\Diagnostics
.
==================== Find3M ====================
.
2014-05-20 02:44:03 9735256 ----a-w- C:\Windows\SysWow64\nvcuda.dll
2014-05-19 14:53:58 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-19 13:50:51 85328 ----a-w- C:\Windows\System32\drivers\aswstm.sys
2014-05-19 13:50:51 1039096 ----a-w- C:\Windows\System32\drivers\aswsnx.sys
2014-05-19 13:50:34 208416 ----a-w- C:\Windows\System32\drivers\aswVmm.sys
2014-05-19 13:50:33 93568 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2014-05-19 13:50:33 79184 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2014-05-19 13:50:33 65776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys
2014-05-19 13:50:33 43152 ----a-w- C:\Windows\avastSS.scr
2014-05-19 13:50:33 29208 ----a-w- C:\Windows\System32\drivers\aswHwid.sys
2014-05-09 06:14:03 477184 ----a-w- C:\Windows\System32\aepdu.dll
2014-05-09 06:11:23 424448 ----a-w- C:\Windows\System32\aeinv.dll
2014-04-12 02:22:05 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2014-04-12 02:22:05 155072 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2014-04-12 02:19:38 29184 ----a-w- C:\Windows\System32\sspisrv.dll
2014-04-12 02:19:38 136192 ----a-w- C:\Windows\System32\sspicli.dll
2014-04-12 02:19:37 28160 ----a-w- C:\Windows\System32\secur32.dll
2014-04-12 02:19:32 1460736 ----a-w- C:\Windows\System32\lsasrv.dll
2014-04-12 02:19:05 31232 ----a-w- C:\Windows\System32\lsass.exe
2014-04-12 02:12:06 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2014-04-12 02:10:56 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2014-03-31 07:35:08 270496 ------w- C:\Windows\System32\MpSigStub.exe
.
============= FINISH: 8:38:27,00 ===============

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 19/05/2014 15:04:49
System Uptime: 03/06/2014 08:27:33 (0 hours ago)
.
Motherboard: TOSHIBA | | NWQAA
Processor: Intel® Core™ i7 CPU Q 720 @ 1.60GHz | CPU | 1600/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 223 GiB total, 149,844 GiB free.
D: is CDROM ()
G: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Description: ENE CIR HID Receiver
Device ID: ENECIR\ENE0200\6&65DD48A&0&00
Manufacturer: ENE
Name: ENE CIR HID Receiver
PNP Device ID: ENECIR\ENE0200\6&65DD48A&0&00
Service: enecirhid
.
==== System Restore Points ===================
.
RP53: 28/05/2014 08:46:03 - Before uninstalling CCleaner
RP54: 30/05/2014 10:14:05 - Before uninstalling Driver Reviver
RP55: 30/05/2014 10:21:33 - Before uninstalling SlimDrivers
RP56: 30/05/2014 10:21:44 - Removed SlimDrivers
RP57: 30/05/2014 13:41:04 - Windows Update
RP58: 03/06/2014 08:31:22 - Installed DirectX
RP59: 03/06/2014 08:31:37 - Windows Update
.
==== Installed Programs ======================
.
Adobe Flash Player 13 ActiveX
Adobe Flash Player 13 Plugin
Adobe Reader XI (11.0.07) - Italiano
Apple Mobile Device Support
Apple Software Update
avast! Free Antivirus
Bluetooth Stack for Windows by Toshiba
Bonjour
Broadcom 802.11 Network Adapter
Canon LBP2900
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Driver Reviver
FileZilla Client 3.8.0
Gwyddion
iCloud
iTunes
Java 7 Update 55
Java Auto Updater
JDownloader 2
JMicron Flash Media Controller Driver
Malwarebytes Anti-Malware version 2.0.2.1012
Math Kernel Libraries
Math Kernel Libraries (64-bit)
MATLAB R2014a
Mendeley Desktop 1.11
Microsoft .NET Framework 4.5.1
Microsoft Access MUI (Italian) 2013
Microsoft DCF MUI (Italian) 2013
Microsoft Excel MUI (Italian) 2013
Microsoft Groove MUI (Italian) 2013
Microsoft InfoPath MUI (Italian) 2013
Microsoft Lync MUI (Italian) 2013
Microsoft Office 32-bit Components 2013
Microsoft Office Korrekturhilfen 2013 - Deutsch
Microsoft Office OSM MUI (Italian) 2013
Microsoft Office OSM UX MUI (Italian) 2013
Microsoft Office Professional Plus 2013
Microsoft Office Proofing (Italian) 2013
Microsoft Office Proofing Tools 2013 - English
Microsoft Office Proofing Tools 2013 - Italiano
Microsoft Office Shared 32-bit MUI (Italian) 2013
Microsoft Office Shared MUI (Italian) 2013
Microsoft OneNote MUI (Italian) 2013
Microsoft Outlook MUI (Italian) 2013
Microsoft PowerPoint MUI (Italian) 2013
Microsoft Publisher MUI (Italian) 2013
Microsoft Silverlight
Microsoft Silverlight 5.1
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
Microsoft Word MUI (Italian) 2013
Mozilla Firefox 29.0.1 (x86 en-US)
Mozilla Maintenance Service
Mozilla Thunderbird 24.5.0 (x86 it)
NetSetMan 3.7.2
NI-APAL 2.2 64-Bit Error Files
NI-APAL 2.2 Error Files
NI-APAL 2.2 Error Files for LabVIEW RT
NI-DAQmx/LabVIEW shared documentation 9.7.5
NI-DAQmx/LabVIEW shared documentation for 64 Bit Windows 9.7.5
NI-Mesa
NI-PAL 2.9.1 Error Files for LabVIEW RT
NI-PAL 2.9.1f0 for Phar Lap ETS
NI-RPC 4.4.0f0
NI-RPC 4.4.0f0 for 64 Bit Windows
NI-RPC 4.4.0f0 for Phar Lap ETS
NI .NET Framework 4.0
NI ActiveX Container
NI ActiveX Container (64-bit)
NI Assistant Framework
NI Assistant Framework 64-bit
NI Assistant Framework 64-bit LabVIEW 2013 Support
NI Assistant Framework LabVIEW Code Generator 2013 (64-bit)
NI Authentication 13.0.0
NI Authentication 13.0.0 (64-bit)
NI CodeSignAPI
NI Curl 13.0.0
NI Curl 13.0.0 (64-bit)
NI Customer Experience Improvement Program
NI Customer Experience Improvement Program (64-bit)
NI DataSocket 5.1
NI DataSocket 5.1 (64-bit)
NI Distributed System Manager 2013
NI Error Reporting 2013
NI Error Reporting 2013 (64-bit)
NI Error Reporting Interface Installer 5.5
NI Error Reporting Interface Installer 5.5 for Windows 64-bit
NI EulaDepot
NI Example Finder 13.0
NI GMP Windows 32-bit Installer 13.0.0
NI GMP Windows 64-bit Installer 13.0.0
NI Help Assistant 2.0
NI Help Assistant 2.0 (64bit)
NI Instrument IO Assistant for LabVIEW 2013 64-bit
NI LabVIEW 2011 Real-Time NBFifo
NI LabVIEW 2012 Real-Time NBFifo
NI LabVIEW 2012 Run-Time Engine Web Server
NI LabVIEW 2012 SP1 Deployable License
NI LabVIEW 2012 SP1 Run-Time Engine Non-English Support.
NI LabVIEW 2013 (64-bit)
NI LabVIEW 2013 (64-bit) Scripting Code Generator
NI LabVIEW 2013 (64-bit) Search
NI LabVIEW 2013 (64 bit) MeasAppChm File
NI LabVIEW 2013 Deployable License
NI LabVIEW 2013 Deployment Framework
NI LabVIEW 2013 f3 (64-bit)
NI LabVIEW 2013 Help
NI LabVIEW 2013 Help File
NI LabVIEW 2013 License
NI LabVIEW 2013 Manuals
NI LabVIEW 2013 Real-Time Error Dialog
NI LabVIEW 2013 Run-Time Engine Non-English Support.
NI LabVIEW 2013 Run-Time Engine Web Server
NI LabVIEW 2013 Simulation
NI LabVIEW 2013 Web Server 64-Bit
NI LabVIEW 2013 Web Services Runtime (64-bit)
NI LabVIEW Broker
NI LabVIEW Broker (64 bit)
NI LabVIEW C Interface
NI LabVIEW Compare Utility 13.0.0
NI LabVIEW MAX XML
NI LabVIEW Merge Utility 13.0.0
NI LabVIEW Run-Time Engine 2011 SP1
NI LabVIEW Run-Time Engine 2012 SP1 f5
NI LabVIEW Run-Time Engine 2013
NI LabVIEW Run-Time Engine 2013 f2 (64-bit)
NI LabVIEW Run-Time Engine Interop 2011
NI LabVIEW Run-Time Engine Interop 2012 SP1
NI LabVIEW Run-Time Engine Interop 2013
NI LabVIEW Run-Time Engine Interop 2013 (64-bit)
NI LabVIEW Web Server 64-Bit for Run-Time Engine
NI LabVIEW Web Server for Run-Time Engine
NI LabWindows/CVI 2010 SP1 Analysis Library
NI LabWindows/CVI 2010 SP1 Analysis Library (64-bit)
NI LabWindows/CVI 2010 SP1 Code Generator
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Original)
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Updated)
NI LabWindows/CVI 2010 SP1 Network Variable Library
NI LabWindows/CVI 2010 SP1 Network Variable Library (64-bit)
NI LabWindows/CVI 2010 SP1 Run-Time Engine (64-bit)
NI LabWindows/CVI 2010 SP1 TDM Streaming Library
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (64-bit)
NI LabWindows/CVI 2012 LabVIEW DLL Builder
NI LabWindows/CVI Run-Time Engine 2010 SP1
NI LabWindows/CVI Run-Time Engine 2010 SP1 (Updated)
NI Launcher
NI License Manager
NI Logos 5.5
NI Logos 5.5 (64-bit)
NI Logos LabVIEW 2013 Support
NI Logos XT Support
NI Logos64 XT Support
NI Math Kernel Libraries
NI Math Kernel Libraries (64-bit)
NI MAX Remote Configuration 64-bit Installer 5.5
NI MAX Remote Configuration Installer 5.5
NI MAX Support for 64 Bit Windows
NI MDF Support
NI mDNS Responder 2.2 for Windows 64-bit
NI mDNS Responder 2.2.0
NI Measurement & Automation Explorer 5.5.0
NI Measurement Studio Common .NET Assemblies (x64) for .NET 3.5
NI Measurement Studio Common .NET Assemblies for .NET 2.0
NI Measurement Studio Common .NET Assemblies for .NET 3.5 and VS2008
NI Measurement Studio ComponentWorks 3D Graph
NI Measurement Studio ComponentWorks UI
NI Measurement Studio Recipe Processor
NI MetaSuite Installer
NI MXS 5.5.0
NI MXS 5.5.0 for 64 Bit Windows
NI Network Discovery 5.5
NI Network Discovery 5.5 for Windows 64-bit
NI NI LabVIEW 2011 SP1 Run-Time Engine Non-English Support
NI OPC Support
NI OPCEnum Shared
NI Portable Configuration 5.5.0
NI Portable Configuration for 64 Bit Windows 5.5.0
NI Real-Time Device Manager
NI Registration Wizard
NI Remote Provider for MAX 5.5.0
NI Remote PXI Provider for MAX 5.5.0
NI Search Shared 64-bit
NI Security Update (KB 67L8LCQW)
NI Security Update (KB 67L8LCQW) (64-bit)
NI Service Locator 13.0
NI SLCP 2.0 (64-bit)
NI Software Provider for MAX 5.5.0
NI SSL LabVIEW 2013 RTE Support (64-bit)
NI SSL LabVIEW 2013 Support (64-bit)
NI SSL LabVIEW RTE 2012 SP1 Support
NI SSL LabVIEW RTE 2013 Support
NI SSL Support
NI SSL Support (64-bit)
NI System API .NET 5.5.0
NI System API Client for WIF 5.5.0
NI System API Web-Service 32-bit 5.5.0
NI System API Windows 32-bit 5.5.0
NI System API Windows 64-bit 5.5.0
NI System Configuration 5.5.0 LabVIEW Support
NI System Configuration LV2013 64-bit Support 5.5.0
NI System Configuration Runtime 5.5.0
NI System Configuration Runtime 5.5.0 for Windows 64-bit
NI System State Publisher
NI System State Publisher (64-bit)
NI System Web Server 13.0
NI System Web Server Base 13.0.0
NI System Web Server Base 13.0.0 (64-bit)
NI TDM Excel Add-In 3.5
NI TDM Excel Add-In 3.5 64-bit
NI TDM Streaming 2.5
NI TDM Streaming 2.5 (64-bit)
NI Trace Engine
NI Trace Engine (64-bit)
NI Uninstaller
NI Update Service 2.3
NI Update Service 2.3 (64-bit)
NI USI 2.0.1
NI USI 2.0.1 64-Bit
NI Variable Engine (64-bit)
NI Variable Engine 2.6.0
NI Variable Engine LabVIEW 2013 Support
NI VC2005MSMs x64
NI VC2005MSMs x86
NI VC2008MSMs x64
NI VC2008MSMs x86
NI VC2010SP1MSMs x64
NI VC2010SP1MSMs x86
NI VIPM Helper 2013
NI Vision 2013
NI Vision 2013 .NET
NI Vision 2013 64-bit
NI Vision Assistant 2013
NI Vision Assistant 2013 .NET
NI Vision Assistant 2013 64-bit
NI Vision Common Resources 2013 f2
NI Vision Common Resources 2013 f2 64-bit
NI Vision Common Resources Real-Time 2013 f2
NI Vision Run-Time Engine 2013
NI Vision Run-Time Engine 2013 64-bit
NI VisionRun-Time Engine 2013 .NET
NI Web-Based Configuration and Monitoring 2013
NI Web Application Server 13.0
NI Web Application Server 13.0 (64-bit)
NI Web Pipeline 3.3
NI Web Pipeline 3.3 (64-bit)
NI Xalan Delay Load 1.10.2
NI Xalan Delay Load 1.10.2 64-bit
NI Xerces Delay Load 2.7.3
NI Xerces Delay Load 2.7.3 64-bit
NVIDIA Control Panel 337.88
NVIDIA GeForce Experience 2.1
NVIDIA Graphics Driver 337.88
NVIDIA HD Audio Driver 1.3.30.1
NVIDIA Install Application
NVIDIA LED Visualizer 1.0
NVIDIA Network Service
NVIDIA PhysX
NVIDIA PhysX System Software 9.13.1220
NVIDIA ShadowPlay 14.6.22
NVIDIA Update 14.6.22
NVIDIA Update Core
NVIDIA Virtual Audio 1.2.23
Origin90
Outils de vérification linguistique 2013 de Microsoft Office - Français
RAIDar 4.3.4
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Reset NI Config 5.5.0
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
SHIELD Streaming
Skype™ 6.16
Software National Instruments
Spybot - Search & Destroy
Supporto applicazioni Apple
Synaptics Pointing Device Driver
TOSHIBA Flash Cards Support Utility
TOSHIBA Hardware Setup
Tweaking.com - Windows Repair (All in One)
Utility Common Driver
VI Package Manager 2013
VirtualCloneDrive
VLC media player 2.1.3
WIF Core Dependencies Windows 5.5.0
Windows Driver Package - ENE (enecir) HIDClass (04/29/2008 2.5.0.0)
WinRAR 5.01 (64-bit)
Your Uninstaller! 7
.
==== Event Viewer Messages From Past Week ========
.
31/05/2014 15:41:37, Error: NetBT [4321] - The name "DAVID-PC :0" could not be registered on the interface with IP address 192.168.1.6. The computer with the IP address 192.168.1.2 did not allow the name to be claimed by this computer.
31/05/2014 13:35:28, Error: Server [2505] - The server could not bind to the transport \Device\NetBT_Tcpip_{1EE96F17-481B-40AF-B31D-906D4EE44573} because another computer on the network has the same name. The server could not start.
31/05/2014 13:35:28, Error: NetBT [4321] - The name "DAVID-PC :20" could not be registered on the interface with IP address 192.168.1.6. The computer with the IP address 192.168.1.2 did not allow the name to be claimed by this computer.
30/05/2014 09:23:05, Error: Microsoft-Windows-WMPNSS-Service [14332] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
30/05/2014 09:22:54, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x0000001e (0x0000000000000000, 0x0000000000000000, 0x0000000000000000, 0x0000000000000000). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 053014-14258-01.
.
==== End Of File ===========================

Attached Files


Edited by Oh My, 07 June 2014 - 11:06 AM.
Posted logs


#7 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,800 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:08:27 PM

Posted 07 June 2014 - 07:55 AM

Greetings David and :welcome: to BleepingComputer's Virus/Trojan/Spyware/Malware Removal forum.

My name is Oh My! and I am here to help you! Now that we are "friends" please call me Gary.

