Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Can't get rid of dllhost.exe virus


  • This topic is locked This topic is locked
27 replies to this topic

#1 Novichok

Novichok

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 28 October 2014 - 12:08 PM

Dear Friends,

 

I encountered the dllhost.exe problem in early October first time.  I closely followed several links on this site.   The procedure seems helps every time, and I do not get any manifestations of the issue until I reboot computer.   For example last time over past two days , I, I worked, in that order, as precisely described on a similar link, with ComboFix and AdwCleaner.  In previous cycle of attempts  I also used, in addition, ESET, and FRST.

 

Initially, it seemed to cure the computer.  I was accessing the Internet, including watching YouTube and ads with Flash Player on several sites, and I was opening flash adds embedded in emails.  Task Manager, which I was constantly monitoring showed between 0 and 2 instances of dllhost.exe and/or dllhost.exe*32, while great majority of the time there were 0 instances.   But after I rebooted the computer after 1.5 days of clean (as described) run. the problem recurred.   I did this or a similar cycle three times already, each time with the same result. 

 

Please advise ASAP.

 

Below are log files from last run ComboFix (1) and AdwCleaner (2 and 3).

 

Thank you!

 

1. ComboFix.txt:

ComboFix 14-10-27.01 - Alexey 10/28/2014  11:40:02.4.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4078.2371 [GMT -4:00]
Running from: E:\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
SP: Microsoft Security Essentials *Disabled/Updated* {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Alexey\AppData\Local\Temp\_MEI37322\_ctypes.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\_elementtree.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\_hashlib.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\_multiprocessing.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\_socket.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\_ssl.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\msvcp100.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\msvcr100.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\pyexpat.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\pysqlite2._sqlite.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\python27.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\pythoncom27.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\PyWinTypes27.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\select.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\unicodedata.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32api.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32com.shell.shell.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32crypt.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32event.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32file.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32inet.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32pdh.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32process.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32profile.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32security.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\win32ts.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\windows._cacheinvalidation.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._controls_.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._core_.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._gdi_.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._html2.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._misc_.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._windows_.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wx._wizard.pyd
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wxbase294u_net_vc90.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wxbase294u_vc90.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wxmsw294u_adv_vc90.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wxmsw294u_core_vc90.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wxmsw294u_html_vc90.dll
c:\users\Alexey\AppData\Local\Temp\_MEI37322\wxmsw294u_webview_vc90.dll
.
.
(((((((((((((((((((((((((   Files Created from 2014-09-28 to 2014-10-28  )))))))))))))))))))))))))))))))
.
.
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\TryEmail\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\Site AJAX\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\Experiment\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\DemoWPSite1\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\Classic .NET AppPool\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\AZWebWorks\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\AZLimitless\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\Ariphmetic Services\AppData\Local\temp
2014-10-28 15:58 . 2014-10-28 15:58 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2014-10-28 15:28 . 2014-10-14 19:59 11627712 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{DA537252-99C7-491E-B53A-2F81E6FE0745}\mpengine.dll
2014-10-28 15:23 . 2014-10-14 19:59 11627712 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-10-28 11:59 . 2014-10-28 11:59 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin5.dll
2014-10-28 11:59 . 2014-10-28 11:59 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin4.dll
2014-10-28 11:59 . 2014-10-28 11:59 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin3.dll
2014-10-28 11:59 . 2014-10-28 11:59 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin2.dll
2014-10-28 11:59 . 2014-10-28 11:59 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin.dll
2014-10-28 11:59 . 2014-10-28 11:59 -------- d-----w- c:\program files (x86)\QuickTime
2014-10-28 11:57 . 2014-10-28 11:57 -------- d-----w- c:\program files\iPod
2014-10-28 11:56 . 2014-10-28 11:57 -------- d-----w- c:\programdata\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2014-10-28 11:56 . 2014-10-28 11:57 -------- d-----w- c:\program files\iTunes
2014-10-28 11:56 . 2014-10-28 11:57 -------- d-----w- c:\program files (x86)\iTunes
2014-10-25 18:02 . 2014-10-25 18:02 701104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-10-25 18:02 . 2014-10-25 18:02 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-10-24 00:28 . 2014-10-24 00:29 129752 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-10-24 00:27 . 2014-10-01 15:11 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-10-24 00:27 . 2014-10-01 15:11 93400 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-10-24 00:27 . 2014-10-01 15:11 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-10-24 00:27 . 2014-10-24 00:27 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2014-10-24 00:27 . 2014-10-24 00:27 -------- d-----w- c:\programdata\Malwarebytes
2014-10-23 14:32 . 2014-10-27 07:51 -------- d-----w- C:\AdwCleaner
2014-10-23 07:25 . 2014-10-23 07:39 -------- d-----w- c:\users\Alexey\AppData\Roaming\ZipGenius
2014-10-23 07:23 . 2014-10-23 07:24 -------- d-----w- c:\program files (x86)\ZipGenius 6
2014-10-22 17:28 . 2014-09-19 01:18 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-10-20 18:49 . 2014-10-28 16:00 69792 ----a-w- c:\windows\SysWow64\rpcnet.dll
2014-10-20 18:49 . 2014-10-20 18:49 69792 ------w- c:\windows\SysWow64\rpcnet.exe
2014-10-19 15:46 . 2014-10-19 19:58 -------- d-----w- c:\program files (x86)\SmartPCFixer
2014-10-18 15:46 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2014-10-18 15:46 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2014-10-18 15:12 . 2014-09-18 02:00 3241472 ----a-w- c:\windows\system32\msi.dll
2014-10-18 15:10 . 2014-09-25 02:08 371712 ----a-w- c:\windows\system32\qdvd.dll
2014-10-18 15:04 . 2014-09-09 22:11 2048 ----a-w- c:\windows\system32\tzres.dll
2014-10-18 15:04 . 2014-09-09 21:47 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2014-10-18 14:54 . 2014-09-05 02:11 6584320 ----a-w- c:\windows\system32\mstscax.dll
2014-10-18 14:54 . 2014-09-05 01:52 5703168 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-10-18 14:18 . 2014-09-13 01:58 77312 ----a-w- c:\windows\system32\packager.dll
2014-10-18 14:18 . 2014-09-13 01:40 67072 ----a-w- c:\windows\SysWow64\packager.dll
2014-10-02 18:23 . 2014-10-02 18:23 94208 ----a-w- c:\windows\SysWow64\QuickTimeVR.qtx
2014-10-02 18:23 . 2014-10-02 18:23 69632 ----a-w- c:\windows\SysWow64\QuickTime.qts
2014-10-01 19:14 . 2014-09-17 10:26 1188440 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{2D77D7F8-93D0-415B-9AA5-65DC626AA0CC}\gapaengine.dll
2014-09-30 10:14 . 2014-09-30 10:14 -------- d-----w- c:\users\Alexey\AppData\Roaming\ActiveState
2014-09-30 10:14 . 2014-09-30 10:14 -------- d-----w- c:\users\Alexey\AppData\Local\ActiveState
2014-09-30 10:12 . 2014-09-30 10:13 -------- d-----w- c:\program files (x86)\ActiveState Komodo Edit 8
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-10-28 16:00 . 2014-07-04 16:49 17920 ----a-w- c:\windows\system32\rpcnetp.exe
2014-10-27 16:45 . 2013-10-02 12:05 2585088 ----a-w- c:\programdata\Microsoft\VisualStudio\11.0\1033\ResourceCache.dll
2014-10-26 01:04 . 2014-02-19 00:46 35688 ----a-w- c:\windows\system32\LMIport.dll
2014-10-26 01:04 . 2014-02-19 00:46 107392 ----a-w- c:\windows\system32\LMIRfsClientNP.dll
2014-10-26 01:04 . 2014-02-19 00:46 92520 ----a-w- c:\windows\system32\LMIinit.dll
2014-10-20 18:46 . 2014-07-04 16:50 17920 ----a-w- c:\windows\SysWow64\rpcnetp.dll
2014-10-20 18:45 . 2014-07-04 16:49 17920 ----a-w- c:\windows\SysWow64\rpcnetp.exe
2014-10-03 14:02 . 2012-07-02 02:18 103265616 ----a-w- c:\windows\system32\MRT.exe
2014-09-22 06:42 . 2012-02-18 18:57 278152 ------w- c:\windows\system32\MpSigStub.exe
2014-09-17 10:26 . 2012-06-12 17:34 1188440 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2014-08-30 04:49 . 2012-02-13 02:33 23256 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2014-08-23 02:07 . 2014-08-30 04:39 404480 ----a-w- c:\windows\system32\gdi32.dll
2014-08-23 01:45 . 2014-08-30 04:39 311808 ----a-w- c:\windows\SysWow64\gdi32.dll
2014-08-20 12:26 . 2013-06-25 14:25 111016 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
2014-08-20 12:26 . 2013-07-09 23:57 319912 ----a-w- c:\windows\system32\javaws.exe
2014-08-20 12:26 . 2013-06-25 14:25 191400 ----a-w- c:\windows\system32\javaw.exe
2014-08-20 12:26 . 2013-06-25 14:25 190888 ----a-w- c:\windows\system32\java.exe
2014-08-20 12:25 . 2014-08-20 12:25 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2014-09-25 13:07 239272 ----a-w- c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2014-09-25 13:07 239272 ----a-w- c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2014-09-25 13:07 239272 ----a-w- c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\SkyDriveShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"SkyDrive"="c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" [2014-09-25 277672]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2013-06-27 20097696]
"ApplePhotoStreams"="c:\program files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" [2014-08-14 43816]
"iCloudServices"="c:\program files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" [2014-08-08 43816]
"AppleIEDAV"="c:\program files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe" [2014-08-05 1080104]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2014-10-01 22065760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"BrMfcWnd"="c:\program files (x86)\Brother\Brmfcmon\BrMfcWnd.exe" [2009-08-03 1167360]
"ControlCenter3"="c:\program files (x86)\Brother\ControlCenter3\brctrcen.exe" [2008-12-24 114688]
"TWebCamera"="c:\program files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" [2010-11-02 2475384]
"ToshibaServiceStation"="c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" [2010-07-01 1295224]
"ToshibaAppPlace"="c:\program files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe" [2010-09-23 552960]
"SSBkgdUpdate"="c:\program files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"PPort11reminder"="c:\program files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe" [2007-08-31 328992]
"PaperPort PTD"="c:\program files (x86)\ScanSoft\PaperPort\pptd40nt.exe" [2008-07-10 29984]
"NortonOnlineBackupReminder"="c:\program files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" [2010-08-17 3218792]
"ITSecMng"="c:\program files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2009-07-22 83336]
"IndexSearch"="c:\program files (x86)\ScanSoft\PaperPort\IndexSearch.exe" [2008-07-10 46368]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-08-21 959176]
"Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [2014-09-04 41360]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2014-09-04 840592]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-10-11 60712]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2014-10-15 157480]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2014-10-02 421888]
.
c:\users\Alexey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files (x86)\Microsoft Office\Office12\ONENOTEM.EXE /tsr [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer6"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 BrYNSvc;BrYNSvc;c:\program files (x86)\Browny02\BrYNSvc.exe;c:\program files (x86)\Browny02\BrYNSvc.exe [x]
R3 BtFilter;Bluetooth LowerFilter Class Filter Driver;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Te.Service;Te.Service;c:\program files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe;c:\program files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [x]
R3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [x]
R3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 VsEtwService120;Visual Studio ETW Event Collection Service;c:\program files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe;c:\program files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [x]
R4 RsFx0105;RsFx0105 Driver;c:\windows\system32\DRIVERS\RsFx0105.sys;c:\windows\SYSNATIVE\DRIVERS\RsFx0105.sys [x]
R4 RsFx0153;RsFx0153 Driver;c:\windows\system32\DRIVERS\RsFx0153.sys;c:\windows\SYSNATIVE\DRIVERS\RsFx0153.sys [x]
R4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE;c:\program files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [x]
R4 SQLAgent$SQLS2008EX;SQL Server Agent (SQLS2008EX);c:\program files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\SQLAGENT.EXE;c:\program files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\SQLAGENT.EXE [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S0 Thpdrv;TOSHIBA HDD Protection Driver;c:\windows\system32\DRIVERS\thpdrv.sys;c:\windows\SYSNATIVE\DRIVERS\thpdrv.sys [x]
S0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;c:\windows\system32\DRIVERS\Thpevm.SYS;c:\windows\SYSNATIVE\DRIVERS\Thpevm.SYS [x]
S0 tos_sps64;TOSHIBA tos_sps64 Service;c:\windows\system32\DRIVERS\tos_sps64.sys;c:\windows\SYSNATIVE\DRIVERS\tos_sps64.sys [x]
S2 ftpsvc;Microsoft FTP Service;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 IntuitUpdateServiceV4;Intuit Update Service v4;c:\program files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe;c:\program files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe [x]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn\x64\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [x]
S2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files (x86)\LogMeIn\x64\RaInfo.sys;c:\program files (x86)\LogMeIn\x64\RaInfo.sys [x]
S2 MsDepSvc;Web Deployment Agent Service;c:\program files\IIS\Microsoft Web Deploy\MsDepSvc.exe;c:\program files\IIS\Microsoft Web Deploy\MsDepSvc.exe [x]
S2 MSSQL$SQLS2008EX;SQL Server (SQLS2008EX);c:\program files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\sqlservr.exe;c:\program files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\sqlservr.exe [x]
S2 PCCUJobMgr;Common Client Job Manager Service;c:\program files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe;c:\program files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe [x]
S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe;c:\program files\TOSHIBA\TECO\TecoService.exe [x]
S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys;c:\windows\SYSNATIVE\DRIVERS\TVALZFL.sys [x]
S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [x]
S3 BazisVirtualCDBus;WinCDEmu Virtual Bus Driver;c:\windows\system32\DRIVERS\BazisVirtualCDBus.sys;c:\windows\SYSNATIVE\DRIVERS\BazisVirtualCDBus.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 O2MDGRDR;O2MDGRDR;c:\windows\system32\DRIVERS\o2mdgx64.sys;c:\windows\SYSNATIVE\DRIVERS\o2mdgx64.sys [x]
S3 O2SDGRDR;O2SDGRDR;c:\windows\system32\DRIVERS\o2sdgx64.sys;c:\windows\SYSNATIVE\DRIVERS\o2sdgx64.sys [x]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys;c:\windows\SYSNATIVE\DRIVERS\pgeffect.sys [x]
S3 QIOMem;Generic IO & Memory Access;c:\windows\system32\DRIVERS\QIOMem.sys;c:\windows\SYSNATIVE\DRIVERS\QIOMem.sys [x]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ    w3svc was
apphost REG_MULTI_SZ    apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-06-04 17:48 1091912 ----a-w- c:\program files (x86)\Google\Chrome\Application\35.0.1916.114\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-10-28 c:\windows\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001.job
- c:\users\Alexey\AppData\Local\Citrix\GoToMeeting\1831\g2mupdate.exe [2014-10-14 16:25]
.
2014-10-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-30 15:44]
.
2014-10-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-30 15:44]
.
2014-10-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core.job
- c:\users\Alexey\AppData\Local\Google\Update\GoogleUpdate.exe [2013-12-06 11:44]
.
2014-10-28 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA.job
- c:\users\Alexey\AppData\Local\Google\Update\GoogleUpdate.exe [2013-12-06 11:44]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2014-09-25 13:07 266416 ----a-w- c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2014-09-25 13:07 266416 ----a-w- c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2014-09-25 13:07 266416 ----a-w- c:\users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-06-27 20:11 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-27 20:11 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-06-27 20:11 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-06-27 20:11 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-06-27 20:11 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ThpSrv"="c:\windows\system32\thpsrv" [X]
"Zune Launcher"="c:\program files\Zune\ZuneLauncher.exe" [2011-08-05 163552]
"TPwrMain"="c:\program files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE" [BU]
"TosWaitSrv"="c:\program files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe" [BU]
"TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2010-02-06 709976]
"TosReelTimeMonitor"="c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe" [BU]
"TosNC"="c:\program files (x86)\Toshiba\BulletinBoard\TosNcCore.exe" [BU]
"Teco"="c:\program files (x86)\TOSHIBA\TECO\Teco.exe" [BU]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SmoothView"="c:\program files (x86)\Toshiba\SmoothView\SmoothView.exe" [BU]
"SmartFaceVWatcher"="c:\program files (x86)\Toshiba\SmartFaceV\SmartFaceVWatcher.exe" [BU]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-04-28 307768]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2014-08-22 1331288]
"HSON"="c:\program files (x86)\TOSHIBA\TBS\HSON.exe" [BU]
"HDMICtrlMan"="c:\program files (x86)\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe" [BU]
"00TCrdMain"="c:\program files (x86)\TOSHIBA\FlashCards\TCrdMain.exe" [BU]
"VideoDownloadConverter Home Page Guard 64 bit"="c:\progra~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe" [BU]
"LogMeIn GUI"="c:\program files (x86)\LogMeIn\x64\LogMeInSystray.exe" [2013-12-11 57928]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = https://www.google.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: Add to TOSHIBA Bulletin Board - c:\program files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
IE: Append Link Target to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~2\MICROS~3\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 172.21.23.1 172.21.23.62
TCP: Interfaces\{CD94FD2E-40AC-488B-AD1E-F17478803E49}: NameServer = 172.21.23.62,151.198.0.39
TCP: Interfaces\{CD94FD2E-40AC-488B-AD1E-F17478803E49}\E4F4B4941402C457D6961602832323F543335383: NameServer = 172.21.23.62,151.198.0.39
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
AddRemove-ClassicFTP - c:\program files (x86)\NCH Software\ClassicFTP\classicftp.exe
AddRemove-SmartMediaConverter - c:\program files (x86)\SmartMediaConverter\SmartMediaConverteruninstall.exe
AddRemove-Switch - c:\program files (x86)\NCH Software\Switch\switch.exe
AddRemove-WT089366 - c:\program files (x86)\TOSHIBA Games\Cake Mania - Lights
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MsDepSvc]
"ImagePath"="\"c:\program files\IIS\Microsoft Web Deploy\MsDepSvc.exe\" -runService:MsDepSvc"
--
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCCUJobMgr]
"ImagePath"="\"c:\program files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe\" /s \"PCCUJobMgr\" /m \"c:\program files (x86)\Norton PC Checkup\Engine\2.0.6.22\diMaster.dll\" /prefetch:1"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID]
@DACL=(02 0000)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_189_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_189_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_189_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_189_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_189.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.15"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_189.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_189.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_189.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Nico Mak Computing\WinZip]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\windows\system32\DRIVERS\o2flash.exe
c:\windows\SysWOW64\rpcnet.exe
c:\program files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe
c:\program files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
c:\windows\syswow64\dllhost.exe
c:\program files (x86)\Brother\ControlCenter3\brccMCtl.exe
c:\program files (x86)\Brother\Brmfcmon\BrMfimon.exe
c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Completion time: 2014-10-28  12:14:07 - machine was rebooted
ComboFix-quarantined-files.txt  2014-10-28 16:14
ComboFix2.txt  2014-10-23 14:26
.
Pre-Run: 228,893,360,128 bytes free
Post-Run: 228,737,908,736 bytes free
.
- - End Of File - - 51A66D9E247AC7F41823503FEA92AA0C

 

2. AdwCleaner[R3].txt:

# AdwCleaner v4.002 - Report created 28/10/2014 at 12:20:40
# Updated 27/10/2014 by Xplode
# Database :
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Alexey - QOSMIO-X500
# Running from : E:\adwcleaner_4.002.exe
# Option : Scan

***** [ Services ] *****

***** [ Files / Folders ] *****

***** [ Scheduled Tasks ] *****

***** [ Shortcuts ] *****

***** [ Registry ] *****

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17344

-\\ Google Chrome v35.0.1916.114

*************************

AdwCleaner[R0].txt - [17468 octets] - [23/10/2014 10:32:52]
AdwCleaner[R1].txt - [1098 octets] - [27/10/2014 03:19:42]
AdwCleaner[R2].txt - [1109 octets] - [27/10/2014 03:46:43]
AdwCleaner[R3].txt - [759 octets] - [28/10/2014 12:20:40]
AdwCleaner[S0].txt - [17072 octets] - [23/10/2014 10:40:47]
AdwCleaner[S1].txt - [1157 octets] - [27/10/2014 03:25:21]
AdwCleaner[S2].txt - [1166 octets] - [27/10/2014 03:51:42]

########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [999 octets] ##########

 

3. AdwCleaner[S3].txt:

# AdwCleaner v4.002 - Report created 28/10/2014 at 12:22:24
# DB v
# Updated 27/10/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Alexey - QOSMIO-X500
# Running from : E:\adwcleaner_4.002.exe
# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

***** [ Scheduled Tasks ] *****

***** [ Shortcuts ] *****

***** [ Registry ] *****

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17344

-\\ Google Chrome v35.0.1916.114

*************************

AdwCleaner[R0].txt - [17468 octets] - [23/10/2014 10:32:52]
AdwCleaner[R1].txt - [1098 octets] - [27/10/2014 03:19:42]
AdwCleaner[R2].txt - [1109 octets] - [27/10/2014 03:46:43]
AdwCleaner[R3].txt - [1078 octets] - [28/10/2014 12:20:40]
AdwCleaner[S0].txt - [17072 octets] - [23/10/2014 10:40:47]
AdwCleaner[S1].txt - [1157 octets] - [27/10/2014 03:25:21]
AdwCleaner[S2].txt - [1166 octets] - [27/10/2014 03:51:42]
AdwCleaner[S3].txt - [994 octets] - [28/10/2014 12:22:24]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1053 octets] ##########

 



BC AdBot (Login to Remove)

 


#2 deeprybka

deeprybka

  • Malware Response Team
  • 5,198 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:10:55 PM

Posted 31 October 2014 - 12:41 PM

Hi & :welcome: to Bleeping Computer Forums!
My name is Jürgen and I will be assisting you with your Malware related problems.

Before we move on, please read the following points carefully: :exclame:
  • My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.
  • Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
  • Perform everything in the correct order. Sometimes one step requires the previous one.
  • If you have any problems while you are follow my instructions, Stop there and tell me the exact nature of your problem.
  • Do not run any other scans without instruction or Add/ Remove Software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
  • Post all Logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
  • If I don't hear from you within 5 days from this initial or any subsequent post, then this thread will be closed.
  • If I don't reply within 24 hours please PM me!
  • Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
Step 1

Please run a FRST scan. This will help us diagnose your problem.

frst.pngfrstscan.png
Please download Farbar Recovery Scan Tool and save it to your Desktop.
(If you are not sure which version (32-/64-bit) applies to your system, download and try to start both of them as just the right one will run.)
  • Start FRST with administator privileges.
  • Make sure the option Addition.txt is checked and press the Scan button.
  • When finished, FRST will produce two logs (FRST.txt and Addition.txt) in the same directory the tool was run from.
  • Please copy and paste these logs in your next reply.
Step 2


Please download TDSStdsskiller.pngiller and save it to your Desktop.
  • Start tdsskiller.exe with administrator privileges.
  • Accept the EULA and the KSN Statement.
  • Click on Change parameters.
  • Make sure that all available options (except "Loaded modules") are checked and click OK.
  • Click on Start scan.
  • If any threats are found don't delete them but choose the Skip option for all of them.
  • Click on Report to open the log file. (It is also saved at C:\TDSSKiller.<version_date_time>_log.txt).
    Copy and paste its contents in your next reply.

regards,
deeprybka
:busy:
Neminem laede, immo omnes, quantum potes, iuva. Arthur Schopenhauer
 
unite_blue.png
asap.png

#3 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 31 October 2014 - 06:46 PM

Hi Jürgen,

Thanks for offering help!

The log files pasted below.

Alexey

 

FARBAR:

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-10-2014 01
Ran by Alexey (administrator) on QOSMIO-X500 on 31-10-2014 19:13:59
Running from C:\Users\Alexey\Desktop
Loaded Profile: Alexey (Available profiles: Alexey & Administrator & Classic .NET AppPool & DemoWPSite1 & Site AJAX & TryEmail & AZWebWorks & AZLimitless & DefaultAppPool & Experiment & Ariphmetic Services)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\ramaint.exe
(Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\sqlservr.exe
(O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe
(Absolute Software Corp.) C:\Windows\SysWOW64\rpcnet.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(TOSHIBA Corporation) C:\Program Files\Toshiba\TECO\TecoService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfimon.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSENotify.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2010-10-18] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2010-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2010-07-09] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597416 2010-11-02] (TOSHIBA Corporation)
HKLM\...\Run: [ThpSrv] => C:\windows\system32\thpsrv /logon
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1519016 2010-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2387752 2010-09-30] (Synaptics Incorporated)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [508216 2009-07-28] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SAIICpl.exe [307768 2010-04-28] ()
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation)
HKLM\...\Run: [HDMICtrlMan] => C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [1037728 2010-07-21] (TOSHIBA Corporation.)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [915320 2010-05-10] (TOSHIBA Corporation)
HKLM\...\Run: [VideoDownloadConverter Home Page Guard 64 bit] => "C:\PROGRA~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe"
HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [57928 2013-12-11] (LogMeIn, Inc.)
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1167360 2009-08-03] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2475384 2010-11-02] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [ToshibaServiceStation] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1295224 2010-07-01] (TOSHIBA Corporation)
HKLM-x32\...\Run: [ToshibaAppPlace] => C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe [552960 2010-09-23] (Toshiba)
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort11reminder] => C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe [328992 2007-08-31] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe [29984 2008-07-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [NortonOnlineBackupReminder] => C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe [3218792 2010-08-17] (Toshiba)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [83336 2009-07-22] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe [46368 2008-07-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-09-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840592 2014-09-04] (Adobe Systems Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM\...\RunOnce: [insbgf64] => C:\windows\SysWow64\insbgf64.exe [98544 2014-06-18] (Absolute Software Corp.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [SkyDrive] => C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [277672 2014-09-25] (Microsoft Corporation)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-08-14] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-08-08] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [AppleIEDAV] => C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [1080104 2014-08-04] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...A8F59079A8D5}\localserver32: rundll32.exe javascript:"\..\mshtml,RunHTMLApplication ";eval("epdvnfou/xsjuf)(=tdsjqu!mbohvbhf>ktds (the data entry has 239 more characters). <==== Poweliks!
Startup: C:\Users\Alexey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
ShortcutTarget: OneNote 2007 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {164AAE4E-F799-4BA9-8403-6C723EB0DAEF} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF
SearchScopes: HKLM-x32 - {9AE9BE66-6CFA-4FB7-9231-31214A47CD9F} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF
SearchScopes: HKCU - {164AAE4E-F799-4BA9-8403-6C723EB0DAEF} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {9AE9BE66-6CFA-4FB7-9231-31214A47CD9F} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF_enUS470
SearchScopes: HKCU - {FEF02641-9483-4882-95E1-D3D1F7D3D3A6} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft Web Test Recorder 10.0 Helper -> {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} -> C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://akamaicdn.webex.com/client/WBXclient-T27L10NSP32_CP21-15858/webex/ieatgpc1.cab
Tcpip\Parameters: [DhcpNameServer] 172.21.23.1 172.21.23.62
Tcpip\..\Interfaces\{CD94FD2E-40AC-488B-AD1E-F17478803E49}: [NameServer] 172.21.23.62,151.198.0.39

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.0.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.20.2 -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Alexey\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-03-12]

Chrome:
=======
CHR Profile: C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-04]
CHR Extension: (Google Drive) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-06-04]
CHR Extension: (YouTube) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-04]
CHR Extension: (Google Search) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-04]
CHR Extension: (Google Wallet) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-04]
CHR Extension: (Gmail) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-04]
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Alexey\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-07-23]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ftpsvc; C:\Windows\system32\inetsrv\ftpsvc.dll [350720 2012-06-01] (Microsoft Corporation)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [376168 2014-10-25] (LogMeIn, Inc.)
R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226152 2014-10-25] (LogMeIn, Inc.)
R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2013-12-11] (LogMeIn, Inc.)
R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [84624 2013-06-10] (Microsoft Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
R2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [62379184 2014-07-10] (Microsoft Corporation)
R2 MSSQL$SQLS2008EX; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\sqlservr.exe [58387104 2014-07-12] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe [126392 2009-08-24] (Symantec Corporation)
S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [442536 2014-07-10] (Microsoft Corporation)
S4 SQLAgent$SQLS2008EX; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\SQLAGENT.EXE [441504 2014-07-12] (Microsoft Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S3 VsEtwService120; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-05] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
S3 BrYNSvc; "C:\Program Files (x86)\Browny02\BrYNSvc.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-12-11] (LogMeIn, Inc.)
S4 LMIRfsClientNP; No ImagePath
S3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-10-23] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
R3 O2SDGRDR; C:\Windows\System32\DRIVERS\o2sdgx64.sys [49568 2009-08-18] (O2Micro )
S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [322736 2014-07-10] (Microsoft Corporation)
S3 Tosrfcom; No ImagePath
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]
S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-13] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-31 19:13 - 2014-10-31 19:19 - 00026053 _____ () C:\Users\Alexey\Desktop\FRST.txt
2014-10-31 19:10 - 2014-10-31 19:16 - 00000000 ____D () C:\FRST
2014-10-31 19:06 - 2014-10-31 19:06 - 02113536 _____ (Farbar) C:\Users\Alexey\Desktop\FRST64.exe
2014-10-30 13:19 - 2014-10-30 13:20 - 00002092 _____ () C:\Users\Alexey\Downloads\Event_130859.ics
2014-10-28 15:48 - 2014-10-28 15:48 - 00036161 _____ () C:\ComboFix.txt
2014-10-28 07:59 - 2014-10-28 07:59 - 00001856 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-10-28 07:59 - 2014-10-28 07:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-10-28 07:59 - 2014-10-28 07:59 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-10-28 07:57 - 2014-10-28 07:57 - 00001794 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-10-28 07:57 - 2014-10-28 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-10-28 07:57 - 2014-10-28 07:57 - 00000000 ____D () C:\Program Files\iPod
2014-10-28 07:56 - 2014-10-28 07:57 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2014-10-28 07:56 - 2014-10-28 07:57 - 00000000 ____D () C:\Program Files\iTunes
2014-10-28 07:56 - 2014-10-28 07:57 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-10-25 14:02 - 2014-10-25 14:02 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-10-25 14:02 - 2014-10-25 14:02 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-23 20:28 - 2014-10-23 20:29 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-23 20:27 - 2014-10-23 20:27 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-23 20:27 - 2014-10-23 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-23 20:27 - 2014-10-23 20:27 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-23 20:27 - 2014-10-23 20:27 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-23 20:27 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2014-10-23 20:27 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2014-10-23 20:27 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-10-23 10:32 - 2014-10-28 15:57 - 00000000 ____D () C:\AdwCleaner
2014-10-23 08:55 - 2011-06-26 02:45 - 00256000 _____ () C:\windows\PEV.exe
2014-10-23 08:55 - 2010-11-07 13:20 - 00208896 _____ () C:\windows\MBR.exe
2014-10-23 08:55 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00098816 _____ () C:\windows\sed.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00080412 _____ () C:\windows\grep.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00068096 _____ () C:\windows\zip.exe
2014-10-23 08:54 - 2014-10-28 15:48 - 00000000 ____D () C:\Qoobox
2014-10-23 08:53 - 2014-10-23 10:22 - 00000000 ____D () C:\windows\erdnt
2014-10-23 04:56 - 2014-10-23 04:56 - 00000902 _____ () C:\Users\Alexey\Desktop\Procmon.exe - Shortcut.lnk
2014-10-23 03:29 - 2014-03-06 23:53 - 02510528 _____ (Sysinternals - www.sysinternals.com) C:\Users\Alexey\Downloads\Procmon.exe
2014-10-23 03:29 - 2011-11-28 10:46 - 00063582 _____ () C:\Users\Alexey\Downloads\procmon.chm
2014-10-23 03:29 - 2006-07-28 08:32 - 00007005 _____ () C:\Users\Alexey\Downloads\Eula.txt
2014-10-23 03:25 - 2014-10-23 03:39 - 00000060 _____ () C:\Users\Alexey\AppData\Roaming\mainhst.zgh
2014-10-23 03:25 - 2014-10-23 03:39 - 00000000 ____D () C:\Users\Alexey\AppData\Roaming\ZipGenius
2014-10-23 03:24 - 2014-10-23 03:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZipGenius 6
2014-10-23 03:23 - 2014-10-23 03:24 - 00000000 ____D () C:\Program Files (x86)\ZipGenius 6
2014-10-23 03:21 - 2014-10-23 03:22 - 08994263 _____ (The ZipGenius Team ) C:\Users\Alexey\Downloads\zg63std.exe
2014-10-23 03:01 - 2014-10-23 03:25 - 01121208 _____ () C:\Users\Alexey\Downloads\ProcessMonitor.zip
2014-10-22 13:28 - 2014-09-18 21:18 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 23631360 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 17484800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 13619200 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 11807232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 05829632 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 04201472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02796032 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-10-20 16:15 - 2014-10-20 16:15 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-20 16:15 - 2014-10-20 16:15 - 02309632 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02187264 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02108416 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-20 16:15 - 2014-10-20 16:15 - 02017280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-10-20 16:15 - 2014-10-20 16:15 - 01810944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01190400 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00731136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00710656 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00678400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2014-10-20 16:15 - 2014-10-20 16:15 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2014-10-20 16:15 - 2014-10-20 16:15 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00595968 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00547328 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00446464 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00440320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-10-20 16:15 - 2014-10-20 16:15 - 00378552 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2014-10-20 16:15 - 2014-10-20 16:15 - 00331448 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00289280 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00243200 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2014-10-20 16:15 - 2014-10-20 16:15 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2014-10-20 16:15 - 2014-10-20 16:15 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-20 14:49 - 2014-10-31 02:20 - 00069792 _____ (Absolute Software Corp.) C:\windows\SysWOW64\rpcnet.dll
2014-10-20 14:49 - 2014-10-20 14:49 - 00069792 ____N (Absolute Software Corp.) C:\windows\SysWOW64\rpcnet.exe
2014-10-20 13:45 - 2014-10-20 13:56 - 00000134 _____ () C:\Users\Alexey\Desktop\Internet Explorer Troubleshooting.url
2014-10-20 12:47 - 2014-10-20 12:48 - 55915216 _____ (Microsoft Corporation) C:\Users\Alexey\Downloads\IE11-Windows6.1-x64-en-us.exe
2014-10-19 11:46 - 2014-10-19 15:58 - 00000000 ____D () C:\Program Files (x86)\SmartPCFixer
2014-10-19 11:44 - 2014-10-19 11:45 - 04874632 _____ (LionSea Software co., ltd ) C:\Users\Alexey\Downloads\setup (1).exe
2014-10-18 11:46 - 2014-06-26 22:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2014-10-18 11:46 - 2014-06-26 21:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2014-10-18 11:12 - 2014-09-17 22:00 - 03241472 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-18 11:11 - 2014-09-28 20:58 - 03198976 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-18 11:11 - 2014-09-17 21:32 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-10-18 11:11 - 2014-08-28 22:07 - 03179520 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2014-10-18 11:11 - 2014-08-01 07:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2014-10-18 11:11 - 2014-08-01 07:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-18 11:11 - 2014-07-16 22:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-18 11:11 - 2014-07-16 21:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2014-10-18 11:11 - 2014-07-16 21:39 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-10-18 11:11 - 2014-07-16 21:39 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-10-18 11:11 - 2014-07-16 21:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-18 11:11 - 2014-07-16 21:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-18 11:11 - 2014-07-06 22:06 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-10-18 11:11 - 2014-07-06 22:06 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-10-18 11:11 - 2014-07-06 21:40 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-10-18 11:11 - 2014-07-06 21:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-10-18 11:11 - 2014-07-06 21:39 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-10-18 11:10 - 2014-10-09 22:05 - 00507392 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-18 11:10 - 2014-10-09 22:05 - 00276480 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-18 11:10 - 2014-10-09 22:00 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-18 11:10 - 2014-09-24 22:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2014-10-18 11:10 - 2014-09-24 21:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2014-10-18 11:10 - 2014-09-04 01:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-18 11:10 - 2014-09-04 01:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2014-10-18 11:10 - 2014-06-23 23:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-10-18 11:10 - 2014-06-23 22:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-18 11:04 - 2014-09-09 18:11 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-10-18 11:04 - 2014-09-09 17:47 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-10-18 10:54 - 2014-09-04 22:11 - 06584320 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-18 10:54 - 2014-09-04 21:52 - 05703168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-10-18 10:18 - 2014-09-12 21:58 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-18 10:18 - 2014-09-12 21:40 - 00067072 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2014-10-02 14:23 - 2014-10-02 14:23 - 00094208 _____ (Apple Inc.) C:\windows\SysWOW64\QuickTimeVR.qtx
2014-10-02 14:23 - 2014-10-02 14:23 - 00069632 _____ (Apple Inc.) C:\windows\SysWOW64\QuickTime.qts

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-31 19:17 - 2012-02-12 13:07 - 00000000 ____D () C:\Users\Alexey\AppData\Local\CrashDumps
2014-10-31 19:15 - 2012-02-11 17:43 - 00000000 ____D () C:\Users\Alexey\AppData\Roaming\Skype
2014-10-31 19:05 - 2014-05-06 11:00 - 00000568 _____ () C:\windows\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001.job
2014-10-31 18:54 - 2013-12-06 12:53 - 00000912 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA.job
2014-10-31 17:52 - 2013-12-26 08:20 - 00000000 ____D () C:\Users\Alexey\AppData\Local\17DBA987-726E-46E9-BFFF-294ED6904D3C.aplzod
2014-10-31 11:29 - 2012-03-05 00:57 - 00003942 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{1A93296C-8C18-4E32-B87F-4CA15A133247}
2014-10-31 10:54 - 2011-05-29 06:01 - 01930574 _____ () C:\windows\WindowsUpdate.log
2014-10-31 09:54 - 2014-07-04 12:49 - 00017920 _____ () C:\windows\system32\rpcnetp.exe
2014-10-31 02:34 - 2013-07-05 23:43 - 00000000 ___RD () C:\SkyDrive
2014-10-31 02:32 - 2009-07-14 00:45 - 00018736 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-31 02:32 - 2009-07-14 00:45 - 00018736 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-31 02:23 - 2013-07-07 23:27 - 00000000 ____D () C:\Scan
2014-10-31 02:21 - 2014-02-18 20:46 - 00001015 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Client.lnk
2014-10-31 02:21 - 2014-02-18 20:46 - 00000999 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk
2014-10-31 02:19 - 2009-07-14 01:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-10-31 02:19 - 2009-07-14 00:51 - 00071535 _____ () C:\windows\setupact.log
2014-10-31 02:01 - 2014-02-18 20:46 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-10-30 19:54 - 2013-12-06 12:53 - 00000860 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core.job
2014-10-30 07:25 - 2012-02-18 14:57 - 00275080 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-10-30 06:33 - 2013-10-10 11:42 - 00000000 ____D () C:\Users\Alexey\Documents\SQL Server Management Studio
2014-10-29 20:00 - 2014-05-06 11:00 - 00003602 _____ () C:\windows\System32\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001
2014-10-28 17:02 - 2014-08-20 16:47 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Adobe
2014-10-28 15:58 - 2010-11-30 10:33 - 00550774 _____ () C:\windows\PFRO.log
2014-10-28 15:48 - 2014-06-09 08:50 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Apps\2.0
2014-10-28 15:41 - 2009-07-13 22:34 - 00000215 _____ () C:\windows\system.ini
2014-10-28 10:49 - 2013-10-02 08:03 - 00000000 ____D () C:\Users\Alexey\Documents\Visual Studio 2012
2014-10-28 07:57 - 2012-07-17 10:35 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-10-28 07:56 - 2014-09-16 07:15 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-10-27 12:46 - 2013-10-02 07:00 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-27 08:13 - 2012-03-19 23:21 - 01078074 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-10-27 07:25 - 2012-02-15 10:45 - 00000000 ____D () C:\Users\Alexey\AppData\Local\WeatherBug
2014-10-26 18:39 - 2009-07-14 01:13 - 01057992 _____ () C:\windows\system32\PerfStringBackup.INI
2014-10-25 21:05 - 2014-02-18 20:45 - 00000000 ____D () C:\Program Files (x86)\LogMeIn
2014-10-25 21:04 - 2014-02-18 20:46 - 00107392 _____ (LogMeIn, Inc.) C:\windows\system32\LMIRfsClientNP.dll
2014-10-25 21:04 - 2014-02-18 20:46 - 00092520 _____ (LogMeIn, Inc.) C:\windows\system32\LMIinit.dll
2014-10-25 21:04 - 2014-02-18 20:46 - 00035688 _____ (LogMeIn, Inc.) C:\windows\system32\LMIport.dll
2014-10-24 11:05 - 2013-06-25 10:53 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Eclipse
2014-10-23 11:44 - 2010-11-30 10:31 - 00003894 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-23 11:44 - 2010-11-30 10:31 - 00003642 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-23 11:44 - 2010-11-30 10:31 - 00000898 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-23 11:44 - 2010-11-30 10:31 - 00000894 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-23 10:40 - 2013-06-30 10:36 - 00000000 ____D () C:\Users\Alexey\AppData\Local\CRE
2014-10-23 10:27 - 2009-07-13 23:20 - 00000000 __RHD () C:\Users\Default
2014-10-23 05:28 - 2012-06-21 01:53 - 00000000 ____D () C:\Users\Alexey\Tracing
2014-10-23 01:40 - 2013-10-02 06:15 - 00000000 ____D () C:\Professional
2014-10-20 20:36 - 2013-10-07 16:37 - 00000000 ____D () C:\PROJ
2014-10-20 18:47 - 2012-02-11 14:26 - 00001424 _____ () C:\Users\Alexey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-10-20 18:29 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-10-20 16:18 - 2013-11-19 12:11 - 00042316 _____ () C:\windows\IE11_main.log
2014-10-20 14:46 - 2014-07-04 12:50 - 00017920 _____ () C:\windows\SysWOW64\rpcnetp.dll
2014-10-20 14:45 - 2014-07-04 12:49 - 00017920 _____ () C:\windows\SysWOW64\rpcnetp.exe
2014-10-20 13:00 - 2014-01-14 00:09 - 00000000 ____D () C:\Users\Alexey\Documents\Visual Studio 2013
2014-10-19 19:49 - 2013-12-06 12:53 - 00003884 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA
2014-10-19 19:49 - 2013-12-06 12:53 - 00003488 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core
2014-10-19 11:02 - 2014-04-02 09:30 - 00000000 __SHD () C:\Users\Public\DRM
2014-10-18 13:40 - 2013-04-13 22:15 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00002465 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00002453 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00002037 _____ () C:\Users\Public\Desktop\Adobe Acrobat X Pro.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2
2014-10-18 12:53 - 2009-07-14 00:45 - 00472400 _____ () C:\windows\system32\FNTCACHE.DAT
2014-10-18 12:49 - 2014-04-30 03:46 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-10-18 12:42 - 2012-02-14 02:29 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-18 12:04 - 2012-03-19 23:21 - 00002155 _____ () C:\windows\epplauncher.mif
2014-10-18 12:04 - 2012-03-19 23:21 - 00002128 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2014-10-18 12:03 - 2012-07-01 22:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-10-18 12:03 - 2012-03-19 23:21 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-10-18 11:57 - 2009-07-13 23:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-10-18 11:45 - 2013-10-10 04:58 - 00000000 ____D () C:\windows\system32\MRT
2014-10-18 05:28 - 2012-02-11 17:43 - 00000000 ____D () C:\ProgramData\Skype
2014-10-09 19:09 - 2014-08-14 09:06 - 01048576 _____ () C:\Users\Alexey\Subscribers_log.ldf
2014-10-09 19:09 - 2014-06-20 00:02 - 01048576 _____ () C:\Users\Alexey\Millennium_log.ldf
2014-10-09 19:04 - 2014-02-23 11:12 - 03211264 _____ () C:\Users\Alexey\ContosoUniversity1.mdf
2014-10-09 19:04 - 2014-02-23 11:12 - 00802816 _____ () C:\Users\Alexey\ContosoUniversity1_log.ldf
2014-10-09 05:42 - 2014-07-18 02:44 - 03211264 _____ () C:\Users\Alexey\TestData.mdf
2014-10-09 05:42 - 2014-07-18 02:44 - 00802816 _____ () C:\Users\Alexey\TestData_log.ldf
2014-10-09 05:42 - 2014-02-27 10:56 - 03211264 _____ () C:\Users\Alexey\ContosoUniversity2.mdf
2014-10-09 05:42 - 2014-02-27 10:56 - 00802816 _____ () C:\Users\Alexey\ContosoUniversity2_log.ldf
2014-10-09 05:42 - 2014-02-22 02:26 - 03211264 _____ () C:\Users\Alexey\DevelopmentStorageDb22.mdf
2014-10-09 05:42 - 2014-02-22 02:26 - 00802816 _____ () C:\Users\Alexey\DevelopmentStorageDb22_log.ldf
2014-10-09 05:42 - 2013-11-20 16:28 - 03211264 _____ () C:\Users\Alexey\aspnet-WingtipToys.mdf
2014-10-09 05:42 - 2013-11-20 16:28 - 00802816 _____ () C:\Users\Alexey\aspnet-WingtipToys_log.ldf
2014-10-09 05:42 - 2013-10-30 11:15 - 03211264 _____ () C:\Users\Alexey\DevelopmentStorageDb21.mdf
2014-10-09 05:42 - 2013-10-30 11:15 - 00802816 _____ () C:\Users\Alexey\DevelopmentStorageDb21_log.ldf
2014-10-06 15:35 - 2014-08-14 09:06 - 04194304 _____ () C:\Users\Alexey\Subscribers.mdf
2014-10-06 13:48 - 2012-07-17 10:35 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Apple
2014-10-03 10:02 - 2012-07-01 22:18 - 103265616 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe

Files to move or delete:
====================
C:\Users\Alexey\Microsoft.Practices.EnterpriseLibrary.SemanticLogging.Etw.dll
C:\Users\Alexey\SemanticLogging-svc.exe

Some content of TEMP:
====================
C:\Users\Alexey\AppData\Local\Temp\Quarantine.exe
C:\Users\Alexey\AppData\Local\Temp\sqlite3.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-10-16 05:50

==================== End Of Log ============================

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-10-2014 01
Ran by Alexey at 2014-10-31 19:19:55
Running from C:\Users\Alexey\Desktop
Boot Mode: Normal
==========================================================

