Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infected with somthing really bad! IAT/EAT hooks ROOT KIT On a Windows 8.1 OS


  • This topic is locked This topic is locked
45 replies to this topic

#1 BadVirus88

BadVirus88

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 05 March 2015 - 01:31 AM

A few days ago I logged into my email, the site did not finish loading, it was missing buttons and graphics as if the page had only loaded half way. I tried relogging into my email but every time I did I woud have the same results. I then noticed that my peerblocker was flashing everytime I tried to log in. eNom Incorporated Demand Media showed up on the peerblock range simutaneously as I tried to log into my Email or refresh the page. I shut off peerblocker and everything was ok, I knew somthing was not right because this never happened before. I started noticing my peerblocker flashing even when I was not doing anything on the computer, several companies kept flashing on the range while idle or when I browsing the web. Limelight Networks, Savvis, AppNexus Inc, A.C Neilsen Company, there were others but these were the most frequent. I tried several many different anti malware software but none of them were able to find anything! Rogue Killer found some stuff, I deleted it but it came back a few hours later, so I reformatted my computer to kill whatever it was, everything was normal for about 3 days, now it's back to the same way it was before. Rogue killer failed to run a few times, I would get a blue screen error and I would have to restart, I figure whatever it is, it tried to evade it. I finnaly got Rogue Killer to run and found a few things. I have attached the requested file, including what Rogue Killer found. Thank you so much for your help, and good luck!

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-03-2015 01
Ran by Goymane (administrator) on BRAIL1 on 04-03-2015 21:53:18
Running from C:\Users\Goymane\Downloads
Loaded Profiles: Goymane (Available profiles: Goymane)
Platform: Windows 8 (X64) OS Language: English (United States)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
() C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) D:\Programs\Malwarebytes Anti-Malware\mbamscheduler.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\RUBotted\RUBotSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{11F6707B-88F9-4D2D-A138-27B657BAE4D2}\AiChargerDT.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\AI Suite II\Lighting\Lighting.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe
() C:\Program Files\ASUS\System Level Up Driver\SysLevelUp.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\AI Suite II\Ai Charger II\AsChargerIITray.exe
(Malwarebytes Corporation) D:\Programs\Malwarebytes Anti-Malware\mbam.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc.) C:\Program Files\ASUS\System Level Up Driver\AsSysLevelUpSrc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Valve Corporation) D:\Programs\Steam\Steam.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\APRP\aprp.exe
(Tnlenterprises LLC) C:\Tnlenterprises\SentryVision\ControlPanel.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe
(Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\RUBotted\RUBottedGUI.exe
(Vimisoft Studio) C:\Program Files (x86)\IM Magician\vicamon.exe
(Vimisoft Studio) C:\Program Files (x86)\IM Magician\vmonproc.exe
(Valve Corporation) D:\Programs\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Mozilla Corporation) D:\Programs\MozillaFirefox\firefox.exe
(PeerBlock, LLC) D:\Programs\PeerBlock\peerblock.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE
(Mozilla Corporation) D:\Programs\MozillaFirefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188040 2013-04-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1278024 2013-03-08] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [286192 2013-01-31] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-18] (ASUS Cloud Corporation)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-08-29] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [78352 2012-05-22] (cyberlink)
HKLM-x32\...\Run: [Trend Micro RUBotted V2.0 Beta] => C:\Program Files (x86)\Trend Micro\RUBotted\RUBottedGUI.exe [1102872 2013-07-25] (Trend Micro Inc.)
HKLM-x32\...\Run: [IMMON] => C:\Program Files (x86)\IM Magician\Vicamon.exe [143360 2010-09-28] (Vimisoft Studio)
HKLM-x32\...\Run: [IMMONSUPPORT] => "C:\Program Files (x86)\IM Magician\vmonproc.exe" /cls=IMMAGICIAN_CAMERA_MONITOR_I /exe=Vicamon.exe
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\Run: [PeerBlock] => D:\Programs\PeerBlock\peerblock.exe [2513992 2014-01-14] (PeerBlock, LLC)
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\Run: [Steam] => D:\Programs\Steam\steam.exe [2874048 2015-02-18] (Valve Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\startup helper.lnk
ShortcutTarget: startup helper.lnk -> C:\Tnlenterprises\SentryVision\ControlPanel.exe (Tnlenterprises LLC)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\S-1-5-21-2399496502-2792710567-3845128958-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll (Microsoft Corporation.)

FireFox:
========
FF ProfilePath: C:\Users\Goymane\AppData\Roaming\Mozilla\Firefox\Profiles\m8f3opnv.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Auto Refresh - C:\Users\Goymane\AppData\Roaming\Mozilla\Firefox\Profiles\m8f3opnv.default\Extensions\autorefresh@plugin.xpi [2015-03-03]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
StartMenuInternet: FIREFOX.EXE - D:\Programs\MozillaFirefox\firefox.exe

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-16] (ASUSTeK Computer Inc.)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-18] () [File not signed]
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243728 2012-05-23] (CyberLink)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-02-05] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-01-31] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-02-15] (Intel Corporation)
R2 MBAMScheduler; D:\Programs\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S2 MBAMService; D:\Programs\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-02-05] (NVIDIA Corporation)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-02-28] (Riverbed Technology, Inc.)
R2 RUBotSrv; C:\Program Files (x86)\Trend Micro\RUBotted\RUBotSrv.exe [443416 2013-07-25] (Trend Micro Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16032 2014-09-21] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d63x64.sys [468752 2013-02-26] (Intel Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-04] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-02-28] (Riverbed Technology, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-02-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-02-05] (NVIDIA Corporation)
R3 pbfilter; D:\Programs\PeerBlock\pbfilter.sys [22600 2014-01-14] ()