===================================================

Ground Rules:
  • First, I would like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. Please try to match our commitment to you with your patience toward us. If this was easy we would never have met. :)
  • Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
  • Please perform all steps in the order they are listed in each set of instructions. Some steps may be a bit complicated. If things are not clear, be sure to stop and let me know. We need to work on this together with confidence.
  • Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems simply stop and tell me.
  • When you post your reply, use the Replytopic.jpg button instead.
  • In the upper right hand corner of the topic you will see the Followtopic.jpg button. Click on this then choose Immediate E-Mail notification and then Proceed and you will be sent an email once I have posted a response.
  • If you do not reply to your topic after 5 days we assume it has been abandoned and I will close it.
  • When your computer is clean I will alert you of such. I will also provide for you detailed information about how you can combat future infections.
  • I would like to remind you to make no further changes to your computer unless I direct you to do so.
  • Now let's get started :thumbup2:
===================================================

Now that I am assisting you, you can expect that I will be very responsive to your situation. If you are able, I would request you check this thread at least once per day so that we can try to resolve your issues effectively and efficiently. If you are going to be delayed please be considerate and post that information so that I know you are still with me. Unfortunately, there are many people waiting to be assisted and not enough of us at BleepingComputer to go around. I appreciate your understanding and diligence.

Thank you for your patience thus far. While I review our situation please run the below for me.

===================================================

Farbar Recovery Scan Tool (FRST)

--------------------
  • Download Farbar Recover Scan Tool for either 32 bit or 64 bit systems and save it to your desktop
  • If you are unsure if you have 32 bit or 64 bit simply download and try one. If that doesn't run properly the other one should
  • Double click the icon
  • Click Yes to the disclaimer
  • Make sure the Addition.txt box is checked
  • Click Scan and allow the program to run
  • Click OK on the Scan complete screen, then OK on the Addition.txt pop up screen
  • 2 Notepad documents should now be open on your desktop.
  • Please copy and paste the contents of both in your reply
===================================================

System Summary Information

--------------------
  • Press the windows key Windows_Logo_key.gif + r on your keyboard at the same time
  • Type msinfo32 and press Enter
  • Left click on System Summary
  • Click File, Save, and name the file Summary
  • Zip and attach the file to your reply
===================================================

Uploading Minidump File

--------------------
  • Using Windows Explorer please navigate to the following location:

C:\Windows\Minidump\053014-14258-01.dmp

  • Zip the file
  • Upload the file here
  • I will be automatically notified when the file has been successfully uploaded
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • FRST results
  • Addition log
  • Attached System Summary Information
  • Uploaded Minidump file

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#8 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 08 June 2014 - 11:29 AM

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-06-2014
Ran by David (administrator) on DAVID-PC on 08-06-2014 17:55:40
Running from C:\Users\David\Downloads
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
(CANON INC.) C:\Windows\System32\CNAB4RPD.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ReviverSoft LLC) C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(TOSHIBA CORPORATION.) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(TOSHIBA CORPORATION.) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosA2dp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TOSHIBA CORPORATION.) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHid.exe
(TOSHIBA CORPORATION.) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHSP.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-03-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2000-01-01] (Realtek Semiconductor)
HKLM-x32\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [423936 2010-03-04] (TOSHIBA Electronics, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3890208 2014-06-06] (AVAST Software)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-15] (Apple Inc.)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [NI Update Service] => C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe [857888 2013-05-28] (National Instruments)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2009-12-25] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1963686482-2506715733-4041609270-1000\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [847000 2013-04-19] ()
HKU\S-1-5-21-1963686482-2506715733-4041609270-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-1963686482-2506715733-4041609270-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-1963686482-2506715733-4041609270-1000\...\MountPoints2: {334384fc-df55-11e3-879d-806e6f6e6963} - D:\setup.exe
HKU\S-1-5-21-1963686482-2506715733-4041609270-1000\...\MountPoints2: {e7588bc1-e006-11e3-a2cf-b482fee59e6e} - G:\autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth Manager.lnk
ShortcutTarget: Bluetooth Manager.lnk -> C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Canon LBP2900 Finestra di stato.lnk
ShortcutTarget: Canon LBP2900 Finestra di stato.lnk -> C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE (CANON INC.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting (64-bit).lnk
ShortcutTarget: NI Error Reporting (64-bit).lnk -> C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk
ShortcutTarget: NI Error Reporting.lnk -> C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://it.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6FE5711F6673CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = it
SearchScopes: HKCU - {200D28DC-F75D-47DC-8A66-A65BE4E9B81C} URL = http://www.google.com/search?hl=en&q={searchTerms}
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Winsock: Catalog5 08 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512] (National Instruments Corporation)
Winsock: Catalog5-x64 08 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560] (National Instruments Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1EE96F17-481B-40AF-B31D-906D4EE44573}: [NameServer]160.80.1.1,160.80.2.5

FireFox:
========
FF ProfilePath: C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\jleriq67.default-1400586669721
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SearchEngineOrder.2: Yahoo
FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~3\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npIMAQAXControl.dll (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2011win32.dll (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2012win32.dll (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2013win32.dll (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2013win64.dll ()
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF SearchPlugin: C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\jleriq67.default-1400586669721\searchplugins\firefox-add-ons.xml
FF Extension: iCloud Bookmarks - C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\jleriq67.default-1400586669721\Extensions\firefoxdav@icloud.com [2014-05-27]
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-19]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-19]

