Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Missing service and Incorrect ImagePath


  • This topic is locked This topic is locked
7 replies to this topic

#1 jnd002

jnd002

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:12:43 PM

Posted 02 June 2014 - 08:21 AM

I scaned my computer today with rkill and I don't know what is this and how to fix it.

 

Checking Windows Service Integrity:

 * E1G60 [Missing Service]
 * HdAudAddService [Missing Service]
 * vm3dmp [Missing Service]
 * vmhgfs [Missing Service]

 * gpsvc => %windir%\system32\svchost.exe -k GPSvcGroup [Incorrect ImagePath]



BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,600 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:43 AM

Posted 07 June 2014 - 08:25 AM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/536337 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 xXToffeeXx

xXToffeeXx

    Bleepin' Polar Bear


  • Malware Response Instructor
  • 6,041 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Arctic Circle
  • Local time:05:43 AM

Posted 08 June 2014 - 06:53 AM

Greetings and :welcome: to BleepingComputer,
My name is xXToffeeXx, but feel free to call me Toffee if it is easier for you. I will be helping you with your malware problems.
 
A few points to cover before we start:

  • Do not run any tools without being instructed to as this makes my job much harder in trying to figure out what you have done.
  • Make sure to read my instructions fully before attempting a step.
  • If you have problems or questions with any of the steps, feel free to ask me. I will be happy to answer any questions you have.
  • Please follow the topic by clicking on the "Follow this topic" button, and make sure a tick is in the "receive notifications" and is set to "Instantly". Any replies should be made in this topic by clicking the "Reply to this topic" button.
  • Important information in my posts will often be in bold, make sure to take note of these.
  • I will attempt to reply as soon as possible, and normally within 24 hours of your reply. If this is not possible or I have a delay then I will let you know.
  • I will bump a topic after 3 days of no activity, and then will give you another 2 days to reply before a topic is closed. If you need more time than this please let me know.
  • Lets get going now :thumbup2:

==========================
 
Hi jnd002,
 
Please download Farbar Recovery Scan Tool and save it to your Desktop.
 
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Right-click FRST then click "Run as administrator" (XP users: click run after receipt of Windows Security Warning - Open File).
  • When the tool opens, click Yes to disclaimer.
  • Press the Scan button.
  • When finished, it will produce a log called FRST.txt in the same directory the tool was run from.
  • Please copy and paste the log in your next reply.

Note 2: The first time the tool is run it generates another log (Addition.txt - also located in the same directory the tool was run from). Please also paste that, along with the FRST.txt into your next reply.
 
--------------
 
To recap, in your next reply I would like to see the following. Make sure to copy & paste them unless I ask otherwise:

  • FRST.txt
  • Addition.txt

xXToffeeXx~


~If I am helping you and you have not had a reply from me in two days, please send me a PM~

 

logo-25.pngID Ransomware - Identify What Ransomware Encrypted Your Files [Support Topic] - If we have helped you out and you want to support what we do, you can do so here

 

 ~Twitter~ | ~Malware Analyst at Emsisoft~


#4 jnd002

jnd002
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:12:43 PM

Posted 08 June 2014 - 10:58 AM

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-06-2014
Ran by JND (administrator) on JND-PC on 08-06-2014 22:17:39
Running from C:\Users\JND\Desktop
Platform: Windows 8.1 Enterprise (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(Broadcom Corp.) C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Raxco Software, Inc.) C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
(Atheros) C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe
(Raxco Software, Inc.) C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Raxco Software, Inc.) C:\Program Files\Raxco\PerfectDisk\PDAgentS1.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OFFICE15\CSISYNCCLIENT.EXE
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\livecomm.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\pmbxcrnmh.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2014-01-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2014-01-05] (Realtek Semiconductor)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1743088 2014-05-22] (Bitdefender)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2392360 2010-10-08] (Synaptics Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoRecentDocsNetHood] 0
HKLM\...\Policies\Explorer: [NoChangeStartMenu] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\.DEFAULT\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400 2014-05-22] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender Wallet] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1002048 2014-05-22] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender Wallet Application Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614744 2014-05-22] (Bitdefender)
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Run: [Bitdefender Wallet Application Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614744 2014-05-22] (Bitdefender)
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Run: [Facebook Update] => c:\users\jnd\appdata\local\facebook\update\facebookupdate.exe [138096 2014-02-03] (Facebook Inc.)
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Run: [Bitdefender Wallet] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1002048 2014-05-22] (Bitdefender)
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400 2014-05-22] (Bitdefender)
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Run: [uTorrent] => C:\Users\JND\AppData\Roaming\uTorrent\uTorrent.exe [1272400 2014-05-10] (BitTorrent Inc.)
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\system: [NoDispAppearancePage] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [NoPreviewPane] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [NoTrayContextMenu] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [NoSetTaskbar] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [NoViewContextMenu] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [NoWinkeys] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [NoTrayItemsDisplay] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [HideClock] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [HideSCANetwork] 0
HKU\S-1-5-21-2847039876-2763531162-3592927662-1000\...\Policies\Explorer: [HideSCAVolume] 0

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
BHO: Bitdefender Wallet  - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus)
BHO-x32: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
BHO-x32: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.22.0.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.254.254

FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\JND\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-05-05]
FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ []
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-05-05]
FF HKCU\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\JND\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\JND\AppData\Roaming\IDM\idmmzcc5 [2014-06-06]

Chrome:
=======
CHR HomePage: hxxp://mybrowserpage.com/
CHR StartupUrls: "hxxp://mybrowserpage.com/"
CHR DefaultSearchKeyword: google.com.ph
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.2.464\_platform_specific\win_x86\widevinecdmadapter.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll ()
CHR Plugin: (Internet Download Manager Plugin) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn\6.19.7_0\IDMGCExt.dll No File
CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (Microsoft Office 2013) - C:\PROGRA~2\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (AdobeAAMDetect) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
CHR Plugin: (Garena Talk Plugin) - C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\JND\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Google Docs) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-04]
CHR Extension: (Google Drive) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-23]
CHR Extension: (YouTube) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-04]
CHR Extension: (Facebook) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2014-04-25]
CHR Extension: (Bitdefender Wallet) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-05-05]
CHR Extension: (Adblock Plus) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-06-02]
CHR Extension: (Google Search) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-04]
CHR Extension: (Fun Switcher) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddeoimiimmmfddbiggnbipkjomlalanb [2014-04-25]
CHR Extension: (Game of Thrones: Stark) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlbafmmdkmpcojanmmfaehohbhdcilag [2014-06-01]
CHR Extension: (IDM Integration Module) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn [2014-01-07]
CHR Extension: (Skype Click to Call) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-01-09]
CHR Extension: (Numerics Calculator & Converter) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe [2014-06-01]
CHR Extension: (Quick Note) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\mijlebbfndhelmdpmllgcfadlkankhok [2014-04-25]
CHR Extension: (Google Wallet) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-04]
CHR Extension: (No Name) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie [2014-06-08]
CHR Extension: (SpeakIt!) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgeolalilifpodheeocdmbhehgnkkbak [2014-04-25]
CHR Extension: (Gmail) - C:\Users\JND\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-04]
CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx [2014-05-05]
CHR HKLM-x32\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2014-06-05]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-04-11]

==================== Services (Whitelisted) =================

R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881952 2014-01-14] (IObit)
S4 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-10] (Qualcomm Atheros Commnucations)
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2013-11-21] (Bitdefender)
R2 BrcmCardReader; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640 2012-08-31] (Broadcom Corp.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2152736 2014-05-04] (IObit)
R2 MSMQ; C:\Windows\system32\mqsvc.exe [25600 2014-01-08] (Microsoft Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [257344 2011-02-16] (NTI Corporation)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390672 2012-08-08] ()
R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1526800 2014-05-22] (Bitdefender)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-01-08] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2014-01-08] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536 2012-08-01] (Atheros)