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-04 21:53 - 2015-03-04 21:53 - 00015457 _____ () C:\Users\Goymane\Downloads\FRST.txt
2015-03-04 21:51 - 2015-03-04 21:53 - 00000000 ____D () C:\FRST
2015-03-04 21:51 - 2015-03-04 21:51 - 02092544 _____ (Farbar) C:\Users\Goymane\Downloads\FRST64.exe
2015-03-04 21:49 - 2015-03-04 21:49 - 00007584 _____ () C:\Users\Goymane\Desktop\RKreport_SCN_03042015_213759.log
2015-03-04 21:30 - 2015-03-04 21:30 - 00322808 _____ () C:\WINDOWS\Minidump\030415-8562-01.dmp
2015-03-04 21:17 - 2015-03-04 21:17 - 00361712 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-04 21:16 - 2015-03-04 21:16 - 00001812 _____ () C:\Users\Public\Desktop\IM Magician.lnk
2015-03-04 21:16 - 2015-03-04 21:16 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Vimisoft Studio
2015-03-04 21:16 - 2015-03-04 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4Tech IM Magician
2015-03-04 21:16 - 2015-03-04 21:16 - 00000000 ____D () C:\Program Files (x86)\Vimicro Corporation
2015-03-04 21:16 - 2015-03-04 21:16 - 00000000 ____D () C:\Program Files (x86)\IM Magician
2015-03-04 21:16 - 2010-09-28 11:59 - 00450560 _____ (FotoFan) C:\WINDOWS\SysWOW64\newlistview2.dll
2015-03-04 21:16 - 2010-09-28 11:56 - 00077824 _____ (FotoFan Studio) C:\WINDOWS\SysWOW64\vgf.dll
2015-03-04 21:16 - 2008-01-29 19:00 - 00004608 ___SH () C:\WINDOWS\Thumbs.db
2015-03-04 21:15 - 2015-03-04 21:15 - 00000000 ____D () C:\Users\Goymane\Downloads\A4_IM_Magician
2015-03-04 21:15 - 2015-03-04 21:15 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\InstallShield
2015-03-04 21:13 - 2015-03-04 21:15 - 32648651 _____ () C:\Users\Goymane\Downloads\A4_IM_Magician.zip
2015-03-04 20:41 - 2015-03-04 20:41 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
2015-03-04 20:33 - 2015-03-04 20:33 - 00000363 _____ () C:\Users\Goymane\Desktop\Control Panel - Shortcut.lnk
2015-03-04 20:23 - 2015-03-04 20:23 - 00001702 _____ () C:\Users\Goymane\Desktop\Sentry Vision.lnk
2015-03-04 20:23 - 2015-03-04 20:23 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SentryVision
2015-03-04 20:23 - 2015-03-04 20:23 - 00000000 ____D () C:\Tnlenterprises
2015-03-04 20:21 - 2015-03-04 20:22 - 14578076 _____ () C:\Users\Goymane\Downloads\sentry_setup.exe
2015-03-04 19:04 - 2015-03-04 21:43 - 01250334 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-04 18:16 - 2015-03-04 18:16 - 00000000 ____D () C:\ProgramData\Trend Micro
2015-03-04 18:01 - 2015-03-04 18:04 - 101000060 _____ () C:\Users\Goymane\Downloads\WbcamSoftware_0915.zip
2015-03-04 17:46 - 2015-03-04 17:46 - 06229392 _____ (Trend Micro, Inc. ) C:\Users\Goymane\Downloads\RUBottedSetup.exe
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trend Micro RUBotted
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\Program Files (x86)\WinPcap
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\Program Files (x86)\Trend Micro
2015-03-04 15:59 - 2015-03-04 15:59 - 00000355 _____ () C:\Users\Goymane\Desktop\Computer - Shortcut.lnk
2015-03-04 12:14 - 2015-01-29 00:30 - 00593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoUpdate.exe
2015-03-04 12:14 - 2015-01-29 00:30 - 00467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationUI.exe
2015-03-04 12:14 - 2015-01-29 00:30 - 00011056 _____ () C:\WINDOWS\system32\AutoconfigV2.cab
2015-03-04 12:14 - 2015-01-29 00:05 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-04 12:14 - 2015-01-29 00:05 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-04 12:14 - 2015-01-28 22:19 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-03-04 12:14 - 2015-01-28 22:19 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-04 12:14 - 2015-01-22 21:50 - 03959296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-04 12:14 - 2015-01-22 20:27 - 02864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-04 12:14 - 2014-10-21 17:01 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-03-04 12:14 - 2014-10-21 17:00 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-03-04 12:13 - 2014-07-11 20:41 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRUM.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYAK.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAT.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU1.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBASH.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRUM.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYAK.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAT.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU1.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU.DLL
2015-03-04 12:13 - 2014-07-11 20:15 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBASH.DLL
2015-03-04 12:13 - 2014-07-08 14:33 - 00181248 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2015-03-04 12:13 - 2014-07-08 14:32 - 01539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2015-03-04 12:13 - 2014-07-08 14:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2015-03-04 12:13 - 2014-07-08 14:30 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2015-03-04 12:13 - 2014-07-06 21:52 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-03-04 12:13 - 2014-07-06 21:52 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-03-04 12:13 - 2014-07-04 02:52 - 00328000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2015-03-04 12:13 - 2014-07-02 17:59 - 01824784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-04 12:13 - 2014-07-02 16:30 - 01408952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-03-04 12:13 - 2014-06-27 23:01 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-03-04 12:13 - 2014-06-27 22:56 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-03-04 12:13 - 2014-06-17 15:27 - 02032640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2015-03-04 12:13 - 2014-06-17 15:23 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2015-03-04 12:13 - 2014-06-11 06:47 - 02842112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-03-04 12:13 - 2014-06-10 20:40 - 02620928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2015-03-04 12:13 - 2014-06-10 14:44 - 01403896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-03-04 12:13 - 2014-02-04 02:57 - 01271664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-03-04 11:24 - 2015-03-04 11:25 - 18730584 _____ () C:\Users\Goymane\Downloads\RogueKillerX64.exe
2015-03-04 11:10 - 2015-03-04 21:30 - 00000000 ____D () C:\WINDOWS\Minidump
2015-03-03 23:14 - 2014-10-08 20:00 - 01519104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-03-03 23:14 - 2014-10-08 20:00 - 01484288 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-03-03 23:14 - 2014-10-08 20:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2015-03-03 23:14 - 2014-10-08 19:59 - 01195520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2015-03-03 23:14 - 2014-10-08 19:59 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2015-03-03 22:58 - 2015-01-08 22:43 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2015-03-03 22:58 - 2015-01-08 21:03 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2015-03-03 22:58 - 2015-01-08 15:52 - 00478296 _____ () C:\WINDOWS\SysWOW64\locale.nls
2015-03-03 22:58 - 2015-01-08 15:52 - 00478296 _____ () C:\WINDOWS\system32\locale.nls
2015-03-03 22:56 - 2015-03-03 22:57 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-03 22:56 - 2015-01-29 17:49 - 116773704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-03 22:55 - 2014-07-15 14:51 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2015-03-03 22:41 - 2014-06-10 14:44 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-03-03 22:41 - 2014-06-10 14:43 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-03-03 22:38 - 2015-01-08 20:33 - 04061696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-03 22:38 - 2014-07-31 15:40 - 01287680 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-03-03 22:38 - 2014-02-03 15:56 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-03-03 22:38 - 2014-02-03 15:56 - 00278872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2015-03-03 22:38 - 2014-01-30 16:48 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2015-03-03 22:38 - 2014-01-30 16:06 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-03-03 22:38 - 2014-01-26 19:39 - 01939288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-03-03 22:38 - 2014-01-15 15:42 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2015-03-03 22:38 - 2014-01-02 15:35 - 00365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2015-03-03 22:38 - 2014-01-02 15:32 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2015-03-03 22:38 - 2013-06-16 14:41 - 00997632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-03 22:38 - 2013-06-01 03:34 - 02391280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-03 22:38 - 2013-06-01 02:24 - 02106176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-03-03 22:38 - 2013-06-01 01:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2015-03-03 22:38 - 2013-06-01 01:24 - 01453568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-03-03 22:38 - 2013-06-01 01:24 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-03-03 22:38 - 2013-06-01 01:24 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2015-03-03 22:38 - 2013-06-01 01:23 - 01842176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-03-03 22:38 - 2013-06-01 01:23 - 00680960 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2015-03-03 22:38 - 2013-06-01 01:22 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2015-03-03 22:38 - 2013-06-01 01:22 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-03-03 22:38 - 2013-06-01 01:21 - 00729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2015-03-03 22:38 - 2013-06-01 01:21 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 02219520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 01527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 00583168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2015-03-03 22:38 - 2013-06-01 01:19 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2015-03-03 22:38 - 2013-05-31 19:08 - 00037632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthAvrcpTg.sys
2015-03-03 22:38 - 2013-05-24 14:09 - 01217352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-03-03 22:38 - 2013-05-24 14:09 - 01093904 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-03-03 22:36 - 2015-01-15 03:44 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-03-03 22:36 - 2015-01-15 03:44 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-03 22:36 - 2015-01-15 03:43 - 01282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-03-03 22:36 - 2015-01-15 02:00 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2015-03-03 22:36 - 2015-01-15 02:00 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-03-03 22:36 - 2015-01-15 01:38 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2015-03-03 22:36 - 2015-01-15 01:09 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2015-03-03 22:36 - 2015-01-14 20:08 - 00568656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-03-03 22:36 - 2014-09-02 18:48 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2015-03-03 22:36 - 2014-09-02 18:21 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2015-03-03 22:36 - 2014-06-12 17:57 - 01453400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-03-03 22:36 - 2014-06-12 17:55 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2015-03-03 22:35 - 2013-08-15 21:41 - 00058200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-03-03 22:35 - 2013-08-15 21:39 - 02371728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-03-03 22:35 - 2013-08-15 21:22 - 04917760 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2015-03-03 22:35 - 2013-08-15 21:21 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2015-03-03 22:35 - 2013-08-15 14:43 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2015-03-03 22:35 - 2013-08-15 14:43 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2015-03-03 22:35 - 2013-08-15 14:43 - 00083968 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll
2015-03-03 22:35 - 2013-08-15 14:42 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2015-03-03 22:35 - 2013-08-15 14:42 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2015-03-03 22:34 - 2014-11-14 22:06 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-03-03 22:34 - 2014-11-14 21:13 - 03286016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 01623552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-03-03 22:34 - 2014-11-14 21:12 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-03-03 22:34 - 2014-11-14 19:54 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-03-03 22:34 - 2014-11-14 19:53 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-03-03 22:34 - 2014-11-14 19:53 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-03-03 22:34 - 2014-11-14 19:53 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-03-03 22:34 - 2014-11-04 22:40 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-03 22:34 - 2014-11-04 22:39 - 01024512 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-03 22:34 - 2014-10-31 22:28 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-03-03 22:34 - 2014-10-29 06:21 - 00499008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-03-03 22:34 - 2014-08-27 22:01 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-03-03 22:34 - 2013-07-05 16:15 - 00652288 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-03-03 22:34 - 2013-07-03 18:13 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-03-03 22:32 - 2014-03-24 15:42 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2015-03-03 22:32 - 2014-03-24 14:56 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2015-03-03 22:32 - 2013-10-18 21:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2015-03-03 22:32 - 2013-10-18 20:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2015-03-03 22:32 - 2013-08-09 21:21 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-03-03 22:32 - 2013-08-09 21:21 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncInfo.dll
2015-03-03 22:32 - 2013-08-09 19:58 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-03-03 22:32 - 2013-08-02 22:40 - 01374208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2015-03-03 22:32 - 2013-08-02 22:40 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll
2015-03-03 22:32 - 2013-08-02 22:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx
2015-03-03 22:32 - 2013-08-02 21:14 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx
2015-03-03 22:32 - 2013-08-02 21:13 - 01245696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2015-03-03 22:32 - 2013-08-02 21:13 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll
2015-03-03 22:32 - 2013-08-01 22:28 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2015-03-03 22:32 - 2013-08-01 21:08 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2015-03-03 22:32 - 2013-07-24 15:10 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2015-03-03 22:32 - 2013-07-24 15:06 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2015-03-03 22:32 - 2013-04-09 15:17 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-03 22:32 - 2013-04-09 14:29 - 00893952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 02237952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 01409536 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-03 22:30 - 2015-01-11 22:48 - 19291136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-03 22:30 - 2015-01-11 22:48 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 15403008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 02655744 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-03-03 22:30 - 2015-01-11 22:46 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-03 22:30 - 2015-01-11 21:07 - 01762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-03 22:30 - 2015-01-11 21:07 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-03-03 22:30 - 2015-01-11 21:07 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 14373376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 13761024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-03-03 22:30 - 2015-01-11 20:16 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-03-03 22:30 - 2015-01-11 19:46 - 00361984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-03-03 22:30 - 2014-12-07 22:48 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-03-03 22:30 - 2014-12-07 21:04 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2015-03-03 22:30 - 2014-11-21 00:38 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-03 22:30 - 2014-11-21 00:37 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2015-03-03 22:30 - 2014-11-20 23:17 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2015-03-03 22:30 - 2014-11-20 23:17 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-03-03 22:30 - 2014-11-20 23:17 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 01441280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-03-03 22:30 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2015-03-03 22:30 - 2014-11-20 23:00 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-03-03 22:30 - 2014-11-20 22:54 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-03-03 22:30 - 2014-11-20 20:30 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-03-03 22:30 - 2014-10-10 23:44 - 19764736 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-03 22:30 - 2014-10-10 21:57 - 17562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-03 22:30 - 2014-08-09 00:30 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2015-03-03 22:30 - 2014-08-09 00:29 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssdisai.dll
2015-03-03 22:30 - 2014-07-23 19:33 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2015-03-03 22:30 - 2014-07-23 19:33 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-03-03 22:30 - 2013-07-05 14:02 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbcir.sys
2015-03-03 22:30 - 2013-06-21 21:45 - 00785624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys
2015-03-03 22:30 - 2013-06-21 21:45 - 00054488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys
2015-03-03 22:29 - 2014-12-18 22:48 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-03-03 22:29 - 2014-10-08 19:59 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-03-03 22:29 - 2014-10-08 19:59 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-03-03 22:29 - 2014-10-08 19:58 - 00458240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2015-03-03 22:29 - 2014-09-21 21:38 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-03-03 22:29 - 2014-09-21 19:56 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-03-03 22:29 - 2014-09-12 22:24 - 02233152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-03-03 22:29 - 2014-09-02 18:48 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2015-03-03 22:29 - 2014-09-02 18:22 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2015-03-03 22:29 - 2014-08-28 20:17 - 02043392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2015-03-03 22:29 - 2014-08-28 20:17 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2015-03-03 22:29 - 2014-08-28 20:04 - 02837504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-03-03 22:29 - 2014-08-28 20:04 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2015-03-03 22:29 - 2014-08-27 22:04 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2015-03-03 22:29 - 2014-08-27 22:04 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSTIFF.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXST30.dll
2015-03-03 22:29 - 2014-07-24 05:12 - 00328512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2015-03-03 22:29 - 2014-07-06 21:53 - 01125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2015-03-03 22:29 - 2014-07-06 21:52 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2015-03-03 22:29 - 2014-07-06 21:52 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2015-03-03 22:29 - 2014-07-06 21:51 - 05982208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-03-03 22:29 - 2014-07-06 20:01 - 01049600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2015-03-03 22:29 - 2014-07-06 20:01 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2015-03-03 22:29 - 2014-07-06 20:00 - 05095424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-03-03 22:29 - 2014-07-06 19:59 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aaclient.dll
2015-03-03 22:29 - 2014-06-04 17:12 - 00678600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll
2015-03-03 22:29 - 2014-06-03 15:12 - 00536776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll
2015-03-03 22:29 - 2013-09-13 14:36 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ubpm.dll
2015-03-03 22:29 - 2013-09-13 14:33 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-03 22:29 - 2013-08-29 21:43 - 00061784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2015-03-03 22:29 - 2013-08-29 21:20 - 01173504 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-03-03 22:29 - 2013-08-29 15:48 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-03-03 22:29 - 2013-08-20 22:39 - 00465240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2015-03-03 22:29 - 2013-08-09 22:30 - 00151896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2015-03-03 22:29 - 2013-07-24 15:10 - 10799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-03-03 22:29 - 2013-07-24 15:07 - 13661696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-03 22:29 - 2013-07-01 14:14 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys
2015-03-03 22:28 - 2014-10-10 23:45 - 10115072 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-03-03 22:28 - 2014-10-10 23:44 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-03-03 22:28 - 2014-10-10 23:44 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-03-03 22:28 - 2014-10-10 23:43 - 02307072 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-03 22:28 - 2014-10-10 21:58 - 08858624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-03-03 22:28 - 2014-10-10 21:57 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-03-03 22:28 - 2014-10-10 21:57 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2015-03-03 22:28 - 2014-10-10 21:56 - 02037760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-03-03 22:28 - 2014-06-17 15:27 - 01440256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2015-03-03 22:28 - 2014-06-17 15:24 - 01557504 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2015-03-03 22:28 - 2014-06-02 14:33 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-03-03 22:28 - 2013-10-04 22:10 - 00285016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2015-03-03 22:28 - 2013-08-29 21:19 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2015-03-03 22:28 - 2013-08-29 21:18 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2015-03-03 22:28 - 2013-08-29 15:48 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2015-03-03 22:28 - 2013-08-29 15:47 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2015-03-03 22:28 - 2013-07-09 00:04 - 00120144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2015-03-03 22:28 - 2013-07-08 19:57 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2015-03-03 22:28 - 2013-07-08 14:46 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-03-03 22:28 - 2013-07-08 14:46 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-03-03 22:28 - 2013-07-08 14:46 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanadvui.dll
2015-03-03 22:28 - 2013-07-08 14:45 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2015-03-03 22:28 - 2013-07-02 16:23 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-03-03 22:28 - 2013-07-02 16:22 - 02839552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-03 22:28 - 2013-07-02 16:11 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-03-03 22:28 - 2013-07-02 16:10 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-03-03 22:28 - 2013-06-30 14:30 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\openfiles.exe
2015-03-03 22:28 - 2013-06-30 14:29 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\openfiles.exe
2015-03-03 22:28 - 2013-06-28 22:15 - 00195416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-03-03 22:28 - 2013-06-28 22:15 - 00125784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2015-03-03 22:28 - 2013-06-25 19:01 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2015-03-03 22:28 - 2013-06-25 18:59 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2015-03-03 22:28 - 2013-06-24 14:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-03-03 22:28 - 2013-06-18 21:36 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2015-03-03 22:28 - 2013-06-18 21:36 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2015-03-03 22:28 - 2013-06-18 14:38 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
2015-03-03 22:28 - 2013-06-18 14:38 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2015-03-03 22:28 - 2013-06-11 15:43 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2015-03-03 22:28 - 2013-06-11 15:26 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-03-03 22:28 - 2013-06-06 00:03 - 00119040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2015-03-03 22:27 - 2015-01-11 22:49 - 01627648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-03 22:27 - 2015-01-11 21:07 - 01338880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-03-03 22:27 - 2014-12-10 22:51 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-03-03 22:27 - 2014-10-10 23:44 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-03 22:27 - 2014-09-24 15:29 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-03-03 22:27 - 2014-09-24 15:29 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2015-03-03 22:27 - 2014-09-24 15:01 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-03 22:27 - 2014-09-24 15:01 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-03-03 22:27 - 2014-09-21 21:53 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-03 22:27 - 2014-08-26 14:08 - 00270024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-03 22:27 - 2014-07-24 05:50 - 00447296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-03-03 22:27 - 2014-07-16 15:28 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sscore.dll
2015-03-03 22:27 - 2014-07-16 14:59 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2015-03-03 22:27 - 2014-07-16 14:59 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll
2015-03-03 22:27 - 2014-07-11 22:45 - 01549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2015-03-03 22:27 - 2014-07-11 20:36 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2015-03-03 22:27 - 2014-07-11 20:36 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-03-03 22:27 - 2014-07-11 20:34 - 00404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-03-03 22:27 - 2014-07-11 20:34 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2015-03-03 22:27 - 2014-06-27 22:57 - 01341952 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-03-03 22:27 - 2014-06-27 18:23 - 01126400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-03-03 22:27 - 2014-05-02 19:34 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-03 22:27 - 2014-04-29 14:32 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2015-03-03 22:27 - 2014-04-29 14:32 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
2015-03-03 22:27 - 2014-01-30 16:48 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-03 22:27 - 2013-11-19 16:15 - 03842560 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-03-03 22:27 - 2013-11-19 15:57 - 03288576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-03-03 22:27 - 2013-07-19 14:13 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-03-03 22:27 - 2013-07-19 14:13 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-03-03 22:27 - 2013-07-01 17:41 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-03-03 22:27 - 2013-07-01 17:41 - 00213336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS
2015-03-03 22:27 - 2013-06-30 17:42 - 00623448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-03-03 22:27 - 2013-06-30 17:42 - 00498008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys
2015-03-03 22:27 - 2013-06-30 17:42 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys
2015-03-03 22:27 - 2013-06-30 17:42 - 00021848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
2015-03-03 22:27 - 2013-06-28 19:07 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
2015-03-03 22:27 - 2013-06-28 19:06 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2015-03-03 22:27 - 2013-04-11 14:30 - 01421312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-03-03 22:27 - 2013-04-11 14:22 - 01838080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-03-03 22:26 - 2014-12-18 20:35 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-03-03 22:26 - 2014-12-18 00:51 - 00096576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-03-03 22:26 - 2014-12-17 22:52 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-03-03 22:26 - 2014-12-17 22:51 - 01160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-03-03 22:26 - 2014-12-17 22:50 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-03-03 22:26 - 2014-12-17 22:20 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-03-03 22:26 - 2014-12-05 23:53 - 00458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-03-03 22:26 - 2014-12-05 23:53 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-03-03 22:26 - 2014-12-05 23:52 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-03-03 22:26 - 2014-12-05 23:52 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-03-03 22:26 - 2014-12-05 23:52 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2015-03-03 22:26 - 2014-12-05 23:51 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-03-03 22:26 - 2014-12-05 23:51 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-03-03 22:26 - 2014-12-05 23:50 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-03-03 22:26 - 2014-12-05 22:10 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-03-03 22:26 - 2014-12-05 22:10 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-03-03 22:26 - 2014-12-05 22:09 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-03-03 22:26 - 2014-12-05 22:09 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2015-03-03 22:26 - 2014-11-25 22:43 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-03-03 22:26 - 2014-11-25 20:50 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2015-03-03 22:26 - 2014-10-02 17:21 - 00522728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2015-03-03 22:26 - 2014-10-02 14:29 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-03-03 22:26 - 2014-06-12 15:34 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-03-03 22:26 - 2014-06-12 15:29 - 02146304 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-03-03 22:26 - 2014-06-06 06:06 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2015-03-03 22:26 - 2014-06-06 02:17 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2015-03-03 22:26 - 2014-06-05 09:56 - 00112984 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-03-03 22:26 - 2014-05-29 14:24 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-03-03 22:26 - 2014-03-10 19:25 - 00100184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2015-03-03 22:26 - 2014-03-10 16:41 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2015-03-03 22:26 - 2014-03-10 16:41 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dimsroam.dll
2015-03-03 22:26 - 2014-03-10 16:39 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2015-03-03 22:26 - 2014-03-10 16:38 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2015-03-03 22:26 - 2014-03-09 19:05 - 00668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2015-03-03 22:26 - 2014-03-09 17:27 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2015-03-03 22:26 - 2013-10-30 21:56 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2015-03-03 22:26 - 2013-10-30 21:56 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2015-03-03 22:26 - 2013-10-30 20:01 - 00550400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2015-03-03 22:26 - 2013-10-30 19:42 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2015-03-03 22:26 - 2013-10-13 12:49 - 00100696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\disk.sys
2015-03-03 22:26 - 2013-10-10 01:32 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2015-03-03 22:26 - 2013-10-10 01:30 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2015-03-03 22:26 - 2013-10-10 01:30 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2015-03-03 22:26 - 2013-10-10 01:24 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2015-03-03 22:26 - 2013-10-10 01:23 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2015-03-03 22:26 - 2013-10-10 01:22 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2015-03-03 22:26 - 2013-10-10 01:22 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2015-03-03 22:26 - 2013-08-26 21:21 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2015-03-03 22:26 - 2013-08-26 21:19 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2015-03-03 22:26 - 2013-08-26 14:29 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2015-03-03 22:26 - 2013-08-26 14:28 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2015-03-03 22:26 - 2013-08-22 23:22 - 02062848 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-03-03 22:26 - 2013-08-22 17:44 - 01711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-03-03 22:26 - 2013-07-12 22:18 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-03-03 22:26 - 2013-07-12 22:16 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2015-03-03 22:26 - 2013-07-12 22:15 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2015-03-03 22:26 - 2013-07-12 22:15 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2015-03-03 22:26 - 2013-07-12 20:24 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-03-03 22:26 - 2013-07-12 20:23 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2015-03-03 22:26 - 2013-07-12 20:23 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2015-03-03 22:26 - 2013-07-08 22:18 - 00439488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2015-03-03 22:26 - 2013-07-08 20:25 - 00385768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2015-03-03 22:26 - 2013-06-10 11:15 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-03 22:26 - 2013-06-10 11:10 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2015-03-03 22:26 - 2013-05-26 15:17 - 00035328 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-03-03 22:26 - 2013-05-26 14:59 - 00046080 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-03 22:26 - 2013-05-24 19:15 - 00362496 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-03 22:26 - 2013-05-24 18:32 - 00300032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-03-03 22:26 - 2012-10-23 19:25 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2015-03-03 22:26 - 2012-10-23 18:48 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2015-03-03 22:25 - 2014-12-08 15:14 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-03 22:25 - 2014-08-21 15:56 - 01418752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-03-03 22:25 - 2014-08-21 15:27 - 01845760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-03-03 22:25 - 2014-07-15 15:03 - 01300992 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-03-03 22:25 - 2014-07-11 18:36 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-03-03 22:25 - 2013-12-04 15:43 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2015-03-03 22:25 - 2013-12-04 15:37 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2015-03-03 22:25 - 2013-11-22 22:43 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-03 22:25 - 2013-11-22 21:05 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-03-03 22:24 - 2015-01-15 13:45 - 06973248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-03 22:24 - 2014-11-08 03:21 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-03-03 22:24 - 2014-11-07 22:56 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-03-03 22:24 - 2014-10-11 00:35 - 00171840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-03-03 22:24 - 2014-10-10 21:41 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2015-03-03 22:24 - 2014-10-10 21:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2015-03-03 22:24 - 2014-05-29 15:02 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-03-03 22:24 - 2014-04-12 01:10 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-03-03 22:24 - 2014-04-12 01:09 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2015-03-03 22:24 - 2014-04-12 01:09 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2015-03-03 22:24 - 2014-04-12 01:08 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-03-03 22:24 - 2014-04-12 01:07 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2015-03-03 22:24 - 2014-04-11 23:23 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-03-03 22:24 - 2014-04-11 23:23 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2015-03-03 22:24 - 2014-04-11 23:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2015-03-03 22:24 - 2014-04-11 23:22 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2015-03-03 22:24 - 2014-04-11 22:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\workerdd.dll
2015-03-03 22:22 - 2014-10-23 04:47 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2015-03-03 22:22 - 2014-10-23 03:04 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2015-03-03 22:21 - 2014-06-19 15:35 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-03-03 22:21 - 2014-06-19 14:24 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-03-03 22:20 - 2014-11-08 03:22 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-03-03 22:20 - 2014-11-07 22:57 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-03-03 22:18 - 2014-03-01 01:47 - 01258496 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-03-03 22:18 - 2014-03-01 01:47 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2015-03-03 22:18 - 2014-03-01 00:07 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2015-03-03 22:18 - 2014-02-28 22:59 - 00974848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2015-03-03 22:18 - 2014-02-14 20:15 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2015-03-03 22:18 - 2013-11-25 15:17 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2015-03-03 22:18 - 2013-06-28 19:08 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2015-03-03 22:17 - 2013-09-27 19:35 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2015-03-03 22:16 - 2014-05-28 20:04 - 00094552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-03-03 22:12 - 2014-10-29 23:20 - 01890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2015-03-03 22:12 - 2014-10-29 21:22 - 01569792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2015-03-03 22:12 - 2013-10-31 21:38 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2015-03-03 22:12 - 2013-10-31 19:49 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2015-03-03 20:54 - 2015-03-03 20:54 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Macromedia
2015-03-03 20:54 - 2015-03-03 20:54 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Macromedia
2015-03-03 20:33 - 2015-03-04 21:07 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-03 20:33 - 2015-03-03 20:33 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-03-03 20:32 - 2015-03-03 20:34 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Adobe
2015-03-03 17:47 - 2015-03-03 17:47 - 00000210 _____ () C:\Users\Goymane\Desktop\Toy Soldiers.url
2015-03-03 17:11 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2015-03-03 17:11 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2015-03-03 17:11 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2015-03-03 17:11 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2015-03-03 17:11 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2015-03-03 17:11 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2015-03-03 17:11 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2015-03-03 17:11 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2015-03-03 17:11 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2015-03-03 17:11 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2015-03-03 17:11 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2015-03-03 17:11 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2015-03-03 17:11 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2015-03-03 17:10 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2015-03-03 17:10 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2015-03-03 17:10 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2015-03-03 17:10 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2015-03-03 17:10 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2015-03-03 17:10 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2015-03-03 17:10 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2015-03-03 17:10 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2015-03-03 17:10 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2015-03-03 17:10 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2015-03-03 17:10 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2015-03-03 17:10 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2015-03-03 17:10 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2015-03-03 17:10 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2015-03-03 17:10 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2015-03-03 17:10 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2015-03-03 17:10 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2015-03-03 17:10 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2015-03-03 17:10 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2015-03-03 17:10 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2015-03-03 17:10 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2015-03-03 17:10 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2015-03-03 17:10 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2015-03-03 17:10 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2015-03-03 17:10 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2015-03-03 17:10 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2015-03-03 17:10 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2015-03-03 17:10 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2015-03-03 17:10 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2015-03-03 17:10 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2015-03-03 17:10 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2015-03-03 17:10 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2015-03-03 17:10 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2015-03-03 17:10 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2015-03-03 17:10 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2015-03-03 17:10 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2015-03-03 17:10 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2015-03-03 17:10 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2015-03-03 17:10 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2015-03-03 17:10 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2015-03-03 17:10 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2015-03-03 17:10 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2015-03-03 17:10 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2015-03-03 17:10 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2015-03-03 17:10 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2015-03-03 17:10 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2015-03-03 17:10 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2015-03-03 17:10 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2015-03-03 17:10 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2015-03-03 17:10 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2015-03-03 17:10 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2015-03-03 17:10 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2015-03-03 17:10 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2015-03-03 17:10 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2015-03-03 17:10 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2015-03-03 17:10 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2015-03-03 17:10 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2015-03-03 17:10 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2015-03-03 17:10 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2015-03-03 17:10 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2015-03-03 17:10 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2015-03-03 17:10 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2015-03-03 17:10 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2015-03-03 17:10 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2015-03-03 17:10 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2015-03-03 17:10 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2015-03-03 17:02 - 2015-03-03 17:03 - 00000000 ____D () C:\Users\Goymane\AppData\Local\NVIDIA
2015-03-03 17:02 - 2015-03-03 17:02 - 00001358 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-03-03 17:02 - 2015-03-03 17:02 - 00000000 ____D () C:\Users\Goymane\AppData\Local\NVIDIA Corporation
2015-03-03 17:02 - 2015-03-03 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-03-03 17:02 - 2015-03-03 17:02 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2015-03-03 17:02 - 2015-02-05 13:01 - 01756424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2015-03-03 17:02 - 2015-02-05 13:01 - 01514528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2015-03-03 17:02 - 2015-02-05 13:01 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2015-03-03 17:02 - 2015-02-05 13:01 - 01278920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2015-03-03 17:02 - 2015-02-05 09:57 - 00621384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-03-03 17:02 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2015-03-03 17:02 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2015-03-03 17:02 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 32106640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 25460880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 24768144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 20466496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 17253848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 13294528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 13208200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 10773704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 10713256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 10284872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-03-03 17:00 - 2015-02-05 13:01 - 03610768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 03299512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 03247248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 01895240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434752.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 01557648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434752.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00995248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00969872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00943760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00929936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00908104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00877816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00496272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00399504 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00390472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00353224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00345744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00305136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00195728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2015-03-03 17:00 - 2015-02-05 13:01 - 00177624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00164752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00038032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2015-03-03 17:00 - 2015-02-05 13:01 - 00035472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00032400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00030536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2015-03-03 16:51 - 2015-03-03 16:53 - 309136440 _____ (NVIDIA Corporation) C:\Users\Goymane\Downloads\347.52-desktop-win8-win7-winvista-64bit-international-whql.exe
2015-03-03 16:42 - 2015-03-03 17:51 - 00000000 ____D () C:\Users\Goymane\Documents\ManiaPlanet
2015-03-03 16:42 - 2015-03-03 17:51 - 00000000 ____D () C:\ProgramData\ManiaPlanet
2015-03-03 16:42 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2015-03-03 14:59 - 2015-03-03 14:59 - 00000798 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ImageReady 7.0.lnk
2015-03-03 14:59 - 2015-03-03 14:59 - 00000793 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 7.0.lnk
2015-03-03 14:59 - 1998-11-05 10:08 - 00087392 ____N (Twain Working Group) C:\WINDOWS\twain.dll
2015-03-03 14:58 - 2013-08-15 21:21 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-03-03 14:58 - 2013-08-15 21:21 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-03-03 14:58 - 2013-08-15 14:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-03-03 14:58 - 1998-10-29 16:45 - 00306688 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe
2015-03-03 14:49 - 2005-04-19 11:25 - 168337408 _____ () C:\Users\Goymane\Desktop\Adobe Photo Shop 7.0 Setup (Full Version).exe
2015-03-03 02:39 - 2015-03-04 21:30 - 00037624 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-03-03 02:39 - 2015-03-03 02:44 - 00000000 ____D () C:\ProgramData\RogueKiller
2015-03-03 02:38 - 2015-03-03 02:38 - 00002776 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-03-03 02:37 - 2015-03-03 02:37 - 05325696 _____ (Piriform Ltd) C:\Users\Goymane\Downloads\ccsetup503.exe
2015-03-03 02:37 - 2015-03-03 02:37 - 00000829 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-03-03 02:37 - 2015-03-03 02:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-03-03 02:37 - 2015-03-03 02:37 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-03 00:21 - 2015-03-04 21:23 - 00000000 ____D () C:\Users\Goymane\Downloads\Pics
2015-03-03 00:07 - 2015-03-03 00:07 - 00000000 ____D () C:\Users\Goymane\Desktop\FURNI FROM THE PAST
2015-03-03 00:05 - 2015-03-04 16:32 - 00000000 ____D () C:\Users\Goymane\Desktop\FURNI
2015-03-03 00:05 - 2015-03-03 21:56 - 00000000 ____D () C:\Users\Goymane\Desktop\COINS UP FOR SALE
2015-03-02 23:57 - 2015-03-03 17:52 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-02 23:57 - 2015-03-02 23:57 - 00000208 _____ () C:\Users\Goymane\Desktop\Counter-Strike Global Offensive.url
2015-03-02 23:55 - 2015-03-03 05:17 - 00295552 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-03-02 23:00 - 2015-03-04 21:30 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-03-02 23:00 - 2015-03-02 23:00 - 00000752 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-02 23:00 - 2015-03-02 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-02 23:00 - 2015-03-02 23:00 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-02 23:00 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-03-02 23:00 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-03-02 23:00 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-03-02 22:59 - 2015-03-02 22:59 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Goymane\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-02 22:52 - 2015-03-02 22:52 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Steam
2015-03-02 22:48 - 2015-03-02 22:48 - 00000635 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-03-02 22:48 - 2015-03-02 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-02 22:47 - 2015-03-02 22:47 - 01142128 _____ () C:\Users\Goymane\Downloads\SteamSetup.exe
2015-03-02 22:40 - 2015-03-02 22:41 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Mozilla
2015-03-02 22:40 - 2015-03-02 22:40 - 00000768 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-03-02 22:40 - 2015-03-02 22:40 - 00000768 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-03-02 22:40 - 2015-03-02 22:40 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Mozilla
2015-03-02 22:40 - 2015-03-02 22:40 - 00000000 ____D () C:\ProgramData\Mozilla
2015-03-02 22:40 - 2015-03-02 22:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-02 22:38 - 2015-03-02 23:50 - 00000000 ____D () C:\Program Files (x86)\Razer
2015-03-02 22:38 - 2015-03-02 22:38 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Razer_Inc
2015-03-02 22:38 - 2015-03-02 22:38 - 00000000 ____D () C:\ProgramData\Razer
2015-03-02 22:37 - 2015-03-02 22:37 - 00000789 _____ () C:\Users\Goymane\Desktop\PeerBlock.lnk
2015-03-02 22:37 - 2015-03-02 22:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock
2015-03-02 22:35 - 2015-03-02 22:35 - 00002186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Connect.lnk
2015-03-02 22:34 - 2015-03-02 22:34 - 00000000 ____D () C:\Program Files (x86)\Cisco Systems
2015-03-02 22:30 - 2015-03-02 22:30 - 00000000 ____D () C:\ProgramData\Cisco Systems
2015-03-02 22:26 - 2015-03-02 22:26 - 00000000 _____ () C:\WINDOWS\SysWOW64\Drivers\1043_ASUSTeK_G30AB.alu
2015-03-02 22:21 - 2015-03-04 21:35 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2399496502-2792710567-3845128958-1001
2015-03-02 22:08 - 2015-03-02 22:08 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Intel Corporation
2015-03-02 22:07 - 2015-03-02 22:07 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\ASUS WebStorage
2015-03-02 22:07 - 2015-03-02 22:07 - 00000000 ____D () C:\ProgramData\CyberLink
2015-03-02 22:06 - 2015-03-03 20:14 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Adobe
2015-03-02 22:06 - 2015-03-02 22:06 - 00001441 _____ () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-02 22:05 - 2015-03-04 20:25 - 00000000 ____D () C:\Users\Goymane\AppData\Local\VirtualStore
2015-03-02 22:05 - 2015-03-03 14:41 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Packages
2015-03-02 22:05 - 2015-03-02 22:07 - 00000000 ____D () C:\Users\Goymane
2015-03-02 22:05 - 2015-03-02 22:05 - 00001076 _____ () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SystemLevelUp.lnk
2015-03-02 22:05 - 2015-03-02 22:05 - 00000020 ___SH () C:\Users\Goymane\ntuser.ini
2015-03-02 22:05 - 2013-08-29 09:49 - 00002102 _____ () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk
2015-03-02 22:05 - 2013-06-25 01:23 - 00000000 ___RD () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-02 22:05 - 2013-04-25 02:45 - 00000000 ___RD () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-02 22:05 - 2012-07-26 00:13 - 00000000 ___RD () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-02 22:05 - 2012-07-26 00:13 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-02 21:55 - 2015-03-02 21:56 - 00000000 _____ () C:\Recovery.txt
2015-03-02 21:55 - 2015-03-02 21:55 - 00000000 __SHD () C:\Recovery
2015-02-02 04:57 - 2015-02-02 04:57 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-04 21:30 - 2013-09-25 02:02 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-04 21:30 - 2012-07-25 23:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-04 21:23 - 2013-04-25 05:59 - 00798992 _____ () C:\WINDOWS\system32\perfh00C.dat
2015-03-04 21:23 - 2013-04-25 05:59 - 00155548 _____ () C:\WINDOWS\system32\perfc00C.dat
2015-03-04 21:23 - 2012-07-25 23:28 - 01796784 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-04 21:17 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-04 21:16 - 2013-08-29 09:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-04 21:02 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-04 20:41 - 2013-04-25 05:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\migwiz
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\Com
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-04 20:41 - 2012-07-25 23:52 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\winrm
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\slmgr
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\winrm
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\WCN
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\slmgr
2015-03-04 20:41 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts
2015-03-04 20:41 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe
2015-03-04 20:41 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2015-03-04 20:41 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2015-03-04 20:41 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\system32\oobe
2015-03-04 20:41 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\system32\Dism
2015-03-04 20:40 - 2012-07-25 23:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-03 22:46 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2015-03-03 18:14 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\MUI
2015-03-03 18:14 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-03 18:14 - 2012-07-25 21:37 - 00000000 ____D () C:\WINDOWS\servicing
2015-03-03 18:12 - 2013-04-25 05:46 - 00000000 ____D () C:\WINDOWS\en-GB
2015-03-03 18:12 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\en-GB
2015-03-03 18:12 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\en-GB
2015-03-03 17:16 - 2012-07-25 21:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-03 17:15 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\Globalization
2015-03-03 17:03 - 2013-09-25 02:02 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-03-03 17:02 - 2013-09-25 02:02 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-03-03 17:02 - 2013-09-25 02:02 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-03-03 14:59 - 2013-08-29 09:28 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-03 04:02 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\IME
2015-03-03 02:48 - 2013-08-29 08:58 - 00000000 ____D () C:\WINDOWS\Panther
2015-03-02 23:56 - 2012-07-25 21:26 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-03-02 23:35 - 2012-07-26 00:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2015-03-02 22:16 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-03-02 21:55 - 2012-07-26 00:13 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2015-02-05 13:01 - 2013-09-25 02:02 - 18575880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 16017040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 14119744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 02902784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 01540240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 00074056 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 00060560 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2015-02-05 13:01 - 2013-09-25 02:02 - 00027441 _____ () C:\WINDOWS\system32\nvinfo.pb
2015-02-05 11:07 - 2013-09-25 02:02 - 06861128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-02-05 11:07 - 2013-09-25 02:02 - 03517584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-02-05 11:07 - 2013-09-25 02:02 - 02558792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-02-05 11:07 - 2013-09-25 02:02 - 00935056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-02-05 11:07 - 2013-09-25 02:02 - 00062792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-02-05 11:06 - 2013-09-25 02:02 - 00385168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-02-05 04:50 - 2013-09-25 02:02 - 04236870 _____ () C:\WINDOWS\system32\nvcoproc.bin
2015-02-03 11:29 - 2012-07-26 00:14 - 00714184 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-02-03 11:29 - 2012-07-26 00:14 - 00106440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