==================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-19] (AVAST Software)
R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2010-10-27] (National Instruments, Inc.)
R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [53544 2013-06-12] (National Instruments Corporation)
R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [63792 2013-06-12] (National Instruments Corporation)
R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [83768 2013-06-10] (National Instruments Corporation)
R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57696 2013-06-08] (National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [81248 2013-06-08] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [380720 2013-06-12] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation)
R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [260976 2013-05-11] (National Instruments Corporation)
R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [176512 2013-06-19] (National Instruments Corporation)
R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [90440 2013-06-07] (National Instruments Corporation)
R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57680 2013-06-08] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [687944 2013-06-15] (National Instruments Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2000-01-01] (Realtek Semiconductor)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-19] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-19] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-19] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-19] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-19] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-19] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2014-05-30] ()
S3 cpuz135; \??\F:\Users\GUSTI\Desktop\sata\pcwiz_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-06-08 17:55 - 2014-06-08 17:55 - 00019405 _____ () C:\Users\David\Downloads\FRST.txt
2014-06-08 17:55 - 2014-06-08 17:55 - 00000000 ____D () C:\FRST
2014-06-08 17:54 - 2014-06-08 17:54 - 02072576 _____ (Farbar) C:\Users\David\Downloads\FRST64.exe
2014-06-08 17:54 - 2014-06-08 17:54 - 01063424 _____ (Farbar) C:\Users\David\Downloads\FRST.exe
2014-06-04 11:09 - 2014-06-04 11:09 - 00003114 _____ () C:\Users\David\AppData\Local\recently-used.xbel
2014-06-04 10:55 - 2014-06-04 11:09 - 00000000 ____D () C:\Users\David\AppData\Local\gtk-2.0
2014-06-04 10:52 - 2014-06-04 10:52 - 00000000 ____D () C:\Users\David\.thumbnails
2014-06-04 10:49 - 2014-06-04 11:16 - 00000000 ____D () C:\Users\David\.gimp-2.8
2014-06-04 10:49 - 2014-06-04 10:49 - 00000000 ____D () C:\Users\David\AppData\Local\gegl-0.2
2014-06-04 10:48 - 2014-06-04 10:48 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2014-06-04 10:48 - 2014-06-04 10:48 - 00000000 ____D () C:\Program Files\GIMP 2
2014-06-04 10:40 - 2014-06-04 10:41 - 90396104 _____ (The GIMP Team ) C:\Users\David\Downloads\gimp-2.8.10-setup.exe
2014-06-03 20:12 - 2014-06-03 21:25 - 00932408 _____ () C:\Users\David\Desktop\TOCrev.pptx
2014-06-03 20:01 - 2014-06-03 20:01 - 00001770 _____ () C:\Windows\PFRO.log
2014-06-03 08:41 - 2014-06-03 08:41 - 00004146 _____ () C:\Users\David\Desktop\attach.zip
2014-06-03 08:38 - 2014-06-03 08:39 - 00034618 _____ () C:\Users\David\Desktop\dds.txt
2014-06-03 08:38 - 2014-06-03 08:38 - 00012563 _____ () C:\Users\David\Desktop\attach.txt
2014-06-03 08:31 - 2014-05-30 01:07 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2014-06-03 08:31 - 2014-05-30 01:07 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2014-05-31 12:29 - 2014-05-31 12:29 - 00002163 _____ () C:\Users\David\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2014-05-31 12:28 - 2014-05-31 12:29 - 05558808 _____ () C:\Users\David\Downloads\tweaking.com_windows_repair_aio_setup(1).exe
2014-05-30 10:21 - 2014-06-03 08:29 - 00000000 ____D () C:\ProgramData\DriverReviver.exe
2014-05-30 10:20 - 2014-06-08 17:40 - 00000316 _____ () C:\Windows\Tasks\Start Driver Reviver for David-PC@David(logon).job
2014-05-30 10:20 - 2014-05-30 10:20 - 00002608 _____ () C:\Windows\System32\Tasks\Start Driver Reviver for David-PC@David(logon)
2014-05-30 10:20 - 2014-05-30 10:20 - 00000000 ____D () C:\ProgramData\ReviverSoft
2014-05-30 10:20 - 2014-05-30 10:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft
2014-05-30 09:53 - 2014-05-30 09:53 - 00000000 ____D () C:\Program Files\ReviverSoft
2014-05-30 09:22 - 2014-05-30 09:22 - 627927579 _____ () C:\Windows\MEMORY.DMP
2014-05-30 09:22 - 2014-05-30 09:22 - 00284616 _____ () C:\Windows\Minidump\053014-14258-01.dmp
2014-05-30 09:22 - 2014-05-30 09:22 - 00000000 ____D () C:\Windows\Minidump
2014-05-28 09:32 - 2014-06-08 17:02 - 00003441 _____ () C:\Windows\setupact.log
2014-05-28 09:32 - 2014-05-28 09:32 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-28 08:54 - 2014-05-28 08:54 - 00000000 ____D () C:\Program Files\CCleaner Professional v4.14.4707 Portable
2014-05-27 13:09 - 2014-05-27 13:09 - 00067634 _____ () C:\Users\David\Desktop\bookmarks.html
2014-05-27 10:21 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin
2014-05-27 10:19 - 2014-05-27 10:27 - 00000000 ____D () C:\Users\David\AppData\Local\21861321-95C2-43BE-839D-C2332E02E07E.aplzod
2014-05-27 10:19 - 2014-05-27 10:19 - 00000000 ____D () C:\Users\David\Documents\Outlook Files
2014-05-27 10:18 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-05-27 10:18 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-05-27 10:18 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-05-27 10:17 - 2014-05-27 10:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-05-26 18:19 - 2014-06-03 08:34 - 00034538 _____ () C:\Users\David\Desktop\ddsOLD.txt
2014-05-26 18:19 - 2014-06-03 08:34 - 00012563 _____ () C:\Users\David\Desktop\attachOLD.txt
2014-05-26 18:18 - 2014-05-26 18:18 - 00688992 ____R (Swearware) C:\Users\David\Downloads\dds.com
2014-05-26 12:59 - 2014-05-26 12:59 - 01327971 _____ () C:\Users\David\Desktop\adwcleaner_3.211.exe
2014-05-26 11:55 - 2012-12-10 13:38 - 00388608 _____ (Trend Micro Inc.) C:\Users\David\Downloads\HijackThis.exe
2014-05-26 11:41 - 2014-05-27 12:54 - 00013858 _____ () C:\Users\David\Desktop\ordineconsumabili.xml
2014-05-26 11:40 - 2014-06-04 15:23 - 00000000 ____D () C:\Users\David\Documents\Modelli di Office personalizzati
2014-05-23 16:30 - 2014-05-26 14:37 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE
2014-05-23 16:26 - 2014-05-23 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2014-05-23 16:26 - 2014-05-23 16:26 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2014-05-23 16:25 - 2014-05-23 16:25 - 05577080 _____ () C:\Users\David\Downloads\tweaking.com_windows_repair_aio_setup.exe
2014-05-23 15:46 - 2014-05-23 15:46 - 00000000 ____D () C:\Users\David\Documents\ProcAlyzer Dumps
2014-05-23 15:28 - 2014-05-23 15:35 - 00000625 _____ () C:\Users\David\Desktop\JRT.txt
2014-05-23 15:18 - 2014-05-23 15:18 - 00000971 _____ () C:\Users\David\Desktop\AdwCleaner[S1].txt
2014-05-23 13:02 - 2014-05-23 13:02 - 00014590 _____ () C:\Users\David\Desktop\hijackthis.log
2014-05-23 12:48 - 2014-05-23 15:43 - 00297988 _____ () C:\Users\David\Desktop\OTL.Txt
2014-05-23 12:45 - 2014-05-23 12:45 - 00084788 _____ () C:\Users\David\Desktop\Extras.Txt
2014-05-23 10:14 - 2014-05-23 10:14 - 00000000 ____D () C:\Windows\ERUNT
2014-05-23 10:11 - 2014-05-26 14:13 - 00000000 ____D () C:\AdwCleaner
2014-05-23 10:08 - 2014-05-23 10:08 - 00602112 _____ (OldTimer Tools) C:\Users\David\Desktop\OTL.exe
2014-05-23 10:05 - 2014-05-23 10:05 - 01016261 _____ (Thisisu) C:\Users\David\Desktop\JRT.exe
2014-05-23 10:03 - 2014-05-26 11:45 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-23 10:03 - 2014-05-23 10:03 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-23 10:03 - 2014-05-23 10:03 - 00001106 _____ () C:\ProgramData\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-23 10:03 - 2014-05-23 10:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-23 10:03 - 2014-05-23 10:03 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-23 10:03 - 2014-05-23 10:03 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-23 10:03 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-23 10:03 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-23 10:03 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-23 10:02 - 2014-05-23 10:02 - 17273585 _____ () C:\Users\David\Downloads\Malwarebytes.zip
2014-05-23 10:02 - 2014-05-23 10:02 - 00000000 ____D () C:\Users\David\Downloads\Malwarebytes
2014-05-23 09:35 - 2014-05-23 09:34 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140523-093556.backup
2014-05-22 14:30 - 2014-05-22 14:30 - 00000000 ____D () C:\Users\David\AppData\Local\Mendeley Ltd
2014-05-22 09:57 - 2014-05-22 09:57 - 00000000 ____D () C:\Users\David\AppData\Roaming\NVIDIA
2014-05-22 09:57 - 2014-05-22 09:57 - 00000000 ____D () C:\Users\David\AppData\Local\Blizzard Entertainment
2014-05-22 09:54 - 2014-05-22 09:54 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-05-22 09:48 - 2014-05-22 09:48 - 00000000 ____D () C:\ProgramData\Battle.net
2014-05-21 12:38 - 2014-05-21 12:38 - 00000000 ____D () C:\Program Files\DIFX
2014-05-21 12:37 - 2008-04-29 01:55 - 00064000 _____ (ENE TECHNOLOGY INC.) C:\Windows\system32\Drivers\enecir.sys
2014-05-21 12:37 - 2008-04-25 09:16 - 00006656 _____ (ENE TECHNOLOGY INC.) C:\Windows\system32\Drivers\enecirhidma.sys
2014-05-21 12:21 - 2014-05-21 12:21 - 00000000 ____D () C:\Users\David\AppData\Local\DriverTuner
2014-05-21 12:20 - 2014-05-21 12:39 - 00000000 ____D () C:\Program Files (x86)\DriverTuner
2014-05-21 12:17 - 2014-05-21 12:17 - 00000000 ____D () C:\Users\David\Documents\Bluetooth
2014-05-21 12:16 - 2014-05-21 12:16 - 00000000 ____D () C:\Users\David\AppData\Local\Toshiba
2014-05-21 12:16 - 2014-05-21 12:16 - 00000000 ____D () C:\ProgramData\TOSHIBA
2014-05-21 12:05 - 2009-06-18 21:42 - 00040832 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\Drivers\TosBtCi.dll
2014-05-21 11:57 - 2014-05-21 11:57 - 00003270 _____ () C:\Windows\System32\Tasks\{A3C91487-280C-416C-9D7E-DFB90AA21B6D}
2014-05-21 11:48 - 2014-05-21 11:48 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash
2014-05-21 11:35 - 2014-05-21 11:35 - 00000000 ____D () C:\Windows\SysWOW64\SDA
2014-05-21 11:35 - 2014-05-21 11:35 - 00000000 ____D () C:\Program Files (x86)\JMicron
2014-05-21 11:31 - 2014-05-21 11:31 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-05-21 11:31 - 2013-08-05 11:50 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-05-21 11:29 - 2014-05-21 11:30 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-05-21 11:29 - 2014-05-21 11:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-05-21 11:29 - 2014-05-21 11:29 - 00000000 ____D () C:\Windows\system32\SRSLabs
2014-05-21 11:29 - 2014-05-21 11:29 - 00000000 ____D () C:\Program Files\Realtek
2014-05-21 11:29 - 2000-01-01 02:00 - 03872984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-05-21 11:29 - 2000-01-01 02:00 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 02792152 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-05-21 11:29 - 2000-01-01 02:00 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 01024216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00946392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00757301 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-05-21 11:29 - 2000-01-01 02:00 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-05-21 11:29 - 2000-01-01 02:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-05-21 11:26 - 2014-05-21 11:26 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-05-21 11:25 - 2014-05-21 11:25 - 03891200 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 03555840 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 03058168 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL664.SYS
2014-05-21 11:25 - 2014-05-21 11:25 - 00095472 _____ (Broadcom Corporation) C:\Windows\system32\bcmwlcoi.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 00006656 _____ () C:\Windows\system32\bcmwlrc.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 00000000 ____D () C:\Program Files\Broadcom
2014-05-21 11:21 - 2014-05-30 10:13 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys
2014-05-21 11:21 - 2014-05-21 11:21 - 00000000 ____D () C:\Users\Public\Documents\Downloaded Installers
2014-05-21 11:21 - 2014-05-21 11:21 - 00000000 ____D () C:\Users\David\AppData\Local\SlimWare Utilities Inc
2014-05-21 11:21 - 2014-05-21 11:21 - 00000000 ____D () C:\ProgramData\Documents\Downloaded Installers
2014-05-21 10:25 - 2014-05-21 10:25 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2014-05-21 10:25 - 2014-05-21 10:25 - 00000000 ____D () C:\Program Files\Synaptics
2014-05-21 10:14 - 2014-05-21 10:14 - 00000237 _____ () C:\Users\David\Desktop\ContattoSwitz.txt
2014-05-21 10:09 - 2014-05-31 15:59 - 00000000 ____D () C:\Users\David\Documents\LabVIEW Data
2014-05-21 10:00 - 2014-05-21 10:00 - 00000000 ____D () C:\Users\David\AppData\Roaming\JKI
2014-05-21 09:55 - 2014-05-30 10:30 - 00000000 ___RD () C:\Users\David\Desktop\System
2014-05-21 09:54 - 2014-05-21 13:05 - 00000000 ____D () C:\Users\David\Desktop\Work Program
2014-05-21 09:34 - 2014-05-21 09:34 - 00000000 ____D () C:\Users\Public\Documents\National Instruments
2014-05-21 09:34 - 2014-05-21 09:34 - 00000000 ____D () C:\ProgramData\Documents\National Instruments
2014-05-21 09:14 - 2014-03-06 10:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-21 09:09 - 2014-05-21 09:36 - 00003200 _____ () C:\Windows\System32\Tasks\NIUpdateServiceCheckTask
2014-05-21 03:05 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-21 03:05 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-21 03:05 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-21 03:05 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-21 03:05 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-21 03:05 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-20 19:15 - 2014-02-25 18:43 - 00012900 _____ () C:\Users\David\Desktop\pub dott.xlsx
2014-05-20 17:49 - 2014-05-27 12:29 - 00000000 ____D () C:\Users\David\Documents\MATLAB
2014-05-20 17:49 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\AppData\Roaming\Subversion
2014-05-20 17:49 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\AppData\Roaming\MathWorks
2014-05-20 17:49 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\AppData\Local\MathWorks
2014-05-20 17:45 - 2014-05-20 17:45 - 00001299 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB R2014a.lnk
2014-05-20 17:45 - 2014-05-20 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB
2014-05-20 17:45 - 2014-05-20 17:45 - 00000000 ____D () C:\ProgramData\MathWorks
2014-05-20 17:27 - 2014-05-20 17:27 - 00000000 ____D () C:\Program Files\MATLAB
2014-05-20 17:10 - 2014-05-20 17:10 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-05-20 17:09 - 2014-05-20 17:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-05-20 17:08 - 2014-05-20 17:08 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-05-20 17:08 - 2014-05-20 17:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2014-05-20 17:07 - 2014-05-20 17:08 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-05-20 17:07 - 2014-05-20 17:07 - 00000000 ____D () C:\Windows\PCHEALTH
2014-05-20 17:06 - 2014-05-20 17:06 - 00000000 ____D () C:\Users\David\AppData\Local\Microsoft Help
2014-05-20 17:06 - 2014-05-20 17:06 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-05-20 17:06 - 2014-05-20 17:06 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-05-20 17:05 - 2014-05-28 11:55 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-20 17:05 - 2014-05-20 17:07 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-05-20 17:05 - 2014-05-20 17:05 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-05-20 17:04 - 2014-05-29 15:39 - 00000000 ____D () C:\Users\David\AppData\Local\National Instruments
2014-05-20 16:30 - 2014-05-20 16:30 - 00002252 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabVIEW Tools Network.lnk
2014-05-20 16:30 - 2014-05-20 16:30 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VI Package Manager.lnk
2014-05-20 16:29 - 2014-05-20 16:30 - 00000000 ____D () C:\ProgramData\JKI
2014-05-20 16:29 - 2014-05-20 16:29 - 00003742 _____ () C:\Windows\System32\Tasks\JKIUpdateTask
2014-05-20 16:29 - 2014-05-20 16:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JKI
2014-05-20 16:29 - 2014-05-20 16:29 - 00000000 ____D () C:\Program Files (x86)\JKI
2014-05-20 16:27 - 2014-05-20 16:27 - 00001104 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI MAX.lnk
2014-05-20 16:26 - 2014-05-20 16:26 - 00000000 __RHD () C:\MSOCache
2014-05-20 16:21 - 2014-05-20 16:21 - 00001039 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI LabVIEW 2013 (64-bit).lnk
2014-05-20 16:16 - 2014-05-20 16:16 - 00000000 ____D () C:\Windows\SysWOW64\cvirte
2014-05-20 16:16 - 2014-05-20 16:16 - 00000000 ____D () C:\Windows\system32\cvirte
2014-05-20 16:15 - 2014-05-21 09:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments
2014-05-20 16:15 - 2014-05-20 16:21 - 00000000 ____D () C:\Program Files\National Instruments
2014-05-20 16:15 - 2014-05-20 16:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-20 16:14 - 2014-05-20 16:14 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-20 16:14 - 2014-05-20 16:14 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-05-20 16:13 - 2014-05-21 09:33 - 00000000 ____D () C:\Program Files (x86)\National Instruments
2014-05-20 16:11 - 2014-05-29 17:14 - 00000000 ____D () C:\ProgramData\National Instruments
2014-05-20 16:10 - 2014-05-20 16:10 - 00000000 ____D () C:\Users\David\AppData\Local\Apps\2.0
2014-05-20 15:54 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-05-20 15:54 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-05-20 15:53 - 2014-05-20 15:53 - 00000000 ____D () C:\Users\David\AppData\Roaming\Thunderbird
2014-05-20 15:53 - 2014-05-20 15:53 - 00000000 ____D () C:\Users\David\AppData\Local\Thunderbird
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\Ricevute ICI Mamma
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\IVIE info
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\IRPEF ITALIANI res. estero
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\INFORMAZIONI CONDOMINIALI
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\IMU
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\ICI prescrizione
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\Fidejussione bancaria Info
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\DocumentiVari
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\CURRICULUM DAVID
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\ContrattiBanche
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\CHIUSURA DITTA DAVID
2014-05-20 15:16 - 2014-05-20 15:52 - 00002102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-05-20 15:16 - 2014-05-20 15:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-05-20 15:03 - 2014-05-20 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2014-05-20 15:03 - 2014-05-20 15:03 - 00000000 ____D () C:\Program Files (x86)\Elaborate Bytes
2014-05-20 13:40 - 2014-05-20 13:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disinstallazione stampante Canon
2014-05-20 13:39 - 2010-02-15 16:00 - 00202752 _____ (CANON INC.) C:\Windows\system32\CNAB4EMD.DLL
2014-05-20 13:39 - 2010-02-15 16:00 - 00124928 _____ (CANON INC.) C:\Windows\system32\CNAB4SMD.DLL
2014-05-20 13:39 - 2010-02-15 16:00 - 00064000 _____ (CANON INC.) C:\Windows\system32\CNAB4PTD.DLL
2014-05-20 13:39 - 2010-02-15 16:00 - 00058880 _____ (CANON INC.) C:\Windows\system32\CNAB4LMD.DLL
2014-05-20 13:39 - 2010-01-13 03:59 - 00063936 _____ (CANON INC.) C:\Windows\system32\CNAB4RPD.EXE
2014-05-20 13:36 - 2014-05-20 13:40 - 00000000 ____D () C:\Program Files\Canon
2014-05-20 13:36 - 2009-06-10 23:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140520-133622.backup
2014-05-20 13:25 - 2014-05-20 14:32 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-20 13:25 - 2014-05-20 13:26 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-20 13:25 - 2014-05-20 13:25 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-20 13:25 - 2014-05-20 13:25 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-05-20 13:25 - 2014-05-20 13:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-20 13:25 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-05-20 13:17 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-05-20 13:17 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-05-20 13:17 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-05-20 13:17 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-05-20 13:17 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-05-20 13:17 - 2013-12-25 00:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-05-20 13:17 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-05-20 13:17 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-05-20 13:17 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-05-20 13:17 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-05-20 13:17 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-05-20 13:17 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2014-05-20 13:17 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-05-20 13:17 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-05-20 13:17 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-05-20 13:17 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-05-20 13:17 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-05-20 13:17 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-05-20 13:17 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-05-20 13:17 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2014-05-20 13:17 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2014-05-20 13:17 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-05-20 13:17 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-05-20 13:17 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-05-20 12:15 - 2014-06-06 15:51 - 00000000 ____D () C:\Users\David\AppData\Roaming\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ____D () C:\Users\David\AppData\Local\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ____D () C:\ProgramData\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-05-20 12:12 - 2014-06-08 17:06 - 00770517 _____ () C:\Windows\WindowsUpdate.log
2014-05-20 12:11 - 2014-05-20 12:11 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieUserList
2014-05-20 12:11 - 2014-05-20 12:11 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieSiteList
2014-05-20 11:09 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-05-20 11:09 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-05-20 11:09 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-05-20 11:09 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-05-20 11:09 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-05-20 11:09 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-05-20 11:09 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-05-20 11:09 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-05-20 11:09 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-05-20 11:09 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-05-20 11:09 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-05-20 11:09 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-05-20 11:09 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-05-20 11:09 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-05-20 11:09 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-05-20 11:09 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-05-20 11:08 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-05-20 11:08 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-05-20 11:08 - 2012-08-23 16:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-05-20 11:08 - 2012-08-23 16:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-05-20 11:08 - 2012-08-23 16:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-05-20 11:08 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-05-20 11:08 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-05-20 11:08 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-05-20 11:08 - 2012-08-23 11:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-05-20 11:08 - 2012-05-04 13:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-05-20 11:08 - 2012-05-04 11:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\Users\David\Documents\OriginLab
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OriginLab
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\Users\David\AppData\Local\OriginLab
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\ProgramData\OriginLab
2014-05-20 10:57 - 2014-05-20 10:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OriginLab
2014-05-20 10:56 - 2014-05-20 10:56 - 00000000 ____D () C:\Program Files\OriginLab
2014-05-20 09:59 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-05-20 09:57 - 2014-05-20 09:57 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-20 09:57 - 2014-05-20 09:57 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-20 09:57 - 2014-05-20 09:57 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-05-20 09:57 - 2014-05-20 09:57 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-05-20 09:57 - 2014-05-20 09:57 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-05-20 09:57 - 2014-05-20 09:57 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-05-20 09:57 - 2014-05-20 09:57 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-05-20 09:57 - 2014-05-20 09:57 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-05-20 09:57 - 2014-05-20 09:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-20 09:53 - 2014-05-20 09:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetSetMan
2014-05-20 09:53 - 2014-05-20 09:53 - 00000000 ____D () C:\Program Files (x86)\NetSetMan
2014-05-20 00:57 - 2014-05-20 12:11 - 00000000 ____D () C:\Windows\Panther
2014-05-19 20:02 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-05-19 20:02 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-05-19 20:02 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-05-19 20:02 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-05-19 19:55 - 2014-05-19 19:55 - 00000000 ____D () C:\CorsoJava
2014-05-19 19:53 - 2014-05-28 10:42 - 00000000 ____D () C:\Users\David\Desktop\Sanguinetti
2014-05-19 19:53 - 2014-05-27 13:42 - 00000000 ____D () C:\Users\David\Desktop\X-Ray Theory
2014-05-19 19:53 - 2014-05-19 19:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR ReadyNAS
2014-05-19 19:53 - 2014-05-19 19:53 - 00000000 ____D () C:\Program Files (x86)\NETGEAR ReadyNAS
2014-05-19 19:39 - 2014-05-19 19:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-05-19 19:32 - 2014-05-19 19:48 - 00000000 ____D () C:\Program Files\VESTA-win64
2014-05-19 19:28 - 2014-05-19 19:28 - 00001932 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gwyddion (64bit).lnk
2014-05-19 19:28 - 2014-05-19 19:28 - 00000000 ____D () C:\Program Files\Gwyddion
2014-05-19 19:27 - 2014-05-19 19:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2014-05-19 19:27 - 2014-05-19 19:27 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2014-05-19 16:55 - 2014-05-19 16:55 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-19 16:53 - 2014-05-19 16:53 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-19 16:40 - 2014-05-19 16:40 - 00000000 ____D () C:\Users\David\AppData\Local\Macromedia
2014-05-19 16:34 - 2014-05-19 19:38 - 00000000 ____D () C:\Program Files\WinRAR
2014-05-19 16:34 - 2014-05-19 16:34 - 00000000 ____D () C:\Users\David\AppData\Roaming\WinRAR