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden
ActiveState Komodo Edit 8.5.4 (HKLM-x32\...\{E65B87D8-30C4-4FB0-8C24-AFD64950A881}) (Version: 8.5.4 - ActiveState Software Inc.)
Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.12 - Adobe Systems)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Amazon Links (HKLM-x32\...\{3135D885-9D9A-4B4D-8D45-9DB05DA115CA}) (Version: 2.02 - TOSHIBA Corporation)
Apache Tomcat 7.0.41 (HKLM\...\nbi-tomcat-7.0.41.0.0) (Version:  - )
Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Atheros Bluetooth Filter Driver Package (HKLM\...\{65486209-5C54-439C-8383-8AC9BBE25932}) (Version: 1.00.0004 - Atheros Communications)
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.36 - Atheros Communications Inc.)
Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros)
Audacity 2.0 (HKLM-x32\...\Audacity_is1) (Version:  - Audacity Team)
AVS Audio Editor 7.2 (HKLM-x32\...\AVS Audio Editor_is1) (Version: 7.2.2.488 - Online Media Technologies Ltd.)
AzureTools.Notifications.VwdExpress (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden
Blend for Visual Studio 2012 ENU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden
Blend for Visual Studio Add-in for Adobe FXG Import (x32 Version: 1.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v8.00.00(T) - TOSHIBA CORPORATION)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brother MFL-Pro Suite MFC-5460CN (HKLM-x32\...\{7E48AFD3-F28A-4E54-99A8-9F3A4A27DBC4}) (Version: 1.0.3.0 - Brother Industries, Ltd.)
Brother MFL-Pro Suite MFC-5895CW (HKLM-x32\...\{184BF682-537C-4CAE-8789-6696508A4032}) (Version: 1.0.2.0 - Brother Industries, Ltd.)
Brother Product Research and Support Program (HKLM-x32\...\{8040527F-DD74-4B45-8A06-C4BF145B6C76}) (Version: 2.0.0.0000 - Brother Industries, Ltd.)
Build Tools - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden
Build Tools - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Build Tools Language Resources - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden
Build Tools Language Resources - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Cake Mania - Lights, Camera, Action!™ (x32 Version: 2.2.0.95 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cisco WebEx Meetings (HKLM-x32\...\ActiveTouchMeetingClient) (Version:  - Cisco WebEx LLC)
Citrix Online Launcher (HKLM-x32\...\{F17C3DC2-2ACA-4B0E-BDBF-ACE61B14E7CD}) (Version: 1.0.183 - Citrix)
Classic FTP (HKLM-x32\...\ClassicFTP) (Version: 2.34 - NCH Software)
Conexant HD Audio (HKLM\...\CNXT_AUDIO) (Version: 4.130.0.61 - Conexant)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Digital Voice Editor 3 (HKLM-x32\...\{6CCC133E-9A2F-4CAA-8866-75D029CD3AB3}) (Version: 3.3.01.11240 - Sony Corporation)
Dolby Control Center (HKLM\...\{20387B45-18A4-4D48-ABD9-A23D2CBE42B3}) (Version: 2.2.1 - Dolby)
Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden
Entity Framework Designer for Visual Studio 2012 - enu (HKLM-x32\...\{3F29268A-F53A-4387-9F2B-E9368A823178}) (Version: 11.1.30729.00 - Microsoft Corporation)
Entity Framework Tools for Visual Studio 2013 (HKLM-x32\...\{08AEF86A-1956-4846-B906-B01350E96E30}) (Version: 12.0.20912.0 - Microsoft Corporation)
FATE - The Traitor Soul (x32 Version: 2.2.0.95 - WildTangent) Hidden
FrenchNow! (HKLM-x32\...\FrenchNow!) (Version:  - )
GDR 4033 for SQL Server 2008 R2 (KB2977320) (64-bit) (HKLM\...\KB2977320) (Version: 10.52.4033.0 - Microsoft Corporation)
GDR 5520 for SQL Server 2008 (KB2977321) (64-bit) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
Git version 1.9.2-preview20140411 (HKLM-x32\...\Git_is1) (Version: 1.9.2-preview20140411 - The Git Development Community)
GitHub (HKCU\...\5f7eb300e2ea4ebf) (Version: 1.3.3.1 - GitHub, Inc.)
GlassFish Server Open Source Edition 4.0 (HKLM\...\nbi-glassfish-mod-4.0.0.89.0) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)
Google Chrome Canary (HKCU\...\Google Chrome SxS) (Version: 33.0.1731.0 - Google Inc.)
Google Drive (HKLM-x32\...\{C2D4CD4A-AE20-40B3-8726-8ED1C03E8C15}) (Version: 1.11.4865.2530 - Google, Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.4209.2358 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden
GoToMeeting 6.4.5.1865 (HKCU\...\GoToMeeting) (Version: 6.4.5.1865 - CitrixOnline)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden
HDMI Control Manager (HKLM-x32\...\InstallShield_{63DA1F6A-2E65-4367-99B9-9E39FADEC446}) (Version: 2.0 - TOSHIBA CORPORATION)
HDMI Control Manager (Version: 2.0 - TOSHIBA CORPORATION) Hidden
HDMI Control Manager (x32 Version: 2.0 - TOSHIBA CORPORATION) Hidden
HHD Software Free Hex Editor Neo 5.14 (HKCU\...\{8EB85C0E-DE7D-4A53-BD66-708B8F2C80B0}) (Version: 5.14.0.4787 - HHD Software, Ltd.)
iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.)
IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version:  - )
InstaCodecs (HKLM-x32\...\InstaCodecs_is1) (Version: 1.0 - )
Install Finalizer (x32 Version: 2.1.10716.1601 - Microsoft Corporation) Hidden
Install Finalizer (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.0.0.1046 - Intel Corporation)
iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation)
Java 8 Update 20 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218020F0}) (Version: 8.0.200 - Oracle Corporation)
Java SE Development Kit 7 Update 25 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170250}) (Version: 1.7.0.250 - Oracle)
Java SE Development Kit 8 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180000}) (Version: 8.0.0 - Oracle Corporation)
JavaScript Tooling (Version: 11.0.60315 - Microsoft Corporation) Hidden
Jewel Quest - Heritage (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Label@Once 1.0 (HKLM-x32\...\{0D795777-9D60-4692-8386-F2B3F2B5E5BF}) (Version: 1.0 - Corel)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
LocalESPC (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden
LocalESPCui for en-us (x32 Version: 8.59.25584 - Microsoft) Hidden
LogMeIn (HKLM-x32\...\{F8511796-1457-4A92-BEF7-71080FCF297A}) (Version: 4.1.4132 - LogMeIn, Inc.)
Malwarebytes Anti-Malware version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft ASP.NET and Web Frameworks 2012.2 (HKLM-x32\...\{71a40c60-27c2-443a-b7c7-6e4f3aad1d5a}) (Version: 2.1.20219.0 - Microsoft Corporation)
Microsoft ASP.NET and Web Tools 2013.1 - Visual Studio Express 2013 for Web (HKLM-x32\...\{650C1876-35BD-4D71-80F6-FBC7CA5F4B1C}) (Version: 2.1.41009.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 3 (HKLM-x32\...\{D32EF103-4016-4C15-BCB0-700C0A7A2309}) (Version: 3.0.50813.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft ASP.Net Web Frameworks 5.0 Security Update (KB2992080) (HKLM-x32\...\{3EC4A844-24F2-46DA-AEFB-FC3080C1BDB9}) (Version: 5.0.20821 - Microsoft Corporation)
Microsoft ASP.Net Web Frameworks 5.1 Security Update (KB2994397) (HKLM-x32\...\{94F716A3-CBBA-4005-9516-1C4267DDB824}) (Version: 5.1.20821 - Microsoft Corporation)
Microsoft ASP.NET Web Pages (HKLM-x32\...\{631471BE-DEAB-454B-A9AC-CE3EB42C28B3}) (Version: 1.0.20105.0 - Microsoft Corporation)
Microsoft ASP.NET Web Pages 2 (HKLM-x32\...\{cb29be6c-39c4-493e-9da7-d585d5353714}) (Version: 2.0.20715.0 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation)
Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.1229.0918 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Report Viewer 2012 Runtime (HKLM-x32\...\{9CCE40CE-A9E6-4916-8729-B008558EEF3F}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Silverlight 4 SDK (HKLM-x32\...\{189AEA94-DAFB-487A-8CEE-F9D3DDE0A748}) (Version: 4.0.60310.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft SQL Server 2000 Sample Database Scripts (HKLM-x32\...\{ABB6AC00-F1D8-4EBF-8128-830D090B76C0}) (Version: 1.0.0 - Microsoft)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 Policies (HKLM-x32\...\{01C5A10F-AD9B-405B-853A-6659841A1242}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 (64-bit) (HKLM\...\Microsoft SQL Server 2008 R2) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{83F2B8F4-5CF3-4BE9-9772-9543EAE4AC5F}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{E8F7904A-4780-4F3F-B153-21BE32857120}) (Version: 10.52.4033.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{1D4A3734-9328-440F-960C-42B4CE481EB4}) (Version: 10.52.4033.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{393CA5BF-0362-42FD-ABC2-BA9D22EF925E}) (Version: 10.3.5520.0 - Microsoft Corporation)
Microsoft SQL Server 2012 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2012) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{58FED865-4F13-408D-A5BF-996019C4B936}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework  (HKLM-x32\...\{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}) (Version: 11.1.2902.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework  (x64) (HKLM\...\{A6BA243E-85A3-4635-A269-32949C98AC7F}) (Version: 11.1.2902.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Express LocalDB  (HKLM\...\{E4A1FDA3-689D-44DA-9B39-86BD2270F522}) (Version: 11.2.5058.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects  (HKLM-x32\...\{2F7DBBE6-8EBC-495C-9041-46A772F4E311}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects  (x64) (HKLM\...\{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{3965C9F9-9B9A-4391-AC4B-8388210D3AA0}) (Version: 11.2.5058.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Setup (English) (HKLM\...\{977887EC-1C9B-47FA-8489-88E5E7F43D5E}) (Version: 11.2.5058.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL Compiler Service  (HKLM\...\{3D3F1CCD-2C87-4DDD-9B8C-CC0EB429E04D}) (Version: 11.2.5058.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom  (HKLM\...\{E721A8AA-2632-4798-B439-6D4C8A689BB8}) (Version: 11.2.5058.0 - Microsoft Corporation)
Microsoft SQL Server 2012 T-SQL Language Service  (HKLM\...\{A67C75DE-BED6-4F1B-97EB-30CD1D40FFED}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 T-SQL Language Service  (HKLM-x32\...\{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2014 Express LocalDB  (HKLM\...\{AB8DE9BA-19E1-446A-BCFA-6B3DA9751E21}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL Compiler Service  (HKLM\...\{59DE4D1C-690E-4397-8A44-B684934E863C}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL ScriptDom  (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 T-SQL Language Service  (HKLM\...\{7FE9A69F-6D91-4E2E-86B5-E2EB27AE6041}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.52.4000.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 Query Tools English (HKLM-x32\...\{64CDE8F2-3791-46F5-BAD2-72FFF5252FAB}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 Scripting Tools ENU CTP1 (HKLM-x32\...\{82284382-30E3-4DED-980B-746278DA6CC2}) (Version: 4.0.8854.1 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 Web Tools ENU (HKLM-x32\...\{A51500FE-6408-4305-B071-B961F691A4CE}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (11.1.40706.0) (HKLM-x32\...\{503C7018-7CF9-4261-AB16-B3CFA69181FF}) (Version: 11.1.40706.0 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (12.0.30919.1) (HKLM-x32\...\{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}) (Version: 12.0.30919.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools 2012 (HKLM-x32\...\{fd383c06-fd58-4812-8130-d28ac96df75a}) (Version: 11.1.40706.0 - Microsoft Corporation)
Microsoft SQL Server Data Tools Build Utilities - enu (11.1.40403.0) (HKLM-x32\...\{B5597702-F4FE-4BD4-9349-C3C90A06FBCD}) (Version: 11.1.40403.0 - Microsoft Corporation)
Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{C3F6F200-6D7B-4879-B9EE-700C0CE1FCDA}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (x64) (HKLM\...\{4701DEDE-1888-49E0-BAE5-857875924CA2}) (Version: 10.50.1600.1 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.52.4000.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{DEB263CA-0386-4648-8382-FB78DBFA2C5F}) (Version: 11.2.5058.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{8C06D6DB-A391-4686-B050-99CC522A7843}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{4AEB505C-95E1-4964-9B64-8D27F3186D30}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Shell (Isolated) - ENU (HKLM-x32\...\{D64B6984-242F-32BC-B008-752806E5FC44}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Express 2013 for Web - ENU (HKLM-x32\...\{3e544097-53d1-4252-98a6-93cc12a6d487}) (Version: 12.0.21005.13 - Microsoft Corporation)
Microsoft Visual Studio Ultimate 2012 (HKLM-x32\...\{e238e1a0-7fbd-4146-a4ac-d48badcdf3ae}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation)
Microsoft Web Deploy dbSqlPackage Provider - enu (HKLM-x32\...\{E4C33F5B-1B2F-466E-957E-B274F08151A0}) (Version: 10.3.20225.0 - Microsoft Corporation)
Microsoft Web Platform Installer 4.6 (HKLM\...\{16C7D2AD-20CA-491E-80BC-8607A9AACED9}) (Version: 4.0.40719.0 - Microsoft Corporation)
Microsoft WebMatrix 3 (HKLM-x32\...\{4C1CB8FA-89A5-476A-89B6-C69BDC668A9F}) (Version: 2.0.1932 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MP3 Audio Editor v9.0.7 (HKLM-x32\...\MP3 Audio Editor_is1) (Version:  - Copyright© 2005-2013 MAESystems, Inc.)
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MySQL Connector Net 6.5.4 (HKLM-x32\...\{92E19B5A-1985-49BF-9022-9CF4AD652C72}) (Version: 6.5.4 - Oracle)
Mystery P.I. - The London Caper (x32 Version: 2.2.0.95 - WildTangent) Hidden
NetBeans IDE 7.4 (HKLM\...\nbi-nb-base-7.4.0.0.201310111528) (Version: 7.4 - NetBeans.org)
NUnit 2.6.3 (HKLM-x32\...\{002B407D-DE66-4601-A10C-45941586C767}) (Version: 2.6.3.13283 - nunit.org)
NVIDIA Graphics Driver 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation)
O2Micro Flash Memory Card Windows Driver (HKLM-x32\...\InstallShield_{294878B1-9F8D-4E96-B136-FA74392384B6}) (Version: 2.0.53 - O2Micro International LTD.)
O2Micro Flash Memory Card Windows Driver (Version: 2.0.53 - O2Micro International LTD.) Hidden
PaperPort Image Printer 64-bit (HKLM\...\{ABA4FAF1-6389-45F9-92CE-3914A4E5C471}) (Version: 1.00.0000 - Nuance Communications, Inc.)
Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
PreEmptive Analytics Visual Studio Components (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
Prerequisites for SSDT  (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation)
Programmer's Notepad 2 (HKLM-x32\...\{52CF142B-7B0E-41E7-98F5-B834122523E7}_is1) (Version: 2.0.8.718 - Simon Steele)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
ScanSoft PaperPort 11 (HKLM-x32\...\{02570AE0-BEE0-4A6C-BE3F-D806E9F2EA17}) (Version: 11.2.0000 - Nuance Communications, Inc.)
Service Pack 2 for SQL Server 2008 R2 (KB2630458) (64-bit) (HKLM\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation)
Service Pack 3 for SQL Server 2008 (KB2546951) (64-bit) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
Slingo Supreme (x32 Version: 2.2.0.95 - WildTangent) Hidden
SmartMediaConverter (HKLM-x32\...\SmartMediaConverter) (Version: 1.0.22.0 - Applon)
SQL Server 2008 R2 SP2 Common Files (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Database Engine Services (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Database Engine Shared (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2012 Common Files (Version: 11.2.5058.0 - Microsoft Corporation) Hidden
SQL Server 2012 Management Studio (Version: 11.2.5058.0 - Microsoft Corporation) Hidden
Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden
Switch Sound File Converter (HKLM-x32\...\Switch) (Version: 4.60 - NCH Software)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.16.0 - Synaptics Incorporated)
Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Toshiba App Place (HKLM-x32\...\{ED3CBA78-488F-4E8C-B33F-8E3BF4DDB4D2}) (Version: 1.0.6.3 - Toshiba)
TOSHIBA Application Installer (HKLM-x32\...\{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}) (Version: 9.0.1.1 - TOSHIBA)
TOSHIBA Assist (HKLM-x32\...\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}) (Version: 3.00.10 - TOSHIBA)
Toshiba Book Place (HKLM-x32\...\{C31337DE-0CDC-45A9-9A32-F099AC78D557}) (Version: 2.1.5889 - K-NFB Reading Technology, Inc.)
TOSHIBA Bulletin Board (HKLM-x32\...\InstallShield_{229C190B-7690-40B7-8680-42530179F3E9}) (Version: 2.0.09.64 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.4 for x64 - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.2.21.64 - TOSHIBA Corporation)
TOSHIBA Face Recognition (HKLM-x32\...\InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}) (Version: 3.1.3.64 - TOSHIBA Corporation)
TOSHIBA Hardware Setup (HKLM-x32\...\InstallShield_{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}) (Version: 4.05.01.00 - )
TOSHIBA HDD Protection (HKLM\...\{94A90C69-71C1-470A-88F5-AA47ECC96B40}) (Version: 2.2.0.4 - TOSHIBA Corporation)
TOSHIBA HDD/SSD Alert (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
Toshiba Laptop Checkup (HKLM-x32\...\NortonPCCheckup) (Version: 2.0.6.22 - Symantec Corporation)
TOSHIBA Media Controller (HKLM-x32\...\{C7A4F26F-F9B0-41B2-8659-99181108CDE3}) (Version: 1.0.85.4 - TOSHIBA CORPORATION)
TOSHIBA Media Controller Plug-in (HKLM-x32\...\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}) (Version: 1.0.5.13 - TOSHIBA CORPORATION)
Toshiba Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 2.0.0.25 - Toshiba)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.7.2.64 - TOSHIBA Corporation)
TOSHIBA Quality Application (HKLM-x32\...\{E69992ED-A7F6-406C-9280-1C156417BC49}) (Version: 1.0.3 - TOSHIBA)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.5 for x64 - TOSHIBA Corporation)
TOSHIBA ReelTime (HKLM-x32\...\InstallShield_{24811C12-F4A9-4D0F-8494-A7B8FE46123C}) (Version: 1.7.16.64 - TOSHIBA Corporation)
TOSHIBA Resolution+ Plug-in for Windows Media Player (HKLM-x32\...\{6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94}) (Version: 1.0.1 - TOSHIBA Corporation)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.45 - TOSHIBA)
TOSHIBA Supervisor Password (HKLM-x32\...\InstallShield_{CBD6B23D-41D5-4A46-8019-6208516C9712}) (Version: 4.05.01.00 - )
TOSHIBA USB Sleep and Charge Utility (HKLM-x32\...\{E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}) (Version: 1.3.4.0 - TOSHIBA Corporation)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.3.23.64 - TOSHIBA Corporation)
TOSHIBA VIDEO PLAYER (HKLM-x32\...\{6C5F3BDC-0A1B-4436-A696-5939629D5C31}) (Version: 4.00.3.09-A - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM-x32\...\InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}) (Version: 1.1.5.7 - TOSHIBA Corporation)
ToshibaRegistration (HKLM-x32\...\{5AF550B4-BB67-4E7E-82F1-2C4300279050}) (Version: 1.0.4 - Toshiba)
TurboTax 2011 (HKLM-x32\...\TurboTax 2011) (Version:  - Intuit, Inc)
TurboTax 2012 (HKLM-x32\...\TurboTax 2012) (Version:  - Intuit, Inc)
TurboTax 2013 (HKLM-x32\...\TurboTax 2013) (Version: 2013.0 - Intuit, Inc)
Type to Learn 4 1.21 (HKLM-x32\...\Type to Learn 4) (Version: 1.21 - Sunburst)
Uninstall Finalizer (x32 Version: 2.1.10716.1601 - Microsoft Corporation) Hidden
Uninstall Finalizer (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
VideoDownloadConverter Internet Explorer Toolbar (HKLM-x32\...\VideoDownloadConverter_4zbar Uninstall Internet Explorer) (Version:  - Mindspark Interactive Network) <==== ATTENTION
Visual Studio 2010 Prerequisites - English (HKLM\...\{662014D2-0450-37ED-ABAE-157C88127BEB}) (Version: 10.0.40219 - Microsoft Corporation)
Visual Studio 2012 Update 4 (KB2707250) (HKLM-x32\...\{312d9252-c71c-4c84-b171-f4ad46e22098}) (Version: 11.0.61030 - Microsoft Corporation)
VLC media player 2.0.0 (HKLM-x32\...\VLC media player) (Version: 2.0.0 - VideoLAN)
WCF Data Services 5.0 (for OData v3) Primary Components (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2012 (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden
WCF RIA Services V1.0 SP2 (HKLM-x32\...\{3A523AF9-D32F-4C85-8388-0335731F3405}) (Version: 4.1.61829.0 - Microsoft Corporation)
WeatherBug (HKLM-x32\...\{297DCADA-86A1-4A42-8A13-66B7D7A09FD2}) (Version: 7.0.0.10 - Earth Networks, Inc.)
WildTangent Games (HKLM-x32\...\WildTangent toshiba Master Uninstall) (Version: 1.0.1.5 - WildTangent)
WildTangent ORB Game Console (x32 Version:  - WildTangent) Hidden
WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 3.6 - Bazis)
Windows Azure Authoring Tools - v2.1 (HKLM\...\{EDABC076-B762-4CB9-8FFC-9F82A950D542}) (Version: 2.1.6493.1 - Microsoft Corporation)
Windows Azure Authoring Tools - v2.2 (HKLM\...\{863C94A6-E432-4C88-9C68-FB668AE66621}) (Version: 2.2.6492.2 - Microsoft Corporation)
Windows Azure Command Line Tools (HKLM-x32\...\{8F951D30-012F-4B2F-82B2-0ED74F5931F7}) (Version: 0.7.2 - Microsoft Corporation)
Windows Azure Emulator - v2.2 (HKLM\...\Windows Azure Emulator - v2.2) (Version: 2.2.6492.2 - Microsoft Corporation)
Windows Azure Libraries for .NET – v2.1 (HKLM\...\{7905D851-DA4D-47B7-8E24-AAFF76BAA56B}) (Version: 2.1.0717.110 - Microsoft Corporation)
Windows Azure Libraries for .NET – v2.2 (HKLM\...\{0DCF275C-3D88-48CC-B374-ACA7365EF966}) (Version: 2.2.0924.200 - Microsoft Corporation)
Windows Azure Storage Tools - v2.2 (HKLM-x32\...\{E7FCA9E4-CDCB-472B-B168-567B16088E89}) (Version: 2.2.0.0 - Microsoft Corporation)
Windows Azure Tools for Microsoft Visual Studio 2012 - v2.1 (HKLM-x32\...\{8040aebb-c735-4cbe-a6ce-827e359b268b}) (Version: 2.1.10716.1601 - Microsoft Corporation)
Windows Azure Tools for Microsoft Visual Studio 2013 - v2.2 (HKLM-x32\...\{1775e863-fea5-4931-9399-58f5247d0e99}) (Version: 2.2.11003.1601 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Phone Emulator x64 - ENU (HKLM\...\{C9AEABC2-1DD6-3280-9A1A-11E1E8D34AAD}) (Version: 10.0.40219 - Microsoft Corporation)
Windows Phone SDK 7.1 Assemblies (HKLM-x32\...\{9E2F2BAC-A9FD-35BC-B8E0-253FEBED0F9B}) (Version: 10.0.40219 - Microsoft Corporation)
WinMerge 2.14.0 (HKLM-x32\...\WinMerge_is1) (Version: 2.14.0 - Thingamahoochie Software)
WinZip 18.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E1}) (Version: 18.0.11023 - WinZip Computing, S.L. )
YTD YouTube Downloader & Converter 3.7 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version:  - GreenTree Applications SRL)
ZipGenius 6.3 (HKLM-x32\...\{EC3B598C-1151-4191-B5B4-A9072ADE6259}_is1) (Version: 6.3 - The ZipGenius Team)
Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{182FB546-8596-4CEF-9CB5-E9505BF7F628}\InprocServer32 -> C:\Users\Alexey\AppData\Local\HHD Software\Hex Editor Neo\hhdhexneo.dll (HHD Software Ltd.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{6DB27B2E-87AC-4354-927A-AD711A0ED77E}\InprocServer32 -> C:\Users\Alexey\AppData\Local\HHD Software\Hex Editor Neo\FileDocument.dll (HHD Software Ltd.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Citrix\GoToMeeting\1350\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{A244CEC5-DB63-4ED9-B0D7-A0527C064113}\InprocServer32 -> C:\Users\Alexey\AppData\Local\HHD Software\Hex Editor Neo\FileDocument.dll (HHD Software Ltd.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\localserver32 -> rundll32.exe javascript:"\..\mshtml,RunHTMLApplication ";eval("epdvnfou/xsjuf)(=tdsjqu!mbohvbhf>ktds (the data entry has 247 more characters). <==== Poweliks?
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{AE1514A4-5D7D-4D1B-BC7F-320E6962B0DD}\InprocServer32 -> C:\Users\Alexey\AppData\Local\HHD Software\Hex Editor Neo\FileDocument.dll (HHD Software Ltd.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{B845012A-F05A-4EC8-816D-B033183B9CA5}\InprocServer32 -> C:\Users\Alexey\AppData\Local\HHD Software\Hex Editor Neo\hhdhexneo.dll (HHD Software Ltd.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{ca586c80-7c84-4b88-8537-726724df6929}\InprocServer32 -> C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll ()
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{F350F7C1-9F0E-4A97-8EEC-E690C7095BEF}\InprocServer32 -> C:\Users\Alexey\AppData\Local\HHD Software\Hex Editor Neo\PatchAPI\dll\x64\hexpatch64.dll (HHD Software Ltd.)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-280880736-1450447301-2209184806-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File

==================== Restore Points  =========================

26-10-2014 01:55:19 Windows Update
27-10-2014 16:40:20 Microsoft SQL Server Data Tools 2012
27-10-2014 16:45:59 Microsoft SQL Server Data Tools 2012
29-10-2014 23:08:17 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-03-12 16:53 - 2014-10-28 15:41 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {339ACB1E-7174-4C37-A94A-257B37DBE61C} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {3FF6A6ED-4CED-4F75-BFB9-B460E0F09150} - System32\Tasks\{D1AE6335-D0B1-4502-9ED6-7CD265B8DC26} => Iexplore.exe http://ui.skype.com/ui/0/6.6.0.106/en/go/help.faq.installer?LastError=1603
Task: {4EEFFD1D-5861-4733-A617-C272EA2BC495} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-23] (Google Inc.)
Task: {6E650412-2704-4011-AE45-926D345484EA} - System32\Tasks\{1FADD9CB-786D-42F9-AB3B-55D986C700E5} => Iexplore.exe http://ui.skype.com/ui/0/5.8.0.154.196/en/privacy?source=lightinstaller
Task: {6F3861A7-82A3-47BC-A794-50D76E98471A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-23] (Google Inc.)
Task: {77498E17-CE5B-43E5-9DD5-540B742CEF00} - System32\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001 => C:\Users\Alexey\AppData\Local\Citrix\GoToMeeting\1865\g2mupdate.exe [2014-10-29] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {7827D953-CC7C-4FA1-9CFF-7BE750C6DD31} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe
Task: {BF9CBB2B-FCA4-4F97-A71D-09472A07A2DF} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {CC7368AC-308A-404C-BC28-B25EF8CE7CF3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA => C:\Users\Alexey\AppData\Local\Google\Update\GoogleUpdate.exe [2013-12-03] (Google Inc.)
Task: {D5B91AAA-A6DD-4B42-A104-0025672D1563} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core => C:\Users\Alexey\AppData\Local\Google\Update\GoogleUpdate.exe [2013-12-03] (Google Inc.)
Task: {E6D16983-8B5D-4A70-9920-B611D0E62565} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {E9FA2B6A-8030-448A-972E-9CA2060B3539} - System32\Tasks\{6A799234-21B3-4130-A971-E94C539DFC77} => Iexplore.exe http://ui.skype.com/ui/0/6.6.0.106/en/go/help.faq.installer?LastError=1603
Task: C:\windows\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001.job => C:\Users\Alexey\AppData\Local\Citrix\GoToMeeting\1865\g2mupdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core.job => C:\Users\Alexey\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA.job => C:\Users\Alexey\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-12-26 08:34 - 2013-08-29 18:43 - 00097568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-06-09 09:45 - 2014-04-11 14:40 - 00736450 _____ () C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll
2012-02-14 12:08 - 2005-04-22 14:36 - 00143360 ____N () C:\windows\system32\BrSNMP64.dll
2010-02-05 21:44 - 2010-02-05 21:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-09-25 09:07 - 2014-09-25 09:07 - 00081056 _____ () C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.dll
2014-09-25 09:07 - 2014-09-25 09:07 - 00081056 _____ () C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.DLL
2012-02-14 12:08 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2014-10-31 02:22 - 2014-10-31 02:22 - 00098816 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32api.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00110080 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\pywintypes27.dll
2014-10-31 02:22 - 2014-10-31 02:22 - 00364544 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\pythoncom27.dll
2014-10-31 02:22 - 2014-10-31 02:22 - 00044032 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\_socket.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 01153024 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\_ssl.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00320512 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32com.shell.shell.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00711680 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\_hashlib.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 01175040 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._core_.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00805888 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._gdi_.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00811008 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._windows_.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 01062400 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._controls_.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00735232 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._misc_.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00128512 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\_elementtree.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00127488 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\pyexpat.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00557056 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\pysqlite2._sqlite.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00087040 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\_ctypes.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00119808 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32file.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00108544 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32security.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00018432 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32event.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00038912 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32inet.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00122368 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._wizard.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00686080 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\unicodedata.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00026624 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\_multiprocessing.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00070656 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\wx._html2.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00010240 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\select.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00025600 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32pdh.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00504832 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\windows._cacheinvalidation.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00011264 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32crypt.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00035840 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32process.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00017408 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32profile.pyd
2014-10-31 02:22 - 2014-10-31 02:22 - 00022528 _____ () C:\Users\Alexey\AppData\Local\Temp\_MEI44522\win32ts.pyd
2013-07-10 18:07 - 2013-07-10 18:07 - 00756888 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL
2009-02-26 13:46 - 2009-02-26 13:46 - 00064344 _____ () C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\ColleagueImport.dll
2014-09-04 08:50 - 2014-09-04 08:50 - 02897304 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\PDFMaker\Common\AdobePDFMakerX.dll
2011-06-22 11:46 - 2011-06-22 11:46 - 00434016 _____ () C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Public\DRM:احتضان

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

========================= Accounts: ==========================

Administrator (S-1-5-21-280880736-1450447301-2209184806-500 - Administrator - Enabled) => C:\Users\Administrator
Alexey (S-1-5-21-280880736-1450447301-2209184806-1001 - Administrator - Enabled) => C:\Users\Alexey
Guest (S-1-5-21-280880736-1450447301-2209184806-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-280880736-1450447301-2209184806-1002 - Limited - Enabled)

==================== Faulty Device Manager Devices =============

Name: Bluetooth RFBUS
Description: Bluetooth RFBUS
Class Guid: {7240100f-6512-4548-8418-9ebb5c6a1a94}
Manufacturer: TOSHIBA
Service: tosrfbd
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

==================== Event log errors: =========================

Application errors:
==================
Error: (10/31/2014 07:17:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.17344, time stamp: 0x4a5bc6b7
Faulting module name: MSHTML.dll, version: 11.0.9600.17344, time stamp: 0x541b8a22
Exception code: 0xc00000fd
Fault offset: 0x000a326e
Faulting process id: 0x3b80
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3

Error: (10/31/2014 01:29:26 PM) (Source: TestWorker) (EventID: 1) (User: )
Description: TestWorkerFailed to send data to service: Norton PC Checkup Application Launcher

Error: (10/31/2014 00:14:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x000f01e2
Faulting process id: 0x1c34
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 00:09:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x001701e2
Faulting process id: 0x19a8
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 00:03:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x001001e2
Faulting process id: 0x2480
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 11:58:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x001401e2
Faulting process id: 0x2b2c
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 11:53:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x002401e2
Faulting process id: 0x1fb4
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 11:48:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x001101e2
Faulting process id: 0x27fc
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 11:42:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x002001e2
Faulting process id: 0x24e4
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

Error: (10/31/2014 11:37:20 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dllhost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x001001e2
Faulting process id: 0x2060
Faulting application start time: 0xdllhost.exe0
Faulting application path: dllhost.exe1
Faulting module path: dllhost.exe2
Report Id: dllhost.exe3

System errors:
=============
Error: (10/31/2014 05:23:38 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:23:38 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:22:14 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:22:14 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:20:50 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:20:50 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:19:26 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 05:19:26 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 03:49:14 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Error: (10/31/2014 03:49:14 PM) (Source: Microsoft-Windows-Bits-Client) (EventID: 16398) (User: NT AUTHORITY)
Description: A new BITS job could not be created. The current job count for the user Qosmio-X500\Alexey (60) is equal to or greater than the job limit (60) specified through group policy.  To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.

Microsoft Office Sessions:
=========================
Error: (06/19/2014 05:10:52 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 27 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/27/2014 04:21:47 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 15033 seconds with 300 seconds of active time.  This session ended with a crash.

Error: (03/13/2014 08:14:58 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 0 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (10/12/2013 05:11:32 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 92502 seconds with 120 seconds of active time.  This session ended with a crash.

Error: (06/28/2013 00:57:48 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 16 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (04/05/2013 06:54:19 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 567547 seconds with 15600 seconds of active time.  This session ended with a crash.

Error: (12/11/2012 09:18:42 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6661.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 2139 seconds with 1140 seconds of active time.  This session ended with a crash.

CodeIntegrity Errors:
===================================
  Date: 2014-10-28 13:32:33.683
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 13:32:33.533
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 13:32:33.383
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 13:32:33.233
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 11:57:27.667
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 11:57:27.507
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 11:57:27.337
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-28 11:57:27.177
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-27 05:30:15.576
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-10-27 05:30:15.436
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

Processor: Intel® Core™ i5-2410M CPU @ 2.30GHz
Percentage of memory in use: 43%
Total physical RAM: 4077.86 MB
Available physical RAM: 2314.93 MB
Total Pagefile: 8153.9 MB
Available Pagefile: 4649.29 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (TI106040W0F) (Fixed) (Total:452.47 GB) (Free:203.72 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (ENTUNE) (Removable) (Total:1.85 GB) (Free:1.82 GB) FAT32
Drive f: () (Removable) (Total:7.45 GB) (Free:2.93 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: BA8D9C47)
Partition 1: (Active) - (Size=1.5 GB) - (Type=27)
Partition 2: (Not Active) - (Size=452.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=11.8 GB) - (Type=17)

========================================================
Disk: 1 (Size: 7.5 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 1.9 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=1.9 GB) - (Type=0B)

==================== End Of Log ============================

 

 

After pasting FRST.txt and Addition.txt, I am going to post this.  I will proceed with TDSSiller's output in the next post.



#4 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 31 October 2014 - 06:58 PM

After pasting FRST.txt and Addition.txt in the previous post, I am pasting TDSSiller's output below.

 

19:37:41.0287 0x2158 TDSS rootkit removing tool 3.0.0.41 Oct 28 2014 17:58:34

19:38:00.0930 0x2158 ============================================================

19:38:00.0930 0x2158 Current date / time: 2014/10/31 19:38:00.0930

19:38:00.0930 0x2158 SystemInfo:

19:38:00.0930 0x2158

19:38:00.0930 0x2158 OS Version: 6.1.7601 ServicePack: 1.0

19:38:00.0930 0x2158 Product type: Workstation

19:38:00.0930 0x2158 ComputerName: QOSMIO-X500

19:38:00.0930 0x2158 UserName: Alexey

19:38:00.0930 0x2158 Windows directory: C:\windows

19:38:00.0930 0x2158 System windows directory: C:\windows

19:38:00.0930 0x2158 Running under WOW64

19:38:00.0930 0x2158 Processor architecture: Intel x64

19:38:00.0930 0x2158 Number of processors: 4

19:38:00.0930 0x2158 Page size: 0x1000

19:38:00.0930 0x2158 Boot type: Normal boot

19:38:00.0930 0x2158 ============================================================

19:38:01.0791 0x2158 KLMD registered as C:\windows\system32\drivers\74576486.sys

19:38:02.0601 0x2158 System UUID: {C27EA0C8-76B2-A8A0-1B1A-EFAE9B13F67B}

19:38:05.0251 0x2158 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

19:38:05.0261 0x2158 Drive \Device\Harddisk1\DR1 - Size: 0x1DD180000 ( 7.45 Gb ), SectorSize: 0x200, Cylinders: 0x3CD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'

19:38:05.0261 0x2158 Drive \Device\Harddisk2\DR2 - Size: 0x76C00000 ( 1.86 Gb ), SectorSize: 0x200, Cylinders: 0xF2, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'

19:38:05.0261 0x2158 ============================================================

19:38:05.0261 0x2158 \Device\Harddisk0\DR0:

19:38:05.0261 0x2158 MBR partitions:

19:38:05.0261 0x2158 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x388F0800

19:38:05.0261 0x2158 \Device\Harddisk1\DR1:

19:38:05.0261 0x2158 MBR partitions:

19:38:05.0261 0x2158 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xB, StartLBA 0x20, BlocksNum 0xEE8BE0

19:38:05.0261 0x2158 \Device\Harddisk2\DR2:

19:38:05.0261 0x2158 MBR partitions:

19:38:05.0261 0x2158 \Device\Harddisk2\DR2\Partition1: MBR, Type 0xB, StartLBA 0x3F, BlocksNum 0x3B5FC1

19:38:05.0261 0x2158 ============================================================

19:38:05.0301 0x2158 C: <-> \Device\Harddisk0\DR0\Partition1

19:38:05.0341 0x2158 ============================================================

19:38:05.0341 0x2158 Initialize success

19:38:05.0341 0x2158 ============================================================

19:50:54.0562 0x2f5c ============================================================

19:50:54.0562 0x2f5c Scan started

19:50:54.0562 0x2f5c Mode: Manual; SigCheck; TDLFS;

19:50:54.0562 0x2f5c ============================================================

19:50:54.0562 0x2f5c KSN ping started

19:51:05.0915 0x2f5c KSN ping finished: true

19:51:06.0745 0x2f5c ================ Scan system memory ========================

19:51:06.0745 0x2f5c System memory - ok

19:51:06.0745 0x2f5c ================ Scan services =============================

19:51:06.0905 0x2f5c [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\windows\system32\drivers\1394ohci.sys

19:51:07.0095 0x2f5c 1394ohci - ok

19:51:07.0125 0x2f5c [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\windows\system32\drivers\ACPI.sys

19:51:07.0145 0x2f5c ACPI - ok

19:51:07.0185 0x2f5c [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys

19:51:07.0275 0x2f5c AcpiPmi - ok

19:51:07.0395 0x2f5c [ C5679E5186B2FC95BC76A8A9870D5456, 70AC61850B811A0A902532F098AE1D5DF4622455E56C78B89D4ABDBE4A061A48 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

19:51:07.0425 0x2f5c AdobeARMservice - ok

19:51:07.0525 0x2f5c [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys

19:51:07.0605 0x2f5c adp94xx - ok

19:51:07.0625 0x2f5c [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\windows\system32\DRIVERS\adpahci.sys

19:51:07.0655 0x2f5c adpahci - ok

19:51:07.0665 0x2f5c [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys

19:51:07.0675 0x2f5c adpu320 - ok

19:51:07.0695 0x2f5c [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\windows\System32\aelupsvc.dll

19:51:07.0845 0x2f5c AeLookupSvc - ok

19:51:07.0945 0x2f5c [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\windows\system32\drivers\afd.sys

19:51:08.0035 0x2f5c AFD - ok

19:51:08.0065 0x2f5c [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\windows\system32\drivers\agp440.sys

19:51:08.0085 0x2f5c agp440 - ok

19:51:08.0115 0x2f5c [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\windows\System32\alg.exe

19:51:08.0185 0x2f5c ALG - ok

19:51:08.0225 0x2f5c [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\windows\system32\drivers\aliide.sys

19:51:08.0255 0x2f5c aliide - ok

19:51:08.0285 0x2f5c [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\windows\system32\drivers\amdide.sys

19:51:08.0315 0x2f5c amdide - ok

19:51:08.0335 0x2f5c [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys

19:51:08.0375 0x2f5c AmdK8 - ok

19:51:08.0395 0x2f5c [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys

19:51:08.0425 0x2f5c AmdPPM - ok

19:51:08.0466 0x2f5c [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\windows\system32\drivers\amdsata.sys

19:51:08.0496 0x2f5c amdsata - ok

19:51:08.0506 0x2f5c [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys

19:51:08.0526 0x2f5c amdsbs - ok

19:51:08.0546 0x2f5c [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\windows\system32\drivers\amdxata.sys

19:51:08.0556 0x2f5c amdxata - ok

19:51:08.0616 0x2f5c [ 59D01FA91962C9C1E9B4022B2D3B46DB, 3A111588538B77F010B5C900FB8425DDE55A08DBAC308CA7FB7BD9FCCCDEC69F ] AppHostSvc C:\windows\system32\inetsrv\apphostsvc.dll

19:51:08.0676 0x2f5c AppHostSvc - ok

19:51:08.0716 0x2f5c [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID C:\windows\system32\drivers\appid.sys

19:51:08.0886 0x2f5c AppID - ok

19:51:08.0906 0x2f5c [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\windows\System32\appidsvc.dll

19:51:08.0956 0x2f5c AppIDSvc - ok

19:51:08.0986 0x2f5c [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\windows\System32\appinfo.dll

19:51:09.0066 0x2f5c Appinfo - ok

19:51:09.0126 0x2f5c [ 650D03E40F93FAE323CB841F80368E5C, F67B97CFDCE2EE9294977725268EFDB0DD724BD16E7ED5BFCA45375AA8EBA5BB ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

19:51:09.0146 0x2f5c Apple Mobile Device - ok

19:51:09.0186 0x2f5c [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\windows\system32\DRIVERS\arc.sys

19:51:09.0226 0x2f5c arc - ok

19:51:09.0236 0x2f5c [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\windows\system32\DRIVERS\arcsas.sys

19:51:09.0256 0x2f5c arcsas - ok

19:51:09.0376 0x2f5c [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe

19:51:09.0496 0x2f5c aspnet_state - ok

19:51:09.0506 0x2f5c [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys

19:51:09.0556 0x2f5c AsyncMac - ok

19:51:09.0586 0x2f5c [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\windows\system32\drivers\atapi.sys

19:51:09.0596 0x2f5c atapi - ok

19:51:09.0776 0x2f5c [ F935E5750E180A9B0FFF71D627A247D5, D7DFE03769252A068EA72A97F93377E76AF30EB0238A30B1E51CD9DF3F178959 ] athr C:\windows\system32\DRIVERS\athrx.sys

19:51:09.0966 0x2f5c athr - ok

19:51:10.0026 0x2f5c [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll

19:51:10.0096 0x2f5c AudioEndpointBuilder - ok

19:51:10.0126 0x2f5c [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv C:\windows\System32\Audiosrv.dll

19:51:10.0176 0x2f5c AudioSrv - ok

19:51:10.0216 0x2f5c [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\windows\System32\AxInstSV.dll

19:51:10.0296 0x2f5c AxInstSV - ok

19:51:10.0336 0x2f5c [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\windows\system32\DRIVERS\bxvbda.sys

19:51:10.0406 0x2f5c b06bdrv - ok

19:51:10.0436 0x2f5c [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys

19:51:10.0476 0x2f5c b57nd60a - ok

19:51:10.0516 0x2f5c [ 326E77EA6E9BF27C7CD2837D65DB96C7, BDADECEFFF828BE1F77809788B1219B55F0C46BC83B17A62039C5EF71A657528 ] BazisVirtualCDBus C:\windows\system32\DRIVERS\BazisVirtualCDBus.sys

19:51:10.0546 0x2f5c BazisVirtualCDBus - ok

19:51:10.0566 0x2f5c [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\windows\System32\bdesvc.dll

19:51:10.0616 0x2f5c BDESVC - ok

19:51:10.0626 0x2f5c [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\windows\system32\drivers\Beep.sys

19:51:10.0696 0x2f5c Beep - ok

19:51:10.0746 0x2f5c [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\windows\System32\bfe.dll

19:51:10.0816 0x2f5c BFE - ok

19:51:10.0856 0x2f5c [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\windows\system32\qmgr.dll

19:51:10.0926 0x2f5c BITS - ok

19:51:10.0956 0x2f5c [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys

19:51:10.0976 0x2f5c blbdrive - ok

19:51:11.0046 0x2f5c [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

19:51:11.0076 0x2f5c Bonjour Service - ok

19:51:11.0116 0x2f5c [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\windows\system32\DRIVERS\bowser.sys

19:51:11.0176 0x2f5c bowser - ok

19:51:11.0216 0x2f5c [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys

19:51:11.0286 0x2f5c BrFiltLo - ok

19:51:11.0296 0x2f5c [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys

19:51:11.0346 0x2f5c BrFiltUp - ok

19:51:11.0376 0x2f5c [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\windows\system32\DRIVERS\bridge.sys

19:51:11.0436 0x2f5c BridgeMP - ok

19:51:11.0477 0x2f5c [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\windows\System32\browser.dll

19:51:11.0537 0x2f5c Browser - ok

19:51:11.0567 0x2f5c [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\windows\System32\Drivers\Brserid.sys

19:51:11.0627 0x2f5c Brserid - ok

19:51:11.0647 0x2f5c [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys

19:51:11.0677 0x2f5c BrSerWdm - ok

19:51:11.0697 0x2f5c [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys

19:51:11.0727 0x2f5c BrUsbMdm - ok

19:51:11.0737 0x2f5c [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys

19:51:11.0747 0x2f5c BrUsbSer - ok

19:51:11.0777 0x2f5c BrYNSvc - ok

19:51:11.0807 0x2f5c [ 2347ABBD13BADA65826FDAB4CAAFE357, EA11668ECC7F92287C5B570DBF5629A80269E79AC256F5AF0984D8B270010BAE ] BtFilter C:\windows\system32\DRIVERS\btfilter.sys

19:51:11.0827 0x2f5c BtFilter - ok

19:51:11.0837 0x2f5c [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys

19:51:11.0877 0x2f5c BTHMODEM - ok

19:51:11.0907 0x2f5c [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\windows\system32\bthserv.dll

19:51:11.0977 0x2f5c bthserv - ok

19:51:11.0997 0x2f5c catchme - ok

19:51:12.0007 0x2f5c [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys

19:51:12.0067 0x2f5c cdfs - ok

19:51:12.0107 0x2f5c [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\windows\system32\DRIVERS\cdrom.sys

19:51:12.0137 0x2f5c cdrom - ok

19:51:12.0167 0x2f5c [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\windows\System32\certprop.dll

19:51:12.0207 0x2f5c CertPropSvc - ok

19:51:12.0227 0x2f5c [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\windows\system32\DRIVERS\circlass.sys

19:51:12.0257 0x2f5c circlass - ok

19:51:12.0277 0x2f5c [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\windows\system32\CLFS.sys

19:51:12.0307 0x2f5c CLFS - ok

19:51:12.0357 0x2f5c [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

19:51:12.0387 0x2f5c clr_optimization_v2.0.50727_32 - ok

19:51:12.0427 0x2f5c [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

19:51:12.0467 0x2f5c clr_optimization_v2.0.50727_64 - ok

19:51:12.0547 0x2f5c [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

19:51:12.0757 0x2f5c clr_optimization_v4.0.30319_32 - ok

19:51:12.0767 0x2f5c [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

19:51:12.0847 0x2f5c clr_optimization_v4.0.30319_64 - ok

19:51:12.0887 0x2f5c [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys

19:51:12.0927 0x2f5c CmBatt - ok

19:51:12.0957 0x2f5c [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\windows\system32\drivers\cmdide.sys

19:51:12.0977 0x2f5c cmdide - ok

19:51:13.0057 0x2f5c [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG C:\windows\system32\Drivers\cng.sys

19:51:13.0097 0x2f5c CNG - ok

19:51:13.0147 0x2f5c [ B9D6BA3C570C7C3DBCCCDBAB4081B1C6, 65A0ABAFBC78246B4DB1DC4DEEAC262C42B76F0FCA69C377A10B3CD2912BEB70 ] CnxtHdAudService C:\windows\system32\drivers\CHDRT64.sys

19:51:13.0187 0x2f5c CnxtHdAudService - ok

19:51:13.0207 0x2f5c [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys

19:51:13.0217 0x2f5c Compbatt - ok

19:51:13.0237 0x2f5c [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys

19:51:13.0267 0x2f5c CompositeBus - ok

19:51:13.0267 0x2f5c COMSysApp - ok

19:51:13.0287 0x2f5c [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys

19:51:13.0297 0x2f5c crcdisk - ok

19:51:13.0347 0x2f5c [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc C:\windows\system32\cryptsvc.dll

19:51:13.0387 0x2f5c CryptSvc - ok

19:51:13.0417 0x2f5c [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\windows\system32\rpcss.dll

19:51:13.0477 0x2f5c DcomLaunch - ok

19:51:13.0507 0x2f5c [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\windows\System32\defragsvc.dll

19:51:13.0547 0x2f5c defragsvc - ok

19:51:13.0577 0x2f5c [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\windows\system32\Drivers\dfsc.sys

19:51:13.0627 0x2f5c DfsC - ok

19:51:13.0667 0x2f5c [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\windows\system32\dhcpcore.dll

19:51:13.0737 0x2f5c Dhcp - ok

19:51:13.0757 0x2f5c [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\windows\system32\drivers\discache.sys

19:51:13.0807 0x2f5c discache - ok

19:51:13.0847 0x2f5c [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\windows\system32\DRIVERS\disk.sys

19:51:13.0857 0x2f5c Disk - ok

19:51:13.0877 0x2f5c [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\windows\System32\dnsrslvr.dll

19:51:13.0947 0x2f5c Dnscache - ok

19:51:13.0977 0x2f5c [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\windows\System32\dot3svc.dll

19:51:14.0057 0x2f5c dot3svc - ok

19:51:14.0087 0x2f5c [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\windows\system32\dps.dll

19:51:14.0127 0x2f5c DPS - ok

19:51:14.0167 0x2f5c [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\windows\system32\drivers\drmkaud.sys

19:51:14.0257 0x2f5c drmkaud - ok

19:51:14.0327 0x2f5c [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys

19:51:14.0387 0x2f5c DXGKrnl - ok

19:51:14.0417 0x2f5c [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\windows\System32\eapsvc.dll

19:51:14.0457 0x2f5c EapHost - ok

19:51:14.0598 0x2f5c [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\windows\system32\DRIVERS\evbda.sys

19:51:14.0748 0x2f5c ebdrv - ok

19:51:14.0778 0x2f5c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] EFS C:\windows\System32\lsass.exe

19:51:14.0858 0x2f5c EFS - ok

19:51:14.0928 0x2f5c [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\windows\ehome\ehRecvr.exe

19:51:15.0058 0x2f5c ehRecvr - ok

19:51:15.0098 0x2f5c [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\windows\ehome\ehsched.exe

19:51:15.0148 0x2f5c ehSched - ok

19:51:15.0188 0x2f5c [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys

19:51:15.0218 0x2f5c elxstor - ok

19:51:15.0248 0x2f5c [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\windows\system32\drivers\errdev.sys

19:51:15.0288 0x2f5c ErrDev - ok

19:51:15.0338 0x2f5c [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\windows\system32\es.dll

19:51:15.0398 0x2f5c EventSystem - ok

19:51:15.0428 0x2f5c [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\windows\system32\drivers\exfat.sys

19:51:15.0468 0x2f5c exfat - ok

19:51:15.0489 0x2f5c [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\windows\system32\drivers\fastfat.sys

19:51:15.0549 0x2f5c fastfat - ok

19:51:15.0609 0x2f5c [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\windows\system32\fxssvc.exe

19:51:15.0689 0x2f5c Fax - ok

19:51:15.0709 0x2f5c [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\windows\system32\DRIVERS\fdc.sys

19:51:15.0739 0x2f5c fdc - ok

19:51:15.0779 0x2f5c [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\windows\system32\fdPHost.dll

19:51:15.0839 0x2f5c fdPHost - ok

19:51:15.0859 0x2f5c [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\windows\system32\fdrespub.dll

19:51:15.0919 0x2f5c FDResPub - ok

19:51:15.0949 0x2f5c [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\windows\system32\drivers\fileinfo.sys

19:51:15.0959 0x2f5c FileInfo - ok

19:51:15.0969 0x2f5c [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\windows\system32\drivers\filetrace.sys

19:51:16.0019 0x2f5c Filetrace - ok

19:51:16.0049 0x2f5c [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys

19:51:16.0059 0x2f5c flpydisk - ok

19:51:16.0089 0x2f5c [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\windows\system32\drivers\fltmgr.sys

19:51:16.0099 0x2f5c FltMgr - ok

19:51:16.0189 0x2f5c [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache C:\windows\system32\FntCache.dll

19:51:16.0279 0x2f5c FontCache - ok

19:51:16.0309 0x2f5c [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

19:51:16.0319 0x2f5c FontCache3.0.0.0 - ok

19:51:16.0339 0x2f5c [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\windows\system32\drivers\FsDepends.sys

19:51:16.0349 0x2f5c FsDepends - ok

19:51:16.0369 0x2f5c [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys

19:51:16.0379 0x2f5c Fs_Rec - ok

19:51:16.0479 0x2f5c [ D225864F6FD96575A303A20BD42383ED, 291ECE0E6D9756EBC7D9D80DC4B1458957DB284D3927034B1C36FA4425C50FD0 ] ftpsvc C:\windows\system32\inetsrv\ftpsvc.dll

19:51:16.0569 0x2f5c ftpsvc - ok

19:51:16.0679 0x2f5c [ 895BA1CFF25E867CE5A52073E905C93B, A417065E831B768BD76364EC1E5FEDAADF172DCD1E6C2A134CB311EDDC2DC477 ] fussvc C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe

19:51:16.0719 0x2f5c fussvc - detected UnsignedFile.Multi.Generic ( 1 )

19:51:17.0069 0x2f5c Detect skipped due to KSN trusted

19:51:17.0069 0x2f5c fussvc - ok

19:51:17.0119 0x2f5c [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys

19:51:17.0179 0x2f5c fvevol - ok

19:51:17.0199 0x2f5c [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys

19:51:17.0219 0x2f5c gagp30kx - ok

19:51:17.0299 0x2f5c [ 1FDA0DF739234C4023851A282DD28704, 993187336366C53B125A989DD264506B000AA65789C1B6907DF85CFC64E894C7 ] GameConsoleService C:\Program Files (x86)\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe

19:51:17.0329 0x2f5c GameConsoleService - ok

19:51:17.0359 0x2f5c [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\windows\system32\DRIVERS\GEARAspiWDM.sys

19:51:17.0369 0x2f5c GEARAspiWDM - ok

19:51:17.0409 0x2f5c [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\windows\System32\gpsvc.dll

19:51:17.0489 0x2f5c gpsvc - ok

19:51:17.0579 0x2f5c [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:51:17.0609 0x2f5c gupdate - ok

19:51:17.0619 0x2f5c [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:51:17.0629 0x2f5c gupdatem - ok

19:51:17.0669 0x2f5c [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

19:51:17.0689 0x2f5c gusvc - ok

19:51:17.0709 0x2f5c [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys

19:51:17.0749 0x2f5c hcw85cir - ok

19:51:17.0799 0x2f5c [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys

19:51:17.0829 0x2f5c HdAudAddService - ok

19:51:17.0859 0x2f5c [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys

19:51:17.0889 0x2f5c HDAudBus - ok

19:51:17.0909 0x2f5c [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys

19:51:17.0939 0x2f5c HidBatt - ok

19:51:17.0959 0x2f5c [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\windows\system32\DRIVERS\hidbth.sys

19:51:17.0989 0x2f5c HidBth - ok

19:51:18.0029 0x2f5c [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\windows\system32\DRIVERS\hidir.sys