==================== Drivers (Whitelisted) ====================

S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
R3 anvsnddrv; C:\Windows\system32\drivers\anvsnddrv.sys [33872 2011-11-28] (AnvSoft Inc.)
R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [893440 2013-12-02] (BitDefender)
R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [261056 2014-05-05] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2013-12-02] (BitDefender)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows ® Win 7 DDK provider)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender)
R1 BdfNdisf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [98768 2014-05-22] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\WINDOWS\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
R1 BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [79192 2013-07-30] (BitDefender)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-03-18] (Disc Soft Ltd)
R1 ElRawDisk; C:\WINDOWS\system32\drivers\ElRawDsk.sys [30752 2014-04-07] (EldoS Corporation)
S3 GGSAFERDriver; No ImagePath
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-31] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-26] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-08-23] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MQAC; C:\Windows\System32\drivers\mqac.sys [173568 2014-01-08] (Microsoft Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-08-07] (BitDefender S.R.L.)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)
S3 BTATH_LWFLT; \SystemRoot\system32\DRIVERS\btath_lwflt.sys [X]
U3 idsvc;
S3 SmbDrvI; \SystemRoot\system32\DRIVERS\Smb_driver_Intel.sys [X]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2014-06-08 22:17 - 2014-06-08 22:18 - 00025750 _____ () C:\Users\JND\Desktop\FRST.txt
2014-06-08 22:17 - 2014-06-08 22:17 - 00000000 ____D () C:\FRST
2014-06-08 22:04 - 2014-06-08 22:04 - 02072576 _____ (Farbar) C:\Users\JND\Desktop\FRST64.exe
2014-06-08 16:40 - 2014-06-08 16:40 - 00003576 _____ () C:\WINDOWS\System32\Tasks\Bitdefender Autoscan
2014-06-06 23:57 - 2014-06-08 22:16 - 00000000 ____D () C:\Users\JND\Downloads\The Grand Budapest Hotel (2014)
2014-06-05 23:21 - 2014-06-05 23:51 - 00003491 _____ () C:\Users\JND\Documents\PT.conf
2014-06-05 23:21 - 2014-06-05 23:21 - 00000000 ____D () C:\Users\JND\Documents\saves
2014-06-05 23:21 - 2014-06-05 23:21 - 00000000 ____D () C:\Users\JND\Documents\extensions
2014-06-05 23:20 - 2014-06-05 23:48 - 00000152 _____ () C:\Users\JND\.packettracer
2014-06-05 23:20 - 2014-06-05 23:21 - 00000000 ____D () C:\Users\JND\Cisco Packet Tracer 6.0.1
2014-06-05 23:18 - 2014-06-05 23:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer
2014-06-05 23:17 - 2014-06-05 23:18 - 00000000 ____D () C:\Program Files (x86)\Cisco Packet Tracer 6.0.1
2014-06-05 23:01 - 2014-06-05 23:11 - 152545746 ____R (Cisco Systems, Inc. ) C:\Users\JND\Downloads\Cisco Packet Tracer 6.0.1 for Windows (with tutorials).exe
2014-06-05 13:40 - 2014-06-06 12:16 - 00000000 ____D () C:\Users\JND\Downloads\300 Rise of an Empire (2014)
2014-06-05 13:16 - 2014-06-05 09:06 - 00180136 _____ (Tonec Inc.) C:\WINDOWS\system32\Drivers\idmwfp.sys
2014-06-02 23:30 - 2014-06-02 23:53 - 00000000 ____D () C:\Users\JND\Downloads\Game Of Thrones S04E08 720p HDTV ReEnc DeeJayAhmed
2014-06-02 22:50 - 2014-06-06 21:45 - 00001430 _____ () C:\WINDOWS\PFRO.log
2014-06-02 20:44 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-06-02 20:44 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-06-02 20:44 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-06-02 00:12 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-06-01 13:54 - 2014-06-03 22:00 - 00000000 ____D () C:\Users\JND\Downloads\Street Fighter -  Assassin’s Fist [720p]
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\zwjvhcytwbc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\xibfo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\uivgphjr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\tzhdw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\togl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\tnlcyha
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zzmbkjttcv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zyowns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zyadeizbstq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zxykwvw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zxntsmpkns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zxlhpcxet
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zvybg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zvxxfsps
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zvxuplfqaiv.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zufsomdnqb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zprns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zph
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\znubd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zmulmsalvp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zmpm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zlvlgaoro.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zkvadtmlfi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zkgl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zhbezzk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zgtn.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zgdzvuq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zfxbo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zerryde
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zdo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zbu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zayfbnltwb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yzvlitevcp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yztg.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ywjmsytb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ywcotf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yueiza
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yrvdebxgrzt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yruogei.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yqwnxmuqkr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yqjwaqwjrgn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ypwgam
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ypn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ypb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ynbpico.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yjbyky
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yifbtom
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yhvfljhx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yft.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yfguqg.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yfddtyco.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yeubbz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yeqc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ybnso
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ybcwdcj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yajdu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yacxpunyz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xxfxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xwolbkcl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xwfjdkdtixu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xuyoohmb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xsdi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xrjnqaxgslz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xrjmwls.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xratz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xogeiasqdx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xnrwoffi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xnaaiqyn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xlaoaq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xkiazoygsu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xivldzk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xitroqxj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhxj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhliavnncf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhjvdk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhi.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhepiahgu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xei.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xdu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xdnu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xbwudob.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xbeumyws.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xabxrnwognq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wztapis.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wvpmojcpagc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wvmaql.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wuienx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wtkvqxla.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wriuwbh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wrfmrz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wqnbogohpa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wpushbesv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wpa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wooq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wnzrlwgymia
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wnwpuad
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wnwis
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmsxmgb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmcwjfwebcg.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmcbsqz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmaeoulj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wltgfaapaxg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wlagsxpfnjc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wkaig
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wjjkwjxof.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wjd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wio
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wgjy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wgfzxqxc.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wgekhz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wchut
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wbyqcoru
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vylysjgigsp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vydky
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vxamvnvecd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vwx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vwvpxtf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vuzy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vutlo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vtccpjjxhbl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vrt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vrb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vqzkhuu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vpymgh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vlzenqzgwi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vlv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vltbvctcek
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vlhw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vky.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vhuya
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vhgdwwy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vgkauki
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vexcv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vekhfmquvd.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vedcfvtun
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vcwbqe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uykjvcews
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uvhkeoo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uuknvmo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\usbsjhq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\urupvqobgah
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\urfoeuqrrvx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\upwhfcfpq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\upqsk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\umckcky
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\umblkiu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ukqsipcp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujurc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujupkolaxz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujmb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujemlvpjgb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uilhoi.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uhgxcxne.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ugh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\udixx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ubomomrwsdk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uaqqwmjt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\txkpazbbtc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tvumtdvg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tviuuwtwvs
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tubh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tttpgilubhz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\trpcwzo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\trjhziwhqax
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tqkrkktdw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tplabizkfi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tparier
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tmksiwyo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tmiduq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tmhmpisgrjb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tjerrruiu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tixbprzs.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tgysztaa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tgp.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\teatwcjgoq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tcu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\szanch.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sxngztzr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\swucw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\swrosmstc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\swmx.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\svh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\surl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\strlohjio
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sthnpbr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\srt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\srceeuuzog
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sqrvkkbktxz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sntlrnm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\slvwlpnaqo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\slfzi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\skjqlknoa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\skcx.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sjzadmi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sjfso
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sghtkpu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sfxzlgg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sfsz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sbm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sao
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rzyxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rzuc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rybqxma
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rxlxmq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rwwmb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rwumiig
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rvitifkhda.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ruwy.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rumiqlhw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rtssxvscl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rtsquze.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rrbddpfknf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rquw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rpz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rnixg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rnaxcorvnpm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rmkgnn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rlxrf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rkdkyehqiv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rjzxhrd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rilkwzwyil.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\riffaw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rifbww.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rhw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rhrrf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rfmfahwb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rfbddh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rckntimj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rbw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rbou.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rbc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qzegqoobxiy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qxbus.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qwdspx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qvt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\quqsl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qttwzyei.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qswzofzltsi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qsopsnklrnj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qrpcq.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qqqt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qqqewpfdl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qqmnchoguw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qpghwlpi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qogqdj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qnretzig.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qncintxhpbv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qmlr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qldlx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qjhrojfdm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qhyfrlwcpck
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qheefqe.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qebywplco
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qcyfwezkrw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qcw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbvhrrhf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbqeurlah
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbdvroefxtf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qayekwvmsh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pwlwjlqf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pwalonerzam
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pwa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pvsbacopgo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\puxozpwjj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ptuhkoey
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ptfcgaof.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ptcwmepfq.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\psxulyb.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\psuezqksw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pqognjycvt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pqjjgvrcrr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ppmurgqnqi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pplmagu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pjtdqi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pjjipw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\phcioojd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pgsh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pgmxllhrgl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pffkxpns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pepxq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pefaimbebk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pedcjlq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pdqrcouep
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pctk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pcpmvigyknw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pcnbisr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pclkwlz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pbzcnzjjax
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pathdekgnl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oylo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oybbndhpat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oxxpcqneqfk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oxsta
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ousspnt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ourtunrnnc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\otvbczqzr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\otorwgb.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\otngpkqlgc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oqljnan