Some content of TEMP:
====================
C:\Users\Goymane\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Goymane\AppData\Local\Temp\_is9FCF.exe
C:\Users\Goymane\AppData\Local\Temp\_isCC16.exe
C:\Users\Goymane\AppData\Local\Temp\_isD811.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2013-08-29 07:59

==================== End Of Log ============================



BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,739 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:17 PM

Posted 10 March 2015 - 01:35 AM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/569119 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new FRST log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download FRST by Farbar from the following link if you no longer have it available and save it to your destop.

    FRST Download Link

  • When you go to the above page, there will be 32-bit and 64-bit downloads available. Please click on the appropriate one for your version of Windows. If you are unsure as to whether your Windows is 32-bit or 64-bit, please see this tutorial.
  • Double click on the FRST icon and allow it to run.
  • Agree to the usage agreement and FRST will open. Do not make any changes and click on the Scan button.
  • Notepad will open with the results.
  • Post the new logs as explained in the prep guide.
  • Close the program window, and delete the program from your desktop.


As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 10 March 2015 - 03:17 AM

Computer never came with Windows/recovery CD.  Please send me your donation link once the problem is fixed.
 
 
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-03-2015 01
Ran by Goymane (administrator) on BRAIL1 on 09-03-2015 23:41:46
Running from C:\Users\Goymane\Desktop
Loaded Profiles: Goymane (Available profiles: Goymane)
Platform: Windows 8 (X64) OS Language: English (United States)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
() C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) D:\Programs\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) D:\Programs\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\RUBotted\RUBotSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files\ASUS\System Level Up Driver\SysLevelUp.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\AI Suite II\Lighting\Lighting.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(Malwarebytes Corporation) D:\Programs\Malwarebytes Anti-Malware\mbam.exe
(ASUSTeK Computer Inc.) C:\Program Files\ASUS\System Level Up Driver\AsSysLevelUpSrc.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\AI Suite II\Ai Charger II\AsChargerIITray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{11F6707B-88F9-4D2D-A138-27B657BAE4D2}\AiChargerDT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Tnlenterprises LLC) C:\Tnlenterprises\SentryVision\ControlPanel.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe
(Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\RUBotted\RUBottedGUI.exe
(Vimisoft Studio) C:\Program Files (x86)\IM Magician\vicamon.exe
(Vimisoft Studio) C:\Program Files (x86)\IM Magician\vmonproc.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE
(Mozilla Corporation) D:\Programs\MozillaFirefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188040 2013-04-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1278024 2013-03-08] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [286192 2013-01-31] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-18] (ASUS Cloud Corporation)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-08-29] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [78352 2012-05-22] (cyberlink)
HKLM-x32\...\Run: [Trend Micro RUBotted V2.0 Beta] => C:\Program Files (x86)\Trend Micro\RUBotted\RUBottedGUI.exe [1102872 2013-07-25] (Trend Micro Inc.)
HKLM-x32\...\Run: [IMMON] => C:\Program Files (x86)\IM Magician\Vicamon.exe [143360 2010-09-28] (Vimisoft Studio)
HKLM-x32\...\Run: [IMMONSUPPORT] => "C:\Program Files (x86)\IM Magician\vmonproc.exe" /cls=IMMAGICIAN_CAMERA_MONITOR_I /exe=Vicamon.exe
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\Run: [PeerBlock] => D:\Programs\PeerBlock\peerblock.exe [2513992 2014-01-14] (PeerBlock, LLC)
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\Run: [Steam] => D:\Programs\Steam\steam.exe [2874048 2015-02-18] (Valve Corporation)
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\MountPoints2: {97f62f96-25c8-11e3-be6d-806e6f6e6963} - "E:\Launch_RWT.exe" .\SETUP\Setup.exe Rwt95app.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\startup helper.lnk
ShortcutTarget: startup helper.lnk -> C:\Tnlenterprises\SentryVision\ControlPanel.exe (Tnlenterprises LLC)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\S-1-5-21-2399496502-2792710567-3845128958-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-03] (Adobe Systems Incorporated)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
Tcpip\Parameters: [DhcpNameServer] 64.59.144.17 64.59.150.133 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Goymane\AppData\Roaming\Mozilla\Firefox\Profiles\m8f3opnv.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-03] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-03] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-02-15] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-02-15] (Intel Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-05] (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2012-04-03] (Adobe Systems Inc.)
FF Extension: Auto Refresh - C:\Users\Goymane\AppData\Roaming\Mozilla\Firefox\Profiles\m8f3opnv.default\Extensions\autorefresh@plugin.xpi [2015-03-03]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
StartMenuInternet: FIREFOX.EXE - D:\Programs\MozillaFirefox\firefox.exe