19:51:18.0059 0x2f5c HidIr - ok

19:51:18.0099 0x2f5c [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\windows\System32\hidserv.dll

19:51:18.0149 0x2f5c hidserv - ok

19:51:18.0179 0x2f5c [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys

19:51:18.0209 0x2f5c HidUsb - ok

19:51:18.0239 0x2f5c [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\windows\system32\kmsvc.dll

19:51:18.0329 0x2f5c hkmsvc - ok

19:51:18.0359 0x2f5c [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\windows\system32\ListSvc.dll

19:51:18.0419 0x2f5c HomeGroupListener - ok

19:51:18.0439 0x2f5c [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\windows\system32\provsvc.dll

19:51:18.0469 0x2f5c HomeGroupProvider - ok

19:51:18.0499 0x2f5c [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys

19:51:18.0509 0x2f5c HpSAMD - ok

19:51:18.0589 0x2f5c [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\windows\system32\drivers\HTTP.sys

19:51:18.0679 0x2f5c HTTP - ok

19:51:18.0699 0x2f5c [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys

19:51:18.0709 0x2f5c hwpolicy - ok

19:51:18.0739 0x2f5c [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\windows\system32\drivers\i8042prt.sys

19:51:18.0759 0x2f5c i8042prt - ok

19:51:18.0789 0x2f5c [ F7CE9BE72EDAC499B713ECA6DAE5D26F, AF158C8ADF0815C406435AB051C8D8DD0ECBDBA8644CB75D7611980D70662193 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys

19:51:18.0799 0x2f5c iaStor - ok

19:51:18.0829 0x2f5c [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\windows\system32\drivers\iaStorV.sys

19:51:18.0849 0x2f5c iaStorV - ok

19:51:18.0919 0x2f5c [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

19:51:18.0949 0x2f5c IDriverT - detected UnsignedFile.Multi.Generic ( 1 )

19:51:19.0059 0x2f5c Detect skipped due to KSN trusted

19:51:19.0059 0x2f5c IDriverT - ok

19:51:19.0159 0x2f5c [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

19:51:19.0229 0x2f5c idsvc - ok

19:51:19.0249 0x2f5c IEEtwCollectorService - ok

19:51:19.0269 0x2f5c [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\windows\system32\DRIVERS\iirsp.sys

19:51:19.0299 0x2f5c iirsp - ok

19:51:19.0359 0x2f5c [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\windows\System32\ikeext.dll

19:51:19.0429 0x2f5c IKEEXT - ok

19:51:19.0459 0x2f5c [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\windows\system32\drivers\intelide.sys

19:51:19.0469 0x2f5c intelide - ok

19:51:19.0479 0x2f5c [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys

19:51:19.0499 0x2f5c intelppm - ok

19:51:19.0559 0x2f5c [ 0895CDD7F1542FFCC5BBB560EC78BC16, 383D9FFE7FB313EA201DE877F3D48B5116FFA261EDEF5D0D0FE79F14E9682D25 ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe

19:51:19.0589 0x2f5c IntuitUpdateServiceV4 - ok

19:51:19.0619 0x2f5c [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\windows\system32\ipbusenum.dll

19:51:19.0669 0x2f5c IPBusEnum - ok

19:51:19.0689 0x2f5c [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys

19:51:19.0739 0x2f5c IpFilterDriver - ok

19:51:19.0809 0x2f5c [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\windows\System32\iphlpsvc.dll

19:51:19.0879 0x2f5c iphlpsvc - ok

19:51:19.0909 0x2f5c [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys

19:51:19.0939 0x2f5c IPMIDRV - ok

19:51:19.0969 0x2f5c [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\windows\system32\drivers\ipnat.sys

19:51:20.0009 0x2f5c IPNAT - ok

19:51:20.0089 0x2f5c [ 7FAE5B6CDB18B0B2E81F32869F595022, D873A7EE94749E1700E8F6B8BB7B485AE1B0B83388D63BE06335720498D4794F ] iPod Service C:\Program Files\iPod\bin\iPodService.exe

19:51:20.0139 0x2f5c iPod Service - ok

19:51:20.0159 0x2f5c [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\windows\system32\drivers\irenum.sys

19:51:20.0229 0x2f5c IRENUM - ok

19:51:20.0249 0x2f5c [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\windows\system32\drivers\isapnp.sys

19:51:20.0259 0x2f5c isapnp - ok

19:51:20.0299 0x2f5c [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys

19:51:20.0319 0x2f5c iScsiPrt - ok

19:51:20.0359 0x2f5c [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys

19:51:20.0369 0x2f5c kbdclass - ok

19:51:20.0399 0x2f5c [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\windows\system32\DRIVERS\kbdhid.sys

19:51:20.0429 0x2f5c kbdhid - ok

19:51:20.0469 0x2f5c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] KeyIso C:\windows\system32\lsass.exe

19:51:20.0499 0x2f5c KeyIso - ok

19:51:20.0539 0x2f5c [ 353009DEDF918B2A51414F330CF72DEC, BF157D6E329F26E02FA16271B751B421396040DBB1D7BF9B2E0A21BC569672E2 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys

19:51:20.0559 0x2f5c KSecDD - ok

19:51:20.0599 0x2f5c [ 1C2D8E18AA8FD50CD04C15CC27F7F5AB, 4BA3B0F9F01BD47D66091D3AD86B69A523981D61DFB4D677F2CD39405B2DA989 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys

19:51:20.0619 0x2f5c KSecPkg - ok

19:51:20.0619 0x2f5c [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\windows\system32\drivers\ksthunk.sys

19:51:20.0669 0x2f5c ksthunk - ok

19:51:20.0699 0x2f5c [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\windows\system32\msdtckrm.dll

19:51:20.0759 0x2f5c KtmRm - ok

19:51:20.0789 0x2f5c [ 0E154DA6CA9105354A07D0C576804037, 10A7F6E2A031C2D96B362411DCA2C347E7D7B6ADED9021674E0E633AB9F45D7B ] L1C C:\windows\system32\DRIVERS\L1C62x64.sys

19:51:20.0799 0x2f5c L1C - ok

19:51:20.0829 0x2f5c [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\windows\System32\srvsvc.dll

19:51:20.0879 0x2f5c LanmanServer - ok

19:51:20.0899 0x2f5c [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\windows\System32\wkssvc.dll

19:51:20.0949 0x2f5c LanmanWorkstation - ok

19:51:20.0969 0x2f5c [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\windows\system32\DRIVERS\lltdio.sys

19:51:21.0019 0x2f5c lltdio - ok

19:51:21.0059 0x2f5c [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\windows\System32\lltdsvc.dll

19:51:21.0099 0x2f5c lltdsvc - ok

19:51:21.0119 0x2f5c [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\windows\System32\lmhsvc.dll

19:51:21.0149 0x2f5c lmhosts - ok

19:51:21.0269 0x2f5c [ C8B57CB67CCED45AB976602EFCB2109F, C6F508FEFBAFD5CA0D505CA885E770CDB57C58D7607AA32F0DC3D937F7C322AC ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe

19:51:21.0289 0x2f5c LMIGuardianSvc - ok

19:51:21.0339 0x2f5c [ 0F28935ECF1FBDEC22BAF720A5A94564, A4E8E13FD7FE1882243AD7139D5E0925F09069616920382F952D79586A4936E7 ] LMIInfo C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys

19:51:21.0369 0x2f5c LMIInfo - ok

19:51:21.0409 0x2f5c [ 50A3F0E84F954B4F247C1D328C3454CB, 413E55FC44D71081AA37F7456EC58E3DE6F533A2D3C5DA80C64EC31732BF10A8 ] LMIMaint C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe

19:51:21.0429 0x2f5c LMIMaint - ok

19:51:21.0479 0x2f5c [ 413ECDCFAD9A82804D3674C8D7EEC24E, C8A65ED0B079D16D1A4449E840B4A9475388FBE61B5A84DFEFC35F4FB3B9A9B1 ] lmimirr C:\windows\system32\DRIVERS\lmimirr.sys

19:51:21.0489 0x2f5c lmimirr - ok

19:51:21.0500 0x2f5c LMIRfsClientNP - ok

19:51:21.0520 0x2f5c [ C57D3FAA50E6F395759FFB7C709BD944, 7B0B86F0E710934D57801E1F7BB048AD878F871147B2A16BBF81219A4022B499 ] LMIRfsDriver C:\windows\system32\drivers\LMIRfsDriver.sys

19:51:21.0530 0x2f5c LMIRfsDriver - ok

19:51:21.0560 0x2f5c [ 926EBA26A8B49D1597751CED06B50862, 886FC610E379BD77146ADDC376D77437D88B593C7F1C3FEE2B93D934A67310F8 ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

19:51:21.0590 0x2f5c LMS - ok

19:51:21.0660 0x2f5c [ D3760BC17E1755091B7120CF32DBF56B, 2B31CA0CD838BEE0103054520E2FBEA2436A07D99E711B14543B85F3A511478F ] LogMeIn C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe

19:51:21.0700 0x2f5c LogMeIn - ok

19:51:21.0730 0x2f5c [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys

19:51:21.0740 0x2f5c LSI_FC - ok

19:51:21.0740 0x2f5c [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys

19:51:21.0750 0x2f5c LSI_SAS - ok

19:51:21.0760 0x2f5c [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys

19:51:21.0770 0x2f5c LSI_SAS2 - ok

19:51:21.0770 0x2f5c [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys

19:51:21.0790 0x2f5c LSI_SCSI - ok

19:51:21.0800 0x2f5c [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\windows\system32\drivers\luafv.sys

19:51:21.0830 0x2f5c luafv - ok

19:51:21.0870 0x2f5c [ 26C43960C99EE861A5D0EDC4DCF3B1C3, 6238FB8E785652040CCE3E7044EA52066CE1BF173A1467474D64A3AB214B6BCD ] MBAMSwissArmy C:\windows\system32\drivers\MBAMSwissArmy.sys

19:51:21.0890 0x2f5c MBAMSwissArmy - ok

19:51:21.0930 0x2f5c [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll

19:51:21.0940 0x2f5c Mcx2Svc - ok

19:51:21.0960 0x2f5c [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\windows\system32\DRIVERS\megasas.sys

19:51:21.0970 0x2f5c megasas - ok

19:51:21.0990 0x2f5c [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys

19:51:22.0020 0x2f5c MegaSR - ok

19:51:22.0040 0x2f5c [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64 C:\windows\system32\DRIVERS\HECIx64.sys

19:51:22.0050 0x2f5c MEIx64 - ok

19:51:22.0100 0x2f5c [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe

19:51:22.0110 0x2f5c Microsoft Office Groove Audit Service - ok

19:51:22.0130 0x2f5c [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\windows\system32\mmcss.dll

19:51:22.0180 0x2f5c MMCSS - ok

19:51:22.0190 0x2f5c [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\windows\system32\drivers\modem.sys

19:51:22.0230 0x2f5c Modem - ok

19:51:22.0280 0x2f5c [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\windows\system32\DRIVERS\monitor.sys

19:51:22.0320 0x2f5c monitor - ok

19:51:22.0350 0x2f5c [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys

19:51:22.0380 0x2f5c mouclass - ok

19:51:22.0410 0x2f5c [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys

19:51:22.0440 0x2f5c mouhid - ok

19:51:22.0490 0x2f5c [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\windows\system32\drivers\mountmgr.sys

19:51:22.0510 0x2f5c mountmgr - ok

19:51:22.0590 0x2f5c [ 6439D1E559D08BD8A1465A8943357053, 0E300508C22D12FBA3BE566B722F574CBE1B4A1A305356B92B8EA8B86267071B ] MpFilter C:\windows\system32\DRIVERS\MpFilter.sys

19:51:22.0640 0x2f5c MpFilter - ok

19:51:22.0680 0x2f5c [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\windows\system32\drivers\mpio.sys

19:51:22.0720 0x2f5c mpio - ok

19:51:22.0740 0x2f5c [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys

19:51:22.0780 0x2f5c mpsdrv - ok

19:51:22.0820 0x2f5c [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\windows\system32\mpssvc.dll

19:51:22.0900 0x2f5c MpsSvc - ok

19:51:22.0930 0x2f5c [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV C:\windows\system32\drivers\mrxdav.sys

19:51:22.0970 0x2f5c MRxDAV - ok

19:51:23.0000 0x2f5c [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys

19:51:23.0040 0x2f5c mrxsmb - ok

19:51:23.0060 0x2f5c [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys

19:51:23.0100 0x2f5c mrxsmb10 - ok

19:51:23.0120 0x2f5c [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys

19:51:23.0130 0x2f5c mrxsmb20 - ok

19:51:23.0160 0x2f5c [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\windows\system32\drivers\msahci.sys

19:51:23.0170 0x2f5c msahci - ok

19:51:23.0240 0x2f5c [ 54C3552A83E66BB1522ED770CBF92896, 93FDE6CA96BC06ECDFB682F464CDB4D8A043A83FFE71AED6AE4BD11BB9D3A8A4 ] MsDepSvc C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe

19:51:23.0270 0x2f5c MsDepSvc - ok

19:51:23.0280 0x2f5c [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\windows\system32\drivers\msdsm.sys

19:51:23.0300 0x2f5c msdsm - ok

19:51:23.0310 0x2f5c [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\windows\System32\msdtc.exe

19:51:23.0350 0x2f5c MSDTC - ok

19:51:23.0390 0x2f5c [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\windows\system32\drivers\Msfs.sys

19:51:23.0410 0x2f5c Msfs - ok

19:51:23.0420 0x2f5c [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys

19:51:23.0460 0x2f5c mshidkmdf - ok

19:51:23.0480 0x2f5c [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\windows\system32\drivers\msisadrv.sys

19:51:23.0490 0x2f5c msisadrv - ok

19:51:23.0520 0x2f5c [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\windows\system32\iscsiexe.dll

19:51:23.0570 0x2f5c MSiSCSI - ok

19:51:23.0570 0x2f5c msiserver - ok

19:51:23.0580 0x2f5c [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys

19:51:23.0620 0x2f5c MSKSSRV - ok

19:51:23.0690 0x2f5c [ F0D5494D8B177C37E16966262F5D0F68, DD63427DFFD9DD2BEC8336F6AD1BEFE347012331631DC5FEC65E83B1EACDBC67 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe

19:51:23.0720 0x2f5c MsMpSvc - ok

19:51:23.0740 0x2f5c [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys

19:51:23.0800 0x2f5c MSPCLOCK - ok

19:51:23.0820 0x2f5c [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\windows\system32\drivers\MSPQM.sys

19:51:23.0860 0x2f5c MSPQM - ok

19:51:23.0900 0x2f5c [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\windows\system32\drivers\MsRPC.sys

19:51:23.0920 0x2f5c MsRPC - ok

19:51:23.0940 0x2f5c [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\windows\system32\drivers\mssmbios.sys

19:51:23.0950 0x2f5c mssmbios - ok

19:51:24.0090 0x2f5c MSSQL$SQLEXPRESS - ok

19:51:24.0140 0x2f5c MSSQL$SQLS2008EX - ok

19:51:24.0250 0x2f5c [ 04EF36EAF5C4DBCE424D81B76F1E9231, ABA97C3004903852357264291613649D823F5BB24806E6CF9952AB3AA0E97C15 ] MSSQLServerADHelper100 c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE

19:51:24.0280 0x2f5c MSSQLServerADHelper100 - ok

19:51:24.0310 0x2f5c [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\windows\system32\drivers\MSTEE.sys

19:51:24.0350 0x2f5c MSTEE - ok

19:51:24.0370 0x2f5c [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys

19:51:24.0390 0x2f5c MTConfig - ok

19:51:24.0410 0x2f5c [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\windows\system32\Drivers\mup.sys

19:51:24.0420 0x2f5c Mup - ok

19:51:24.0460 0x2f5c [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\windows\system32\qagentRT.dll

19:51:24.0521 0x2f5c napagent - ok

19:51:24.0571 0x2f5c [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys

19:51:24.0611 0x2f5c NativeWifiP - ok

19:51:24.0711 0x2f5c [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\windows\system32\drivers\ndis.sys

19:51:24.0761 0x2f5c NDIS - ok

19:51:24.0781 0x2f5c [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys

19:51:24.0811 0x2f5c NdisCap - ok

19:51:24.0831 0x2f5c [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys

19:51:24.0861 0x2f5c NdisTapi - ok

19:51:24.0891 0x2f5c [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys

19:51:24.0931 0x2f5c Ndisuio - ok

19:51:24.0951 0x2f5c [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys

19:51:24.0991 0x2f5c NdisWan - ok

19:51:25.0021 0x2f5c [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\windows\system32\drivers\NDProxy.sys

19:51:25.0071 0x2f5c NDProxy - ok

19:51:25.0081 0x2f5c [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys

19:51:25.0121 0x2f5c NetBIOS - ok

19:51:25.0161 0x2f5c [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\windows\system32\DRIVERS\netbt.sys

19:51:25.0201 0x2f5c NetBT - ok

19:51:25.0201 0x2f5c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] Netlogon C:\windows\system32\lsass.exe

19:51:25.0211 0x2f5c Netlogon - ok

19:51:25.0241 0x2f5c [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\windows\System32\netman.dll

19:51:25.0301 0x2f5c Netman - ok

19:51:25.0351 0x2f5c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

19:51:25.0411 0x2f5c NetMsmqActivator - ok

19:51:25.0421 0x2f5c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

19:51:25.0431 0x2f5c NetPipeActivator - ok

19:51:25.0451 0x2f5c [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\windows\System32\netprofm.dll

19:51:25.0511 0x2f5c netprofm - ok

19:51:25.0521 0x2f5c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

19:51:25.0531 0x2f5c NetTcpActivator - ok

19:51:25.0531 0x2f5c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

19:51:25.0551 0x2f5c NetTcpPortSharing - ok

19:51:25.0581 0x2f5c [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys

19:51:25.0591 0x2f5c nfrd960 - ok

19:51:25.0651 0x2f5c [ F9EEFFC65C68A45001D1349E652B8B6F, E5F223129416083A12A85D48C65B2C8D1BF1124110399938E144308C89F9241D ] NisDrv C:\windows\system32\DRIVERS\NisDrvWFP.sys

19:51:25.0691 0x2f5c NisDrv - ok

19:51:25.0731 0x2f5c [ 9690F420A99364C1E5C439914B0DE25C, 6C6E0B27C4255001FE5F1EAD911DE1A8BF922C405B0C8031A6BD253CEB1D02A6 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe

19:51:25.0771 0x2f5c NisSrv - ok

19:51:25.0821 0x2f5c [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc C:\windows\System32\nlasvc.dll

19:51:25.0871 0x2f5c NlaSvc - ok

19:51:25.0891 0x2f5c [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\windows\system32\drivers\Npfs.sys

19:51:25.0921 0x2f5c Npfs - ok

19:51:25.0941 0x2f5c [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\windows\system32\nsisvc.dll

19:51:26.0001 0x2f5c nsi - ok

19:51:26.0021 0x2f5c [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys

19:51:26.0061 0x2f5c nsiproxy - ok

19:51:26.0151 0x2f5c [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\windows\system32\drivers\Ntfs.sys

19:51:26.0211 0x2f5c Ntfs - ok

19:51:26.0221 0x2f5c [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\windows\system32\drivers\Null.sys

19:51:26.0271 0x2f5c Null - ok

19:51:26.0331 0x2f5c [ 554964B900AE2954B8B589B6287034AC, C6C9EA3ADAFEBBF2AF944E4A0656BD795AD37706008CC0CA3F2150BD709476E7 ] NVHDA C:\windows\system32\drivers\nvhda64v.sys

19:51:26.0351 0x2f5c NVHDA - ok

19:51:26.0721 0x2f5c [ 9B93CC9C70EDE60A9C486E7719DB9E8D, 8E31BE72797D3308D8AF136E9F4C6199BCF4592F88E9FEB361752FF768225EC9 ] nvlddmkm C:\windows\system32\DRIVERS\nvlddmkm.sys

19:51:27.0111 0x2f5c nvlddmkm - ok

19:51:27.0151 0x2f5c [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\windows\system32\drivers\nvraid.sys

19:51:27.0161 0x2f5c nvraid - ok

19:51:27.0181 0x2f5c [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\windows\system32\drivers\nvstor.sys

19:51:27.0191 0x2f5c nvstor - ok

19:51:27.0251 0x2f5c [ FB50E60564ED30DDC855F0CE435C8467, C9A56D74F58739B8A069336FF5456FC5F3CE89371B8CFE8144B8D06A9C79C6AB ] NVSvc C:\windows\system32\nvvsvc.exe

19:51:27.0311 0x2f5c NVSvc - ok

19:51:27.0331 0x2f5c [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\windows\system32\drivers\nv_agp.sys

19:51:27.0341 0x2f5c nv_agp - ok

19:51:27.0371 0x2f5c [ D955D5DE998DB2476BF0892BE3A96C26, 3828FC1D4A4F9CD685E6D938B92370A602B84A3ACE2C9A674B3B59E633B0AE07 ] O2FLASH C:\windows\system32\DRIVERS\o2flash.exe

19:51:27.0401 0x2f5c O2FLASH - ok

19:51:27.0421 0x2f5c [ 6F374518F95CCB70A7D6E48ECFCDD24D, B19D64865659255288916ACFE271FBCDC94F5DDAC0D4ADCE8469D0DD4AEB4602 ] O2MDGRDR C:\windows\system32\DRIVERS\o2mdgx64.sys

19:51:27.0431 0x2f5c O2MDGRDR - ok

19:51:27.0441 0x2f5c [ FA1EED3A10992EBA9A39172B50346434, 38B877136213DCEF03893028F33131D2B423FC681FB482F68B86403C274766FF ] O2SDGRDR C:\windows\system32\DRIVERS\o2sdgx64.sys

19:51:27.0451 0x2f5c O2SDGRDR - ok

19:51:27.0541 0x2f5c [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

19:51:27.0591 0x2f5c odserv - ok

19:51:27.0621 0x2f5c [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys

19:51:27.0651 0x2f5c ohci1394 - ok

19:51:27.0691 0x2f5c [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

19:51:27.0701 0x2f5c ose - ok

19:51:27.0741 0x2f5c [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\windows\system32\pnrpsvc.dll

19:51:27.0781 0x2f5c p2pimsvc - ok

19:51:27.0821 0x2f5c [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\windows\system32\p2psvc.dll

19:51:27.0851 0x2f5c p2psvc - ok

19:51:27.0871 0x2f5c [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\windows\system32\DRIVERS\parport.sys

19:51:27.0881 0x2f5c Parport - ok

19:51:27.0911 0x2f5c [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\windows\system32\drivers\partmgr.sys

19:51:27.0921 0x2f5c partmgr - ok

19:51:27.0961 0x2f5c [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\windows\System32\pcasvc.dll

19:51:27.0981 0x2f5c PcaSvc - ok

19:51:28.0021 0x2f5c [ 2F86BE1818C2D7AC90478E3323EE7FCB, CE721FCFFDC9D24483DEB6BB77DAFEBE79BA143CA2EE68BF28E2A9297AADB2D4 ] PCCUJobMgr C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe

19:51:28.0051 0x2f5c PCCUJobMgr - ok

19:51:28.0081 0x2f5c [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\windows\system32\drivers\pci.sys

19:51:28.0101 0x2f5c pci - ok

19:51:28.0121 0x2f5c [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\windows\system32\drivers\pciide.sys

19:51:28.0131 0x2f5c pciide - ok

19:51:28.0151 0x2f5c [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys

19:51:28.0171 0x2f5c pcmcia - ok

19:51:28.0211 0x2f5c [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\windows\system32\drivers\pcw.sys

19:51:28.0241 0x2f5c pcw - ok

19:51:28.0281 0x2f5c [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\windows\system32\drivers\peauth.sys

19:51:28.0371 0x2f5c PEAUTH - ok

19:51:28.0431 0x2f5c [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\windows\SysWow64\perfhost.exe

19:51:28.0461 0x2f5c PerfHost - ok

19:51:28.0511 0x2f5c [ 663962900E7FEA522126BA287715BB4A, 95CE12CA11E705C293BE4E18845581037D819A7EC812349BCAF4EABC8E7087B1 ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys

19:51:28.0542 0x2f5c PGEffect - ok

19:51:28.0612 0x2f5c [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\windows\system32\pla.dll

19:51:28.0712 0x2f5c pla - ok

19:51:28.0752 0x2f5c [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\windows\system32\umpnpmgr.dll

19:51:28.0802 0x2f5c PlugPlay - ok

19:51:28.0822 0x2f5c [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll

19:51:28.0852 0x2f5c PNRPAutoReg - ok

19:51:28.0882 0x2f5c [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\windows\system32\pnrpsvc.dll

19:51:28.0902 0x2f5c PNRPsvc - ok

19:51:28.0952 0x2f5c [ E4799B87675C59AA1F620DE5C6F113BB, 094EE16D4CEC68DB316002994482344A6BFCFDE399131F7FA11BB46C2DCBF218 ] Point64 C:\windows\system32\DRIVERS\point64.sys

19:51:28.0952 0x2f5c Point64 - ok

19:51:28.0982 0x2f5c [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\windows\System32\ipsecsvc.dll

19:51:29.0052 0x2f5c PolicyAgent - ok

19:51:29.0082 0x2f5c [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\windows\system32\umpo.dll

19:51:29.0122 0x2f5c Power - ok

19:51:29.0162 0x2f5c [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys

19:51:29.0212 0x2f5c PptpMiniport - ok

19:51:29.0232 0x2f5c [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\windows\system32\DRIVERS\processr.sys

19:51:29.0272 0x2f5c Processor - ok

19:51:29.0312 0x2f5c [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc C:\windows\system32\profsvc.dll

19:51:29.0352 0x2f5c ProfSvc - ok

19:51:29.0362 0x2f5c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] ProtectedStorage C:\windows\system32\lsass.exe

19:51:29.0372 0x2f5c ProtectedStorage - ok

19:51:29.0392 0x2f5c [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\windows\system32\DRIVERS\pacer.sys

19:51:29.0432 0x2f5c Psched - ok

19:51:29.0482 0x2f5c [ AED797CCA02783296C68AA10D0CFF8A9, DAD0ECDA3DE4F8A95B6DB8E447E484CD13A14133D39D766E7D0FB166E29216E8 ] PxHlpa64 C:\windows\system32\Drivers\PxHlpa64.sys

19:51:29.0492 0x2f5c PxHlpa64 - ok

19:51:29.0532 0x2f5c [ C8FCB4899F8B70CC34E0D9876A80963C, E4CFC69C3EE1BC5C0FFF96CE034EAD8DD9727DA165A790CB57979AA0A6CEE350 ] QIOMem C:\windows\system32\DRIVERS\QIOMem.sys

19:51:29.0592 0x2f5c QIOMem - ok

19:51:29.0662 0x2f5c [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys

19:51:29.0732 0x2f5c ql2300 - ok

19:51:29.0742 0x2f5c [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys

19:51:29.0762 0x2f5c ql40xx - ok

19:51:29.0782 0x2f5c [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\windows\system32\qwave.dll

19:51:29.0802 0x2f5c QWAVE - ok

19:51:29.0812 0x2f5c [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys

19:51:29.0832 0x2f5c QWAVEdrv - ok

19:51:29.0842 0x2f5c [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys

19:51:29.0882 0x2f5c RasAcd - ok

19:51:29.0922 0x2f5c [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys

19:51:29.0982 0x2f5c RasAgileVpn - ok

19:51:29.0992 0x2f5c [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\windows\System32\rasauto.dll

19:51:30.0042 0x2f5c RasAuto - ok

19:51:30.0062 0x2f5c [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys

19:51:30.0102 0x2f5c Rasl2tp - ok

19:51:30.0142 0x2f5c [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\windows\System32\rasmans.dll

19:51:30.0202 0x2f5c RasMan - ok

19:51:30.0212 0x2f5c [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys

19:51:30.0252 0x2f5c RasPppoe - ok

19:51:30.0272 0x2f5c [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys

19:51:30.0312 0x2f5c RasSstp - ok

19:51:30.0352 0x2f5c [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\windows\system32\DRIVERS\rdbss.sys

19:51:30.0402 0x2f5c rdbss - ok

19:51:30.0412 0x2f5c [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys

19:51:30.0432 0x2f5c rdpbus - ok

19:51:30.0452 0x2f5c [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys

19:51:30.0482 0x2f5c RDPCDD - ok

19:51:30.0502 0x2f5c [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys

19:51:30.0542 0x2f5c RDPENCDD - ok

19:51:30.0562 0x2f5c [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys

19:51:30.0612 0x2f5c RDPREFMP - ok

19:51:30.0682 0x2f5c [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys

19:51:30.0792 0x2f5c RdpVideoMiniport - ok

19:51:30.0842 0x2f5c [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\windows\system32\drivers\RDPWD.sys

19:51:30.0912 0x2f5c RDPWD - ok

19:51:30.0942 0x2f5c [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\windows\system32\drivers\rdyboost.sys

19:51:30.0982 0x2f5c rdyboost - ok

19:51:31.0002 0x2f5c [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\windows\System32\mprdim.dll

19:51:31.0082 0x2f5c RemoteAccess - ok

19:51:31.0122 0x2f5c [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\windows\system32\regsvc.dll

19:51:31.0162 0x2f5c RemoteRegistry - ok

19:51:31.0182 0x2f5c [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\windows\System32\RpcEpMap.dll

19:51:31.0232 0x2f5c RpcEptMapper - ok

19:51:31.0252 0x2f5c [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\windows\system32\locator.exe

19:51:31.0282 0x2f5c RpcLocator - ok

19:51:31.0332 0x2f5c [ 675C575444AAFD56B4E8A99EF8A570CD, 22B068C69B4FA360601250E003DCBB96FED30966A4D01D29ACAE7A6687C25B6D ] rpcnet C:\windows\SysWOW64\rpcnet.exe

19:51:31.0362 0x2f5c rpcnet - ok

19:51:31.0402 0x2f5c [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\windows\system32\rpcss.dll

19:51:31.0442 0x2f5c RpcSs - ok

19:51:31.0492 0x2f5c [ C9FE05A63C500ABE3AFA5786504C4D36, F076B57B9EF6A179A37D5E00E1891236025D451CF067D2F1A1CBA2113218FEB6 ] RsFx0105 C:\windows\system32\DRIVERS\RsFx0105.sys

19:51:31.0532 0x2f5c RsFx0105 - ok

19:51:31.0622 0x2f5c [ 8415D92661B147BA54BE05AD18B82186, EA1A31887332273D81CF0C1D4C1AD3D735A6EB24E80B838F6D7B501439BD49B5 ] RsFx0153 C:\windows\system32\DRIVERS\RsFx0153.sys

19:51:31.0662 0x2f5c RsFx0153 - ok

19:51:31.0692 0x2f5c [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\windows\system32\DRIVERS\rspndr.sys

19:51:31.0732 0x2f5c rspndr - ok

19:51:31.0752 0x2f5c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] SamSs C:\windows\system32\lsass.exe

19:51:31.0762 0x2f5c SamSs - ok

19:51:31.0782 0x2f5c [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\windows\system32\drivers\sbp2port.sys

19:51:31.0792 0x2f5c sbp2port - ok

19:51:31.0852 0x2f5c [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\windows\System32\SCardSvr.dll

19:51:31.0902 0x2f5c SCardSvr - ok

19:51:31.0942 0x2f5c [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys

19:51:31.0972 0x2f5c scfilter - ok

19:51:32.0032 0x2f5c [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\windows\system32\schedsvc.dll

19:51:32.0112 0x2f5c Schedule - ok

19:51:32.0142 0x2f5c [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\windows\System32\certprop.dll

19:51:32.0172 0x2f5c SCPolicySvc - ok

19:51:32.0202 0x2f5c [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus C:\windows\system32\drivers\sdbus.sys

19:51:32.0222 0x2f5c sdbus - ok

19:51:32.0252 0x2f5c [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\windows\System32\SDRSVC.dll

19:51:32.0322 0x2f5c SDRSVC - ok

19:51:32.0352 0x2f5c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\windows\system32\drivers\secdrv.sys

19:51:32.0402 0x2f5c secdrv - ok

19:51:32.0412 0x2f5c [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\windows\system32\seclogon.dll

19:51:32.0442 0x2f5c seclogon - ok

19:51:32.0472 0x2f5c [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\windows\system32\sens.dll

19:51:32.0522 0x2f5c SENS - ok

19:51:32.0542 0x2f5c [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\windows\system32\sensrsvc.dll

19:51:32.0572 0x2f5c SensrSvc - ok

19:51:32.0592 0x2f5c [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\windows\system32\DRIVERS\serenum.sys

19:51:32.0602 0x2f5c Serenum - ok

19:51:32.0632 0x2f5c [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\windows\system32\DRIVERS\serial.sys

19:51:32.0652 0x2f5c Serial - ok

19:51:32.0672 0x2f5c [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\windows\system32\DRIVERS\sermouse.sys

19:51:32.0702 0x2f5c sermouse - ok

19:51:32.0742 0x2f5c [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\windows\system32\sessenv.dll

19:51:32.0832 0x2f5c SessionEnv - ok

19:51:32.0842 0x2f5c [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\windows\system32\drivers\sffdisk.sys

19:51:32.0872 0x2f5c sffdisk - ok

19:51:32.0882 0x2f5c [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys

19:51:32.0912 0x2f5c sffp_mmc - ok

19:51:32.0922 0x2f5c [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys

19:51:32.0942 0x2f5c sffp_sd - ok

19:51:32.0962 0x2f5c [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys

19:51:32.0982 0x2f5c sfloppy - ok

19:51:33.0042 0x2f5c [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\windows\System32\ipnathlp.dll

19:51:33.0102 0x2f5c SharedAccess - ok

19:51:33.0142 0x2f5c [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\windows\System32\shsvcs.dll

19:51:33.0202 0x2f5c ShellHWDetection - ok

19:51:33.0232 0x2f5c [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys

19:51:33.0242 0x2f5c SiSRaid2 - ok

19:51:33.0252 0x2f5c [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys

19:51:33.0262 0x2f5c SiSRaid4 - ok

19:51:33.0352 0x2f5c [ 050A4112B00BCA2E13314CDE48C1DEEE, 86C679CD494DEEB984372BF954EFBB8982AC7995FBF89FCF83BC228991D1B825 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe

19:51:33.0382 0x2f5c SkypeUpdate - ok

19:51:33.0402 0x2f5c [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\windows\system32\DRIVERS\smb.sys

19:51:33.0432 0x2f5c Smb - ok

19:51:33.0462 0x2f5c [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\windows\System32\snmptrap.exe

19:51:33.0492 0x2f5c SNMPTRAP - ok

19:51:33.0512 0x2f5c [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\windows\system32\drivers\spldr.sys

19:51:33.0522 0x2f5c spldr - ok

19:51:33.0603 0x2f5c [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\windows\System32\spoolsv.exe

19:51:33.0683 0x2f5c Spooler - ok

19:51:33.0833 0x2f5c [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\windows\system32\sppsvc.exe

19:51:34.0023 0x2f5c sppsvc - ok

19:51:34.0043 0x2f5c [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\windows\system32\sppuinotify.dll

19:51:34.0083 0x2f5c sppuinotify - ok

19:51:34.0223 0x2f5c [ F6057BCA087F571DE25267C7FC0FCB7E, 7D804277F3615CB759A62431906F5ABFC0C30DFD4AC42F3EE22735063B15E8AE ] SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE

19:51:34.0273 0x2f5c SQLAgent$SQLEXPRESS - ok

19:51:34.0363 0x2f5c [ 2E21D0699F3DFFFFD141763E3AA99D9A, 60063207F002B67B3E2BC78BBD15A2725AE8CFBC3289D21BE598F13F53C929B1 ] SQLAgent$SQLS2008EX c:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\SQLAGENT.EXE

19:51:34.0413 0x2f5c SQLAgent$SQLS2008EX - ok

19:51:34.0503 0x2f5c [ D2A6E9DBC3247613568D86DAC599DB52, 69B0DFD7C02FCF1FE0EA2A91EDE7F15843846A97EA91DB895143CF8D7693C1F5 ] SQLBrowser c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe

19:51:34.0543 0x2f5c SQLBrowser - ok

19:51:34.0623 0x2f5c [ 8FD8EE71D7D639F85805EEE4ADB2AA15, 027E680BE49F705843B0117A72FAFC7681798B99685B91989928EF03767CD7A5 ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

19:51:34.0653 0x2f5c SQLWriter - ok

19:51:34.0683 0x2f5c [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\windows\system32\DRIVERS\srv.sys

19:51:34.0733 0x2f5c srv - ok

19:51:34.0763 0x2f5c [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\windows\system32\DRIVERS\srv2.sys

19:51:34.0803 0x2f5c srv2 - ok

19:51:34.0833 0x2f5c [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys

19:51:34.0863 0x2f5c srvnet - ok

19:51:34.0893 0x2f5c [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\windows\System32\ssdpsrv.dll

19:51:34.0943 0x2f5c SSDPSRV - ok

19:51:34.0963 0x2f5c [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\windows\system32\sstpsvc.dll

19:51:34.0993 0x2f5c SstpSvc - ok

19:51:35.0013 0x2f5c [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\windows\system32\DRIVERS\stexstor.sys

19:51:35.0023 0x2f5c stexstor - ok

19:51:35.0053 0x2f5c [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam C:\windows\system32\drivers\serscan.sys

19:51:35.0083 0x2f5c StillCam - ok

19:51:35.0123 0x2f5c [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\windows\System32\wiaservc.dll

19:51:35.0183 0x2f5c stisvc - ok

19:51:35.0213 0x2f5c [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\windows\system32\drivers\swenum.sys

19:51:35.0223 0x2f5c swenum - ok

19:51:35.0253 0x2f5c [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\windows\System32\swprv.dll

19:51:35.0323 0x2f5c swprv - ok

19:51:35.0413 0x2f5c [ 9484C1DE568173DC1C44DF80F16092CC, 7E15F843F9E65575CE871E4BB18857FC9293DDA77B12C6E8453D5CF60AF0C47C ] SynTP C:\windows\system32\DRIVERS\SynTP.sys

19:51:35.0463 0x2f5c SynTP - ok

19:51:35.0544 0x2f5c [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\windows\system32\sysmain.dll

19:51:35.0634 0x2f5c SysMain - ok

19:51:35.0654 0x2f5c [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\windows\System32\TabSvc.dll

19:51:35.0674 0x2f5c TabletInputService - ok

19:51:35.0694 0x2f5c [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\windows\System32\tapisrv.dll

19:51:35.0754 0x2f5c TapiSrv - ok

19:51:35.0774 0x2f5c [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\windows\System32\tbssvc.dll

19:51:35.0804 0x2f5c TBS - ok

19:51:35.0934 0x2f5c [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\windows\system32\drivers\tcpip.sys

19:51:36.0014 0x2f5c Tcpip - ok

19:51:36.0084 0x2f5c [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys

19:51:36.0134 0x2f5c TCPIP6 - ok

19:51:36.0154 0x2f5c [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys

19:51:36.0184 0x2f5c tcpipreg - ok

19:51:36.0214 0x2f5c [ FD542B661BD22FA69CA789AD0AC58C29, 75FFAF1834B1E22DF37608ED451F161052FF1FE3C681B4E20A68DCA92CC7FD8C ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys

19:51:36.0224 0x2f5c tdcmdpst - ok

19:51:36.0244 0x2f5c [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\windows\system32\drivers\tdpipe.sys

19:51:36.0304 0x2f5c TDPIPE - ok

19:51:36.0334 0x2f5c [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\windows\system32\drivers\tdtcp.sys

19:51:36.0374 0x2f5c TDTCP - ok

19:51:36.0404 0x2f5c [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx C:\windows\system32\DRIVERS\tdx.sys

19:51:36.0454 0x2f5c tdx - ok

19:51:36.0554 0x2f5c [ BB676D2C7AD5E7131D12417E4691F9B9, C6DE7D8C08C2F059C696E9D63FC55692C8CB37FECF92F5A863D7D2C5AF3B425F ] Te.Service C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe

19:51:36.0604 0x2f5c Te.Service - detected UnsignedFile.Multi.Generic ( 1 )

19:51:36.0694 0x2f5c Detect skipped due to KSN trusted

19:51:36.0694 0x2f5c Te.Service - ok

19:51:36.0724 0x2f5c [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\windows\system32\drivers\termdd.sys

19:51:36.0754 0x2f5c TermDD - ok

19:51:36.0814 0x2f5c [ 4FC4C50985E5B840F4D72E57286887B8, 0BCBB4A938803AE3A3532B6D8FFC85594AA9AEF5D8F9792684841BEA8780AE9E ] TermService C:\windows\System32\termsrv.dll

19:51:36.0924 0x2f5c TermService - ok

19:51:36.0954 0x2f5c [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\windows\system32\themeservice.dll

19:51:36.0984 0x2f5c Themes - ok

19:51:37.0024 0x2f5c [ C013F6ACAA9761F571BD28DADA7C157D, E57246132B36FE38D4B177AAE3367D25AF28449201CD4D02CB7957C32AF02AC6 ] Thpdrv C:\windows\system32\DRIVERS\thpdrv.sys

19:51:37.0054 0x2f5c Thpdrv - ok

19:51:37.0074 0x2f5c [ B4E609047434ED948AF7BDEF2FA66E38, 353B7A120E532E9CDF0DE91EC39DF5B9B92A1A99B537FF4FB0D1EA13DBE30D17 ] Thpevm C:\windows\system32\DRIVERS\Thpevm.SYS

19:51:37.0084 0x2f5c Thpevm - ok

19:51:37.0154 0x2f5c [ F6927BBA3B09AFF26A53A9191F7378F9, ECB6FD262882E9E2714DC61A634045B4C4906BF159A42ECB5D3166BD42EC65D1 ] Thpsrv C:\windows\system32\ThpSrv.exe

19:51:37.0194 0x2f5c Thpsrv - ok

19:51:37.0214 0x2f5c [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\windows\system32\mmcss.dll

19:51:37.0244 0x2f5c THREADORDER - ok

19:51:37.0314 0x2f5c [ DFE9BA871B9F3DBB591BD113611CBCC0, 8AD07A7C08A68B590819F93614D518D15121BAB4BBC453B12A4E5137874FD4BC ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

19:51:37.0344 0x2f5c TMachInfo - ok

19:51:37.0374 0x2f5c [ 8E2C799D3476EAC32C3BA0DF7CE6AF19, CFE8A69E3F2A42C3BA2B38EC9233076D0AD32C441500E6407219F2E866905D9B ] TODDSrv C:\Windows\system32\TODDSrv.exe

19:51:37.0394 0x2f5c TODDSrv - ok

19:51:37.0474 0x2f5c [ 0CBBCD8FFE3E8C70FD5B27799D1FE123, 56CCE9198B2A3A33DD99EBE8BFAA17B035FCDAE006C74ADEE844E1C892B2320F ] TosCoSrv C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe

19:51:37.0504 0x2f5c TosCoSrv - ok

19:51:37.0534 0x2f5c [ 8F099BE5DB17D025E19652851399B9F1, A8EC58DB1700713E9376977675BBC380255D0DDA064120FD70AA2478C5FD1CDF ] TOSHIBA Bluetooth Service C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

19:51:37.0554 0x2f5c TOSHIBA Bluetooth Service - ok

19:51:37.0624 0x2f5c [ A1C37D84C65F2ECFAFE4B4ACDDE1D0D0, F05008C0CDA0AE64B3BFE27280E0F83DB8FBAFD9B2B966843473540310BE0EE5 ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe

19:51:37.0654 0x2f5c TOSHIBA eco Utility Service - ok

19:51:37.0694 0x2f5c [ 74C2FA8C3765EE71A9C22182EC108457, A7073FAB6CE6FB9824544A9CDCCA441D08FD87D68EB564DCB1186FC257776221 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

19:51:37.0704 0x2f5c TOSHIBA HDD SSD Alert Service - ok

19:51:37.0764 0x2f5c [ 03944F5B1046B9AD19CA3F09F793857A, FC5EE79307B00CBA014C7FBB6F335D8EC0C2EED7CDD0CC24B0656D753FD00A44 ] tosrfbd C:\windows\system32\DRIVERS\tosrfbd.sys

19:51:37.0794 0x2f5c tosrfbd - ok

19:51:37.0804 0x2f5c Tosrfcom - ok

19:51:37.0824 0x2f5c [ F5E3AC4CBCD154EE80849B21887FD0B0, 7D68AF88F1B01BCA6456FBAEB91580419A49A77D31EFC0BA6A1C50301899BA03 ] tosrfec C:\windows\system32\DRIVERS\tosrfec.sys

19:51:37.0834 0x2f5c tosrfec - ok

19:51:37.0864 0x2f5c [ 8B70D9718EEE2C41C09D7DE2226F7AA5, A6C911C1C09F3CA1D1A59BEEC19CB280BB9C112357F8F3B9936B79EEF2471D11 ] Tosrfusb C:\windows\system32\DRIVERS\tosrfusb.sys

19:51:37.0864 0x2f5c Tosrfusb - ok

19:51:37.0904 0x2f5c [ 09FF7B0B1B5C3D225495CB6F5A9B39F8, 0D2CC72B7E02B92C9A1D6B76300B75A39427046903326642B9D511A51A795027 ] tos_sps64 C:\windows\system32\DRIVERS\tos_sps64.sys

19:51:37.0934 0x2f5c tos_sps64 - ok

19:51:38.0024 0x2f5c [ 71861BF12776C54908F306998913080F, 4691D598697D17E1C38D123910B7E27F7EBD53B24BF0A27B14C3510B45F7ED90 ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe

19:51:38.0084 0x2f5c TPCHSrv - ok

19:51:38.0114 0x2f5c [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\windows\System32\trkwks.dll

19:51:38.0164 0x2f5c TrkWks - ok

19:51:38.0204 0x2f5c [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe

19:51:38.0244 0x2f5c TrustedInstaller - ok

19:51:38.0284 0x2f5c [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys

19:51:38.0344 0x2f5c tssecsrv - ok

19:51:38.0394 0x2f5c [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys

19:51:38.0444 0x2f5c TsUsbFlt - ok

19:51:38.0494 0x2f5c [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys

19:51:38.0534 0x2f5c tunnel - ok

19:51:38.0574 0x2f5c [ 550B567F9364D8F7684C3FB3EA665A72, A214BBBBAB9F0DD525FA5A818CEB8E9294B4A96676317255D7ACF6049049C933 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS

19:51:38.0574 0x2f5c TVALZ - ok

19:51:38.0604 0x2f5c [ 9C7191F4B2E49BFF47A6C1144B5923FA, DF4E663499946F4E68B7528CA399574D1EB69797FF81F681943B84F3E5E6A40E ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys

19:51:38.0614 0x2f5c TVALZFL - ok

19:51:38.0644 0x2f5c [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys

19:51:38.0654 0x2f5c uagp35 - ok

19:51:38.0694 0x2f5c [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\windows\system32\DRIVERS\udfs.sys

19:51:38.0734 0x2f5c udfs - ok

19:51:38.0764 0x2f5c [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\windows\system32\UI0Detect.exe

19:51:38.0774 0x2f5c UI0Detect - ok

19:51:38.0814 0x2f5c [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys

19:51:38.0824 0x2f5c uliagpkx - ok

19:51:38.0844 0x2f5c [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\windows\system32\DRIVERS\umbus.sys

19:51:38.0874 0x2f5c umbus - ok

19:51:38.0884 0x2f5c [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\windows\system32\DRIVERS\umpass.sys

19:51:38.0904 0x2f5c UmPass - ok

19:51:39.0064 0x2f5c [ FDF92EC84FECEE834FB10A2A0A19BCDA, F81FCA3BEC10C84335DBAD9D2CDAB98C62252A864F23BDD482F97F86D5FA0B15 ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

19:51:39.0154 0x2f5c UNS - ok

19:51:39.0184 0x2f5c [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\windows\System32\upnphost.dll

19:51:39.0234 0x2f5c upnphost - ok

19:51:39.0294 0x2f5c [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64 C:\windows\system32\Drivers\usbaapl64.sys

19:51:39.0304 0x2f5c USBAAPL64 - detected UnsignedFile.Multi.Generic ( 1 )

19:51:39.0644 0x2f5c Detect skipped due to KSN trusted

19:51:39.0644 0x2f5c USBAAPL64 - ok

19:51:39.0684 0x2f5c [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys

19:51:39.0754 0x2f5c usbccgp - ok

19:51:39.0794 0x2f5c [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\windows\system32\drivers\usbcir.sys

19:51:39.0874 0x2f5c usbcir - ok

19:51:39.0914 0x2f5c [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\windows\system32\drivers\usbehci.sys

19:51:39.0934 0x2f5c usbehci - ok

19:51:39.0994 0x2f5c [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys

19:51:40.0034 0x2f5c usbhub - ok

19:51:40.0074 0x2f5c [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\windows\system32\drivers\usbohci.sys

19:51:40.0104 0x2f5c usbohci - ok

19:51:40.0134 0x2f5c [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\windows\system32\DRIVERS\usbprint.sys

19:51:40.0174 0x2f5c usbprint - ok

19:51:40.0214 0x2f5c [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS

19:51:40.0254 0x2f5c USBSTOR - ok

19:51:40.0294 0x2f5c [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\windows\system32\drivers\usbuhci.sys

19:51:40.0344 0x2f5c usbuhci - ok

19:51:40.0374 0x2f5c [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys

19:51:40.0434 0x2f5c usbvideo - ok

19:51:40.0464 0x2f5c [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\windows\System32\uxsms.dll

19:51:40.0534 0x2f5c UxSms - ok

19:51:40.0554 0x2f5c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] VaultSvc C:\windows\system32\lsass.exe

19:51:40.0564 0x2f5c VaultSvc - ok

19:51:40.0574 0x2f5c [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys

19:51:40.0584 0x2f5c vdrvroot - ok

19:51:40.0614 0x2f5c [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\windows\System32\vds.exe

19:51:40.0684 0x2f5c vds - ok

19:51:40.0714 0x2f5c [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\windows\system32\DRIVERS\vgapnp.sys

19:51:40.0734 0x2f5c vga - ok

19:51:40.0744 0x2f5c [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\windows\System32\drivers\vga.sys

19:51:40.0784 0x2f5c VgaSave - ok

19:51:40.0804 0x2f5c [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\windows\system32\drivers\vhdmp.sys

19:51:40.0814 0x2f5c vhdmp - ok

19:51:40.0834 0x2f5c [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\windows\system32\drivers\viaide.sys

19:51:40.0844 0x2f5c viaide - ok

19:51:40.0884 0x2f5c [ 21C96AA588D3993191761A08DBAABB15, 11F7336CA9C73808F9C0F19C56C52B1967B486E5E9C07454C08C626BF59283CF ] vmm C:\windows\system32\Drivers\vmm.sys

19:51:40.0904 0x2f5c vmm - ok

19:51:40.0924 0x2f5c [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\windows\system32\drivers\volmgr.sys

19:51:40.0934 0x2f5c volmgr - ok

19:51:40.0954 0x2f5c [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\windows\system32\drivers\volmgrx.sys

19:51:40.0984 0x2f5c volmgrx - ok

19:51:41.0004 0x2f5c [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\windows\system32\drivers\volsnap.sys