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oqipw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\opnaypiuh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\opn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oofzxmm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oofsbkfk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oocihv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ooaomuyhvz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\onuhfaqdr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\omgkwcqmzh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olwz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olvkvxg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olhitsu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olhdsirhbjm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olcfhmx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\okbzdweogsf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ojlw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oicryjbsxhd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ohfmfxmgnvd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ogn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ogknbwh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\odpeuveeirg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\odklrkid
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\odieozehykz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ocduhsoaeky.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\obfbsckxiuv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nysjggwyrz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nybrohbe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nvolurg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nvdkhnrqwn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ntpp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nreadmitf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nqxtrw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\npx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\npuailglpt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\noyqt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nnzey
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nlzvfpgxhuw.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\netcd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ndpxrjvfik.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\narceunvfsr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mzquaye
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mxdvmytw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mwzhlh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mwuwz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mvxgdkyrjxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mvhxlyyr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mvfhxic
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\msbwl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mrprxeehpe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mpvauzxwdz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mpuqpwyjjoe.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mpr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mlfml.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mkyszmt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\minowwpnhw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mimsxzkfsba
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mhymnl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mhefcltipun.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mftkul
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mfpfkyzrxe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mflohpswrxl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mcrrrdylbyb.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mbufohzbd.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mbpbf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mbcuyqp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\maynwlp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lzjqvgauzfs
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lxjydaq.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lwohwwxa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lwcnbd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lvzw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lvjfqnrfy.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ltm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ltcbbxm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lrwldsbcq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lrotxpqhol
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lqya.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lqpksm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lptdlhqltgj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lnuzijew
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lnm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lmti
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lmkwvtfa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lljl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lklnirnii
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\litvwn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\liif.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lhlcj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lffhqjpt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lfdwrke
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lervczxc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lepkgvz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ldypa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ldna.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lbial
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kza
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kykkyyjuomq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kxfziwiehxe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ktkvvqws.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kppamcnflm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kokjkgnayl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\knkpjcuzkb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\knk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kmgbr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kkxlvn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kkrk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kjvzwobzke.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kjvgkvsar
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kjj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\khzpcmbe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kgqeevfnt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kfzlj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kfkegdfzsmf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kffzqte
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kdi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kcd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kblu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kagoeryt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kaddzumq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jxvemnjznu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jxqxva.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jvpytddxshm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jvanbm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\junn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jtdznq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jsslx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jsgzsb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jscxtijpp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jresfclof
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jmpx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jkne
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jhvyfmljeob
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jfuwpyqkkiu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jfilvhux
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jes
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jeoc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jecbuzopv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jdlshte
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jclas
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jazdltqdat.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iyao
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ixrmyzmuf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ivz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iuzsgndntd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\itshnv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ithugwck.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\isnvgwxvzx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ipldozicq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ipdnxhip
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iooy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iobspad
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\imisiwl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ilppyukvb.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ikvd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ikugogpknz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ikitzfwrlzd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ihxkhtew
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\igy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\igwyc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifwyys
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifvbafbi.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifhfyantlzc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iecx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\idzfxu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iduxw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ict.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ibqvywo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iarssnndg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hzooveshuhi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hznd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hxpuo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hxokmtz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hwsfdvw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hvbzrysf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hulemjbpzih.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\huiqk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\htzs.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\htubwk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\htmhmor
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hsxps
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hrqwp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hrfumedgw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hqwxnfwmq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hqofa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hoboh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hmzimwaq.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hiushfclfla.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\higwf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hhxjfatux.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hgu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hgdxppghmnp.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hfbtzuzg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hfaptb.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hbqnkzjqm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hbduxvmv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gzswrdxw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gxveh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gxiglgpq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gwyphivwam
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gwegf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gwcogj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gvsgjc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gtkrjpla
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gsztiwpu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gswxesatox.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gswssvrjl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gqr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gksspjwk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gjrxn.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gityrsbrb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\giemuzl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ghgeryzg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ghdvcccqxcv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ggjxmqh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gfgr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gecrm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gdsbvd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gck
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gcgii.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gbx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gazeenlg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ganwg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fzzu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fyvyvw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fxwpiwys
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fxhn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fsopbrrnag
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fsjfcnvfjr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\frznpwqgbxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fqat.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fonbotjzdzr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fnyj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fnxe.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fnwncbqssp.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fmlgoxxnn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fkuuzbgv.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fjpkjgod
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fhsongrcc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fhg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fhagevihj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fcibhhrxsu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ezafudvoiyt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\evpk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eswjlbv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\erauoi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eqartqwjeg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\epvvbcvej
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\epuzw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eng
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eiwxqfsa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ehe.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\egskehx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\egeegu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\efwxeovrva
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eesejbzog.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eebifxejokv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\edsljcdivuy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\edovnmlhmu.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ecqooiby
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ebwmf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ebeblkboibi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eafryqglx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dzna
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dxrnzku.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dqeavzgp.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dqajfj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dpfrqyaznoo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dows
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dogequdlcho
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dmuuqmc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dmtlsnues.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dkfd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\djzobvavx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dizbniz.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dgppwo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dgckkqqq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dfswulgomz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dfdenbmhi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\detwvkklv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\defhdp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dbsbm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\daltzc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\daflhn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cxoab
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cwr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ctxnogspj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ctsn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cqbt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cprceg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cntaml.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cjsvjsn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cixpn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\civwzqm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cguaohd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cfclssx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cdntf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cbqynozbpo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cbgvboorrjj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cakqt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bzyz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bzkhikmncyf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\byoqvakieh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bycuny
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bxqecmpfn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bulcyfilrrd.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bsxkwl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bsmobir.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bpajjydv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bmpedqmgmxo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\blxcchdo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bloulzqvnrd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bfsdlrscmiv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\betjex.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bacdzugy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\azuxhafgo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\azepwokxctz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ayyyufnvi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\axxvniyw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\auqopa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\auemdu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aso.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\arsimaqa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\arembuqqlhl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aqluxxpvzxz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\apluecjxljh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aotnjwxb.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\alswcpnkwg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\alpzadzk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\akophcvl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\akjgqsepny.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ajnzyssdz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ajfm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aihwg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ahlkupje
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\agd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\afocvlmwd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aesvs.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\adpgegoatcl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aclcvmx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\abqj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aaydghedumh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\rnni.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\refyhravcw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\qgqkumwr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\pxluctu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\pnaphwmzlgp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\oaap
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\nhs
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\lzuovdq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\lyi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\lqrbl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\kragnbr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\jnpltjziixr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\iurduaasebj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\hihw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\grgqrvb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\fas.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\err.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\ejxebk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\eewo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\ecisfvuhpa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\dwbwxg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\dehidfjtpt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\cpznhdhikek
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\baxqskha.dat
2014-05-31 18:05 - 2014-05-31 18:09 - 00000000 ____D () C:\Program Files\Ranked Gaming Client
2014-05-29 20:33 - 2014-05-30 10:35 - 00000000 ____D () C:\Users\JND\Downloads\The Lego Movie (2014)
2014-05-28 20:46 - 2014-05-28 20:49 - 00000000 ____D () C:\Users\JND\Downloads\Extreme Movie Manager v8.2.8.0 PreCracked-F4CG- [MUMBAI-TPB]