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-16] (ASUSTeK Computer Inc.)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-18] () [File not signed]
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243728 2012-05-23] (CyberLink)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-02-05] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-01-31] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-02-15] (Intel Corporation)
R2 MBAMScheduler; D:\Programs\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; D:\Programs\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2015-03-07] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-02-28] (Riverbed Technology, Inc.)
R2 RUBotSrv; C:\Program Files (x86)\Trend Micro\RUBotted\RUBotSrv.exe [443416 2013-07-25] (Trend Micro Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16032 2014-09-21] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d63x64.sys [468752 2013-02-26] (Intel Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-09] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-02-28] (Riverbed Technology, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-02-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-02-05] (NVIDIA Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-09 23:29 - 2015-03-09 23:41 - 00015501 _____ () C:\Users\Goymane\Desktop\FRST.txt
2015-03-09 23:21 - 2015-03-09 23:21 - 02095104 _____ (Farbar) C:\Users\Goymane\Desktop\FRST64.exe
2015-03-09 19:35 - 2015-03-09 19:35 - 02475068 _____ () C:\Users\Goymane\Desktop\23423432432.psd
2015-03-09 19:14 - 2015-03-09 19:14 - 00000000 _____ () C:\Users\Goymane\Desktop\New Bitmap Image.bmp
2015-03-09 19:13 - 2015-03-09 19:28 - 00000429 _____ () C:\Users\Goymane\Desktop\controls.txt
2015-03-09 14:49 - 2015-03-09 14:52 - 00001812 _____ () C:\Users\Public\Desktop\IM Magician.lnk
2015-03-09 14:49 - 2015-03-09 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4Tech IM Magician
2015-03-09 14:49 - 2010-09-28 11:59 - 00450560 _____ (FotoFan) C:\WINDOWS\SysWOW64\newlistview2.dll
2015-03-09 14:49 - 2010-09-28 11:56 - 00077824 _____ (FotoFan Studio) C:\WINDOWS\SysWOW64\vgf.dll
2015-03-09 14:49 - 2008-01-29 19:00 - 00004608 ___SH () C:\WINDOWS\Thumbs.db
2015-03-09 14:39 - 2015-03-09 14:45 - 00002149 _____ () C:\Users\Public\Desktop\Zoom.lnk
2015-03-09 14:39 - 2015-03-09 14:45 - 00002050 _____ () C:\Users\Public\Desktop\HAmcap.lnk
2015-03-09 14:39 - 2015-03-09 14:39 - 00000000 ____D () C:\Users\Goymane\Desktop\Drivers camera
2015-03-09 14:39 - 2015-03-09 14:39 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\InstallShield
2015-03-09 14:39 - 2015-03-09 14:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4 TECH PC Camera H
2015-03-09 14:39 - 2015-03-09 14:39 - 00000000 ____D () C:\Program Files (x86)\A4 tech
2015-03-09 14:39 - 2006-07-18 16:15 - 00049152 _____ (Vimicro) C:\WINDOWS\vmsnap3.exe
2015-03-09 14:39 - 2006-07-04 14:16 - 00049152 _____ () C:\WINDOWS\Domino.exe
2015-03-09 14:36 - 2015-03-09 14:38 - 56292353 _____ () C:\Users\Goymane\Downloads\A4 PC Camera H.zip
2015-03-09 11:38 - 2015-03-09 11:38 - 00335534 _____ () C:\Users\Goymane\Desktop\3634543.oxps
2015-03-09 02:17 - 2015-03-09 23:19 - 00384572 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-08 23:01 - 2015-03-09 19:30 - 00000000 ____D () C:\Users\Goymane\Desktop\future-cop-l-a-p-d_windows_04ss
2015-03-08 22:41 - 2015-03-08 22:41 - 00049881 _____ () C:\Users\Goymane\Downloads\bushido.zip
2015-03-08 11:40 - 2015-03-08 11:40 - 00000166 _____ () C:\WINDOWS\Rwt95App.ini
2015-03-08 11:40 - 2015-03-08 11:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Learning Company
2015-03-08 04:05 - 2015-03-08 21:46 - 00000000 ____D () C:\Users\Goymane\AppData\Local\NPPDRUSH
2015-03-08 04:04 - 2015-03-08 04:04 - 00000211 _____ () C:\Users\Goymane\Desktop\N.P.P.D.RUSH - The milk of Ultra violet.url
2015-03-07 18:28 - 2015-03-07 18:28 - 00000000 ____D () C:\Users\Goymane\Downloads\TCPView
2015-03-07 18:27 - 2015-03-07 18:27 - 00291606 _____ () C:\Users\Goymane\Downloads\TCPView.zip
2015-03-07 18:24 - 2015-03-07 18:24 - 00281032 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2015-03-07 18:24 - 2015-03-07 18:24 - 00000000 ____D () C:\Users\Goymane\AppData\Local\PunkBuster
2015-03-07 18:24 - 2015-03-07 18:24 - 00000000 ____D () C:\Users\Goymane\AppData\Local\CrashRpt
2015-03-07 16:18 - 2015-03-07 16:18 - 00000000 ____D () C:\Users\Goymane\Desktop\liero-1.36-bundle
2015-03-07 16:15 - 2015-03-07 16:16 - 00000000 ____D () C:\Users\Goymane\Documents\OpenLieroX
2015-03-07 16:13 - 2015-03-07 16:16 - 00000000 ____D () C:\Users\Goymane\Desktop\OpenLieroX
2015-03-07 16:10 - 2015-03-08 00:11 - 00000000 ____D () C:\Users\Goymane\AppData\Local\CrashDumps
2015-03-07 16:10 - 2015-03-07 18:24 - 00281032 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-03-07 16:10 - 2015-03-07 16:10 - 00189248 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2015-03-07 16:10 - 2015-03-07 16:10 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2015-03-07 16:10 - 2015-03-07 16:10 - 00000000 ____D () C:\Users\Goymane\Documents\My Games
2015-03-07 16:10 - 2015-03-07 16:10 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\NVIDIA
2015-03-07 15:59 - 2015-03-07 15:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Chart Controls
2015-03-05 23:11 - 2015-03-05 23:11 - 00000000 ____D () C:\WINDOWS\SysWOW64\xlive
2015-03-05 23:11 - 2015-03-05 23:11 - 00000000 ____D () C:\Users\Goymane\AppData\Local\signal studios
2015-03-05 23:11 - 2015-03-05 23:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2015-03-05 23:11 - 2015-03-05 23:11 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2015-03-05 22:54 - 2015-03-05 22:54 - 00000206 _____ () C:\Users\Goymane\Desktop\Sid Meier's Civilization III Complete.url
2015-03-05 22:48 - 2015-03-05 22:48 - 00000000 ____D () C:\Users\Goymane\AppData\Local\DOSBox
2015-03-05 22:47 - 2015-03-05 22:54 - 00000000 ____D () C:\Users\Goymane\Desktop\descent
2015-03-05 22:43 - 2015-03-05 22:43 - 01448809 _____ (DOSBox Team) C:\Users\Goymane\Desktop\DOSBox0.74-win32-installer.exe
2015-03-05 22:43 - 2015-03-05 22:43 - 00001929 _____ () C:\Users\Public\Desktop\DOSBox 0.74.lnk
2015-03-05 22:43 - 2015-03-05 22:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74
2015-03-05 22:43 - 2015-03-05 22:43 - 00000000 ____D () C:\Program Files (x86)\DOSBox-0.74
2015-03-05 20:36 - 2015-03-05 20:36 - 00000210 _____ () C:\Users\Goymane\Desktop\Rising StormRed Orchestra 2 Multiplayer.url
2015-03-04 22:35 - 2015-03-04 22:35 - 00111430 _____ () C:\Users\Goymane\Desktop\yete.txt
2015-03-04 21:53 - 2015-03-04 21:53 - 00109944 _____ () C:\Users\Goymane\Downloads\FRST.txt
2015-03-04 21:53 - 2015-03-04 21:53 - 00060510 _____ () C:\Users\Goymane\Downloads\Addition.txt
2015-03-04 21:51 - 2015-03-09 23:41 - 00000000 ____D () C:\FRST
2015-03-04 21:51 - 2015-03-04 21:51 - 02092544 _____ (Farbar) C:\Users\Goymane\Downloads\FRST64.exe
2015-03-04 21:49 - 2015-03-04 21:49 - 00007584 _____ () C:\Users\Goymane\Desktop\RKreport_SCN_03042015_213759.log
2015-03-04 21:17 - 2015-03-04 21:17 - 00361712 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-04 21:16 - 2015-03-09 14:52 - 00000000 ____D () C:\Program Files (x86)\IM Magician
2015-03-04 21:16 - 2015-03-04 21:16 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Vimisoft Studio
2015-03-04 21:16 - 2015-03-04 21:16 - 00000000 ____D () C:\Program Files (x86)\Vimicro Corporation
2015-03-04 21:15 - 2015-03-04 21:15 - 00000000 ____D () C:\Users\Goymane\Downloads\A4_IM_Magician
2015-03-04 21:13 - 2015-03-04 21:15 - 32648651 _____ () C:\Users\Goymane\Downloads\A4_IM_Magician.zip
2015-03-04 20:41 - 2015-03-06 02:15 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
2015-03-04 20:33 - 2015-03-04 20:33 - 00000363 _____ () C:\Users\Goymane\Desktop\Control Panel - Shortcut.lnk
2015-03-04 20:23 - 2015-03-04 20:23 - 00001702 _____ () C:\Users\Goymane\Desktop\Sentry Vision.lnk
2015-03-04 20:23 - 2015-03-04 20:23 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SentryVision
2015-03-04 20:23 - 2015-03-04 20:23 - 00000000 ____D () C:\Tnlenterprises
2015-03-04 20:21 - 2015-03-04 20:22 - 14578076 _____ () C:\Users\Goymane\Downloads\sentry_setup.exe
2015-03-04 18:16 - 2015-03-04 18:16 - 00000000 ____D () C:\ProgramData\Trend Micro
2015-03-04 18:01 - 2015-03-04 18:04 - 101000060 _____ () C:\Users\Goymane\Downloads\WbcamSoftware_0915.zip
2015-03-04 17:46 - 2015-03-04 17:46 - 06229392 _____ (Trend Micro, Inc. ) C:\Users\Goymane\Downloads\RUBottedSetup.exe
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trend Micro RUBotted
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\Program Files (x86)\WinPcap
2015-03-04 17:46 - 2015-03-04 17:46 - 00000000 ____D () C:\Program Files (x86)\Trend Micro
2015-03-04 15:59 - 2015-03-04 15:59 - 00000355 _____ () C:\Users\Goymane\Desktop\Computer - Shortcut.lnk
2015-03-04 12:14 - 2015-01-29 00:30 - 00593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoUpdate.exe
2015-03-04 12:14 - 2015-01-29 00:30 - 00467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationUI.exe
2015-03-04 12:14 - 2015-01-29 00:30 - 00011056 _____ () C:\WINDOWS\system32\AutoconfigV2.cab
2015-03-04 12:14 - 2015-01-29 00:05 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-04 12:14 - 2015-01-29 00:05 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-04 12:14 - 2015-01-28 22:19 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-03-04 12:14 - 2015-01-28 22:19 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-04 12:14 - 2015-01-22 21:50 - 03959296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-04 12:14 - 2015-01-22 20:27 - 02864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-04 12:14 - 2014-10-21 17:01 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-03-04 12:14 - 2014-10-21 17:00 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-03-04 12:13 - 2014-07-11 20:41 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRUM.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDYAK.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDTAT.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU1.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDRU.DLL
2015-03-04 12:13 - 2014-07-11 20:41 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDBASH.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRUM.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDYAK.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDTAT.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU1.DLL
2015-03-04 12:13 - 2014-07-11 20:16 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDRU.DLL
2015-03-04 12:13 - 2014-07-11 20:15 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDBASH.DLL
2015-03-04 12:13 - 2014-07-08 14:33 - 00181248 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2015-03-04 12:13 - 2014-07-08 14:32 - 01539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2015-03-04 12:13 - 2014-07-08 14:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2015-03-04 12:13 - 2014-07-08 14:30 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2015-03-04 12:13 - 2014-07-06 21:52 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-03-04 12:13 - 2014-07-06 21:52 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-03-04 12:13 - 2014-07-04 02:52 - 00328000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2015-03-04 12:13 - 2014-07-02 17:59 - 01824784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-04 12:13 - 2014-07-02 16:30 - 01408952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-03-04 12:13 - 2014-06-27 23:01 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-03-04 12:13 - 2014-06-27 22:56 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-03-04 12:13 - 2014-06-17 15:27 - 02032640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2015-03-04 12:13 - 2014-06-17 15:23 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2015-03-04 12:13 - 2014-06-11 06:47 - 02842112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-03-04 12:13 - 2014-06-10 20:40 - 02620928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2015-03-04 12:13 - 2014-06-10 14:44 - 01403896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-03-04 12:13 - 2014-02-04 02:57 - 01271664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-03-04 11:24 - 2015-03-04 11:25 - 18730584 _____ () C:\Users\Goymane\Downloads\RogueKillerX64.exe
2015-03-04 11:10 - 2015-03-05 11:56 - 00000000 ____D () C:\WINDOWS\Minidump
2015-03-03 23:14 - 2014-10-08 20:00 - 01519104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-03-03 23:14 - 2014-10-08 20:00 - 01484288 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-03-03 23:14 - 2014-10-08 20:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2015-03-03 23:14 - 2014-10-08 19:59 - 01195520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2015-03-03 23:14 - 2014-10-08 19:59 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2015-03-03 22:58 - 2015-01-08 22:43 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2015-03-03 22:58 - 2015-01-08 21:03 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2015-03-03 22:58 - 2015-01-08 15:52 - 00478296 _____ () C:\WINDOWS\SysWOW64\locale.nls
2015-03-03 22:58 - 2015-01-08 15:52 - 00478296 _____ () C:\WINDOWS\system32\locale.nls
2015-03-03 22:56 - 2015-03-03 22:57 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-03 22:56 - 2015-01-29 17:49 - 116773704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-03 22:55 - 2014-07-15 14:51 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2015-03-03 22:41 - 2014-06-10 14:44 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-03-03 22:41 - 2014-06-10 14:43 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-03-03 22:38 - 2015-01-08 20:33 - 04061696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-03 22:38 - 2014-07-31 15:40 - 01287680 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-03-03 22:38 - 2014-02-03 15:56 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-03-03 22:38 - 2014-02-03 15:56 - 00278872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2015-03-03 22:38 - 2014-01-30 16:48 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2015-03-03 22:38 - 2014-01-30 16:06 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-03-03 22:38 - 2014-01-26 19:39 - 01939288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-03-03 22:38 - 2014-01-15 15:42 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2015-03-03 22:38 - 2014-01-02 15:35 - 00365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2015-03-03 22:38 - 2014-01-02 15:32 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2015-03-03 22:38 - 2013-06-16 14:41 - 00997632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-03 22:38 - 2013-06-01 03:34 - 02391280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-03 22:38 - 2013-06-01 02:24 - 02106176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-03-03 22:38 - 2013-06-01 01:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2015-03-03 22:38 - 2013-06-01 01:24 - 01453568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-03-03 22:38 - 2013-06-01 01:24 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-03-03 22:38 - 2013-06-01 01:24 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2015-03-03 22:38 - 2013-06-01 01:23 - 01842176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-03-03 22:38 - 2013-06-01 01:23 - 00680960 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2015-03-03 22:38 - 2013-06-01 01:22 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2015-03-03 22:38 - 2013-06-01 01:22 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-03-03 22:38 - 2013-06-01 01:21 - 00729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2015-03-03 22:38 - 2013-06-01 01:21 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 02219520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 01527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-03-03 22:38 - 2013-06-01 01:20 - 00583168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2015-03-03 22:38 - 2013-06-01 01:19 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2015-03-03 22:38 - 2013-05-31 19:08 - 00037632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthAvrcpTg.sys
2015-03-03 22:38 - 2013-05-24 14:09 - 01217352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-03-03 22:38 - 2013-05-24 14:09 - 01093904 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-03-03 22:36 - 2015-01-15 03:44 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-03-03 22:36 - 2015-01-15 03:44 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-03 22:36 - 2015-01-15 03:43 - 01282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-03-03 22:36 - 2015-01-15 02:00 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2015-03-03 22:36 - 2015-01-15 02:00 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-03-03 22:36 - 2015-01-15 01:38 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2015-03-03 22:36 - 2015-01-15 01:09 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2015-03-03 22:36 - 2015-01-14 20:08 - 00568656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-03-03 22:36 - 2014-09-02 18:48 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2015-03-03 22:36 - 2014-09-02 18:21 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2015-03-03 22:36 - 2014-06-12 17:57 - 01453400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-03-03 22:36 - 2014-06-12 17:55 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2015-03-03 22:35 - 2013-08-15 21:41 - 00058200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-03-03 22:35 - 2013-08-15 21:39 - 02371728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-03-03 22:35 - 2013-08-15 21:22 - 04917760 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2015-03-03 22:35 - 2013-08-15 21:21 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2015-03-03 22:35 - 2013-08-15 21:21 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2015-03-03 22:35 - 2013-08-15 14:43 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2015-03-03 22:35 - 2013-08-15 14:43 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2015-03-03 22:35 - 2013-08-15 14:43 - 00083968 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll
2015-03-03 22:35 - 2013-08-15 14:42 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2015-03-03 22:35 - 2013-08-15 14:42 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2015-03-03 22:34 - 2014-11-14 22:06 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-03-03 22:34 - 2014-11-14 21:13 - 03286016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 01623552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-03-03 22:34 - 2014-11-14 21:13 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-03-03 22:34 - 2014-11-14 21:12 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-03-03 22:34 - 2014-11-14 19:54 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-03-03 22:34 - 2014-11-14 19:53 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-03-03 22:34 - 2014-11-14 19:53 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-03-03 22:34 - 2014-11-14 19:53 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-03-03 22:34 - 2014-11-04 22:40 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-03 22:34 - 2014-11-04 22:39 - 01024512 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-03 22:34 - 2014-10-31 22:28 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-03-03 22:34 - 2014-10-29 06:21 - 00499008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-03-03 22:34 - 2014-08-27 22:01 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-03-03 22:34 - 2013-07-05 16:15 - 00652288 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-03-03 22:34 - 2013-07-03 18:13 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-03-03 22:32 - 2014-03-24 15:42 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2015-03-03 22:32 - 2014-03-24 14:56 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2015-03-03 22:32 - 2013-10-18 21:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2015-03-03 22:32 - 2013-10-18 20:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2015-03-03 22:32 - 2013-08-09 21:21 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-03-03 22:32 - 2013-08-09 21:21 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncInfo.dll
2015-03-03 22:32 - 2013-08-09 19:58 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-03-03 22:32 - 2013-08-02 22:40 - 01374208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2015-03-03 22:32 - 2013-08-02 22:40 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll
2015-03-03 22:32 - 2013-08-02 22:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx
2015-03-03 22:32 - 2013-08-02 21:14 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx
2015-03-03 22:32 - 2013-08-02 21:13 - 01245696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2015-03-03 22:32 - 2013-08-02 21:13 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll
2015-03-03 22:32 - 2013-08-01 22:28 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2015-03-03 22:32 - 2013-08-01 21:08 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2015-03-03 22:32 - 2013-07-24 15:10 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2015-03-03 22:32 - 2013-07-24 15:06 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2015-03-03 22:32 - 2013-04-09 15:17 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-03 22:32 - 2013-04-09 14:29 - 00893952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 02237952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 01409536 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-03-03 22:30 - 2015-01-11 22:49 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-03 22:30 - 2015-01-11 22:48 - 19291136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-03 22:30 - 2015-01-11 22:48 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 15403008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 02655744 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-03 22:30 - 2015-01-11 22:47 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-03-03 22:30 - 2015-01-11 22:46 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-03 22:30 - 2015-01-11 21:07 - 01762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-03 22:30 - 2015-01-11 21:07 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-03-03 22:30 - 2015-01-11 21:07 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 14373376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 13761024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-03-03 22:30 - 2015-01-11 21:06 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-03-03 22:30 - 2015-01-11 20:16 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-03-03 22:30 - 2015-01-11 19:46 - 00361984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-03-03 22:30 - 2014-12-07 22:48 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-03-03 22:30 - 2014-12-07 21:04 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2015-03-03 22:30 - 2014-11-21 00:38 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-03-03 22:30 - 2014-11-21 00:37 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-03-03 22:30 - 2014-11-21 00:36 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2015-03-03 22:30 - 2014-11-20 23:17 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2015-03-03 22:30 - 2014-11-20 23:17 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-03-03 22:30 - 2014-11-20 23:17 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 01441280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-03-03 22:30 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2015-03-03 22:30 - 2014-11-20 23:16 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2015-03-03 22:30 - 2014-11-20 23:00 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-03-03 22:30 - 2014-11-20 22:54 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-03-03 22:30 - 2014-11-20 20:30 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-03-03 22:30 - 2014-10-10 23:44 - 19764736 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-03 22:30 - 2014-10-10 21:57 - 17562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-03 22:30 - 2014-08-09 00:30 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2015-03-03 22:30 - 2014-08-09 00:29 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssdisai.dll
2015-03-03 22:30 - 2014-07-23 19:33 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2015-03-03 22:30 - 2014-07-23 19:33 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-03-03 22:30 - 2013-07-05 14:02 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbcir.sys
2015-03-03 22:30 - 2013-06-21 21:45 - 00785624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys
2015-03-03 22:30 - 2013-06-21 21:45 - 00054488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys
2015-03-03 22:29 - 2014-12-18 22:48 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-03-03 22:29 - 2014-10-08 19:59 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-03-03 22:29 - 2014-10-08 19:59 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-03-03 22:29 - 2014-10-08 19:58 - 00458240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2015-03-03 22:29 - 2014-09-21 21:38 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-03-03 22:29 - 2014-09-21 19:56 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-03-03 22:29 - 2014-09-12 22:24 - 02233152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-03-03 22:29 - 2014-09-02 18:48 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2015-03-03 22:29 - 2014-09-02 18:22 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2015-03-03 22:29 - 2014-08-28 20:17 - 02043392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2015-03-03 22:29 - 2014-08-28 20:17 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2015-03-03 22:29 - 2014-08-28 20:04 - 02837504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-03-03 22:29 - 2014-08-28 20:04 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2015-03-03 22:29 - 2014-08-27 22:04 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2015-03-03 22:29 - 2014-08-27 22:04 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSTIFF.dll
2015-03-03 22:29 - 2014-08-27 21:59 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXST30.dll
2015-03-03 22:29 - 2014-07-24 05:12 - 00328512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2015-03-03 22:29 - 2014-07-06 21:53 - 01125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2015-03-03 22:29 - 2014-07-06 21:52 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2015-03-03 22:29 - 2014-07-06 21:52 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2015-03-03 22:29 - 2014-07-06 21:51 - 05982208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-03-03 22:29 - 2014-07-06 20:01 - 01049600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2015-03-03 22:29 - 2014-07-06 20:01 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2015-03-03 22:29 - 2014-07-06 20:00 - 05095424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-03-03 22:29 - 2014-07-06 19:59 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aaclient.dll
2015-03-03 22:29 - 2014-06-04 17:12 - 00678600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll
2015-03-03 22:29 - 2014-06-03 15:12 - 00536776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll
2015-03-03 22:29 - 2013-09-13 14:36 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ubpm.dll
2015-03-03 22:29 - 2013-09-13 14:33 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-03 22:29 - 2013-08-29 21:43 - 00061784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2015-03-03 22:29 - 2013-08-29 21:20 - 01173504 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-03-03 22:29 - 2013-08-29 15:48 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-03-03 22:29 - 2013-08-20 22:39 - 00465240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2015-03-03 22:29 - 2013-08-09 22:30 - 00151896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2015-03-03 22:29 - 2013-07-24 15:10 - 10799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-03-03 22:29 - 2013-07-24 15:07 - 13661696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-03 22:29 - 2013-07-01 14:14 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys
2015-03-03 22:28 - 2014-10-10 23:45 - 10115072 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-03-03 22:28 - 2014-10-10 23:44 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-03-03 22:28 - 2014-10-10 23:44 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-03-03 22:28 - 2014-10-10 23:43 - 02307072 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-03 22:28 - 2014-10-10 21:58 - 08858624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-03-03 22:28 - 2014-10-10 21:57 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-03-03 22:28 - 2014-10-10 21:57 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2015-03-03 22:28 - 2014-10-10 21:56 - 02037760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-03-03 22:28 - 2014-06-17 15:27 - 01440256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2015-03-03 22:28 - 2014-06-17 15:24 - 01557504 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2015-03-03 22:28 - 2014-06-02 14:33 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-03-03 22:28 - 2013-10-04 22:10 - 00285016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2015-03-03 22:28 - 2013-08-29 21:19 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2015-03-03 22:28 - 2013-08-29 21:18 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2015-03-03 22:28 - 2013-08-29 15:48 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2015-03-03 22:28 - 2013-08-29 15:47 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2015-03-03 22:28 - 2013-07-09 00:04 - 00120144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2015-03-03 22:28 - 2013-07-08 19:57 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2015-03-03 22:28 - 2013-07-08 14:46 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-03-03 22:28 - 2013-07-08 14:46 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-03-03 22:28 - 2013-07-08 14:46 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanadvui.dll
2015-03-03 22:28 - 2013-07-08 14:45 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2015-03-03 22:28 - 2013-07-02 16:23 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-03-03 22:28 - 2013-07-02 16:22 - 02839552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-03 22:28 - 2013-07-02 16:11 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-03-03 22:28 - 2013-07-02 16:10 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-03-03 22:28 - 2013-06-30 14:30 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\openfiles.exe
2015-03-03 22:28 - 2013-06-30 14:29 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\openfiles.exe
2015-03-03 22:28 - 2013-06-28 22:15 - 00195416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-03-03 22:28 - 2013-06-28 22:15 - 00125784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2015-03-03 22:28 - 2013-06-25 19:01 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2015-03-03 22:28 - 2013-06-25 18:59 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2015-03-03 22:28 - 2013-06-24 14:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-03-03 22:28 - 2013-06-18 21:36 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2015-03-03 22:28 - 2013-06-18 21:36 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2015-03-03 22:28 - 2013-06-18 14:38 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