19:51:41.0024 0x2f5c volsnap - ok

19:51:41.0124 0x2f5c [ 9B4F6978628D07FAEBF77FF6F8F2960D, FC36FE6BE77445D55E4E92CE3EAF172E253EC8CF8D2EBCA204969CF21FFA5600 ] VsEtwService120 C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe

19:51:41.0154 0x2f5c VsEtwService120 - ok

19:51:41.0194 0x2f5c [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys

19:51:41.0214 0x2f5c vsmraid - ok

19:51:41.0344 0x2f5c [ F972436B5ED08069A1E7D623B77C226A, FA01505B5EC392ADE55019C22588D2F3608CBF9A6B03A44203F3587D372F8342 ] VSPerfDrv110 C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys

19:51:41.0374 0x2f5c VSPerfDrv110 - ok

19:51:41.0464 0x2f5c [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\windows\system32\vssvc.exe

19:51:41.0564 0x2f5c VSS - ok

19:51:41.0584 0x2f5c [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys

19:51:41.0604 0x2f5c vwifibus - ok

19:51:41.0634 0x2f5c [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys

19:51:41.0664 0x2f5c vwififlt - ok

19:51:41.0694 0x2f5c [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys

19:51:41.0734 0x2f5c vwifimp - ok

19:51:41.0794 0x2f5c [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\windows\system32\w32time.dll

19:51:41.0894 0x2f5c W32Time - ok

19:51:41.0974 0x2f5c [ B32009DB1972E7F2C227499289C4384A, D491CD90ACE895EC60A5A2F995EAE39F8ED662B71BC548C3FF5BBDBC60054788 ] W3SVC C:\windows\system32\inetsrv\iisw3adm.dll

19:51:42.0024 0x2f5c W3SVC - ok

19:51:42.0044 0x2f5c [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys

19:51:42.0064 0x2f5c WacomPen - ok

19:51:42.0094 0x2f5c [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\windows\system32\DRIVERS\wanarp.sys

19:51:42.0144 0x2f5c WANARP - ok

19:51:42.0154 0x2f5c [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys

19:51:42.0184 0x2f5c Wanarpv6 - ok

19:51:42.0224 0x2f5c [ B32009DB1972E7F2C227499289C4384A, D491CD90ACE895EC60A5A2F995EAE39F8ED662B71BC548C3FF5BBDBC60054788 ] WAS C:\windows\system32\inetsrv\iisw3adm.dll

19:51:42.0244 0x2f5c WAS - ok

19:51:42.0354 0x2f5c [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe

19:51:42.0424 0x2f5c WatAdminSvc - ok

19:51:42.0494 0x2f5c [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\windows\system32\wbengine.exe

19:51:42.0604 0x2f5c wbengine - ok

19:51:42.0634 0x2f5c [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\windows\System32\wbiosrvc.dll

19:51:42.0654 0x2f5c WbioSrvc - ok

19:51:42.0684 0x2f5c [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\windows\System32\wcncsvc.dll

19:51:42.0734 0x2f5c wcncsvc - ok

19:51:42.0754 0x2f5c [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll

19:51:42.0774 0x2f5c WcsPlugInService - ok

19:51:42.0794 0x2f5c [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\windows\system32\DRIVERS\wd.sys

19:51:42.0804 0x2f5c Wd - ok

19:51:42.0844 0x2f5c [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys

19:51:42.0884 0x2f5c Wdf01000 - ok

19:51:42.0914 0x2f5c [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\windows\system32\wdi.dll

19:51:43.0034 0x2f5c WdiServiceHost - ok

19:51:43.0054 0x2f5c [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\windows\system32\wdi.dll

19:51:43.0074 0x2f5c WdiSystemHost - ok

19:51:43.0114 0x2f5c [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\windows\System32\webclnt.dll

19:51:43.0134 0x2f5c WebClient - ok

19:51:43.0144 0x2f5c [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\windows\system32\wecsvc.dll

19:51:43.0194 0x2f5c Wecsvc - ok

19:51:43.0214 0x2f5c [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\windows\System32\wercplsupport.dll

19:51:43.0264 0x2f5c wercplsupport - ok

19:51:43.0304 0x2f5c [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\windows\System32\WerSvc.dll

19:51:43.0354 0x2f5c WerSvc - ok

19:51:43.0384 0x2f5c [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys

19:51:43.0424 0x2f5c WfpLwf - ok

19:51:43.0454 0x2f5c [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\windows\system32\drivers\wimmount.sys

19:51:43.0464 0x2f5c WIMMount - ok

19:51:43.0484 0x2f5c WinDefend - ok

19:51:43.0484 0x2f5c WinHttpAutoProxySvc - ok

19:51:43.0556 0x2f5c [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll

19:51:43.0638 0x2f5c Winmgmt - ok

19:51:43.0708 0x2f5c [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM C:\windows\system32\WsmSvc.dll

19:51:43.0808 0x2f5c WinRM - ok

19:51:43.0848 0x2f5c [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] winusb C:\windows\system32\DRIVERS\WinUSB.sys

19:51:43.0878 0x2f5c winusb - ok

19:51:43.0918 0x2f5c [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\windows\System32\wlansvc.dll

19:51:43.0978 0x2f5c Wlansvc - ok

19:51:44.0128 0x2f5c [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

19:51:44.0248 0x2f5c wlidsvc - ok

19:51:44.0298 0x2f5c [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys

19:51:44.0328 0x2f5c WmiAcpi - ok

19:51:44.0358 0x2f5c [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe

19:51:44.0388 0x2f5c wmiApSrv - ok

19:51:44.0418 0x2f5c WMPNetworkSvc - ok

19:51:44.0488 0x2f5c [ 83B6CA03C846FCD47F9883D77D1EB27B, 1616DBBC95085B6618B7F884383507E2A54D561A41288E79FA6DC99218C02802 ] WMZuneComm C:\Program Files\Zune\WMZuneComm.exe

19:51:44.0528 0x2f5c WMZuneComm - ok

19:51:44.0538 0x2f5c [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\windows\System32\wpcsvc.dll

19:51:44.0558 0x2f5c WPCSvc - ok

19:51:44.0578 0x2f5c [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\windows\system32\wpdbusenum.dll

19:51:44.0618 0x2f5c WPDBusEnum - ok

19:51:44.0638 0x2f5c [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys

19:51:44.0678 0x2f5c ws2ifsl - ok

19:51:44.0688 0x2f5c [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\windows\system32\wscsvc.dll

19:51:44.0728 0x2f5c wscsvc - ok

19:51:44.0768 0x2f5c [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice C:\windows\system32\DRIVERS\WSDPrint.sys

19:51:44.0798 0x2f5c WSDPrintDevice - ok

19:51:44.0798 0x2f5c WSearch - ok

19:51:44.0928 0x2f5c [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv C:\windows\system32\wuaueng.dll

19:51:45.0018 0x2f5c wuauserv - ok

19:51:45.0038 0x2f5c [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\windows\system32\drivers\WudfPf.sys

19:51:45.0078 0x2f5c WudfPf - ok

19:51:45.0108 0x2f5c [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys

19:51:45.0128 0x2f5c WUDFRd - ok

19:51:45.0148 0x2f5c [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\windows\System32\WUDFSvc.dll

19:51:45.0168 0x2f5c wudfsvc - ok

19:51:45.0228 0x2f5c [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\windows\System32\wwansvc.dll

19:51:45.0308 0x2f5c WwanSvc - ok

19:51:45.0599 0x2f5c [ 67B787C34FB2888D01B130AE007042D8, E44878E53F265C89F271B08B81C129105E42D1C78C14467B2D96E28A9A428B1A ] ZuneNetworkSvc C:\Program Files\Zune\ZuneNss.exe

19:51:45.0909 0x2f5c ZuneNetworkSvc - ok

19:51:45.0969 0x2f5c [ 4D89FC1C20CF655739EFAC5DA81A67BC, 788D0A5B9972ED6D80242C0C5E80AB0FAB44A708B896D5F724AC1559A291C8DD ] ZuneWlanCfgSvc C:\Program Files\Zune\ZuneWlanCfgSvc.exe

19:51:45.0989 0x2f5c ZuneWlanCfgSvc - ok

19:51:46.0009 0x2f5c ================ Scan global ===============================

19:51:46.0029 0x2f5c [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\windows\system32\basesrv.dll

19:51:46.0069 0x2f5c [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\windows\system32\winsrv.dll

19:51:46.0089 0x2f5c [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\windows\system32\winsrv.dll

19:51:46.0109 0x2f5c [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\windows\system32\sxssrv.dll

19:51:46.0129 0x2f5c [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\windows\system32\services.exe

19:51:46.0149 0x2f5c [ Global ] - ok

19:51:46.0149 0x2f5c ================ Scan MBR ==================================

19:51:46.0159 0x2f5c [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0

19:51:46.0539 0x2f5c \Device\Harddisk0\DR0 - ok

19:51:46.0549 0x2f5c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1

19:51:46.0680 0x2f5c \Device\Harddisk1\DR1 - ok

19:51:46.0680 0x2f5c [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk2\DR2

19:51:46.0820 0x2f5c \Device\Harddisk2\DR2 - ok

19:51:46.0820 0x2f5c ================ Scan VBR ==================================

19:51:46.0830 0x2f5c [ 4C3C5804FEC919F37F5163166D215037 ] \Device\Harddisk0\DR0\Partition1

19:51:46.0830 0x2f5c \Device\Harddisk0\DR0\Partition1 - ok

19:51:46.0840 0x2f5c [ FB8AF0A76913280581E22EDB59B6AA14 ] \Device\Harddisk1\DR1\Partition1

19:51:46.0840 0x2f5c \Device\Harddisk1\DR1\Partition1 - ok

19:51:46.0840 0x2f5c [ 61E5ED11852767025E02EC8AE3C52530 ] \Device\Harddisk2\DR2\Partition1

19:51:46.0850 0x2f5c \Device\Harddisk2\DR2\Partition1 - ok

19:51:46.0850 0x2f5c ================ Scan generic autorun ======================

19:51:46.0880 0x2f5c [ 0FEBED0093D2FD38DA6C6E5DE1ADA24C, 6C6B186A2FC1DFD800041B160A7D71F5F1B3C70D62C7696B8DA89148A8D87D47 ] C:\Program Files\Zune\ZuneLauncher.exe

19:51:46.0900 0x2f5c Zune Launcher - ok

19:51:46.0900 0x2f5c TPwrMain - ok

19:51:46.0900 0x2f5c TosWaitSrv - ok

19:51:46.0930 0x2f5c [ F9EF20F6FDA1444C0864BD7AEDC10CAF, E6A18BD7200E7DE7599753DA27469AEC479A315931956D457547F243FCB92C2A ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe

19:51:46.0960 0x2f5c TosSENotify - ok

19:51:46.0960 0x2f5c TosReelTimeMonitor - ok

19:51:46.0960 0x2f5c TosNC - ok

19:51:46.0970 0x2f5c ThpSrv - ok

19:51:46.0980 0x2f5c Teco - ok

19:51:46.0980 0x2f5c SynTPEnh - ok

19:51:46.0980 0x2f5c SmoothView - ok

19:51:46.0980 0x2f5c SmartFaceVWatcher - ok

19:51:47.0010 0x2f5c [ 1A51E9C642ED4658600F4DF4683EFAE9, 4219218534ACB330B044545EB8025C1A4B1C2BB5A9A25572D1770515BEA90309 ] C:\Program Files\CONEXANT\SAII\SAIICpl.exe

19:51:47.0030 0x2f5c SmartAudio - ok

19:51:47.0120 0x2f5c [ A6AAD37CDCAE75CB62D039E3A4D8F5E3, 4FF763B0D129175BA1B1E794BA313E6C63F7A89D377C786BF5E730AF2A1D95D1 ] c:\Program Files\Microsoft Security Client\msseces.exe

19:51:47.0180 0x2f5c MSC - ok

19:51:47.0190 0x2f5c HSON - ok

19:51:47.0190 0x2f5c HDMICtrlMan - ok

19:51:47.0190 0x2f5c 00TCrdMain - ok

19:51:47.0190 0x2f5c VideoDownloadConverter Home Page Guard 64 bit - ok

19:51:47.0280 0x2f5c [ 223A96BAC91792E1A954BFEB49FBE02C, 56582B1E48EB9AAE8C3AA0BCFB3B8DCBBA6AE26138BBE801DA2404A527DF5636 ] C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe

19:51:47.0310 0x2f5c LogMeIn GUI - ok

19:51:47.0400 0x2f5c [ 3A16B3CC436935F3074910C5C1736DD8, 8A2C1D4F87BF2CB991E3B932D1D963F725A225D3955CA002D8055D4844A2E0D3 ] C:\windows\SysWow64\insbgf64.exe

19:51:47.0420 0x2f5c insbgf64 - ok

19:51:47.0530 0x2f5c [ EC7523C687CF755D17BF1BCC63BBA300, 83D90574A78A0773A2683587F09D5F85F8A7B49106501E058EAE752E2E6F360B ] C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe

19:51:47.0590 0x2f5c BrMfcWnd - detected UnsignedFile.Multi.Generic ( 1 )

19:51:47.0900 0x2f5c Detect skipped due to KSN trusted

19:51:47.0900 0x2f5c BrMfcWnd - ok

19:51:47.0960 0x2f5c [ 4DE3EF07E0854547309C6B40235A9D44, F73D8E6D98583865D1C8DB728058D83C72A3908E21E04EF313FCB829C040A1EC ] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe

19:51:47.0990 0x2f5c ControlCenter3 - detected UnsignedFile.Multi.Generic ( 1 )

19:51:48.0070 0x2f5c Detect skipped due to KSN trusted

19:51:48.0070 0x2f5c ControlCenter3 - ok

19:51:48.0210 0x2f5c [ 0ECD5306BD3EF998FEFA1EAFDF27F383, 1115B3F4A4FB9EE71DF20B861107B0AE5ABD843F4F1897272E66C66CB94EB66E ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe

19:51:48.0350 0x2f5c TWebCamera - ok

19:51:48.0430 0x2f5c [ 2A3C072BD9CF5EC9C812B9369CD3D927, 0C38ED016D0ECBE789793B0EEAC17B32245DC80AAF3EB393FA02C1BE8DDF98AF ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe

19:51:48.0480 0x2f5c ToshibaServiceStation - ok

19:51:48.0520 0x2f5c [ 2D7816ACDA1CC85C873CBC19A4121D58, 3F3E41EBEF81DB8C2A84A8E75D1E4852046A10A5DCB8CCCC2ADF7FD0DC8EEF66 ] C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe

19:51:48.0570 0x2f5c ToshibaAppPlace - detected UnsignedFile.Multi.Generic ( 1 )

19:51:48.0640 0x2f5c Detect skipped due to KSN trusted

19:51:48.0640 0x2f5c ToshibaAppPlace - ok

19:51:48.0710 0x2f5c [ 846965AE55A2662B1576C0F392DD1D6E, 0ADE383991FDC5A49DD15A27CB52CF75ABF518F0335E92003C0FF75DB417BBDC ] C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe

19:51:48.0730 0x2f5c SSBkgdUpdate - ok

19:51:48.0800 0x2f5c [ A4A66195EB0ECD574A32AAA92DC0A7BD, 4E30D565917158316A541BB29D73BF5F3A01DAB1240363276DE0C5D59B2BFFFE ] C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe

19:51:48.0840 0x2f5c PPort11reminder - ok

19:51:48.0860 0x2f5c [ 27249F2A900032F3C2DFAB8DE8F16399, 88F85055FC6A6C3872A9A3697F92E26EEB51655F5D53F49EE22768829839808A ] C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe

19:51:48.0870 0x2f5c PaperPort PTD - ok

19:51:49.0150 0x2f5c [ 5AA41DAE9F06F612507EDE512C0C30E2, C79D800DB1A4D74C3BA292B6FB2395401A487241077CFC9947A733078C6571F0 ] C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe

19:51:49.0260 0x2f5c NortonOnlineBackupReminder - ok

19:51:49.0320 0x2f5c [ B9FBE2C4DE9A72E8997697C8D5CAD009, EF2F8C2D4AE2D45232C97D60734B398E3EC59245702F4B5D3D7E5077DBF83B1D ] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe

19:51:49.0340 0x2f5c ITSecMng - ok

19:51:49.0350 0x2f5c [ BE72C212B14FC8F872A70C6C311D0529, 9C6A8060FD4505925894D8FD08EFCDE16BEEAAC70264519135B261C026333CAA ] C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe

19:51:49.0360 0x2f5c IndexSearch - ok

19:51:49.0420 0x2f5c [ 0E34B7BB1FCF22BCC1E394D16F9E992B, 382CA8E6BAC301E2F277F8EDA03D263FF71272796A8EED582C36294EEE9191F9 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe

19:51:49.0440 0x2f5c GrooveMonitor - ok

19:51:49.0550 0x2f5c [ 47EA5F76FAB723C61AB4A0D79BAD512C, A7A38EB0A7068B160E6949945EF639F999A06AE35746F6E79C7350745798E5C9 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

19:51:49.0610 0x2f5c Adobe ARM - ok

19:51:49.0660 0x2f5c [ 505E8BDA9F740F45846C68EAD3FDB7E3, DEDB705065DA99941048DBCE7A3100548BB09383DA472730C4DF2AE62B16F774 ] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe

19:51:49.0670 0x2f5c Adobe Acrobat Speed Launcher - ok

19:51:49.0700 0x2f5c [ 778615BE018111F244F1618EBCA97F54, FA8859EE35933605B44D4BCC199CC72E3A04AC878DDB0A4A4B1E0E41C6E7C0A9 ] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe

19:51:49.0740 0x2f5c Acrobat Assistant 8.0 - ok

19:51:49.0820 0x2f5c [ 09E60B4FE341A94A300830C008907099, 5F07868953FAA8FFA9E6477F6BAC52DEEDF3EA4A3F8AF5B4E15878D8240223AB ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe

19:51:49.0840 0x2f5c APSDaemon - ok

19:51:49.0930 0x2f5c [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe

19:51:50.0030 0x2f5c Sidebar - ok

19:51:50.0120 0x2f5c [ 0EC83E2DA29365048CBEB9A9A963BDFA, 49A41056403042B21AF3C1936489942B703BE609CB7DFC3303C417A5702501B9 ] C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe

19:51:50.0140 0x2f5c SkyDrive - ok

19:51:50.0740 0x2f5c [ 713E4BDEC84F31374339CD4494A2FF15, B0B85D280C9253CF75A94BDAB6431F7AAAFDC3FE9F7ECFAC254D831B4DF293EE ] C:\Program Files (x86)\Google\Drive\googledrivesync.exe

19:51:51.0440 0x2f5c GoogleDriveSync - ok

19:51:51.0510 0x2f5c [ 096407F0CB75519F4DBFBA5BB413187B, 9F7A13FA6DA2B2FE58B69AD94DA372DA0C73918C1E3C57D1BC8F7662875C7CBD ] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe

19:51:51.0540 0x2f5c ApplePhotoStreams - ok

19:51:51.0560 0x2f5c [ CA595FA53E6C797EC1AB43AFB4B4F183, A0A7DDD2ECA97D6533DF908861C000B69C327184F4FFC7C4D971AE4651AD337F ] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe

19:51:51.0570 0x2f5c iCloudServices - ok

19:51:51.0651 0x2f5c [ 7E0B4C8EFEDDEBE87D2A1F5A33B965B5, D7102B38A0F1BDA2DC3D5C7A8DAE13758F5CFC29C5AE3D3791EFAFB5A9F7275D ] C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe

19:51:51.0691 0x2f5c AppleIEDAV - ok

19:51:51.0721 0x2f5c Skype - ok

19:51:51.0821 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:51.0891 0x2f5c Sidebar - ok

19:51:51.0971 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0051 0x2f5c mctadmin - ok

19:51:52.0101 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0141 0x2f5c Sidebar - ok

19:51:52.0151 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0171 0x2f5c mctadmin - ok

19:51:52.0211 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0251 0x2f5c Sidebar - ok

19:51:52.0261 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0281 0x2f5c mctadmin - ok

19:51:52.0321 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0361 0x2f5c Sidebar - ok

19:51:52.0381 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0391 0x2f5c mctadmin - ok

19:51:52.0441 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0471 0x2f5c Sidebar - ok

19:51:52.0481 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0501 0x2f5c mctadmin - ok

19:51:52.0541 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0591 0x2f5c Sidebar - ok

19:51:52.0621 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0631 0x2f5c mctadmin - ok

19:51:52.0691 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0731 0x2f5c Sidebar - ok

19:51:52.0761 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0771 0x2f5c mctadmin - ok

19:51:52.0811 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0851 0x2f5c Sidebar - ok

19:51:52.0861 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0881 0x2f5c mctadmin - ok

19:51:52.0921 0x2f5c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe

19:51:52.0961 0x2f5c Sidebar - ok

19:51:52.0981 0x2f5c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe

19:51:52.0991 0x2f5c mctadmin - ok

19:51:52.0991 0x2f5c Waiting for KSN requests completion. In queue: 163

19:51:54.0191 0x2f5c AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.6.305.0 ), 0x61000 ( enabled : updated )

19:51:54.0281 0x2f5c Win FW state via NFP2: enabled

19:51:54.0501 0x2f5c ============================================================

19:51:54.0501 0x2f5c Scan finished

19:51:54.0501 0x2f5c ============================================================

19:51:54.0521 0x3964 Detected object count: 0

19:51:54.0521 0x3964 Actual detected object count: 0

 

 

>>>>>>>>>>>>>That's it.  Waiting for reply.  Thanks!<<<<<<<<<<<<<<<<<<<<<<<<<<<



#5 deeprybka

deeprybka

  • Malware Response Team
  • 5,198 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:10:55 PM

Posted 01 November 2014 - 08:23 AM

warning.gif Malware Warning

All passwords should be changed immediately to include those used for banking, email, eBay, paypal and online forums from a CLEAN COMPUTER.


Step 1

frst.pngfrstfix.png

Press thew7.png + R on your keyboard at the same time. Type notepad and click OK.
  • Copy the entire content of the codebox below and paste into the notepad document:
    CloseProcesses:
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...A8F59079A8D5}\localserver32: rundll32.exe javascript:"\..\mshtml,RunHTMLApplication ";eval("epdvnfou/xsjuf)(=tdsjqu!mbohvbhf>ktds (the data entry has 239 more characters). <==== Poweliks!
    Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
    Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    HKLM-x32\...\Run: [] => [X]
    HKLM\...\Run: [VideoDownloadConverter Home Page Guard 64 bit] => "C:\PROGRA~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe"
    C:\PROGRA~2\VIDEOD~2\
    Folder: C:\Users\Alexey\AppData\LocalLow
    
  • Click File, Save As and type fixlist.txt as the File Name.
Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!
  • Right-click on FRST.gif icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop, called Fixlog.txt.
Please post it to your reply.

After the Reboot:

Step 2

frst.pngfrstscan.png

Start FRST with administator privileges.
  • Press the Scan button.
  • When finished, FRST will produce a log (FRST.txt) in the same directory the tool was run from.
    Please copy and paste the log in your next reply.

regards,
deeprybka
:busy:
Neminem laede, immo omnes, quantum potes, iuva. Arthur Schopenhauer
 
unite_blue.png
asap.png

#6 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 01 November 2014 - 04:18 PM

Thanks for response, Jürgen!

 

When tried to post Fixlog.txt alone, got an error message, caption "An error occurred", body "post_too_long"  Will try to post Fixlox,txt in two halves after this post.



#7 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 01 November 2014 - 04:22 PM

Fixlog,txt, 1st part, lines 1-1024 of 1765 lines:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-11-2014
Ran by Alexey at 2014-11-01 16:32:24 Run:1
Running from C:\Users\Alexey\Desktop
Loaded Profile: Alexey (Available profiles: Alexey & Administrator & Classic .NET AppPool & DemoWPSite1 & Site AJAX & TryEmail & AZWebWorks & AZLimitless & DefaultAppPool & Experiment & Ariphmetic Services)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
CloseProcesses:
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...A8F59079A8D5}\localserver32: rundll32.exe javascript:"\..\mshtml,RunHTMLApplication ";eval("epdvnfou/xsjuf)(=tdsjqu!mbohvbhf>ktds (the data entry has 239 more characters). <==== Poweliks!
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
HKLM-x32\...\Run: [] => [X]
HKLM\...\Run: [VideoDownloadConverter Home Page Guard 64 bit] => "C:\PROGRA~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe"
C:\PROGRA~2\VIDEOD~2\
Folder: C:\Users\Alexey\AppData\LocalLow
*****************

Processes closed successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
"HKCU\SOFTWARE\Policies\Google" => Key deleted successfully.
"HKU\S-1-5-21-280880736-1450447301-2209184806-1001\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\localserver32" => Key Deleted Successfully.
"HKU\S-1-5-21-280880736-1450447301-2209184806-1001\Software\Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}" => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully.
"HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
"HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\VideoDownloadConverter Home Page Guard 64 bit => value deleted successfully.
"C:\PROGRA~2\VIDEOD~2" => File/Directory not found.

========================= Folder: C:\Users\Alexey\AppData\LocalLow ========================