2014-05-27 22:48 - 2014-05-27 22:48 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe
2014-05-27 21:45 - 2014-05-27 21:45 - 00000280 _____ () C:\WINDOWS\system32\PDBootState
2014-05-27 16:59 - 2014-05-27 16:59 - 00002037 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerfectDisk.lnk
2014-05-27 16:59 - 2014-05-27 16:59 - 00000000 ____D () C:\ProgramData\Raxco
2014-05-27 16:59 - 2014-05-27 16:59 - 00000000 ____D () C:\Program Files\Raxco
2014-05-27 16:59 - 2014-05-27 16:59 - 00000000 ____D () C:\Program Files\Common Files\Raxco
2014-05-27 16:59 - 2013-07-12 11:18 - 00141008 _____ (Raxco Software, Inc.) C:\WINDOWS\system32\Drivers\DefragFS.sys
2014-05-27 16:57 - 2014-05-27 16:57 - 00000000 ____D () C:\Program Files (x86)\Raxco
2014-05-27 16:29 - 2014-05-27 16:32 - 00000000 ____D () C:\Users\JND\Downloads\Raxco PerfectDisk Pro 13.0.783 Business Edition [ChingLiu]
2014-05-26 06:02 - 2014-05-27 00:12 - 00000000 ____D () C:\Users\JND\Downloads\Non Stop (2014)
2014-05-25 21:32 - 2014-05-26 05:56 - 00000000 ____D () C:\Users\JND\Downloads\That Awkward Moment (2014)
2014-05-25 12:02 - 2014-05-25 12:02 - 00000000 ____D () C:\Program Files\Synaptics
2014-05-25 12:01 - 2010-10-08 18:32 - 01395248 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2014-05-25 12:01 - 2010-10-08 18:29 - 00400168 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00273704 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCtrl.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00221480 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00218408 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCtrl.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00173352 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCOM.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00165160 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynGlwPadShlExt.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00148264 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo4.dll
2014-05-25 12:01 - 2010-10-08 18:29 - 00107816 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynTPCOM.dll
2014-05-25 12:01 - 2009-08-07 09:49 - 01721576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll
2014-05-25 11:52 - 2014-05-25 21:45 - 00000000 ____D () C:\Users\JND\Downloads\Her (2013)
2014-05-25 10:40 - 2012-11-06 11:19 - 00177976 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo14.dll
2014-05-25 00:24 - 2014-05-25 00:30 - 34910202 _____ () C:\Users\JND\Downloads\Any Video Converter Ultimate 5.6.2 Multi-Language + SeRiAl KeYs -==Eagle_ShaDow==-.rar
2014-05-23 06:50 - 2014-05-23 06:50 - 00000000 ____D () C:\Users\JND\AppData\Local\jnduncensored
2014-05-21 23:54 - 2014-05-22 21:38 - 00000000 ____D () C:\Users\JND\Downloads\Son of God (2014)
2014-05-19 20:23 - 2014-05-20 13:43 - 00000000 ____D () C:\Users\JND\Downloads\Tarzan (2013)
2014-05-19 19:05 - 2014-05-19 19:14 - 00000000 ____D () C:\Users\JND\Downloads\Game Of Thrones S04E07 720p HDTV ReEnc DeeJayAhmed
2014-05-18 23:45 - 2014-05-18 23:45 - 00000000 ____D () C:\Users\JND\Downloads\Stardock WindowBlinds v.8.05+Crack~~
2014-05-18 17:55 - 2014-05-18 17:55 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-05-18 17:36 - 2014-05-18 17:36 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-05-18 06:13 - 2014-05-19 15:50 - 00000000 ____D () C:\Users\JND\Downloads\Cavemen 2013 720p BluRay x264 AAC - Ozlem
2014-05-18 02:45 - 2014-05-18 02:45 - 00000000 ____D () C:\WINDOWS\CUR_DIR
2014-05-17 22:35 - 2014-05-17 22:35 - 00000000 ____D () C:\Users\JND\AppData\Local\Skype
2014-05-17 21:59 - 2014-05-27 23:16 - 00000000 ____D () C:\Users\JND\Tracing
2014-05-17 21:54 - 2014-05-17 21:54 - 00000000 ____D () C:\WINDOWS\en
2014-05-17 21:51 - 2014-05-17 21:51 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2014-05-17 21:51 - 2014-05-17 21:51 - 00000000 ____D () C:\WINDOWS\ar
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\es
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\el
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\de
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\da
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\cs
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\bg
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\it
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\hu
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\hr
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\he
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\fr
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\fi
2014-05-17 21:48 - 2014-05-17 21:48 - 00000000 ____D () C:\WINDOWS\ro
2014-05-17 21:48 - 2014-05-17 21:48 - 00000000 ____D () C:\WINDOWS\pl
2014-05-17 21:48 - 2014-05-17 21:48 - 00000000 ____D () C:\WINDOWS\nl
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\tr
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\th
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\sv
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\sl
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\sk
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\ru
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\ca
2014-05-17 21:46 - 2014-05-17 21:46 - 00001400 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2014-05-17 21:46 - 2014-05-17 21:46 - 00001327 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2014-05-17 21:26 - 2014-05-17 21:26 - 00001478 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2014-05-17 21:07 - 2014-05-17 21:07 - 00002506 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2014-05-17 21:06 - 2014-05-17 21:06 - 00000000 ____D () C:\Program Files\Windows Live
2014-05-17 21:01 - 2014-05-17 21:01 - 00003088 _____ () C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2847039876-2763531162-3592927662-1000
2014-05-17 21:01 - 2014-05-17 21:01 - 00000000 ___RD () C:\Users\JND\OneDrive
2014-05-17 21:01 - 2014-05-17 21:01 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-05-17 20:54 - 2014-05-17 21:58 - 00000000 ____D () C:\Users\JND\AppData\Local\Windows Live
2014-05-17 03:36 - 2014-05-18 15:23 - 00000000 ____D () C:\Users\JND\Downloads\Endless Love (2014)
2014-05-17 02:42 - 2014-05-18 00:01 - 00000000 ____D () C:\Users\JND\Downloads\Game.Of.Thrones.S03.Season.3.1080p.5.1Ch.BluRay.ReEnc-DeeJayAhmed
2014-05-16 20:45 - 2014-05-17 21:50 - 00000000 ____D () C:\Users\JND\Downloads\21 Jump Street (2012)
2014-05-16 16:45 - 2014-05-16 16:45 - 00507630 _____ () C:\Users\JND\Documents\darklounge_vlc_1.0.vlt
2014-05-16 15:51 - 2014-05-16 15:52 - 00000000 ____D () C:\Users\JND\Downloads\Internet Download Manager 6.19 Build 9 Retail  [ChingLiu]
2014-05-15 20:56 - 2014-05-15 22:05 - 00000000 ____D () C:\Users\JND\Downloads\Game.Of.Thrones.S02.Season.2.1080p.5.1Ch.BluRay.ReEnc-DeeJayAhmed
2014-05-15 20:31 - 2014-05-15 20:31 - 00000000 ____D () C:\Program Files\Adblock Plus for IE
2014-05-15 17:11 - 2014-04-18 22:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-05-15 17:11 - 2014-04-18 22:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-05-15 17:11 - 2014-04-18 21:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-05-15 17:11 - 2014-04-18 17:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2014-05-15 17:11 - 2014-04-18 17:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-05-15 17:11 - 2014-04-18 16:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-05-15 17:11 - 2014-04-18 16:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-05-15 17:11 - 2014-04-18 16:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-05-15 17:11 - 2014-04-18 16:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-05-15 17:11 - 2014-04-18 15:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-05-15 17:11 - 2014-04-18 15:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-05-15 17:11 - 2014-04-14 17:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2014-05-15 17:11 - 2014-04-14 16:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-05-15 17:11 - 2014-04-11 14:13 - 01200128 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-05-15 17:11 - 2014-04-11 12:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-05-15 17:11 - 2014-04-11 12:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-05-15 17:11 - 2014-04-11 11:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-05-15 17:11 - 2014-04-09 19:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-05-15 17:11 - 2014-04-09 14:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2014-05-15 17:11 - 2014-04-09 13:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2014-05-15 17:11 - 2014-04-09 12:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-05-15 17:11 - 2014-04-09 11:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2014-05-15 17:11 - 2014-04-08 10:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2014-05-15 17:11 - 2014-04-07 00:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2014-05-15 17:11 - 2014-04-07 00:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2014-05-15 17:11 - 2014-04-07 00:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-05-15 17:11 - 2014-04-07 00:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-05-15 17:11 - 2014-04-07 00:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2014-05-15 17:11 - 2014-04-07 00:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2014-05-15 17:11 - 2014-04-07 00:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-05-15 17:11 - 2014-04-07 00:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-05-15 17:11 - 2014-04-07 00:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2014-05-15 17:11 - 2014-04-06 23:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-05-15 17:11 - 2014-04-06 23:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-05-15 17:11 - 2014-04-06 23:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-05-15 17:11 - 2014-04-06 23:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-05-15 17:11 - 2014-04-06 22:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-05-15 17:11 - 2014-04-06 20:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2014-05-15 17:11 - 2014-04-06 20:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2014-05-15 17:11 - 2014-04-06 20:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-05-15 17:11 - 2014-04-06 20:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2014-05-15 17:11 - 2014-04-06 20:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2014-05-15 17:11 - 2014-04-06 19:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-05-15 17:11 - 2014-04-06 19:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-05-15 17:11 - 2014-04-06 19:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2014-05-15 17:11 - 2014-04-06 19:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-05-15 17:11 - 2014-04-06 19:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-05-15 17:11 - 2014-04-06 18:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-05-15 17:11 - 2014-04-06 18:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-05-15 17:11 - 2014-04-06 18:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-05-15 17:11 - 2014-04-06 18:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-05-15 17:11 - 2014-04-06 18:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-05-15 17:11 - 2014-04-06 17:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-05-15 17:11 - 2014-04-03 16:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-05-15 17:11 - 2014-04-03 16:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2014-05-15 17:11 - 2014-04-03 16:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2014-05-15 17:11 - 2014-04-03 12:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2014-05-15 17:11 - 2014-04-03 12:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2014-05-15 17:11 - 2014-04-03 11:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-05-15 17:11 - 2014-04-03 10:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-05-15 17:11 - 2014-04-03 10:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-05-15 17:11 - 2014-04-03 10:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-05-15 17:11 - 2014-04-03 10:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-05-15 17:11 - 2014-04-03 10:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-05-15 17:11 - 2014-04-03 10:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
2014-05-15 17:11 - 2014-04-03 10:22 - 03359744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-05-15 17:11 - 2014-04-03 10:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2014-05-15 17:11 - 2014-04-01 14:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-05-15 17:11 - 2014-03-31 13:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-05-15 17:11 - 2014-03-31 13:35 - 02518360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-05-15 17:11 - 2014-03-31 13:35 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-05-15 17:11 - 2014-03-31 08:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-05-15 17:11 - 2014-03-31 08:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-05-15 17:11 - 2014-03-31 07:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-05-15 17:11 - 2014-03-31 06:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-05-15 17:11 - 2014-03-31 06:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-05-15 17:11 - 2014-03-31 06:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-05-15 17:11 - 2014-03-31 06:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-05-15 17:11 - 2014-03-31 05:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-05-15 17:11 - 2014-03-28 23:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2014-05-15 17:11 - 2014-03-27 14:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-05-15 17:11 - 2014-03-27 13:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2014-05-15 17:11 - 2014-03-27 12:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-05-15 17:11 - 2014-03-27 12:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2014-05-15 17:11 - 2014-03-27 12:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-05-15 17:11 - 2014-03-27 11:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-05-15 17:11 - 2014-03-27 11:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-05-15 17:11 - 2014-03-27 11:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2014-05-15 17:11 - 2014-03-25 06:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-05-15 17:11 - 2014-03-22 17:09 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2014-05-15 17:11 - 2014-03-22 16:50 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2014-05-15 17:11 - 2014-03-21 12:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll
2014-05-15 17:11 - 2014-03-20 11:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-05-15 17:11 - 2014-03-20 08:51 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2014-05-15 17:11 - 2014-03-20 08:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-05-15 17:11 - 2014-03-20 07:38 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2014-05-15 17:11 - 2014-03-20 07:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-05-15 17:11 - 2014-03-19 16:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-05-15 17:11 - 2014-03-19 16:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-05-15 17:11 - 2014-03-19 15:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-05-15 17:11 - 2014-03-19 15:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-05-15 17:11 - 2014-03-19 14:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-05-15 17:11 - 2014-03-19 13:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-05-15 17:11 - 2014-03-19 13:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-05-15 17:11 - 2014-03-19 13:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-05-15 17:11 - 2014-03-19 13:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-05-15 17:11 - 2014-03-19 13:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-05-15 17:11 - 2014-03-19 13:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-05-15 17:11 - 2014-03-19 12:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-05-15 17:11 - 2014-03-19 12:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-05-15 17:11 - 2014-03-19 12:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-05-15 17:11 - 2014-03-18 16:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-05-15 17:11 - 2014-03-18 13:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-05-15 17:11 - 2014-03-18 12:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-05-15 17:11 - 2014-03-17 13:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-05-15 17:11 - 2014-03-17 12:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-05-15 17:11 - 2014-03-17 11:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-05-15 17:11 - 2014-03-17 10:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-05-15 17:11 - 2014-03-17 10:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-05-15 17:11 - 2014-03-14 14:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-05-15 17:11 - 2014-03-14 14:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-05-15 17:11 - 2014-03-06 20:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-05-15 16:28 - 2014-05-02 04:30 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-05-15 16:28 - 2014-05-02 04:30 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-15 15:57 - 2014-05-15 15:57 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-05-15 03:39 - 2014-03-24 10:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-05-15 03:38 - 2014-03-24 10:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-05-15 03:38 - 2014-03-24 10:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-05-15 03:37 - 2014-04-09 06:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll
2014-05-15 03:37 - 2014-04-09 06:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll
2014-05-15 03:37 - 2014-04-09 02:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll
2014-05-15 03:37 - 2014-04-09 02:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll
2014-05-15 03:37 - 2014-03-13 15:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2014-05-15 03:37 - 2014-03-13 14:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2014-05-15 03:31 - 2014-04-11 18:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-05-15 03:31 - 2014-04-11 18:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-05-15 03:31 - 2014-04-11 16:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2014-05-15 03:31 - 2014-04-11 14:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-05-15 03:31 - 2014-04-11 13:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-05-15 03:31 - 2014-04-11 13:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-05-15 03:31 - 2014-04-11 11:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2014-05-15 03:31 - 2014-04-11 11:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-05-15 03:31 - 2014-04-11 11:05 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-15 03:31 - 2014-04-11 11:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-05-15 03:31 - 2014-04-11 11:02 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-15 03:31 - 2014-04-11 11:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-05-15 03:31 - 2014-04-11 11:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-05-15 03:31 - 2014-04-11 11:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-05-15 03:31 - 2014-04-11 10:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-05-15 03:31 - 2014-04-11 10:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2014-05-15 03:31 - 2014-04-11 10:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-05-15 03:31 - 2014-04-11 10:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-05-15 03:31 - 2014-04-11 10:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-05-15 03:31 - 2014-04-11 10:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-05-15 03:31 - 2014-04-11 10:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-05-15 03:31 - 2014-04-11 10:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-05-15 03:31 - 2014-04-11 10:34 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-05-15 03:31 - 2014-04-11 10:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-05-15 03:31 - 2014-04-11 10:25 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-05-15 03:28 - 2014-05-06 12:40 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-05-15 03:28 - 2014-05-06 11:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-05-15 03:28 - 2014-05-06 11:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-05-15 03:28 - 2014-05-06 10:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-05-15 02:21 - 2014-05-15 02:21 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-13 21:43 - 2014-05-13 21:43 - 00000000 _____ () C:\asc_rdflag
2014-05-12 20:41 - 2014-05-13 15:55 - 00003970 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{44C9FE4A-86B6-43F6-B64C-4AB48C4CB3B7}
2014-05-12 20:32 - 2014-05-13 15:52 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2847039876-2763531162-3592927662-1005
2014-05-12 15:37 - 2014-05-12 16:11 - 00000000 ____D () C:\Users\JND\Downloads\Game Of Thrones S04E06 720p HDTV ReEnc DeeJayAhmed
2014-05-12 12:52 - 2014-05-12 13:29 - 00000000 ____D () C:\Users\JND\Downloads\Game.Of.Thrones.S01.Season.1.1080p.5.1Ch.BluRay.ReEnc-DeeJayAhmed
2014-05-12 12:44 - 2014-05-12 13:06 - 00000000 _____ () C:\Users\JND\AppData\Local\{A6E5A060-1E52-4DDB-896A-DD13B8119C3D}
2014-05-10 18:36 - 2014-05-10 18:36 - 00000054 _____ () C:\Users\JND\Documents\KMS.txt
2014-05-10 16:29 - 2014-05-10 16:30 - 00000000 ____D () C:\Users\JND\Downloads\Stardock Start8 1.41 Final Pre-Activated-PainteR
2014-05-10 15:52 - 2014-05-10 15:52 - 00000877 _____ () C:\Users\JND\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-05-09 13:28 - 2014-06-01 01:02 - 00000288 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job
2014-05-09 13:28 - 2014-05-09 13:28 - 00002384 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Administrator
2014-05-09 13:27 - 2014-06-02 22:44 - 00000252 _____ () C:\WINDOWS\Tasks\ASC7_SkipUac_JND.job
2014-05-09 13:27 - 2014-05-09 13:27 - 00002348 _____ () C:\WINDOWS\System32\Tasks\ASC7_SkipUac_JND
2014-05-09 13:14 - 2014-05-09 13:17 - 00000000 ____D () C:\Users\JND\Downloads\Advanced SystemCare Pro 7.3.0.454 [ChingLiu]
2014-05-09 12:58 - 2014-05-09 13:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Assistant