2015-03-03 22:28 - 2013-06-18 14:38 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2015-03-03 22:28 - 2013-06-11 15:43 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2015-03-03 22:28 - 2013-06-11 15:26 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-03-03 22:28 - 2013-06-06 00:03 - 00119040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2015-03-03 22:27 - 2015-01-11 22:49 - 01627648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-03 22:27 - 2015-01-11 21:07 - 01338880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-03-03 22:27 - 2014-12-10 22:51 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-03-03 22:27 - 2014-10-10 23:44 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-03 22:27 - 2014-09-24 15:29 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-03-03 22:27 - 2014-09-24 15:29 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2015-03-03 22:27 - 2014-09-24 15:01 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-03 22:27 - 2014-09-24 15:01 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-03-03 22:27 - 2014-09-21 21:53 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-03 22:27 - 2014-08-26 14:08 - 00270024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-03 22:27 - 2014-07-24 05:50 - 00447296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-03-03 22:27 - 2014-07-16 15:28 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sscore.dll
2015-03-03 22:27 - 2014-07-16 14:59 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2015-03-03 22:27 - 2014-07-16 14:59 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll
2015-03-03 22:27 - 2014-07-11 22:45 - 01549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2015-03-03 22:27 - 2014-07-11 20:36 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2015-03-03 22:27 - 2014-07-11 20:36 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-03-03 22:27 - 2014-07-11 20:34 - 00404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-03-03 22:27 - 2014-07-11 20:34 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2015-03-03 22:27 - 2014-06-27 22:57 - 01341952 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-03-03 22:27 - 2014-06-27 18:23 - 01126400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-03-03 22:27 - 2014-05-02 19:34 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-03 22:27 - 2014-04-29 14:32 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2015-03-03 22:27 - 2014-04-29 14:32 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
2015-03-03 22:27 - 2014-01-30 16:48 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-03 22:27 - 2013-11-19 16:15 - 03842560 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-03-03 22:27 - 2013-11-19 15:57 - 03288576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-03-03 22:27 - 2013-07-19 14:13 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-03-03 22:27 - 2013-07-19 14:13 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-03-03 22:27 - 2013-07-01 17:41 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-03-03 22:27 - 2013-07-01 17:41 - 00213336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS
2015-03-03 22:27 - 2013-06-30 17:42 - 00623448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-03-03 22:27 - 2013-06-30 17:42 - 00498008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys
2015-03-03 22:27 - 2013-06-30 17:42 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys
2015-03-03 22:27 - 2013-06-30 17:42 - 00021848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
2015-03-03 22:27 - 2013-06-28 19:07 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
2015-03-03 22:27 - 2013-06-28 19:06 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2015-03-03 22:27 - 2013-04-11 14:30 - 01421312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-03-03 22:27 - 2013-04-11 14:22 - 01838080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-03-03 22:26 - 2014-12-18 20:35 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-03-03 22:26 - 2014-12-18 00:51 - 00096576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-03-03 22:26 - 2014-12-17 22:52 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-03-03 22:26 - 2014-12-17 22:51 - 01160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-03-03 22:26 - 2014-12-17 22:50 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-03-03 22:26 - 2014-12-17 22:20 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-03-03 22:26 - 2014-12-05 23:53 - 00458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-03-03 22:26 - 2014-12-05 23:53 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-03-03 22:26 - 2014-12-05 23:52 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-03-03 22:26 - 2014-12-05 23:52 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-03-03 22:26 - 2014-12-05 23:52 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2015-03-03 22:26 - 2014-12-05 23:51 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-03-03 22:26 - 2014-12-05 23:51 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-03-03 22:26 - 2014-12-05 23:50 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-03-03 22:26 - 2014-12-05 22:10 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-03-03 22:26 - 2014-12-05 22:10 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-03-03 22:26 - 2014-12-05 22:09 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-03-03 22:26 - 2014-12-05 22:09 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2015-03-03 22:26 - 2014-11-25 22:43 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-03-03 22:26 - 2014-11-25 20:50 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2015-03-03 22:26 - 2014-10-02 17:21 - 00522728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2015-03-03 22:26 - 2014-10-02 14:29 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-03-03 22:26 - 2014-06-12 15:34 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-03-03 22:26 - 2014-06-12 15:29 - 02146304 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-03-03 22:26 - 2014-06-06 06:06 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2015-03-03 22:26 - 2014-06-06 02:17 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2015-03-03 22:26 - 2014-06-05 09:56 - 00112984 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-03-03 22:26 - 2014-05-29 14:24 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-03-03 22:26 - 2014-03-10 19:25 - 00100184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2015-03-03 22:26 - 2014-03-10 16:41 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2015-03-03 22:26 - 2014-03-10 16:41 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dimsroam.dll
2015-03-03 22:26 - 2014-03-10 16:39 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2015-03-03 22:26 - 2014-03-10 16:38 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll
2015-03-03 22:26 - 2014-03-10 16:38 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2015-03-03 22:26 - 2014-03-09 19:05 - 00668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2015-03-03 22:26 - 2014-03-09 17:27 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2015-03-03 22:26 - 2013-10-30 21:56 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2015-03-03 22:26 - 2013-10-30 21:56 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2015-03-03 22:26 - 2013-10-30 20:01 - 00550400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2015-03-03 22:26 - 2013-10-30 19:42 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2015-03-03 22:26 - 2013-10-13 12:49 - 00100696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\disk.sys
2015-03-03 22:26 - 2013-10-10 01:32 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2015-03-03 22:26 - 2013-10-10 01:30 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2015-03-03 22:26 - 2013-10-10 01:30 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2015-03-03 22:26 - 2013-10-10 01:24 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2015-03-03 22:26 - 2013-10-10 01:23 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2015-03-03 22:26 - 2013-10-10 01:22 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2015-03-03 22:26 - 2013-10-10 01:22 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2015-03-03 22:26 - 2013-08-26 21:21 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2015-03-03 22:26 - 2013-08-26 21:19 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2015-03-03 22:26 - 2013-08-26 14:29 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2015-03-03 22:26 - 2013-08-26 14:28 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2015-03-03 22:26 - 2013-08-22 23:22 - 02062848 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-03-03 22:26 - 2013-08-22 17:44 - 01711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-03-03 22:26 - 2013-07-12 22:18 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-03-03 22:26 - 2013-07-12 22:16 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2015-03-03 22:26 - 2013-07-12 22:15 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2015-03-03 22:26 - 2013-07-12 22:15 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2015-03-03 22:26 - 2013-07-12 20:24 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-03-03 22:26 - 2013-07-12 20:23 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2015-03-03 22:26 - 2013-07-12 20:23 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2015-03-03 22:26 - 2013-07-08 22:18 - 00439488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2015-03-03 22:26 - 2013-07-08 20:25 - 00385768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2015-03-03 22:26 - 2013-06-10 11:15 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-03 22:26 - 2013-06-10 11:10 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2015-03-03 22:26 - 2013-05-26 15:17 - 00035328 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-03-03 22:26 - 2013-05-26 14:59 - 00046080 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-03 22:26 - 2013-05-24 19:15 - 00362496 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-03 22:26 - 2013-05-24 18:32 - 00300032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-03-03 22:26 - 2012-10-23 19:25 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2015-03-03 22:26 - 2012-10-23 18:48 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2015-03-03 22:25 - 2014-12-08 15:14 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-03 22:25 - 2014-08-21 15:56 - 01418752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-03-03 22:25 - 2014-08-21 15:27 - 01845760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-03-03 22:25 - 2014-07-15 15:03 - 01300992 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-03-03 22:25 - 2014-07-11 18:36 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-03-03 22:25 - 2013-12-04 15:43 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2015-03-03 22:25 - 2013-12-04 15:37 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2015-03-03 22:25 - 2013-11-22 22:43 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-03 22:25 - 2013-11-22 21:05 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-03-03 22:24 - 2015-01-15 13:45 - 06973248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-03 22:24 - 2014-11-08 03:21 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-03-03 22:24 - 2014-11-07 22:56 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-03-03 22:24 - 2014-10-11 00:35 - 00171840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-03-03 22:24 - 2014-10-10 21:41 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2015-03-03 22:24 - 2014-10-10 21:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2015-03-03 22:24 - 2014-05-29 15:02 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-03-03 22:24 - 2014-04-12 01:10 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-03-03 22:24 - 2014-04-12 01:09 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2015-03-03 22:24 - 2014-04-12 01:09 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2015-03-03 22:24 - 2014-04-12 01:08 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-03-03 22:24 - 2014-04-12 01:07 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2015-03-03 22:24 - 2014-04-11 23:23 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-03-03 22:24 - 2014-04-11 23:23 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2015-03-03 22:24 - 2014-04-11 23:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2015-03-03 22:24 - 2014-04-11 23:22 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2015-03-03 22:24 - 2014-04-11 22:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\workerdd.dll
2015-03-03 22:22 - 2014-10-23 04:47 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2015-03-03 22:22 - 2014-10-23 03:04 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2015-03-03 22:21 - 2014-06-19 15:35 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-03-03 22:21 - 2014-06-19 14:24 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-03-03 22:20 - 2014-11-08 03:22 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-03-03 22:20 - 2014-11-07 22:57 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-03-03 22:18 - 2014-03-01 01:47 - 01258496 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-03-03 22:18 - 2014-03-01 01:47 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2015-03-03 22:18 - 2014-03-01 00:07 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2015-03-03 22:18 - 2014-02-28 22:59 - 00974848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2015-03-03 22:18 - 2014-02-14 20:15 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2015-03-03 22:18 - 2013-11-25 15:17 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2015-03-03 22:18 - 2013-06-28 19:08 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2015-03-03 22:17 - 2013-09-27 19:35 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2015-03-03 22:16 - 2014-05-28 20:04 - 00094552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-03-03 22:12 - 2014-10-29 23:20 - 01890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2015-03-03 22:12 - 2014-10-29 21:22 - 01569792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2015-03-03 22:12 - 2013-10-31 21:38 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2015-03-03 22:12 - 2013-10-31 19:49 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2015-03-03 20:54 - 2015-03-03 20:54 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Macromedia
2015-03-03 20:54 - 2015-03-03 20:54 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Macromedia
2015-03-03 20:33 - 2015-03-09 23:07 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-03 20:33 - 2015-03-03 20:33 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-03-03 20:32 - 2015-03-03 20:34 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Adobe
2015-03-03 17:47 - 2015-03-03 17:47 - 00000210 _____ () C:\Users\Goymane\Desktop\Toy Soldiers.url
2015-03-03 17:11 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2015-03-03 17:11 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2015-03-03 17:11 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2015-03-03 17:11 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2015-03-03 17:11 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2015-03-03 17:11 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2015-03-03 17:11 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2015-03-03 17:11 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2015-03-03 17:11 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2015-03-03 17:11 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2015-03-03 17:11 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2015-03-03 17:11 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2015-03-03 17:11 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2015-03-03 17:11 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2015-03-03 17:11 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2015-03-03 17:11 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2015-03-03 17:11 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2015-03-03 17:11 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2015-03-03 17:11 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2015-03-03 17:11 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2015-03-03 17:11 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2015-03-03 17:11 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2015-03-03 17:10 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2015-03-03 17:10 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2015-03-03 17:10 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2015-03-03 17:10 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2015-03-03 17:10 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2015-03-03 17:10 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2015-03-03 17:10 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2015-03-03 17:10 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2015-03-03 17:10 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2015-03-03 17:10 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2015-03-03 17:10 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2015-03-03 17:10 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2015-03-03 17:10 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2015-03-03 17:10 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2015-03-03 17:10 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2015-03-03 17:10 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2015-03-03 17:10 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2015-03-03 17:10 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2015-03-03 17:10 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2015-03-03 17:10 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2015-03-03 17:10 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2015-03-03 17:10 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2015-03-03 17:10 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2015-03-03 17:10 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2015-03-03 17:10 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2015-03-03 17:10 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2015-03-03 17:10 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2015-03-03 17:10 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2015-03-03 17:10 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2015-03-03 17:10 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2015-03-03 17:10 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2015-03-03 17:10 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2015-03-03 17:10 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2015-03-03 17:10 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2015-03-03 17:10 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2015-03-03 17:10 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2015-03-03 17:10 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2015-03-03 17:10 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2015-03-03 17:10 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2015-03-03 17:10 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2015-03-03 17:10 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2015-03-03 17:10 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2015-03-03 17:10 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2015-03-03 17:10 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2015-03-03 17:10 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2015-03-03 17:10 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2015-03-03 17:10 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2015-03-03 17:10 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2015-03-03 17:10 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2015-03-03 17:10 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2015-03-03 17:10 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2015-03-03 17:10 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2015-03-03 17:10 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2015-03-03 17:10 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2015-03-03 17:10 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2015-03-03 17:10 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2015-03-03 17:10 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2015-03-03 17:10 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2015-03-03 17:10 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2015-03-03 17:10 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2015-03-03 17:10 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2015-03-03 17:10 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2015-03-03 17:10 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2015-03-03 17:10 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2015-03-03 17:10 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2015-03-03 17:10 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2015-03-03 17:10 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2015-03-03 17:10 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2015-03-03 17:10 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2015-03-03 17:10 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2015-03-03 17:10 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2015-03-03 17:10 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2015-03-03 17:02 - 2015-03-03 17:03 - 00000000 ____D () C:\Users\Goymane\AppData\Local\NVIDIA
2015-03-03 17:02 - 2015-03-03 17:02 - 00001358 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-03-03 17:02 - 2015-03-03 17:02 - 00000000 ____D () C:\Users\Goymane\AppData\Local\NVIDIA Corporation
2015-03-03 17:02 - 2015-03-03 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-03-03 17:02 - 2015-03-03 17:02 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2015-03-03 17:02 - 2015-02-05 13:01 - 01756424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2015-03-03 17:02 - 2015-02-05 13:01 - 01514528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2015-03-03 17:02 - 2015-02-05 13:01 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2015-03-03 17:02 - 2015-02-05 13:01 - 01278920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2015-03-03 17:02 - 2015-02-05 09:57 - 00621384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-03-03 17:02 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2015-03-03 17:02 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2015-03-03 17:02 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 32106640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 25460880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 24768144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 20466496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 17253848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 13294528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 13208200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 10773704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 10713256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 10284872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-03-03 17:00 - 2015-02-05 13:01 - 03610768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 03299512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 03247248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 01895240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434752.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 01557648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434752.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00995248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00969872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00943760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00929936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00908104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00877816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00496272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00399504 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00390472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00353224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00345744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00305136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00195728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2015-03-03 17:00 - 2015-02-05 13:01 - 00177624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00164752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00038032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2015-03-03 17:00 - 2015-02-05 13:01 - 00035472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00032400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2015-03-03 17:00 - 2015-02-05 13:01 - 00030536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2015-03-03 16:51 - 2015-03-03 16:53 - 309136440 _____ (NVIDIA Corporation) C:\Users\Goymane\Downloads\347.52-desktop-win8-win7-winvista-64bit-international-whql.exe
2015-03-03 16:42 - 2015-03-03 17:51 - 00000000 ____D () C:\Users\Goymane\Documents\ManiaPlanet
2015-03-03 16:42 - 2015-03-03 17:51 - 00000000 ____D () C:\ProgramData\ManiaPlanet
2015-03-03 16:42 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2015-03-03 14:59 - 2015-03-03 14:59 - 00000798 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ImageReady 7.0.lnk
2015-03-03 14:59 - 2015-03-03 14:59 - 00000793 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 7.0.lnk
2015-03-03 14:59 - 1998-11-05 10:08 - 00087392 ____N (Twain Working Group) C:\WINDOWS\twain.dll
2015-03-03 14:58 - 2013-08-15 21:21 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-03-03 14:58 - 2013-08-15 21:21 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-03-03 14:58 - 2013-08-15 14:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-03-03 14:58 - 1998-10-29 16:45 - 00306688 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe
2015-03-03 14:49 - 2005-04-19 11:25 - 168337408 _____ () C:\Users\Goymane\Desktop\Adobe Photo Shop 7.0 Setup (Full Version).exe
2015-03-03 02:39 - 2015-03-04 21:30 - 00037624 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-03-03 02:39 - 2015-03-03 02:44 - 00000000 ____D () C:\ProgramData\RogueKiller
2015-03-03 02:38 - 2015-03-03 02:38 - 00002776 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-03-03 02:37 - 2015-03-03 02:37 - 05325696 _____ (Piriform Ltd) C:\Users\Goymane\Downloads\ccsetup503.exe
2015-03-03 02:37 - 2015-03-03 02:37 - 00000829 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-03-03 02:37 - 2015-03-03 02:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-03-03 02:37 - 2015-03-03 02:37 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-03 00:21 - 2015-03-06 14:54 - 00000000 ____D () C:\Users\Goymane\Downloads\Pics
2015-03-03 00:07 - 2015-03-03 00:07 - 00000000 ____D () C:\Users\Goymane\Desktop\PROJECTS
2015-03-03 00:05 - 2015-03-04 16:32 - 00000000 ____D () C:\Users\Goymane\Desktop\FURNI
2015-03-03 00:05 - 2015-03-03 21:56 - 00000000 ____D () C:\Users\Goymane\Desktop\COINSUP
2015-03-02 23:57 - 2015-03-08 04:04 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-02 23:57 - 2015-03-02 23:57 - 00000208 _____ () C:\Users\Goymane\Desktop\Counter-Strike Global Offensive.url
2015-03-02 23:55 - 2015-03-03 05:17 - 00295552 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-03-02 23:00 - 2015-03-09 20:49 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-03-02 23:00 - 2015-03-02 23:00 - 00000752 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-02 23:00 - 2015-03-02 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-02 23:00 - 2015-03-02 23:00 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-02 23:00 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-03-02 23:00 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-03-02 23:00 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-03-02 22:59 - 2015-03-02 22:59 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Goymane\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-02 22:52 - 2015-03-02 22:52 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Steam
2015-03-02 22:48 - 2015-03-02 22:48 - 00000635 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-03-02 22:48 - 2015-03-02 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-02 22:47 - 2015-03-02 22:47 - 01142128 _____ () C:\Users\Goymane\Downloads\SteamSetup.exe
2015-03-02 22:40 - 2015-03-02 22:41 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Mozilla
2015-03-02 22:40 - 2015-03-02 22:40 - 00000768 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-03-02 22:40 - 2015-03-02 22:40 - 00000768 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-03-02 22:40 - 2015-03-02 22:40 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Mozilla
2015-03-02 22:40 - 2015-03-02 22:40 - 00000000 ____D () C:\ProgramData\Mozilla
2015-03-02 22:40 - 2015-03-02 22:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-02 22:38 - 2015-03-02 23:50 - 00000000 ____D () C:\Program Files (x86)\Razer
2015-03-02 22:38 - 2015-03-02 22:38 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Razer_Inc
2015-03-02 22:38 - 2015-03-02 22:38 - 00000000 ____D () C:\ProgramData\Razer
2015-03-02 22:37 - 2015-03-02 22:37 - 00000789 _____ () C:\Users\Goymane\Desktop\PeerBlock.lnk
2015-03-02 22:37 - 2015-03-02 22:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock
2015-03-02 22:35 - 2015-03-02 22:35 - 00002186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Connect.lnk
2015-03-02 22:34 - 2015-03-02 22:34 - 00000000 ____D () C:\Program Files (x86)\Cisco Systems
2015-03-02 22:30 - 2015-03-02 22:30 - 00000000 ____D () C:\ProgramData\Cisco Systems
2015-03-02 22:26 - 2015-03-02 22:26 - 00000000 _____ () C:\WINDOWS\SysWOW64\Drivers\1043_ASUSTeK_G30AB.alu
2015-03-02 22:21 - 2015-03-09 10:17 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2399496502-2792710567-3845128958-1001
2015-03-02 22:08 - 2015-03-02 22:08 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Intel Corporation
2015-03-02 22:07 - 2015-03-02 22:07 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\ASUS WebStorage
2015-03-02 22:07 - 2015-03-02 22:07 - 00000000 ____D () C:\ProgramData\CyberLink
2015-03-02 22:06 - 2015-03-03 20:14 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Adobe
2015-03-02 22:06 - 2015-03-02 22:06 - 00001441 _____ () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-02 22:05 - 2015-03-05 09:46 - 00000000 ____D () C:\Users\Goymane\AppData\Local\VirtualStore
2015-03-02 22:05 - 2015-03-03 14:41 - 00000000 ____D () C:\Users\Goymane\AppData\Local\Packages
2015-03-02 22:05 - 2015-03-02 22:07 - 00000000 ____D () C:\Users\Goymane
2015-03-02 22:05 - 2015-03-02 22:05 - 00001076 _____ () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SystemLevelUp.lnk
2015-03-02 22:05 - 2015-03-02 22:05 - 00000020 ___SH () C:\Users\Goymane\ntuser.ini
2015-03-02 22:05 - 2013-08-29 09:49 - 00002102 _____ () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk
2015-03-02 22:05 - 2013-06-25 01:23 - 00000000 ___RD () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-02 22:05 - 2013-04-25 02:45 - 00000000 ___RD () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-02 22:05 - 2012-07-26 00:13 - 00000000 ___RD () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-02 22:05 - 2012-07-26 00:13 - 00000000 ____D () C:\Users\Goymane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-02 21:55 - 2015-03-02 21:56 - 00000000 _____ () C:\Recovery.txt
2015-03-02 21:55 - 2015-03-02 21:55 - 00000000 __SHD () C:\Recovery