2012-02-11 14:33 - 2012-03-27 19:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe
2012-02-11 14:33 - 2013-04-17 03:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat
2012-03-12 16:24 - 2014-10-27 15:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0
2012-03-12 16:24 - 2012-03-18 19:50 - 0036541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\acropromessage.zip
2012-03-12 16:24 - 2014-10-27 15:53 - 0036864 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Exchange-ProMessages
2013-11-06 14:08 - 2013-11-06 14:08 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\ReaderMessages
2012-11-06 17:43 - 2014-10-26 00:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets
2012-11-06 17:43 - 2012-11-06 17:43 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214349Z-2411310
2012-11-06 17:43 - 2012-11-06 17:43 - 0001721 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214349Z-2411320
2012-11-06 17:43 - 2012-11-06 17:43 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214350Z-2411323
2012-11-06 17:43 - 2012-11-06 17:43 - 0002396 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214350Z-2411332
2012-11-06 17:43 - 2012-11-06 17:43 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214350Z-2411344
2012-11-06 17:43 - 2012-11-06 17:43 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214351Z-2411354
2012-11-06 17:43 - 2012-11-06 17:43 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214351Z-2411366
2012-11-06 17:43 - 2012-11-06 17:43 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-121106214351Z-2411375
2013-01-10 21:12 - 2013-01-10 21:12 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130111011248Z-907875
2013-01-10 21:12 - 2013-01-10 21:12 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130111011248Z-907886
2013-01-10 21:12 - 2013-01-10 21:12 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130111011248Z-907900
2013-01-10 21:12 - 2013-01-10 21:12 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130111011249Z-907909
2013-03-07 05:58 - 2013-03-07 05:58 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130307095808Z-1079623
2013-03-07 05:58 - 2013-03-07 05:58 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130307095808Z-1079628
2013-03-07 05:58 - 2013-03-07 05:58 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130307095808Z-1079645
2013-03-07 05:58 - 2013-03-07 05:58 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130307095808Z-1079648
2013-04-02 06:52 - 2013-04-02 06:52 - 0002135 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130402105251Z-9637600
2013-04-02 06:52 - 2013-04-02 06:52 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130402105251Z-9637609
2013-04-02 06:52 - 2013-04-02 06:52 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130402105251Z-9637615
2013-04-02 06:52 - 2013-04-02 06:52 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130402105251Z-9637622
2013-05-17 00:43 - 2013-05-17 00:43 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130517044350Z-4902141
2013-05-17 00:43 - 2013-05-17 00:43 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130517044351Z-4902147
2013-05-17 00:43 - 2013-05-17 00:43 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130517044351Z-4902168
2013-05-17 00:43 - 2013-05-17 00:43 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130517044352Z-4902174
2013-08-03 10:00 - 2013-08-03 10:00 - 0002641 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-130803140031Z-21869409
2013-10-24 11:54 - 2013-10-24 11:54 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131024155412Z-3644018
2013-10-24 11:54 - 2013-10-24 11:54 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131024155413Z-3644044
2013-10-24 11:54 - 2013-10-24 11:54 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131024155413Z-3644070
2013-10-24 11:54 - 2013-10-24 11:54 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131024155414Z-3644097
2013-12-29 18:06 - 2013-12-29 18:06 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131229220606Z-9163192
2013-12-29 18:06 - 2013-12-29 18:06 - 0002135 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131229220607Z-9163211
2013-12-29 18:06 - 2013-12-29 18:06 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131229220608Z-9163234
2013-12-29 18:06 - 2013-12-29 18:06 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-131229220608Z-9163254
2014-01-30 10:23 - 2014-01-30 10:23 - 0002135 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142332Z-48280
2014-01-30 10:23 - 2014-01-30 10:23 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142333Z-48301
2014-01-30 10:23 - 2014-01-30 10:23 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142333Z-48321
2014-01-30 10:23 - 2014-01-30 10:23 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142334Z-48339
2014-01-30 10:23 - 2014-01-30 10:23 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142335Z-48367
2014-01-30 10:23 - 2014-01-30 10:23 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142336Z-48384
2014-01-30 10:23 - 2014-01-30 10:23 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142336Z-48411
2014-01-30 10:23 - 2014-01-30 10:23 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140130142337Z-48430
2014-04-03 17:09 - 2014-04-03 17:09 - 0002641 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140403210934Z-5519264
2014-05-20 17:51 - 2014-05-20 17:51 - 0002135 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215101Z-906168
2014-05-20 17:51 - 2014-05-20 17:51 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215102Z-906191
2014-05-20 17:51 - 2014-05-20 17:51 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215102Z-906213
2014-05-20 17:51 - 2014-05-20 17:51 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215103Z-906239
2014-05-20 17:51 - 2014-05-20 17:51 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215104Z-906272
2014-05-20 17:51 - 2014-05-20 17:51 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215105Z-906301
2014-05-20 17:51 - 2014-05-20 17:51 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215106Z-906330
2014-05-20 17:51 - 2014-05-20 17:51 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140520215107Z-906354
2014-09-01 04:44 - 2014-09-01 04:44 - 0002135 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084403Z-5848058
2014-09-01 04:44 - 2014-09-01 04:44 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084404Z-5848080
2014-09-01 04:44 - 2014-09-01 04:44 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084404Z-5848105
2014-09-01 04:44 - 2014-09-01 04:44 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084406Z-5848142
2014-09-01 04:44 - 2014-09-01 04:44 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084406Z-5848167
2014-09-01 04:44 - 2014-09-01 04:44 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084407Z-5848199
2014-09-01 04:44 - 2014-09-01 04:44 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084408Z-5848223
2014-09-01 04:44 - 2014-09-01 04:44 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-140901084409Z-5848254
2014-10-15 19:46 - 2014-10-15 19:46 - 0005678 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141015234652Z-14909494
2014-10-20 15:26 - 2014-10-20 15:26 - 0005678 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141020192626Z-76427
2014-10-20 15:26 - 2014-10-20 15:26 - 0002135 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141020192627Z-76451
2014-10-20 15:26 - 2014-10-20 15:26 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141020192628Z-76479
2014-10-22 17:40 - 2014-10-22 17:40 - 0002002 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141022214047Z-5287453
2014-10-23 00:50 - 2014-10-23 00:50 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141023045044Z-6093595
2014-10-23 01:38 - 2014-10-23 01:38 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141023053813Z-6182629
2014-10-23 01:38 - 2014-10-23 01:38 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141023053813Z-6182652
2014-10-23 01:38 - 2014-10-23 01:38 - 0001682 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141023053814Z-6182680
2014-10-23 01:38 - 2014-10-23 01:38 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141023053815Z-6182713
2014-10-26 00:15 - 2014-10-26 00:15 - 0092711 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141026041517Z-3071669
2014-10-26 00:15 - 2014-10-26 00:15 - 0092196 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141026041518Z-3071705
2014-10-26 00:15 - 2014-10-26 00:15 - 0085846 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141026041519Z-3071744
2014-10-26 00:15 - 2014-10-26 00:15 - 0085541 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\assets\assets-141026041521Z-3071802
2012-05-30 00:19 - 2014-09-13 21:09 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search
2013-01-12 10:20 - 2013-01-12 10:20 - 0018867 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\03d77754a308374f93063163f6b44538.idx
2013-05-28 20:31 - 2013-05-28 20:32 - 0119549 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\11f0a1e4aa7c7a8b15eb3a9d1179f415.idx
2012-06-11 06:26 - 2012-06-11 06:36 - 0186436 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\16f45b9546a16d479cd38d3e881a0792.idx
2014-08-20 16:47 - 2014-08-20 16:48 - 0138952 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\1a79116a71829540b0ae19a59a303f38.idx
2014-03-13 06:08 - 2014-03-13 06:08 - 0136556 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\21bdf687c4036942d4e65c9f902ea7d0.idx
2012-07-26 05:01 - 2012-07-26 05:05 - 0298533 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\28bf4e5e4e758a4164004e56fffa0108.idx
2013-10-03 01:42 - 2013-10-03 01:42 - 0135411 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\4be6bb542bbad54e87b8132f83789893.idx
2014-02-06 16:56 - 2014-02-06 16:56 - 0077952 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\51a91ba4ede7d11c6b4f4352a77ebe35.idx
2012-05-30 00:19 - 2012-12-26 09:38 - 0042333 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\532b967ac3f3827f6f888d6d024ff84f.idx
2013-03-20 21:35 - 2013-03-20 21:39 - 0059607 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\76d298f6255d7bbde887f92ed48c8c7e.idx
2014-02-27 11:52 - 2014-02-27 11:52 - 0492015 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\92353efa76c66c44b3d643cf333916ed.idx
2013-06-27 14:21 - 2013-06-27 14:21 - 0052102 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\932f526a1190e14f97747ddb923b08e0.idx
2012-07-03 18:31 - 2012-07-03 18:32 - 0026183 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\973fda81edd0504da5b4a67cd652eb31.idx
2012-07-18 23:53 - 2012-07-18 23:54 - 0594975 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\9d977e48b8134c6f80995c529d2f2ffe.idx
2013-01-13 17:15 - 2013-01-13 17:15 - 0026383 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a42abc4fbd7b4c4db566c98740a67cc7.idx
2013-07-04 07:03 - 2013-07-04 07:04 - 0281207 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\a68907a22e4cc34d922a9d449a9014e6.idx
2012-06-29 09:33 - 2012-06-29 09:33 - 0155591 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\aca2f339dbca448691fa4899b7f8af70.idx
2014-02-27 11:54 - 2014-02-27 12:29 - 0492015 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b504f27c9cb3b9478c1b18e7e1d5c12c.idx
2014-07-21 05:12 - 2014-07-21 05:12 - 0013993 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\b704d9d6d50ae042a230ec589f507331.idx
2014-06-01 10:12 - 2014-06-01 10:13 - 1868360 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c69c722df5076e4f9f62198bd772aea6.idx
2014-09-13 21:09 - 2014-09-13 21:09 - 0034539 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\c78f5dc97e0410408ac5a0b621a616c0.idx
2012-08-04 06:47 - 2012-08-04 06:47 - 0018435 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\d54097a8cb38434b87c61f66216cd075.idx
2014-03-07 11:49 - 2014-03-07 11:50 - 3027553 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\ef4aa48a84ba4ea0a5e4378460fc2e35.idx
2014-02-26 20:23 - 2014-02-26 20:23 - 0051159 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Search\fa7208b06dc9384598d067b1995957c1.idx
2013-07-16 05:49 - 2013-07-16 05:49 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer
2013-07-16 05:49 - 2014-09-19 19:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\inprogress
2013-07-16 05:49 - 2014-09-19 19:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\metadata
2013-07-16 05:49 - 2014-09-19 19:53 - 0033792 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\metadata\Synchronizer100
2013-07-16 05:49 - 2014-09-19 19:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\resources
2013-07-16 05:49 - 2013-07-16 05:49 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\resources\resource-17
2013-07-16 05:49 - 2014-09-19 19:53 - 0165406 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\10.0\Synchronizer\resources\resource-18
2013-04-17 03:43 - 2014-11-01 15:14 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0
2013-04-17 03:43 - 2014-11-01 15:14 - 0047104 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\ReaderMessages
2014-03-12 08:17 - 2014-10-28 17:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets
2014-03-12 08:17 - 2014-03-12 08:17 - 0001908 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-140312121731Z-2669653
2014-03-12 08:17 - 2014-03-12 08:17 - 0002641 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-140312121732Z-2669694
2014-03-12 08:17 - 2014-03-12 08:17 - 0063139 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-140312121733Z-2669725
2014-03-12 08:17 - 2014-03-12 08:17 - 0001462 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-140312121734Z-2669757
2014-10-28 17:29 - 2014-10-28 17:29 - 0001908 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-141028212917Z-170587
2014-10-28 17:29 - 2014-10-28 17:29 - 0002641 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-141028212918Z-170624
2014-10-28 17:29 - 2014-10-28 17:29 - 0063139 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\assets\assets-141028212919Z-170656
2014-10-28 17:29 - 2014-10-28 17:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader
2014-10-28 17:29 - 2014-10-28 17:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\RFL
2014-10-28 17:29 - 2014-10-28 17:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\RFL\LocalMapping
2014-10-28 17:29 - 2014-10-28 17:29 - 0008192 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\RFL\LocalMapping\RFLDB110
2014-10-28 17:29 - 2014-10-28 17:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\Synchronizer
2014-10-28 17:29 - 2014-10-28 17:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\Synchronizer\metadata
2014-10-28 17:29 - 2014-10-28 17:30 - 0033792 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\Synchronizer\metadata\Synchronizer110
2014-10-28 17:29 - 2014-10-28 17:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\Synchronizer\resources
2014-10-28 17:30 - 2014-10-28 17:30 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\11.0\Reader\Synchronizer\resources\resource-18
2012-02-11 14:33 - 2012-02-11 14:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\9.0
2012-02-11 14:33 - 2012-03-08 07:37 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\9.0\Search
2012-02-11 14:34 - 2012-02-11 14:34 - 0346954 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\9.0\Search\92f194c9fd07ce488460b717e88c17bb.idx
2012-03-08 07:37 - 2012-03-08 07:38 - 0042814 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Acrobat\9.0\Search\ad2518b17f94f6d43fee9878b8e1e2cf.idx
2012-03-27 19:54 - 2012-03-27 19:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics
2012-03-27 19:54 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries
2012-04-04 05:29 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary
2012-04-04 05:29 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\all
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\all\added.txt
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\all\excluded.txt
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\ara
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\brt
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\brz
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\bul
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\can
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\cfr
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\ctl
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\cze
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\dan
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\dut
2012-04-04 05:29 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\eng
2012-04-04 05:30 - 2012-04-04 05:30 - 0001024 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\eng\added.clam
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\eng\added.txt
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\eng\exceptions.txt
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\est
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\fin
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\frn
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\gre
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\grm
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\heb
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\hrv
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\hun
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\itl
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\lav
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\lit
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\nrw
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\nyn
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\pol
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\prt
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\rum
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\rus
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\sgr
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\slo
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\slv
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\spn
2012-04-04 05:29 - 2012-04-04 05:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\swd
2012-04-04 05:30 - 2012-04-04 05:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Adobe\Linguistics\Dictionaries\Adobe Custom Dictionary\tur
2012-09-25 11:18 - 2012-09-25 11:18 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer
2012-09-25 11:18 - 2012-10-05 09:01 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime
2012-09-25 11:18 - 2014-10-28 07:59 - 0009000 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\QuickTime.qtp
2012-10-05 09:01 - 2014-06-30 07:09 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads
2012-10-05 09:01 - 2014-06-30 07:09 - 0002316 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\TOC.plist
2013-09-20 02:40 - 2013-09-20 02:40 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\01
2013-09-20 02:40 - 2013-09-20 02:40 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\01\11
2014-06-30 07:09 - 2014-06-30 07:09 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\04
2014-06-30 07:09 - 2014-06-30 07:10 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\04\01
2014-06-30 07:09 - 2014-06-30 07:10 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\04\03
2012-10-05 09:01 - 2014-04-28 12:10 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\05
2012-10-05 09:01 - 2012-10-05 09:01 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\05\01
2014-04-28 12:10 - 2014-04-28 13:19 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\05\04
2012-10-05 09:01 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\06
2012-10-05 09:01 - 2012-10-06 20:38 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\06\12
2014-09-30 11:13 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\06\13
2014-09-30 11:13 - 2014-09-30 11:13 - 0001432 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\06\13\6d42172f-6ba33cae-f4103847-09449050.qtch
2014-06-30 07:09 - 2014-06-30 07:09 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\08
2014-06-30 07:09 - 2014-06-30 07:09 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\08\02
2014-06-30 07:09 - 2014-06-30 07:09 - 0001431 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\08\02\82c1d92a-f66c0de6-d5825aee-c2c25a66.qtch
2012-11-08 22:03 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\12
2012-11-08 22:03 - 2012-11-08 22:03 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\12\03
2014-09-30 11:13 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\12\14
2014-09-30 11:13 - 2014-09-30 11:13 - 0000927 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\12\14\ce7bc489-220d4531-5b7b280d-757599f5.qtch
2014-04-28 02:11 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\13
2014-04-28 02:11 - 2014-04-28 02:11 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\13\05
2014-09-30 11:13 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\13\06
2014-09-30 11:13 - 2014-09-30 11:13 - 0007380 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\13\06\d6257504-e0ad607d-26eade94-add05bb7.qtch
2014-04-28 02:11 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\14
2014-09-30 11:13 - 2014-09-30 11:13 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\14\03
2014-09-30 11:13 - 2014-09-30 11:13 - 0258449 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\14\03\e3c41143-c30ed1d7-7170363d-1dacc402.qtch
2014-04-28 02:11 - 2014-04-28 02:11 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\14\05
2014-04-28 02:11 - 2014-04-28 02:11 - 0001431 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\14\05\e55ccc7b-0af0cd45-3502909b-18524e71.qtch
2012-11-08 22:03 - 2012-11-08 22:03 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\15
2012-11-08 22:03 - 2013-09-20 02:40 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\15\06
2013-09-20 02:40 - 2013-09-20 02:40 - 0001431 _____ () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\15\06\f672a7a2-5a969c43-4ad2220a-72012719.qtch
2012-10-05 09:02 - 2014-04-28 12:23 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Apple Computer\QuickTime\downloads\tmp
2013-04-17 03:35 - 2013-04-17 03:35 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Brother
2013-04-17 03:35 - 2013-04-17 03:35 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Brother\PrtDrv
2014-04-30 06:21 - 2014-04-30 06:22 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\EmieSiteList
2014-04-30 06:22 - 2014-04-30 06:22 - 0000000 ___SH () C:\Users\Alexey\AppData\LocalLow\EmieSiteList\container.dat
2014-04-30 06:22 - 2014-04-30 06:22 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\EmieUserList
2014-04-30 06:22 - 2014-04-30 06:22 - 0000000 ___SH () C:\Users\Alexey\AppData\LocalLow\EmieUserList\container.dat
2012-02-11 14:25 - 2014-01-28 02:59 - 0000000 ___SD () C:\Users\Alexey\AppData\LocalLow\Microsoft
2012-02-11 14:25 - 2012-02-11 14:25 - 0000000 ___SD () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache
2012-02-11 14:25 - 2014-11-01 01:58 - 0000000 ___SD () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
2014-10-04 11:26 - 2014-10-09 08:12 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0232C043C0C9596C14FDF5D380FF271D_B1C00F0EE9F3C29B1718D6CE45F0AA17
2014-04-11 17:27 - 2014-10-17 05:53 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0381C14D7D4614738FA6FFB3FBC512C5_26ED55FD609550F6150F72665A375B42
2014-04-16 13:46 - 2014-10-16 22:41 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0381C14D7D4614738FA6FFB3FBC512C5_BD238C8F7EB3CE78EC64AFE77CF7C5DA
2014-04-27 12:38 - 2014-10-17 12:20 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0381C14D7D4614738FA6FFB3FBC512C5_C42BB94E43AC6043DE254B8F575F45F7
2014-09-22 00:08 - 2014-10-05 03:19 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\03C2624375988154FBF20373B7D495E8_41BB339A9D5FC123A00718AE21261B7D
2014-08-18 15:18 - 2014-10-15 07:07 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\03C2624375988154FBF20373B7D495E8_9BF4E41493D0675343D2065247566BB4
2014-10-09 18:11 - 2014-10-09 18:11 - 0037677 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\04AFA8793E5CDC4A81C6CD4554A30707
2014-08-10 17:48 - 2014-10-05 07:49 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_232B2F270C78900E70FD1AC9E445ADC3
2014-05-01 09:20 - 2014-10-20 14:54 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1
2014-04-16 15:43 - 2014-10-03 06:32 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_3B2D49C49012723148CD5DF5C8C2F97A
2014-09-13 07:11 - 2014-10-03 06:32 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_45CC4B6458553BBBBC9B7393A56D3E7A
2014-10-04 19:11 - 2014-10-04 19:11 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_4D9667ED76303152C1AD5F5954BFDB44
2014-09-29 09:39 - 2014-09-29 09:39 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_4EDEDD9F9F920628FDC4E91FB4753BEE
2014-09-21 10:50 - 2014-09-29 09:39 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_66A8A9899B6D6EE4144C59DE57EDBDF5
2013-10-23 14:34 - 2014-10-08 09:06 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_8B8B185076EF4E7580202CFD5A0EFE0D
2014-05-26 08:17 - 2014-10-07 09:47 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_8D84DA3136854BC88770045D4776D987
2014-09-21 10:50 - 2014-09-29 09:39 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_B6CA1DDBF0D65D28490430E8B6920B75
2014-09-21 11:32 - 2014-10-01 07:46 - 0001359 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_F5DA7195A495648C519B99CC7DBAA100
2014-07-04 07:03 - 2014-10-13 11:41 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\072F90B4A4D587EC30FB47E8464593FE_E61D2CA3841061A73CB0F17D1A4D4E06
2014-05-05 23:41 - 2014-10-02 22:22 - 0000440 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\07BF4DE53B25BEE2E3CEF7AA93F39E8A
2014-09-19 12:06 - 2014-10-15 09:19 - 0001509 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\098A74825DEB4C50FAE88C91A0B9713D_A95B4C8B6F5C96B78EE98784995320FE
2014-10-15 23:23 - 2014-10-15 23:23 - 0001395 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0CCA7F4B3366C6FAA13012C139D5D8C6_3AD7E0BAE1D2E9445A1058759BBC6882
2014-10-13 09:16 - 2014-10-13 09:16 - 0001395 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0CCA7F4B3366C6FAA13012C139D5D8C6_6975E1F12011FA19DF3C28F7F53208A6
2014-08-03 22:39 - 2014-10-09 16:27 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0D6ED27B76F0582A8D2120DF24D1E180_8C0B1EDF04F7D01F3C6CFA8D7166E437
2014-05-31 18:32 - 2014-10-13 09:09 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0D6ED27B76F0582A8D2120DF24D1E180_B52DB0DD355A2D437E4D65686FF6F4AD
2014-10-03 14:49 - 2014-10-03 14:49 - 0001992 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0ED407927179AB82809B8F9B0619DB13_679428AE8A5DC8351CE9D9DEC0A3B8AD
2014-10-04 19:19 - 2014-10-04 19:19 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0F1583FFF42FFF476A09801ACB69213F_E3F4A8C96454D7D3441D2C1BCE81F875
2014-10-06 20:18 - 2014-10-06 20:18 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0F5EC80F01BA50C1C7012844121A7EB4_3DF27800E9D0EB1066F7BDAB09FE8D18
2014-09-22 12:32 - 2014-10-13 11:41 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1060B7ADDE0FF6DE85637BF89FC4CEBC_17C332AE678FC2159EDCEEFD739AF1B2
2014-09-14 10:54 - 2014-10-07 09:44 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1060B7ADDE0FF6DE85637BF89FC4CEBC_ED8529BBB4AF7503D5B6590BB6397958
2014-04-14 15:55 - 2014-09-30 10:12 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_10576CD23F50599398D3945DE685333C
2014-10-13 12:18 - 2014-10-13 12:18 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_4052255C67AE223CF9B151ECC3F140FD
2014-08-10 12:54 - 2014-10-18 10:06 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_CA1234768645E71A8C867D6035675AC8
2013-11-10 14:37 - 2014-10-18 05:14 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95
2014-10-11 13:41 - 2014-10-11 13:41 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1554C63897948B36B35A43332D76FF76_0E467AD3C3D5E2F3B7EA93BDF988AB7D
2014-04-12 06:26 - 2014-10-16 11:18 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1BB09BEEC155258835C193A7AA85AA5B_79B9DDF677DCCB809F3B7CE98068306B
2014-10-09 05:38 - 2014-10-16 01:32 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1BB09BEEC155258835C193A7AA85AA5B_B01A72BBF8DD5E118AC758FE99A6458C
2014-09-23 05:46 - 2014-10-03 18:43 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1BFCB6E7DDBC47C0A8E926DFA786FD55_E929A362B047891C17DD3AC08D48A304
2014-10-12 11:02 - 2014-10-12 11:02 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1BFCB6E7DDBC47C0A8E926DFA786FD55_ECA447AB72E5DB5F13A7190A951365C1
2012-10-15 04:56 - 2014-08-13 14:59 - 0001692 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406
2014-10-10 07:18 - 2014-10-10 07:18 - 0077036 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F356F4D07FE8C483E769E4586569404
2014-10-11 15:09 - 2014-10-11 15:09 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1FE75F3CB404812245BC0ABAE39B0FBA_237B3D661532ADF2CE1774C85BE28B45
2013-10-10 05:22 - 2014-09-12 01:59 - 0000813 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\21253908F3CB05D51B1C2DA8B681A785
2014-10-11 15:09 - 2014-10-11 15:09 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\219976D61D72B43A8A9F6916F467E10F_D5699EDEA7EEDF7B87ECB9D04A94C59D
2014-04-12 12:18 - 2014-10-17 18:29 - 0001853 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\223DE96EE265046957A660ED7C9DD9E7_EFF9B9BA98DEAA773F261FA85A0B1771
2012-02-11 15:58 - 2014-10-17 09:28 - 0001142 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D
2014-07-10 23:02 - 2014-10-08 09:58 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_010EF11C72964EEFACE16EAD37B47D41
2014-04-12 14:40 - 2014-10-18 03:29 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_09516A43B8D58066B9E0FD2DD14F48F2
2014-10-16 22:41 - 2014-10-16 22:41 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_0C8CB03B52DB63E46A6EEFF42EA48451
2014-10-16 22:41 - 2014-10-16 22:41 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_17E7ED6B0667F4EBF16F02010DE61FC4
2014-10-02 11:11 - 2014-10-13 09:04 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_250619D06F462B6D02E7229F3E7F2237
2014-10-08 00:42 - 2014-10-08 00:42 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_27DA4F7CF383B592E2001EE691998D92
2014-10-03 17:57 - 2014-10-03 17:57 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_2D694440C95B6A8D9531BFBA73C683AF
2014-10-08 00:42 - 2014-10-08 00:42 - 0001729 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_36BECF083143B882DA15752FD2D50CC5
2014-10-04 11:22 - 2014-10-04 11:22 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_45514857E9C1D968D9B4289E618C8969
2014-09-18 00:03 - 2014-10-04 03:18 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_4F864821FAB0BAC893749D85E1696695
2014-04-19 13:52 - 2014-10-16 22:39 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_69127A16A82DAE6DB57B8DA92372B1FA
2014-10-04 03:18 - 2014-10-14 21:40 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_8730100273DEFC3B2162ED57A46DFC04
2014-10-13 09:04 - 2014-10-13 09:04 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_8EEB18CC266CA7711A0536F1630AFBFD
2014-08-05 12:31 - 2014-10-16 22:41 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_9E4A58B866C715F3E0A2635898B1CB3C
2014-05-06 08:42 - 2014-10-11 17:38 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_A524B28F45DA01AB41834424375C85AD
2014-10-16 22:38 - 2014-10-16 22:38 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_A5B69E02658CEEB18450D20264050170
2014-08-25 11:24 - 2014-10-15 15:45 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_A7507FD740C7F5252BF560D3911B8152
2014-09-02 17:43 - 2014-10-17 09:55 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_A79B818B3FB5CF49047AF96F827B4D19
2014-06-28 12:27 - 2014-10-12 01:48 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_A9258660EDF552C812F5584641F99061
2014-09-18 00:03 - 2014-10-04 03:18 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_AE7B0EC2CF0DA7A0560E758123D65B28
2014-10-02 22:28 - 2014-10-02 22:28 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_BAFDBEF941F3E70975B098D4DBE3F67B
2014-10-17 14:10 - 2014-10-17 14:10 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_C9F83E2D006186EF1E1D456898A6F91A
2014-07-10 23:29 - 2014-10-04 03:18 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_D6EB3FFFDE53D8CD96B499B09843999B
2014-10-16 02:22 - 2014-10-16 02:22 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_DBB6B54DC2240FE81426F2A9E6ADE200
2014-04-15 02:33 - 2014-10-13 08:54 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_DE8B4EE5F3BF050D2E6D36EB97284B58
2014-04-14 06:33 - 2014-10-15 19:06 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_EEE52A74DEE31B064E156E492FD05217
2014-10-09 19:47 - 2014-10-09 19:47 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_F090C9AEE0F3D5BC665AADA2BB771DDD
2014-09-12 15:48 - 2014-10-11 08:57 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\270D8E7F055B1BFEBCBDB7333DABCB78_94F76A2780EDD3025B785CB4BBF4BAE0
2014-10-01 08:04 - 2014-10-01 08:04 - 0055774 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\27371171D8BBA336302695C6CEB04833
2014-10-14 11:41 - 2014-10-14 11:41 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2A539E4E00943A19F47B85FE65963010_416CE5BE77369FF9F2839B561CCF6B50
2014-06-30 06:21 - 2014-10-16 22:42 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2B47C79E2E98AD8397AAFBB0FFD6F673_AFFB20FFF237BE0D2ED9B6A73BCEDA60
2014-10-04 14:34 - 2014-10-11 08:57 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2DDBC9BD281C0CEE62FC575B42E5F9A6_5D89D850AF96A0CA443C665183B91E54
2014-08-03 22:39 - 2014-10-18 10:05 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E816AB9601610B68C200585A006172E_57391BEEE8E0CB8DFC8BBE8E30534666
2014-09-20 09:03 - 2014-10-11 13:41 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_07213810F6266B3C5344D7A7C3922338
2014-10-16 02:28 - 2014-10-16 02:28 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_1517859E7A948B2F91E8C02BC0CC435F
2014-10-14 22:11 - 2014-10-14 22:11 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_2BD5459F6C8A1F21BBCA7B203EE3C48C
2014-10-11 15:09 - 2014-10-11 15:09 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_374756732E262B15E285CDA7BB487957
2014-10-11 17:40 - 2014-10-11 17:40 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_40BD0A10F994EC65227E00D20A420B79
2014-10-13 19:49 - 2014-10-13 19:49 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_474651C1AE615F3129F4C2C7851FEA04
2014-09-13 07:18 - 2014-10-16 22:41 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_4A44502CABB9075508F6472A2484B9E5
2014-04-27 10:11 - 2014-10-17 06:12 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_7665F86EDC0C7870E62D19F94BAD2BFF
2014-10-11 12:49 - 2014-10-11 12:49 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_76F34A9FC08535CDD5CF82721987371F
2014-10-17 06:11 - 2014-10-17 06:11 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_7C894D80D9FA65406B78BA08D48DCD51
2014-06-25 23:08 - 2014-10-16 22:42 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_7E8F733287E7BD49A4A5E72E948E7D69
2014-10-11 08:55 - 2014-10-11 08:55 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_85C125F09CFA1B9FF5B9EC44B3D14258
2014-08-10 12:52 - 2014-10-11 08:14 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_880BA03F6ECDCC73603AAB316F424222
2014-10-11 16:23 - 2014-10-17 14:10 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_8C72B85520C1FB052F41A046AB559190
2014-09-20 11:38 - 2014-09-30 22:06 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_9BADAA9EB05B777F9E50F283D2966EB2
2014-10-01 07:36 - 2014-10-01 07:36 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_9DB317733D199B40C98B98B54C099D5E
2014-10-12 11:13 - 2014-10-12 11:13 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_9FB44A25709FD54E076199D35D12E731
2014-08-12 00:47 - 2014-10-11 13:54 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_A39EAE83FBA958CFB8008BFE7C56AF99
2014-10-11 13:55 - 2014-10-11 13:55 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_ACC72D63AAFADADF0E5052F96EB2204A
2014-03-17 07:20 - 2014-10-17 22:46 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_E96F9601498C7A8C4302DFE3D478602E
2014-07-12 18:25 - 2014-10-14 21:40 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_EBE86AC2959ED4F017760B1B506B68EF
2014-10-11 15:09 - 2014-10-11 15:09 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_F215AF34F564FFFEC1252DD5307F2A58
2014-08-16 02:21 - 2014-09-30 21:41 - 0001347 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_F6B0C2B6E95D06783CE1176922978209
2014-04-18 06:50 - 2014-10-17 12:20 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2FAC8CE285C8CD9FC7F992BFE39C4D46_CEE544465F7573294E2074C5F4EC5929
2014-09-30 05:43 - 2014-10-12 13:40 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\30943B6B59C81511836CDEDC8B1F99D8_95493B4BB7B6DF46D21BB76A9C67D55A
2014-10-06 20:18 - 2014-10-06 20:18 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\30F7B429BB1DACA9B591B41E016BED66_7D7384A00F3612C09777779625401774
2012-02-16 23:10 - 2014-05-24 04:20 - 0000521 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3130B1871A126520A8C47861EFE3ED4D
2014-08-09 13:19 - 2014-10-12 00:45 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\34075C1D7BF091BBDF98E1E2FE5A1807_0BDB20857C259F5DCCA52A251CD48DCC
2014-07-10 23:30 - 2014-10-16 12:18 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\34075C1D7BF091BBDF98E1E2FE5A1807_4C9B306D8694769BC493BCAEF0F12248
2014-10-01 07:34 - 2014-10-12 13:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\34075C1D7BF091BBDF98E1E2FE5A1807_51AC35CCEF0B15EB797671C01F9D2E47
2014-02-09 16:11 - 2014-10-16 15:49 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\34075C1D7BF091BBDF98E1E2FE5A1807_67DCB1EC7D0E2BBBEF3993320BEE168A
2014-10-17 14:10 - 2014-10-17 14:10 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\34075C1D7BF091BBDF98E1E2FE5A1807_E3AAEB4A108F5A78D83DC5E860902614
2014-10-23 02:57 - 2014-10-23 02:57 - 0001548 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\34DA60AA966CD9270C5362E6AEF824CF
2014-03-04 18:20 - 2014-10-14 12:50 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3559FD17375EFB765B4E3F23EFB797BB_26EA71F47DCF39B693F1290D779F4631
2014-09-12 09:51 - 2014-10-13 08:56 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3559FD17375EFB765B4E3F23EFB797BB_A2A45E29CDD4E1C204764485421FB3FA
2014-10-17 14:10 - 2014-10-17 14:10 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_0636A287A081D50E722D0203F9C4C174
2014-04-10 02:32 - 2014-10-16 15:49 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_1F44ADB9468521D38A9AE7D9F08FD55B
2014-04-09 15:28 - 2014-10-16 02:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_1F9B0E8A46B232A1CEC8583D81127EAE
2014-07-03 16:01 - 2014-10-10 07:06 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_32E75E309152C43BD35FAFCEA2D05F4B
2014-10-11 13:39 - 2014-10-11 13:39 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_3378B11345DAC34355973777EC4EFBBE
2014-04-09 15:12 - 2014-10-14 10:14 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_5A3B8B137C41015358FD5FDD60CC7CC6
2014-04-17 19:37 - 2014-10-06 10:02 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_EC37CEEDB93592D8655D68D49570A570
2014-01-24 07:51 - 2014-10-15 15:45 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\36F1F6A9CDED762616E5038B5267C2B4_02781E45CC1B261CDB6781907825F8E4
2014-10-06 20:18 - 2014-10-06 20:18 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\36F1F6A9CDED762616E5038B5267C2B4_10002E5D0BA438B2F34DDD35BAA29895
2014-06-28 10:36 - 2014-07-08 08:16 - 0000458 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\37570AF16029C559A6224EE4AF54691D
2014-10-31 19:36 - 2014-10-31 19:36 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3781B4A3713292956206932165FA4132_D37502A09829604D4C1B7778843C560D
2014-10-12 09:32 - 2014-10-12 09:32 - 0001581 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\378B079587A9184B2E2AB859CB263F40_2B618FC6CF84AEF3C14E129161BF18D9
2013-10-02 07:02 - 2014-10-31 02:02 - 0000824 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\37C951188967C8EB88D99893D9D191FE
2014-04-10 16:04 - 2014-10-14 15:59 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\38022123F23BF44F207091FBE4F74201_115A74E8D9DEDB881426CE5D0975B5BB
2014-10-11 17:40 - 2014-10-11 17:40 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\38022123F23BF44F207091FBE4F74201_922469FC2FED449AF690C59A8BF7F216
2014-10-09 19:43 - 2014-10-09 19:43 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\38022123F23BF44F207091FBE4F74201_EE728E28070A2F73BAA11995CE030021
2014-09-19 12:06 - 2014-10-15 09:19 - 0001496 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3823B0119FA7D68ECD86999B07F5395F_0FC4DE83CFFDA82FB5E4728F339F58DA
2014-08-29 05:30 - 2014-10-17 14:10 - 0000494 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3B6E683A7A45CC59BF035C9BA8C7AB9D
2014-09-07 07:39 - 2014-10-17 14:10 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3D561D6E5339B4E0EAA46CCC5E6F87EF_823EDBF0ECAF3857BF09DCC3D2A1601F
2014-10-09 06:46 - 2014-10-09 06:46 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3D561D6E5339B4E0EAA46CCC5E6F87EF_9014BE8D3289F5158BDFAE502095F2CF
2014-07-12 08:34 - 2014-10-10 07:06 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3D561D6E5339B4E0EAA46CCC5E6F87EF_F2253630D6F2180B541EDC4FA2BF7A4F
2014-08-20 10:11 - 2014-10-13 12:18 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3EF2DCFBD8E45DF4AF38995D1A2C2444_439F67C6FDD1137F2B2DE684AECC73F8
2014-09-21 10:50 - 2014-10-14 12:44 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3F61CCEADC516F8E8F002E92B226F3BF_69DD06CD4434441D3C0B5AF156F2B9EF
2014-07-09 09:59 - 2014-10-17 14:08 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3F61CCEADC516F8E8F002E92B226F3BF_B0BE99ACB2BB1FDC1E8F6380596C92B0
2014-07-20 07:42 - 2014-10-15 15:48 - 0001784 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3F9CAA0497A0877CE21ECD947E7238B5_E1F0919A92865CED77950400693A532F
2014-10-10 11:58 - 2014-10-10 11:58 - 0001402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4302E4BD4246B8416A3626782DD3C8B9_7A8273B1153F2404686DF870B32D34B8
2012-10-19 21:45 - 2014-10-14 18:23 - 0000727 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092
2014-10-05 11:38 - 2014-10-05 11:38 - 0001257 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\445D2A562929E59ED544CBBF32A5191A
2014-10-16 01:18 - 2014-10-16 01:18 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\44A37DE909D598EF21F9289990E1BB8F_A6D782EE2ECE4E50E5469054A37AC14E
2012-02-11 18:26 - 2014-10-12 01:01 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_232288A20D63375EAC649186251E5D74
2012-02-11 18:26 - 2014-10-18 02:12 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27
2013-07-23 16:39 - 2014-10-17 20:22 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
2012-02-21 12:49 - 2014-10-15 10:00 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5
2013-10-02 05:34 - 2014-10-14 08:29 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_F4692EBD578D04048E176E82BB8369BB
2014-05-26 13:07 - 2014-05-26 13:07 - 0000725 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4B0BB704138A507EFA64FCDED97201F2
2014-10-11 17:38 - 2014-10-11 17:38 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4F97ECC1101FE4CF3D3509E152EC93E5
2014-09-13 07:11 - 2014-10-12 01:46 - 0001961 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50050FF3C97A1A4B18468AD4F13EBA1D_9185FBC64400A858C3986C2961D3F6C8
2014-04-12 06:26 - 2014-10-16 11:18 - 0000727 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_6CBA2C06D5985DD95AE59AF8FC7C6220
2014-07-21 05:09 - 2014-10-16 02:14 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5
2012-07-07 15:18 - 2014-10-15 09:26 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_BD1446EE1580F7EA207C073F7ABA5015
2014-04-18 03:39 - 2014-10-15 09:26 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
2014-07-04 13:09 - 2014-10-23 04:51 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0
2013-02-28 03:20 - 2014-10-15 06:20 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_E9FCAC30D964AFC39902EC989B1CC9E8
2013-11-04 09:13 - 2014-10-18 02:22 - 0006855 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5495C2E4531B22B3185CE59F8E73C447
2014-10-04 14:32 - 2014-10-04 14:32 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\566A973C3ADBC70963C072413659C1CB_3BD3EC2D69C71819A03DF3488FE693F4
2014-10-08 22:27 - 2014-10-13 08:51 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\566A973C3ADBC70963C072413659C1CB_6E69EBAB9701268709753EC47A4B8A63
2014-05-16 10:57 - 2014-10-16 12:28 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\566A973C3ADBC70963C072413659C1CB_F182EA2085B04B1FB43B6428477A9E4A
2012-07-01 22:35 - 2014-07-10 22:24 - 0006408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
2014-10-03 18:41 - 2014-10-03 18:41 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5A2195F4A9EF06A0920B0A9947B0CE06_7FACC37C0D16354BA28065E6810E2991
2014-10-03 18:36 - 2014-10-03 18:36 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5A2195F4A9EF06A0920B0A9947B0CE06_E365EE4F385D54753F3D5FEAFDE18EF4
2014-10-14 22:11 - 2014-10-14 22:11 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_00CF1898382336FE22C0340DA9AA6678
2014-09-17 23:56 - 2014-10-16 15:49 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_2052D556AE7E1E509037E2B6EE94F057
2014-09-29 17:48 - 2014-10-07 10:00 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_2841B2CB87FD0B55F9EB42FDED7FCB70
2014-10-13 08:47 - 2014-10-13 08:47 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_37DDDD0043B40CE948BAF1208A55E5FC
2014-05-20 16:18 - 2014-10-12 00:48 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_93551D89E8F1A17B59B9C49692BB0A14
2014-09-30 21:34 - 2014-10-18 03:27 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_9B6BB76EE3F7E27F363F1B9A1D3F0030
2014-09-12 05:07 - 2014-10-17 09:52 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5B565E5A03C1711296156E2E5BE2718C_DCBFF666337BF7A8ABF19A3F6FDC2287
2014-05-24 04:24 - 2014-10-31 14:33 - 0001947 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5BF987767EE121EB773E3E93D13C2F30_0B2AEF4FE043D0F11F387BBA16F05698
2014-06-04 20:43 - 2014-10-17 14:10 - 0001947 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5BF987767EE121EB773E3E93D13C2F30_6EA685090E3D9CA56E448C48346689F0
2014-05-24 04:24 - 2014-10-31 14:33 - 0001947 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5BF987767EE121EB773E3E93D13C2F30_EF26754C41825C23E00A83FE50225A1A
2014-10-31 02:22 - 2014-10-31 02:22 - 0000533 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5C45AD19E3530EC4218F560AFC04C3F7
2014-10-13 08:55 - 2014-10-13 08:55 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5D980C21A14CEF8530BD8EA5D70F17A7_29C7D8F4815FD61CEEB1A13B01BF2BFC
2014-10-17 14:08 - 2014-10-17 14:08 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5D980C21A14CEF8530BD8EA5D70F17A7_5FC245B2CDF9ADD8ECC4B31AB27253A1
2014-10-17 17:00 - 2014-10-17 17:00 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5D980C21A14CEF8530BD8EA5D70F17A7_7E6373A24A9D63D2A91003D0380D6D21
2012-02-11 14:27 - 2014-10-02 11:11 - 0000933 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5
2014-09-20 10:41 - 2014-10-05 07:11 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\664330A9AEEB010311075B268D93CA8A_075AF3748DB53F5F107606FBB8F5BB13
2012-02-12 02:36 - 2014-10-23 01:39 - 0000813 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD
2014-07-22 17:11 - 2014-10-15 06:18 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6A59C2B4529FA60196FE66A9AA54C0D5_4A48749249B684FD261BB8FDB0F171F6
2014-07-21 04:41 - 2014-10-16 22:38 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6A59C2B4529FA60196FE66A9AA54C0D5_65A985FC5912DDC4391EF3B4F5CB7311
2014-10-11 15:09 - 2014-10-11 15:09 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6A59C2B4529FA60196FE66A9AA54C0D5_A9DDFBA80487C75001DD2FD7557E8444
2013-03-31 08:21 - 2014-10-13 08:55 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384
2013-04-06 07:58 - 2014-10-18 10:06 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4
2013-04-06 07:58 - 2014-10-31 02:22 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8
2014-09-15 08:26 - 2014-10-09 16:26 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AC9FC4D6BF594DA3514F65B3921FD85_8D00F1C5077398045332322F01500641
2013-02-28 00:25 - 2014-10-14 12:44 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BDC4BD492765EED974809D29642BE4C_D494156DA37C2FEABFB2C80879C32F7E
2012-02-11 15:58 - 2014-10-16 11:17 - 0001784 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6C05FF55E66434DC351985A3C60541B2_305471F92FEBDAC55C5F5411833A3468
2013-08-16 03:28 - 2014-10-17 06:42 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_32ED58A7CD9AC095E8DCEF33F5587722
2014-10-06 19:42 - 2014-10-06 19:42 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_50D0AA3D3AAB25D488FB2CE3248C24D2
2014-05-17 13:14 - 2014-10-15 09:26 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_8873E29ACDD7BF356F16EAED7827A0F2
2014-10-06 10:06 - 2014-10-06 10:06 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_93292617FD44BB2EC8FA277176C44E18
2014-08-09 13:17 - 2014-10-11 16:23 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_9C27F174AE13FD63F0F536695663690B
2014-02-24 19:14 - 2014-10-16 21:12 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_A10E4930295C49BE0DC726AB2BF50FF1
2014-10-17 22:09 - 2014-10-17 22:09 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_C11F43F29EFCD55977E3DE03F8AF6357
2014-10-14 08:20 - 2014-10-14 08:20 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_E682EDA234AA687CE05D00C1EA10A8F4
2014-02-26 05:50 - 2014-10-11 14:13 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F1C2276FEEB16C90B9E23EB7EE2B092_32C61D9154D326C312CC54A6CC5BC970
2014-05-24 14:12 - 2014-10-11 15:09 - 0001501 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\70FEE87A42672626A68FAB261B428374_7FA4A19E9E8ECB94A8E785D67DD2F84B
2014-08-28 03:09 - 2014-10-02 22:56 - 0001501 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\70FEE87A42672626A68FAB261B428374_8B7E2C714E27754371DFEF1BAC9DFAA0
2014-09-21 12:13 - 2014-10-11 17:38 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\729E9C705B0D8776A35F0C8C012D3C76_DD672B2902E3035055D06FE77C368F2B
2014-08-17 09:18 - 2014-10-04 14:24 - 0001487 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\72FB5B1C7905530E0DF39758E01A3573_21BF739A4CF60141F716E58EC767CA53
2014-06-21 06:58 - 2014-10-17 08:18 - 0001487 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\72FB5B1C7905530E0DF39758E01A3573_89BF38AC62844359BBE9A7A2DC9AE3DA
2012-06-01 03:53 - 2014-08-29 02:35 - 0000554 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21
2014-03-04 18:20 - 2014-10-15 14:07 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_11D7BA58D75E54D622A3AD9CDF9905BB
2014-02-04 03:26 - 2014-10-16 15:14 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
2012-02-11 17:44 - 2014-10-08 16:59 - 0015392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019
2014-10-01 07:34 - 2014-10-12 13:40 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74ED51A3D229FC7D437854B8EB97E847_3A88D3CC6A54C32191B054A2498A5470
2014-10-20 12:07 - 2014-10-20 12:07 - 0001400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74FBF93595CFC8459196065CE54AD928
2012-07-01 22:35 - 2014-09-28 10:22 - 0056928 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
2014-05-16 10:57 - 2014-10-16 12:28 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\783DF2F5A7C9BC04C36663632D14B993_09E6BFC8958A4903B51F28C3DF0B32CC
2014-10-06 20:18 - 2014-10-06 20:18 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\783DF2F5A7C9BC04C36663632D14B993_169DE3439FD2D9FE0AE07883B5A27A1B
2014-10-01 08:09 - 2014-10-01 08:09 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\78AEA33CBC43D46B831952F63632A34D_7D17D137E801E9E14D361EB418C99183
2012-02-12 22:33 - 2012-07-30 18:36 - 0000506 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9
2014-10-19 11:45 - 2014-10-19 11:45 - 0001725 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_300B2959CFAC6BFE905B72E61EE2A068
2014-08-20 08:23 - 2014-10-18 12:34 - 0001725 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_B2DB1CC4B5F2D2A802D56AAED525802D
2014-08-19 08:22 - 2014-10-28 07:51 - 0001725 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_CD4662E1A7F15144990B9C9F03164C3A
2014-10-11 16:23 - 2014-10-11 16:23 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7C1B7BA2D0A4C1307F3A4A532F819AA1_3FA9E7D22E483A418ED400F0D3846CB2
2014-10-17 06:14 - 2014-10-17 06:14 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7C44AA84A5CFEC3289884F54A088297E_ECA8A0D88466257201E30535BB4E5675
2014-08-05 12:31 - 2014-10-16 22:41 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7C44AA84A5CFEC3289884F54A088297E_F7A5728B775893C18BC68AA47254E4E5
2013-02-20 23:08 - 2014-10-22 08:58 - 0284445 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F
2014-02-03 15:01 - 2014-10-28 07:51 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
2013-09-12 16:40 - 2014-10-24 09:57 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD
2012-02-11 17:44 - 2014-10-13 08:51 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B
2012-02-11 18:26 - 2014-10-14 11:54 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_FFE23A7C282C1690704B5AEA6161D1B8
2014-04-16 07:52 - 2014-05-14 14:09 - 0011692 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\822186DA1C5674468E064427D0CD44D3
2014-10-13 09:16 - 2014-10-13 09:16 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\828298824EA5549947C17DDABF6871F5_334ED69A36BF882B447815998BE46E97
2014-09-18 11:25 - 2014-10-12 22:25 - 0001454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\828298824EA5549947C17DDABF6871F5_4A500E9AA7C5573906560F21D53A5861
2014-04-11 17:28 - 2014-10-16 22:42 - 0001913 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\84AFE219AEC53B0C9251F5E19EF019BD_2C9D5E6D83DF507CBE6C15521D5D3562
2014-09-30 10:28 - 2014-10-21 01:39 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_041C7BCA38AE473669C469148677703C
2014-10-06 20:18 - 2014-10-06 20:18 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_049960F9684E337495103DB75FD167CD
2014-10-04 11:34 - 2014-10-04 11:34 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_0D58F67FD590DF09D3D0C9F430AE324F
2014-10-17 22:46 - 2014-10-17 22:46 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_37B4DF5E47CDA4EDFB4F7DDCADA3DCF3
2014-10-18 03:20 - 2014-10-18 03:20 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_596E8211CBB7A07DF105AD1021026331
2014-10-09 19:47 - 2014-10-09 19:47 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_5A371CC464745A48E2DD2A7FF5DBAB54
2014-10-18 02:11 - 2014-10-22 02:58 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_69D8D47AB1AD575C0CF624C7D137AD1B
2014-10-03 03:50 - 2014-10-10 07:00 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_8DE9376749465DCFF1698C95BDD76EF9
2014-10-03 18:36 - 2014-10-11 08:17 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_A1F42409A54B6EEF5C6B15FFA24DF942
2014-10-15 06:24 - 2014-10-15 06:24 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_E2FBAF89EC424A34AEE48D5963E3F902
2014-10-03 18:36 - 2014-10-03 18:36 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_E4929C45CD447534623406931DB649B8
2014-10-17 14:10 - 2014-10-17 14:10 - 0001765 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\887FDFEF9DC62EF73EB288690D5944B1_E85BA28B8049E4D452E9621DC8EEEBF8
2012-02-11 17:44 - 2014-10-17 14:08 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC
2014-10-14 11:41 - 2014-10-14 11:41 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_96DEA2BAAACB5C7A91C910F0C6DB31C3
2012-02-11 17:43 - 2014-10-17 09:24 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_D3DB95C0E7608ACC9AA10ACCCCEBBDF5
2014-10-31 19:36 - 2014-10-31 19:36 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_E1EDEF0C21AE75D448F7327475DF4C9E
2014-04-16 15:43 - 2014-10-28 17:11 - 0000706 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8A574ED5927B3CEC9626151D220C7448
2014-06-29 14:03 - 2014-10-14 12:44 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8D3DBC545CD7FD762AF52F70D3AFA3A8_9745F6D90BABF668122189E40EDF31CF
2014-09-25 01:00 - 2014-10-10 07:06 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8DE3549A52F67902ED1B5FC4A6516018_8753446FC763DA6D31F6B6CCAA878F6A
2014-10-07 11:05 - 2014-10-07 11:05 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8DE3549A52F67902ED1B5FC4A6516018_E4537912BB1BCAC954A7EB3EE2D8F434
2014-10-17 23:26 - 2014-10-17 23:26 - 0002101 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8E2758C31E457F3F2609B06779DCF244_F74DCB7522D315AD5C86DA9FD0707D7A
2013-09-11 10:28 - 2014-10-16 12:28 - 0000713 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8EBFACB3A66359F9514D044C86BA4794
2014-10-13 20:29 - 2014-10-13 20:29 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_116E0776FABEE27563E59B5DCFE5B787
2014-07-05 17:14 - 2014-10-11 15:09 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_6470D8A4F2DBB94C1B9D00A512744CDD
2014-06-19 10:54 - 2014-10-09 05:37 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_9B8C917E567F8E4A65C059382B6D8D80
2014-04-11 17:36 - 2014-10-12 09:52 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_BEFA5E2E80053E8DDB8EE99D3BB5CD9C
2013-08-25 17:51 - 2014-10-16 22:42 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_CA8E6BAF2163B000DBA095FE24D16796
2014-08-09 07:55 - 2014-10-03 08:25 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_DE208752FA3F31BBC234B28CD470483A
2014-03-03 12:02 - 2014-10-16 22:41 - 0001365 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_F8752DE75DEE56BE61316F618A339773
2014-10-11 13:41 - 2014-10-11 13:41 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\942428625596FE9D60F53F82D751C701_6D7E8C471A54CCF04A1B96EBAD829028
2012-02-11 14:25 - 2012-04-12 23:23 - 0048483 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
2014-05-05 22:56 - 2014-10-14 11:20 - 0001398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94C0DD15E1E10CFC94461B254088DA63_0117CE66361F0D071BAB0FDF0D4678FF
2014-10-06 20:29 - 2014-10-06 20:29 - 0001398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94C0DD15E1E10CFC94461B254088DA63_2416AFAFFBA1597806452C2A70032115
2014-08-05 08:22 - 2014-10-11 14:13 - 0001398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94C0DD15E1E10CFC94461B254088DA63_3192D1A1EF1127BD340EF5E75066C6D4
2014-08-09 13:17 - 2014-10-11 16:23 - 0001398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94C0DD15E1E10CFC94461B254088DA63_579BEC371BE59066299F157C504B870C
2014-06-30 13:37 - 2014-10-14 11:20 - 0001398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94C0DD15E1E10CFC94461B254088DA63_BE76D6906893C229B830160E9CB66F68
2014-06-30 13:23 - 2014-10-09 19:45 - 0001398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94C0DD15E1E10CFC94461B254088DA63_CAC6F1DD6AF6A3D3DC0FCD552F8E39C9
2014-09-30 22:05 - 2014-10-18 02:14 - 0001581 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106
2014-10-10 11:58 - 2014-10-10 11:58 - 0001581 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_1A9CEF0D6BDBEE31E5C2CF9955E61B89
2014-10-08 01:42 - 2014-10-08 01:42 - 0001961 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\981687C62C99B11FDB98613CE3FC8A04_1C33EFA0D07EE7D2585BAB9A9C7F842E
2014-05-26 13:07 - 2014-09-05 21:58 - 0001505 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9B91D71BB2421D6106530B3FF2845917_264BBAE4F51B12FC29AB36BEAC4288DA
2014-08-16 21:05 - 2014-10-26 20:41 - 0001776 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9C888BEABCCBC2A97B0D6D9214C3BA37_1213DC6F71E4C3B05E7BCEEBC203A31E
2014-10-18 13:29 - 2014-10-26 18:05 - 0001776 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9C888BEABCCBC2A97B0D6D9214C3BA37_9C0A662469766D924AB1472E62297DC8
2014-09-12 05:50 - 2014-10-03 09:42 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9ED96E96B07B15E9B8E4BADA424BBFFD_BD297F02A0E850E567EFE83700A80B12
2014-08-09 13:17 - 2014-10-11 16:23 - 0001609 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A27A0B5E1ECAAA01CC77385E9FA4AC43_216AF1303343E059621FE819D1914DA9
2014-10-11 14:31 - 2014-10-11 14:31 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_364FDEE3F7CB6C7E8EE2FEE8FE9F1DC0
2014-10-11 17:38 - 2014-10-11 17:38 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_368C10AEBA07A4E903651029EED70C1A
2014-10-06 20:31 - 2014-10-06 20:31 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_72A7F273C4BD90B91209EFF3318802A9
2014-10-05 15:17 - 2014-10-11 15:09 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_B976BFF901F88D3ADA33BAD0BCBFABF5
2014-09-25 08:19 - 2014-10-04 11:36 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_EBF2C6215078F939AF7361697FA31D95
2014-10-11 18:35 - 2014-10-11 18:35 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_4F52D381AC684F1C862E58E2340C9AAE
2014-10-06 10:06 - 2014-10-06 10:06 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_5A0C35B45E7DF4A0B1486EE4C3B463E4
2014-02-12 19:16 - 2014-10-13 09:17 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_65567A8A88DAA8CE7E3A1443DFD1AB5C
2014-07-05 17:14 - 2014-10-11 14:13 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_725548FF661BEA9BF8B318D6DE0D65A3
2014-02-03 14:08 - 2014-10-12 01:46 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_C87D39DF82FAAD1737CEFA4D1C039682
2014-10-13 08:47 - 2014-10-13 08:47 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_E24628B9B72DFA5704FF2F2D505D975C
2012-02-12 08:35 - 2012-04-17 18:13 - 0000558 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD
2014-10-03 06:21 - 2014-10-03 06:21 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A6AEFB095C26AF1B5B814D0B2E4FE3A9_2C49FDF77DFE8EE46DF18F5B6DC57264
2014-09-12 05:50 - 2014-10-03 09:42 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A6AEFB095C26AF1B5B814D0B2E4FE3A9_813A0019E1C1D33D861A69C4E07442D8
2014-08-04 20:29 - 2014-10-13 08:54 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_0016DFAB2085E976FBF3CB34512AEC86
2014-07-05 17:14 - 2014-10-11 15:09 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_2B36CE124DA22A0A57949FCE63F43990
2014-09-18 22:31 - 2014-10-11 17:38 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_2E508950C6789DD15C85224DDBE85084
2014-09-18 11:45 - 2014-10-11 09:28 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_3C01E0C13B8C6BC23CE0A2D6BC956771
2014-07-21 05:02 - 2014-10-18 02:03 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_447C007DD9887FE90DC34A0860F9240A
2014-10-08 01:51 - 2014-10-08 01:51 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_7FD6A636739F9D731D0DAA536AA0F01F
2014-08-15 09:48 - 2014-10-15 09:19 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_C54AC9D3E5B93A04E8FC968E006EFE76
2014-07-16 16:00 - 2014-10-12 00:49 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_CC6C1B38386ECBEFA4142D5EC18851D1