2014-05-19 16:34 - 2014-05-19 16:34 - 00000000 ____D () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-19 16:34 - 2014-05-19 16:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-19 16:33 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-05-19 16:27 - 2014-05-19 16:28 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-19 16:27 - 2014-05-04 17:12 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-19 16:24 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-05-19 16:24 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-05-19 16:24 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-05-19 16:24 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-05-19 16:24 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-05-19 16:24 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-05-19 16:24 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-05-19 16:24 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-05-19 16:21 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-05-19 16:21 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-05-19 16:21 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2014-05-19 16:19 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-19 16:19 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-19 16:19 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-05-19 16:19 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-05-19 16:19 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-05-19 16:19 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-05-19 16:19 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-05-19 16:19 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-05-19 16:19 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-05-19 16:19 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-05-19 16:19 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-05-19 16:19 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-05-19 16:19 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-05-19 16:19 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-05-19 16:19 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-05-19 16:19 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-05-19 16:19 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-05-19 16:19 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-05-19 16:19 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-05-19 16:19 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-05-19 16:19 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-05-19 16:19 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-05-19 16:19 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-05-19 16:19 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-05-19 16:19 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-05-19 16:19 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-05-19 16:19 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-05-19 16:19 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-05-19 16:19 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-05-19 16:19 - 2013-10-04 04:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-05-19 16:19 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-05-19 16:19 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-05-19 16:19 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2014-05-19 16:19 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-05-19 16:19 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-05-19 16:19 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-05-19 16:19 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-05-19 16:19 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-05-19 16:19 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-05-19 16:19 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-05-19 16:19 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-05-19 16:19 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2014-05-19 16:19 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2014-05-19 16:19 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2014-05-19 16:19 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2014-05-19 16:19 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2014-05-19 16:19 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-05-19 16:19 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2014-05-19 16:19 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2014-05-19 16:19 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2014-05-19 16:19 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2014-05-19 16:19 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2014-05-19 16:18 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-19 16:18 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-19 16:18 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-19 16:18 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-19 16:18 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-19 16:18 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-19 16:18 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-19 16:18 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-19 16:18 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-19 16:18 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-19 16:18 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-19 16:18 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-19 16:18 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-19 16:18 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-19 16:18 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-19 16:18 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-19 16:18 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-19 16:18 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-19 16:18 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-19 16:18 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-19 16:18 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-19 16:18 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-19 16:18 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-19 16:18 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-19 16:18 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-19 16:18 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-19 16:18 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-05-19 16:18 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-05-19 16:18 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-05-19 16:18 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-05-19 16:18 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-05-19 16:18 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-05-19 16:18 - 2013-12-06 04:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-05-19 16:18 - 2013-12-06 04:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-05-19 16:18 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-05-19 16:18 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-05-19 16:18 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-05-19 16:18 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-05-19 16:18 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-05-19 16:18 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-05-19 16:18 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-05-19 16:18 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-05-19 16:18 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-05-19 16:18 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-05-19 16:18 - 2013-09-28 03:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-05-19 16:18 - 2013-09-25 04:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-05-19 16:18 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-05-19 16:18 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2014-05-19 16:18 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-05-19 16:18 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-05-19 16:18 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-05-19 16:18 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-05-19 16:18 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2014-05-19 16:18 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-05-19 16:18 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-05-19 16:18 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-05-19 16:18 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-05-19 16:18 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-05-19 16:18 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-05-19 16:18 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-05-19 16:18 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-05-19 16:18 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-05-19 16:18 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-05-19 16:18 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-05-19 16:18 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-05-19 16:18 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-05-19 16:18 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-05-19 16:18 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-05-19 16:18 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-05-19 16:18 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-05-19 16:18 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-05-19 16:18 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-05-19 16:18 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-05-19 16:18 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-05-19 16:18 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2014-05-19 16:18 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-05-19 16:18 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-05-19 16:18 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-05-19 16:18 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-05-19 16:18 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-05-19 16:18 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-05-19 16:18 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-05-19 16:18 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-05-19 16:18 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2014-05-19 16:18 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2014-05-19 16:18 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2014-05-19 16:18 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2014-05-19 16:18 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-05-19 16:18 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2014-05-19 16:18 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-05-19 16:18 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-05-19 16:18 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2014-05-19 16:18 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2014-05-19 16:18 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-05-19 16:18 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2014-05-19 16:18 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-05-19 16:18 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2014-05-19 16:18 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-05-19 16:18 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-05-19 16:18 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-05-19 16:18 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2014-05-19 16:18 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-05-19 16:18 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-05-19 16:18 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2014-05-19 16:18 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-05-19 16:18 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-05-19 16:18 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-05-19 16:18 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-05-19 16:18 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2014-05-19 16:18 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2014-05-19 16:18 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2014-05-19 16:18 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2014-05-19 16:18 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2014-05-19 16:18 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-05-19 16:18 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-05-19 16:18 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-05-19 16:18 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-05-19 16:18 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-05-19 16:18 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-05-19 16:18 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-05-19 16:18 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-05-19 16:18 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-05-19 16:18 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2014-05-19 16:18 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2014-05-19 16:18 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2014-05-19 16:18 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2014-05-19 16:18 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2014-05-19 16:18 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2014-05-19 16:18 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2014-05-19 16:18 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2014-05-19 16:18 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2014-05-19 16:18 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-05-19 16:18 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-05-19 16:18 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-05-19 16:18 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-05-19 16:18 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2014-05-19 16:18 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2014-05-19 16:18 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2014-05-19 16:18 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2014-05-19 16:18 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-05-19 16:18 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-05-19 16:18 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-05-19 16:18 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-05-19 16:18 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2014-05-19 16:18 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-05-19 16:18 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2014-05-19 16:18 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2014-05-19 16:18 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll
2014-05-19 16:18 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-05-19 16:18 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-05-19 16:18 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-05-19 16:18 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-05-19 16:18 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-05-19 16:18 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-05-19 16:18 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2014-05-19 16:18 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2014-05-19 16:18 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2014-05-19 16:17 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-05-19 16:17 - 2013-09-08 04:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-05-19 16:17 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-05-19 16:17 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-05-19 16:17 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-05-19 16:17 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-05-19 16:17 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-05-19 16:17 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-05-19 16:17 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-05-19 16:17 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2014-05-19 16:17 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2014-05-19 16:17 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2014-05-19 16:17 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2014-05-19 16:17 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2014-05-19 16:17 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2014-05-19 16:17 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2014-05-19 16:17 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2014-05-19 16:17 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2014-05-19 16:17 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2014-05-19 16:17 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2014-05-19 16:17 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2014-05-19 16:15 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-05-19 16:15 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2014-05-19 16:15 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2014-05-19 16:15 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-05-19 16:15 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2014-05-19 16:14 - 2014-05-30 10:44 - 00000000 ____D () C:\ProgramData\TEMP
2014-05-19 16:14 - 2014-05-19 16:14 - 00000000 ____D () C:\Users\David\AppData\Roaming\URSoft
2014-05-19 16:14 - 2014-05-19 16:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7
2014-05-19 16:14 - 2014-05-19 16:14 - 00000000 ____D () C:\Program Files (x86)\Your Uninstaller! 7
2014-05-19 16:14 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-05-19 16:14 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2014-05-19 16:14 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2014-05-19 16:14 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-05-19 16:14 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2014-05-19 16:14 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-05-19 16:14 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2014-05-19 16:14 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2014-05-19 16:14 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2014-05-19 16:14 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2014-05-19 16:14 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-05-19 16:13 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-05-19 16:13 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-05-19 16:13 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-05-19 16:13 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-05-19 16:13 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-05-19 16:13 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-05-19 16:08 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-05-19 16:08 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-05-19 16:08 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-05-19 16:08 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-05-19 16:08 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-05-19 16:08 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-05-19 16:08 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-05-19 16:08 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-05-19 16:08 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-05-19 16:08 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-05-19 16:08 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-05-19 16:08 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-05-19 16:08 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-05-19 16:08 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-05-19 16:08 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-05-19 16:08 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-05-19 16:08 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-05-19 16:08 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-05-19 16:08 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-05-19 16:08 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-05-19 16:08 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-05-19 16:08 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-05-19 16:08 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-05-19 16:08 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-05-19 16:08 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-05-19 16:08 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-05-19 16:08 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-05-19 16:08 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-05-19 16:08 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-05-19 16:08 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-05-19 16:08 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-05-19 16:08 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-05-19 16:08 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-05-19 16:08 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-05-19 16:08 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-05-19 16:08 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-05-19 16:08 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-05-19 16:08 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-05-19 16:08 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-05-19 16:08 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-05-19 16:08 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-05-19 16:08 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-05-19 16:08 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-05-19 16:08 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-05-19 16:08 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2014-05-19 16:08 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-05-19 16:08 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-05-19 16:08 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-05-19 16:08 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-05-19 16:08 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-05-19 16:08 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-05-19 16:08 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-05-19 16:08 - 2012-11-22 07:44 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-05-19 16:08 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-05-19 16:08 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2014-05-19 16:08 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-05-19 16:08 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2014-05-19 16:08 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-05-19 16:08 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-05-19 16:08 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-05-19 16:08 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2014-05-19 16:08 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2014-05-19 16:08 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-05-19 16:08 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-05-19 16:08 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2014-05-19 16:08 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-05-19 16:08 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-05-19 16:08 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-05-19 16:08 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-05-19 16:08 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-05-19 16:08 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2014-05-19 16:08 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-05-19 16:08 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-05-19 16:08 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-05-19 16:08 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2014-05-19 16:08 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-05-19 16:08 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-05-19 16:08 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2014-05-19 16:08 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2014-05-19 16:08 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-05-19 16:08 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-05-19 16:08 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-05-19 16:08 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-05-19 16:08 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-05-19 16:08 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2014-05-19 16:08 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2014-05-19 16:08 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2014-05-19 16:08 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-05-19 16:05 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-05-19 16:02 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-05-19 16:02 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-05-19 15:56 - 2014-05-28 14:10 - 00000000 ____D () C:\Users\David\AppData\Roaming\vlc
2014-05-19 15:53 - 2014-05-28 10:18 - 00000000 ____D () C:\Users\David\AppData\Roaming\Apple Computer
2014-05-19 15:53 - 2014-05-27 10:18 - 00000000 ____D () C:\Users\David\AppData\Local\Apple Computer
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files\iTunes
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files\iPod
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-05-19 15:53 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-05-19 15:52 - 2014-05-27 10:20 - 00000000 ____D () C:\Users\David\AppData\Local\Apple
2014-05-19 15:52 - 2014-05-27 10:17 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-05-19 15:52 - 2014-05-19 18:35 - 00000000 ____D () C:\Users\David\AppData\Local\5888
2014-05-19 15:52 - 2014-05-19 15:52 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files\Bonjour
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-05-19 15:51 - 2014-05-19 15:52 - 00000000 ____D () C:\ProgramData\Apple
2014-05-19 15:51 - 2014-05-19 15:51 - 00000000 ____D () C:\Users\David\AppData\Roaming\AVAST Software
2014-05-19 15:50 - 2014-05-29 12:09 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-05-19 15:50 - 2014-05-19 15:50 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1400507451631
2014-05-19 15:50 - 2014-05-19 15:50 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1400507451631
2014-05-19 15:50 - 2014-05-19 15:50 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-05-19 15:50 - 2014-05-19 15:50 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-19 15:50 - 2014-05-19 15:50 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-05-19 15:50 - 2014-05-19 15:50 - 00000000 ____D () C:\Program Files\AVAST Software
2014-05-19 15:49 - 2014-05-20 15:55 - 00000000 ____D () C:\Users\David\AppData\Local\NVIDIA Corporation
2014-05-19 15:49 - 2014-05-19 15:49 - 00002086 _____ () C:\Users\David\Desktop\JDownloader 2.lnk
2014-05-19 15:49 - 2014-05-19 15:49 - 00000000 ____D () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2014-05-19 15:49 - 2014-05-19 15:49 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-05-19 15:48 - 2014-05-30 10:45 - 00000000 ____D () C:\Users\David\AppData\Local\JDownloader v2.0
2014-05-19 15:48 - 2014-05-30 01:07 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-05-19 15:48 - 2014-05-30 01:07 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-05-19 15:48 - 2014-05-20 15:51 - 00000000 ____D () C:\Users\David\AppData\Local\NVIDIA
2014-05-19 15:48 - 2014-05-19 15:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-05-19 15:48 - 2014-05-19 15:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-05-19 15:48 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-05-19 15:48 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-05-19 15:48 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-05-19 15:48 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-05-19 15:48 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-05-19 15:48 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-05-19 15:47 - 2014-05-20 15:55 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-05-19 15:47 - 2014-05-20 15:54 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-05-19 15:47 - 2014-05-20 04:44 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-05-19 15:47 - 2014-05-20 04:44 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-05-19 15:47 - 2014-05-20 03:25 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-05-19 15:47 - 2014-05-20 03:25 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-05-19 15:47 - 2014-05-20 03:25 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-05-19 15:47 - 2014-05-20 03:25 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-05-19 15:47 - 2014-05-20 03:25 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-05-19 15:47 - 2014-05-20 03:25 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-05-19 15:46 - 2014-05-21 03:02 - 00765700 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-05-19 15:43 - 2014-05-20 04:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-05-19 15:43 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-05-19 15:43 - 2014-05-20 04:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-05-19 15:43 - 2014-05-20 04:44 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-05-19 15:43 - 2014-05-20 04:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-05-19 15:43 - 2014-05-20 04:44 - 00026069 _____ () C:\Windows\system32\nvinfo.pb
2014-05-19 15:43 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-05-19 15:43 - 2014-03-04 16:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll
2014-05-19 15:43 - 2014-03-04 16:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll
2014-05-19 15:43 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-05-19 15:43 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-05-19 15:43 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-05-19 15:41 - 2014-06-03 08:31 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-05-19 15:38 - 2014-05-20 16:18 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-19 15:38 - 2014-05-20 16:10 - 00000000 ____D () C:\ProgramData\Adobe
2014-05-19 15:38 - 2014-05-19 15:38 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-05-19 15:37 - 2014-05-20 15:46 - 00000000 ____D () C:\Users\David\AppData\Local\Adobe
2014-05-19 15:35 - 2014-06-08 17:28 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-19 15:35 - 2014-05-20 15:46 - 00000000 ____D () C:\Users\David\AppData\Roaming\Adobe
2014-05-19 15:35 - 2014-05-19 16:39 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-19 15:35 - 2014-05-19 16:39 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-19 15:35 - 2014-05-19 16:39 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-05-19 15:35 - 2014-05-19 15:35 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-05-19 15:35 - 2014-05-19 15:35 - 00000000 ____D () C:\Windows\system32\Macromed
2014-05-19 15:35 - 2014-05-19 15:35 - 00000000 ____D () C:\Users\David\AppData\Roaming\Macromedia
2014-05-19 15:34 - 2014-05-27 10:21 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-05-19 15:33 - 2014-05-19 15:33 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-19 15:33 - 2014-05-19 15:33 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-19 15:33 - 2014-05-19 15:33 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-19 15:33 - 2014-05-19 15:33 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\ProgramData\Sun
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\ProgramData\Oracle
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-19 15:31 - 2014-05-21 09:51 - 00001065 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-19 15:31 - 2014-05-21 03:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-05-19 15:31 - 2014-05-20 16:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-19 15:31 - 2014-05-19 15:32 - 00000000 ____D () C:\Users\David\AppData\Roaming\Mozilla
2014-05-19 15:31 - 2014-05-19 15:32 - 00000000 ____D () C:\Users\David\AppData\Local\Mozilla
2014-05-19 15:31 - 2014-05-19 15:31 - 00000000 ____D () C:\ProgramData\Mozilla
2014-05-19 15:30 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-05-19 15:30 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-05-19 15:30 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-05-19 15:29 - 2014-05-21 12:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2014-05-19 15:29 - 2014-05-21 11:57 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\Windows\SysWOW64\Microsoft.VC80.MFC
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\Windows\system32\Microsoft.VC80.MFC
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\xp
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\win7_64
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\win7_32
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\vista64
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\vista32
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\Program Files\TOSHIBA
2014-05-19 15:29 - 2010-03-04 16:44 - 00049664 _____ (COMPAL ELECTRONIC INC.) C:\Windows\system32\HWS_Ctrl.dll
2014-05-19 15:29 - 2010-03-04 16:44 - 00008192 _____ (COMPAL ELECTRONIC INC.) C:\Windows\system32\TSBWLS.dll
2014-05-19 15:29 - 2009-08-21 19:04 - 00049152 _____ (COMPAL ELECTRONIC INC.) C:\Windows\SysWOW64\EBLib.dll
2014-05-19 15:29 - 2009-08-21 19:04 - 00045056 _____ (COMPAL ELECTRONIC INC.) C:\Windows\system32\EBLib.dll
2014-05-19 15:29 - 2009-07-30 21:02 - 00044912 _____ (COMPAL ELECTRONIC INC.) C:\Windows\system32\Drivers\LPCFilter.sys
2014-05-19 15:27 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-05-19 15:27 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-05-19 15:27 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-05-19 15:27 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-05-19 15:27 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-05-19 15:27 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-05-19 15:27 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-05-19 15:27 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-05-19 15:27 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-05-19 15:26 - 2014-05-21 11:29 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-19 15:26 - 2014-05-21 11:29 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-05-19 15:26 - 2014-05-19 15:26 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-05-19 15:26 - 2014-05-19 15:26 - 00000000 ____D () C:\Users\David\AppData\Roaming\WinBatch
2014-05-19 15:26 - 2012-10-25 16:20 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2014-05-19 15:10 - 2014-05-26 14:12 - 00111912 _____ () C:\Users\David\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-19 15:05 - 2014-05-20 14:39 - 00001417 _____ () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-19 15:05 - 2014-05-20 09:43 - 00000000 ___RD () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-19 15:05 - 2014-05-20 09:43 - 00000000 ___RD () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-19 15:04 - 2014-06-08 17:55 - 00000000 ____D () C:\Users\David\AppData\Local\Temp
2014-05-19 15:04 - 2014-06-04 10:52 - 00000000 ____D () C:\Users\David
2014-05-19 15:04 - 2014-05-19 19:56 - 00000000 ____D () C:\Users\David\AppData\Local\VirtualStore
2014-05-19 15:04 - 2014-05-19 15:04 - 00000020 ___SH () C:\Users\David\ntuser.ini
2014-05-19 15:04 - 2014-05-19 15:04 - 00000000 __SHD () C:\Recovery
2014-05-19 15:04 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-19 15:04 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-05-19 14:59 - 2014-05-19 14:59 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-05-19 14:59 - 2014-05-19 14:59 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk

==================== One Month Modified Files and Folders =======

2014-06-08 17:55 - 2014-06-08 17:55 - 00019405 _____ () C:\Users\David\Downloads\FRST.txt
2014-06-08 17:55 - 2014-06-08 17:55 - 00000000 ____D () C:\FRST
2014-06-08 17:55 - 2014-05-19 15:04 - 00000000 ____D () C:\Users\David\AppData\Local\Temp
2014-06-08 17:54 - 2014-06-08 17:54 - 02072576 _____ (Farbar) C:\Users\David\Downloads\FRST64.exe
2014-06-08 17:54 - 2014-06-08 17:54 - 01063424 _____ (Farbar) C:\Users\David\Downloads\FRST.exe
2014-06-08 17:52 - 2009-07-14 07:13 - 00785754 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-08 17:40 - 2014-05-30 10:20 - 00000316 _____ () C:\Windows\Tasks\Start Driver Reviver for David-PC@David(logon).job
2014-06-08 17:28 - 2014-05-19 15:35 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-06-08 17:07 - 2009-07-14 06:45 - 00022736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-08 17:07 - 2009-07-14 06:45 - 00022736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-08 17:06 - 2014-05-20 12:12 - 00770517 _____ () C:\Windows\WindowsUpdate.log
2014-06-08 17:02 - 2014-05-28 09:32 - 00003441 _____ () C:\Windows\setupact.log
2014-06-08 17:02 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-06 15:51 - 2014-05-20 12:15 - 00000000 ____D () C:\Users\David\AppData\Roaming\Skype
2014-06-04 15:23 - 2014-05-26 11:40 - 00000000 ____D () C:\Users\David\Documents\Modelli di Office personalizzati
2014-06-04 11:16 - 2014-06-04 10:49 - 00000000 ____D () C:\Users\David\.gimp-2.8
2014-06-04 11:09 - 2014-06-04 11:09 - 00003114 _____ () C:\Users\David\AppData\Local\recently-used.xbel
2014-06-04 11:09 - 2014-06-04 10:55 - 00000000 ____D () C:\Users\David\AppData\Local\gtk-2.0
2014-06-04 10:52 - 2014-06-04 10:52 - 00000000 ____D () C:\Users\David\.thumbnails
2014-06-04 10:52 - 2014-05-19 15:04 - 00000000 ____D () C:\Users\David
2014-06-04 10:49 - 2014-06-04 10:49 - 00000000 ____D () C:\Users\David\AppData\Local\gegl-0.2
2014-06-04 10:48 - 2014-06-04 10:48 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2014-06-04 10:48 - 2014-06-04 10:48 - 00000000 ____D () C:\Program Files\GIMP 2
2014-06-04 10:41 - 2014-06-04 10:40 - 90396104 _____ (The GIMP Team ) C:\Users\David\Downloads\gimp-2.8.10-setup.exe
2014-06-03 21:25 - 2014-06-03 20:12 - 00932408 _____ () C:\Users\David\Desktop\TOCrev.pptx
2014-06-03 20:01 - 2014-06-03 20:01 - 00001770 _____ () C:\Windows\PFRO.log
2014-06-03 08:41 - 2014-06-03 08:41 - 00004146 _____ () C:\Users\David\Desktop\attach.zip
2014-06-03 08:39 - 2014-06-03 08:38 - 00034618 _____ () C:\Users\David\Desktop\dds.txt
2014-06-03 08:38 - 2014-06-03 08:38 - 00012563 _____ () C:\Users\David\Desktop\attach.txt
2014-06-03 08:34 - 2014-05-26 18:19 - 00034538 _____ () C:\Users\David\Desktop\ddsOLD.txt
2014-06-03 08:34 - 2014-05-26 18:19 - 00012563 _____ () C:\Users\David\Desktop\attachOLD.txt
2014-06-03 08:31 - 2014-05-19 15:41 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-06-03 08:29 - 2014-05-30 10:21 - 00000000 ____D () C:\ProgramData\DriverReviver.exe
2014-05-31 15:59 - 2014-05-21 10:09 - 00000000 ____D () C:\Users\David\Documents\LabVIEW Data
2014-05-31 12:29 - 2014-05-31 12:29 - 00002163 _____ () C:\Users\David\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2014-05-31 12:29 - 2014-05-31 12:28 - 05558808 _____ () C:\Users\David\Downloads\tweaking.com_windows_repair_aio_setup(1).exe
2014-05-30 10:45 - 2014-05-19 15:48 - 00000000 ____D () C:\Users\David\AppData\Local\JDownloader v2.0
2014-05-30 10:44 - 2014-05-19 16:14 - 00000000 ____D () C:\ProgramData\TEMP
2014-05-30 10:30 - 2014-05-21 09:55 - 00000000 ___RD () C:\Users\David\Desktop\System
2014-05-30 10:20 - 2014-05-30 10:20 - 00002608 _____ () C:\Windows\System32\Tasks\Start Driver Reviver for David-PC@David(logon)
2014-05-30 10:20 - 2014-05-30 10:20 - 00000000 ____D () C:\ProgramData\ReviverSoft
2014-05-30 10:20 - 2014-05-30 10:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft
2014-05-30 10:13 - 2014-05-21 11:21 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys
2014-05-30 09:53 - 2014-05-30 09:53 - 00000000 ____D () C:\Program Files\ReviverSoft
2014-05-30 09:22 - 2014-05-30 09:22 - 627927579 _____ () C:\Windows\MEMORY.DMP
2014-05-30 09:22 - 2014-05-30 09:22 - 00284616 _____ () C:\Windows\Minidump\053014-14258-01.dmp
2014-05-30 09:22 - 2014-05-30 09:22 - 00000000 ____D () C:\Windows\Minidump
2014-05-30 08:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-05-30 01:07 - 2014-06-03 08:31 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2014-05-30 01:07 - 2014-06-03 08:31 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2014-05-30 01:07 - 2014-05-19 15:48 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-05-30 01:07 - 2014-05-19 15:48 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-05-29 17:14 - 2014-05-20 16:11 - 00000000 ____D () C:\ProgramData\National Instruments
2014-05-29 15:39 - 2014-05-20 17:04 - 00000000 ____D () C:\Users\David\AppData\Local\National Instruments
2014-05-29 12:09 - 2014-05-19 15:50 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-05-28 14:10 - 2014-05-19 15:56 - 00000000 ____D () C:\Users\David\AppData\Roaming\vlc
2014-05-28 11:55 - 2014-05-20 17:05 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-28 11:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-05-28 10:42 - 2014-05-19 19:53 - 00000000 ____D () C:\Users\David\Desktop\Sanguinetti
2014-05-28 10:18 - 2014-05-19 15:53 - 00000000 ____D () C:\Users\David\AppData\Roaming\Apple Computer
2014-05-28 09:32 - 2014-05-28 09:32 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-28 08:54 - 2014-05-28 08:54 - 00000000 ____D () C:\Program Files\CCleaner Professional v4.14.4707 Portable
2014-05-27 13:42 - 2014-05-19 19:53 - 00000000 ____D () C:\Users\David\Desktop\X-Ray Theory
2014-05-27 13:09 - 2014-05-27 13:09 - 00067634 _____ () C:\Users\David\Desktop\bookmarks.html
2014-05-27 12:54 - 2014-05-26 11:41 - 00013858 _____ () C:\Users\David\Desktop\ordineconsumabili.xml
2014-05-27 12:29 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\Documents\MATLAB
2014-05-27 10:27 - 2014-05-27 10:19 - 00000000 ____D () C:\Users\David\AppData\Local\21861321-95C2-43BE-839D-C2332E02E07E.aplzod
2014-05-27 10:25 - 2014-05-27 10:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-05-27 10:21 - 2014-05-19 15:34 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-05-27 10:20 - 2014-05-19 15:52 - 00000000 ____D () C:\Users\David\AppData\Local\Apple
2014-05-27 10:19 - 2014-05-27 10:19 - 00000000 ____D () C:\Users\David\Documents\Outlook Files
2014-05-27 10:18 - 2014-05-19 15:53 - 00000000 ____D () C:\Users\David\AppData\Local\Apple Computer
2014-05-27 10:17 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-05-26 18:18 - 2014-05-26 18:18 - 00688992 ____R (Swearware) C:\Users\David\Downloads\dds.com
2014-05-26 14:37 - 2014-05-23 16:30 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE
2014-05-26 14:13 - 2014-05-23 10:11 - 00000000 ____D () C:\AdwCleaner
2014-05-26 14:12 - 2014-05-19 15:10 - 00111912 _____ () C:\Users\David\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-26 14:12 - 2009-07-14 06:45 - 00442864 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-05-26 12:59 - 2014-05-26 12:59 - 01327971 _____ () C:\Users\David\Desktop\adwcleaner_3.211.exe
2014-05-26 11:45 - 2014-05-23 10:03 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-23 17:08 - 2011-04-12 10:28 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-05-23 16:26 - 2014-05-23 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2014-05-23 16:26 - 2014-05-23 16:26 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2014-05-23 16:25 - 2014-05-23 16:25 - 05577080 _____ () C:\Users\David\Downloads\tweaking.com_windows_repair_aio_setup.exe
2014-05-23 15:46 - 2014-05-23 15:46 - 00000000 ____D () C:\Users\David\Documents\ProcAlyzer Dumps
2014-05-23 15:43 - 2014-05-23 12:48 - 00297988 _____ () C:\Users\David\Desktop\OTL.Txt
2014-05-23 15:35 - 2014-05-23 15:28 - 00000625 _____ () C:\Users\David\Desktop\JRT.txt
2014-05-23 15:18 - 2014-05-23 15:18 - 00000971 _____ () C:\Users\David\Desktop\AdwCleaner[S1].txt
2014-05-23 13:02 - 2014-05-23 13:02 - 00014590 _____ () C:\Users\David\Desktop\hijackthis.log
2014-05-23 12:45 - 2014-05-23 12:45 - 00084788 _____ () C:\Users\David\Desktop\Extras.Txt
2014-05-23 10:14 - 2014-05-23 10:14 - 00000000 ____D () C:\Windows\ERUNT
2014-05-23 10:08 - 2014-05-23 10:08 - 00602112 _____ (OldTimer Tools) C:\Users\David\Desktop\OTL.exe
2014-05-23 10:05 - 2014-05-23 10:05 - 01016261 _____ (Thisisu) C:\Users\David\Desktop\JRT.exe
2014-05-23 10:03 - 2014-05-23 10:03 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-23 10:03 - 2014-05-23 10:03 - 00001106 _____ () C:\ProgramData\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-23 10:03 - 2014-05-23 10:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-23 10:03 - 2014-05-23 10:03 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-23 10:03 - 2014-05-23 10:03 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-23 10:02 - 2014-05-23 10:02 - 17273585 _____ () C:\Users\David\Downloads\Malwarebytes.zip
2014-05-23 10:02 - 2014-05-23 10:02 - 00000000 ____D () C:\Users\David\Downloads\Malwarebytes
2014-05-23 09:34 - 2014-05-23 09:35 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140523-093556.backup
2014-05-22 14:30 - 2014-05-22 14:30 - 00000000 ____D () C:\Users\David\AppData\Local\Mendeley Ltd
2014-05-22 09:57 - 2014-05-22 09:57 - 00000000 ____D () C:\Users\David\AppData\Roaming\NVIDIA
2014-05-22 09:57 - 2014-05-22 09:57 - 00000000 ____D () C:\Users\David\AppData\Local\Blizzard Entertainment
2014-05-22 09:54 - 2014-05-22 09:54 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-05-22 09:48 - 2014-05-22 09:48 - 00000000 ____D () C:\ProgramData\Battle.net
2014-05-21 13:05 - 2014-05-21 09:54 - 00000000 ____D () C:\Users\David\Desktop\Work Program
2014-05-21 12:39 - 2014-05-21 12:20 - 00000000 ____D () C:\Program Files (x86)\DriverTuner
2014-05-21 12:38 - 2014-05-21 12:38 - 00000000 ____D () C:\Program Files\DIFX
2014-05-21 12:21 - 2014-05-21 12:21 - 00000000 ____D () C:\Users\David\AppData\Local\DriverTuner
2014-05-21 12:17 - 2014-05-21 12:17 - 00000000 ____D () C:\Users\David\Documents\Bluetooth
2014-05-21 12:16 - 2014-05-21 12:16 - 00000000 ____D () C:\Users\David\AppData\Local\Toshiba
2014-05-21 12:16 - 2014-05-21 12:16 - 00000000 ____D () C:\ProgramData\TOSHIBA
2014-05-21 12:09 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-21 12:05 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2014-05-21 11:57 - 2014-05-21 11:57 - 00003270 _____ () C:\Windows\System32\Tasks\{A3C91487-280C-416C-9D7E-DFB90AA21B6D}
2014-05-21 11:57 - 2014-05-19 15:29 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2014-05-21 11:48 - 2014-05-21 11:48 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash
2014-05-21 11:35 - 2014-05-21 11:35 - 00000000 ____D () C:\Windows\SysWOW64\SDA
2014-05-21 11:35 - 2014-05-21 11:35 - 00000000 ____D () C:\Program Files (x86)\JMicron
2014-05-21 11:31 - 2014-05-21 11:31 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-05-21 11:30 - 2014-05-21 11:29 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-05-21 11:29 - 2014-05-21 11:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-05-21 11:29 - 2014-05-21 11:29 - 00000000 ____D () C:\Windows\system32\SRSLabs
2014-05-21 11:29 - 2014-05-21 11:29 - 00000000 ____D () C:\Program Files\Realtek
2014-05-21 11:29 - 2014-05-19 15:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-21 11:29 - 2014-05-19 15:26 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-05-21 11:26 - 2014-05-21 11:26 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-05-21 11:25 - 2014-05-21 11:25 - 03891200 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 03555840 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 03058168 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL664.SYS
2014-05-21 11:25 - 2014-05-21 11:25 - 00095472 _____ (Broadcom Corporation) C:\Windows\system32\bcmwlcoi.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 00006656 _____ () C:\Windows\system32\bcmwlrc.dll
2014-05-21 11:25 - 2014-05-21 11:25 - 00000000 ____D () C:\Program Files\Broadcom
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\th-TH
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sl-SI
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\ro-RO
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\lv-LV
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\lt-LT
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\hr-HR
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\he-IL
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\et-EE
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\bg-BG
2014-05-21 11:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\ar-SA
2014-05-21 11:21 - 2014-05-21 11:21 - 00000000 ____D () C:\Users\Public\Documents\Downloaded Installers
2014-05-21 11:21 - 2014-05-21 11:21 - 00000000 ____D () C:\Users\David\AppData\Local\SlimWare Utilities Inc
2014-05-21 11:21 - 2014-05-21 11:21 - 00000000 ____D () C:\ProgramData\Documents\Downloaded Installers
2014-05-21 10:27 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-05-21 10:25 - 2014-05-21 10:25 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2014-05-21 10:25 - 2014-05-21 10:25 - 00000000 ____D () C:\Program Files\Synaptics
2014-05-21 10:14 - 2014-05-21 10:14 - 00000237 _____ () C:\Users\David\Desktop\ContattoSwitz.txt
2014-05-21 10:00 - 2014-05-21 10:00 - 00000000 ____D () C:\Users\David\AppData\Roaming\JKI
2014-05-21 09:51 - 2014-05-19 15:31 - 00001065 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-21 09:36 - 2014-05-21 09:09 - 00003200 _____ () C:\Windows\System32\Tasks\NIUpdateServiceCheckTask
2014-05-21 09:34 - 2014-05-21 09:34 - 00000000 ____D () C:\Users\Public\Documents\National Instruments
2014-05-21 09:34 - 2014-05-21 09:34 - 00000000 ____D () C:\ProgramData\Documents\National Instruments
2014-05-21 09:33 - 2014-05-20 16:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments
2014-05-21 09:33 - 2014-05-20 16:13 - 00000000 ____D () C:\Program Files (x86)\National Instruments
2014-05-21 04:16 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-05-21 03:51 - 2014-05-19 15:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-05-21 03:02 - 2014-05-19 15:46 - 00765700 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-05-20 17:49 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\AppData\Roaming\Subversion
2014-05-20 17:49 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\AppData\Roaming\MathWorks
2014-05-20 17:49 - 2014-05-20 17:49 - 00000000 ____D () C:\Users\David\AppData\Local\MathWorks
2014-05-20 17:45 - 2014-05-20 17:45 - 00001299 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB R2014a.lnk
2014-05-20 17:45 - 2014-05-20 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB
2014-05-20 17:45 - 2014-05-20 17:45 - 00000000 ____D () C:\ProgramData\MathWorks
2014-05-20 17:27 - 2014-05-20 17:27 - 00000000 ____D () C:\Program Files\MATLAB
2014-05-20 17:10 - 2014-05-20 17:10 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-05-20 17:09 - 2014-05-20 17:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-05-20 17:09 - 2011-04-12 10:28 - 00000000 ____D () C:\Windows\ShellNew
2014-05-20 17:08 - 2014-05-20 17:08 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-05-20 17:08 - 2014-05-20 17:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2014-05-20 17:08 - 2014-05-20 17:07 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-05-20 17:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-05-20 17:07 - 2014-05-20 17:07 - 00000000 ____D () C:\Windows\PCHEALTH
2014-05-20 17:07 - 2014-05-20 17:05 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-05-20 17:06 - 2014-05-20 17:06 - 00000000 ____D () C:\Users\David\AppData\Local\Microsoft Help
2014-05-20 17:06 - 2014-05-20 17:06 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-05-20 17:06 - 2014-05-20 17:06 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-05-20 17:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-05-20 17:06 - 2009-07-14 04:34 - 00000478 _____ () C:\Windows\win.ini