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-09 23:09 - 2014-11-21 14:09 - 00000000 ___HD () C:\$Windows.~BT
2015-03-09 23:00 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-09 19:49 - 2012-07-25 23:28 - 00850046 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-09 19:42 - 2013-09-25 02:02 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-09 19:42 - 2012-07-25 23:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-09 14:49 - 2013-08-29 09:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-06 02:47 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2015-03-06 02:15 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\migwiz
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\Com
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-06 02:11 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-06 02:11 - 2012-07-25 23:52 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\winrm
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\slmgr
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\winrm
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\WCN
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\slmgr
2015-03-06 02:11 - 2012-07-25 23:49 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts
2015-03-06 02:11 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe
2015-03-06 02:11 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2015-03-06 02:11 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2015-03-06 02:11 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\system32\oobe
2015-03-06 02:11 - 2012-07-25 21:38 - 00000000 ____D () C:\WINDOWS\system32\Dism
2015-03-05 15:35 - 2012-07-25 23:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-04 20:41 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2015-03-04 11:12 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-03 18:14 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\MUI
2015-03-03 18:14 - 2012-07-26 00:12 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-03 18:14 - 2012-07-25 21:37 - 00000000 ____D () C:\WINDOWS\servicing
2015-03-03 18:12 - 2013-04-25 05:46 - 00000000 ____D () C:\WINDOWS\en-GB
2015-03-03 18:12 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\en-GB
2015-03-03 18:12 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\en-GB
2015-03-03 17:16 - 2012-07-25 21:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-03 17:15 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\Globalization
2015-03-03 17:03 - 2013-09-25 02:02 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-03-03 17:02 - 2013-09-25 02:02 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-03-03 17:02 - 2013-09-25 02:02 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-03-03 14:59 - 2013-08-29 09:28 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-03 04:02 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\IME
2015-03-03 02:48 - 2013-08-29 08:58 - 00000000 ____D () C:\WINDOWS\Panther
2015-03-02 23:56 - 2012-07-25 21:26 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-03-02 23:35 - 2012-07-26 00:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2015-03-02 22:16 - 2012-07-26 00:12 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-03-02 21:55 - 2012-07-26 00:13 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2013-08-29 07:59