==================== One Month Modified Files and Folders =======

2014-06-08 22:18 - 2014-06-08 22:17 - 00025750 _____ () C:\Users\JND\Desktop\FRST.txt
2014-06-08 22:18 - 2014-01-07 10:15 - 00000000 ____D () C:\Users\JND\AppData\Local\Temp
2014-06-08 22:17 - 2014-06-08 22:17 - 00000000 ____D () C:\FRST
2014-06-08 22:16 - 2014-06-06 23:57 - 00000000 ____D () C:\Users\JND\Downloads\The Grand Budapest Hotel (2014)
2014-06-08 22:04 - 2014-06-08 22:04 - 02072576 _____ (Farbar) C:\Users\JND\Desktop\FRST64.exe
2014-06-08 22:02 - 2014-02-12 11:37 - 00004940 _____ () C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for JND-PC-JND JND-PC
2014-06-08 22:00 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-06-08 21:58 - 2014-01-07 10:35 - 01191822 _____ () C:\WINDOWS\WindowsUpdate.log
2014-06-08 21:50 - 2014-01-05 11:00 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2847039876-2763531162-3592927662-1000
2014-06-08 21:44 - 2014-04-25 14:20 - 00000902 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-08 21:41 - 2014-02-03 18:36 - 00000934 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2847039876-2763531162-3592927662-1000UA.job
2014-06-08 21:40 - 2014-01-07 10:47 - 00000000 __RDO () C:\Users\JND\SkyDrive
2014-06-08 21:33 - 2013-08-22 22:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-06-08 16:41 - 2013-08-22 21:25 - 01572864 ___SH () C:\WINDOWS\system32\config\BBI
2014-06-08 16:40 - 2014-06-08 16:40 - 00003576 _____ () C:\WINDOWS\System32\Tasks\Bitdefender Autoscan
2014-06-08 16:31 - 2014-04-25 14:20 - 00000906 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-08 16:26 - 2014-02-11 22:42 - 00000000 ____D () C:\Warcraft III
2014-06-08 13:35 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-06-08 05:55 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-06-08 04:45 - 2014-01-04 03:37 - 00000000 ____D () C:\Users\JND\AppData\Local\Adobe
2014-06-07 02:04 - 2014-01-03 21:27 - 00000000 ____D () C:\Users\JND\AppData\Roaming\uTorrent
2014-06-06 22:35 - 2014-04-30 00:50 - 00000000 ____D () C:\Users\JND\AppData\Roaming\vlc
2014-06-06 21:56 - 2014-01-07 20:40 - 00003910 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{857205E3-784A-4B0C-904B-D1D3F903FC71}
2014-06-06 21:47 - 2014-01-07 20:59 - 00000000 ____D () C:\ProgramData\ProductData
2014-06-06 21:47 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-06-06 21:45 - 2014-06-02 22:50 - 00001430 _____ () C:\WINDOWS\PFRO.log
2014-06-06 21:45 - 2014-01-07 21:22 - 00000000 ____D () C:\Program Files (x86)\Internet Download Manager
2014-06-06 12:16 - 2014-06-05 13:40 - 00000000 ____D () C:\Users\JND\Downloads\300 Rise of an Empire (2014)
2014-06-06 12:15 - 2014-01-07 21:22 - 00000000 ___RD () C:\Users\JND\Downloads\Compressed
2014-06-06 12:13 - 2014-01-07 21:22 - 00000000 ____D () C:\Users\JND\AppData\Roaming\IDM
2014-06-06 12:13 - 2014-01-07 21:22 - 00000000 ____D () C:\Users\JND\AppData\Roaming\DMCache
2014-06-05 23:51 - 2014-06-05 23:21 - 00003491 _____ () C:\Users\JND\Documents\PT.conf
2014-06-05 23:48 - 2014-06-05 23:20 - 00000152 _____ () C:\Users\JND\.packettracer
2014-06-05 23:21 - 2014-06-05 23:21 - 00000000 ____D () C:\Users\JND\Documents\saves
2014-06-05 23:21 - 2014-06-05 23:21 - 00000000 ____D () C:\Users\JND\Documents\extensions
2014-06-05 23:21 - 2014-06-05 23:20 - 00000000 ____D () C:\Users\JND\Cisco Packet Tracer 6.0.1
2014-06-05 23:20 - 2014-01-07 10:15 - 00000000 ____D () C:\Users\JND
2014-06-05 23:18 - 2014-06-05 23:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer
2014-06-05 23:18 - 2014-06-05 23:17 - 00000000 ____D () C:\Program Files (x86)\Cisco Packet Tracer 6.0.1
2014-06-05 23:11 - 2014-06-05 23:01 - 152545746 ____R (Cisco Systems, Inc. ) C:\Users\JND\Downloads\Cisco Packet Tracer 6.0.1 for Windows (with tutorials).exe
2014-06-05 13:23 - 2014-01-05 10:50 - 00000000 ____D () C:\Users\JND\AppData\Local\Packages
2014-06-05 09:06 - 2014-06-05 13:16 - 00180136 _____ (Tonec Inc.) C:\WINDOWS\system32\Drivers\idmwfp.sys
2014-06-04 00:37 - 2014-01-21 21:40 - 00076288 ___SH () C:\Users\JND\Documents\Thumbs.db
2014-06-03 23:23 - 2014-01-07 10:12 - 00994128 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-06-03 22:00 - 2014-06-01 13:54 - 00000000 ____D () C:\Users\JND\Downloads\Street Fighter -  Assassin’s Fist [720p]
2014-06-02 23:53 - 2014-06-02 23:30 - 00000000 ____D () C:\Users\JND\Downloads\Game Of Thrones S04E08 720p HDTV ReEnc DeeJayAhmed
2014-06-02 22:44 - 2014-05-09 13:27 - 00000252 _____ () C:\WINDOWS\Tasks\ASC7_SkipUac_JND.job
2014-06-02 21:24 - 2014-01-08 12:21 - 00000000 ____D () C:\Users\JND\Documents\Virus Scanner
2014-06-02 20:48 - 2014-04-28 22:13 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-06-02 20:45 - 2014-04-28 22:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-02 20:45 - 2014-04-28 22:12 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-02 13:42 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-06-02 00:13 - 2014-01-08 12:05 - 00000000 ____D () C:\AdwCleaner
2014-06-01 14:34 - 2014-01-07 21:18 - 00000000 ___RD () C:\Users\JND\Documents\..GAMES
2014-06-01 01:02 - 2014-05-09 13:28 - 00000288 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job
2014-06-01 00:46 - 2014-01-07 21:22 - 00000000 ___RD () C:\Users\JND\Downloads\Video
2014-05-31 18:40 - 2014-02-03 18:35 - 00000912 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2847039876-2763531162-3592927662-1000Core.job
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\zwjvhcytwbc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\xibfo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\uivgphjr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\tzhdw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\togl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\tnlcyha
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zzmbkjttcv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zyowns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zyadeizbstq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zxykwvw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zxntsmpkns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zxlhpcxet
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zvybg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zvxxfsps
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zvxuplfqaiv.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zufsomdnqb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zprns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zph
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\znubd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zmulmsalvp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zmpm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zlvlgaoro.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zkvadtmlfi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zkgl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zhbezzk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zgtn.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zgdzvuq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zfxbo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zerryde
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zdo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zbu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\zayfbnltwb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yzvlitevcp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yztg.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ywjmsytb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ywcotf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yueiza
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yrvdebxgrzt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yruogei.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yqwnxmuqkr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yqjwaqwjrgn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ypwgam
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ypn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ypb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ynbpico.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yjbyky
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yifbtom
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yhvfljhx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yft.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yfguqg.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yfddtyco.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yeubbz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yeqc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ybnso
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ybcwdcj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yajdu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\yacxpunyz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xxfxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xwolbkcl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xwfjdkdtixu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xuyoohmb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xsdi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xrjnqaxgslz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xrjmwls.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xratz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xogeiasqdx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xnrwoffi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xnaaiqyn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xlaoaq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xkiazoygsu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xivldzk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xitroqxj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhxj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhliavnncf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhjvdk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhi.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xhepiahgu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xei.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xdu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xdnu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xbwudob.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xbeumyws.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\xabxrnwognq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wztapis.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wvpmojcpagc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wvmaql.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wuienx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wtkvqxla.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wriuwbh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wrfmrz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wqnbogohpa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wpushbesv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wpa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wooq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wnzrlwgymia
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wnwpuad
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wnwis
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmsxmgb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmcwjfwebcg.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmcbsqz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wmaeoulj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wltgfaapaxg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wlagsxpfnjc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wkaig
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wjjkwjxof.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wjd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wio
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wgjy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wgfzxqxc.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wgekhz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wchut
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\wbyqcoru
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vylysjgigsp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vydky
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vxamvnvecd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vwx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vwvpxtf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vuzy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vutlo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vtccpjjxhbl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vrt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vrb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vqzkhuu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vpymgh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vlzenqzgwi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vlv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vltbvctcek
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vlhw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vky.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vhuya
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vhgdwwy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vgkauki
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vexcv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vekhfmquvd.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vedcfvtun
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\vcwbqe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uykjvcews
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uvhkeoo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uuknvmo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\usbsjhq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\urupvqobgah
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\urfoeuqrrvx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\upwhfcfpq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\upqsk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\umckcky
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\umblkiu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ukqsipcp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujurc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujupkolaxz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujmb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ujemlvpjgb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uilhoi.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uhgxcxne.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ugh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\udixx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ubomomrwsdk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\uaqqwmjt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\txkpazbbtc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tvumtdvg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tviuuwtwvs
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tubh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tttpgilubhz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\trpcwzo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\trjhziwhqax
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tqkrkktdw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tplabizkfi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tparier
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tmksiwyo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tmiduq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tmhmpisgrjb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tjerrruiu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tixbprzs.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tgysztaa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tgp.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\teatwcjgoq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\tcu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\szanch.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sxngztzr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\swucw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\swrosmstc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\swmx.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\svh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\surl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\strlohjio
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sthnpbr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\srt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\srceeuuzog
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sqrvkkbktxz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sntlrnm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\slvwlpnaqo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\slfzi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\skjqlknoa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\skcx.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sjzadmi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sjfso
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sghtkpu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sfxzlgg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sfsz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sbm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\sao
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rzyxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rzuc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rybqxma
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rxlxmq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rwwmb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rwumiig
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rvitifkhda.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ruwy.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rumiqlhw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rtssxvscl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rtsquze.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rrbddpfknf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rquw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rpz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rnixg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rnaxcorvnpm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rmkgnn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rlxrf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rkdkyehqiv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rjzxhrd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rilkwzwyil.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\riffaw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rifbww.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rhw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rhrrf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rfmfahwb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rfbddh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rckntimj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rbw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rbou.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\rbc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qzegqoobxiy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qxbus.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qwdspx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qvt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\quqsl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qttwzyei.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qswzofzltsi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qsopsnklrnj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qrpcq.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qqqt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qqqewpfdl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qqmnchoguw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qpghwlpi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qogqdj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qnretzig.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qncintxhpbv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qmlr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qldlx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qjhrojfdm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qhyfrlwcpck
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qheefqe.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qebywplco
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qcyfwezkrw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qcw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbvhrrhf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbqeurlah
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qbdvroefxtf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\qayekwvmsh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pwlwjlqf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pwalonerzam
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pwa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pvsbacopgo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\puxozpwjj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ptuhkoey
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ptfcgaof.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ptcwmepfq.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\psxulyb.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\psuezqksw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pqognjycvt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pqjjgvrcrr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ppmurgqnqi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pplmagu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pjtdqi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pjjipw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\phcioojd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pgsh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pgmxllhrgl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pffkxpns
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pepxq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pefaimbebk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pedcjlq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pdqrcouep
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pctk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pcpmvigyknw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pcnbisr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pclkwlz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pbzcnzjjax
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\pathdekgnl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oylo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oybbndhpat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oxxpcqneqfk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oxsta
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ousspnt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ourtunrnnc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\otvbczqzr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\otorwgb.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\otngpkqlgc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oqljnan
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oqipw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\opnaypiuh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\opn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oofzxmm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oofsbkfk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oocihv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ooaomuyhvz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\onuhfaqdr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\omgkwcqmzh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olwz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olvkvxg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olhitsu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olhdsirhbjm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\olcfhmx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\okbzdweogsf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ojlw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\oicryjbsxhd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ohfmfxmgnvd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ogn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ogknbwh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\odpeuveeirg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\odklrkid
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\odieozehykz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ocduhsoaeky.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\obfbsckxiuv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nysjggwyrz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nybrohbe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nvolurg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nvdkhnrqwn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ntpp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nreadmitf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nqxtrw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\npx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\npuailglpt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\noyqt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nnzey
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\nlzvfpgxhuw.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\netcd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ndpxrjvfik.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\narceunvfsr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mzquaye
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mxdvmytw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mwzhlh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mwuwz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mvxgdkyrjxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mvhxlyyr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mvfhxic
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\msbwl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mrprxeehpe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mpvauzxwdz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mpuqpwyjjoe.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mpr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mlfml.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mkyszmt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\minowwpnhw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mimsxzkfsba
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mhymnl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mhefcltipun.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mftkul
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mfpfkyzrxe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mflohpswrxl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mcrrrdylbyb.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mbufohzbd.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mbpbf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\mbcuyqp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\maynwlp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lzjqvgauzfs
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lxjydaq.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lwohwwxa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lwcnbd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lvzw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lvjfqnrfy.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ltm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ltcbbxm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lrwldsbcq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lrotxpqhol
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lqya.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lqpksm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lptdlhqltgj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lnuzijew
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lnm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lmti
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lmkwvtfa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lljl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lklnirnii
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\litvwn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\liif.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lhlcj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lffhqjpt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lfdwrke