2014-06-27 15:35 - 2014-10-16 02:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A89C8F06203094345F6FA729002E837B_E3AE27B4D31489112A801B5950F25047
2014-07-08 16:04 - 2014-10-16 22:41 - 0001860 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AA6B6AB819FB3531374AB289617DF933_7CB2E125ADF949D4AFE9BD0C93C40033
2014-10-15 06:30 - 2014-10-15 06:30 - 0001860 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AA6B6AB819FB3531374AB289617DF933_A3B4557D283333CA7D4C3B1513472A0B
2014-10-04 11:24 - 2014-10-16 22:42 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC68F0EC5FC952A7A923830D1455D48A_0040E58717EE07624F87471E8950D6AC
2014-08-21 07:52 - 2014-10-05 19:48 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC68F0EC5FC952A7A923830D1455D48A_049A4BE772D631D7B7809D7B2F25614B
2014-03-18 09:45 - 2014-10-16 22:41 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC68F0EC5FC952A7A923830D1455D48A_710720AAF94FC93C1CE12E1A51CEFE37
2014-10-17 09:24 - 2014-10-17 09:24 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC68F0EC5FC952A7A923830D1455D48A_AD72A5E61F3E61E05BC52C297EDB7A6C
2012-10-19 21:45 - 2014-10-21 16:03 - 0066181 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F
2014-04-20 14:42 - 2014-10-23 14:18 - 5023597 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AFA2A5744430E65F42D3175FABFBE3E8
2014-10-11 13:41 - 2014-10-11 13:41 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B03A867CCE8C94003ED3DCC89C3DD995_BCCCFAF7CE64E255BAF5623CC6AAB9C8
2014-04-22 16:23 - 2014-10-17 05:50 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B0DD6B69DB62157973B734AB7733177A_FDC2E6DE1F39373EFB548F473D6576A8
2013-09-16 19:21 - 2014-10-12 08:04 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B1D4D8DB6B8F8A95577A5F09D0390539_400415EBB5E3145DF4A9DA90BCA63E4A
2014-09-11 07:14 - 2014-10-23 05:50 - 0001776 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B3BB9C1BA2D19E090AE305B2683903A0_7EBD0A45B23A8A5A4C4407444411DA5F
2014-09-19 15:27 - 2014-10-18 05:17 - 0001776 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B3BB9C1BA2D19E090AE305B2683903A0_B89A63AC6877BD1ED812438CE82C3EB8
2014-02-18 10:26 - 2014-10-13 09:17 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B4378BD2E36B69DECED3E341BD654801_1D355E26E98447CFF8B146D28FC9327F
2014-10-07 11:14 - 2014-10-07 11:14 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B4378BD2E36B69DECED3E341BD654801_23F85D6F0E2CCE0C45104142A0185CEE
2014-08-04 12:11 - 2014-10-17 18:41 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B4378BD2E36B69DECED3E341BD654801_847570493E8172203EEA50F709444682
2014-10-07 11:14 - 2014-10-07 11:14 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B4378BD2E36B69DECED3E341BD654801_ADA6AF7F1F2454BA3DE1490455E5E4AE
2014-10-12 08:05 - 2014-10-12 08:05 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B4378BD2E36B69DECED3E341BD654801_B3BB6EBA828C0231F37112CA4D072444
2012-02-13 07:30 - 2014-10-06 02:21 - 0000561 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6
2014-06-28 10:40 - 2014-10-23 04:51 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F
2014-10-15 11:17 - 2014-10-15 11:17 - 0001757 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_1640F80C46D6E3A2CC900B8D2E47D05F
2014-10-11 12:52 - 2014-10-11 12:52 - 0001757 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_2F0F5D6D8BBB7DE0154762603079E68F
2014-10-08 03:22 - 2014-10-15 11:17 - 0001757 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_3D0A98807A2C6A84810D051B5C2C11A2
2014-04-12 08:43 - 2014-10-16 22:42 - 0001961 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B98489BB8D97321BD9E55C6A482EEF0A_20F3048B4C18215C36FAF1F3944C482D
2014-08-16 05:42 - 2014-10-04 11:27 - 0001961 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B98489BB8D97321BD9E55C6A482EEF0A_ECE21907EAC99D0D119D15D9D6AFB2D9
2014-10-05 07:10 - 2014-10-05 07:10 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BA41173F3FB1502C814D759E3B8A6FFF_03979323A578455D03B84859BBD6BEB6
2012-02-11 15:58 - 2014-10-18 03:07 - 0001815 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BBB768C456D9E2DCD3EF595C400D483D_64C05B9EB32FC3D0CE6CB126561EEBFF
2014-08-16 05:42 - 2014-10-12 01:46 - 0001869 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BC2602F5489CFE3E69F81C6328A4C17C_849A9AE095E451B9FFDF6A58F3A98E26
2014-09-20 15:39 - 2014-10-14 22:11 - 0001443 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BC570EC0DE58335AFAF92FDC8E3AA330_45B6C08773523FDC7F40BE6534D21609
2014-10-04 14:31 - 2014-10-04 14:31 - 0001443 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BC570EC0DE58335AFAF92FDC8E3AA330_9C233E68618F936822CD550D2284C42F
2014-10-07 10:16 - 2014-10-07 10:16 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD379880FE2F300D4DC441776B6CCBA9_BA4DC0EF1EB8F8CAD5B494EAC2933E85
2014-10-04 12:30 - 2014-10-04 12:30 - 0001895 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD379880FE2F300D4DC441776B6CCBA9_E6ECAE38483D364979D9E659DF9F5CBE
2014-08-17 11:33 - 2014-10-06 10:25 - 0001489 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD5208ADDEC1165FD57AF2BF2F455EAA_2D744EE7A23F70E8752FAE8211EDC533
2014-08-16 16:43 - 2014-10-05 07:06 - 0001489 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD5208ADDEC1165FD57AF2BF2F455EAA_95F770893D65C4EBEC4DA4DF267F57DC
2014-10-13 12:21 - 2014-10-13 12:21 - 0001489 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD5208ADDEC1165FD57AF2BF2F455EAA_DFAC48D23D303A6E2BEF29ADA27486E8
2014-09-15 22:10 - 2014-10-06 16:29 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_7BA90B8DC9F0B1DD2788CD8110CEED48
2014-04-12 06:27 - 2014-10-13 09:16 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_8A5844A7013BA857058BA6CBC3557738
2014-10-13 08:55 - 2014-10-13 08:55 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_B2F5A9CE29E26A53E1E2DF14524BF1B9
2014-10-03 15:35 - 2014-10-03 15:35 - 0001798 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_EBEE60EC8D23EF0EF033E6AA88860C1A
2014-07-03 03:19 - 2014-10-05 03:19 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BDE8BB2C29E7F452ACB994B16640641B_1DB020DEA18215A4B19DBFB891A39CDF
2014-02-02 10:10 - 2014-08-12 20:28 - 0000793 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C0AF5F80AA0D55CA55AD4471DD73D761
2014-02-03 20:12 - 2014-10-16 12:18 - 0005304 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C25FBC9FE17D1C30FF964815C35F0AB3
2014-10-06 20:34 - 2014-10-06 20:34 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_35B2F8B08A3B0413649188FA536A0A57
2014-02-15 14:29 - 2014-10-18 03:20 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_466FCCDDC2DC52587D2C75F2CC3C616E
2014-06-28 10:38 - 2014-10-08 02:47 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_51FA1EFA064A07685F21F6DED80CD4D9
2014-10-11 16:23 - 2014-10-11 16:23 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_79EC6274A99307C5F5AF0D66F1B17A02
2014-10-04 03:18 - 2014-10-04 03:18 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_80482A56B6D6A15A352C07E8AA47B248
2014-07-08 16:04 - 2014-10-05 07:48 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_878D1594DC6D178F15157555A2434B8D
2014-09-09 17:34 - 2014-10-12 00:56 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_B900D501E7EF86B5F5E71644D769DA30
2014-07-02 04:51 - 2014-10-16 22:41 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_C659B25879F62C879A498163381BF15C
2014-07-24 23:14 - 2014-10-14 19:56 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_F6F61B4D31C8B970C4F88F84EC0254CC
2013-03-10 08:50 - 2014-10-15 15:48 - 0001868 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C3B4324B100AA32F7BE995E7E34E0AA5_15C23806E36E1233F1A79C3B11377E1C
2014-08-16 19:16 - 2014-10-11 18:35 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_42820CDFEA41DC84AAB89A6B63561873
2014-09-29 18:24 - 2014-10-12 08:04 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_81A0840C0AD974942DF53C0F7BFF94D8
2014-10-01 16:42 - 2014-10-11 18:35 - 0001890 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_8AD64B5090F0618F892770B543160F94
2014-10-14 12:44 - 2014-10-14 12:44 - 0000429 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C5FD5BF0CE6372B1CAFE381FD0BC969C
2014-02-20 17:55 - 2014-10-11 08:15 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C73CCF067C75015097BE784D81853FAC_00FC09261B5A101AE90A8E1E10E13DA6
2014-09-25 21:17 - 2014-10-08 20:23 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C73CCF067C75015097BE784D81853FAC_A00F86F6C62E76565F7566927531F6F4
2013-11-04 09:13 - 2014-07-14 17:51 - 0000469 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8E7EC0C85688F4738F3BE49B104BA67
2014-10-03 15:35 - 2014-10-03 15:35 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8FD15531E24355E9996DC42A9452E73_3428FDDC946D5EB301D8C4937116A4E3
2014-10-12 09:32 - 2014-10-12 09:32 - 0001438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C9E3282A673263848AB7F0C007FD3AF1_ACB044B20070C7D7A59EF6C5464634A1
2014-09-20 16:08 - 2014-10-15 09:02 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_006829BED821805554146811E7AFB2DC
2014-05-06 08:42 - 2014-10-16 02:22 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_11B7AAE2F5F221B301FC48A775A7BA75
2014-07-01 14:16 - 2014-10-12 09:52 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_15A9F8AEDFC175B994A2CDC33A11A4C2
2014-10-17 14:08 - 2014-10-17 14:08 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_2A052DE4582A5BFAEBD290592AA78E75
2014-01-28 13:39 - 2014-10-13 13:26 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_2F728568B2A7DC466FE77082EB406FB4
2014-09-07 09:51 - 2014-10-12 09:52 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_4969A89066CA0200A92E4307736C8255
2014-10-03 06:21 - 2014-10-03 06:21 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_595A1FACB98A828F4E2B8BD5D81FCA8A
2014-10-18 03:18 - 2014-10-18 03:18 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_5A1D01CBE1877B0DE3821A6C89A1EF2E
2014-10-16 22:42 - 2014-10-16 22:42 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_88556EBEB4D1F6236B51E65847ADFA4E
2014-04-17 09:54 - 2014-10-16 22:41 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_8996E779DD8031CD546421A4C2EF8AA1
2014-10-11 13:07 - 2014-10-11 13:07 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_9BAC23EA898DEC8A73446B83205F126F
2014-04-20 02:46 - 2014-10-02 11:11 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_9D3ABA49CDD9617ADAA7656D784E87B7
2014-10-17 14:10 - 2014-10-17 14:10 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_AB1866720F88F31FD62E96D0A87491CF
2014-07-13 14:01 - 2014-10-08 12:57 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_B137667638BC27E1F09848A7A63E5672
2014-05-25 15:46 - 2014-10-18 02:59 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_C633318EC50EE8D448026D5845149063
2014-07-10 23:30 - 2014-10-16 22:41 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_CB8FB0FDFECB64D9C549172657D766C2
2014-06-28 17:52 - 2014-10-14 21:40 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_D8A030623202CA5E1AA30CC06534F699
2014-10-05 15:17 - 2014-10-05 15:17 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_E82C2810E6D8ACC7486667B9A13B4F9A
2014-04-17 05:14 - 2014-10-16 04:34 - 0001730 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_F2F8C36E48A4BF7F6684EEABA37385A5
2014-08-16 05:42 - 2014-10-05 07:56 - 0001992 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CF8F81142E45FB23D354F9018CD9473D_E71070DE229CDBD0AD71B0E107E1D30A
2014-10-13 20:29 - 2014-10-13 20:29 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_2E824C4D93BD1FF7D42F64026EBD7217
2014-06-03 08:31 - 2014-10-04 11:16 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_4BE288DD96BFA97C2CC62E0B23FC7C49
2013-12-26 08:18 - 2014-10-27 17:20 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_556F5186F9C63BA26312E1A3EE0ECA55
2014-09-30 22:06 - 2014-09-30 22:06 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_5E78266C053E6523F5A20A95527565D0
2014-10-17 14:10 - 2014-10-17 14:10 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_7BFAD2C2F2916E7969B4E68BF967661C
2014-09-05 12:48 - 2014-10-16 22:38 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_AD88A35F054A816EB2DF4FBF1ED90B92
2014-10-11 13:41 - 2014-10-11 13:41 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_BE0F294F92C58A999D8F5DCD083A14FD
2014-10-13 09:06 - 2014-10-13 09:06 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_C26BEB82A510EE78549450169E8C59F5
2014-09-15 22:47 - 2014-10-17 06:27 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_C57450A1C7F1685BBA6EC2D902B1FE51
2014-10-23 04:52 - 2014-10-30 06:00 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_CE141D43C95127DF4C1F332037AC3F92
2014-01-24 20:21 - 2014-10-18 17:20 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_D98F71DEC6ADEED3ACDBF4C693C634EE
2014-06-30 13:19 - 2014-10-09 19:45 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_DD9B715CCAD857F1747F5673D455EEBB
2014-05-13 22:16 - 2014-10-14 12:25 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_E11C35E13D4F68FC9805B6A97C800EB3
2014-04-11 07:27 - 2014-10-17 14:10 - 0001939 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_F1834DAE98977634DD3213A679917E3F
2014-01-25 16:39 - 2014-10-14 12:50 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D473E9C373099A94D5057303FDF0EE65_39B17C5C97CD64B7EE78FBDFB2D76D63
2014-05-25 15:46 - 2014-10-10 06:54 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D473E9C373099A94D5057303FDF0EE65_414B037887CDA892D15A98432E7CBC71
2014-09-30 21:34 - 2014-09-30 21:34 - 0001581 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF
2014-09-30 21:35 - 2014-09-30 21:35 - 0001581 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_D33192D58AA9CA2B9097E848E9FE86DE
2014-10-01 10:44 - 2014-10-01 10:44 - 0001581 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_DBC0394482C86DF73874BFA8B90905A8
2014-04-02 09:28 - 2014-07-10 08:19 - 0000469 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DC2135CED98D8A4D7C0CEE202BB0B810
2014-10-17 16:07 - 2014-10-17 16:07 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DF41E337719EEAF57C8EABC7ADAA3CA9_C5CFC967B5C265AE3181999790BB6EA2
2014-10-08 14:41 - 2014-10-08 14:41 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E3B4D810CDA56990F6FC5106B77DA149_0E5C1CDCAFE76FA69F84246FD32BC204
2014-10-16 11:21 - 2014-10-16 11:21 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E3B4D810CDA56990F6FC5106B77DA149_22FDB9C8083A07978723CBB8EC2A01AE
2014-10-12 13:40 - 2014-10-12 13:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E4F76C0C82655FD6506668127FA0ACD1_1FDE0FEDD0EBD9B7F279D185A43A7EA4
2014-10-06 10:02 - 2014-10-06 10:02 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E4F76C0C82655FD6506668127FA0ACD1_44E47F21EA518C75AB54A0BF21042677
2014-10-14 22:11 - 2014-10-14 22:11 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E4F76C0C82655FD6506668127FA0ACD1_C249CAF9CE5AF9F3B90344BFCA15E463
2014-10-18 02:18 - 2014-10-18 02:18 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E4F76C0C82655FD6506668127FA0ACD1_D0C0F0BC9CD339929F2FA3CA83E7F40F
2014-09-09 23:52 - 2014-10-04 11:27 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_2257D846D8ACC0988D6668BA3DD0710E
2014-07-25 02:06 - 2014-10-01 07:34 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_24DAD4A139C36DF55A8EE1E30F089EF9
2014-07-15 20:34 - 2014-10-11 16:23 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_452F97DAD502BC538E659559A9D889B5
2014-10-04 03:18 - 2014-10-17 14:10 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_56F9ACE367312820418ADBB8722E210F
2014-05-19 20:37 - 2014-10-15 09:01 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_5DEEDEBB36A2485C3CF532F0D966D1A8
2014-08-10 16:11 - 2014-10-17 12:23 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_8201D00027212787250AB8DE817C3A9E
2014-10-01 07:49 - 2014-10-09 16:27 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_923E9BB8D1D28725F9D6928A55D3104C
2014-09-09 20:44 - 2014-10-21 20:58 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_968D17A2B6CC71BA10E3A7951EC81988
2014-07-22 15:08 - 2014-10-12 13:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_B12519B3E4D3C99979E3C33CFF793FC8
2014-10-11 17:40 - 2014-10-11 17:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_C27E7A7F87190CD76A6D732319B91BFA
2014-08-16 16:43 - 2014-10-13 08:51 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_C98DAA9BA20CCE83943E9C499768DE31
2012-11-06 07:24 - 2014-10-17 14:08 - 0004505 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5062987353057B4F90E8C7A2DEAE329
2014-10-05 11:38 - 2014-10-05 11:38 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_0A77FD6745F6E1384D7C896AB25E52EC
2014-10-16 02:14 - 2014-10-16 02:14 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_1F6B6E55AF06180A871AF80FF3961ACA
2014-10-12 00:51 - 2014-10-12 00:51 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_2B8C33982D31C1D2667C04A9762803E2
2014-08-24 15:49 - 2014-10-18 03:18 - 0000472 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_3A1DB7BB62163C2306AA891A0704D0A7
2014-09-21 10:50 - 2014-10-13 10:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_5E7162C57D44CC650AD3F0D4D793293D
2014-10-11 16:23 - 2014-10-11 16:23 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_EA678D98129239B94A42ABA094C5C065
2012-11-24 10:37 - 2012-11-24 10:37 - 0000558 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E6024EAC88E6B6165D49FE3C95ADD735
2014-07-08 16:04 - 2014-10-10 07:06 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E6DAA7489C9999D36D1B356E8A295618_1E4069531DEFE4987BC608EB01B64158
2014-09-12 09:51 - 2014-10-13 08:56 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E76BF8706526FBFA546EB1718F852E85_9BDA1A7A25F2B5C32A9083C3BEFB69F1
2014-08-21 08:39 - 2014-10-12 13:40 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E76BF8706526FBFA546EB1718F852E85_AAC4277F0EFF532E46024DD4DADCCC13
2014-06-30 13:19 - 2014-10-09 19:45 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_08DF5C0A50FCCE37B00875A6586E811A
2014-06-30 13:18 - 2014-10-09 19:45 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_9219B22B45E57BBD72154E9E7832BDF2
2014-06-30 13:19 - 2014-10-09 19:45 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_AD501EE3F1DD713A788F22003160EC98
2014-09-30 10:40 - 2014-09-30 10:40 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_ADC728A885BCE2A7A73B1D92DF32143F
2014-10-20 13:11 - 2014-10-24 21:03 - 0001806 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_F6B87461FD8410E117804A8254501C39
2014-02-11 11:23 - 2014-10-14 12:44 - 0001816 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EB2C4AB8B68FFA4B7733A9139239A396_D76DB901EE986B889F30D8CC06229E2D
2014-10-05 03:19 - 2014-10-16 22:38 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EB955EDFD38E42811C2C5D1F95070764_0037EC79B6F7FEDA4304FF56B1C27F6B
2014-03-06 21:21 - 2014-10-17 14:08 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
2014-10-05 00:14 - 2014-10-05 00:14 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
2014-08-09 13:56 - 2014-10-12 00:53 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_2EE5A5180B68ECF07B7483EBB70D360B
2014-04-16 01:28 - 2014-10-10 13:23 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_313E6B316EFFE568616A721B4D9E42B0
2014-10-15 10:12 - 2014-10-15 10:12 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_6B6FD5EBF45E21B6668AA601FBA53DEF
2014-04-13 11:31 - 2014-10-17 12:51 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_CA60DFBAD5899031B455DD41803608C0
2013-12-26 08:18 - 2014-10-27 17:10 - 0001938 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4B372709D6C2AD766C34D274501DC76_0336A3E438E66920481D8300B8B34509
2014-09-12 05:50 - 2014-10-11 17:38 - 0001938 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4B372709D6C2AD766C34D274501DC76_C08D897FBCD7D5D638FCD154D1404CBE
2014-06-28 10:49 - 2014-10-23 04:51 - 0000471 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4D9C889B7AEBCF4E1A2DAABC5C3628A_4457FF489B560C53EF4B4A50C54529CD
2012-11-05 19:38 - 2014-10-04 03:55 - 0000550 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F90F18257CBB4D84216AC1E1F3BB2C76
2014-10-11 18:35 - 2014-10-11 18:35 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F9B4B020B20DB2A72ABA97C60AD87CAF_48E6275340FEE0041A771369B1DD46F1
2014-10-17 19:01 - 2014-10-17 19:01 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F9B4B020B20DB2A72ABA97C60AD87CAF_49BE71F32CF612D052EEDEA680765395
2014-10-17 14:08 - 2014-10-17 14:08 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F9B4B020B20DB2A72ABA97C60AD87CAF_91112D14E6D455517361FF73CC485123
2014-10-13 08:55 - 2014-10-13 08:55 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F9B4B020B20DB2A72ABA97C60AD87CAF_C94A50B4818BC58ADDFB7FDEB5FD27CE
2014-10-01 16:42 - 2014-10-15 06:25 - 0001632 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F9B4B020B20DB2A72ABA97C60AD87CAF_D1D679721DCD0F242FE85903B3C37BF1
2012-02-11 15:58 - 2014-10-12 14:09 - 0000909 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB788E090BC1F3AA2FBC9E8FB2859601
2014-09-29 18:24 - 2014-10-07 11:10 - 0001644 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB90ACC90955098F0F5D375512E53CE7_20177362CCBF5FBAE5C350DAAA350E86
2014-10-03 17:57 - 2014-10-03 17:57 - 0001644 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB90ACC90955098F0F5D375512E53CE7_4D0E8430479B00371C9DE1D32756F358
2014-10-16 02:14 - 2014-10-16 02:14 - 0001644 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB90ACC90955098F0F5D375512E53CE7_A6D2D67EB151EA3992418326BB4E0421
2014-10-02 13:42 - 2014-10-15 06:25 - 0001644 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB90ACC90955098F0F5D375512E53CE7_B1B06F3DFE45E7631F6E4D1458CDD74D
2014-01-31 15:41 - 2014-10-16 22:42 - 0001923 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCADE99E87BD1D379748EEDD6B7D8C31_E43604F377B1F80493CE1BB0F60DFA73
2014-08-16 21:39 - 2014-10-13 09:16 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_0FE3ED9CC3FDE853078D95D069F24AB4
2014-05-05 08:22 - 2014-10-07 10:35 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_2CB6116529341403E3777E69068D1312
2014-04-25 08:29 - 2014-10-18 03:19 - 0001456 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_59C6DBFCE4CB38916146C5577B755DCF
2014-04-15 01:53 - 2014-10-14 03:55 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_64FBBF7EBC3C3336620E795DDC157490
2014-10-12 11:15 - 2014-10-12 11:15 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_81D87D3ABBA2B308404234585A20C0A5
2014-09-15 22:02 - 2014-10-01 16:05 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_8A9F7A69BB4FD7F3D1190704344A333F
2014-04-16 13:45 - 2014-10-12 09:32 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_AAA409BED89F9216D7BA9AC7BB00B8AB
2014-04-10 10:47 - 2014-10-11 12:49 - 0001519 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_DDE7C84CBB7658FC5D51C45EABF2444C
2014-10-17 09:24 - 2014-10-17 09:24 - 0001456 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_F23BB5674F8927B70B027CFBFE7187C1
2013-09-10 11:23 - 2014-10-16 12:28 - 0000494 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCEA474F228C13CD0DAD678431D0ACFC
2014-04-20 09:57 - 2014-10-12 08:04 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_3C94FC19162DE44461335A65F658F035
2014-10-12 00:45 - 2014-10-12 00:45 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_76943F6738E7E52CC7CB7E63F3ACEE7A
2014-10-03 06:22 - 2014-10-03 06:22 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_7717E2C15FEE7682D1A1CD83E4CC21E1
2014-09-03 11:58 - 2014-10-09 19:45 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_B52E76D2A62C9223D6EE16E1CB6EA659
2014-07-03 20:48 - 2014-10-15 14:07 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_E5AAE7AD8DEF8C8261E06CFBF797E98D
2014-08-01 01:53 - 2014-10-10 13:51 - 0001744 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_FBDC087E8C04DC6BDD638CA24BCB2D90
2012-02-11 14:25 - 2014-11-01 01:58 - 0000000 ___SD () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
2014-10-04 11:26 - 2014-10-09 08:13 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0232C043C0C9596C14FDF5D380FF271D_B1C00F0EE9F3C29B1718D6CE45F0AA17
2014-04-11 17:27 - 2014-10-17 05:57 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0381C14D7D4614738FA6FFB3FBC512C5_26ED55FD609550F6150F72665A375B42
2014-04-16 13:46 - 2014-10-16 22:42 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0381C14D7D4614738FA6FFB3FBC512C5_BD238C8F7EB3CE78EC64AFE77CF7C5DA
2014-04-27 12:38 - 2014-10-17 12:23 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0381C14D7D4614738FA6FFB3FBC512C5_C42BB94E43AC6043DE254B8F575F45F7
2014-09-22 00:08 - 2014-10-05 03:24 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\03C2624375988154FBF20373B7D495E8_41BB339A9D5FC123A00718AE21261B7D
2014-08-18 15:18 - 2014-10-15 07:13 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\03C2624375988154FBF20373B7D495E8_9BF4E41493D0675343D2065247566BB4
2014-10-09 18:11 - 2014-10-09 18:11 - 0000298 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\04AFA8793E5CDC4A81C6CD4554A30707
2014-08-10 17:48 - 2014-10-05 07:54 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_232B2F270C78900E70FD1AC9E445ADC3
2014-05-01 09:20 - 2014-10-20 15:01 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1
2014-04-16 15:43 - 2014-10-03 06:32 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_3B2D49C49012723148CD5DF5C8C2F97A
2014-09-13 07:11 - 2014-10-03 06:32 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_45CC4B6458553BBBBC9B7393A56D3E7A
2014-10-04 19:11 - 2014-10-04 19:14 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_4D9667ED76303152C1AD5F5954BFDB44
2014-09-29 09:39 - 2014-09-29 09:40 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_4EDEDD9F9F920628FDC4E91FB4753BEE
2014-09-21 10:50 - 2014-09-29 09:40 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_66A8A9899B6D6EE4144C59DE57EDBDF5
2013-10-23 14:34 - 2014-10-08 09:07 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_8B8B185076EF4E7580202CFD5A0EFE0D
2014-05-26 08:17 - 2014-10-07 09:47 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_8D84DA3136854BC88770045D4776D987
2014-09-21 10:50 - 2014-09-29 09:40 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_B6CA1DDBF0D65D28490430E8B6920B75
2014-09-21 11:32 - 2014-10-01 07:49 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_F5DA7195A495648C519B99CC7DBAA100
2014-07-04 07:03 - 2014-10-13 11:41 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\072F90B4A4D587EC30FB47E8464593FE_E61D2CA3841061A73CB0F17D1A4D4E06
2014-05-05 23:41 - 2014-10-02 22:22 - 0000234 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\07BF4DE53B25BEE2E3CEF7AA93F39E8A
2014-09-19 12:06 - 2014-10-15 09:23 - 0000418 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\098A74825DEB4C50FAE88C91A0B9713D_A95B4C8B6F5C96B78EE98784995320FE
2014-10-15 23:23 - 2014-10-15 23:24 - 0000358 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0CCA7F4B3366C6FAA13012C139D5D8C6_3AD7E0BAE1D2E9445A1058759BBC6882
2014-10-13 09:16 - 2014-10-13 09:16 - 0000358 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0CCA7F4B3366C6FAA13012C139D5D8C6_6975E1F12011FA19DF3C28F7F53208A6
2014-08-03 22:39 - 2014-10-09 16:32 - 0000386 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0D6ED27B76F0582A8D2120DF24D1E180_8C0B1EDF04F7D01F3C6CFA8D7166E437
2014-05-31 18:32 - 2014-10-13 09:10 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0D6ED27B76F0582A8D2120DF24D1E180_B52DB0DD355A2D437E4D65686FF6F4AD
2014-10-03 14:49 - 2014-10-03 14:49 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0ED407927179AB82809B8F9B0619DB13_679428AE8A5DC8351CE9D9DEC0A3B8AD
2014-10-04 19:19 - 2014-10-04 19:22 - 0000358 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0F1583FFF42FFF476A09801ACB69213F_E3F4A8C96454D7D3441D2C1BCE81F875
2014-10-06 20:18 - 2014-10-06 20:18 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0F5EC80F01BA50C1C7012844121A7EB4_3DF27800E9D0EB1066F7BDAB09FE8D18
2014-09-22 12:32 - 2014-10-13 11:41 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1060B7ADDE0FF6DE85637BF89FC4CEBC_17C332AE678FC2159EDCEEFD739AF1B2
2014-09-14 10:54 - 2014-10-07 09:44 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1060B7ADDE0FF6DE85637BF89FC4CEBC_ED8529BBB4AF7503D5B6590BB6397958
2014-04-14 15:55 - 2014-09-30 10:22 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_10576CD23F50599398D3945DE685333C
2014-10-13 12:18 - 2014-10-13 12:18 - 0000418 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_4052255C67AE223CF9B151ECC3F140FD
2014-08-10 12:54 - 2014-10-18 10:06 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_CA1234768645E71A8C867D6035675AC8
2013-11-10 14:37 - 2014-10-18 05:17 - 0000414 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95
2014-10-11 13:41 - 2014-10-11 13:41 - 0000474 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1554C63897948B36B35A43332D76FF76_0E467AD3C3D5E2F3B7EA93BDF988AB7D
2014-04-12 06:26 - 2014-10-16 11:23 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1BB09BEEC155258835C193A7AA85AA5B_79B9DDF677DCCB809F3B7CE98068306B
2014-10-09 05:38 - 2014-10-16 01:33 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1BB09BEEC155258835C193A7AA85AA5B_B01A72BBF8DD5E118AC758FE99A6458C
2014-09-23 05:46 - 2014-10-03 18:48 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1BFCB6E7DDBC47C0A8E926DFA786FD55_E929A362B047891C17DD3AC08D48A304
2014-10-12 11:02 - 2014-10-12 11:03 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1BFCB6E7DDBC47C0A8E926DFA786FD55_ECA447AB72E5DB5F13A7190A951365C1
2012-10-15 04:56 - 2014-08-13 14:59 - 0000268 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406
2014-10-10 07:18 - 2014-10-10 07:18 - 0000214 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F356F4D07FE8C483E769E4586569404
2014-10-11 15:09 - 2014-10-11 15:09 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1FE75F3CB404812245BC0ABAE39B0FBA_237B3D661532ADF2CE1774C85BE28B45
2013-10-10 05:22 - 2014-11-01 16:23 - 0000290 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\21253908F3CB05D51B1C2DA8B681A785
2014-10-11 15:09 - 2014-10-11 15:09 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\219976D61D72B43A8A9F6916F467E10F_D5699EDEA7EEDF7B87ECB9D04A94C59D
2014-04-12 12:18 - 2014-10-17 18:29 - 0000450 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\223DE96EE265046957A660ED7C9DD9E7_EFF9B9BA98DEAA773F261FA85A0B1771
2012-02-11 15:58 - 2014-10-17 09:36 - 0000292 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D
2014-07-10 23:02 - 2014-10-08 10:01 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_010EF11C72964EEFACE16EAD37B47D41
2014-04-12 14:40 - 2014-10-18 03:36 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_09516A43B8D58066B9E0FD2DD14F48F2
2014-10-16 22:41 - 2014-10-16 22:42 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_0C8CB03B52DB63E46A6EEFF42EA48451
2014-10-16 22:41 - 2014-10-16 22:42 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_17E7ED6B0667F4EBF16F02010DE61FC4
2014-10-02 11:11 - 2014-10-13 09:05 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_250619D06F462B6D02E7229F3E7F2237
2014-10-08 00:42 - 2014-10-08 00:43 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_27DA4F7CF383B592E2001EE691998D92
2014-10-03 17:57 - 2014-10-03 17:57 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_2D694440C95B6A8D9531BFBA73C683AF
2014-10-08 00:42 - 2014-10-08 00:43 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_36BECF083143B882DA15752FD2D50CC5
2014-10-04 11:22 - 2014-10-04 11:26 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_45514857E9C1D968D9B4289E618C8969
2014-09-18 00:03 - 2014-10-04 03:18 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_4F864821FAB0BAC893749D85E1696695
2014-04-19 13:52 - 2014-10-16 22:42 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_69127A16A82DAE6DB57B8DA92372B1FA
2014-10-04 03:18 - 2014-10-14 21:43 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_8730100273DEFC3B2162ED57A46DFC04
2014-10-13 09:04 - 2014-10-13 09:05 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_8EEB18CC266CA7711A0536F1630AFBFD
2014-08-05 12:31 - 2014-10-16 22:42 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_9E4A58B866C715F3E0A2635898B1CB3C
2014-05-06 08:42 - 2014-10-11 17:48 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_A524B28F45DA01AB41834424375C85AD
2014-10-16 22:38 - 2014-10-16 22:42 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_A5B69E02658CEEB18450D20264050170
2014-08-25 11:24 - 2014-10-15 15:46 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_A7507FD740C7F5252BF560D3911B8152
2014-09-02 17:43 - 2014-10-17 10:03 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_A79B818B3FB5CF49047AF96F827B4D19
2014-06-28 12:27 - 2014-10-12 01:48 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_A9258660EDF552C812F5584641F99061
2014-09-18 00:03 - 2014-10-04 03:18 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_AE7B0EC2CF0DA7A0560E758123D65B28
2014-10-02 22:28 - 2014-10-02 22:28 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_BAFDBEF941F3E70975B098D4DBE3F67B
2014-10-17 14:10 - 2014-10-17 14:13 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_C9F83E2D006186EF1E1D456898A6F91A
2014-07-10 23:29 - 2014-10-04 03:18 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_D6EB3FFFDE53D8CD96B499B09843999B
2014-10-16 02:22 - 2014-10-16 02:22 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_DBB6B54DC2240FE81426F2A9E6ADE200
2014-04-15 02:33 - 2014-10-13 08:54 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_DE8B4EE5F3BF050D2E6D36EB97284B58
2014-04-14 06:33 - 2014-10-15 19:07 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_EEE52A74DEE31B064E156E492FD05217
2014-10-09 19:47 - 2014-10-09 19:51 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_F090C9AEE0F3D5BC665AADA2BB771DDD
2014-09-12 15:48 - 2014-10-11 08:57 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\270D8E7F055B1BFEBCBDB7333DABCB78_94F76A2780EDD3025B785CB4BBF4BAE0
2014-10-01 08:04 - 2014-10-01 08:05 - 0000310 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\27371171D8BBA336302695C6CEB04833
2014-10-14 11:41 - 2014-10-14 11:41 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2A539E4E00943A19F47B85FE65963010_416CE5BE77369FF9F2839B561CCF6B50
2014-06-30 06:21 - 2014-10-16 22:42 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2B47C79E2E98AD8397AAFBB0FFD6F673_AFFB20FFF237BE0D2ED9B6A73BCEDA60
2014-10-04 14:34 - 2014-10-11 08:57 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2DDBC9BD281C0CEE62FC575B42E5F9A6_5D89D850AF96A0CA443C665183B91E54
2014-08-03 22:39 - 2014-10-18 10:06 - 0000474 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E816AB9601610B68C200585A006172E_57391BEEE8E0CB8DFC8BBE8E30534666
2014-09-20 09:03 - 2014-10-11 13:41 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_07213810F6266B3C5344D7A7C3922338
2014-10-16 02:28 - 2014-10-16 02:28 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_1517859E7A948B2F91E8C02BC0CC435F
2014-10-14 22:11 - 2014-10-14 22:12 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_2BD5459F6C8A1F21BBCA7B203EE3C48C
2014-10-11 15:09 - 2014-10-11 15:09 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_374756732E262B15E285CDA7BB487957
2014-10-11 17:40 - 2014-10-11 17:48 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_40BD0A10F994EC65227E00D20A420B79
2014-10-13 19:49 - 2014-10-13 19:50 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_474651C1AE615F3129F4C2C7851FEA04
2014-09-13 07:18 - 2014-10-16 22:42 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_4A44502CABB9075508F6472A2484B9E5
2014-04-27 10:11 - 2014-10-17 06:13 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_7665F86EDC0C7870E62D19F94BAD2BFF
2014-10-11 12:49 - 2014-10-11 12:50 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_76F34A9FC08535CDD5CF82721987371F
2014-10-17 06:11 - 2014-10-17 06:13 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_7C894D80D9FA65406B78BA08D48DCD51
2014-06-25 23:08 - 2014-10-16 22:42 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_7E8F733287E7BD49A4A5E72E948E7D69
2014-10-11 08:55 - 2014-10-11 08:56 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_85C125F09CFA1B9FF5B9EC44B3D14258
2014-08-10 12:52 - 2014-10-11 08:14 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_880BA03F6ECDCC73603AAB316F424222
2014-10-11 16:23 - 2014-10-17 14:13 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_8C72B85520C1FB052F41A046AB559190
2014-09-20 11:38 - 2014-09-30 22:15 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_9BADAA9EB05B777F9E50F283D2966EB2
2014-10-01 07:36 - 2014-10-01 07:37 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_9DB317733D199B40C98B98B54C099D5E
2014-10-12 11:13 - 2014-10-12 11:13 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_9FB44A25709FD54E076199D35D12E731
2014-08-12 00:47 - 2014-10-11 13:55 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_A39EAE83FBA958CFB8008BFE7C56AF99
2014-10-11 13:55 - 2014-10-11 13:55 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_ACC72D63AAFADADF0E5052F96EB2204A
2014-03-17 07:20 - 2014-10-17 22:46 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_E96F9601498C7A8C4302DFE3D478602E
2014-07-12 18:25 - 2014-10-14 21:43 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_EBE86AC2959ED4F017760B1B506B68EF
2014-10-11 15:09 - 2014-10-11 15:09 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_F215AF34F564FFFEC1252DD5307F2A58
2014-08-16 02:21 - 2014-09-30 21:45 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_F6B0C2B6E95D06783CE1176922978209
2014-04-18 06:50 - 2014-10-17 12:23 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2FAC8CE285C8CD9FC7F992BFE39C4D46_CEE544465F7573294E2074C5F4EC5929
2014-09-30 05:43 - 2014-10-12 13:41 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\30943B6B59C81511836CDEDC8B1F99D8_95493B4BB7B6DF46D21BB76A9C67D55A
2014-10-06 20:18 - 2014-10-06 20:18 - 0000416 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\30F7B429BB1DACA9B591B41E016BED66_7D7384A00F3612C09777779625401774
2012-02-16 23:10 - 2014-11-01 16:23 - 0000258 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3130B1871A126520A8C47861EFE3ED4D
2014-08-09 13:19 - 2014-10-12 00:46 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\34075C1D7BF091BBDF98E1E2FE5A1807_0BDB20857C259F5DCCA52A251CD48DCC
2014-07-10 23:30 - 2014-10-16 12:18 - 0000406 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\34075C1D7BF091BBDF98E1E2FE5A1807_4C9B306D8694769BC493BCAEF0F12248
2014-10-01 07:34 - 2014-10-12 13:41 - 0000414 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\34075C1D7BF091BBDF98E1E2FE5A1807_51AC35CCEF0B15EB797671C01F9D2E47
2014-02-09 16:11 - 2014-10-16 15:49 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\34075C1D7BF091BBDF98E1E2FE5A1807_67DCB1EC7D0E2BBBEF3993320BEE168A
2014-10-17 14:10 - 2014-10-17 14:13 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\34075C1D7BF091BBDF98E1E2FE5A1807_E3AAEB4A108F5A78D83DC5E860902614
2014-10-23 02:57 - 2014-10-23 02:57 - 0000252 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\34DA60AA966CD9270C5362E6AEF824CF
2014-03-04 18:20 - 2014-10-14 12:53 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3559FD17375EFB765B4E3F23EFB797BB_26EA71F47DCF39B693F1290D779F4631
2014-09-12 09:51 - 2014-10-13 08:56 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3559FD17375EFB765B4E3F23EFB797BB_A2A45E29CDD4E1C204764485421FB3FA
2014-10-17 14:10 - 2014-10-17 14:13 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_0636A287A081D50E722D0203F9C4C174
2014-04-10 02:32 - 2014-10-16 15:49 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_1F44ADB9468521D38A9AE7D9F08FD55B
2014-04-09 15:28 - 2014-10-16 02:43 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_1F9B0E8A46B232A1CEC8583D81127EAE
2014-07-03 16:01 - 2014-10-10 07:06 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_32E75E309152C43BD35FAFCEA2D05F4B
2014-10-11 13:39 - 2014-10-11 13:41 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_3378B11345DAC34355973777EC4EFBBE
2014-04-09 15:12 - 2014-10-14 10:15 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_5A3B8B137C41015358FD5FDD60CC7CC6
2014-04-17 19:37 - 2014-10-06 10:03 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_EC37CEEDB93592D8655D68D49570A570
2014-01-24 07:51 - 2014-10-15 15:46 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\36F1F6A9CDED762616E5038B5267C2B4_02781E45CC1B261CDB6781907825F8E4
2014-10-06 20:18 - 2014-10-06 20:18 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\36F1F6A9CDED762616E5038B5267C2B4_10002E5D0BA438B2F34DDD35BAA29895
2014-06-28 10:36 - 2014-10-27 12:27 - 0000236 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\37570AF16029C559A6224EE4AF54691D
2014-10-31 19:36 - 2014-10-31 19:36 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3781B4A3713292956206932165FA4132_D37502A09829604D4C1B7778843C560D
2014-10-12 09:32 - 2014-10-12 09:33 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\378B079587A9184B2E2AB859CB263F40_2B618FC6CF84AEF3C14E129161BF18D9
2013-10-02 07:02 - 2014-10-31 02:02 - 0000304 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\37C951188967C8EB88D99893D9D191FE
2014-04-10 16:04 - 2014-10-14 15:59 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\38022123F23BF44F207091FBE4F74201_115A74E8D9DEDB881426CE5D0975B5BB
2014-10-11 17:40 - 2014-10-11 17:48 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\38022123F23BF44F207091FBE4F74201_922469FC2FED449AF690C59A8BF7F216
2014-10-09 19:43 - 2014-10-09 19:45 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\38022123F23BF44F207091FBE4F74201_EE728E28070A2F73BAA11995CE030021
2014-09-19 12:06 - 2014-10-15 09:23 - 0000432 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3823B0119FA7D68ECD86999B07F5395F_0FC4DE83CFFDA82FB5E4728F339F58DA
2014-08-29 05:30 - 2014-10-17 14:13 - 0000220 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3B6E683A7A45CC59BF035C9BA8C7AB9D
2014-09-07 07:39 - 2014-10-17 14:13 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3D561D6E5339B4E0EAA46CCC5E6F87EF_823EDBF0ECAF3857BF09DCC3D2A1601F
2014-10-09 06:46 - 2014-10-09 06:49 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3D561D6E5339B4E0EAA46CCC5E6F87EF_9014BE8D3289F5158BDFAE502095F2CF
2014-07-12 08:34 - 2014-10-10 07:06 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3D561D6E5339B4E0EAA46CCC5E6F87EF_F2253630D6F2180B541EDC4FA2BF7A4F
2014-08-20 10:11 - 2014-10-13 12:18 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3EF2DCFBD8E45DF4AF38995D1A2C2444_439F67C6FDD1137F2B2DE684AECC73F8
2014-09-21 10:50 - 2014-10-14 12:44 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3F61CCEADC516F8E8F002E92B226F3BF_69DD06CD4434441D3C0B5AF156F2B9EF
2014-07-09 09:59 - 2014-10-17 14:08 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3F61CCEADC516F8E8F002E92B226F3BF_B0BE99ACB2BB1FDC1E8F6380596C92B0
2014-07-20 07:42 - 2014-10-15 15:53 - 0000456 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3F9CAA0497A0877CE21ECD947E7238B5_E1F0919A92865CED77950400693A532F
2014-10-10 11:58 - 2014-10-10 11:59 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4302E4BD4246B8416A3626782DD3C8B9_7A8273B1153F2404686DF870B32D34B8
2012-10-19 21:45 - 2014-11-01 14:41 - 0000264 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092
2014-10-05 11:38 - 2014-10-05 11:38 - 0000202 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\445D2A562929E59ED544CBBF32A5191A
2014-10-16 01:18 - 2014-10-16 01:19 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\44A37DE909D598EF21F9289990E1BB8F_A6D782EE2ECE4E50E5469054A37AC14E
2012-02-11 18:26 - 2014-10-12 01:15 - 0000368 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_232288A20D63375EAC649186251E5D74
2012-02-11 18:26 - 2014-10-18 02:14 - 0000368 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27
2013-07-23 16:39 - 2014-10-17 20:23 - 0000386 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
2012-02-21 12:49 - 2014-10-15 10:03 - 0000368 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5
2013-10-02 05:34 - 2014-10-14 08:29 - 0000368 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_F4692EBD578D04048E176E82BB8369BB
2014-05-26 13:07 - 2014-05-26 13:07 - 0000228 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4B0BB704138A507EFA64FCDED97201F2
2014-10-11 17:38 - 2014-10-11 17:48 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4F97ECC1101FE4CF3D3509E152EC93E5
2014-09-13 07:11 - 2014-10-12 01:47 - 0000482 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50050FF3C97A1A4B18468AD4F13EBA1D_9185FBC64400A858C3986C2961D3F6C8
2014-04-12 06:26 - 2014-10-16 11:23 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_6CBA2C06D5985DD95AE59AF8FC7C6220
2014-07-21 05:09 - 2014-10-16 02:17 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5
2012-07-07 15:18 - 2014-10-15 09:33 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_BD1446EE1580F7EA207C073F7ABA5015
2014-04-18 03:39 - 2014-10-15 09:33 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
2014-07-04 13:09 - 2014-10-23 04:51 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0
2013-02-28 03:20 - 2014-10-15 06:23 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_E9FCAC30D964AFC39902EC989B1CC9E8
2013-11-04 09:13 - 2014-10-18 02:22 - 0000210 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5495C2E4531B22B3185CE59F8E73C447
2014-10-04 14:32 - 2014-10-04 14:32 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\566A973C3ADBC70963C072413659C1CB_3BD3EC2D69C71819A03DF3488FE693F4
2014-10-08 22:27 - 2014-10-13 08:54 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\566A973C3ADBC70963C072413659C1CB_6E69EBAB9701268709753EC47A4B8A63
2014-05-16 10:57 - 2014-10-16 12:28 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\566A973C3ADBC70963C072413659C1CB_F182EA2085B04B1FB43B6428477A9E4A
2012-07-01 22:35 - 2014-11-01 07:26 - 0000340 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
2014-10-03 18:41 - 2014-10-03 18:48 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5A2195F4A9EF06A0920B0A9947B0CE06_7FACC37C0D16354BA28065E6810E2991
2014-10-03 18:36 - 2014-10-03 18:38 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5A2195F4A9EF06A0920B0A9947B0CE06_E365EE4F385D54753F3D5FEAFDE18EF4
2014-10-14 22:11 - 2014-10-14 22:12 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_00CF1898382336FE22C0340DA9AA6678
2014-09-17 23:56 - 2014-10-16 15:49 - 0000442 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_2052D556AE7E1E509037E2B6EE94F057
2014-09-29 17:48 - 2014-10-07 10:05 - 0000446 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_2841B2CB87FD0B55F9EB42FDED7FCB70
2014-10-13 08:47 - 2014-10-13 08:54 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_37DDDD0043B40CE948BAF1208A55E5FC
2014-05-20 16:18 - 2014-10-12 00:55 - 0000446 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_93551D89E8F1A17B59B9C49692BB0A14
2014-09-30 21:34 - 2014-10-18 03:37 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_9B6BB76EE3F7E27F363F1B9A1D3F0030
2014-09-12 05:07 - 2014-10-17 09:52 - 0000450 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5B565E5A03C1711296156E2E5BE2718C_DCBFF666337BF7A8ABF19A3F6FDC2287
2014-05-24 04:24 - 2014-10-31 14:34 - 0000452 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5BF987767EE121EB773E3E93D13C2F30_0B2AEF4FE043D0F11F387BBA16F05698
2014-06-04 20:43 - 2014-10-17 14:13 - 0000452 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5BF987767EE121EB773E3E93D13C2F30_6EA685090E3D9CA56E448C48346689F0
2014-05-24 04:24 - 2014-10-31 14:34 - 0000452 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5BF987767EE121EB773E3E93D13C2F30_EF26754C41825C23E00A83FE50225A1A
2014-10-31 02:22 - 2014-10-31 02:22 - 0000298 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5C45AD19E3530EC4218F560AFC04C3F7
2014-10-13 08:55 - 2014-10-13 08:56 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5D980C21A14CEF8530BD8EA5D70F17A7_29C7D8F4815FD61CEEB1A13B01BF2BFC
2014-10-17 14:08 - 2014-10-17 14:08 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5D980C21A14CEF8530BD8EA5D70F17A7_5FC245B2CDF9ADD8ECC4B31AB27253A1
2014-10-17 17:00 - 2014-10-17 17:01 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5D980C21A14CEF8530BD8EA5D70F17A7_7E6373A24A9D63D2A91003D0380D6D21
2012-02-11 14:27 - 2014-10-02 11:11 - 0000274 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5
2014-09-20 10:41 - 2014-10-05 07:14 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\664330A9AEEB010311075B268D93CA8A_075AF3748DB53F5F107606FBB8F5BB13
2012-02-12 02:36 - 2014-11-01 16:23 - 0000282 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD
2014-07-22 17:11 - 2014-10-15 06:23 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6A59C2B4529FA60196FE66A9AA54C0D5_4A48749249B684FD261BB8FDB0F171F6
2014-07-21 04:41 - 2014-10-16 22:42 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6A59C2B4529FA60196FE66A9AA54C0D5_65A985FC5912DDC4391EF3B4F5CB7311
2014-10-11 15:09 - 2014-10-11 15:09 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6A59C2B4529FA60196FE66A9AA54C0D5_A9DDFBA80487C75001DD2FD7557E8444
2013-03-31 08:21 - 2014-10-13 08:56 - 0000422 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384
2013-04-06 07:58 - 2014-10-18 10:06 - 0000426 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4
2013-04-06 07:58 - 2014-11-01 16:32 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8
2014-09-15 08:26 - 2014-10-09 16:32 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AC9FC4D6BF594DA3514F65B3921FD85_8D00F1C5077398045332322F01500641
2013-02-28 00:25 - 2014-10-14 12:44 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BDC4BD492765EED974809D29642BE4C_D494156DA37C2FEABFB2C80879C32F7E
2012-02-11 15:58 - 2014-10-16 11:17 - 0000444 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6C05FF55E66434DC351985A3C60541B2_305471F92FEBDAC55C5F5411833A3468
2013-08-16 03:28 - 2014-10-17 06:43 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_32ED58A7CD9AC095E8DCEF33F5587722
2014-10-06 19:42 - 2014-10-06 19:42 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_50D0AA3D3AAB25D488FB2CE3248C24D2
2014-05-17 13:14 - 2014-10-15 09:33 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_8873E29ACDD7BF356F16EAED7827A0F2
2014-10-06 10:06 - 2014-10-06 10:06 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_93292617FD44BB2EC8FA277176C44E18
2014-08-09 13:17 - 2014-10-11 16:23 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_9C27F174AE13FD63F0F536695663690B
2014-02-24 19:14 - 2014-10-16 21:13 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_A10E4930295C49BE0DC726AB2BF50FF1
2014-10-17 22:09 - 2014-10-17 22:13 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_C11F43F29EFCD55977E3DE03F8AF6357
2014-10-14 08:20 - 2014-10-14 08:29 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_E682EDA234AA687CE05D00C1EA10A8F4
2014-02-26 05:50 - 2014-10-11 14:13 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F1C2276FEEB16C90B9E23EB7EE2B092_32C61D9154D326C312CC54A6CC5BC970
2014-05-24 14:12 - 2014-10-11 15:09 - 0000490 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\70FEE87A42672626A68FAB261B428374_7FA4A19E9E8ECB94A8E785D67DD2F84B
2014-08-28 03:09 - 2014-10-02 23:02 - 0000494 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\70FEE87A42672626A68FAB261B428374_8B7E2C714E27754371DFEF1BAC9DFAA0
2014-09-21 12:13 - 2014-10-11 17:48 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\729E9C705B0D8776A35F0C8C012D3C76_DD672B2902E3035055D06FE77C368F2B
2014-08-17 09:18 - 2014-10-04 14:24 - 0000454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\72FB5B1C7905530E0DF39758E01A3573_21BF739A4CF60141F716E58EC767CA53
2014-06-21 06:58 - 2014-10-17 08:26 - 0000454 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\72FB5B1C7905530E0DF39758E01A3573_89BF38AC62844359BBE9A7A2DC9AE3DA
2012-06-01 03:53 - 2014-11-01 16:23 - 0000296 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21
2014-03-04 18:20 - 2014-10-15 14:08 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_11D7BA58D75E54D622A3AD9CDF9905BB
2014-02-04 03:26 - 2014-10-16 15:19 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
2012-02-11 17:44 - 2014-10-08 16:59 - 0000304 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019
2014-10-01 07:34 - 2014-10-12 13:41 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74ED51A3D229FC7D437854B8EB97E847_3A88D3CC6A54C32191B054A2498A5470
2014-10-20 12:07 - 2014-10-20 12:07 - 0000212 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74FBF93595CFC8459196065CE54AD928
2012-07-01 22:35 - 2014-11-01 01:17 - 0000330 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
2014-05-16 10:57 - 2014-10-16 12:28 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\783DF2F5A7C9BC04C36663632D14B993_09E6BFC8958A4903B51F28C3DF0B32CC
2014-10-06 20:18 - 2014-10-06 20:18 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\783DF2F5A7C9BC04C36663632D14B993_169DE3439FD2D9FE0AE07883B5A27A1B
2014-10-01 08:09 - 2014-10-01 08:12 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\78AEA33CBC43D46B831952F63632A34D_7D17D137E801E9E14D361EB418C99183
2012-02-12 22:33 - 2012-07-31 04:47 - 0000258 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9
2014-10-19 11:45 - 2014-10-19 11:56 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_300B2959CFAC6BFE905B72E61EE2A068
2014-08-20 08:23 - 2014-10-18 12:34 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_B2DB1CC4B5F2D2A802D56AAED525802D
2014-08-19 08:22 - 2014-10-28 07:51 - 0000416 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_CD4662E1A7F15144990B9C9F03164C3A
2014-10-11 16:23 - 2014-10-11 16:23 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7C1B7BA2D0A4C1307F3A4A532F819AA1_3FA9E7D22E483A418ED400F0D3846CB2
2014-10-17 06:14 - 2014-10-17 06:15 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7C44AA84A5CFEC3289884F54A088297E_ECA8A0D88466257201E30535BB4E5675
2014-08-05 12:31 - 2014-10-16 22:42 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7C44AA84A5CFEC3289884F54A088297E_F7A5728B775893C18BC68AA47254E4E5
2013-02-20 23:08 - 2014-10-22 08:58 - 0000258 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F
2014-02-03 15:01 - 2014-10-28 07:51 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
2013-09-12 16:40 - 2014-10-24 09:58 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD
2012-02-11 17:44 - 2014-10-13 08:54 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B
2012-02-11 18:26 - 2014-10-14 11:54 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_FFE23A7C282C1690704B5AEA6161D1B8
2014-04-16 07:52 - 2014-05-14 14:09 - 0000260 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\822186DA1C5674468E064427D0CD44D3
2014-10-13 09:16 - 2014-10-13 09:16 - 0000356 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\828298824EA5549947C17DDABF6871F5_334ED69A36BF882B447815998BE46E97
2014-09-18 11:25 - 2014-10-12 22:25 - 0000356 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\828298824EA5549947C17DDABF6871F5_4A500E9AA7C5573906560F21D53A5861
2014-04-11 17:28 - 2014-10-16 22:42 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\84AFE219AEC53B0C9251F5E19EF019BD_2C9D5E6D83DF507CBE6C15521D5D3562
2014-09-30 10:28 - 2014-10-21 01:40 - 0000504 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_041C7BCA38AE473669C469148677703C
2014-10-06 20:18 - 2014-10-06 20:18 - 0000504 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_049960F9684E337495103DB75FD167CD
2014-10-04 11:34 - 2014-10-04 11:34 - 0000512 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_0D58F67FD590DF09D3D0C9F430AE324F
2014-10-17 22:46 - 2014-10-17 22:46 - 0000504 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_37B4DF5E47CDA4EDFB4F7DDCADA3DCF3
2014-10-18 03:20 - 2014-10-18 03:23 - 0000504 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_596E8211CBB7A07DF105AD1021026331
2014-10-09 19:47 - 2014-10-09 19:51 - 0000504 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_5A371CC464745A48E2DD2A7FF5DBAB54
2014-10-18 02:11 - 2014-10-22 03:07 - 0000516 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_69D8D47AB1AD575C0CF624C7D137AD1B
2014-10-03 03:50 - 2014-10-10 07:06 - 0000504 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_8DE9376749465DCFF1698C95BDD76EF9
2014-10-03 18:36 - 2014-10-11 08:17 - 0000516 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_A1F42409A54B6EEF5C6B15FFA24DF942
2014-10-15 06:24 - 2014-10-15 06:29 - 0000508 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_E2FBAF89EC424A34AEE48D5963E3F902
2014-10-03 18:36 - 2014-10-03 18:38 - 0000508 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_E4929C45CD447534623406931DB649B8
2014-10-17 14:10 - 2014-10-17 14:13 - 0000508 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\887FDFEF9DC62EF73EB288690D5944B1_E85BA28B8049E4D452E9621DC8EEEBF8
2012-02-11 17:44 - 2014-10-17 14:08 - 0000426 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC
2014-10-14 11:41 - 2014-10-14 11:41 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_96DEA2BAAACB5C7A91C910F0C6DB31C3
2012-02-11 17:43 - 2014-10-17 09:24 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_D3DB95C0E7608ACC9AA10ACCCCEBBDF5
2014-10-31 19:36 - 2014-10-31 19:36 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_E1EDEF0C21AE75D448F7327475DF4C9E
2014-04-16 15:43 - 2014-10-28 17:11 - 0000180 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8A574ED5927B3CEC9626151D220C7448
2014-06-29 14:03 - 2014-10-14 12:44 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8D3DBC545CD7FD762AF52F70D3AFA3A8_9745F6D90BABF668122189E40EDF31CF
2014-09-25 01:00 - 2014-10-10 07:06 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8DE3549A52F67902ED1B5FC4A6516018_8753446FC763DA6D31F6B6CCAA878F6A
2014-10-07 11:05 - 2014-10-07 11:07 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8DE3549A52F67902ED1B5FC4A6516018_E4537912BB1BCAC954A7EB3EE2D8F434
2014-10-17 23:26 - 2014-10-17 23:33 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8E2758C31E457F3F2609B06779DCF244_F74DCB7522D315AD5C86DA9FD0707D7A
2013-09-11 10:28 - 2014-10-16 12:28 - 0000204 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8EBFACB3A66359F9514D044C86BA4794
2014-10-13 20:29 - 2014-10-13 20:30 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_116E0776FABEE27563E59B5DCFE5B787
2014-07-05 17:14 - 2014-10-11 15:09 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_6470D8A4F2DBB94C1B9D00A512744CDD
2014-06-19 10:54 - 2014-10-09 05:42 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_9B8C917E567F8E4A65C059382B6D8D80
2014-04-11 17:36 - 2014-10-12 09:53 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_BEFA5E2E80053E8DDB8EE99D3BB5CD9C
2013-08-25 17:51 - 2014-10-16 22:42 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_CA8E6BAF2163B000DBA095FE24D16796
2014-08-09 07:55 - 2014-10-03 08:26 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_DE208752FA3F31BBC234B28CD470483A
2014-03-03 12:02 - 2014-10-16 22:42 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_F8752DE75DEE56BE61316F618A339773
2014-10-11 13:41 - 2014-10-11 13:41 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\942428625596FE9D60F53F82D751C701_6D7E8C471A54CCF04A1B96EBAD829028
2012-02-11 14:25 - 2012-07-03 18:52 - 0000344 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
2014-05-05 22:56 - 2014-10-14 11:23 - 0000384 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94C0DD15E1E10CFC94461B254088DA63_0117CE66361F0D071BAB0FDF0D4678FF
2014-10-06 20:29 - 2014-10-06 20:31 - 0000384 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94C0DD15E1E10CFC94461B254088DA63_2416AFAFFBA1597806452C2A70032115
2014-08-05 08:22 - 2014-10-11 14:13 - 0000384 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94C0DD15E1E10CFC94461B254088DA63_3192D1A1EF1127BD340EF5E75066C6D4
2014-08-09 13:17 - 2014-10-11 16:23 - 0000384 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94C0DD15E1E10CFC94461B254088DA63_579BEC371BE59066299F157C504B870C
2014-06-30 13:37 - 2014-10-14 11:23 - 0000384 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94C0DD15E1E10CFC94461B254088DA63_BE76D6906893C229B830160E9CB66F68
2014-06-30 13:23 - 2014-10-09 19:45 - 0000384 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94C0DD15E1E10CFC94461B254088DA63_CAC6F1DD6AF6A3D3DC0FCD552F8E39C9
2014-09-30 22:05 - 2014-10-18 02:14 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106
2014-10-10 11:58 - 2014-10-10 11:59 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_1A9CEF0D6BDBEE31E5C2CF9955E61B89
2014-10-08 01:42 - 2014-10-08 01:42 - 0000478 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\981687C62C99B11FDB98613CE3FC8A04_1C33EFA0D07EE7D2585BAB9A9C7F842E
2014-05-26 13:07 - 2014-09-05 21:58 - 0000526 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9B91D71BB2421D6106530B3FF2845917_264BBAE4F51B12FC29AB36BEAC4288DA
2014-08-16 21:05 - 2014-10-26 20:41 - 0000386 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9C888BEABCCBC2A97B0D6D9214C3BA37_1213DC6F71E4C3B05E7BCEEBC203A31E
2014-10-18 13:29 - 2014-10-26 18:05 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9C888BEABCCBC2A97B0D6D9214C3BA37_9C0A662469766D924AB1472E62297DC8
2014-09-12 05:50 - 2014-10-03 09:43 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9ED96E96B07B15E9B8E4BADA424BBFFD_BD297F02A0E850E567EFE83700A80B12
2014-08-09 13:17 - 2014-10-11 16:23 - 0000500 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A27A0B5E1ECAAA01CC77385E9FA4AC43_216AF1303343E059621FE819D1914DA9
2014-10-11 14:31 - 2014-10-11 14:32 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_364FDEE3F7CB6C7E8EE2FEE8FE9F1DC0
2014-10-11 17:38 - 2014-10-11 17:48 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_368C10AEBA07A4E903651029EED70C1A
2014-10-06 20:31 - 2014-10-06 20:31 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_72A7F273C4BD90B91209EFF3318802A9
2014-10-05 15:17 - 2014-10-11 15:09 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_B976BFF901F88D3ADA33BAD0BCBFABF5
2014-09-25 08:19 - 2014-10-04 11:37 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A34B45DD28A5DAEFDA3E0BA2FCE7DE24_EBF2C6215078F939AF7361697FA31D95
2014-10-11 18:35 - 2014-10-11 18:48 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_4F52D381AC684F1C862E58E2340C9AAE
2014-10-06 10:06 - 2014-10-06 10:06 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_5A0C35B45E7DF4A0B1486EE4C3B463E4
2014-02-12 19:16 - 2014-10-13 09:19 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_65567A8A88DAA8CE7E3A1443DFD1AB5C
2014-07-05 17:14 - 2014-10-11 14:13 - 0000446 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_725548FF661BEA9BF8B318D6DE0D65A3
2014-02-03 14:08 - 2014-10-12 01:47 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_C87D39DF82FAAD1737CEFA4D1C039682
2014-10-13 08:47 - 2014-10-13 08:54 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_E24628B9B72DFA5704FF2F2D505D975C
2012-02-12 08:35 - 2014-11-01 16:23 - 0000272 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD
2014-10-03 06:21 - 2014-10-03 06:22 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A6AEFB095C26AF1B5B814D0B2E4FE3A9_2C49FDF77DFE8EE46DF18F5B6DC57264