==================== End Of Log ============================0
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-03-2015 01
Ran by Goymane at 2015-03-09 23:42:00
Running from C:\Users\Goymane\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

//N.P.P.D.RUSH// - The milk of Ultra violet (HKLM-x32\...\Steam App 270090) (Version: - Rail Slave Games)
A4 TECH PC Camera H (HKLM-x32\...\{CE3B8E96-B0AF-4871-9178-1519B58E3A93}) (Version: 2007.11.12 - A4 TECH)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 9 ActiveX (HKLM-x32\...\{8E9DB7EF-5DD3-499E-BA2A-A1F3153A4DF8}) (Version: 9.0.115.0 - Adobe Systems, Inc.)
Adobe Photoshop 7.0 (HKLM-x32\...\Adobe Photoshop 7.0) (Version: 7.0 - Adobe Systems, Inc.)
Adobe Reader X (10.1.3) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.3 - Adobe Systems Incorporated)
AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.01.05 - ASUSTeK Computer Inc.)
Alcor Micro USB Card Reader Driver (HKLM-x32\...\InstallShield_{5DA7ED45-2322-45AA-99B6-B8F94EBF859F}) (Version: 20.06.6362.4423 - Alcor Micro Corp.)
Alcor Micro USB Card Reader Driver (x32 Version: 20.06.6362.4423 - Alcor Micro Corp.) Hidden
ASUS Easy Update 2 (HKLM-x32\...\{E7AA854E-6756-424E-84C2-4E47D5729AFF}) (Version: 3.00.08 - ASUSTeK Computer Inc.)
ASUS Music Maker (HKLM-x32\...\MAGIX_{AB515018-7F9D-4047-B0C0-F26BAC30F3E1}) (Version: 18.0.3.3 - MAGIX AG)
ASUS Music Maker (Version: 18.0.3.3 - MAGIX AG) Hidden
ASUS MX Suite (HKLM-x32\...\MAGIX_{CFA9C800-9B0B-42E3-92E7-08B5AF2E192E}) (Version: 1.13.0.121 - MAGIX AG)
ASUS MX Suite (Version: 1.13.0.121 - MAGIX AG) Hidden
ASUS ROG GAMING MOUSE GX900 (HKLM-x32\...\{0AD3CB15-7DAA-4A0D-AD49-2BB8485C95A3}) (Version: 1.1.0 - ASUS)
ASUS Video easy (HKLM-x32\...\MAGIX_{E3185090-8796-46FB-A27F-6C844F106DAC}) (Version: 4.0.1.90 - MAGIX AG)
ASUS Video easy (Version: 4.0.1.90 - MAGIX AG) Hidden
ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.18.159 - ASUS Cloud Corporation)
ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4127.52 - CyberLink Corp.)
ASUSDVD (x32 Version: 10.0.4127.52 - CyberLink Corp.) Hidden
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.309 - ASUSTEK)
Bing Bar (HKLM-x32\...\{16793295-2366-40F7-A045-A3E42A81365E}) (Version: 7.1.362.0 - Microsoft Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
Cisco Connect (HKLM-x32\...\Cisco Connect) (Version: 1.4.11145.0 - Cisco Consumer Products LLC)
Components Setup (HKLM-x32\...\{31187E06-E131-4709-9285-7D105D77AA89}) (Version: 1.00.0000 - Vimicro Corporation)
Components Setup (x32 Version: 1.00.0000 - Vimicro Corporation) Hidden
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
eManual (HKLM-x32\...\{0C84E634-EB68-4A54-B21E-A05EC87A4CC5}) (Version: 1.00.06 - ASUSTeK Computer Inc.)
Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG)
Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Galeria de Fotografias (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North)
IM Magician (HKLM-x32\...\{A5742726-2180-4253-83A7-53558486A7A2}) (Version: 1.00.0001 - Vimisoft Studio)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1310 - Intel Corporation)
Intel® Network Connections 18.1.59.0 (HKLM\...\PROSetDX) (Version: 18.1.59.0 - Intel)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.0.1083 - Intel Corporation)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 36.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 36.0 (x86 en-US)) (Version: 36.0 - Mozilla)
Mozilla Firefox 36.0.1 (x86 en-US) (HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\Mozilla Firefox 36.0.1 (x86 en-US)) (Version: 36.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NVIDIA 3D Vision Controller Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Graphics Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.)
Raccolta foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.40 - Ralink)
Read, Write & Type! CD (HKLM-x32\...\{DEC596CA-F0AE-495E-AB66-0C151A03CA44}) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6890 - Realtek Semiconductor Corp.)
Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive)
Sentry Vision Security 3.2.0 (HKLM-x32\...\Sentry_0) (Version: - )
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden
Sid Meier's Civilization III: Complete (HKLM-x32\...\Steam App 3910) (Version: - Firaxis Games)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
System Level Up Driver (HKLM-x32\...\{ABB5B6B0-68E6-4F87-8F1D-A9A2A3A77355}) (Version: 2.02.01 - ASUSTeK Computer Inc.)
Toy Soldiers (HKLM-x32\...\Steam App 98300) (Version: - Signal Studios)
Trend Micro RUBotted 2.0 Beta (HKLM-x32\...\{54D4EAF5-4C80-4878-B4AC-5AE454A02E3C}_is1) (Version: 2.0.0.1034 - Trend Micro, Inc.)
VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
Συλλογή φωτογραφιών (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
照片库 (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

04-03-2015 11:57:09 Language Pack Removal
05-03-2015 15:31:21 Language Pack Removal
07-03-2015 15:59:36 Installed DirectX
09-03-2015 14:39:42 Installed A4 TECH PC Camera H

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-25 21:26 - 2012-07-25 21:26 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0E267745-FB7A-4397-8E28-A67E41D8F246} - System32\Tasks\ASUS\ASUS Lighting Execute => C:\Program Files (x86)\ASUS\AI Suite II\Lighting\Lighting.exe [2013-04-12] (ASUSTeK)
Task: {39B0F7B3-1C59-4D82-ACAB-6A6C61807E26} - System32\Tasks\ASUS\SystemLevelUp Driver => C:\Program Files\ASUS\System Level Up Driver\SysLevelUp.exe [2013-04-09] ()
Task: {49B1D6FD-1EDF-4B3E-96A6-C26A5586A9F1} - System32\Tasks\ASUS\AsSysLevelUpSrc => C:\Program Files\ASUS\System Level Up Driver\AsSysLevelUpSrc.exe [2013-05-13] (ASUSTeK Computer Inc.)
Task: {537B100E-C9A0-4AC3-A814-62F6A6732520} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {54E8E615-63EB-4F3C-B34A-7FE04CC072A2} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-03] (Adobe Systems Incorporated)
Task: {8ECBBE3D-B5E7-4B31-9506-E9E5BBA0B250} - System32\Tasks\ASUS\ASUS Easy Update 2 => C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe [2013-07-04] (ASUSTeK Computer Inc.)
Task: {8F15C3CF-6220-4D7D-B8A3-E4612A8D10E9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-01-29] (Microsoft Corporation)
Task: {B860E895-5428-4D5A-8072-52487B888C6C} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2012-09-27] ()
Task: {C7D7D35F-2EE6-4F8F-A052-18FEAD84F066} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.)
Task: {EDD808EB-D09B-4333-ADDC-2940E4D95520} - System32\Tasks\ASUS\ASUS AiCharger_Desktop Execute => C:\Program Files (x86)\InstallShield Installation Information\{11F6707B-88F9-4D2D-A138-27B657BAE4D2}\AiChargerDT.exe [2013-03-06] (ASUSTek Computer Inc.)
Task: {FCD70D43-5A45-4BD1-AC19-EAFC34229CE3} - System32\Tasks\ASUS\ASUS AiCharger_II TrayIcon => C:\Program Files (x86)\ASUS\AI Suite II\Ai Charger II\AsChargerIITray.exe [2013-03-06] (ASUSTeK)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (whitelisted) ==============

2013-09-25 02:02 - 2015-02-05 11:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-08-29 09:27 - 2012-06-01 01:42 - 00920736 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
2012-12-18 22:10 - 2012-12-18 22:10 - 00072192 _____ () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
2015-03-07 16:10 - 2015-03-07 16:10 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2013-08-29 09:27 - 2013-04-09 20:28 - 03078016 _____ () C:\Program Files\ASUS\System Level Up Driver\SysLevelUp.exe
2013-08-29 09:27 - 2015-03-09 19:42 - 00028160 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll
2013-08-29 09:27 - 2010-06-28 18:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll
2015-03-04 17:46 - 2010-08-24 19:06 - 00085840 _____ () C:\Program Files (x86)\Trend Micro\RUBotted\hc_help.dll
2013-08-29 09:27 - 2013-04-09 20:28 - 00179712 _____ () C:\Program Files\ASUS\System Level Up Driver\ASUSSERVICE.DLL
2013-08-29 09:27 - 2013-04-09 20:28 - 00609280 _____ () C:\Program Files\ASUS\System Level Up Driver\DeskTopToastDll.dll
2013-08-29 09:27 - 2013-04-09 20:28 - 00475136 _____ () C:\Program Files\ASUS\System Level Up Driver\HookKey32.dll
2015-03-04 20:23 - 2010-06-18 00:35 - 00020480 _____ () C:\Tnlenterprises\SentryVision\rt\bin\jetvm\jvm.dll
2015-03-04 20:23 - 2010-06-18 00:35 - 00069632 _____ () C:\Tnlenterprises\SentryVision\rt\bin\java.dll
2015-03-04 20:23 - 2010-06-18 00:41 - 00126976 _____ () C:\Tnlenterprises\SentryVision\rt\bin\zip.dll
2015-03-04 20:23 - 2010-06-18 00:30 - 00159744 _____ () C:\Tnlenterprises\SentryVision\rt\jetrt\baseline720.dll
2013-09-25 01:57 - 2013-02-15 16:15 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 64.59.144.17 - 64.59.150.133

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-2399496502-2792710567-3845128958-500 - Administrator - Disabled)
Goymane (S-1-5-21-2399496502-2792710567-3845128958-1001 - Administrator - Enabled) => C:\Users\Goymane
Guest (S-1-5-21-2399496502-2792710567-3845128958-501 - Limited - Disabled)

==================== Faulty Device Manager Devices =============

Name: PC Camera
Description: PC Camera
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/09/2015 07:30:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Explorer.EXE version 6.2.9200.16628 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: c94

Start Time: 01d05abbd7329481

Termination Time: 4294967295

Application Path: C:\WINDOWS\Explorer.EXE

Report Id: d1c697b8-c6d5-11e4-be83-74d02b9985d1

Faulting package full name:

Faulting package-relative application ID:

Error: (03/09/2015 02:52:41 PM) (Source: MsiInstaller) (EventID: 11316) (User: Brail1)
Description: Product: Adobe Flash Player 9 ActiveX -- Error 1316.The specified account already exists.

Error: (03/09/2015 02:49:40 PM) (Source: MsiInstaller) (EventID: 11316) (User: Brail1)
Description: Product: Adobe Flash Player 9 ActiveX -- Error 1316.The specified account already exists.

Error: (03/07/2015 04:10:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 36.0.1.5542, time stamp: 0x54f851c0
Faulting module name: mozalloc.dll, version: 36.0.1.5542, time stamp: 0x54f8437e
Exception code: 0x80000003
Fault offset: 0x00001e02
Faulting process id: 0xcbc
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3
Faulting package full name: plugin-container.exe4
Faulting package-relative application ID: plugin-container.exe5

Error: (03/04/2015 09:16:10 PM) (Source: MsiInstaller) (EventID: 11904) (User: Brail1)
Description: Product: Adobe Flash Player 9 ActiveX -- Error 1904.Module C:\WINDOWS\SysWOW64\Macromed\Flash\Flash9e.ocx failed to register. HRESULT -2147220473. Contact your support personnel.

Error: (03/04/2015 09:06:02 PM) (Source: ESENT) (EventID: 455) (User: )
Description: taskhostex (3880) WebCacheLocal: Error -1811 (0xfffff8ed) occurred while opening logfile C:\Users\Goymane\AppData\Local\Microsoft\Windows\WebCache\V0100008.log.

Error: (03/04/2015 08:34:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program wmplayer.exe version 12.0.9200.16420 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: e6c

Start Time: 01d056fd2bf41af4

Termination Time: 4294967295

Application Path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe

Report Id: 7fb5eb47-c2f0-11e4-be7a-74d02b9985d1

Faulting package full name:

Faulting package-relative application ID:

Error: (03/02/2015 10:31:40 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x80072EE7
Command-line arguments:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9e4b231b-3e45-41f4-967f-c914f178b6ac;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (03/02/2015 10:31:39 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Acquisition of End User License failed. hr=0x80072EE7
Sku Id=9e4b231b-3e45-41f4-967f-c914f178b6ac

Error: (03/02/2015 10:31:39 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details.
hr=0x80072EE7


System errors:
=============
Error: (03/09/2015 11:10:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0xc190010f: English ESD Bundle Parent.

Error: (03/09/2015 02:51:28 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 2:41:40 PM on ‎3/‎9/‎2015 was unexpected.

Error: (03/09/2015 02:17:34 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x8024200d: English ESD Bundle Parent.

Error: (03/07/2015 11:59:07 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0xc190010f: English ESD Bundle Parent.

Error: (03/07/2015 01:34:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x8024200d: English ESD Bundle Parent.

Error: (03/06/2015 02:50:24 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0xc190010f: English ESD Bundle Parent.

Error: (03/06/2015 02:11:22 AM) (Source: DCOM) (EventID: 10010) (User: Brail1)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}

Error: (03/04/2015 09:31:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The MBAMService service terminated unexpectedly. It has done this 1 time(s).

Error: (03/04/2015 09:30:22 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x0000000a (0xfffff88000961008, 0x0000000000000002, 0x0000000000000000, 0xfffff80368d61353)C:\WINDOWS\MEMORY.DMP030415-8562-01

Error: (03/04/2015 09:30:22 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 9:17:24 PM on ‎3/‎4/‎2015 was unexpected.


Microsoft Office Sessions:
=========================
Error: (03/09/2015 07:30:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Explorer.EXE6.2.9200.16628c9401d05abbd73294814294967295C:\WINDOWS\Explorer.EXEd1c697b8-c6d5-11e4-be83-74d02b9985d1

Error: (03/09/2015 02:52:41 PM) (Source: MsiInstaller) (EventID: 11316) (User: Brail1)
Description: Product: Adobe Flash Player 9 ActiveX -- Error 1316.The specified account already exists.
(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (03/09/2015 02:49:40 PM) (Source: MsiInstaller) (EventID: 11316) (User: Brail1)
Description: Product: Adobe Flash Player 9 ActiveX -- Error 1316.The specified account already exists.
(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (03/07/2015 04:10:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe36.0.1.554254f851c0mozalloc.dll36.0.1.554254f8437e8000000300001e02cbc01d0591b3c523d73D:\Programs\MozillaFirefox\plugin-container.exeD:\Programs\MozillaFirefox\mozalloc.dll87393416-c527-11e4-be7e-74d02b9985d1

Error: (03/04/2015 09:16:10 PM) (Source: MsiInstaller) (EventID: 11904) (User: Brail1)
Description: Product: Adobe Flash Player 9 ActiveX -- Error 1904.Module C:\WINDOWS\SysWOW64\Macromed\Flash\Flash9e.ocx failed to register. HRESULT -2147220473. Contact your support personnel.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (03/04/2015 09:06:02 PM) (Source: ESENT) (EventID: 455) (User: )
Description: taskhostex3880WebCacheLocal: C:\Users\Goymane\AppData\Local\Microsoft\Windows\WebCache\V0100008.log-1811 (0xfffff8ed)

Error: (03/04/2015 08:34:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: wmplayer.exe12.0.9200.16420e6c01d056fd2bf41af44294967295C:\Program Files (x86)\Windows Media Player\wmplayer.exe7fb5eb47-c2f0-11e4-be7a-74d02b9985d1

Error: (03/02/2015 10:31:40 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0x80072EE7RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9e4b231b-3e45-41f4-967f-c914f178b6ac;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (03/02/2015 10:31:39 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0x80072EE79e4b231b-3e45-41f4-967f-c914f178b6ac

Error: (03/02/2015 10:31:39 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0x80072EE700010001(0x00000000, 22:31:34:873 - https://activation.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=DM)
00020001(0x00000000, 22:31:34:873)
00030001(0x00000000, 22:31:34:873 - https://activation.sls.microsoft.com)
00030002(0x00000000, 22:31:34:873 - 0)
00040001(0x00000000, 22:31:34:873 - https://activation.sls.microsoft.com)
00040002(0x00000000, 22:31:34:889 - 1, <NULL>, <NULL>, <NULL>)
00050002(0x80072F94, 22:31:34:889 - 0, 1)
00040006(0x00000001, 22:31:34:889 - 0, https://activation.sls.microsoft.com, <N/A>, <N/A>)
00020005(0x00000000, 22:31:34:889 - 0)
00020008(0x80072EE7, 22:31:39:899 - SOAPAction: "http://microsoft.com/SL/ProductActivationService/IssueToken"
Content-Type: text/xml; charset=utf-8
, <soap:Envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:soapenc="http://schemas.xmlsoap.org/soap/encoding/"><soap:Body><RequestSecurityToken xmlns="http://schemas.xmlsoap.org/ws/2004/04/security/trust"><TokenType>ProductActivation</TokenType><RequestType>http://schemas.xmlsoap.org/ws/2004/04/security/trust/Issue</RequestType><UseKey><Values xmlns:q1="http://schemas.xmlsoap.org/ws/2004/04/security/trust" soapenc:arrayType="q1:TokenEntry[1]"><TokenEntry><Name>PublishLicense</Name><Value>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</Value></TokenEntry></Values></UseKey><Claims><Values xmlns:q1="http://schemas.xmlsoap.org/ws/2004/04/security/trust" soapenc:arrayType="q1:TokenEntry[16]"><TokenEntry><Name>SessionKey</Name><Value>e5qOovk6KE4UZzpRRRxn7W7nCZeooCKesfshDbd9DDikQuD/aAHX+IiDriO8keCnU1w2GV60deO5Ng9TNaCcQ/pX/xO4p382tuidJ0ZoIjGs4x6QytjwjiJXX5sS+/w/+7iY40ajuXokYGo/9rKy4nQOvL55Ya7rTstgcNorJfVDBh2x/vqfnXaj68ItqcXJF1QnCwXd20Fw39XgVapFeuxO6+9OMx3VfrXcZPh7Pmem+uvjgMVXQ6s1Gb5jRCy8M7zfpC2W6u9jIb1v07vI5scfSfpLotZlAcJiUspAWjwLuvl6nc86Fhj+Vn3RNorR3P1dWcrqvxVN+Iqj1hvjFw==</Value></TokenEntry><TokenEntry><Name>BindingType</Name><Value>Fb93DQ4TAni/sbYasyUoKSI0j3ifznII2RYU7U/QrW8=</Value></TokenEntry><TokenEntry><Name>Binding</Name><Value>1RHE3oGihDIdA64QO6aV/HL40eBOWUt0zRcve/TSmOB0Jed3ZhqoS7LBY+AzERnr7ElScf97KT4PgEjACyXX8+/hPTo1ufHOfsAjuLzn4KA=</Value></TokenEntry><TokenEntry><Name>ProductKey</Name><Value>FNW40tSfTNtIABWsbCTkqAna3u6u+9Z0wA/pd0yFP/A=</Value></TokenEntry><TokenEntry><Name>ProductKeyType</Name><Value>Fb93DQ4TAni/sbYasyUoKTnS7PhZWGLapsxmehfS+RI=</Value></TokenEntry><TokenEntry><Name>ProductKeyActConfigId</Name><Value>aScN3QZLGPUUFEWFdWWfeLRIegMvOshGJJ2OtdaONa9mltfHt7Gzs3zPdbd4QFGwyXb2JyHnvmyJ3js+AwUAgaEUpsvjuPRmpo1EnE0t/5I=</Value></TokenEntry><TokenEntry><Name>otherInfoPublic.licenseCategory</Name><Value>Pf4bUDEKOmlEioGSuPOO6gcuVpCHHm12AfLTWONteHA=</Value></TokenEntry><TokenEntry><Name>otherInfoPrivate.licenseCategory</Name><Value>Pf4bUDEKOmlEioGSuPOO6vaUm2A/8IfYvnEeK6UU8nE=</Value></TokenEntry><TokenEntry><Name>otherInfoPublic.sysprepAction</Name><Value>Lk2jyhUwvcXrEu4LoyX/gw==</Value></TokenEntry><TokenEntry><Name>otherInfoPrivate.sysprepAction</Name><Value>Lk2jyhUwvcXrEu4LoyX/gw==</Value></TokenEntry><TokenEntry><Name>ClientInformation</Name><Value>Bd3h+Me0IOKVKpL/jkBJgYN336Ho+OJAG7uwi1bMq5RoFipuLwti2ltwhlnpfGj9XMdNq5DVcyvdD1jANLvHdQ==</Value></TokenEntry><TokenEntry><Name>ReferralInformation</Name><Value>KV1RlzTQIWvfAVZUPauWcbAOD2lpXl1IFzRHQ18t/hxJmrq30ppHcSyLNDrXgKNJsPu+xoyvdAHpvQ+EAvGjPA==</Value></TokenEntry><TokenEntry><Name>ClientSystemTime</Name><Value>rVD9RxJLJ+cSCYaEgWJIFbE6PSCDwNfQCQ41ECR6i1w=</Value></TokenEntry><TokenEntry><Name>ClientSystemTimeUtc</Name><Value>rVD9RxJLJ+cSCYaEgWJIFbE6PSCDwNfQCQ41ECR6i1w=</Value></TokenEntry><TokenEntry><Name>otherInfoPublic.secureStoreId</Name><Value>23WDRLoEMozIZBm2Pbs+fA2eADPMlzBadHAu4LkKgJAnQyZsz8WnZIIr/Wyby9qt</Value></TokenEntry><TokenEntry><Name>otherInfoPrivate.secureStoreId</Name><Value>23WDRLoEMozIZBm2Pbs+fA2eADPMlzBadHAu4LkKgJAnQyZsz8WnZIIr/Wyby9qt</Value></TokenEntry></Values></Claims></RequestSecurityToken></soap:Body></soap:Envelope>)
00010002(0x80072EE7, 22:31:39:915 - <NULL>)
00010003(0x80072EE7, 22:31:39:915)