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lervczxc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lepkgvz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ldypa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ldna.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\lbial
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kza
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kykkyyjuomq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kxfziwiehxe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ktkvvqws.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kppamcnflm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kokjkgnayl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\knkpjcuzkb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\knk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kmgbr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kkxlvn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kkrk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kjvzwobzke.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kjvgkvsar
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kjj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\khzpcmbe
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kgqeevfnt.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kfzlj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kfkegdfzsmf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kffzqte
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kdi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kcd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kblu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kagoeryt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\kaddzumq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jxvemnjznu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jxqxva.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jvpytddxshm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jvanbm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\junn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jtdznq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jsslx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jsgzsb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jscxtijpp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jresfclof
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jmpx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jkne
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jhvyfmljeob
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jfuwpyqkkiu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jfilvhux
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jes
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jeoc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jecbuzopv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jdlshte
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jclas
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\jazdltqdat.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iyao
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ixrmyzmuf.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ivz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iuzsgndntd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\itshnv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ithugwck.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\isnvgwxvzx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ipldozicq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ipdnxhip
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iooy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iobspad
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\imisiwl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ilppyukvb.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ikvd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ikugogpknz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ikitzfwrlzd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ihxkhtew
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\igy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\igwyc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifwyys
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifvbafbi.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifhfyantlzc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ifh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iecx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\idzfxu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iduxw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ict.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ibqvywo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\iarssnndg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hzooveshuhi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hznd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hxpuo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hxokmtz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hwsfdvw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hvbzrysf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hulemjbpzih.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\huiqk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\htzs.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\htubwk.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\htmhmor
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hsxps
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hrqwp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hrfumedgw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hqwxnfwmq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hqofa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hoboh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hmzimwaq.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hiushfclfla.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\higwf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hhxjfatux.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hgu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hgdxppghmnp.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hfbtzuzg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hfaptb.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hbqnkzjqm.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\hbduxvmv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gzswrdxw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gxveh.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gxiglgpq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gwyphivwam
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gwegf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gwcogj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gvsgjc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gtkrjpla
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gsztiwpu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gswxesatox.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gswssvrjl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gqr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gksspjwk.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gjrxn.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gityrsbrb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\giemuzl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ghgeryzg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ghdvcccqxcv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ggjxmqh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gfgr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gecrm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gdsbvd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gck
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gcgii.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gbx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\gazeenlg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ganwg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fzzu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fyvyvw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fxwpiwys
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fxhn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fsopbrrnag
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fsjfcnvfjr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\frznpwqgbxt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fqat.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fonbotjzdzr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fnyj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fnxe.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fnwncbqssp.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fmlgoxxnn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fkuuzbgv.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fjpkjgod
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fhsongrcc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fhg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fhagevihj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\fcibhhrxsu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ezafudvoiyt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\evpk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eswjlbv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\erauoi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eqartqwjeg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\epvvbcvej
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\epuzw.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eng
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eiwxqfsa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ehe.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\egskehx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\egeegu
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\efwxeovrva
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eesejbzog.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eebifxejokv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\edsljcdivuy.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\edovnmlhmu.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ecqooiby
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ebwmf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ebeblkboibi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\eafryqglx
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dzna
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dxrnzku.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dqeavzgp.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dqajfj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dpfrqyaznoo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dows
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dogequdlcho
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dmuuqmc.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dmtlsnues.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dkfd.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\djzobvavx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dizbniz.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dgppwo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dgckkqqq.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dfswulgomz.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dfdenbmhi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\detwvkklv.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\defhdp.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\dbsbm
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\daltzc
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\daflhn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cxoab
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cwr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ctxnogspj.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ctsn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cqbt.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cprceg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cntaml.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cjsvjsn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cixpn
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\civwzqm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cguaohd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cfclssx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cdntf.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cbqynozbpo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cbgvboorrjj.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\cakqt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bzyz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bzkhikmncyf
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\byoqvakieh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bycuny
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bxqecmpfn.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bulcyfilrrd.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bsxkwl.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bsmobir.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bpajjydv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bmpedqmgmxo
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\blxcchdo.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bloulzqvnrd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bfsdlrscmiv
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\betjex.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\bacdzugy
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\azuxhafgo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\azepwokxctz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ayyyufnvi.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\axxvniyw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\auqopa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\auemdu.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aso.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\arsimaqa
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\arembuqqlhl.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aqluxxpvzxz
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\apluecjxljh.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aotnjwxb.xml
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\alswcpnkwg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\alpzadzk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\akophcvl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\akjgqsepny.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ajnzyssdz.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ajfm.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aihwg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\ahlkupje
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\agd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\afocvlmwd
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aesvs.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\adpgegoatcl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aclcvmx.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\abqj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\SysWOW64\aaydghedumh
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\rnni.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\refyhravcw.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\qgqkumwr.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\pxluctu.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\pnaphwmzlgp
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\oaap
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\nhs
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\lzuovdq
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\lyi
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\lqrbl
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\kragnbr.dat
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\jnpltjziixr
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\iurduaasebj
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\hihw
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\grgqrvb
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\fas.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\err.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\ejxebk
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\eewo.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\ecisfvuhpa.ini
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\dwbwxg
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\dehidfjtpt
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\cpznhdhikek
2014-05-31 18:10 - 2014-05-31 18:10 - 00000032 _____ () C:\WINDOWS\baxqskha.dat
2014-05-31 18:09 - 2014-05-31 18:05 - 00000000 ____D () C:\Program Files\Ranked Gaming Client
2014-05-30 10:35 - 2014-05-29 20:33 - 00000000 ____D () C:\Users\JND\Downloads\The Lego Movie (2014)
2014-05-29 08:24 - 2014-01-08 18:36 - 00970752 ___SH () C:\Users\JND\Downloads\Thumbs.db
2014-05-28 20:49 - 2014-05-28 20:46 - 00000000 ____D () C:\Users\JND\Downloads\Extreme Movie Manager v8.2.8.0 PreCracked-F4CG- [MUMBAI-TPB]
2014-05-27 23:16 - 2014-05-17 21:59 - 00000000 ____D () C:\Users\JND\Tracing
2014-05-27 22:48 - 2014-05-27 22:48 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe
2014-05-27 21:45 - 2014-05-27 21:45 - 00000280 _____ () C:\WINDOWS\system32\PDBootState
2014-05-27 16:59 - 2014-05-27 16:59 - 00002037 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerfectDisk.lnk
2014-05-27 16:59 - 2014-05-27 16:59 - 00000000 ____D () C:\ProgramData\Raxco
2014-05-27 16:59 - 2014-05-27 16:59 - 00000000 ____D () C:\Program Files\Raxco
2014-05-27 16:59 - 2014-05-27 16:59 - 00000000 ____D () C:\Program Files\Common Files\Raxco
2014-05-27 16:57 - 2014-05-27 16:57 - 00000000 ____D () C:\Program Files (x86)\Raxco
2014-05-27 16:37 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\Help
2014-05-27 16:32 - 2014-05-27 16:29 - 00000000 ____D () C:\Users\JND\Downloads\Raxco PerfectDisk Pro 13.0.783 Business Edition [ChingLiu]
2014-05-27 15:17 - 2012-07-26 15:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-05-27 00:35 - 2014-04-27 19:02 - 00000000 ____D () C:\The KMPlayer
2014-05-27 00:12 - 2014-05-26 06:02 - 00000000 ____D () C:\Users\JND\Downloads\Non Stop (2014)
2014-05-26 16:42 - 2014-04-16 00:02 - 00004215 _____ () C:\config.xml
2014-05-26 05:56 - 2014-05-25 21:32 - 00000000 ____D () C:\Users\JND\Downloads\That Awkward Moment (2014)
2014-05-25 21:45 - 2014-05-25 11:52 - 00000000 ____D () C:\Users\JND\Downloads\Her (2013)
2014-05-25 12:02 - 2014-05-25 12:02 - 00000000 ____D () C:\Program Files\Synaptics
2014-05-25 10:51 - 2014-01-03 23:23 - 00000000 ____D () C:\Users\JND\AppData\Local\CrashDumps
2014-05-25 10:43 - 2014-04-04 19:18 - 00002464 _____ () C:\WINDOWS\system32\RW_{ED1136DE-74F6-11E3-8C5F-806E6F6E6963}.dat
2014-05-25 10:43 - 2014-04-04 19:18 - 00002464 _____ () C:\WINDOWS\system32\RW_{ED1136DD-74F6-11E3-8C5F-806E6F6E6963}.dat
2014-05-25 10:43 - 2014-04-04 19:18 - 00002408 _____ () C:\WINDOWS\system32\RW_{ED1136DF-74F6-11E3-8C5F-806E6F6E6963}.dat
2014-05-25 10:43 - 2014-04-04 19:18 - 00000024 _____ () C:\WINDOWS\system32\RW_AppData.dat
2014-05-25 00:30 - 2014-05-25 00:24 - 34910202 _____ () C:\Users\JND\Downloads\Any Video Converter Ultimate 5.6.2 Multi-Language + SeRiAl KeYs -==Eagle_ShaDow==-.rar
2014-05-23 06:50 - 2014-05-23 06:50 - 00000000 ____D () C:\Users\JND\AppData\Local\jnduncensored
2014-05-22 21:38 - 2014-05-21 23:54 - 00000000 ____D () C:\Users\JND\Downloads\Son of God (2014)
2014-05-20 13:43 - 2014-05-19 20:23 - 00000000 ____D () C:\Users\JND\Downloads\Tarzan (2013)
2014-05-19 19:14 - 2014-05-19 19:05 - 00000000 ____D () C:\Users\JND\Downloads\Game Of Thrones S04E07 720p HDTV ReEnc DeeJayAhmed
2014-05-19 15:50 - 2014-05-18 06:13 - 00000000 ____D () C:\Users\JND\Downloads\Cavemen 2013 720p BluRay x264 AAC - Ozlem
2014-05-19 09:33 - 2014-01-07 22:47 - 00000000 ____D () C:\Users\JND\AppData\Local\PackageStaging
2014-05-18 23:45 - 2014-05-18 23:45 - 00000000 ____D () C:\Users\JND\Downloads\Stardock WindowBlinds v.8.05+Crack~~
2014-05-18 18:46 - 2014-04-04 19:18 - 00048736 _____ () C:\WINDOWS\system32\RW_FileType.dat
2014-05-18 18:46 - 2014-04-04 19:18 - 00000708 _____ () C:\WINDOWS\system32\RW_FileFlag.dat
2014-05-18 17:59 - 2014-01-05 12:35 - 00015852 _____ () C:\WINDOWS\system32\results.xml
2014-05-18 17:55 - 2014-05-18 17:55 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-05-18 17:55 - 2011-04-26 11:13 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-05-18 17:36 - 2014-05-18 17:36 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-05-18 15:23 - 2014-05-17 03:36 - 00000000 ____D () C:\Users\JND\Downloads\Endless Love (2014)
2014-05-18 02:45 - 2014-05-18 02:45 - 00000000 ____D () C:\WINDOWS\CUR_DIR
2014-05-18 00:01 - 2014-05-17 02:42 - 00000000 ____D () C:\Users\JND\Downloads\Game.Of.Thrones.S03.Season.3.1080p.5.1Ch.BluRay.ReEnc-DeeJayAhmed
2014-05-17 22:36 - 2014-01-09 14:35 - 00000000 ____D () C:\Users\JND\AppData\Roaming\Skype
2014-05-17 22:35 - 2014-05-17 22:35 - 00000000 ____D () C:\Users\JND\AppData\Local\Skype
2014-05-17 22:34 - 2014-01-09 14:35 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-05-17 22:34 - 2011-04-26 11:26 - 00000000 ____D () C:\ProgramData\Skype
2014-05-17 22:34 - 2011-04-26 11:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-05-17 21:58 - 2014-05-17 20:54 - 00000000 ____D () C:\Users\JND\AppData\Local\Windows Live
2014-05-17 21:54 - 2014-05-17 21:54 - 00000000 ____D () C:\WINDOWS\en
2014-05-17 21:51 - 2014-05-17 21:51 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2014-05-17 21:51 - 2014-05-17 21:51 - 00000000 ____D () C:\WINDOWS\ar
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\es
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\el
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\de
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\da
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\cs
2014-05-17 21:50 - 2014-05-17 21:50 - 00000000 ____D () C:\WINDOWS\bg
2014-05-17 21:50 - 2014-05-16 20:45 - 00000000 ____D () C:\Users\JND\Downloads\21 Jump Street (2012)
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\it
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\hu
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\hr
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\he
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\fr
2014-05-17 21:49 - 2014-05-17 21:49 - 00000000 ____D () C:\WINDOWS\fi
2014-05-17 21:48 - 2014-05-17 21:48 - 00000000 ____D () C:\WINDOWS\ro
2014-05-17 21:48 - 2014-05-17 21:48 - 00000000 ____D () C:\WINDOWS\pl
2014-05-17 21:48 - 2014-05-17 21:48 - 00000000 ____D () C:\WINDOWS\nl
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\tr
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\th
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\sv
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\sl
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\sk
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\ru
2014-05-17 21:47 - 2014-05-17 21:47 - 00000000 ____D () C:\WINDOWS\ca
2014-05-17 21:46 - 2014-05-17 21:46 - 00001400 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2014-05-17 21:46 - 2014-05-17 21:46 - 00001327 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2014-05-17 21:26 - 2014-05-17 21:26 - 00001478 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2014-05-17 21:07 - 2014-05-17 21:07 - 00002506 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2014-05-17 21:06 - 2014-05-17 21:06 - 00000000 ____D () C:\Program Files\Windows Live
2014-05-17 21:06 - 2011-04-26 12:22 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-05-17 21:01 - 2014-05-17 21:01 - 00003088 _____ () C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2847039876-2763531162-3592927662-1000
2014-05-17 21:01 - 2014-05-17 21:01 - 00000000 ___RD () C:\Users\JND\OneDrive
2014-05-17 21:01 - 2014-05-17 21:01 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-05-17 01:00 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\Cursors
2014-05-16 16:45 - 2014-05-16 16:45 - 00507630 _____ () C:\Users\JND\Documents\darklounge_vlc_1.0.vlt
2014-05-16 15:52 - 2014-05-16 15:51 - 00000000 ____D () C:\Users\JND\Downloads\Internet Download Manager 6.19 Build 9 Retail  [ChingLiu]
2014-05-15 22:05 - 2014-05-15 20:56 - 00000000 ____D () C:\Users\JND\Downloads\Game.Of.Thrones.S02.Season.2.1080p.5.1Ch.BluRay.ReEnc-DeeJayAhmed
2014-05-15 20:31 - 2014-05-15 20:31 - 00000000 ____D () C:\Program Files\Adblock Plus for IE
2014-05-15 17:19 - 2013-08-22 22:44 - 05168080 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-05-15 17:15 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-05-15 17:15 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-05-15 17:15 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-05-15 17:03 - 2014-01-15 12:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-05-15 17:03 - 2014-01-15 12:04 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-15 16:24 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-15 16:24 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-15 16:24 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2014-05-15 16:24 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-05-15 16:24 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-05-15 16:23 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-05-15 15:57 - 2014-05-15 15:57 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-05-15 15:35 - 2014-01-03 22:07 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-05-15 15:30 - 2014-01-03 22:07 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-05-15 15:14 - 2009-07-14 10:34 - 00000478 _____ () C:\WINDOWS\win.ini
2014-05-15 02:21 - 2014-05-15 02:21 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-13 21:43 - 2014-05-13 21:43 - 00000000 _____ () C:\asc_rdflag
2014-05-13 21:43 - 2014-01-08 13:02 - 109395968 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag.bak
2014-05-13 21:43 - 2014-01-08 13:02 - 02322432 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag.bak
2014-05-13 21:43 - 2014-01-08 13:02 - 00069632 _____ () C:\WINDOWS\system32\config\SAM.iodefrag.bak
2014-05-13 21:43 - 2014-01-08 13:02 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag.bak
2014-05-13 21:39 - 2014-02-07 21:01 - 00000000 ____D () C:\WINDOWS\Minidump
2014-05-13 15:55 - 2014-05-12 20:41 - 00003970 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{44C9FE4A-86B6-43F6-B64C-4AB48C4CB3B7}
2014-05-13 15:52 - 2014-05-12 20:32 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2847039876-2763531162-3592927662-1005
2014-05-12 20:18 - 2009-07-14 13:09 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2014-05-12 16:11 - 2014-05-12 15:37 - 00000000 ____D () C:\Users\JND\Downloads\Game Of Thrones S04E06 720p HDTV ReEnc DeeJayAhmed
2014-05-12 13:29 - 2014-05-12 12:52 - 00000000 ____D () C:\Users\JND\Downloads\Game.Of.Thrones.S01.Season.1.1080p.5.1Ch.BluRay.ReEnc-DeeJayAhmed
2014-05-12 13:06 - 2014-05-12 12:44 - 00000000 _____ () C:\Users\JND\AppData\Local\{A6E5A060-1E52-4DDB-896A-DD13B8119C3D}
2014-05-12 07:26 - 2014-06-02 20:44 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-05-12 07:26 - 2014-06-02 20:44 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-05-12 07:25 - 2014-06-02 20:44 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-05-10 18:36 - 2014-05-10 18:36 - 00000054 _____ () C:\Users\JND\Documents\KMS.txt
2014-05-10 16:30 - 2014-05-10 16:29 - 00000000 ____D () C:\Users\JND\Downloads\Stardock Start8 1.41 Final Pre-Activated-PainteR
2014-05-10 15:52 - 2014-05-10 15:52 - 00000877 _____ () C:\Users\JND\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-05-09 13:39 - 2014-01-03 21:07 - 00000000 ___RD () C:\Users\JND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-09 13:37 - 2014-01-07 20:58 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-05-09 13:37 - 2014-01-07 20:56 - 00000000 ____D () C:\Users\JND\AppData\Roaming\IObit
2014-05-09 13:30 - 2014-05-09 12:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Assistant
2014-05-09 13:30 - 2014-01-07 20:58 - 00000000 ____D () C:\ProgramData\IObit
2014-05-09 13:28 - 2014-05-09 13:28 - 00002384 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Administrator
2014-05-09 13:27 - 2014-05-09 13:27 - 00002348 _____ () C:\WINDOWS\System32\Tasks\ASC7_SkipUac_JND
2014-05-09 13:27 - 2014-01-07 20:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 7
2014-05-09 13:17 - 2014-05-09 13:14 - 00000000 ____D () C:\Users\JND\Downloads\Advanced SystemCare Pro 7.3.0.454 [ChingLiu]