2014-05-20 17:05 - 2014-05-20 17:05 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-05-20 16:30 - 2014-05-20 16:30 - 00002252 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabVIEW Tools Network.lnk
2014-05-20 16:30 - 2014-05-20 16:30 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VI Package Manager.lnk
2014-05-20 16:30 - 2014-05-20 16:29 - 00000000 ____D () C:\ProgramData\JKI
2014-05-20 16:29 - 2014-05-20 16:29 - 00003742 _____ () C:\Windows\System32\Tasks\JKIUpdateTask
2014-05-20 16:29 - 2014-05-20 16:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JKI
2014-05-20 16:29 - 2014-05-20 16:29 - 00000000 ____D () C:\Program Files (x86)\JKI
2014-05-20 16:27 - 2014-05-20 16:27 - 00001104 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI MAX.lnk
2014-05-20 16:26 - 2014-05-20 16:26 - 00000000 __RHD () C:\MSOCache
2014-05-20 16:21 - 2014-05-20 16:21 - 00001039 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI LabVIEW 2013 (64-bit).lnk
2014-05-20 16:21 - 2014-05-20 16:15 - 00000000 ____D () C:\Program Files\National Instruments
2014-05-20 16:18 - 2014-05-19 15:38 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-20 16:17 - 2014-05-19 15:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-20 16:16 - 2014-05-20 16:16 - 00000000 ____D () C:\Windows\SysWOW64\cvirte
2014-05-20 16:16 - 2014-05-20 16:16 - 00000000 ____D () C:\Windows\system32\cvirte
2014-05-20 16:15 - 2014-05-20 16:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-20 16:14 - 2014-05-20 16:14 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-20 16:14 - 2014-05-20 16:14 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-05-20 16:10 - 2014-05-20 16:10 - 00000000 ____D () C:\Users\David\AppData\Local\Apps\2.0
2014-05-20 16:10 - 2014-05-19 15:38 - 00000000 ____D () C:\ProgramData\Adobe
2014-05-20 15:55 - 2014-05-19 15:49 - 00000000 ____D () C:\Users\David\AppData\Local\NVIDIA Corporation
2014-05-20 15:55 - 2014-05-19 15:47 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-05-20 15:54 - 2014-05-19 15:47 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-05-20 15:53 - 2014-05-20 15:53 - 00000000 ____D () C:\Users\David\AppData\Roaming\Thunderbird
2014-05-20 15:53 - 2014-05-20 15:53 - 00000000 ____D () C:\Users\David\AppData\Local\Thunderbird
2014-05-20 15:52 - 2014-05-20 15:16 - 00002102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-05-20 15:52 - 2014-05-20 15:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-05-20 15:51 - 2014-05-19 15:48 - 00000000 ____D () C:\Users\David\AppData\Local\NVIDIA
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\Ricevute ICI Mamma
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\IVIE info
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\IRPEF ITALIANI res. estero
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\INFORMAZIONI CONDOMINIALI
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\IMU
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\ICI prescrizione
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\Fidejussione bancaria Info
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\DocumentiVari
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\CURRICULUM DAVID
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\ContrattiBanche
2014-05-20 15:48 - 2014-05-20 15:48 - 00000000 ____D () C:\Users\David\Documents\CHIUSURA DITTA DAVID
2014-05-20 15:46 - 2014-05-19 15:37 - 00000000 ____D () C:\Users\David\AppData\Local\Adobe
2014-05-20 15:46 - 2014-05-19 15:35 - 00000000 ____D () C:\Users\David\AppData\Roaming\Adobe
2014-05-20 15:03 - 2014-05-20 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2014-05-20 15:03 - 2014-05-20 15:03 - 00000000 ____D () C:\Program Files (x86)\Elaborate Bytes
2014-05-20 14:39 - 2014-05-19 15:05 - 00001417 _____ () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-20 14:32 - 2014-05-20 13:25 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-20 13:40 - 2014-05-20 13:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disinstallazione stampante Canon
2014-05-20 13:40 - 2014-05-20 13:36 - 00000000 ____D () C:\Program Files\Canon
2014-05-20 13:36 - 2009-07-14 04:34 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140523-093444.backup
2014-05-20 13:26 - 2014-05-20 13:25 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-20 13:25 - 2014-05-20 13:25 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-20 13:25 - 2014-05-20 13:25 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-05-20 13:25 - 2014-05-20 13:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ____D () C:\Users\David\AppData\Local\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ____D () C:\ProgramData\Skype
2014-05-20 12:15 - 2014-05-20 12:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-05-20 12:11 - 2014-05-20 12:11 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieUserList
2014-05-20 12:11 - 2014-05-20 12:11 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieSiteList
2014-05-20 12:11 - 2014-05-20 00:57 - 00000000 ____D () C:\Windows\Panther
2014-05-20 11:49 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-20 11:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\Users\David\Documents\OriginLab
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OriginLab
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\Users\David\AppData\Local\OriginLab
2014-05-20 10:58 - 2014-05-20 10:58 - 00000000 ____D () C:\ProgramData\OriginLab
2014-05-20 10:57 - 2014-05-20 10:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OriginLab
2014-05-20 10:56 - 2014-05-20 10:56 - 00000000 ____D () C:\Program Files\OriginLab
2014-05-20 09:57 - 2014-05-20 09:57 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-20 09:57 - 2014-05-20 09:57 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-20 09:57 - 2014-05-20 09:57 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-05-20 09:57 - 2014-05-20 09:57 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-05-20 09:57 - 2014-05-20 09:57 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-05-20 09:57 - 2014-05-20 09:57 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-05-20 09:57 - 2014-05-20 09:57 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-05-20 09:57 - 2014-05-20 09:57 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-05-20 09:57 - 2014-05-20 09:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-05-20 09:57 - 2014-05-20 09:57 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-05-20 09:57 - 2014-05-20 09:57 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-20 09:53 - 2014-05-20 09:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetSetMan
2014-05-20 09:53 - 2014-05-20 09:53 - 00000000 ____D () C:\Program Files (x86)\NetSetMan
2014-05-20 09:43 - 2014-05-19 15:05 - 00000000 ___RD () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-20 09:43 - 2014-05-19 15:05 - 00000000 ___RD () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-20 04:44 - 2014-05-27 10:18 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-05-20 04:44 - 2014-05-27 10:18 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-05-20 04:44 - 2014-05-27 10:18 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-05-20 04:44 - 2014-05-19 15:47 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-05-20 04:44 - 2014-05-19 15:47 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-05-20 04:44 - 2014-05-19 15:43 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-05-20 04:44 - 2014-05-19 15:43 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-05-20 04:44 - 2014-05-19 15:43 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-05-20 04:44 - 2014-05-19 15:43 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-05-20 04:44 - 2014-05-19 15:43 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-05-20 04:44 - 2014-05-19 15:43 - 00026069 _____ () C:\Windows\system32\nvinfo.pb
2014-05-20 03:25 - 2014-05-19 15:47 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-05-20 03:25 - 2014-05-19 15:47 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-05-20 03:25 - 2014-05-19 15:47 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-05-20 03:25 - 2014-05-19 15:47 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-05-20 03:25 - 2014-05-19 15:47 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-05-20 03:25 - 2014-05-19 15:47 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-05-20 00:57 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-05-20 00:57 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-05-19 19:56 - 2014-05-19 15:04 - 00000000 ____D () C:\Users\David\AppData\Local\VirtualStore
2014-05-19 19:55 - 2014-05-19 19:55 - 00000000 ____D () C:\CorsoJava
2014-05-19 19:53 - 2014-05-19 19:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR ReadyNAS
2014-05-19 19:53 - 2014-05-19 19:53 - 00000000 ____D () C:\Program Files (x86)\NETGEAR ReadyNAS
2014-05-19 19:48 - 2014-05-19 19:32 - 00000000 ____D () C:\Program Files\VESTA-win64
2014-05-19 19:39 - 2014-05-19 19:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-05-19 19:38 - 2014-05-19 16:34 - 00000000 ____D () C:\Program Files\WinRAR
2014-05-19 19:28 - 2014-05-19 19:28 - 00001932 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gwyddion (64bit).lnk
2014-05-19 19:28 - 2014-05-19 19:28 - 00000000 ____D () C:\Program Files\Gwyddion
2014-05-19 19:27 - 2014-05-19 19:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2014-05-19 19:27 - 2014-05-19 19:27 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2014-05-19 18:35 - 2014-05-19 15:52 - 00000000 ____D () C:\Users\David\AppData\Local\5888
2014-05-19 16:55 - 2014-05-19 16:55 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-19 16:55 - 2011-04-12 10:28 - 00000000 ____D () C:\Program Files\Windows Journal
2014-05-19 16:55 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-05-19 16:55 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-05-19 16:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2014-05-19 16:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2014-05-19 16:53 - 2014-05-19 16:53 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-19 16:53 - 2014-05-19 16:53 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-19 16:40 - 2014-05-19 16:40 - 00000000 ____D () C:\Users\David\AppData\Local\Macromedia
2014-05-19 16:39 - 2014-05-19 15:35 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-19 16:39 - 2014-05-19 15:35 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-19 16:39 - 2014-05-19 15:35 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-05-19 16:34 - 2014-05-19 16:34 - 00000000 ____D () C:\Users\David\AppData\Roaming\WinRAR
2014-05-19 16:34 - 2014-05-19 16:34 - 00000000 ____D () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-19 16:34 - 2014-05-19 16:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-19 16:28 - 2014-05-19 16:27 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-19 16:14 - 2014-05-19 16:14 - 00000000 ____D () C:\Users\David\AppData\Roaming\URSoft
2014-05-19 16:14 - 2014-05-19 16:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7
2014-05-19 16:14 - 2014-05-19 16:14 - 00000000 ____D () C:\Program Files (x86)\Your Uninstaller! 7
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files\iTunes
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files\iPod
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-05-19 15:53 - 2014-05-19 15:53 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-05-19 15:52 - 2014-05-19 15:52 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files\Bonjour
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-05-19 15:52 - 2014-05-19 15:51 - 00000000 ____D () C:\ProgramData\Apple
2014-05-19 15:51 - 2014-05-19 15:51 - 00000000 ____D () C:\Users\David\AppData\Roaming\AVAST Software
2014-05-19 15:50 - 2014-05-19 15:50 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1400507451631
2014-05-19 15:50 - 2014-05-19 15:50 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1400507451631
2014-05-19 15:50 - 2014-05-19 15:50 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-05-19 15:50 - 2014-05-19 15:50 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-19 15:50 - 2014-05-19 15:50 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-19 15:50 - 2014-05-19 15:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-05-19 15:50 - 2014-05-19 15:50 - 00000000 ____D () C:\Program Files\AVAST Software
2014-05-19 15:49 - 2014-05-19 15:49 - 00002086 _____ () C:\Users\David\Desktop\JDownloader 2.lnk
2014-05-19 15:49 - 2014-05-19 15:49 - 00000000 ____D () C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2014-05-19 15:49 - 2014-05-19 15:49 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-05-19 15:48 - 2014-05-19 15:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-05-19 15:48 - 2014-05-19 15:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-05-19 15:47 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2014-05-19 15:38 - 2014-05-19 15:38 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-05-19 15:35 - 2014-05-19 15:35 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-05-19 15:35 - 2014-05-19 15:35 - 00000000 ____D () C:\Windows\system32\Macromed
2014-05-19 15:35 - 2014-05-19 15:35 - 00000000 ____D () C:\Users\David\AppData\Roaming\Macromedia
2014-05-19 15:33 - 2014-05-19 15:33 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-19 15:33 - 2014-05-19 15:33 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-19 15:33 - 2014-05-19 15:33 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-19 15:33 - 2014-05-19 15:33 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\ProgramData\Sun
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\ProgramData\Oracle
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-19 15:33 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-05-19 15:32 - 2014-05-19 15:31 - 00000000 ____D () C:\Users\David\AppData\Roaming\Mozilla
2014-05-19 15:32 - 2014-05-19 15:31 - 00000000 ____D () C:\Users\David\AppData\Local\Mozilla
2014-05-19 15:31 - 2014-05-19 15:31 - 00000000 ____D () C:\ProgramData\Mozilla
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\Windows\SysWOW64\Microsoft.VC80.MFC
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\Windows\system32\Microsoft.VC80.MFC
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\xp
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\win7_64
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\win7_32
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\vista64
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\ProgramData\vista32
2014-05-19 15:29 - 2014-05-19 15:29 - 00000000 ____D () C:\Program Files\TOSHIBA
2014-05-19 15:26 - 2014-05-19 15:26 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-05-19 15:26 - 2014-05-19 15:26 - 00000000 ____D () C:\Users\David\AppData\Roaming\WinBatch
2014-05-19 15:26 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore
2014-05-19 15:04 - 2014-05-19 15:04 - 00000020 ___SH () C:\Users\David\ntuser.ini
2014-05-19 15:04 - 2014-05-19 15:04 - 00000000 __SHD () C:\Recovery
2014-05-19 15:04 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-05-19 14:59 - 2014-05-19 14:59 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-05-19 14:59 - 2014-05-19 14:59 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-05-19 14:59 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-19 14:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-05-15 01:49 - 2014-05-27 10:21 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin
2014-05-12 07:26 - 2014-05-23 10:03 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-12 07:26 - 2014-05-23 10:03 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-12 07:25 - 2014-05-23 10:03 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-09 08:14 - 2014-05-19 16:19 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-09 08:11 - 2014-05-19 16:19 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll

Files to move or delete:
====================
C:\ProgramData\DriverReviver.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-06-08 12:57

==================== End Of Log ============================

 

I'm attached summary and minidump rar file http://www.bleepingcomputer.com/submit-malware.php?channel=143.

 

Thank you

 


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2014
Ran by David at 2014-06-08 17:56:15
Running from C:\Users\David\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.07) - Italiano (HKLM-x32\...\{AC76BA86-7AD7-1040-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2018 - Avast Software)
Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v8.00.12(T) - TOSHIBA CORPORATION)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.60.48.35 - Broadcom Corporation)
Canon LBP2900 (HKLM\...\Canon LBP2900) (Version:  - )
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
Driver Reviver (HKLM\...\Driver Reviver) (Version: 4.0.1.74 - ReviverSoft LLC)
FileZilla Client 3.8.0 (HKLM-x32\...\FileZilla Client) (Version: 3.8.0 - Tim Kosse)
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Gwyddion (HKLM\...\Gwyddion) (Version: 2.36.win64 - Gwyddion developers)
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
iTunes (HKLM\...\{1CF5754A-545B-4360-BFDE-2847BC728DFC}) (Version: 11.2.0.115 - Apple Inc.)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.68.0 - JMicron Technology Corp.)
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Math Kernel Libraries (64-bit) (Version: 1.0.31.0 - National Instruments) Hidden
Math Kernel Libraries (64-bit) (Version: 13.0.13 - National Instruments) Hidden
Math Kernel Libraries (x32 Version: 1.0.31.0 - National Instruments) Hidden
Math Kernel Libraries (x32 Version: 13.0.13 - National Instruments) Hidden
MATLAB R2014a (HKLM\...\Matlab R2014a) (Version: 8.3 - The MathWorks, Inc.)
Mendeley Desktop 1.11 (HKLM-x32\...\Mendeley Desktop) (Version: 1.11 - Mendeley Ltd.)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Access MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20125.0 - Microsoft Corporation)
Microsoft Silverlight 5.1 (x32 Version: 5.1.4001 - National Instruments) Hidden
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Word MUI (Italian) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Mozilla Firefox 29.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 en-US)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla)
Mozilla Thunderbird 24.5.0 (x86 it) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 it)) (Version: 24.5.0 - Mozilla)
NetSetMan 3.7.2 (HKLM-x32\...\NetSetMan_is1) (Version: 3.7.2 - Ilja Herlein)
NI .NET Framework 4.0 (x32 Version: 4.01.49152 - National Instruments) Hidden
NI ActiveX Container (64-bit) (Version: 13.0.4 - National Instruments) Hidden
NI ActiveX Container (x32 Version: 13.0.4 - National Instruments) Hidden
NI Assistant Framework (x32 Version: 9.0.143 - National Instruments) Hidden
NI Assistant Framework 64-bit (Version: 9.0.143 - National Instruments) Hidden
NI Assistant Framework 64-bit LabVIEW 2013 Support (Version: 9.0.104 - National Instruments) Hidden
NI Assistant Framework LabVIEW Code Generator 2013 (64-bit) (Version: 9.0.99 - National Instruments) Hidden
NI Authentication 13.0.0 (64-bit) (Version: 13.0.326 - National Instruments) Hidden
NI Authentication 13.0.0 (x32 Version: 13.0.326 - National Instruments) Hidden
NI CodeSignAPI (x32 Version: 2.70.346 - National Instruments) Hidden
NI Curl 13.0.0 (64-bit) (Version: 13.0.324 - National Instruments) Hidden
NI Curl 13.0.0 (x32 Version: 13.0.324 - National Instruments) Hidden
NI Customer Experience Improvement Program (64-bit) (Version: 2.0.39 - National Instruments) Hidden
NI Customer Experience Improvement Program (x32 Version: 2.0.77 - National Instruments) Hidden
NI DataSocket 5.1 (64-bit) (Version: 5.1.227 - National Instruments) Hidden
NI DataSocket 5.1 (x32 Version: 5.1.227 - National Instruments) Hidden
NI Distributed System Manager 2013 (x32 Version: 13.0.338 - National Instruments) Hidden
NI Error Reporting 2013 (64-bit) (Version: 13.0.327 - National Instruments) Hidden
NI Error Reporting 2013 (x32 Version: 13.0.324 - National Instruments) Hidden
NI Error Reporting Interface Installer 5.5 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI Error Reporting Interface Installer 5.5 for Windows 64-bit (Version: 5.50.49152 - National Instruments) Hidden
NI EulaDepot (x32 Version: 3.21.132 - National Instruments) Hidden
NI Example Finder 13.0 (Version: 13.0.320 - National Instruments) Hidden
NI GMP Windows 32-bit Installer 13.0.0 (x32 Version: 13.0.45.0 - National Instruments) Hidden
NI GMP Windows 64-bit Installer 13.0.0 (Version: 13.0.45.0 - National Instruments) Hidden
NI Help Assistant 2.0 (64bit) (Version: 2.0.3 - National Instruments) Hidden
NI Help Assistant 2.0 (x32 Version: 2.0.3 - National Instruments) Hidden
NI Instrument IO Assistant for LabVIEW 2013 64-bit (Version: 1.0.12.0 - National Instruments) Hidden
NI LabVIEW 2011 Real-Time NBFifo (x32 Version: 11.0.250.0 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (x32 Version: 12.0.219.0 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (x32 Version: 13.0.336 - National Instruments) Hidden
NI LabVIEW 2012 Run-Time Engine Web Server (x32 Version: 12.5.198.0 - National Instruments) Hidden
NI LabVIEW 2012 SP1 Deployable License (x32 Version: 12.1.52.0 - National Instruments) Hidden
NI LabVIEW 2012 SP1 Run-Time Engine Non-English Support. (x32 Version: 12.1.52.0 - National Instruments) Hidden
NI LabVIEW 2013 (64 bit) MeasAppChm File (Version: 13.0.334 - National Instruments) Hidden
NI LabVIEW 2013 (64-bit) (Version: 13.0.333 - National Instruments) Hidden
NI LabVIEW 2013 (64-bit) Scripting Code Generator (Version: 9.0.198 - National Instruments) Hidden
NI LabVIEW 2013 (64-bit) Search (Version: 13.0.12 - National Instruments) Hidden
NI LabVIEW 2013 Deployable License (x32 Version: 13.0.303 - National Instruments) Hidden
NI LabVIEW 2013 Deployment Framework (x32 Version: 13.0.330 - National Instruments) Hidden
NI LabVIEW 2013 f3 (64-bit) (Version: 13.0.336 - National Instruments) Hidden
NI LabVIEW 2013 Help (Version: 13.0.332 - National Instruments) Hidden
NI LabVIEW 2013 Help File (Version: 13.0.334 - National Instruments) Hidden
NI LabVIEW 2013 License (x32 Version: 13.0.342 - National Instruments) Hidden
NI LabVIEW 2013 Manuals (Version: 13.0.327 - National Instruments) Hidden
NI LabVIEW 2013 Real-Time Error Dialog (x32 Version: 13.0.123 - National Instruments) Hidden
NI LabVIEW 2013 Run-Time Engine Non-English Support. (x32 Version: 13.0.329 - National Instruments) Hidden
NI LabVIEW 2013 Run-Time Engine Web Server (x32 Version: 13.0.321 - National Instruments) Hidden
NI LabVIEW 2013 Simulation (Version: 13.0.327 - National Instruments) Hidden
NI LabVIEW 2013 Web Server 64-Bit (Version: 13.0.326 - National Instruments) Hidden
NI LabVIEW 2013 Web Services Runtime (64-bit) (Version: 13.0.310 - National Instruments) Hidden
NI LabVIEW Broker (64 bit) (Version: 6.8.10.0 - National Instruments) Hidden
NI LabVIEW Broker (x32 Version: 6.8.10.0 - National Instruments) Hidden
NI LabVIEW C Interface (x32 Version: 1.0.1 - National Instruments) Hidden
NI LabVIEW Compare Utility 13.0.0 (Version: 13.0.327 - National Instruments) Hidden
NI LabVIEW MAX XML (x32 Version: 9.0.6.0 - National Instruments) Hidden
NI LabVIEW Merge Utility 13.0.0 (Version: 13.0.327 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2011 SP1 (x32 Version: 11.0.448.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2012 SP1 f5 (x32 Version: 12.1.64.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2013 (x32 Version: 13.0.332 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2013 f2 (64-bit) (Version: 13.0.333 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2011 (x32 Version: 11.0.449.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2012 SP1 (x32 Version: 12.1.64.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2013 (64-bit) (Version: 13.0.333 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2013 (x32 Version: 13.0.332 - National Instruments) Hidden
NI LabVIEW Web Server 64-Bit for Run-Time Engine (Version: 13.0.326 - National Instruments) Hidden
NI LabVIEW Web Server for Run-Time Engine (x32 Version: 11.0.375.0 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Analysis Library (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Analysis Library (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Code Generator (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Original) (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Updated) (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Network Variable Library (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Network Variable Library (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Run-Time Engine (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2012 LabVIEW DLL Builder (x32 Version: 12.0.0422 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2010 SP1 (Updated) (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2010 SP1 (x32 Version: 10.0.1434 - National Instruments) Hidden
NI Launcher (x32 Version: 3.20.351 - National Instruments) Hidden
NI License Manager (x32 Version: 3.7.53 - National Instruments) Hidden
NI Logos 5.5 (64-bit) (Version: 5.5.293 - National Instruments) Hidden
NI Logos 5.5 (x32 Version: 5.5.293 - National Instruments) Hidden
NI Logos LabVIEW 2013 Support (Version: 13.0.327 - National Instruments) Hidden
NI Logos XT Support (x32 Version: 5.5.294 - National Instruments) Hidden
NI Logos64 XT Support (Version: 5.5.294 - National Instruments) Hidden
NI Math Kernel Libraries (64-bit) (Version: 1.0.10.0 - National Instruments) Hidden
NI Math Kernel Libraries (x32 Version: 1.0.10.0 - National Instruments) Hidden
NI MAX Remote Configuration 64-bit Installer 5.5 (Version: 5.50.49152 - National Instruments) Hidden
NI MAX Remote Configuration Installer 5.5 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI MAX Support for 64 Bit Windows (Version: 5.50.49152 - National Instruments) Hidden
NI MDF Support (x32 Version: 3.21.132 - National Instruments) Hidden
NI mDNS Responder 2.2 for Windows 64-bit (Version: 2.20.49152 - National Instruments) Hidden
NI mDNS Responder 2.2.0 (x32 Version: 2.20.49152 - National Instruments) Hidden
NI Measurement & Automation Explorer 5.5.0 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies (x64) for .NET 3.5 (Version: 13.0.00190 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies for .NET 2.0 (x32 Version: 12.0.00258 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies for .NET 3.5 and VS2008 (x32 Version: 13.0.00190 - National Instruments) Hidden
NI Measurement Studio ComponentWorks 3D Graph (x32 Version: 8.6.10603 - National Instruments) Hidden
NI Measurement Studio ComponentWorks UI (x32 Version: 8.6.10603 - National Instruments) Hidden
NI Measurement Studio Recipe Processor (x32 Version: 8.0.0101 - National Instruments) Hidden
NI MetaSuite Installer (x32 Version: 3.20.351 - National Instruments) Hidden
NI MXS 5.5.0 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI MXS 5.5.0 for 64 Bit Windows (Version: 5.50.49152 - National Instruments) Hidden
NI Network Discovery 5.5 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI Network Discovery 5.5 for Windows 64-bit (Version: 5.50.49152 - National Instruments) Hidden
NI NI LabVIEW 2011 SP1 Run-Time Engine Non-English Support (x32 Version: 11.0.302.0 - National Instruments) Hidden
NI OPC Support (x32 Version: 13.0.296 - National Instruments) Hidden
NI OPCEnum Shared (x32 Version: 5.5.2018 - National Instruments) Hidden
NI Portable Configuration 5.5.0 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI Portable Configuration for 64 Bit Windows 5.5.0 (Version: 5.50.49152 - National Instruments) Hidden
NI Real-Time Device Manager (x32 Version: 1.10.49152 - National Instruments) Hidden
NI Registration Wizard (x32 Version: 1.3.97.0 - National Instruments) Hidden
NI Remote Provider for MAX 5.5.0 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI Remote PXI Provider for MAX 5.5.0 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI Search Shared 64-bit (Version: 13.0.10 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (64-bit) (Version: 1.0.29.0 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (x32 Version: 1.0.29.0 - National Instruments) Hidden
NI Service Locator 13.0 (x32 Version: 13.0.307 - National Instruments) Hidden
NI SLCP 2.0 (64-bit) (Version: 2.0.23 - National Instruments) Hidden
NI Software Provider for MAX 5.5.0 (x32 Version: 5.50.49152 - National Instruments) Hidden
NI SSL LabVIEW 2013 RTE Support (64-bit) (Version: 13.0.317 - National Instruments) Hidden
NI SSL LabVIEW 2013 Support (64-bit) (Version: 13.0.328 - National Instruments) Hidden
NI SSL LabVIEW RTE 2012 SP1 Support (x32 Version: 12.5.8.0 - National Instruments) Hidden
NI SSL LabVIEW RTE 2013 Support (x32 Version: 13.0.317 - National Instruments) Hidden
NI SSL Support (64-bit) (Version: 13.0.319 - National Instruments) Hidden
NI SSL Support (x32 Version: 13.0.324 - National Instruments) Hidden
NI System API .NET 5.5.0 (x32 Version: 5.50.157 - National Instruments) Hidden
NI System API Client for WIF 5.5.0 (x32 Version: 5.50.419 - National Instruments) Hidden
NI System API Web-Service 32-bit 5.5.0 (x32 Version: 5.50.405 - National Instruments) Hidden
NI System API Windows 32-bit 5.5.0 (x32 Version: 5.50.589 - National Instruments) Hidden
NI System API Windows 64-bit 5.5.0 (Version: 5.50.588 - National Instruments) Hidden
NI System Configuration 5.5.0 LabVIEW Support (x32 Version: 5.50.186 - National Instruments) Hidden
NI System Configuration LV2013 64-bit Support 5.5.0 (Version: 5.50.177 - National Instruments) Hidden
NI System Configuration Runtime 5.5.0 (x32 Version: 5.50.226 - National Instruments) Hidden
NI System Configuration Runtime 5.5.0 for Windows 64-bit (Version: 5.50.226 - National Instruments) Hidden
NI System State Publisher (64-bit) (Version: 13.0.299 - National Instruments) Hidden
NI System State Publisher (x32 Version: 13.0.304 - National Instruments) Hidden
NI System Web Server 13.0 (x32 Version: 13.0.333 - National Instruments) Hidden
NI System Web Server Base 13.0.0 (64-bit) (Version: 13.0.324 - National Instruments) Hidden
NI System Web Server Base 13.0.0 (x32 Version: 13.0.324 - National Instruments) Hidden
NI TDM Excel Add-In 3.5 (x32 Version: 3.5.9 - National Instruments) Hidden
NI TDM Excel Add-In 3.5 64-bit (Version: 3.5.9 - National Instruments) Hidden
NI TDM Streaming 2.5 (64-bit) (Version: 2.5.36 - National Instruments) Hidden
NI TDM Streaming 2.5 (x32 Version: 2.5.36 - National Instruments) Hidden
NI Trace Engine (64-bit) (Version: 13.0.324 - National Instruments) Hidden
NI Trace Engine (x32 Version: 13.0.324 - National Instruments) Hidden
NI Uninstaller (x32 Version: 3.21.132 - National Instruments) Hidden
NI Update Service 2.3 (64-bit) (Version: 2.30.53 - National Instruments) Hidden
NI Update Service 2.3 (x32 Version: 2.30.65 - National Instruments) Hidden
NI USI 2.0.1 (x32 Version: 2.0.15249 - National Instruments) Hidden
NI USI 2.0.1 64-Bit (Version: 2.0.15249 - National Instruments) Hidden
NI Variable Engine (64-bit) (Version: 2.7.297 - National Instruments) Hidden
NI Variable Engine 2.6.0 (x32 Version: 2.7.297 - National Instruments) Hidden
NI Variable Engine LabVIEW 2013 Support (Version: 13.0.327 - National Instruments) Hidden
NI VC2005MSMs x64 (Version: 8.05.0 - National Instruments) Hidden
NI VC2005MSMs x86 (x32 Version: 8.05.0 - National Instruments) Hidden
NI VC2008MSMs x64 (Version: 9.0.401 - National Instruments) Hidden
NI VC2008MSMs x86 (x32 Version: 9.0.401 - National Instruments) Hidden
NI VC2010SP1MSMs x64 (Version: 10.0.100 - National Instruments) Hidden
NI VC2010SP1MSMs x86 (x32 Version: 10.0.100 - National Instruments) Hidden
NI VIPM Helper 2013 (x32 Version: 13.0.339 - National Instruments) Hidden
NI Vision 2013 (x32 Version: 13.0.74 - National Instruments) Hidden
NI Vision 2013 .NET (x32 Version: 13.0.74 - National Instruments) Hidden
NI Vision 2013 64-bit (Version: 13.0.74 - National Instruments) Hidden
NI Vision Assistant 2013 (x32 Version: 13.0.49 - National Instruments) Hidden
NI Vision Assistant 2013 .NET (x32 Version: 13.0.49 - National Instruments) Hidden
NI Vision Assistant 2013 64-bit (Version: 13.0.49 - National Instruments) Hidden
NI Vision Common Resources 2013 f2 (x32 Version: 13.2.3 - National Instruments) Hidden
NI Vision Common Resources 2013 f2 64-bit (Version: 13.2.3 - National Instruments) Hidden
NI Vision Common Resources Real-Time 2013 f2 (x32 Version: 13.2.3 - National Instruments) Hidden
NI Vision Run-Time Engine 2013 (x32 Version: 13.0.68 - National Instruments) Hidden
NI Vision Run-Time Engine 2013 64-bit (Version: 13.0.68 - National Instruments) Hidden
NI VisionRun-Time Engine 2013 .NET (x32 Version: 13.0.68 - National Instruments) Hidden
NI Web Application Server 13.0 (64-bit) (Version: 13.0.319 - National Instruments) Hidden
NI Web Application Server 13.0 (x32 Version: 13.0.324 - National Instruments) Hidden
NI Web Pipeline 3.3 (64-bit) (Version: 3.30.24 - National Instruments) Hidden
NI Web Pipeline 3.3 (x32 Version: 3.30.24 - National Instruments) Hidden
NI Web-Based Configuration and Monitoring 2013 (x32 Version: 13.0.306 - National Instruments) Hidden
NI Xalan Delay Load 1.10.2 (x32 Version: 1.10.72.0 - National Instruments) Hidden
NI Xalan Delay Load 1.10.2 64-bit (Version: 1.10.73.0 - National Instruments) Hidden
NI Xerces Delay Load 2.7.3 (x32 Version: 2.7.180.0 - National Instruments) Hidden
NI Xerces Delay Load 2.7.3 64-bit (Version: 2.7.190.0 - National Instruments) Hidden
NI-APAL 2.2 64-Bit Error Files (Version: 2.20.49152 - National Instruments) Hidden
NI-APAL 2.2 Error Files (x32 Version: 2.20.49152 - National Instruments) Hidden
NI-APAL 2.2 Error Files for LabVIEW RT (x32 Version: 2.20.49152 - National Instruments) Hidden
NI-DAQmx/LabVIEW shared documentation 9.7.5 (x32 Version: 9.75.49152 - National Instruments) Hidden
NI-DAQmx/LabVIEW shared documentation for 64 Bit Windows 9.7.5 (Version: 9.75.49152 - National Instruments) Hidden
NI-Mesa (Version: 12.0.7.0 - National Instruments) Hidden
NI-Mesa (x32 Version: 12.0.7.0 - National Instruments) Hidden
NI-PAL 2.9.1 Error Files for LabVIEW RT (x32 Version: 2.91.49152 - National Instruments) Hidden
NI-PAL 2.9.1f0 for Phar Lap ETS (x32 Version: 10.101.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 (x32 Version: 4.40.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 for 64 Bit Windows (Version: 4.40.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 for Phar Lap ETS (x32 Version: 4.40.49152 - National Instruments) Hidden
NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation)
NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden
Origin90 (HKLM-x32\...\{685A89CB-DF27-42D6-A623-34F40DBBFFB2}) (Version: 9.00.00 - OriginLab Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
RAIDar 4.3.4 (HKLM-x32\...\1381-5408-0515-7060) (Version: 4.3.4 - Netgear Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.46.610.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7183 - Realtek Semiconductor Corp.)
Reset NI Config 5.5.0 (x32 Version: 5.50.227 - National Instruments) Hidden
SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Software National Instruments (HKLM-x32\...\NI Uninstaller) (Version:  - National Instruments)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.)
Supporto applicazioni Apple (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.8.1 - Synaptics Incorporated)
TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.63.0.6C - TOSHIBA CORPORATION)
TOSHIBA Flash Cards Support Utility (x32 Version: 1.63.0.6C - TOSHIBA CORPORATION) Hidden
TOSHIBA Hardware Setup (HKLM-x32\...\InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}) (Version: 1.63.0.26C - TOSHIBA CORPORATION)
TOSHIBA Hardware Setup (x32 Version: 1.63.0.26C - TOSHIBA CORPORATION) Hidden
Tweaking.com - Windows Repair (All in One) (HKLM-x32\...\Tweaking.com - Windows Repair (All in One)) (Version: 2.7.2 - Tweaking.com)
Utility Common Driver (x32 Version: 1.0.52.1C - TOSHIBA) Hidden
VI Package Manager 2013 (HKLM-x32\...\{0A84E377-C315-48EC-A99A-C5F5F8432FCF}) (Version: 13.0.1879 - JKI)
VI Package Manager 2013 (x32 Version: 13.0.0 - National Instruments) Hidden
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
WIF Core Dependencies Windows 5.5.0 (x32 Version: 5.50.155 - National Instruments) Hidden
Windows Driver Package - ENE (enecir) HIDClass  (04/29/2008 2.5.0.0) (HKLM\...\B30ECD0209A21D638611F893829C8AF3A483A302) (Version: 04/29/2008 2.5.0.0 - ENE)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Your Uninstaller! 7 (HKLM-x32\...\YU2010_is1) (Version: 7.5.2014.3 - URSoft, Inc.)