#8 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 01 November 2014 - 04:26 PM

Fixlog.txt, 2nd part, lines 1025-1765 of total 1765 lines:

2014-09-12 05:50 - 2014-10-03 09:43 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A6AEFB095C26AF1B5B814D0B2E4FE3A9_813A0019E1C1D33D861A69C4E07442D8
2014-08-04 20:29 - 2014-10-13 08:54 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_0016DFAB2085E976FBF3CB34512AEC86
2014-07-05 17:14 - 2014-10-11 15:09 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_2B36CE124DA22A0A57949FCE63F43990
2014-09-18 22:31 - 2014-10-11 17:48 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_2E508950C6789DD15C85224DDBE85084
2014-09-18 11:45 - 2014-10-11 09:29 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_3C01E0C13B8C6BC23CE0A2D6BC956771
2014-07-21 05:02 - 2014-10-18 02:12 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_447C007DD9887FE90DC34A0860F9240A
2014-10-08 01:51 - 2014-10-08 01:53 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_7FD6A636739F9D731D0DAA536AA0F01F
2014-08-15 09:48 - 2014-10-15 09:23 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_C54AC9D3E5B93A04E8FC968E006EFE76
2014-07-16 16:00 - 2014-10-12 00:55 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_CC6C1B38386ECBEFA4142D5EC18851D1
2014-06-27 15:35 - 2014-10-16 02:43 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A89C8F06203094345F6FA729002E837B_E3AE27B4D31489112A801B5950F25047
2014-07-08 16:04 - 2014-10-16 22:42 - 0000424 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AA6B6AB819FB3531374AB289617DF933_7CB2E125ADF949D4AFE9BD0C93C40033
2014-10-15 06:30 - 2014-10-15 06:33 - 0000424 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AA6B6AB819FB3531374AB289617DF933_A3B4557D283333CA7D4C3B1513472A0B
2014-10-04 11:24 - 2014-10-16 22:42 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC68F0EC5FC952A7A923830D1455D48A_0040E58717EE07624F87471E8950D6AC
2014-08-21 07:52 - 2014-10-05 19:53 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC68F0EC5FC952A7A923830D1455D48A_049A4BE772D631D7B7809D7B2F25614B
2014-03-18 09:45 - 2014-10-16 22:42 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC68F0EC5FC952A7A923830D1455D48A_710720AAF94FC93C1CE12E1A51CEFE37
2014-10-17 09:24 - 2014-10-17 09:24 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC68F0EC5FC952A7A923830D1455D48A_AD72A5E61F3E61E05BC52C297EDB7A6C
2012-10-19 21:45 - 2014-10-23 05:27 - 0000316 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F
2014-04-20 14:42 - 2014-10-23 14:18 - 0000222 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AFA2A5744430E65F42D3175FABFBE3E8
2014-10-11 13:41 - 2014-10-11 13:41 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B03A867CCE8C94003ED3DCC89C3DD995_BCCCFAF7CE64E255BAF5623CC6AAB9C8
2014-04-22 16:23 - 2014-10-17 05:51 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B0DD6B69DB62157973B734AB7733177A_FDC2E6DE1F39373EFB548F473D6576A8
2013-09-16 19:21 - 2014-10-12 08:19 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B1D4D8DB6B8F8A95577A5F09D0390539_400415EBB5E3145DF4A9DA90BCA63E4A
2014-09-11 07:14 - 2014-10-23 05:51 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B3BB9C1BA2D19E090AE305B2683903A0_7EBD0A45B23A8A5A4C4407444411DA5F
2014-09-19 15:27 - 2014-10-18 05:18 - 0000416 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B3BB9C1BA2D19E090AE305B2683903A0_B89A63AC6877BD1ED812438CE82C3EB8
2014-02-18 10:26 - 2014-10-13 09:19 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B4378BD2E36B69DECED3E341BD654801_1D355E26E98447CFF8B146D28FC9327F
2014-10-07 11:14 - 2014-10-07 11:14 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B4378BD2E36B69DECED3E341BD654801_23F85D6F0E2CCE0C45104142A0185CEE
2014-08-04 12:11 - 2014-10-17 18:41 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B4378BD2E36B69DECED3E341BD654801_847570493E8172203EEA50F709444682
2014-10-07 11:14 - 2014-10-07 11:14 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B4378BD2E36B69DECED3E341BD654801_ADA6AF7F1F2454BA3DE1490455E5E4AE
2014-10-12 08:05 - 2014-10-12 08:19 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B4378BD2E36B69DECED3E341BD654801_B3BB6EBA828C0231F37112CA4D072444
2012-02-13 07:30 - 2014-11-01 16:23 - 0000260 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6
2014-06-28 10:40 - 2014-10-23 04:51 - 0000414 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F
2014-10-15 11:17 - 2014-10-15 11:17 - 0000486 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_1640F80C46D6E3A2CC900B8D2E47D05F
2014-10-11 12:52 - 2014-10-11 12:52 - 0000486 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_2F0F5D6D8BBB7DE0154762603079E68F
2014-10-08 03:22 - 2014-10-15 11:17 - 0000494 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_3D0A98807A2C6A84810D051B5C2C11A2
2014-04-12 08:43 - 2014-10-16 22:42 - 0000482 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B98489BB8D97321BD9E55C6A482EEF0A_20F3048B4C18215C36FAF1F3944C482D
2014-08-16 05:42 - 2014-10-04 11:31 - 0000478 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B98489BB8D97321BD9E55C6A482EEF0A_ECE21907EAC99D0D119D15D9D6AFB2D9
2014-10-05 07:10 - 2014-10-05 07:14 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BA41173F3FB1502C814D759E3B8A6FFF_03979323A578455D03B84859BBD6BEB6
2012-02-11 15:58 - 2014-10-18 03:13 - 0000444 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BBB768C456D9E2DCD3EF595C400D483D_64C05B9EB32FC3D0CE6CB126561EEBFF
2014-08-16 05:42 - 2014-10-12 01:47 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BC2602F5489CFE3E69F81C6328A4C17C_849A9AE095E451B9FFDF6A58F3A98E26
2014-09-20 15:39 - 2014-10-14 22:12 - 0000450 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BC570EC0DE58335AFAF92FDC8E3AA330_45B6C08773523FDC7F40BE6534D21609
2014-10-04 14:31 - 2014-10-04 14:32 - 0000450 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BC570EC0DE58335AFAF92FDC8E3AA330_9C233E68618F936822CD550D2284C42F
2014-10-07 10:16 - 2014-10-07 10:19 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD379880FE2F300D4DC441776B6CCBA9_BA4DC0EF1EB8F8CAD5B494EAC2933E85
2014-10-04 12:30 - 2014-10-04 12:31 - 0000462 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD379880FE2F300D4DC441776B6CCBA9_E6ECAE38483D364979D9E659DF9F5CBE
2014-08-17 11:33 - 2014-10-06 10:28 - 0000458 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD5208ADDEC1165FD57AF2BF2F455EAA_2D744EE7A23F70E8752FAE8211EDC533
2014-08-16 16:43 - 2014-10-05 07:08 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD5208ADDEC1165FD57AF2BF2F455EAA_95F770893D65C4EBEC4DA4DF267F57DC
2014-10-13 12:21 - 2014-10-13 12:23 - 0000458 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD5208ADDEC1165FD57AF2BF2F455EAA_DFAC48D23D303A6E2BEF29ADA27486E8
2014-09-15 22:10 - 2014-10-06 16:38 - 0000422 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_7BA90B8DC9F0B1DD2788CD8110CEED48
2014-04-12 06:27 - 2014-10-13 09:16 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_8A5844A7013BA857058BA6CBC3557738
2014-10-13 08:55 - 2014-10-13 08:56 - 0000422 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_B2F5A9CE29E26A53E1E2DF14524BF1B9
2014-10-03 15:35 - 2014-10-03 15:37 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_EBEE60EC8D23EF0EF033E6AA88860C1A
2014-07-03 03:19 - 2014-10-05 03:24 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BDE8BB2C29E7F452ACB994B16640641B_1DB020DEA18215A4B19DBFB891A39CDF
2014-02-02 10:10 - 2014-10-31 11:14 - 0000238 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C0AF5F80AA0D55CA55AD4471DD73D761
2014-02-03 20:12 - 2014-10-16 12:18 - 0000220 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C25FBC9FE17D1C30FF964815C35F0AB3
2014-10-06 20:34 - 2014-10-06 20:41 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_35B2F8B08A3B0413649188FA536A0A57
2014-02-15 14:29 - 2014-10-18 03:23 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_466FCCDDC2DC52587D2C75F2CC3C616E
2014-06-28 10:38 - 2014-10-08 02:51 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_51FA1EFA064A07685F21F6DED80CD4D9
2014-10-11 16:23 - 2014-10-11 16:23 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_79EC6274A99307C5F5AF0D66F1B17A02
2014-10-04 03:18 - 2014-10-04 03:25 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_80482A56B6D6A15A352C07E8AA47B248
2014-07-08 16:04 - 2014-10-05 07:54 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_878D1594DC6D178F15157555A2434B8D
2014-09-09 17:34 - 2014-10-12 01:15 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_B900D501E7EF86B5F5E71644D769DA30
2014-07-02 04:51 - 2014-10-16 22:42 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_C659B25879F62C879A498163381BF15C
2014-07-24 23:14 - 2014-10-14 19:56 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_F6F61B4D31C8B970C4F88F84EC0254CC
2013-03-10 08:50 - 2014-10-15 15:53 - 0000456 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C3B4324B100AA32F7BE995E7E34E0AA5_15C23806E36E1233F1A79C3B11377E1C
2014-08-16 19:16 - 2014-10-11 18:35 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_42820CDFEA41DC84AAB89A6B63561873
2014-09-29 18:24 - 2014-10-12 08:19 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_81A0840C0AD974942DF53C0F7BFF94D8
2014-10-01 16:42 - 2014-10-11 18:35 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_8AD64B5090F0618F892770B543160F94
2014-10-14 12:44 - 2014-10-14 12:44 - 0000224 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C5FD5BF0CE6372B1CAFE381FD0BC969C
2014-02-20 17:55 - 2014-10-11 08:17 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C73CCF067C75015097BE784D81853FAC_00FC09261B5A101AE90A8E1E10E13DA6
2014-09-25 21:17 - 2014-10-08 20:24 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C73CCF067C75015097BE784D81853FAC_A00F86F6C62E76565F7566927531F6F4
2013-11-04 09:13 - 2014-10-21 01:40 - 0000230 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8E7EC0C85688F4738F3BE49B104BA67
2014-10-03 15:35 - 2014-10-03 15:37 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8FD15531E24355E9996DC42A9452E73_3428FDDC946D5EB301D8C4937116A4E3
2014-10-12 09:32 - 2014-10-12 09:33 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C9E3282A673263848AB7F0C007FD3AF1_ACB044B20070C7D7A59EF6C5464634A1
2014-09-20 16:08 - 2014-10-15 09:02 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_006829BED821805554146811E7AFB2DC
2014-05-06 08:42 - 2014-10-16 02:22 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_11B7AAE2F5F221B301FC48A775A7BA75
2014-07-01 14:16 - 2014-10-12 09:53 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_15A9F8AEDFC175B994A2CDC33A11A4C2
2014-10-17 14:08 - 2014-10-17 14:08 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_2A052DE4582A5BFAEBD290592AA78E75
2014-01-28 13:39 - 2014-10-13 13:26 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_2F728568B2A7DC466FE77082EB406FB4
2014-09-07 09:51 - 2014-10-12 09:53 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_4969A89066CA0200A92E4307736C8255
2014-10-03 06:21 - 2014-10-03 06:22 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_595A1FACB98A828F4E2B8BD5D81FCA8A
2014-10-18 03:18 - 2014-10-18 03:23 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_5A1D01CBE1877B0DE3821A6C89A1EF2E
2014-10-16 22:42 - 2014-10-16 22:42 - 0000420 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_88556EBEB4D1F6236B51E65847ADFA4E
2014-04-17 09:54 - 2014-10-16 22:42 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_8996E779DD8031CD546421A4C2EF8AA1
2014-10-11 13:07 - 2014-10-11 13:08 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_9BAC23EA898DEC8A73446B83205F126F
2014-04-20 02:46 - 2014-10-02 11:11 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_9D3ABA49CDD9617ADAA7656D784E87B7
2014-10-17 14:10 - 2014-10-17 14:13 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_AB1866720F88F31FD62E96D0A87491CF
2014-07-13 14:01 - 2014-10-08 13:01 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_B137667638BC27E1F09848A7A63E5672
2014-05-25 15:46 - 2014-10-18 02:59 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_C633318EC50EE8D448026D5845149063
2014-07-10 23:30 - 2014-10-16 22:42 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_CB8FB0FDFECB64D9C549172657D766C2
2014-06-28 17:52 - 2014-10-14 21:43 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_D8A030623202CA5E1AA30CC06534F699
2014-10-05 15:17 - 2014-10-05 15:18 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_E82C2810E6D8ACC7486667B9A13B4F9A
2014-04-17 05:14 - 2014-10-16 04:43 - 0000412 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_F2F8C36E48A4BF7F6684EEABA37385A5
2014-08-16 05:42 - 2014-10-05 08:04 - 0000474 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CF8F81142E45FB23D354F9018CD9473D_E71070DE229CDBD0AD71B0E107E1D30A
2014-10-13 20:29 - 2014-10-13 20:29 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_2E824C4D93BD1FF7D42F64026EBD7217
2014-06-03 08:31 - 2014-10-04 11:26 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_4BE288DD96BFA97C2CC62E0B23FC7C49
2013-12-26 08:18 - 2014-10-27 17:21 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_556F5186F9C63BA26312E1A3EE0ECA55
2014-09-30 22:06 - 2014-09-30 22:15 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_5E78266C053E6523F5A20A95527565D0
2014-10-17 14:10 - 2014-10-17 14:13 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_7BFAD2C2F2916E7969B4E68BF967661C
2014-09-05 12:48 - 2014-10-16 22:42 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_AD88A35F054A816EB2DF4FBF1ED90B92
2014-10-11 13:41 - 2014-10-11 13:41 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_BE0F294F92C58A999D8F5DCD083A14FD
2014-10-13 09:06 - 2014-10-13 09:07 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_C26BEB82A510EE78549450169E8C59F5
2014-09-15 22:47 - 2014-10-17 06:31 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_C57450A1C7F1685BBA6EC2D902B1FE51
2014-10-23 04:52 - 2014-10-30 06:01 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_CE141D43C95127DF4C1F332037AC3F92
2014-01-24 20:21 - 2014-10-18 17:21 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_D98F71DEC6ADEED3ACDBF4C693C634EE
2014-06-30 13:19 - 2014-10-09 19:45 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_DD9B715CCAD857F1747F5673D455EEBB
2014-05-13 22:16 - 2014-10-14 12:25 - 0000452 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_E11C35E13D4F68FC9805B6A97C800EB3
2014-04-11 07:27 - 2014-10-17 14:13 - 0000448 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_F1834DAE98977634DD3213A679917E3F
2014-01-25 16:39 - 2014-10-14 12:53 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D473E9C373099A94D5057303FDF0EE65_39B17C5C97CD64B7EE78FBDFB2D76D63
2014-05-25 15:46 - 2014-10-10 06:55 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D473E9C373099A94D5057303FDF0EE65_414B037887CDA892D15A98432E7CBC71
2014-09-30 21:34 - 2014-09-30 21:35 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF
2014-09-30 21:35 - 2014-09-30 21:35 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_D33192D58AA9CA2B9097E848E9FE86DE
2014-10-01 10:44 - 2014-10-01 10:50 - 0000404 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_DBC0394482C86DF73874BFA8B90905A8
2014-04-02 09:28 - 2014-10-19 11:17 - 0000230 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DC2135CED98D8A4D7C0CEE202BB0B810
2014-10-17 16:07 - 2014-10-17 16:07 - 0000450 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DF41E337719EEAF57C8EABC7ADAA3CA9_C5CFC967B5C265AE3181999790BB6EA2
2014-10-08 14:41 - 2014-10-08 14:56 - 0000426 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E3B4D810CDA56990F6FC5106B77DA149_0E5C1CDCAFE76FA69F84246FD32BC204
2014-10-16 11:21 - 2014-10-16 11:23 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E3B4D810CDA56990F6FC5106B77DA149_22FDB9C8083A07978723CBB8EC2A01AE
2014-10-12 13:40 - 2014-10-12 13:41 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E4F76C0C82655FD6506668127FA0ACD1_1FDE0FEDD0EBD9B7F279D185A43A7EA4
2014-10-06 10:02 - 2014-10-06 10:03 - 0000442 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E4F76C0C82655FD6506668127FA0ACD1_44E47F21EA518C75AB54A0BF21042677
2014-10-14 22:11 - 2014-10-14 22:12 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E4F76C0C82655FD6506668127FA0ACD1_C249CAF9CE5AF9F3B90344BFCA15E463
2014-10-18 02:18 - 2014-10-18 02:22 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E4F76C0C82655FD6506668127FA0ACD1_D0C0F0BC9CD339929F2FA3CA83E7F40F
2014-09-09 23:52 - 2014-10-04 11:31 - 0000442 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_2257D846D8ACC0988D6668BA3DD0710E
2014-07-25 02:06 - 2014-10-01 07:34 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_24DAD4A139C36DF55A8EE1E30F089EF9
2014-07-15 20:34 - 2014-10-11 16:23 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_452F97DAD502BC538E659559A9D889B5
2014-10-04 03:18 - 2014-10-17 14:13 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_56F9ACE367312820418ADBB8722E210F
2014-05-19 20:37 - 2014-10-15 09:02 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_5DEEDEBB36A2485C3CF532F0D966D1A8
2014-08-10 16:11 - 2014-10-17 12:37 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_8201D00027212787250AB8DE817C3A9E
2014-10-01 07:49 - 2014-10-09 16:32 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_923E9BB8D1D28725F9D6928A55D3104C
2014-09-09 20:44 - 2014-10-21 20:58 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_968D17A2B6CC71BA10E3A7951EC81988
2014-07-22 15:08 - 2014-10-12 13:41 - 0000446 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_B12519B3E4D3C99979E3C33CFF793FC8
2014-10-11 17:40 - 2014-10-11 17:48 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_C27E7A7F87190CD76A6D732319B91BFA
2014-08-16 16:43 - 2014-10-13 08:54 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_C98DAA9BA20CCE83943E9C499768DE31
2012-11-06 07:24 - 2014-10-17 14:08 - 0000242 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5062987353057B4F90E8C7A2DEAE329
2014-10-05 11:38 - 2014-10-05 11:39 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_0A77FD6745F6E1384D7C896AB25E52EC
2014-10-16 02:14 - 2014-10-16 02:17 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_1F6B6E55AF06180A871AF80FF3961ACA
2014-10-12 00:51 - 2014-10-12 00:55 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_2B8C33982D31C1D2667C04A9762803E2
2014-08-24 15:49 - 2014-10-18 03:23 - 0000392 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_3A1DB7BB62163C2306AA891A0704D0A7
2014-09-21 10:50 - 2014-10-13 10:40 - 0000396 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_5E7162C57D44CC650AD3F0D4D793293D
2014-10-11 16:23 - 2014-10-11 16:23 - 0000400 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_EA678D98129239B94A42ABA094C5C065
2012-11-24 10:37 - 2014-11-01 16:23 - 0000270 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E6024EAC88E6B6165D49FE3C95ADD735
2014-07-08 16:04 - 2014-10-10 07:06 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E6DAA7489C9999D36D1B356E8A295618_1E4069531DEFE4987BC608EB01B64158
2014-09-12 09:51 - 2014-10-13 08:56 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E76BF8706526FBFA546EB1718F852E85_9BDA1A7A25F2B5C32A9083C3BEFB69F1
2014-08-21 08:39 - 2014-10-12 13:41 - 0000434 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E76BF8706526FBFA546EB1718F852E85_AAC4277F0EFF532E46024DD4DADCCC13
2014-06-30 13:19 - 2014-10-09 19:45 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_08DF5C0A50FCCE37B00875A6586E811A
2014-06-30 13:18 - 2014-10-09 19:45 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_9219B22B45E57BBD72154E9E7832BDF2
2014-06-30 13:19 - 2014-10-09 19:45 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_AD501EE3F1DD713A788F22003160EC98
2014-09-30 10:40 - 2014-09-30 10:41 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_ADC728A885BCE2A7A73B1D92DF32143F
2014-10-20 13:11 - 2014-10-24 21:03 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_F6B87461FD8410E117804A8254501C39
2014-02-11 11:23 - 2014-10-14 12:44 - 0000458 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EB2C4AB8B68FFA4B7733A9139239A396_D76DB901EE986B889F30D8CC06229E2D
2014-10-05 03:19 - 2014-10-16 22:42 - 0000470 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EB955EDFD38E42811C2C5D1F95070764_0037EC79B6F7FEDA4304FF56B1C27F6B
2014-03-06 21:21 - 2014-10-17 14:08 - 0000426 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
2014-10-05 00:14 - 2014-10-05 00:15 - 0000430 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
2014-08-09 13:56 - 2014-10-12 00:55 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_2EE5A5180B68ECF07B7483EBB70D360B
2014-04-16 01:28 - 2014-10-10 13:32 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_313E6B316EFFE568616A721B4D9E42B0
2014-10-15 10:12 - 2014-10-15 10:12 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_6B6FD5EBF45E21B6668AA601FBA53DEF
2014-04-13 11:31 - 2014-10-17 12:51 - 0000438 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_CA60DFBAD5899031B455DD41803608C0
2013-12-26 08:18 - 2014-10-27 17:21 - 0000460 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4B372709D6C2AD766C34D274501DC76_0336A3E438E66920481D8300B8B34509
2014-09-12 05:50 - 2014-10-11 17:48 - 0000460 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4B372709D6C2AD766C34D274501DC76_C08D897FBCD7D5D638FCD154D1404CBE
2014-06-28 10:49 - 2014-10-23 04:51 - 0000408 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4D9C889B7AEBCF4E1A2DAABC5C3628A_4457FF489B560C53EF4B4A50C54529CD
2012-11-05 19:38 - 2014-11-01 16:23 - 0000292 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F90F18257CBB4D84216AC1E1F3BB2C76
2014-10-11 18:35 - 2014-10-11 18:35 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F9B4B020B20DB2A72ABA97C60AD87CAF_48E6275340FEE0041A771369B1DD46F1
2014-10-17 19:01 - 2014-10-17 19:07 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F9B4B020B20DB2A72ABA97C60AD87CAF_49BE71F32CF612D052EEDEA680765395
2014-10-17 14:08 - 2014-10-17 14:08 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F9B4B020B20DB2A72ABA97C60AD87CAF_91112D14E6D455517361FF73CC485123
2014-10-13 08:55 - 2014-10-13 08:56 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F9B4B020B20DB2A72ABA97C60AD87CAF_C94A50B4818BC58ADDFB7FDEB5FD27CE
2014-10-01 16:42 - 2014-10-15 06:29 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F9B4B020B20DB2A72ABA97C60AD87CAF_D1D679721DCD0F242FE85903B3C37BF1
2012-02-11 15:58 - 2014-10-12 14:09 - 0000274 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB788E090BC1F3AA2FBC9E8FB2859601
2014-09-29 18:24 - 2014-10-07 11:10 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB90ACC90955098F0F5D375512E53CE7_20177362CCBF5FBAE5C350DAAA350E86
2014-10-03 17:57 - 2014-10-03 17:57 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB90ACC90955098F0F5D375512E53CE7_4D0E8430479B00371C9DE1D32756F358
2014-10-16 02:14 - 2014-10-16 02:17 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB90ACC90955098F0F5D375512E53CE7_A6D2D67EB151EA3992418326BB4E0421
2014-10-02 13:42 - 2014-10-15 06:29 - 0000394 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB90ACC90955098F0F5D375512E53CE7_B1B06F3DFE45E7631F6E4D1458CDD74D
2014-01-31 15:41 - 2014-10-16 22:42 - 0000466 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCADE99E87BD1D379748EEDD6B7D8C31_E43604F377B1F80493CE1BB0F60DFA73
2014-08-16 21:39 - 2014-10-13 09:16 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_0FE3ED9CC3FDE853078D95D069F24AB4
2014-05-05 08:22 - 2014-10-07 10:36 - 0000414 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_2CB6116529341403E3777E69068D1312
2014-04-25 08:29 - 2014-10-18 03:23 - 0000418 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_59C6DBFCE4CB38916146C5577B755DCF
2014-04-15 01:53 - 2014-10-14 03:55 - 0000418 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_64FBBF7EBC3C3336620E795DDC157490
2014-10-12 11:15 - 2014-10-12 11:16 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_81D87D3ABBA2B308404234585A20C0A5
2014-09-15 22:02 - 2014-10-01 16:12 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_8A9F7A69BB4FD7F3D1190704344A333F
2014-04-16 13:45 - 2014-10-12 09:33 - 0000414 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_AAA409BED89F9216D7BA9AC7BB00B8AB
2014-04-10 10:47 - 2014-10-11 12:50 - 0000414 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_DDE7C84CBB7658FC5D51C45EABF2444C
2014-10-17 09:24 - 2014-10-17 09:24 - 0000410 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_F23BB5674F8927B70B027CFBFE7187C1
2013-09-10 11:23 - 2014-10-16 12:28 - 0000218 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCEA474F228C13CD0DAD678431D0ACFC
2014-04-20 09:57 - 2014-10-12 08:19 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_3C94FC19162DE44461335A65F658F035
2014-10-12 00:45 - 2014-10-12 00:46 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_76943F6738E7E52CC7CB7E63F3ACEE7A
2014-10-03 06:22 - 2014-10-03 06:29 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_7717E2C15FEE7682D1A1CD83E4CC21E1
2014-09-03 11:58 - 2014-10-09 19:45 - 0000398 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_B52E76D2A62C9223D6EE16E1CB6EA659
2014-07-03 20:48 - 2014-10-15 14:08 - 0000402 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_E5AAE7AD8DEF8C8261E06CFBF797E98D
2014-08-01 01:53 - 2014-10-10 13:52 - 0000390 ____S () C:\Users\Alexey\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_FBDC087E8C04DC6BDD638CA24BCB2D90
2014-01-28 02:59 - 2014-10-10 21:27 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12
2014-06-28 04:29 - 2014-06-28 04:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\debugger
2014-06-28 04:29 - 2014-10-10 21:31 - 0003375 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\debugger\settings.json
2014-10-10 21:27 - 2014-10-10 21:27 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\emulation
2014-10-10 21:27 - 2014-10-10 21:27 - 0000255 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\emulation\settings.json
2014-06-28 04:26 - 2014-06-28 04:26 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\header
2014-06-28 04:26 - 2014-06-28 04:26 - 0000003 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\header\MyCode.json
2014-01-28 02:59 - 2014-01-28 02:59 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\perftools
2014-01-28 02:59 - 2014-01-28 02:59 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\perftools\memory
2014-01-28 02:59 - 2014-01-28 02:59 - 0000003 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\perftools\memory\settings.json
2014-01-28 02:59 - 2014-01-28 02:59 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\perftools\visualprofiler
2014-01-28 02:59 - 2014-01-28 02:59 - 0000003 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\F12\perftools\visualprofiler\settings.json
2012-03-27 19:54 - 2012-03-27 19:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\IME12
2012-03-27 19:54 - 2012-03-27 19:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\IMJP12
2012-03-27 19:54 - 2012-03-27 19:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\IMJP8_1
2012-03-27 19:54 - 2012-03-27 19:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\IMJP9_0
2012-02-11 15:58 - 2013-12-03 11:21 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer
2012-02-11 17:44 - 2013-10-10 05:51 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore
2013-10-10 05:51 - 2013-10-10 05:51 - 0000000 ___SH () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\container.dat
2012-02-11 17:44 - 2013-10-10 05:51 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\3W842CKA
2013-09-27 12:55 - 2013-09-27 12:55 - 0000124 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\3W842CKA\stackoverflow[1].xml
2013-09-27 13:32 - 2013-09-27 13:32 - 0001030 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\3W842CKA\www.cisco[1].xml
2013-09-27 10:38 - 2013-09-27 12:31 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\3W842CKA\www.intel[1].xml
2013-10-10 05:51 - 2014-10-18 05:35 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\92Q1FQXU
2014-09-09 10:28 - 2014-09-09 10:28 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\92Q1FQXU\books.google[1].xml
2013-07-23 16:58 - 2014-10-17 07:50 - 0000688 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\92Q1FQXU\docs.google[1].xml
2013-07-21 10:07 - 2014-06-06 20:56 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\92Q1FQXU\groups.google[1].xml
2014-02-24 14:11 - 2014-09-18 09:45 - 0000277 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\92Q1FQXU\talkgadget.google[1].xml
2013-10-10 05:51 - 2014-10-18 05:35 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\DX7KAANW
2013-07-07 22:56 - 2013-07-07 22:56 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\DX7KAANW\maps.google[1].xml
2013-06-30 22:57 - 2014-06-28 08:58 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\DX7KAANW\support.google[1].xml
2012-02-11 17:44 - 2013-10-10 05:51 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\LNMWI4S8
2013-09-27 12:59 - 2013-09-27 13:07 - 0000191 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\LNMWI4S8\www.windowsazure[1].xml
2013-09-27 12:25 - 2013-09-27 12:26 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\LNMWI4S8\www-ssl.intel[1].xml
2013-10-10 05:51 - 2014-10-18 04:04 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\MIF221KO
2014-06-09 03:15 - 2014-06-09 03:15 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\MIF221KO\accounts.google[1].xml
2013-07-23 16:49 - 2014-09-25 14:37 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\MIF221KO\drive.google[1].xml
2013-06-30 22:26 - 2014-06-10 18:27 - 0000175 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\MIF221KO\www.google[1].xml
2012-02-11 17:44 - 2013-10-10 05:51 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\NGQRE1GT
2013-09-27 12:55 - 2013-09-27 12:55 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\NGQRE1GT\stackauth[1].xml
2013-09-27 11:16 - 2013-09-27 11:16 - 0000096 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\NGQRE1GT\www.vault[1].xml
2012-02-11 17:44 - 2013-10-10 05:51 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\TGPIXOX5
2013-09-27 12:55 - 2013-09-27 12:55 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\TGPIXOX5\view.atdmt[1].xml
2013-09-27 11:22 - 2013-09-27 11:23 - 0000096 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\TGPIXOX5\www.mulvad[1].xml
2013-10-10 05:51 - 2014-10-18 04:04 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5
2014-06-17 23:28 - 2014-10-18 02:26 - 0000169 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\clients5.google[1].xml
2014-02-24 01:12 - 2014-02-24 01:13 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\play.google[1].xml
2014-01-25 16:44 - 2014-10-18 02:26 - 0000495 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\plus.google[1].xml
2014-01-31 23:46 - 2014-06-12 18:27 - 0000937 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\productforums.google[1].xml
2014-09-09 10:27 - 2014-09-09 10:48 - 0000074 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\scholar.google[1].xml
2013-11-12 12:48 - 2013-11-12 12:48 - 0000013 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\sites.google[1].xml
2013-07-23 16:49 - 2014-10-18 02:26 - 0124765 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\Z5YLKAS5\www.google[1].xml
2012-06-16 12:42 - 2012-06-16 12:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\iconcache
2012-06-16 12:42 - 2013-10-23 03:16 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\iconcache\e4cg5c5
2013-10-23 03:16 - 2013-10-23 03:16 - 0009416 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\iconcache\e4cg5c5\tabiconcache.dat
2013-12-03 11:21 - 2013-12-03 11:21 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\imagestore
2013-12-03 11:21 - 2013-12-03 11:21 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\imagestore\8ny1krd
2012-02-11 15:58 - 2014-10-20 19:22 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services
2014-10-20 19:22 - 2014-10-20 19:22 - 0001150 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
2013-10-10 05:56 - 2014-07-05 17:12 - 0005430 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{164AAE4E-F799-4BA9-8403-6C723EB0DAEF}.ico
2012-02-11 15:58 - 2012-02-15 21:33 - 0001150 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{536803EE-6063-42A5-ACCE-9E4AD989E8EA}.ico
2013-06-30 10:37 - 2013-06-30 10:37 - 0001150 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{926CEABF-ADCD-405B-9DDD-52AE73957163}.ico
2012-02-11 15:58 - 2014-10-20 19:22 - 0005430 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{9AE9BE66-6CFA-4FB7-9231-31214A47CD9F}.ico
2012-06-03 04:52 - 2014-10-20 19:22 - 0005430 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{FEF02641-9483-4882-95E1-D3D1F7D3D3A6}.ico
2012-02-12 11:15 - 2014-10-21 18:24 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight
2014-01-04 09:42 - 2014-10-30 18:03 - 0000077 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\mssl.lck
2013-10-02 08:19 - 2013-10-02 08:19 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\InBrowser
2013-10-02 08:19 - 2014-02-28 12:45 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\InBrowser\Profiles
2014-02-10 10:54 - 2014-02-22 06:21 - 0009008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\InBrowser\Profiles\Jit32_28EC864.profile
2014-01-14 00:32 - 2014-01-14 00:32 - 0009148 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\InBrowser\Profiles\Jit32_96C2F67F.profile
2014-02-28 12:45 - 2014-02-28 16:30 - 0004808 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\InBrowser\Profiles\Jit32_AD0BB9A5.profile
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1
2012-02-12 11:15 - 2014-10-11 17:35 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g
2012-03-08 21:26 - 2012-03-08 21:26 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga
2012-03-08 21:26 - 2012-03-08 21:26 - 0000022 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\id.dat
2012-03-08 21:26 - 2012-03-08 21:27 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\quota.dat
2012-03-08 21:26 - 2012-03-08 21:27 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\used.dat
2013-02-05 13:05 - 2013-02-05 13:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\5qb2f33nfdw2k1vakza0skljjkxabp3uvruofjgic5r1vwu2xraaadfa
2013-02-05 13:05 - 2013-02-05 13:05 - 0000025 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\5qb2f33nfdw2k1vakza0skljjkxabp3uvruofjgic5r1vwu2xraaadfa\id.dat
2013-02-05 13:05 - 2013-02-05 13:05 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\5qb2f33nfdw2k1vakza0skljjkxabp3uvruofjgic5r1vwu2xraaadfa\quota.dat
2013-02-05 13:05 - 2013-02-05 13:05 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\5qb2f33nfdw2k1vakza0skljjkxabp3uvruofjgic5r1vwu2xraaadfa\used.dat
2014-07-30 04:18 - 2014-07-30 04:18 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\bill0elxj5ydr1cvttw35tskoibufgoyn4cmuow2hn2kbzh34laaabba
2014-07-30 04:18 - 2014-07-30 04:18 - 0000023 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\bill0elxj5ydr1cvttw35tskoibufgoyn4cmuow2hn2kbzh34laaabba\id.dat
2014-07-30 04:18 - 2014-07-30 04:18 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\bill0elxj5ydr1cvttw35tskoibufgoyn4cmuow2hn2kbzh34laaabba\quota.dat
2014-07-30 04:18 - 2014-07-30 04:18 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\bill0elxj5ydr1cvttw35tskoibufgoyn4cmuow2hn2kbzh34laaabba\used.dat
2012-02-21 22:57 - 2012-02-21 22:57 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ffu532zwpa43ne3jpietmvbxcfzerriqjjpzjposx43ixgn4e2aaaeaa
2012-02-21 22:57 - 2012-02-21 22:57 - 0000027 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ffu532zwpa43ne3jpietmvbxcfzerriqjjpzjposx43ixgn4e2aaaeaa\id.dat
2012-02-21 22:57 - 2012-02-21 23:01 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ffu532zwpa43ne3jpietmvbxcfzerriqjjpzjposx43ixgn4e2aaaeaa\quota.dat
2012-02-21 22:57 - 2012-02-21 23:01 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ffu532zwpa43ne3jpietmvbxcfzerriqjjpzjposx43ixgn4e2aaaeaa\used.dat
2014-10-11 17:35 - 2014-10-11 17:35 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba
2014-10-11 17:35 - 2014-10-11 17:35 - 0000030 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\id.dat
2014-10-11 17:35 - 2014-10-11 17:35 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\quota.dat
2014-10-11 17:35 - 2014-10-11 17:35 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\used.dat
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha
2012-02-12 11:15 - 2012-02-12 11:15 - 0000034 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\id.dat
2012-02-12 11:15 - 2012-02-12 11:16 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\quota.dat
2012-02-12 11:15 - 2012-02-12 11:16 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\used.dat
2014-02-28 12:43 - 2014-02-28 12:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ku052rbx3s051v102wc25vlu1lhc22bck2ahalgrkh1voqtpciaaaaga
2014-02-28 12:43 - 2014-02-28 12:43 - 0000039 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ku052rbx3s051v102wc25vlu1lhc22bck2ahalgrkh1voqtpciaaaaga\id.dat
2014-02-28 12:43 - 2014-02-28 12:45 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ku052rbx3s051v102wc25vlu1lhc22bck2ahalgrkh1voqtpciaaaaga\quota.dat
2014-02-28 12:43 - 2014-02-28 12:45 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\ku052rbx3s051v102wc25vlu1lhc22bck2ahalgrkh1voqtpciaaaaga\used.dat
2012-12-02 21:11 - 2012-12-02 21:11 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\o0ix4jipd532wjp4nlfmf502ppt24jbn1dxr0mpntl03zkcp1laaafba
2012-12-02 21:11 - 2012-12-02 21:11 - 0000036 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\o0ix4jipd532wjp4nlfmf502ppt24jbn1dxr0mpntl03zkcp1laaafba\id.dat
2012-12-02 21:11 - 2012-12-02 21:11 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\o0ix4jipd532wjp4nlfmf502ppt24jbn1dxr0mpntl03zkcp1laaafba\quota.dat
2012-12-02 21:11 - 2012-12-02 21:11 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\o0ix4jipd532wjp4nlfmf502ppt24jbn1dxr0mpntl03zkcp1laaafba\used.dat
2012-04-23 00:29 - 2012-04-23 00:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa
2012-04-23 00:29 - 2012-04-23 00:29 - 0000025 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\id.dat
2012-04-23 00:29 - 2012-04-23 00:29 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\quota.dat
2012-04-23 00:29 - 2012-04-23 00:29 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\used.dat
2014-01-14 00:15 - 2014-01-14 00:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\wxuiulhjiqp4gz213cutz0s22xfpthjoqeis24i3w4pbp1bulvaaaaha
2014-01-14 00:15 - 2014-01-14 00:15 - 0000024 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\wxuiulhjiqp4gz213cutz0s22xfpthjoqeis24i3w4pbp1bulvaaaaha\id.dat
2014-01-14 00:15 - 2014-01-14 00:15 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\wxuiulhjiqp4gz213cutz0s22xfpthjoqeis24i3w4pbp1bulvaaaaha\quota.dat
2014-01-14 00:15 - 2014-01-14 00:15 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\wxuiulhjiqp4gz213cutz0s22xfpthjoqeis24i3w4pbp1bulvaaaaha\used.dat
2014-01-04 09:42 - 2014-01-04 09:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\yocvuowddrtf3er23hqvnecec3ijk540vnwmflsqui4wxpp5ecaaacga
2014-01-04 09:42 - 2014-01-04 09:42 - 0000018 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\yocvuowddrtf3er23hqvnecec3ijk540vnwmflsqui4wxpp5ecaaacga\id.dat
2014-01-04 09:42 - 2014-01-04 09:42 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\yocvuowddrtf3er23hqvnecec3ijk540vnwmflsqui4wxpp5ecaaacga\quota.dat
2014-01-04 09:42 - 2014-01-04 09:42 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\yocvuowddrtf3er23hqvnecec3ijk540vnwmflsqui4wxpp5ecaaacga\used.dat
2014-02-28 13:29 - 2014-02-28 13:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\zzvwn3rc0xdj1q2dwilq5rccszlzxw1pw0v50ar0o0du50schmaaaaha
2014-02-28 13:29 - 2014-02-28 13:29 - 0000039 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\zzvwn3rc0xdj1q2dwilq5rccszlzxw1pw0v50ar0o0du50schmaaaaha\id.dat
2014-02-28 13:29 - 2014-03-01 07:20 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\zzvwn3rc0xdj1q2dwilq5rccszlzxw1pw0v50ar0o0du50schmaaaaha\quota.dat
2014-02-28 13:29 - 2014-03-01 07:20 - 0000008 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\g\zzvwn3rc0xdj1q2dwilq5rccszlzxw1pw0v50ar0o0du50schmaaaaha\used.dat
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\l
2012-02-12 11:15 - 2014-10-11 17:35 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s
2014-02-28 12:43 - 2014-02-28 12:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\0qhwatip3abs4llaluiw1olfjx5obhkoh2ttvlzrr5cytsnlb4aaaafa
2014-02-28 12:43 - 2014-02-28 13:19 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\0qhwatip3abs4llaluiw1olfjx5obhkoh2ttvlzrr5cytsnlb4aaaafa\group.dat
2014-02-28 12:43 - 2014-02-28 12:43 - 0000101 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\0qhwatip3abs4llaluiw1olfjx5obhkoh2ttvlzrr5cytsnlb4aaaafa\id.dat
2014-02-28 12:43 - 2014-02-28 12:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\0qhwatip3abs4llaluiw1olfjx5obhkoh2ttvlzrr5cytsnlb4aaaafa\f
2014-02-28 12:43 - 2014-02-28 16:30 - 0001494 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\0qhwatip3abs4llaluiw1olfjx5obhkoh2ttvlzrr5cytsnlb4aaaafa\f\__LocalSettings
2012-03-08 21:26 - 2012-03-08 21:26 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga
2012-03-08 21:26 - 2012-03-08 21:27 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\group.dat
2012-03-08 21:26 - 2012-03-08 21:26 - 0000022 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\id.dat
2012-03-08 21:26 - 2012-03-08 21:26 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\f
2012-03-08 21:26 - 2012-03-08 21:27 - 0000663 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\f\__LocalSettings
2012-03-08 21:26 - 2012-03-08 21:27 - 0000264 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\1ja4i4tsajtmcj3maoueax0so4a1zjl4vbjsxvm3stogniujoxaaabga\f\MediaQueue_.txt
2014-02-28 13:29 - 2014-02-28 13:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\2hohkbla2zauampjmsm22tqdcm5cvc3xw1uyyhvgq1hqzxkv2laaaefa
2014-02-28 13:29 - 2014-02-28 13:29 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\2hohkbla2zauampjmsm22tqdcm5cvc3xw1uyyhvgq1hqzxkv2laaaefa\group.dat
2014-02-28 13:29 - 2014-02-28 13:29 - 0000101 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\2hohkbla2zauampjmsm22tqdcm5cvc3xw1uyyhvgq1hqzxkv2laaaefa\id.dat
2014-02-28 13:29 - 2014-02-28 13:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\2hohkbla2zauampjmsm22tqdcm5cvc3xw1uyyhvgq1hqzxkv2laaaefa\f
2014-02-28 13:29 - 2014-02-28 13:29 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\2hohkbla2zauampjmsm22tqdcm5cvc3xw1uyyhvgq1hqzxkv2laaaefa\f\__LocalSettings
2012-02-21 22:57 - 2012-02-21 22:57 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\f1tstzndxbxu44tklf4alaxaztamgn45er5r3yiiweh12cidykaaahfa
2012-02-21 22:57 - 2014-07-20 17:40 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\f1tstzndxbxu44tklf4alaxaztamgn45er5r3yiiweh12cidykaaahfa\group.dat
2012-02-21 22:57 - 2012-02-21 22:57 - 0000040 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\f1tstzndxbxu44tklf4alaxaztamgn45er5r3yiiweh12cidykaaahfa\id.dat
2012-02-21 22:57 - 2012-02-21 22:57 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\f1tstzndxbxu44tklf4alaxaztamgn45er5r3yiiweh12cidykaaahfa\f
2012-02-21 22:57 - 2012-02-21 22:57 - 0000032 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\f1tstzndxbxu44tklf4alaxaztamgn45er5r3yiiweh12cidykaaahfa\f\_n33davp.ls
2014-10-11 17:35 - 2014-10-11 17:35 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba
2014-10-11 17:35 - 2014-10-28 16:54 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\group.dat
2014-10-11 17:35 - 2014-10-11 17:35 - 0000030 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\id.dat
2014-10-11 17:35 - 2014-10-28 16:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\f
2014-10-11 17:35 - 2014-10-28 16:54 - 0156984 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\f\SymCache.dat
2014-10-11 17:35 - 2014-10-28 16:54 - 0079863 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\f\SymCacheCan.dat
2014-10-23 17:49 - 2014-10-28 16:54 - 0000802 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\fredt3hzkcykwpqv4imksgz31yd0a11cqdwgxb05ywa3xizfqvaaaaba\f\SymCacheForex.dat
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha
2012-02-12 11:15 - 2012-03-07 22:47 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\group.dat
2012-02-12 11:15 - 2012-02-12 11:15 - 0000034 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\id.dat
2012-02-12 11:15 - 2012-02-12 11:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\f
2012-02-12 11:15 - 2012-03-07 22:48 - 0003000 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\gcdjzxxajx2n1cbv4jurqx3yfvqbgmuprn5pq5wiiwc0vhfzmyaaagha\f\__LocalSettings
2014-07-30 04:18 - 2014-07-30 04:18 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\jciptr3nzs3j0zg5ntlo5zf013l5do2n0ri2ifanwizomljtkoaaahfa
2014-07-30 04:18 - 2014-07-30 04:18 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\jciptr3nzs3j0zg5ntlo5zf013l5do2n0ri2ifanwizomljtkoaaahfa\group.dat
2014-07-30 04:18 - 2014-07-30 04:18 - 0000052 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\jciptr3nzs3j0zg5ntlo5zf013l5do2n0ri2ifanwizomljtkoaaahfa\id.dat
2014-07-30 04:18 - 2014-07-30 04:18 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\jciptr3nzs3j0zg5ntlo5zf013l5do2n0ri2ifanwizomljtkoaaahfa\f
2014-07-30 04:18 - 2014-07-30 04:18 - 0000038 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\jciptr3nzs3j0zg5ntlo5zf013l5do2n0ri2ifanwizomljtkoaaahfa\f\PlayerId.txt
2014-01-14 00:15 - 2014-01-14 00:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\mvvfhrtraukn0xy2qxr0n0g3o2ja14j5t04ypg2q3aaczvakrlaaagba
2014-01-14 00:15 - 2014-02-22 06:20 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\mvvfhrtraukn0xy2qxr0n0g3o2ja14j5t04ypg2q3aaczvakrlaaagba\group.dat
2014-01-14 00:15 - 2014-01-14 00:15 - 0000045 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\mvvfhrtraukn0xy2qxr0n0g3o2ja14j5t04ypg2q3aaczvakrlaaagba\id.dat
2014-01-14 00:15 - 2014-01-14 00:15 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\mvvfhrtraukn0xy2qxr0n0g3o2ja14j5t04ypg2q3aaczvakrlaaagba\f
2014-01-14 00:15 - 2014-02-22 06:21 - 0000154 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\mvvfhrtraukn0xy2qxr0n0g3o2ja14j5t04ypg2q3aaczvakrlaaagba\f\__LocalSettings
2014-01-14 00:15 - 2014-01-14 00:15 - 0000038 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\mvvfhrtraukn0xy2qxr0n0g3o2ja14j5t04ypg2q3aaczvakrlaaagba\f\PlayerId.txt
2013-02-05 13:05 - 2013-02-05 13:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\oehzk0enegvxwlqm3o2v3ny0opp1rjni2o42tzdceyowwtah0xaaacea
2013-02-05 13:05 - 2013-03-27 16:53 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\oehzk0enegvxwlqm3o2v3ny0opp1rjni2o42tzdceyowwtah0xaaacea\group.dat
2013-02-05 13:05 - 2013-02-05 13:05 - 0000072 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\oehzk0enegvxwlqm3o2v3ny0opp1rjni2o42tzdceyowwtah0xaaacea\id.dat
2013-02-05 13:05 - 2013-03-27 16:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\oehzk0enegvxwlqm3o2v3ny0opp1rjni2o42tzdceyowwtah0xaaacea\f
2013-03-27 16:05 - 2013-03-27 16:05 - 0005806 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\oehzk0enegvxwlqm3o2v3ny0opp1rjni2o42tzdceyowwtah0xaaacea\f\9440-3272013.zip
2013-03-27 16:05 - 2013-03-27 16:05 - 0008601 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\oehzk0enegvxwlqm3o2v3ny0opp1rjni2o42tzdceyowwtah0xaaacea\f\9440FT-3272013.zip
2012-12-02 21:11 - 2012-12-02 21:11 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda
2012-12-02 21:11 - 2014-02-12 19:15 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda\group.dat
2012-12-02 21:11 - 2012-12-02 21:11 - 0000083 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda\id.dat
2012-12-02 21:11 - 2012-12-02 21:11 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda\f
2012-12-02 21:11 - 2012-12-02 21:11 - 0000088 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\psld1rq2evnjg2ki2ziatkouhebg2l4klzm3vvurqxwtu41pinaaahda\f\krb.txt
2014-01-04 09:42 - 2014-01-04 09:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\sbmzppp41ily0yu0tqzh0kk4juisekvofy5c1pyz303asfwdkzaaagaa
2014-01-04 09:42 - 2014-01-04 09:42 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\sbmzppp41ily0yu0tqzh0kk4juisekvofy5c1pyz303asfwdkzaaagaa\group.dat
2014-01-04 09:42 - 2014-01-04 09:42 - 0000070 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\sbmzppp41ily0yu0tqzh0kk4juisekvofy5c1pyz303asfwdkzaaagaa\id.dat
2014-01-04 09:42 - 2014-01-04 09:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\sbmzppp41ily0yu0tqzh0kk4juisekvofy5c1pyz303asfwdkzaaagaa\f
2012-04-23 00:29 - 2012-04-23 00:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa
2012-04-23 00:29 - 2012-04-29 20:19 - 0000056 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\group.dat
2012-04-23 00:29 - 2012-04-23 00:29 - 0000025 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\id.dat
2012-04-23 00:29 - 2012-04-23 00:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\f
2012-04-23 00:29 - 2012-04-23 00:29 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\f\SLPlayer
2012-04-23 00:29 - 2012-04-29 20:18 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\f\SLPlayer\applock
2012-04-23 00:29 - 2012-04-29 20:19 - 0000155 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\f\SLPlayer\bwdata.json
2012-04-23 00:29 - 2012-04-29 20:19 - 0003121 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\f\SLPlayer\sysData
2012-04-23 00:29 - 2012-04-29 20:19 - 0000047 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Silverlight\is\40cbehdo.4t0\fjsji1nu.3fp\1\s\u4nll4hghcen13r3jyqlcw1e0wapukkfqd1nyqcn5uz4dmrluzaaaefa\f\SLPlayer\userPrefs.json
2013-10-10 05:55 - 2013-10-10 05:55 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows
2012-02-12 22:31 - 2012-02-12 22:31 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live
2012-02-12 22:31 - 2012-02-12 22:31 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup
2012-02-12 22:31 - 2014-04-17 02:41 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\05r77wni
2013-07-05 23:43 - 2013-07-05 23:43 - 0660977 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\05r77wni\crt110_amd64.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0662150 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\05r77wni\jai03rel.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\05r77wni\yyyu3lzm.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\0tdbikrx
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\0tdbikrx\53z35kg8.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 2420493 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\0tdbikrx\PIMT.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0679219 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\0tdbikrx\pvkl07bv.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\15nrckn1
2013-07-05 23:43 - 2013-07-05 23:43 - 3656497 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\15nrckn1\6lad9iy1.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\15nrckn1\u8zkg92n.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 7714328 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\15nrckn1\wllogin_wlx-x64.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\29w1ta27
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\29w1ta27\77nym2p3.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0091227 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\29w1ta27\jjh7ae72.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 0280845 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\29w1ta27\WLXSuiteLang.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\5ymhax5q
2013-07-05 23:43 - 2013-07-05 23:43 - 0023938 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\5ymhax5q\5jl06l8h.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0162545 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\5ymhax5q\soxe.definitions.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\5ymhax5q\wmiqc640.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\6rew8lev
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\6rew8lev\6ampz6af.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 2010626 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\6rew8lev\mc84eae1.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 4152529 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\6rew8lev\PhotoLibraryLang.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\7dqntvgm
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\7dqntvgm\16r90rlc.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 0034745 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\7dqntvgm\extkfxvv.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0096995 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\7dqntvgm\WLMimeFilter-amd64.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\84ud9u6k
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\84ud9u6k\a01fwcb2.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 5024547 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\84ud9u6k\SkyDrive.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 5080856 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\84ud9u6k\uwdudeta.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\90rm5o0n
2013-07-05 23:44 - 2013-07-05 23:44 - 14136901 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\90rm5o0n\Mail.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\90rm5o0n\ua01yiy3.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 5303974 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\90rm5o0n\xgyb5n5m.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\cx618shh
2013-07-05 23:43 - 2013-07-05 23:43 - 1610805 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\cx618shh\86pzwvdf.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 5496324 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\cx618shh\PhotoCommon.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\cx618shh\z9jovzfm.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\da1crgcx
2013-07-05 23:44 - 2013-07-05 23:44 - 0227429 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\da1crgcx\8xjwx35q.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\da1crgcx\p006227k.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0848275 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\da1crgcx\WriterProd.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ede32wfm
2013-07-05 23:43 - 2013-07-05 23:43 - 4146377 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ede32wfm\Contacts.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 1026122 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ede32wfm\dt35m9bm.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ede32wfm\mg28bljc.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\emklhuaz
2013-07-05 23:43 - 2013-07-05 23:43 - 2867883 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\emklhuaz\85op8dti.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\emklhuaz\v5qg3oin.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 8583937 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\emklhuaz\WLXSuite.cab
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\f7k18t2s
2013-07-05 23:43 - 2013-07-05 23:43 - 3292259 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\f7k18t2s\1pruplih.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\f7k18t2s\f8pa3c1y.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 9609707 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\f7k18t2s\UXPlatform.cab
2013-07-05 23:42 - 2013-07-05 23:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\frrhqe3g
2013-07-05 23:42 - 2013-07-05 23:42 - 3090343 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\frrhqe3g\4ym6y0pq.tmp
2013-07-05 23:42 - 2013-07-05 23:42 - 3067242 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\frrhqe3g\D3DX11_43.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\frrhqe3g\h5qyurbv.exe
2012-02-12 22:33 - 2012-02-12 22:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\hi31ctwt
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\hygi42lz
2013-07-05 23:44 - 2013-07-05 23:44 - 5957224 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\hygi42lz\97skbt7t.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\hygi42lz\l1f4v8z1.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 6738246 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\hygi42lz\MessengerLang.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ine882l7
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ine882l7\rsmiht74.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0026249 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ine882l7\wmq01ha6.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 0049879 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ine882l7\WriterProdLang.cab
2013-07-05 23:42 - 2013-07-05 23:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\jqimh94h
2013-07-05 23:42 - 2013-07-05 23:42 - 3595256 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\jqimh94h\3glyak8t.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\jqimh94h\cx917lva.exe
2013-07-05 23:42 - 2013-07-05 23:42 - 3563871 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\jqimh94h\D3DX9.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\kpdfw3wh
2013-07-05 23:44 - 2013-07-05 23:44 - 1180136 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\kpdfw3wh\PhotoCommonLang.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0448441 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\kpdfw3wh\q1nblrxv.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\kpdfw3wh\qqspb6h8.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m42tyvqv
2013-07-05 23:44 - 2013-07-05 23:44 - 5043575 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m42tyvqv\kaqjwlt0.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 15855075 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m42tyvqv\MovieMaker.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m42tyvqv\x4o041lq.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m6j2ih8y
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m6j2ih8y\6eubsrz0.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 8952918 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m6j2ih8y\ivugcbgh.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 22813314 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\m6j2ih8y\Messenger.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\mhl9d4sr
2013-07-05 23:44 - 2013-07-05 23:44 - 0273671 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\mhl9d4sr\MovieMakerLang.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0078383 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\mhl9d4sr\tijwh2az.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\mhl9d4sr\y3vzug4n.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\npza9ke3
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\npza9ke3\gfm4er1v.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0026156 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\npza9ke3\msprup2z.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 0101087 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\npza9ke3\UXPlatformLang.cab
2013-07-05 23:42 - 2013-07-05 23:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ssfj6igk
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ssfj6igk\3h2wwptq.exe
2013-07-05 23:42 - 2013-07-05 23:42 - 0627289 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ssfj6igk\crt110.cab
2013-07-05 23:42 - 2013-07-05 23:42 - 0632176 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\ssfj6igk\hdvq5xca.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\sxef5qla
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\sxef5qla\2fke8rn2.exe
2013-07-05 23:43 - 2013-07-05 23:43 - 0153311 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\sxef5qla\iti97p88.tmp
2013-07-05 23:43 - 2013-07-05 23:43 - 0478010 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\sxef5qla\soxe.core.cab
2012-04-13 00:23 - 2012-04-13 00:23 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\us9aidmc
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\wp3k80c6
2013-07-05 23:44 - 2013-07-05 23:44 - 4142785 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\wp3k80c6\MailLang.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\wp3k80c6\mfzcq5qn.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 1402271 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\wp3k80c6\x1uzoytr.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xbyee04r
2013-07-05 23:44 - 2013-07-05 23:44 - 11813522 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xbyee04r\95v8j553.tmp
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xbyee04r\iwsi0ilq.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 35384981 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xbyee04r\PhotoLibrary.cab
2013-07-05 23:42 - 2013-07-05 23:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xwif31u1
2013-07-05 23:42 - 2013-07-05 23:42 - 0818482 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xwif31u1\1ss81nox.tmp
2013-07-05 23:42 - 2013-07-05 23:42 - 0821830 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xwif31u1\D3DX10_42.cab
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\xwif31u1\zd2c9ty7.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\yxu4juh0
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\yxu4juh0\hvbpdgh7.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 1501670 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\yxu4juh0\q883xlq9.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 3420179 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\yxu4juh0\WriterLang.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\z1h2d8em
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\z1h2d8em\nl980fbd.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 3690063 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\z1h2d8em\SpamFilterData.cab
2013-07-05 23:44 - 2013-07-05 23:44 - 3212497 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\z1h2d8em\wsph5lxc.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\zgib2d9j
2013-07-05 23:44 - 2013-07-05 23:35 - 0065896 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\zgib2d9j\gpj4ny2a.exe
2013-07-05 23:44 - 2013-07-05 23:44 - 2773015 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\zgib2d9j\o9nxf407.tmp
2013-07-05 23:44 - 2013-07-05 23:44 - 8567015 _____ () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows Live\Setup\tmp\zgib2d9j\Writer.cab
2013-10-10 05:55 - 2013-10-10 05:55 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows\AppCache
2013-10-10 05:55 - 2013-10-10 05:55 - 0000000 ___SH () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows\AppCache\container.dat
2013-10-10 05:55 - 2014-04-30 02:50 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows\AppCache\W83K98VF
2013-10-10 05:55 - 2013-10-10 05:55 - 0000000 ___SH () C:\Users\Alexey\AppData\LocalLow\Microsoft\Windows\AppCache\W83K98VF\container.dat
2012-04-23 00:29 - 2012-04-23 00:29 - 0000000 ___DL () C:\Users\Alexey\AppData\LocalLow\PlayReady
2012-04-23 00:29 - 2012-04-29 20:19 - 0528384 _____ () C:\Users\Alexey\AppData\LocalLow\PlayReady\mspr.hds
2012-04-29 20:19 - 2012-04-29 20:19 - 0000000 __SHD () C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache
2012-04-29 20:19 - 2012-04-29 20:19 - 0004116 ___SH () C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache\indiv01.bla
2012-04-29 20:19 - 2012-04-29 20:19 - 2962256 ___SH (Microsoft Corp.) C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache\indiv01.key
2012-04-29 20:19 - 2012-04-29 20:19 - 0000000 ___SH () C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache\indiv01.tmp
2012-04-29 20:19 - 2012-04-29 20:19 - 4041552 ___SH (Microsoft Corp.) C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache\indiv01_64.key
2012-04-29 20:19 - 2012-04-29 20:19 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache\S-1-5-21-280880736-1450447301-2209184806-1001
2012-04-29 20:19 - 2012-04-29 20:19 - 2962256 ___SH (Microsoft Corp.) C:\Users\Alexey\AppData\LocalLow\PlayReady\Cache\S-1-5-21-280880736-1450447301-2209184806-1001\MSPRindiv01.key
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun
2013-01-27 03:54 - 2014-08-20 08:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java
2013-07-09 19:57 - 2014-08-20 08:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\AU
2014-08-20 08:24 - 2014-08-20 08:24 - 0145408 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\AU\LZMA_EXE
2013-01-27 03:54 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment
2013-01-27 03:54 - 2014-09-16 08:06 - 0002171 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\deployment.properties
2013-01-27 03:54 - 2014-08-20 08:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache
2013-01-27 03:54 - 2014-08-20 08:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0
2014-08-20 08:33 - 2014-09-16 08:05 - 0000001 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\lastAccessed
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\10
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\11
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12
2013-01-27 03:54 - 2014-09-16 08:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13
2014-09-16 08:05 - 2014-09-16 08:05 - 0075733 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13\5a595b8d-748651c0-11.3.1.1-
2014-09-16 08:05 - 2014-09-16 08:05 - 0013957 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13\5a595b8d-748651c0-11.3.1.1-.idx
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\14
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\15
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\16
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\20
2013-01-27 03:54 - 2014-09-16 08:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\21
2014-09-16 08:05 - 2014-09-16 08:07 - 0000075 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\21\50c3d4d5-30787f84d85dc37da8516da8e177731d8cb2274076a7f154633e82a379823c50-6.0.lap
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\22
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\23
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\24
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\25
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\26
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\27
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\28
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29
2013-01-27 03:54 - 2014-09-16 08:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3
2014-09-16 08:05 - 2014-09-16 08:05 - 0000933 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3\3d9bb503-4e37270c
2014-09-16 08:05 - 2014-09-16 08:05 - 0000365 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3\3d9bb503-4e37270c.idx
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\30
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\31
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\32
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\33
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\34
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\35
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\38
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\39
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\4
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\40
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\41
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\42
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44
2013-01-27 03:54 - 2014-08-20 08:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45
2014-08-20 08:33 - 2014-08-20 08:33 - 0282048 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\7e60542d-3cbc0b47
2014-08-20 08:33 - 2014-09-16 08:05 - 0023438 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\7e60542d-3cbc0b47.idx
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\46
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\47
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\48
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\49
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\5
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\51
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\52
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\54
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\55
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\56
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57
2013-01-27 03:54 - 2014-08-20 08:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\58
2014-08-20 08:33 - 2014-08-20 08:33 - 0000848 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\58\31b19ba-681c77e8
2014-08-20 08:33 - 2014-08-20 08:33 - 0000415 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\58\31b19ba-681c77e8.idx
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\59
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\6
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\60
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\61
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\62
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\63
2013-01-27 03:54 - 2014-08-20 08:33 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7
2014-08-20 08:33 - 2014-08-20 08:33 - 0000848 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-44a23f8a
2014-08-20 08:33 - 2014-08-20 08:33 - 0000416 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-44a23f8a.idx
2014-08-20 08:33 - 2014-08-20 08:33 - 0000106 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-e2e4c8970372d2fb4193a7ef29d16f6c3f08527947fcb9208b3a0e48820369fd-6.0.lap
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\8
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\9
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\host
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\muffin
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\tmp
2014-08-20 08:33 - 2014-09-16 08:05 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\security
2014-08-20 08:33 - 2014-09-16 08:05 - 0008196 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\cache\security\blacklist.cache
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\ext
2013-01-27 03:54 - 2013-01-27 03:54 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\log
2013-01-27 03:54 - 2014-08-20 08:34 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security
2014-08-20 08:34 - 2014-09-16 08:06 - 0000044 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security\baseline.versions
2014-08-20 08:34 - 2014-09-16 08:06 - 0002837 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security\blacklist.dynamic
2014-08-20 08:34 - 2014-09-16 08:06 - 0000018 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security\blacklisted.certs
2014-08-20 08:34 - 2014-08-12 19:46 - 0007353 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security\securitypack.jar
2014-08-20 08:34 - 2014-09-16 08:06 - 0000001 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security\update.securitypack.timestamp
2014-01-25 18:40 - 2014-01-25 18:40 - 0000001 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\security\update.timestamp
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0
2013-07-20 17:53 - 2014-07-24 03:03 - 0000001 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\0
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\1
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\10
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\11
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\12
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\13
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\14
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\15
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\16
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\17
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\18
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\19
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\2
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\20
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\21
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\22
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\23
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\24
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\25
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\26
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\27
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\28
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\29
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\3
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\30
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\31
2013-07-20 17:53 - 2014-07-24 03:03 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32
2014-07-19 17:20 - 2014-07-19 17:20 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-257f83f7
2014-07-19 17:20 - 2014-08-16 17:20 - 0000463 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-257f83f7.idx
2014-07-19 17:20 - 2014-07-19 17:20 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-324285ff
2014-07-19 17:20 - 2014-07-19 17:20 - 0000463 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-324285ff.idx
2013-09-21 17:20 - 2013-09-21 17:20 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-657305f9
2013-09-21 17:20 - 2013-09-21 17:20 - 0000463 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-657305f9.idx
2014-07-24 03:03 - 2014-07-24 03:03 - 0000000 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-73654428
2014-07-24 03:03 - 2014-07-24 03:03 - 0000463 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-73654428.idx
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\33
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\34
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\35
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\36
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\37
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\38
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\39
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\40
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\41
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\43
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\44
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\45
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\46
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\47
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\48
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\49
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\5
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\50
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\51
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\52
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\53
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\54
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\55
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\56
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\57
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\58
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\59
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\6
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\60
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\61
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\62
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\63
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\7
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\8
2013-07-20 17:53 - 2013-07-20 17:53 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\9
2013-06-25 10:20 - 2013-06-25 10:20 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.7.0_25_x64
2013-06-25 10:20 - 2013-06-25 10:20 - 0489472 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.7.0_25_x64\jdk1.7.0_25.msi
2013-06-25 10:20 - 2013-06-25 10:20 - 30528342 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.7.0_25_x64\sj170250.cab
2013-06-25 10:20 - 2013-06-25 10:20 - 18502060 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.7.0_25_x64\ss170250.cab
2013-06-25 10:20 - 2013-06-25 10:20 - 45388672 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.7.0_25_x64\st170250.cab
2013-06-25 10:20 - 2013-06-25 10:20 - 0001640 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.7.0_25_x64\sz170250.cab
2013-07-09 20:03 - 2013-07-09 20:03 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.8.0
2013-07-09 20:03 - 2013-07-09 20:03 - 0492544 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.8.0\jdk1.8.0.msi
2013-07-09 20:03 - 2013-07-09 20:03 - 43646934 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.8.0\sj180000.cab
2013-07-09 20:03 - 2013-07-09 20:03 - 19131887 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.8.0\ss180000.cab
2013-07-09 20:03 - 2013-07-09 20:03 - 83705387 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.8.0\st180000.cab
2013-07-09 20:03 - 2013-07-09 20:03 - 0001445 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jdk1.8.0\sz180000.cab
2014-08-20 08:30 - 2014-09-16 08:04 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.7.0_67
2014-08-20 08:30 - 2014-09-16 08:04 - 0145408 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.7.0_67\lzma.exe
2013-06-25 09:59 - 2013-06-25 09:59 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.7.0_x64
2013-06-25 09:59 - 2013-06-25 09:59 - 18287634 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.7.0_x64\Data1.cab
2013-06-25 09:59 - 2013-06-25 09:59 - 0973312 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.7.0_x64\jre1.7.0.msi
2014-08-20 08:23 - 2014-08-20 08:30 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.8.0_20
2014-08-20 08:24 - 2014-08-20 08:24 - 0145408 _____ () C:\Users\Alexey\AppData\LocalLow\Sun\Java\jre1.8.0_20\LZMA_EXE
2012-02-16 04:37 - 2013-06-30 10:36 - 0000000 ___SD () C:\Users\Alexey\AppData\LocalLow\Temp
2013-06-30 10:36 - 2013-06-30 10:36 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Temp\Logs
2013-03-18 07:38 - 2013-03-18 07:38 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Temp\Microsoft
2013-03-18 07:38 - 2013-03-18 18:42 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\Temp\Microsoft\OPC
2013-09-20 09:56 - 2013-09-20 10:01 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\WebEx
2013-09-20 09:56 - 2013-09-20 09:56 - 0306704 _____ (Cisco WebEx LLC) C:\Users\Alexey\AppData\LocalLow\WebEx\ieatgpc.dll
2013-09-20 09:56 - 2013-09-20 10:01 - 0024262 _____ () C:\Users\Alexey\AppData\LocalLow\WebEx\webex.ini
2013-09-20 09:56 - 2013-09-20 09:56 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx
2013-09-20 09:56 - 2013-09-20 09:56 - 0000000 ____D () C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224
2013-09-20 09:56 - 2013-09-20 09:56 - 0082448 _____ (Cisco WebEx LLC) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\atgpcdec.dll
2013-09-20 09:56 - 2013-09-20 09:56 - 0588816 _____ (Cisco WebEx LLC) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\atgpcext.dll
2013-09-20 09:56 - 2013-09-20 09:56 - 0467472 _____ (Cisco WebEx LLC) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\atinst.exe
2013-09-20 09:56 - 2013-09-20 09:56 - 0107024 _____ (Cisco WebEx LLC) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\atmccli.dll
2013-09-20 09:56 - 2013-09-20 09:56 - 0715280 _____ (Cisco WebEx LLC) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\atmgr.exe
2013-09-20 09:56 - 2013-09-20 10:01 - 0017834 _____ () C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\gpc.php
2013-09-20 09:56 - 2013-09-20 09:56 - 0000511 _____ () C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\Microsoft.VC90.CRT.manifest
2013-09-20 09:56 - 2013-09-20 09:56 - 0568832 _____ (Microsoft Corporation) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\msvcp90.dll
2013-09-20 09:56 - 2013-09-20 09:56 - 0655872 _____ (Microsoft Corporation) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\msvcr90.dll
2013-09-20 09:56 - 2013-09-20 09:56 - 0254005 _____ (Microsoft Corporation) C:\Users\Alexey\AppData\LocalLow\WebEx\WebEx\1224\msvcrt.dll