Some content of TEMP:
====================
C:\Users\JND\AppData\Local\Temp\KMP_3.9.0.124.exe

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

LastRegBack: 2014-06-04 13:53

==================== End Of Log ============================



#5 jnd002

jnd002
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:12:43 PM

Posted 08 June 2014 - 11:00 AM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2014
Ran by JND at 2014-06-08 22:19:38
Running from C:\Users\JND\Desktop
Boot Mode: Normal
==========================================================

==================== Security Center ========================

AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antispyware (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46}

==================== Installed Programs ======================

µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.31139 - BitTorrent Inc.)
1912 Titanic Mystery (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117897550}) (Version:  - Oberon Media)
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.85 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1820 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1820 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3004 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3002 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{C97623E2-0614-4845-B199-8E8BEC8E131C}_is1) (Version: 6.1.0.40497 - Oberon Media, Inc.)
Acer System Information (HKLM-x32\...\{72199E33-4F2A-4B7F-8E25-95DDDD50A678}) (Version: 1.0.0 - Acer)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{C23EE7CE-C1A3-4F94-A8F0-9E0AC9C6DE6E}) (Version: 1.1 - Eyeo GmbH)
Adblock Plus for IE (HKLM-x32\...\{fd97d1e2-368a-4cd9-af63-8eeff938044a}) (Version: 1.1 - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 1.5.0.7220 - Adobe Systems Inc.) Hidden
Adobe Reader XI (11.0.07) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Advanced SystemCare 7 (HKLM-x32\...\Advanced SystemCare 7_is1) (Version: 7.3.0 - IObit)
Any Video Converter Ultimate 5.6.2 (HKLM-x32\...\Any Video Converter Ultimate_is1) (Version:  - Any-Video-Converter.com)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Backup Manager V3 (x32 Version: 3.0.0.85 - NTI Corporation) Hidden
Bejeweled 2 Deluxe (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110265407}) (Version:  - Oberon Media)
Belles Beauty Boutique (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112623650}) (Version:  - Oberon Media)
Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 17.27.0.1146 - Bitdefender)
Broadcom Card Reader Driver Installer (HKLM\...\{F0A7DF2F-0BE0-470F-B137-D7A19F977189}) (Version: 15.4.8.1 - Broadcom Corporation)
Broadcom Gigabit NetLink Controller (HKLM\...\{029A4933-3F36-4E4F-AEC3-2207AB26463D}) (Version: 14.4.6.1 - Broadcom Corporation)
Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version:  - Cheat Engine)
Chicken Invaders 3 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112531267}) (Version:  - Oberon Media)
Cisco Packet Tracer 6.0.1 (HKLM-x32\...\Cisco Packet Tracer 6.0.1_is1) (Version:  - Cisco Systems, Inc.)
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3008 - Acer Incorporated)
CPUID CPU-Z 1.68 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.2420.0 - CyberLink Corp.)
CyberLink PowerDirector 12 (Version: 12.0.2420.0 - CyberLink Corp.) Hidden
CyberLink WaveEditor 2 (HKLM-x32\...\InstallShield_{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.0.4203 - CyberLink Corp.)
CyberLink WaveEditor 2 (x32 Version: 2.0.4203 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.5.0.0388 - Disc Soft Ltd)
Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5A06C25A-366E-46CC-880E-3F904B634E9E}) (Version:  - Microsoft)
Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{5A06C25A-366E-46CC-880E-3F904B634E9E}) (Version:  - Microsoft)
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.13 - Dolby Laboratories Inc)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - Valve)
Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version:  - Oberon Media)
eBay Worldwide (HKLM-x32\...\{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}) (Version: 2.1.0901 - OEM)
Effects Suite 64-bit (HKLM-x32\...\InstallShield_{F8BE1C39-4702-492A-9C7F-349E3A4FD324}) (Version: 11.1.0 - Red Giant)
Effects Suite 64-bit (Version: 11.1.0 - Red Giant) Hidden
EximiousSoft Logo Designer V3.60 (HKLM-x32\...\EximiousSoft Logo Designer_is1) (Version:  - EximiousSoft)
Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
Farm Frenzy 3 Ice Age (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-118399487}) (Version:  - Oberon Media)
Flip Words (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110109903}) (Version:  - Oberon Media)
Folder Colorizer version 1.3.2 (HKLM\...\{A133E9CD-2879-4F30-87D4-1604AFD5C5CC}_is1) (Version: 1.3.2 - Softorino)
FormatFactory 3.3.3.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.3.0 - Format Factory)
Fotogaléria (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalleri (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalleriet (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galapago (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}) (Version:  - Oberon Media)
Galeria de Fotografias (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galeria de Fotos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galeria fotogràfica (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galerie foto (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galerija fotografija (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Game Assistant (HKLM-x32\...\GameAssistant_is1) (Version: Beta 2.0 - VTools)
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
GlassFish Server Open Source Edition 4.0 (HKLM\...\nbi-glassfish-mod-4.0.0.89.0) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden
HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro)
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.212 - SurfRight B.V.)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3006 - Acer Incorporated)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version:  - Tonec Inc.)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 3.2.10.2466 - IObit)
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Knoll Light Factory Photo 64 bit (HKLM-x32\...\InstallShield_{69F849EF-4918-4333-81C1-8D8FC07E62B1}) (Version: 3.2 - Red Giant Software)
Knoll Light Factory Photo 64 bit (Version: 3.2 - Red Giant Software) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 5.2.1 - Acer Inc.)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3004 - Acer Incorporated)
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft Access MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.0.4041.0512 - Microsoft Corporation)
Microsoft OneNote MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visio MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Visio Professional 2013 (HKLM\...\Office15.VISPRO) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visio Professional 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Word MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Mini Ninjas (HKLM-x32\...\Mini Ninjas_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, ProZorg_tm)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MyWinLocker (Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.11 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
NetBeans IDE 7.4 (HKLM\...\nbi-nb-base-7.4.0.0.201310111528) (Version: 7.4 - NetBeans.org)
NewBlue Video Essentials for PowerDirector (HKLM\...\NewBlue Video Essentials for Cyberlink) (Version: 3.0 - NewBlue)
NewBlue Video Essentials II for PowerDirector (HKLM\...\NewBlue Video Essentials II for Cyberlink) (Version: 3.0 - NewBlue)
NewBlue Video Essentials III for PowerDirector (HKLM\...\NewBlue Video Essentials III for Cyberlink) (Version: 3.0 - NewBlue)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.4 - Notepad++ Team)
Orca (HKLM-x32\...\{85F4CBCB-9BBC-4B50-A7D8-E1106771498D}) (Version: 3.1.3790.0000 - Microsoft Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC)
PerfectDisk Professional Business (HKLM\...\{682B22AB-EAAA-4B1C-83AF-B26E7D4ED01E}) (Version: 13.0.783 - Raxco Software Inc.)
Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Poczta usługi Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
PowerDirector (Version: 12.0 - CyberLink Corp.) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.206 - Qualcomm Atheros Communications)
Qualcomm Atheros WiFi Driver Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.05 - Qualcomm Atheros)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Raccolta foto (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6690 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.30.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.30.0 - Renesas Electronics Corporation) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{F0C12872-B60D-4E37-A2F9-20C46A5E1F1A}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
Shredder (Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.2.15747.10003 - Microsoft Corporation)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
Sprill and Ritchie (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117932650}) (Version:  - Oberon Media)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.0 - IObit)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.18.0 - Synaptics Incorporated)
System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC)
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.9.0.124 - PandoraTV)
The Wolf Among Us (HKLM-x32\...\VGhlV29sZkFtb25nVXM=_is1) (Version: 1 - )
Trapcode Suite 64-bit (HKLM-x32\...\InstallShield_{9528F9CB-29E3-4E33-8BAA-181B336E24F8}) (Version: 12.1.1 - Red Giant)
Trapcode Suite 64-bit (Version: 12.1.1 - Red Giant) Hidden
Update for Microsoft Excel 2013 (KB2880475) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{4BC9BBF4-A2FB-4DBA-ABEA-5526E62E3B4D}) (Version:  - Microsoft)
Update for Microsoft Excel 2013 (KB2880475) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{4BC9BBF4-A2FB-4DBA-ABEA-5526E62E3B4D}) (Version:  - Microsoft)
Update for Microsoft Excel 2013 (KB2880475) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUS_{4BC9BBF4-A2FB-4DBA-ABEA-5526E62E3B4D}) (Version:  - Microsoft)
Update for Microsoft Excel 2013 (KB2880475) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{4BC9BBF4-A2FB-4DBA-ABEA-5526E62E3B4D}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2817678) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{F8580E12-045B-471B-AF74-98C977347F4E}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2880980) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E5ADC5AD-C469-4A96-A3F7-0D4644CF54FC}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2880980) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E5ADC5AD-C469-4A96-A3F7-0D4644CF54FC}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2880980) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPRO_{E5ADC5AD-C469-4A96-A3F7-0D4644CF54FC}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2880980) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{E5ADC5AD-C469-4A96-A3F7-0D4644CF54FC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760544) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{62857CDD-2985-4939-91BA-19ED0B0031A5}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817302) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E79EFFDB-192A-4D9E-A2DB-C0F774E6EC32}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817302) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{E79EFFDB-192A-4D9E-A2DB-C0F774E6EC32}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2826040) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C4AEA56A-0759-4D08-9FAB-31A92137D0B8}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2826040) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{C4AEA56A-0759-4D08-9FAB-31A92137D0B8}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2837644) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D692E9FF-84BF-4F44-A0EA-D58ECE0D538E}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863825) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{327EABFD-EDD3-44E7-AB47-7592DF33B719}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863825) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{327EABFD-EDD3-44E7-AB47-7592DF33B719}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863843) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{290D80DE-03AB-47EC-9402-108AF4CE4F66}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863843) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{290D80DE-03AB-47EC-9402-108AF4CE4F66}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863844) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{50F31E04-D56A-4159-BF36-CF3CE27DB30C}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863844) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{50F31E04-D56A-4159-BF36-CF3CE27DB30C}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.VISPRO_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPRO_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880464) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{88B29AA5-71EE-4692-91E2-E89407F0B783}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880464) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{88B29AA5-71EE-4692-91E2-E89407F0B783}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880476) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D3FC5B59-0F86-4B9A-94DF-FC213DF4FA63}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880476) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{D3FC5B59-0F86-4B9A-94DF-FC213DF4FA63}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880476) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D3FC5B59-0F86-4B9A-94DF-FC213DF4FA63}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880476) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPRO_{D3FC5B59-0F86-4B9A-94DF-FC213DF4FA63}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880478) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8116ED50-F1E7-49E1-9D8D-421497D34B0F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880478) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{8116ED50-F1E7-49E1-9D8D-421497D34B0F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880482) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FB1E57CA-A425-48F5-B882-CFC0793823AE}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880482) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{FB1E57CA-A425-48F5-B882-CFC0793823AE}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880482) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUS_{FB1E57CA-A425-48F5-B882-CFC0793823AE}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2880480) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{663B7CD7-32AE-4AB5-8E20-12C0FA6963D4}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2880480) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUS_{663B7CD7-32AE-4AB5-8E20-12C0FA6963D4}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2880480) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{663B7CD7-32AE-4AB5-8E20-12C0FA6963D4}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2880480) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPRO_{663B7CD7-32AE-4AB5-8E20-12C0FA6963D4}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2880480) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{663B7CD7-32AE-4AB5-8E20-12C0FA6963D4}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2880480) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.VISPRO_{663B7CD7-32AE-4AB5-8E20-12C0FA6963D4}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2817628) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{9367C385-2EF9-4BE3-8351-7D2AB0798A57}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2817628) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{9367C385-2EF9-4BE3-8351-7D2AB0798A57}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2817628) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{9367C385-2EF9-4BE3-8351-7D2AB0798A57}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2817628) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPRO_{9367C385-2EF9-4BE3-8351-7D2AB0798A57}) (Version:  - Microsoft)
Update for Microsoft Outlook 2013 (KB2880470) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{34A169EC-990A-4DAE-AC65-9F981158B7DB}) (Version:  - Microsoft)
Update for Microsoft Outlook 2013 (KB2880470) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUS_{34A169EC-990A-4DAE-AC65-9F981158B7DB}) (Version:  - Microsoft)
Update for Microsoft Outlook 2013 (KB2880470) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{34A169EC-990A-4DAE-AC65-9F981158B7DB}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2878315) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{95F0CF54-BC3E-4C6F-B11D-89D6D8C6452E}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2878315) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUS_{95F0CF54-BC3E-4C6F-B11D-89D6D8C6452E}) (Version:  - Microsoft)
Update for Microsoft Publisher 2013 (KB2726952) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{03B2C707-503D-4979-8322-CA92C45AD6B4}) (Version:  - Microsoft)
Update for Microsoft Publisher 2013 (KB2726952) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUS_{03B2C707-503D-4979-8322-CA92C45AD6B4}) (Version:  - Microsoft)
Update for Microsoft Visio 2013 (KB2837632) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{97183E08-6B06-40F1-80A9-585C4AEF98F1}) (Version:  - Microsoft)
Update for Microsoft Visio 2013 (KB2837632) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{97183E08-6B06-40F1-80A9-585C4AEF98F1}) (Version:  - Microsoft)
Update for Microsoft Visio 2013 (KB2837632) 64-Bit Edition (HKLM\...\{90150000-0054-0409-1000-0000000FF1CE}_Office15.VISPRO_{97183E08-6B06-40F1-80A9-585C4AEF98F1}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{90150000-0051-0000-1000-0000000FF1CE}_Office15.VISPRO_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.VISPRO_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2878319) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{BC51FE30-3A56-4802-8D9E-E9BC05B56B49}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2880455) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{302A5BF1-9DB4-4204-988C-53073C15EF67}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2880455) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUS_{302A5BF1-9DB4-4204-988C-53073C15EF67}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2880455) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{302A5BF1-9DB4-4204-988C-53073C15EF67}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2880455) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{302A5BF1-9DB4-4204-988C-53073C15EF67}) (Version:  - Microsoft)
Valokuvavalikoima (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3102 - Acer Incorporated)
Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Fotogalleri (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3528.0331 - společnost Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3528.0331 - společnost Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3528.0331 - Корпорация Майкрософт) Hidden
Windows Live MIME IFilter (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Temel Parçalar (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live 程式集 (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Liven peruspaketti (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Liven sähköposti (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
World of Goo (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-116672750}) (Version:  - Oberon Media)
WriteItNow 407f (HKLM-x32\...\3403-1564-8739-1028) (Version:  - Ravenshead Services Ltd)
YTD Video Downloader 4.7.3 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.7.3 - GreenTree Applications SRL)
Συλλογή φωτογραφιών (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 16.4.3528.0331 - Корпорация Майкрософт) Hidden
Фотоальбом (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Фотогалерия (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Фотографии (общедоступная версия) (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
גלריית התמונות (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
معرض الصور (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden

==================== Restore Points  =========================

31-05-2014 16:57:40 Adblock Plus for IE

==================== Hosts content: ==========================

2013-08-22 21:25 - 2013-08-22 21:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {05692206-C7D3-402D-9C92-DA96ECF05870} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-05-15] (Microsoft Corporation)
Task: {05A2CA9F-D4DC-49F7-8171-7234C3B9441A} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {32C337C9-67E8-4B39-88BB-330CC830CCD5} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {3DE03B1D-4E19-42FA-B2BC-F20BF955D599} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-25] (Google Inc.)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4B0D22E8-2FDD-4953-8293-9B2D63EE66F0} - \RegClean Pro_UPDATES No Task File <==== ATTENTION
Task: {4B0F9A00-64EC-43C6-A787-1A354288D2AF} - System32\Tasks\ASC7_SkipUac_JND => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2014-05-04] (IObit)
Task: {50C58F3F-F726-43F2-A462-1AE4FF3BBAAE} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2847039876-2763531162-3592927662-1000 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe
Task: {5221C9D4-4CC6-4EE4-95F4-E9122C038B12} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {665CFF8C-EA32-4A4F-88D9-5714AF19E96A} - \AmiUpdXp No Task File <==== ATTENTION
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {78A44B61-1BB5-4543-8903-A7F2830C7AFC} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {91460D32-B107-44E6-96A2-41CA2A3C9E07} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink)
Task: {9EB77883-AE8E-4C06-B4AE-90C86344AB14} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A1FF974B-E97C-413D-B7F5-CA29B5FB9D68} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {A78B4A07-D56C-4C99-B4C0-990883FB0C0B} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-jnduncensored@live.com.ph => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21] (Adobe Systems Incorporated)
Task: {ADCE9BA1-E294-4208-A986-F9D1F8075909} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2847039876-2763531162-3592927662-1000Core => C:\Users\JND\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-02-03] (Facebook Inc.)
Task: {B1CC0A40-430F-4C12-B41C-645F1F9F979A} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-08-29] ()
Task: {C17C2605-0C42-46C9-B7D8-43588BA12199} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C1FAAAFC-69B5-42BA-A7AA-4F6A6C5D9D2A} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {C51717B0-135B-4B8E-8D17-4B2A4B0F4EB1} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-02-23] (CyberLink Corp.)
Task: {CC96381D-5007-4DAD-9E2F-7FEA3EB92097} - \RegClean Pro_DEFAULT No Task File <==== ATTENTION
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D438F1CB-51E8-49E6-95B6-E760F1F629EE} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DCACD5A9-F9BD-4E20-9F9D-25A27A3902AF} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2847039876-2763531162-3592927662-1000UA => C:\Users\JND\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-02-03] (Facebook Inc.)
Task: {E6BE6595-CD6D-4C0B-AE5B-FABECBA6EA35} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EDF6E4B5-4B65-46F4-A3EE-A7C3B58C87D6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-25] (Google Inc.)
Task: {F49D151A-8EF2-454E-B3B3-DA86EB84948F} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-21] ()
Task: {F8448D89-9C86-467E-B071-17ADA0C0B513} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-05-06] (IObit)
Task: {FCB687A7-CFCF-47A3-96D9-8A949B2033EA} - System32\Tasks\Bitdefender Autoscan => C:\Program Files\Bitdefender\Bitdefender\mtasklaunch.exe [2013-06-19] (Bitdefender)
Task: {FD57DEB7-777D-4D2E-9932-75E39F5997DC} - System32\Tasks\Microsoft Office 15 Sync Maintenance for JND-PC-JND JND-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2014-04-08] (Microsoft Corporation)
Task: C:\WINDOWS\Tasks\ASC7_SkipUac_JND.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2847039876-2763531162-3592927662-1000Core.job => C:\Users\JND\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2847039876-2763531162-3592927662-1000UA.job => C:\Users\JND\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Loaded Modules (whitelisted) =============