==================== Restore Points  =========================

30-05-2014 08:14:05 Before uninstalling Driver Reviver
30-05-2014 08:21:33 Before uninstalling SlimDrivers
30-05-2014 08:21:44 Removed SlimDrivers
30-05-2014 11:41:04 Windows Update
03-06-2014 06:31:22 Installed DirectX
03-06-2014 06:31:37 Windows Update
06-06-2014 12:37:43 Windows Update

==================== Hosts content: ==========================

2009-07-14 04:34 - 2014-05-23 09:35 - 00450709 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1    www.007guard.com
127.0.0.1    007guard.com
127.0.0.1    008i.com
127.0.0.1    www.008k.com
127.0.0.1    008k.com
127.0.0.1    www.00hq.com
127.0.0.1    00hq.com
127.0.0.1    010402.com
127.0.0.1    www.032439.com
127.0.0.1    032439.com
127.0.0.1    www.0scan.com
127.0.0.1    0scan.com
127.0.0.1    1000gratisproben.com
127.0.0.1    www.1000gratisproben.com
127.0.0.1    1001namen.com
127.0.0.1    www.1001namen.com
127.0.0.1    100888290cs.com
127.0.0.1    www.100888290cs.com
127.0.0.1    www.100sexlinks.com
127.0.0.1    100sexlinks.com
127.0.0.1    10sek.com
127.0.0.1    www.10sek.com
127.0.0.1    www.1-2005-search.com
127.0.0.1    1-2005-search.com
127.0.0.1    123fporn.info
127.0.0.1    www.123fporn.info
127.0.0.1    123haustiereundmehr.com
127.0.0.1    www.123haustiereundmehr.com
127.0.0.1    123moviedownload.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

Task: {04520E73-B151-42D0-9625-8BDD2A4B818F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: {077B514C-2E78-4774-8AE9-D9248EDB8540} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {26B13C48-FD06-4F20-B007-6167A0274077} - \AppCloudUpdater No Task File <==== ATTENTION
Task: {3B6E95A6-7D26-4AC6-B7F6-D6A19C62CC1D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {426C08EB-676E-4644-89D7-50158A21E6B3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-19] (Adobe Systems Incorporated)
Task: {5D6DB68B-97CC-4D5B-A628-BFEEA0F2B1A4} - System32\Tasks\JKIUpdateTask => C:\Program Files (x86)\JKI\VI Package Manager\support\JKIUpdate.exe [2013-05-23] (JKI)
Task: {682EC665-4CE6-40A7-87DB-8FA6D4063E43} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: {90C31EFC-00BA-4DB0-9CA6-BB2BADB72E73} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-05-19] (AVAST Software)
Task: {9954830A-A216-48F0-8808-4364CF9D49B9} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {B4AEAE40-C5AC-4E41-8DCB-F59BFD186AF1} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2013-11-20] (Apple Inc.)
Task: {C0D593D9-85AC-4A38-9634-B17CAFFD7E2F} - System32\Tasks\NIUpdateServiceCheckTask => C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe [2013-05-28] (National Instruments)
Task: {ECB68B02-A81B-4817-8C3D-B49523779DA6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {F0E7061A-A7DD-4B4E-B197-EEB05FD76039} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {FC639C19-0AFE-4CEF-AE55-1D56D1C3AAED} - System32\Tasks\Start Driver Reviver for David-PC@David(logon) => C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe [2013-11-18] (ReviverSoft LLC)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Start Driver Reviver for David-PC@David(logon).job => C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe

==================== Loaded Modules (whitelisted) =============

2014-05-19 15:47 - 2014-05-20 03:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-06-07 10:59 - 2013-06-07 10:59 - 02270880 _____ () C:\Program Files\National Instruments\Shared\NI Error Reporting\niwsrp.dll
2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2014-06-08 11:53 - 2014-06-08 11:53 - 02775040 _____ () C:\Program Files\AVAST Software\Avast\defs\14060800\algo.dll
2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-05-20 13:25 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-05-20 13:25 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-05-20 13:25 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-05-20 13:25 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-05-20 13:25 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2013-09-14 01:51 - 2013-09-14 01:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll
2013-09-14 01:50 - 2013-09-14 01:50 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll
2014-05-19 15:50 - 2014-05-19 15:50 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2013-06-07 10:59 - 2013-06-07 10:59 - 01958560 _____ () C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\niwsrp.dll
2012-01-26 10:36 - 2012-01-26 10:36 - 00278528 ____R () C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\xerces-depdom_2_6.dll
2014-05-19 15:31 - 2014-05-07 04:27 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-05-20 15:16 - 2014-04-24 19:51 - 03019888 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2014-05-20 15:16 - 2014-04-24 19:51 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2014-05-20 15:16 - 2014-04-24 19:51 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51

==================== Safe Mode (whitelisted) ===================


==================== EXE Association (whitelisted) =============


==================== Disabled items from MSCONFIG ==============


==================== Faulty Device Manager Devices =============

Name: ENE CIR HID Receiver
Description: ENE CIR HID Receiver
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: ENE
Service: enecirhid
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/08/2014 05:51:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: SHELL32.dll, version: 6.1.7601.18429, time stamp: 0x5330ecd9
Exception code: 0xc0000005
Fault offset: 0x0000000000050506
Faulting process id: 0x1544
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3

Error: (06/05/2014 09:28:02 AM) (Source: SDUpdSvc.exe) (EventID: 0) (User: )
Description: The service process could not connect to the service controller

Error: (06/03/2014 00:26:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: explorer.exe, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc015000f
Fault offset: 0x000000000006f7ba
Faulting process id: 0xd28
Faulting application start time: 0xexplorer.exe0
Faulting application path: explorer.exe1
Faulting module path: explorer.exe2
Report Id: explorer.exe3

Error: (06/03/2014 00:25:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: explorer.exe, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: SHELL32.dll, version: 6.1.7601.18429, time stamp: 0x5330ecd9
Exception code: 0xc0000005
Fault offset: 0x0000000000050506
Faulting process id: 0xd28
Faulting application start time: 0xexplorer.exe0
Faulting application path: explorer.exe1
Faulting module path: explorer.exe2
Report Id: explorer.exe3

Error: (06/03/2014 00:25:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc015000f
Fault offset: 0x000000000006f7ba
Faulting process id: 0xb64
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3

Error: (06/03/2014 00:25:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: SHELL32.dll, version: 6.1.7601.18429, time stamp: 0x5330ecd9
Exception code: 0xc0000005
Fault offset: 0x0000000000050506
Faulting process id: 0xb64
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3

Error: (06/03/2014 08:28:20 AM) (Source: SDFSSvc.exe) (EventID: 0) (User: )
Description: The service process could not connect to the service controller

Error: (05/31/2014 01:35:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname David-PC.local already in use; will try David-PC-2.local instead

Error: (05/31/2014 01:35:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 David-PC.local. Addr 192.168.1.6

Error: (05/31/2014 01:35:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.2:5353    4 David-PC.local. Addr 192.168.1.2


System errors:
=============
Error: (06/08/2014 11:48:27 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80070420'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

Error: (06/05/2014 09:28:10 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80070420'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

Error: (05/31/2014 03:41:37 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: The name "DAVID-PC       :0" could not be registered on the interface with IP address 192.168.1.6.
The computer with the IP address 192.168.1.2 did not allow the name to be claimed by
this computer.

Error: (05/31/2014 01:35:28 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: The name "DAVID-PC       :20" could not be registered on the interface with IP address 192.168.1.6.
The computer with the IP address 192.168.1.2 did not allow the name to be claimed by
this computer.

Error: (05/31/2014 01:35:28 PM) (Source: Server) (EventID: 2505) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{1EE96F17-481B-40AF-B31D-906D4EE44573} because another computer on the network has the same name.  The server could not start.

Error: (05/31/2014 01:35:21 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: The name "DAVID-PC       :0" could not be registered on the interface with IP address 192.168.1.6.
The computer with the IP address 192.168.1.2 did not allow the name to be claimed by
this computer.

Error: (05/31/2014 00:28:57 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {9E6E74C7-0E85-4D14-8851-7635E2C1C528}

Error: (05/31/2014 00:26:56 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: The name "DAVID-PC       :0" could not be registered on the interface with IP address 192.168.1.6.
The computer with the IP address 192.168.1.2 did not allow the name to be claimed by
this computer.

Error: (05/30/2014 09:23:05 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

Error: (05/30/2014 09:22:54 AM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x0000001e (0x0000000000000000, 0x0000000000000000, 0x0000000000000000, 0x0000000000000000)C:\Windows\MEMORY.DMP053014-14258-01


Microsoft Office Sessions:
=========================
Error: (06/08/2014 05:51:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Explorer.EXE6.1.7601.175674d672ee4SHELL32.dll6.1.7601.184295330ecd9c00000050000000000050506154401cf8330024e299aC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dllb379224c-ef24-11e3-97d3-88ae1d558ec2

Error: (06/05/2014 09:28:02 AM) (Source: SDUpdSvc.exe) (EventID: 0) (User: )
Description: The service process could not connect to the service controller

Error: (06/03/2014 00:26:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe6.1.7601.175674d672ee4ntdll.dll6.1.7601.18247521eaf24c015000f000000000006f7bad2801cf7f162ef26cb2C:\Windows\explorer.exeC:\Windows\SYSTEM32\ntdll.dll7630fb94-eb09-11e3-9110-88ae1d558ec2

Error: (06/03/2014 00:25:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe6.1.7601.175674d672ee4SHELL32.dll6.1.7601.184295330ecd9c00000050000000000050506d2801cf7f162ef26cb2C:\Windows\explorer.exeC:\Windows\system32\SHELL32.dll73bf5f1b-eb09-11e3-9110-88ae1d558ec2

Error: (06/03/2014 00:25:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Explorer.EXE6.1.7601.175674d672ee4ntdll.dll6.1.7601.18247521eaf24c015000f000000000006f7bab6401cf7ef4f1ce5263C:\Windows\Explorer.EXEC:\Windows\SYSTEM32\ntdll.dll6a233187-eb09-11e3-9110-88ae1d558ec2

Error: (06/03/2014 00:25:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Explorer.EXE6.1.7601.175674d672ee4SHELL32.dll6.1.7601.184295330ecd9c00000050000000000050506b6401cf7ef4f1ce5263C:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll664b000d-eb09-11e3-9110-88ae1d558ec2

Error: (06/03/2014 08:28:20 AM) (Source: SDFSSvc.exe) (EventID: 0) (User: )
Description: The service process could not connect to the service controller

Error: (05/31/2014 01:35:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname David-PC.local already in use; will try David-PC-2.local instead

Error: (05/31/2014 01:35:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 David-PC.local. Addr 192.168.1.6

Error: (05/31/2014 01:35:22 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.2:5353    4 David-PC.local. Addr 192.168.1.2


==================== Memory info ===========================

Percentage of memory in use: 26%
Total physical RAM: 8122.67 MB
Available physical RAM: 5936.03 MB
Total Pagefile: 16243.52 MB
Available Pagefile: 13891.08 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:223.47 GB) (Free:156.41 GB) NTFS
Drive e: (e anche tdi piò) (Removable) (Total:59.53 GB) (Free:59.2 GB) NTFS
Drive f: (KINGSTON) (Removable) (Total:29.27 GB) (Free:10.1 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 224 GB) (Disk ID: C6BC18CC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 60 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=60 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 29 GB) (Disk ID: 82AAF738)
Partition 1: (Active) - (Size=29 GB) - (Type=0C)

==================== End Of Log ============================



#9 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,800 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:08:27 PM

Posted 08 June 2014 - 02:58 PM

Greetings,

Have you experienced any other installation problems in addition to Icloud?

Please consider and do this.

===================================================

Spybot S&D No Longer Recommended

--------------------

MVPS.org is no longer recommending Spybot S&D due to poor testing results. (scroll down on the web site and read under Freeware Antispyware Products)

I strongly recommend uninstalling Spybot Search & Destroy. The presence of this program can make cleaning your computer more difficult.

If you choose to uninstall please go to Start, Control Panel, Add/Remove Programs (or Programs and Features) and uninstall the program.
===================================================

Farbar's Recovery Scan Tool - Run Fix in Normal or Safe Mode

--------------------
  • Press the windows key Windows_Logo_key.gif + r on your keyboard at the same time. Type in notepad and press Enter
  • Please copy and paste the contents of the below code box into the open notepad and save it to your desktop (<<<Important) as fixlist.txt
Task: {26B13C48-FD06-4F20-B007-6167A0274077} - \AppCloudUpdater No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
  • Launch FRST and press the Fix button just once and wait, the program will automatically launch fixlist.txt.
  • The tool will create a log on the desktop called Fixlog.txt. Please copy and paste the contents of the file in your reply.
===================================================

GrantPerms by Farbar

--------------------
  • Download Grantperms (32 bit systems) or Grantperms64 (64 bit systems) and save it to your desktop
  • Unzip the file and launch the program
  • Copy and paste the following in the edit box:

C:\ProgramData\microsoft\windows\Startmenu\programs

  • Click List Permissions and copy/paste the results of the Perms.txt document.
  • A copy of Perms.txt will be saved in the same directory the tool is run.
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Any other installation issues?
  • Fixlog
  • GrantPerms log

Edited by Oh My, 10 June 2014 - 08:48 AM.

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#10 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 10 June 2014 - 01:56 AM

hello,

thank you for your appreciate help.

No I have not experienced any other installation issues.

I know that it is not important but i i experienced an error saying that the pc has problems with microsoft c++ libraries, then it tries to restart explorer. In the event viewer i found that :

Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: msvcrt.dll, version: 7.0.7601.17744, time stamp: 0x4eeb033f
Exception code: 0x40000015
Fault offset: 0x000000000002a84e
Faulting process id: 0xdec
Faulting application start time: 0x01cf84784c02bfc0
Faulting application path: C:\Windows\Explorer.EXE
Faulting module path: C:\Windows\system32\msvcrt.dll
Report Id: 78892b06-f06c-11e3-b4fe-b482fee59e6e

 

Here what you ask:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 06-06-2014
Ran by David at 2014-06-10 08:49:28 Run:1
Running from C:\Users\David\Downloads
Boot Mode: Safe Mode (minimal)
==============================================

Content of fixlist:
*****************
Task: {26B13C48-FD06-4F20-B007-6167A0274077} - \AppCloudUpdater No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
*****************

'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26B13C48-FD06-4F20-B007-6167A0274077}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26B13C48-FD06-4F20-B007-6167A0274077}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AppCloudUpdater' => Key deleted successfully.
C:\ProgramData\TEMP => ":1CE11B51" ADS removed successfully.

==== End of Fixlog ====

 

 

GrantPerms by Farbar
Ran by David (administrator) at 2014-06-10 08:56:30

===============================================
ERROR: Parsing the SD of <\\?\C:\ProgramData\microsoft\windos\Startmenu\programs> failed with: The system cannot find the path specified.


Operating system error message: The system cannot find the path specified.

================ End Of List ================

 

Regards


Edited by gauchio, 10 June 2014 - 02:02 AM.


#11 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,800 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:08:27 PM

Posted 10 June 2014 - 09:03 AM

Greetings David,

I apologize for making a typo error in the GrantPerms script. I have corrected that and if you could try it again it should work.
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#12 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 10 June 2014 - 09:14 AM

Hello again.

The right string is C:\ProgramData\Microsoft\Windows\Start Menu\Programs :-D

That is the result:

 

GrantPerms by Farbar
Ran by David (administrator) at 2014-06-10 16:14:05

===============================================
\\?\C:\ProgramData\Microsoft\Windows\Start Menu\Programs

   Owner: BUILTIN\Administrators

   DACL(P)(AI):
   BUILTIN\Administrators   FULL   ALLOW   (NI)
   David-PC\David   FULL   ALLOW   (OI)(IO)
   David-PC\David   FULL   ALLOW   container_inherit



================ End Of List ================



#13 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,800 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:08:27 PM

Posted 10 June 2014 - 09:48 AM

Hi David,

Please try this.

===================================================

Installing ICoud with Adminstator Privileges

-------------------
  • Right click on the ICloud installer icon and select Properties
  • Click Unblock, then OK
  • Click Start and type UAC
  • Move the slider to Never Notify (make note of the original position)
  • Right click on the ICloud installer icon and select Run as Administrator
  • Allow the program to install
  • Return the User Account notification setting back to its original setting
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Did the program install?

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#14 gauchio

gauchio
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:27 AM

Posted 10 June 2014 - 09:58 AM

Yes!!!!

Did the BSOD mean something?

 

Thank you for your help



#15 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,800 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:08:27 PM

Posted 10 June 2014 - 09:59 AM

Very good. :thumbsup2:

Is that the only time you have received that error message?
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users