====== End of Folder: ======



The system needed a reboot.

==== End of Fixlog ====

#9 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 01 November 2014 - 04:31 PM

Output of Step 2,Scan, FRST.txt:

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-11-2014
Ran by Alexey (administrator) on QOSMIO-X500 on 01-11-2014 17:10:30
Running from C:\Users\Alexey\Desktop
Loaded Profile: Alexey (Available profiles: Alexey & Administrator & Classic .NET AppPool & DemoWPSite1 & Site AJAX & TryEmail & AZWebWorks & AZLimitless & DefaultAppPool & Experiment & Ariphmetic Services)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\ramaint.exe
(Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\sqlservr.exe
(O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe
(Absolute Software Corp.) C:\Windows\SysWOW64\rpcnet.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\TECO\TecoService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler64.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfimon.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSENotify.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Simon Steele (Echo Software)) C:\Program Files (x86)\Programmer's Notepad\pn.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2010-10-18] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2010-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2010-07-09] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597416 2010-11-02] (TOSHIBA Corporation)
HKLM\...\Run: [ThpSrv] => C:\windows\system32\thpsrv /logon
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1519016 2010-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2387752 2010-09-30] (Synaptics Incorporated)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [508216 2009-07-28] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SAIICpl.exe [307768 2010-04-28] ()
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation)
HKLM\...\Run: [HDMICtrlMan] => C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [1037728 2010-07-21] (TOSHIBA Corporation.)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [915320 2010-05-10] (TOSHIBA Corporation)
HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [57928 2013-12-11] (LogMeIn, Inc.)
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1167360 2009-08-03] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2475384 2010-11-02] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [ToshibaServiceStation] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1295224 2010-07-01] (TOSHIBA Corporation)
HKLM-x32\...\Run: [ToshibaAppPlace] => C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe [552960 2010-09-23] (Toshiba)
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort11reminder] => C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe [328992 2007-08-31] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe [29984 2008-07-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [NortonOnlineBackupReminder] => C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe [3218792 2010-08-17] (Toshiba)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [83336 2009-07-22] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe [46368 2008-07-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-09-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840592 2014-09-04] (Adobe Systems Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [SkyDrive] => C:\Users\Alexey\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [277672 2014-09-25] (Microsoft Corporation)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-08-14] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-08-08] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [AppleIEDAV] => C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [1080104 2014-08-04] (Apple Inc.)
HKU\S-1-5-21-280880736-1450447301-2209184806-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
Startup: C:\Users\Alexey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
ShortcutTarget: OneNote 2007 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {164AAE4E-F799-4BA9-8403-6C723EB0DAEF} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF
SearchScopes: HKLM-x32 - {9AE9BE66-6CFA-4FB7-9231-31214A47CD9F} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF
SearchScopes: HKCU - {164AAE4E-F799-4BA9-8403-6C723EB0DAEF} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {9AE9BE66-6CFA-4FB7-9231-31214A47CD9F} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF_enUS470
SearchScopes: HKCU - {FEF02641-9483-4882-95E1-D3D1F7D3D3A6} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft Web Test Recorder 10.0 Helper -> {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} -> C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://akamaicdn.webex.com/client/WBXclient-T27L10NSP32_CP21-15858/webex/ieatgpc1.cab
Tcpip\Parameters: [DhcpNameServer] 172.21.23.1 172.21.23.62
Tcpip\..\Interfaces\{CD94FD2E-40AC-488B-AD1E-F17478803E49}: [NameServer] 172.21.23.62,151.198.0.39

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.0.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.20.2 -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files (x86)\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Alexey\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\Alexey\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-03-12]

Chrome:
=======
CHR Profile: C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-04]
CHR Extension: (Google Drive) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-06-04]
CHR Extension: (YouTube) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-04]
CHR Extension: (Google Search) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-04]
CHR Extension: (Google Wallet) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-04]
CHR Extension: (Gmail) - C:\Users\Alexey\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-04]
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Alexey\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-07-23]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ftpsvc; C:\Windows\system32\inetsrv\ftpsvc.dll [350720 2012-06-01] (Microsoft Corporation)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [376168 2014-10-25] (LogMeIn, Inc.)
R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226152 2014-10-25] (LogMeIn, Inc.)
R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2013-12-11] (LogMeIn, Inc.)
R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [84624 2013-06-10] (Microsoft Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
R2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [62379184 2014-07-10] (Microsoft Corporation)
R2 MSSQL$SQLS2008EX; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\sqlservr.exe [58387104 2014-07-12] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.6.22\ccSvcHst.exe [126392 2009-08-24] (Symantec Corporation)
S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [442536 2014-07-10] (Microsoft Corporation)
S4 SQLAgent$SQLS2008EX; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLS2008EX\MSSQL\Binn\SQLAGENT.EXE [441504 2014-07-12] (Microsoft Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S3 VsEtwService120; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-05] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
S3 BrYNSvc; "C:\Program Files (x86)\Browny02\BrYNSvc.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-12-11] (LogMeIn, Inc.)
S4 LMIRfsClientNP; No ImagePath
S3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-10-23] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
R3 O2SDGRDR; C:\Windows\System32\DRIVERS\o2sdgx64.sys [49568 2009-08-18] (O2Micro )
S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [322736 2014-07-10] (Microsoft Corporation)
S3 Tosrfcom; No ImagePath
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]
S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-13] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-01 17:11 - 2014-11-01 17:11 - 00000000 ____D () C:\Users\Default\AppData\Local\Google
2014-11-01 17:11 - 2014-11-01 17:11 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google
2014-11-01 17:10 - 2014-11-01 17:10 - 00024994 _____ () C:\Users\Alexey\Desktop\FRST.txt
2014-11-01 16:31 - 2014-11-01 16:31 - 00000000 ____D () C:\Users\Alexey\Desktop\FRST-OlderVersion
2014-10-31 19:36 - 2014-10-31 19:36 - 04184008 _____ (Kaspersky Lab ZAO) C:\Users\Alexey\Desktop\tdsskiller.exe
2014-10-31 19:19 - 2014-10-31 19:21 - 00068870 _____ () C:\Users\Alexey\Desktop\Addition.txt
2014-10-31 19:13 - 2014-10-31 19:21 - 00058998 _____ () C:\Users\Alexey\Desktop\FRST old.txt
2014-10-31 19:10 - 2014-11-01 17:10 - 00000000 ____D () C:\FRST
2014-10-31 19:06 - 2014-11-01 16:31 - 02114048 _____ (Farbar) C:\Users\Alexey\Desktop\FRST64.exe
2014-10-30 13:19 - 2014-10-30 13:20 - 00002092 _____ () C:\Users\Alexey\Downloads\Event_130859.ics
2014-10-28 15:48 - 2014-10-28 15:48 - 00036161 _____ () C:\ComboFix.txt
2014-10-28 07:59 - 2014-10-28 07:59 - 00001856 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-10-28 07:59 - 2014-10-28 07:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-10-28 07:59 - 2014-10-28 07:59 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-10-28 07:57 - 2014-10-28 07:57 - 00001794 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-10-28 07:57 - 2014-10-28 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-10-28 07:57 - 2014-10-28 07:57 - 00000000 ____D () C:\Program Files\iPod
2014-10-28 07:56 - 2014-10-28 07:57 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2014-10-28 07:56 - 2014-10-28 07:57 - 00000000 ____D () C:\Program Files\iTunes
2014-10-28 07:56 - 2014-10-28 07:57 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-10-25 14:02 - 2014-10-25 14:02 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-10-25 14:02 - 2014-10-25 14:02 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-23 20:28 - 2014-10-23 20:29 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-23 20:27 - 2014-10-23 20:27 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-23 20:27 - 2014-10-23 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-23 20:27 - 2014-10-23 20:27 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-23 20:27 - 2014-10-23 20:27 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-23 20:27 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2014-10-23 20:27 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2014-10-23 20:27 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-10-23 10:32 - 2014-10-28 15:57 - 00000000 ____D () C:\AdwCleaner
2014-10-23 08:55 - 2011-06-26 02:45 - 00256000 _____ () C:\windows\PEV.exe
2014-10-23 08:55 - 2010-11-07 13:20 - 00208896 _____ () C:\windows\MBR.exe
2014-10-23 08:55 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00098816 _____ () C:\windows\sed.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00080412 _____ () C:\windows\grep.exe
2014-10-23 08:55 - 2000-08-30 20:00 - 00068096 _____ () C:\windows\zip.exe
2014-10-23 08:54 - 2014-10-28 15:48 - 00000000 ____D () C:\Qoobox
2014-10-23 08:53 - 2014-10-23 10:22 - 00000000 ____D () C:\windows\erdnt
2014-10-23 04:56 - 2014-10-23 04:56 - 00000902 _____ () C:\Users\Alexey\Desktop\Procmon.exe - Shortcut.lnk
2014-10-23 03:29 - 2014-03-06 23:53 - 02510528 _____ (Sysinternals - www.sysinternals.com) C:\Users\Alexey\Downloads\Procmon.exe
2014-10-23 03:29 - 2011-11-28 10:46 - 00063582 _____ () C:\Users\Alexey\Downloads\procmon.chm
2014-10-23 03:29 - 2006-07-28 08:32 - 00007005 _____ () C:\Users\Alexey\Downloads\Eula.txt
2014-10-23 03:25 - 2014-10-23 03:39 - 00000060 _____ () C:\Users\Alexey\AppData\Roaming\mainhst.zgh
2014-10-23 03:25 - 2014-10-23 03:39 - 00000000 ____D () C:\Users\Alexey\AppData\Roaming\ZipGenius
2014-10-23 03:24 - 2014-10-23 03:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZipGenius 6
2014-10-23 03:23 - 2014-10-23 03:24 - 00000000 ____D () C:\Program Files (x86)\ZipGenius 6
2014-10-23 03:21 - 2014-10-23 03:22 - 08994263 _____ (The ZipGenius Team ) C:\Users\Alexey\Downloads\zg63std.exe
2014-10-23 03:01 - 2014-10-23 03:25 - 01121208 _____ () C:\Users\Alexey\Downloads\ProcessMonitor.zip
2014-10-22 13:28 - 2014-09-18 21:18 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 23631360 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 17484800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 13619200 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 11807232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 05829632 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 04201472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02796032 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-10-20 16:15 - 2014-10-20 16:15 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-20 16:15 - 2014-10-20 16:15 - 02309632 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02187264 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 02108416 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-20 16:15 - 2014-10-20 16:15 - 02017280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-10-20 16:15 - 2014-10-20 16:15 - 01810944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01190400 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00731136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00710656 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00678400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2014-10-20 16:15 - 2014-10-20 16:15 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2014-10-20 16:15 - 2014-10-20 16:15 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00595968 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00547328 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00446464 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00440320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-10-20 16:15 - 2014-10-20 16:15 - 00378552 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2014-10-20 16:15 - 2014-10-20 16:15 - 00331448 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00289280 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00243200 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2014-10-20 16:15 - 2014-10-20 16:15 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2014-10-20 16:15 - 2014-10-20 16:15 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2014-10-20 16:15 - 2014-10-20 16:15 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-10-20 16:15 - 2014-10-20 16:15 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-20 14:49 - 2014-11-01 16:57 - 00069792 _____ (Absolute Software Corp.) C:\windows\SysWOW64\rpcnet.dll
2014-10-20 14:49 - 2014-10-20 14:49 - 00069792 ____N (Absolute Software Corp.) C:\windows\SysWOW64\rpcnet.exe
2014-10-20 13:45 - 2014-10-20 13:56 - 00000134 _____ () C:\Users\Alexey\Desktop\Internet Explorer Troubleshooting.url
2014-10-20 12:47 - 2014-10-20 12:48 - 55915216 _____ (Microsoft Corporation) C:\Users\Alexey\Downloads\IE11-Windows6.1-x64-en-us.exe
2014-10-19 11:46 - 2014-10-19 15:58 - 00000000 ____D () C:\Program Files (x86)\SmartPCFixer
2014-10-19 11:44 - 2014-10-19 11:45 - 04874632 _____ (LionSea Software co., ltd ) C:\Users\Alexey\Downloads\setup (1).exe
2014-10-18 11:46 - 2014-06-26 22:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2014-10-18 11:46 - 2014-06-26 21:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2014-10-18 11:12 - 2014-09-17 22:00 - 03241472 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-18 11:11 - 2014-09-28 20:58 - 03198976 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-18 11:11 - 2014-09-17 21:32 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-10-18 11:11 - 2014-08-28 22:07 - 03179520 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2014-10-18 11:11 - 2014-08-01 07:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2014-10-18 11:11 - 2014-08-01 07:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-18 11:11 - 2014-07-16 22:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-18 11:11 - 2014-07-16 22:07 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-18 11:11 - 2014-07-16 21:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2014-10-18 11:11 - 2014-07-16 21:39 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-10-18 11:11 - 2014-07-16 21:39 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-10-18 11:11 - 2014-07-16 21:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-18 11:11 - 2014-07-16 21:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-18 11:11 - 2014-07-06 22:06 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-10-18 11:11 - 2014-07-06 22:06 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-10-18 11:11 - 2014-07-06 21:40 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-10-18 11:11 - 2014-07-06 21:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-10-18 11:11 - 2014-07-06 21:39 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-10-18 11:10 - 2014-10-09 22:05 - 00507392 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-18 11:10 - 2014-10-09 22:05 - 00276480 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-18 11:10 - 2014-10-09 22:00 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-18 11:10 - 2014-09-24 22:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2014-10-18 11:10 - 2014-09-24 21:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2014-10-18 11:10 - 2014-09-04 01:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-18 11:10 - 2014-09-04 01:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2014-10-18 11:10 - 2014-06-23 23:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-10-18 11:10 - 2014-06-23 22:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2014-10-18 11:10 - 2014-06-18 18:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-18 11:04 - 2014-09-09 18:11 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-10-18 11:04 - 2014-09-09 17:47 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-10-18 10:54 - 2014-09-04 22:11 - 06584320 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-18 10:54 - 2014-09-04 21:52 - 05703168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-10-18 10:18 - 2014-09-12 21:58 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-18 10:18 - 2014-09-12 21:40 - 00067072 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2014-10-02 14:23 - 2014-10-02 14:23 - 00094208 _____ (Apple Inc.) C:\windows\SysWOW64\QuickTimeVR.qtx
2014-10-02 14:23 - 2014-10-02 14:23 - 00069632 _____ (Apple Inc.) C:\windows\SysWOW64\QuickTime.qts

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-01 17:13 - 2014-06-04 13:48 - 00002194 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-11-01 17:11 - 2013-07-23 17:08 - 00000000 ___RD () C:\Users\Alexey\Google Drive
2014-11-01 17:11 - 2013-07-23 16:40 - 00002053 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2014-11-01 17:11 - 2013-07-23 16:40 - 00002051 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2014-11-01 17:11 - 2013-07-23 16:40 - 00002041 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2014-11-01 17:11 - 2013-07-23 16:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-11-01 17:08 - 2009-07-14 00:45 - 00018736 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-01 17:08 - 2009-07-14 00:45 - 00018736 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-01 17:05 - 2014-05-06 11:00 - 00000568 _____ () C:\windows\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001.job
2014-11-01 17:03 - 2009-07-14 01:13 - 01062080 _____ () C:\windows\system32\PerfStringBackup.INI
2014-11-01 17:01 - 2012-02-11 17:43 - 00000000 ____D () C:\Users\Alexey\AppData\Roaming\Skype
2014-11-01 17:00 - 2013-07-05 23:43 - 00000000 ___RD () C:\SkyDrive
2014-11-01 16:59 - 2013-07-07 23:27 - 00000000 ____D () C:\Scan
2014-11-01 16:58 - 2011-05-29 06:01 - 01992744 _____ () C:\windows\WindowsUpdate.log
2014-11-01 16:57 - 2014-07-04 12:49 - 00017920 _____ () C:\windows\system32\rpcnetp.exe
2014-11-01 16:57 - 2014-02-18 20:46 - 00001015 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Client.lnk
2014-11-01 16:57 - 2014-02-18 20:46 - 00000999 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk
2014-11-01 16:56 - 2009-07-14 01:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-11-01 16:56 - 2009-07-14 00:51 - 00071591 _____ () C:\windows\setupact.log
2014-11-01 16:54 - 2013-12-06 12:53 - 00000912 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA.job
2014-11-01 16:00 - 2013-12-26 08:20 - 00000000 ____D () C:\Users\Alexey\AppData\Local\17DBA987-726E-46E9-BFFF-294ED6904D3C.aplzod
2014-11-01 15:43 - 2012-02-12 13:07 - 00000000 ____D () C:\Users\Alexey\AppData\Local\CrashDumps
2014-11-01 14:49 - 2012-02-13 00:16 - 00000000 ____D () C:\MISC
2014-11-01 12:12 - 2012-03-05 00:57 - 00003942 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{1A93296C-8C18-4E32-B87F-4CA15A133247}
2014-11-01 00:07 - 2014-02-18 20:46 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-10-31 19:54 - 2013-12-06 12:53 - 00000860 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core.job
2014-10-30 07:25 - 2012-02-18 14:57 - 00275080 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-10-30 06:33 - 2013-10-10 11:42 - 00000000 ____D () C:\Users\Alexey\Documents\SQL Server Management Studio
2014-10-29 20:00 - 2014-05-06 11:00 - 00003602 _____ () C:\windows\System32\Tasks\G2MUpdateTask-S-1-5-21-280880736-1450447301-2209184806-1001
2014-10-28 17:02 - 2014-08-20 16:47 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Adobe
2014-10-28 15:58 - 2010-11-30 10:33 - 00550774 _____ () C:\windows\PFRO.log
2014-10-28 15:48 - 2014-06-09 08:50 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Apps\2.0
2014-10-28 15:41 - 2009-07-13 22:34 - 00000215 _____ () C:\windows\system.ini
2014-10-28 10:49 - 2013-10-02 08:03 - 00000000 ____D () C:\Users\Alexey\Documents\Visual Studio 2012
2014-10-28 07:57 - 2012-07-17 10:35 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-10-28 07:56 - 2014-09-16 07:15 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-10-27 12:46 - 2013-10-02 07:00 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-27 08:13 - 2012-03-19 23:21 - 01078074 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-10-27 07:25 - 2012-02-15 10:45 - 00000000 ____D () C:\Users\Alexey\AppData\Local\WeatherBug
2014-10-25 21:05 - 2014-02-18 20:45 - 00000000 ____D () C:\Program Files (x86)\LogMeIn
2014-10-25 21:04 - 2014-02-18 20:46 - 00107392 _____ (LogMeIn, Inc.) C:\windows\system32\LMIRfsClientNP.dll
2014-10-25 21:04 - 2014-02-18 20:46 - 00092520 _____ (LogMeIn, Inc.) C:\windows\system32\LMIinit.dll
2014-10-25 21:04 - 2014-02-18 20:46 - 00035688 _____ (LogMeIn, Inc.) C:\windows\system32\LMIport.dll
2014-10-24 11:05 - 2013-06-25 10:53 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Eclipse
2014-10-23 11:44 - 2010-11-30 10:31 - 00003894 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-23 11:44 - 2010-11-30 10:31 - 00003642 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-23 11:44 - 2010-11-30 10:31 - 00000898 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-23 11:44 - 2010-11-30 10:31 - 00000894 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-23 10:40 - 2013-06-30 10:36 - 00000000 ____D () C:\Users\Alexey\AppData\Local\CRE
2014-10-23 10:27 - 2009-07-13 23:20 - 00000000 __RHD () C:\Users\Default
2014-10-23 05:28 - 2012-06-21 01:53 - 00000000 ____D () C:\Users\Alexey\Tracing
2014-10-23 01:40 - 2013-10-02 06:15 - 00000000 ____D () C:\Professional
2014-10-20 20:36 - 2013-10-07 16:37 - 00000000 ____D () C:\PROJ
2014-10-20 18:47 - 2012-02-11 14:26 - 00001424 _____ () C:\Users\Alexey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-10-20 18:29 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-10-20 16:18 - 2013-11-19 12:11 - 00042316 _____ () C:\windows\IE11_main.log
2014-10-20 14:46 - 2014-07-04 12:50 - 00017920 _____ () C:\windows\SysWOW64\rpcnetp.dll
2014-10-20 14:45 - 2014-07-04 12:49 - 00017920 _____ () C:\windows\SysWOW64\rpcnetp.exe
2014-10-20 13:00 - 2014-01-14 00:09 - 00000000 ____D () C:\Users\Alexey\Documents\Visual Studio 2013
2014-10-19 19:49 - 2013-12-06 12:53 - 00003884 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001UA
2014-10-19 19:49 - 2013-12-06 12:53 - 00003488 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-280880736-1450447301-2209184806-1001Core
2014-10-19 11:02 - 2014-04-02 09:30 - 00000000 __SHD () C:\Users\Public\DRM
2014-10-18 13:40 - 2013-04-13 22:15 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00002465 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00002453 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00002037 _____ () C:\Users\Public\Desktop\Adobe Acrobat X Pro.lnk
2014-10-18 13:13 - 2012-03-12 17:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2
2014-10-18 12:53 - 2009-07-14 00:45 - 00472400 _____ () C:\windows\system32\FNTCACHE.DAT
2014-10-18 12:49 - 2014-04-30 03:46 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-10-18 12:42 - 2012-02-14 02:29 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-18 12:04 - 2012-03-19 23:21 - 00002155 _____ () C:\windows\epplauncher.mif
2014-10-18 12:04 - 2012-03-19 23:21 - 00002128 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2014-10-18 12:03 - 2012-07-01 22:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-10-18 12:03 - 2012-03-19 23:21 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-10-18 11:57 - 2009-07-13 23:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-10-18 11:45 - 2013-10-10 04:58 - 00000000 ____D () C:\windows\system32\MRT
2014-10-18 05:28 - 2012-02-11 17:43 - 00000000 ____D () C:\ProgramData\Skype
2014-10-09 19:09 - 2014-08-14 09:06 - 01048576 _____ () C:\Users\Alexey\Subscribers_log.ldf
2014-10-09 19:09 - 2014-06-20 00:02 - 01048576 _____ () C:\Users\Alexey\Millennium_log.ldf
2014-10-09 19:04 - 2014-02-23 11:12 - 03211264 _____ () C:\Users\Alexey\ContosoUniversity1.mdf
2014-10-09 19:04 - 2014-02-23 11:12 - 00802816 _____ () C:\Users\Alexey\ContosoUniversity1_log.ldf
2014-10-09 05:42 - 2014-07-18 02:44 - 03211264 _____ () C:\Users\Alexey\TestData.mdf
2014-10-09 05:42 - 2014-07-18 02:44 - 00802816 _____ () C:\Users\Alexey\TestData_log.ldf
2014-10-09 05:42 - 2014-02-27 10:56 - 03211264 _____ () C:\Users\Alexey\ContosoUniversity2.mdf
2014-10-09 05:42 - 2014-02-27 10:56 - 00802816 _____ () C:\Users\Alexey\ContosoUniversity2_log.ldf
2014-10-09 05:42 - 2014-02-22 02:26 - 03211264 _____ () C:\Users\Alexey\DevelopmentStorageDb22.mdf
2014-10-09 05:42 - 2014-02-22 02:26 - 00802816 _____ () C:\Users\Alexey\DevelopmentStorageDb22_log.ldf
2014-10-09 05:42 - 2013-11-20 16:28 - 03211264 _____ () C:\Users\Alexey\aspnet-WingtipToys.mdf
2014-10-09 05:42 - 2013-11-20 16:28 - 00802816 _____ () C:\Users\Alexey\aspnet-WingtipToys_log.ldf
2014-10-09 05:42 - 2013-10-30 11:15 - 03211264 _____ () C:\Users\Alexey\DevelopmentStorageDb21.mdf
2014-10-09 05:42 - 2013-10-30 11:15 - 00802816 _____ () C:\Users\Alexey\DevelopmentStorageDb21_log.ldf
2014-10-06 15:35 - 2014-08-14 09:06 - 04194304 _____ () C:\Users\Alexey\Subscribers.mdf
2014-10-06 13:48 - 2012-07-17 10:35 - 00000000 ____D () C:\Users\Alexey\AppData\Local\Apple
2014-10-03 10:02 - 2012-07-01 22:18 - 103265616 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe

Files to move or delete:
====================
C:\Users\Alexey\Microsoft.Practices.EnterpriseLibrary.SemanticLogging.Etw.dll
C:\Users\Alexey\SemanticLogging-svc.exe

Some content of TEMP:
====================
C:\Users\Alexey\AppData\Local\Temp\Quarantine.exe
C:\Users\Alexey\AppData\Local\Temp\sqlite3.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-10-16 05:50

==================== End Of Log ============================

 

Thanks for help!



#10 deeprybka

deeprybka

  • Malware Response Team
  • 5,198 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:10:55 PM

Posted 01 November 2014 - 04:35 PM

Very good!

Step 1

frst.pngfrstsearch.png
  • Start FRST with Administrator privileges.
  • Write the following text into the Search textbox:
AppIntegrator64.exe
  • Click on the Search Files button.
  • When finished, a log file (Search.txt) pops up and is saved to the same location the tool was run from.
  • Please copy and paste its contents in your next reply.

regards,
deeprybka
:busy:
Neminem laede, immo omnes, quantum potes, iuva. Arthur Schopenhauer
 
unite_blue.png
asap.png

#11 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 01 November 2014 - 04:55 PM

Search.txt:

 

Farbar Recovery Scan Tool (x64) Version: 01-11-2014
Ran by Alexey at 2014-11-01 17:40:06
Running from C:\Users\Alexey\Desktop
Boot Mode: Normal

================== Search Files: "AppIntegrator64.exe" =============

====== End Of Search ======



#12 deeprybka

deeprybka

  • Malware Response Team
  • 5,198 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:10:55 PM

Posted 01 November 2014 - 04:59 PM

OK...

Let's do a final check up:

Step 1


Please downloadesetlogo.pngOnline Scanner and save it to your Desktop.
  • Disable the realtime-protection of your antivirus and anti-malware programs because they might interfere with the scan.
  • Start installer.pngwith administartor privileges.
  • Select the option Yes, I accept the Terms of Use and click on Start.
  • Choose the following settings:
settings.png
  • Click on Start. The virus signature database will begin to download. This may take some time.
  • When completed the Online Scan will begin automatically.
    Note: This scan might take a long time! Please be patient.
  • When completed select Uninstall application on close if you so wish, but make sure you copy the logfile first!
  • Now click on Finish
  • A log filelog.pngis created at logpath.png
    Copy and paste the content of this log file in your next reply.
Note: Do not forget to re-enable your antivirus application after running the above scan!
eset.gif

lesestoff.png

Can you please tell me which problems still persist now?
How is the computer running

regards,
deeprybka
:busy:
Neminem laede, immo omnes, quantum potes, iuva. Arthur Schopenhauer
 
unite_blue.png
asap.png

#13 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 02 November 2014 - 04:54 AM

ESET log.txt:

 

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=9e1b6e046bb29e41abe389f72baf3b71
# engine=20888
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2014-11-02 09:36:39
# local_time=2014-11-02 04:36:39 (-0500, Eastern Standard Time)
# country="United States"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='Microsoft Security Essentials'
# compatibility_mode=5895 16777213 100 100 351200 108994209 0 0
# scanned=619954
# found=25
# cleaned=0
# scan_time=41139
sh=66AD723C9BADCE35ECCA5AFD43F1EE3F9B066895 ft=1 fh=4191a8ed44061a22 vn="a variant of Win32/Amonetize.AJ potentially unwanted application" ac=I fn="C:\Downloads\Books\Architecture And Principles Of Systems Engineering.rar__3516_i381232612_il2975294.exe"
sh=8B45D98B3D2AD42ACD832B4C4EC83D9E51CECDBE ft=1 fh=c47817d02d04bbc3 vn="a variant of Win32/Toolbar.Widgi.B potentially unwanted application" ac=I fn="C:\Downloads\YT Downloader\YTDSetup.exe"
sh=EE2D8A0C16CB4F60E07AD30BC8F4AF2D25E4FF62 ft=1 fh=c2a60ef126908cf5 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe"
sh=24A108C48173FDD9962F7CC3D4DB4B852D864838 ft=1 fh=0501d0dc4c9a869f vn="a variant of Win32/Systweak.N potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll"
sh=915239C2678EFCE5C2E45012595BEA0C050864B4 ft=1 fh=9ca6c4d86ffea4d8 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe"
sh=67A75BAA7A5BBB2EEEBB99D490F00F82D0BB1E09 ft=1 fh=5d5a0ac2ab2c0a85 vn="a variant of Win32/Systweak potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe"
sh=2C09414F7BCF16F3C9A358B5CCD4492EF7EEF08E ft=1 fh=5545a1a02bc092d6 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe"
sh=322DCE4CCA5EB266FFEDD900C6D628769AD18300 ft=1 fh=b3d66e50f9e4f6b1 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe"
sh=B0D08C7B0F371E20AD613B68FC9CCC745B10F081 ft=1 fh=3e78872355df9a3f vn="a variant of Win32/Toolbar.Widgi.B potentially unwanted application" ac=I fn="C:\ProgramData\YTD YouTube Downloader & Converter\ytd_installer.exe"
sh=F205AF462E34D6980666FA8D8CCA69AE4650BDA2 ft=1 fh=b87f4d75e98f69a0 vn="a variant of Win32/Toolbar.Conduit.AA potentially unwanted application" ac=I fn="C:\Qoobox\Quarantine\C\Users\Alexey\AppData\Local\TBHostSupport\TBHostSupport.dll.vir"
sh=7A2589020E1532105EA0B3845BAEDA0271AA2F42 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\albkjjcpjnleafcacecgjoaddehbojko\1.26.20_0\extensionData\plugins\91.js"
sh=7FE8D5A128ADB5FD2A64F0007BDE50CAC7A47D2A ft=1 fh=87c2ef1442b79444 vn="a variant of Win32/Toolbar.Conduit.AH potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\nativeMessaging\TBMessagingHost.exe"
sh=C78286C00360EAADA991A3898674CF2B795AC982 ft=1 fh=60907a1d271b3b67 vn="a variant of Win32/Toolbar.Conduit.AH potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\plugins\ConduitChromeApiPlugin.dll"
sh=F205AF462E34D6980666FA8D8CCA69AE4650BDA2 ft=1 fh=b87f4d75e98f69a0 vn="a variant of Win32/Toolbar.Conduit.AA potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\TBHostSupport\TBHostSupport.dll"
sh=7AE4172C2A322C957F20F234A49EDF34C530FA63 ft=1 fh=3cd7e1f40ac6b811 vn="a variant of Win32/Conduit.SearchProtect.P potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\APISupport\APISupport.dll"
sh=41F23E459EFF023AB1B26586463360E45528ABC7 ft=1 fh=5a93daf7e0cc20e5 vn="a variant of Win32/Toolbar.Conduit.AH potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\nativeMessaging\TBMessagingHost.exe"
sh=2D929F9DB0C906C528F80C17D3D9E7EA26338C25 ft=1 fh=57063ffa5e9ef49d vn="a variant of Win32/SoftPulse.O potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\349MSCGR\Player[1].exe"
sh=700FE988DB1F6C30569C08E1B6377CA2A8925516 ft=1 fh=0970744d849d6395 vn="a variant of Win32/ExpressDownloader.H potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OKJB8JXB\Architecture_And_Principles_Of_Systems_Engineering_downloader[1].exe"
sh=9B75624241E5B59AD9297E807E93FDF82B031F17 ft=1 fh=e0ca0a37c4baf528 vn="a variant of Win32/Conduit.SearchProtect.P potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.dll"
sh=3C3DE0043F71DACE7A818B75928139C37ACCC298 ft=1 fh=e96bdcc53d95792b vn="a variant of Win32/Conduit.SearchProtect.P potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.old"
sh=3A782B84BC7D1D8528E71B2232F8FE49803EC957 ft=1 fh=132cd345fbfd626a vn="a variant of Win32/Conduit.SearchProtect.H potentially unwanted application" ac=I fn="C:\Users\Alexey\AppData\Local\TB\APISupport\MiniSP_1.0.2.133\MiniSP.dll"
sh=75034A7E5477AF8FCB4FD6AE7ECB38375AB86216 ft=1 fh=fdf8653c2360199c vn="Win32/Packed.ScrambleWrapper.M potentially unwanted application" ac=I fn="C:\Users\Alexey\Desktop\6082tmp\setup.exe"
sh=B0D08C7B0F371E20AD613B68FC9CCC745B10F081 ft=1 fh=3e78872355df9a3f vn="a variant of Win32/Toolbar.Widgi.B potentially unwanted application" ac=I fn="C:\Users\All Users\YTD YouTube Downloader & Converter\ytd_installer.exe"
sh=5638CFEBC6EAC7C0352DF1D1D3635278E47ECE12 ft=0 fh=0000000000000000 vn="a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application" ac=I fn="C:\Windows\Installer\1111ce.msi"
sh=AD3E1B178659BB626319667FEC5323FAFCC9C607 ft=0 fh=0000000000000000 vn="a variant of Win32/Systweak.L potentially unwanted application" ac=I fn="C:\Windows\Installer\1807c331.msi"

 

>>>Computer runs faster.  I will let you know whether problems persist after rebooting and testing it<<<<<

 

Thank you so much!
 



#14 deeprybka

deeprybka

  • Malware Response Team
  • 5,198 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:10:55 PM

Posted 02 November 2014 - 05:13 AM

Hi,

Step 1

frst.pngfrstfix.png

Press thew7.png + R on your keyboard at the same time. Type notepad and click OK.
  • Copy the entire content of the codebox below and paste into the notepad document:
    
    C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe
    C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll
    C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe
    C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe
    C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe
    C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe
    C:\ProgramData\YTD YouTube Downloader & Converter\ytd_installer.exe
    C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\albkjjcpjnleafcacecgjoaddehbojko\1.26.20_0\extensionData\plugins\91.js
    C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\nativeMessaging\TBMessagingHost.exe
    C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\plugins\ConduitChromeApiPlugin.dll
    C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\TBHostSupport\TBHostSupport.dll
    C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\APISupport\APISupport.dll
    C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\nativeMessaging\TBMessagingHost.exe
    C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\349MSCGR\Player[1].exe
    C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OKJB8JXB\Architecture_And_Principles_Of_Systems_Engineering_downloader[1].exe
    C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.dll
    C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.old
    C:\Users\Alexey\AppData\Local\TB\APISupport\MiniSP_1.0.2.133\MiniSP.dll
    C:\Users\Alexey\Desktop\6082tmp\setup.exe
    EmptyTemp:
    
  • Click File, Save As and type fixlist.txt as the File Name.
Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!
  • Right-click on FRST.gif icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop, called Fixlog.txt.
Please post it to your reply.

After the Reboot:

Step 2

frst.pngfrstscan.png

Start FRST with administator privileges.
  • Press the Scan button.
  • When finished, FRST will produce a log (FRST.txt) in the same directory the tool was run from.
    Please copy and paste the log in your next reply.

regards,
deeprybka
:busy:
Neminem laede, immo omnes, quantum potes, iuva. Arthur Schopenhauer
 
unite_blue.png
asap.png

#15 Novichok

Novichok
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 02 November 2014 - 06:24 AM

Hi!

Step 1, Fixlog.txt:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-11-2014
Ran by Alexey at 2014-11-02 05:37:59 Run:2
Running from C:\Users\Alexey\Desktop
Loaded Profile: Alexey (Available profiles: Alexey & Administrator & Classic .NET AppPool & DemoWPSite1 & Site AJAX & TryEmail & AZWebWorks & AZLimitless & DefaultAppPool & Experiment & Ariphmetic Services)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe
C:\ProgramData\YTD YouTube Downloader & Converter\ytd_installer.exe
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\albkjjcpjnleafcacecgjoaddehbojko\1.26.20_0\extensionData\plugins\91.js
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\nativeMessaging\TBMessagingHost.exe
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\plugins\ConduitChromeApiPlugin.dll
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\TBHostSupport\TBHostSupport.dll
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\APISupport\APISupport.dll
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\nativeMessaging\TBMessagingHost.exe
C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\349MSCGR\Player[1].exe
C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OKJB8JXB\Architecture_And_Principles_Of_Systems_Engineering_downloader[1].exe
C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.dll
C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.old
C:\Users\Alexey\AppData\Local\TB\APISupport\MiniSP_1.0.2.133\MiniSP.dll
C:\Users\Alexey\Desktop\6082tmp\setup.exe
EmptyTemp:
*****************

C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe => Moved successfully.
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll => Moved successfully.
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe => Moved successfully.
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe => Moved successfully.
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe => Moved successfully.
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe => Moved successfully.
C:\ProgramData\YTD YouTube Downloader & Converter\ytd_installer.exe => Moved successfully.
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\albkjjcpjnleafcacecgjoaddehbojko\1.26.20_0\extensionData\plugins\91.js => Moved successfully.
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\nativeMessaging\TBMessagingHost.exe => Moved successfully.
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\plugins\ConduitChromeApiPlugin.dll => Moved successfully.
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.22.5.510_0\TBHostSupport\TBHostSupport.dll => Moved successfully.
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\APISupport\APISupport.dll => Moved successfully.
C:\Users\Alexey\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\gipmblamjgodbimgeafaiegdpfbaeihe\10.26.2.507_0\nativeMessaging\TBMessagingHost.exe => Moved successfully.
C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\349MSCGR\Player[1].exe => Moved successfully.
C:\Users\Alexey\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OKJB8JXB\Architecture_And_Principles_Of_Systems_Engineering_downloader[1].exe => Moved successfully.
C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.dll => Moved successfully.
C:\Users\Alexey\AppData\Local\TB\APISupport\APISupport.old => Moved successfully.
C:\Users\Alexey\AppData\Local\TB\APISupport\MiniSP_1.0.2.133\MiniSP.dll => Moved successfully.
C:\Users\Alexey\Desktop\6082tmp\setup.exe => Moved successfully.
EmptyTemp: => Removed 5.9 GB temporary data.


The system needed a reboot.

==== End of Fixlog ====




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users