2014-05-05 16:22 - 2013-06-19 12:45 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll
2014-05-05 16:22 - 2014-04-22 15:00 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\accessl.ui
2014-05-05 16:22 - 2011-11-14 20:17 - 00153680 _____ () C:\Program Files\Bitdefender\Bitdefender\bdfwcore.dll
2014-05-05 16:22 - 2014-04-22 15:00 - 00004608 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\IMSecurityAL.ui
2014-06-03 21:50 - 2014-06-03 21:50 - 00775936 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttpbr.mdl
2014-06-03 21:49 - 2014-06-03 21:49 - 00568400 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttpdsp.mdl
2014-06-03 21:50 - 2014-06-03 21:50 - 02598560 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttpph.mdl
2014-06-03 21:50 - 2014-06-03 21:50 - 01321872 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttprbl.mdl
2014-03-16 00:16 - 2012-08-08 21:36 - 00390672 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
2014-05-05 16:22 - 2013-03-25 16:16 - 01117920 _____ () C:\Program Files\Bitdefender\Bitdefender SafeBox\System.Data.SQLite.dll
2014-04-08 14:18 - 2014-04-08 14:18 - 08889512 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-05-22 23:34 - 2014-05-22 23:34 - 00190408 _____ () C:\Program Files\Bitdefender\Bitdefender\pwdmandb.dll
2013-11-07 01:52 - 2013-11-07 01:52 - 00094208 _____ () C:\WINDOWS\SYSTEM32\IccLibDll_x64.dll
2014-05-24 22:34 - 2014-05-24 22:40 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\ErrorReporting.dll
2014-05-09 13:27 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll
2011-02-16 02:37 - 2011-02-16 02:37 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2011-02-16 02:37 - 2011-02-16 02:37 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2011-02-16 02:36 - 2011-02-16 02:36 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2011-05-20 11:13 - 2011-05-20 11:13 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll
2014-03-18 23:41 - 2014-03-18 23:28 - 00003132 ____R () C:\Program Files (x86)\DAEMON Tools Pro\MSIMG32.dll
2014-05-05 16:22 - 2014-03-15 01:05 - 00204280 _____ () C:\Program Files\Bitdefender\Bitdefender\antispam32\txmlutil.dll
2014-05-23 08:01 - 2014-05-14 07:40 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libglesv2.dll
2014-05-23 08:01 - 2014-05-14 07:40 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libegl.dll
2014-05-23 08:01 - 2014-05-14 07:40 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll
2014-05-23 08:01 - 2014-05-14 07:40 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll
2014-05-23 08:01 - 2014-05-14 07:40 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\Users\JND\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\JND\Desktop\FRST64.exe:BDU

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\04790222.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\31517848.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\39734983.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\54305962.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\57877588.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\69211775.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\04790222.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\31517848.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\39734983.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\54305962.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\57877588.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\69211775.sys => ""="Driver"

==================== EXE Association (whitelisted) =============

==================== Disabled items from MSCONFIG ==============

MSCONFIG\startupreg: Adobe ARM => c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => c:\program files (x86)\common files\adobe\oobe\pdapp\uwa\updaterstartuputility.exe
MSCONFIG\startupreg: ApnTBMon =>
MSCONFIG\startupreg: APSDaemon => c:\program files (x86)\common files\apple\apple application support\apsdaemon.exe
MSCONFIG\startupreg: ArcadeMovieService => c:\program files (x86)\acer\clear.fi\movie\clear.fimovieservice.exe
MSCONFIG\startupreg: BackupManagerTray => "c:\program files (x86)\nti\acer backup manager\backupmanagertray.exe" -h -k
MSCONFIG\startupreg: Bitdefender Wallet => "c:\program files\bitdefender\bitdefender\pwdmanui.exe" --hidden --nowizard
MSCONFIG\startupreg: Bitdefender Wallet Agent => c:\program files\bitdefender\bitdefender\pmbxag.exe
MSCONFIG\startupreg: DAEMON Tools Pro Agent =>
MSCONFIG\startupreg: DAEMON Tools Ultra Agent =>
MSCONFIG\startupreg: Dolby Advanced Audio v2 => "c:\dolby pcee4\pcee4.exe" -autostart
MSCONFIG\startupreg: EgisTecPMMUpdate => c:\program files (x86)\egistec ips\pmmupdate.exe
MSCONFIG\startupreg: EgisUpdate => "c:\program files (x86)\egistec ips\egisupdate.exe" -d
MSCONFIG\startupreg: Facebook Update =>
MSCONFIG\startupreg: HotKeysCmds => c:\windows\system32\hkcmd.exe
MSCONFIG\startupreg: IDM_PluginUpdate =>
MSCONFIG\startupreg: IgfxTray => c:\windows\system32\igfxtray.exe
MSCONFIG\startupreg: LManager => c:\program files (x86)\launch manager\lmanager.exe
MSCONFIG\startupreg: Norton Online Backup =>
MSCONFIG\startupreg: Persistence => c:\windows\system32\igfxpers.exe
MSCONFIG\startupreg: QuickTime Task => "c:\program files (x86)\quicktime\qttask.exe" -atboottime
MSCONFIG\startupreg: SuiteTray => c:\program files (x86)\egistec mywinlockersuite\x86\suitetray.exe
MSCONFIG\startupreg: uTorrent => "c:\users\jnd\appdata\roaming\utorrent\utorrent.exe"  /minimized

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
==================
Error: (06/08/2014 10:00:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: JND-PC)
Description: App Facebook.Facebook_1.3.0.9_x64__8xx8rvfyw5nnt+App did not launch within its allotted time.

Error: (06/08/2014 09:55:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: JND-PC)
Description: Package DefaultBrowser_NOPUBLISHERID+Chrome was terminated because it took too long to suspend.

Error: (06/08/2014 09:55:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JND-PC)
Description: Activation of app Facebook.Facebook_8xx8rvfyw5nnt!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (06/08/2014 09:55:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: JND-PC)
Description: App Facebook.Facebook_1.3.0.9_x64__8xx8rvfyw5nnt+App did not launch within its allotted time.

Error: (06/08/2014 09:52:00 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkQuarantineRetry

Error: (06/08/2014 09:51:58 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (06/08/2014 09:51:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (06/08/2014 09:49:08 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (06/08/2014 09:44:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GoogleUpdate.exe, version: 1.3.21.103, time stamp: 0x4f3c6d6c
Faulting module name: goopdate.dll_unloaded, version: 1.3.24.7, time stamp: 0x53604624
Exception code: 0xc0000005
Fault offset: 0x00035682
Faulting process id: 0xf1c
Faulting application start time: 0xGoogleUpdate.exe0
Faulting application path: GoogleUpdate.exe1
Faulting module path: GoogleUpdate.exe2
Report Id: GoogleUpdate.exe3
Faulting package full name: GoogleUpdate.exe4
Faulting package-relative application ID: GoogleUpdate.exe5

Error: (06/08/2014 02:21:27 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

System errors:
=============
Error: (06/08/2014 09:35:22 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error:
%%1058

Error: (06/08/2014 09:35:22 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error:
%%1058

Error: (06/08/2014 09:34:18 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network Connectivity Assistant service depends on the IP Helper service which failed to start because of the following error:
%%1058

Error: (06/08/2014 02:02:25 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (06/08/2014 02:01:31 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (06/08/2014 02:01:28 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (06/08/2014 02:01:26 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (06/08/2014 01:59:31 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: App.AppXs4wmwhcd0y1h7d6qr1bkk90f2cg60gz6.wwa

Error: (06/08/2014 01:59:31 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Error: (06/08/2014 01:59:31 PM) (Source: DCOM) (EventID: 10010) (User: JND-PC)
Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca

Microsoft Office Sessions:
=========================
Error: (06/08/2014 10:00:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: JND-PC)
Description: Facebook.Facebook_1.3.0.9_x64__8xx8rvfyw5nnt+App

Error: (06/08/2014 09:55:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: JND-PC)
Description: DefaultBrowser_NOPUBLISHERID+Chrome

Error: (06/08/2014 09:55:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JND-PC)
Description: Facebook.Facebook_8xx8rvfyw5nnt!App-2144927142

Error: (06/08/2014 09:55:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: JND-PC)
Description: Facebook.Facebook_1.3.0.9_x64__8xx8rvfyw5nnt+App

Error: (06/08/2014 09:52:00 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0xC004F074RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkQuarantineRetry

Error: (06/08/2014 09:51:58 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0xC004F074RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (06/08/2014 09:51:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0xC004F074RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (06/08/2014 09:49:08 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0xC004F074RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (06/08/2014 09:44:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: GoogleUpdate.exe1.3.21.1034f3c6d6cgoopdate.dll_unloaded1.3.24.753604624c000000500035682f1c01cf831e5c550d0eC:\Program Files (x86)\Google\Update\GoogleUpdate.exegoopdate.dllf4ac4193-ef12-11e3-8065-c0f8daa137c2

Error: (06/08/2014 02:21:27 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

CodeIntegrity Errors:
===================================
  Date: 2014-01-16 12:20:54.452
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 12:19:59.955
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 12:04:59.945
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 12:04:56.101
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 12:04:46.086
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 11:48:50.450
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 11:48:47.140
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 11:48:29.014
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 11:12:59.268
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

  Date: 2014-01-16 11:12:55.252
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\uxtheme.dll that did not meet the Windows signing level requirements.

==================== Memory info ===========================

Percentage of memory in use: 81%
Total physical RAM: 1859.18 MB
Available physical RAM: 352 MB
Total Pagefile: 3843.18 MB
Available Pagefile: 1758.04 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB

==================== Drives ================================

Drive c: (ACER) (Fixed) (Total:581.91 GB) (Free:335.16 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: 46AB1043)
Partition 1: (Not Active) - (Size=14 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=582 GB) - (Type=07 NTFS)

==================== End Of Log ============================



#6 xXToffeeXx

xXToffeeXx

    Bleepin' Polar Bear


  • Malware Response Instructor
  • 6,041 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Arctic Circle
  • Local time:05:43 AM

Posted 08 June 2014 - 02:08 PM

Hi jnd002,
 
Going over your logs I noticed that you have µTorrent installed.

  • Avoid gaming sites, pirated software, cracking tools, keygens, and peer-to-peer (P2P) file sharing programs.
  • They are a security risk which can make your computer susceptible to a wide variety of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites.
  • Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and malicious Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users.
  • The best way to reduce the risk of infection is to avoid these types of web sites and not use any P2P applications.

It is pretty much certain that if you continue to use P2P programs, you will get infected again.
I would recommend that you uninstall µTorrent, however that choice is up to you. If you choose to remove these programs, you can do so via Start > Control Panel > Add/Remove Programs.
 
If you wish to keep it, please do not use it until your computer is cleaned.
 
--------------

I see a number of lines in your log which are related to cracks, torrents and kerygens. I shall provide this warning:
 
The practice of using keygenshacking toolscracking toolswareztorrents or any pirated software is not only considered illegal activity, but it is a serious security risk which can turn a computer into a virus honeypot or zombie.
 
When you use these kind of programs, be forewarned that some of the worst types of malware infections can be contracted and spread by visiting crack, keygen, warez and other pirated software sites. In many cases, those sites are infested with a smörgåsbord of malware and an increasing source of system infection. Those who attempt to get software for free can end up with a computer system so badly damaged that recovery is not possible, and it cannot be repaired. When that happens there is nothing you can do besides reformatting and reinstalling the OS.
 
If you want to read on then the full post is here.
 
--------------
 
Bleeping Computer does not recommend the use of registry cleaners/optimizers:
 
There are numerous programs which purport to improve system performance, make repairs and tune up a computer. Many of them include such features as a registry cleaner, registry optimizer, disk optimizer, etc. Some of these programs even incorporate optimization and registry cleaning features alongside anti-malware capabilities. These registry cleaners and optimizers claim to speed up your computer by finding and removing orphaned and corrupt registry entries that are responsible for slowing down system performance. There is no statistical evidence to back such claims. Advertisements to do so are borderline scams intended to goad users into using an unnecessary and potential dangerous product.
 
See the whole post here: http://www.bleepingcomputer.com/forums/t/407147/answers-to-common-security-questions-best-practices/?p=2853053
 
Therefore I suggest going to to add/remove in the control panel and removing : Advanced SystemCare 7

--------------
 
Please download Farbar Service Scanner and run it on the computer with the issue.

  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

--------------
 
To recap, in your next reply I would like to see the following. Make sure to copy & paste them unless I ask otherwise:

  • FSS.txt

xXToffeeXx~


~If I am helping you and you have not had a reply from me in two days, please send me a PM~

 

logo-25.pngID Ransomware - Identify What Ransomware Encrypted Your Files [Support Topic] - If we have helped you out and you want to support what we do, you can do so here

 

 ~Twitter~ | ~Malware Analyst at Emsisoft~


#7 xXToffeeXx

xXToffeeXx

    Bleepin' Polar Bear


  • Malware Response Instructor
  • 6,041 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Arctic Circle
  • Local time:05:43 AM

Posted 13 June 2014 - 10:27 AM

Hi jnd002,
 
This is a 3 day bump:
 
It has been 3 days since my last post.

  • Do you still need help with this?
  • If after 48hrs you have not replied to this thread then it will have to be closed.

xXToffeeXx~


~If I am helping you and you have not had a reply from me in two days, please send me a PM~

 

logo-25.pngID Ransomware - Identify What Ransomware Encrypted Your Files [Support Topic] - If we have helped you out and you want to support what we do, you can do so here

 

 ~Twitter~ | ~Malware Analyst at Emsisoft~


#8 xXToffeeXx

xXToffeeXx

    Bleepin' Polar Bear


  • Malware Response Instructor
  • 6,041 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Arctic Circle
  • Local time:05:43 AM

Posted 15 June 2014 - 05:45 AM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.

~If I am helping you and you have not had a reply from me in two days, please send me a PM~

 

logo-25.pngID Ransomware - Identify What Ransomware Encrypted Your Files [Support Topic] - If we have helped you out and you want to support what we do, you can do so here

 

 ~Twitter~ | ~Malware Analyst at Emsisoft~





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users