==================== Memory info ===========================

Processor: Intel® Core™ i7-4770K CPU @ 3.50GHz
Percentage of memory in use: 14%
Total physical RAM: 16321.86 MB
Available physical RAM: 13997.05 MB
Total Pagefile: 32705.86 MB
Available Pagefile: 30115.77 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:95.48 GB) (Free:24.52 GB) NTFS
Drive d: (New Volume) (Fixed) (Total:2794.39 GB) (Free:2741.89 GB) NTFS
Drive e: (READ__WRITE) (CDROM) (Total:0.23 GB) (Free:0 GB) CDFS
Drive j: (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: AFCAD1F5)

Partition: GPT Partition Type.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================

Attached Files


Edited by Oh My!, 14 March 2015 - 04:13 PM.
Posted Addition.txt


#4 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,671 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:17 AM

Posted 16 March 2015 - 07:05 PM

Greetings BadVirus88 and :welcome: to BleepingComputer's Virus/Trojan/Spyware/Malware Removal forum.

My name is Oh My! and I am here to help you! Now that we are "friends" please call me Gary.

If you would allow me to call you by your first name I would prefer to do that. :thumbup2:

===================================================

Ground Rules:
  • First, I would like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. Please try to match our commitment to you with your patience toward us. If this was easy we would never have met. :)
  • Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
  • Please perform all steps in the order they are listed in each set of instructions. Some steps may be a bit complicated. If things are not clear, be sure to stop and let me know. We need to work on this together with confidence.
  • Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems simply stop and tell me.
  • When you post your reply, use the Replytopic.jpg button instead.
  • In the upper right hand corner of the topic you will see the Followtopic.jpg button. Click on this then choose Immediate E-Mail notification and then Proceed and you will be sent an email once I have posted a response.
  • If you do not reply to your topic after 5 days we assume it has been abandoned and I will close it.
  • When your computer is clean I will alert you of such. I will also provide for you detailed information about how you can combat future infections.
  • I would like to remind you to make no further changes to your computer unless I direct you to do so.
  • Now let's get started :thumbup2:
===================================================

Now that I am assisting you, you can expect that I will be very responsive to your situation. If you are able, I would request you check this thread at least once per day so that we can try to resolve your issues effectively and efficiently. If you are going to be delayed please be considerate and post that information so that I know you are still with me. Unfortunately, there are many people waiting to be assisted and not enough of us at BleepingComputer to go around. I appreciate your understanding and diligence.

Thank you for your patience thus far.

Do these files look familiar to you?

C:\Users\Goymane\Desktop\3634543.oxps
C:\Users\Goymane\Desktop\23423432432.psd


While I review our situation please run the below for me.

===================================================

Farbar's Recovery Scan Tool - Run Fix in Normal or Safe Mode

--------------------
  • Press the Windows key Windows_Logo_key.gif + r on your keyboard at the same time. Type in notepad and press Enter
  • Please copy and paste the contents of the below code box into the open notepad and save it to your desktop (<<<Important) as fixlist.txt
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\MountPoints2: {97f62f96-25c8-11e3-be6d-806e6f6e6963} - "E:\Launch_RWT.exe" .\SETUP\Setup.exe Rwt95app.exe
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
SearchScopes: HKU\S-1-5-21-2399496502-2792710567-3845128958-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  • Launch FRST and press the Fix button just once and wait, the program will automatically launch fixlist.txt.
  • The tool will create a log on the desktop called Fixlog.txt. Please copy and paste the contents of the file in your reply.
===================================================

System Summary Information

--------------------
  • Press the windows key Windows_Logo_key.gif + r on your keyboard at the same time
  • Type msinfo32 and press Enter
  • Left click on System Summary
  • Click File, Save, and name the file Summary
  • Zip and attach the file to your reply
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Fixlog
  • System Summary Information
  • Update on computer performance

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#5 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 16 March 2015 - 11:07 PM

Thank you for your assistance Gary. I appreciate the help. I'm Joe. I created the .psd and .oxps files you mentioned.

 

--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Goymane at 2015-03-16 19:52:39 Run:1
Running from C:\Users\Goymane\Desktop
Loaded Profiles: Goymane (Available profiles: Goymane)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\...\MountPoints2: {97f62f96-25c8-11e3-be6d-806e6f6e6963} - "E:\Launch_RWT.exe" .\SETUP\Setup.exe Rwt95app.exe
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
SearchScopes: HKU\S-1-5-21-2399496502-2792710567-3845128958-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
*****************

"HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97f62f96-25c8-11e3-be6d-806e6f6e6963}" => Key deleted successfully.
HKCR\CLSID\{97f62f96-25c8-11e3-be6d-806e6f6e6963} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => Key not found.
HKU\S-1-5-21-2399496502-2792710567-3845128958-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.

==== End of Fixlog 19:52:39 ====

Attached Files



#6 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 17 March 2015 - 03:49 AM

Update on computer performance.

 

So I haven't experienced any issues with accessing my email yet but when it did happen it would mess up at random times, so who knows. I still see allot of activity on the peer blocker range when I browse the web, same names as before are showing up.



#7 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,671 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:17 AM

Posted 17 March 2015 - 08:40 AM

Nice to meet you Joe.

None of the sites you have listed are inherently malicious.

Do you have the RogueKiller report you can post?

After the reformat did you reintroduce back up copies of files into the computer.

Please run these for me and keep me updated on the email login issue.

===================================================

AdwCleaner by Xplode - Delete Adware

-------------------
  • Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browser
  • Double click on AdwCleaner.exe, click Run, then select I agree if it appears
  • Click Scan
  • Once the scan has completed youi will see Pending. Please check elements you don't want to remove above the progress bar
  • Click on Clean
  • Confirm the cleaning and rebooting of your computer by clicking OK
  • Your computer will be rebooted automatically. A text file will open after the restart
  • Copy and paste the contents in your reply
  • You can also find the logfile at C:\AdwCleaner\AdwCleaner.txt
===================================================

Junkware Removal Tool by thisisu

-------------------
  • Please download Junkware Removal Tool and save it to your desktop.
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. (Click on this link to see a list of programs that should be disabled. The list is not all inclusive.)
  • Right-mouse click JRT.exe and select Run as administrator (Windows XP double click the icon)
  • Please allow the program time to run
  • Once completed a Notepad document will open on your desktop
  • Copy and paste the contents in your reply
===================================================

Farbar's MiniToolBox

--------------------
  • Please download MiniToolBox, save it to your desktop
  • Please close any Firefox browsers you may have open
  • Double click the icon to launch the program
  • Make sure only the following options are checked:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries

  • Click Go and once the scan is completed a Result.txt Notepad document will open on your desktop
  • Please copy and paste the contents in your reply
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Replies
  • AdwCleaner log
  • Junkware log
  • Result log

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#8 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 17 March 2015 - 09:44 AM

Nice to meet you as well Gary. I did not reintroduce back up copies of files into my computer. On the 10th, I ran rogue killer twice and it crashed each time, it gave me a blue screen error. I ran a third scan, it finally worked without the error, it finds nothing, I waited a minute then did a fourth scan, finally finds something, this is what it found:

 

RogueKiller V10.5.3.0 (x64) [Mar 10 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 8 (6.2.9200 ) 64 bits version
Started in : Normal mode
User : Goymane [Administrator]
Started from : C:\Users\Goymane\Desktop\RogueKillerX64.exe
Mode : Scan -- Date : 03/10/2015  22:37:44

¤¤¤ Processes : 1 ¤¤¤
[Suspicious.Path] NvOAWrapperCache.exe(4976) -- C:\Users\Goymane\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe[7] -> Killed [TermProc]

¤¤¤ Registry : 12 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-2399496502-2792710567-3845128958-1001\Software\Microsoft\Internet Explorer\Main | Start Page :
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-2399496502-2792710567-3845128958-1001\Software\Microsoft\Internet Explorer\Main | Start Page :
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 64.59.144.17 64.59.150.133 192.168.1.1 [CANADA (CA)][CANADA (CA)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 64.59.144.17 64.59.150.133 192.168.1.1 [CANADA (CA)][CANADA (CA)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{260545C1-4C32-4C6B-B6D8-C08F699DFB15} | DhcpNameServer : 64.59.144.17 64.59.150.133 192.168.1.1 [CANADA (CA)][CANADA (CA)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{93EC976A-D528-44F3-91F4-B956C09E669A} | DhcpNameServer : 64.59.144.17 64.59.150.133 192.168.1.1 [CANADA (CA)][CANADA (CA)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{260545C1-4C32-4C6B-B6D8-C08F699DFB15} | DhcpNameServer : 64.59.144.17 64.59.150.133 192.168.1.1 [CANADA (CA)][CANADA (CA)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{93EC976A-D528-44F3-91F4-B956C09E669A} | DhcpNameServer : 64.59.144.17 64.59.150.133 192.168.1.1 [CANADA (CA)][CANADA (CA)]  -> Found
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Found

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 0 ¤¤¤

¤¤¤ Hosts File : 0 ¤¤¤

¤¤¤ Antirootkit : 18 (Driver: Loaded) ¤¤¤
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtQueryFullAttributesFile : D:\Programs\MozillaFirefox\xul.dll @ 0x677ad2b9 (jmp 0xfffffffff04fe539)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - LdrLoadDll : D:\Programs\MozillaFirefox\mozglue.dll @ 0x7136900c (jmp 0xfffffffffa0922c1)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtWriteFile : D:\Programs\MozillaFirefox\xul.dll @ 0x677ad5e5 (jmp 0xfffffffff04ffa55)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtReadFile : D:\Programs\MozillaFirefox\xul.dll @ 0x677ad1bb (jmp 0xfffffffff04ff64b)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtCreateFile : D:\Programs\MozillaFirefox\xul.dll @ 0x677ad441 (jmp 0xfffffffff04ff3e1)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtFlushBuffersFile : D:\Programs\MozillaFirefox\xul.dll @ 0x677ad181 (jmp 0xfffffffff04ff1c1)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtReadFileScatter : D:\Programs\MozillaFirefox\xul.dll @ 0x67b93d7d (jmp 0xfffffffff08e5f8d)
[IAT:Inl(Hook.IEAT)] (firefox.exe) ntdll.dll - NtWriteFileGather : D:\Programs\MozillaFirefox\xul.dll @ 0x67b93dcd (jmp 0xfffffffff08e610d)
[IAT:Inl(Hook.IEAT)] (firefox.exe) nss3.dll - PR_smprintf_free : D:\Programs\MozillaFirefox\mozglue.dll @ 0x713639f0 (jmp dword near [0x698e23d0])
[IAT:Inl(Hook.IEAT)] (firefox.exe) nss3.dll - PR_Calloc : D:\Programs\MozillaFirefox\mozglue.dll @ 0x71361730 (jmp dword near [0x698e23cc])
[IAT:Inl(Hook.IEAT)] (firefox.exe) nss3.dll - PR_Realloc : D:\Programs\MozillaFirefox\mozglue.dll @ 0x71361a30 (jmp dword near [0x698e23d8])
[IAT:Inl(Hook.IEAT)] (firefox.exe) nss3.dll - PR_Malloc : D:\Programs\MozillaFirefox\mozglue.dll @ 0x713625f0 (jmp dword near [0x698e23d4])
[IAT:Inl(Hook.IEAT)] (firefox.exe) mozalloc.dll - moz_free : D:\Programs\MozillaFirefox\mozglue.dll @ 0x713639f0 (jmp dword near [0x71db20a8])
[IAT:Inl(Hook.IEAT)] (firefox.exe) mozalloc.dll - moz_malloc : D:\Programs\MozillaFirefox\mozglue.dll @ 0x713625f0 (jmp dword near [0x71db20a0])
[IAT:Inl(Hook.IEAT)] (firefox.exe) mozalloc.dll - moz_realloc : D:\Programs\MozillaFirefox\mozglue.dll @ 0x71361a30 (jmp dword near [0x71db2094])
[IAT:Inl(Hook.IEAT)] (firefox.exe) mozalloc.dll - moz_calloc : D:\Programs\MozillaFirefox\mozglue.dll @ 0x71361730 (jmp dword near [0x71db20a4])
[IAT:Inl(Hook.IEAT)] (firefox.exe) icuuc52.dll - uprv_tzset_52 : D:\Programs\MozillaFirefox\MSVCR120.dll @ 0x6995f703 (jmp dword near [0x67248160])
[IAT:Inl(Hook.IEAT)] (firefox.exe) USER32.dll - GetWindowInfo : D:\Programs\MozillaFirefox\xul.dll @ 0x6866fa10 (jmp 0xfffffffff16294d0)

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: SanDisk SSD U100 128GB +++++
--- User ---
[MBR] 90f4df894d8a93343de8e8a69816ec0d
[BSP] c2d789759354eedad0392b42f42ae488 : Empty MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 800 MB
1 - [MAN-MOUNT] EFI system partition | Offset (sectors): 1640448 | Size: 260 MB
2 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 2172928 | Size: 128 MB
3 - Basic data partition | Offset (sectors): 2435072 | Size: 97767 MB
4 - [SYSTEM][MAN-MOUNT]  | Offset (sectors): 202661888 | Size: 450 MB
5 - [SYSTEM][MAN-MOUNT]  | Offset (sectors): 203583488 | Size: 350 MB
6 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 204300288 | Size: 22348 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: TOSHIBA DT01ACA300 +++++
--- User ---
[MBR] 0086f36f0b7bc8b257f89fc226376c3d
[BSP] 9e3b3c473b1db0daa516427cdae6e1cc : Windows Vista/7/8 MBR Code
Partition table:
0 - Microsoft reserved partition | Offset (sectors): 34 | Size: 128 MB
1 - Basic data partition | Offset (sectors): 264192 | Size: 2861459 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive2: Generic- SD/MMC +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive3: Generic- Compact Flash +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive4: Generic- SM/xD Picture +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )

+++++ PhysicalDrive5: Generic- MS/MS-Pro +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )


============================================
RKreport_SCN_03032015_024401.log - RKreport_SCN_03042015_113104.log - RKreport_SCN_03042015_213759.log - RKreport_SCN_03102015_223355.log


Edited by BadVirus88, 17 March 2015 - 09:49 AM.


#9 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 17 March 2015 - 10:28 AM

Here are the results for everything. Can people hack my computer with the information in the farbar toolbox results by posting it public?

----------------------------------------------------------------------------------------------------------------------------------------

# AdwCleaner v4.112 - Logfile created 17/03/2015 at 07:59:30
# Updated 09/03/2015 by Xplode
# Database : 2015-03-05.1 [Local]
# Operating system : Windows 8  (x64)
# Username : Goymane - BRAIL1
# Running from : C:\Users\Goymane\Desktop\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A}

***** [ Web browsers ] *****

-\\ Internet Explorer v10.0.9200.17267

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v36.0 (x86 en-US)


*************************

AdwCleaner[R0].txt - [1676 bytes] - [17/03/2015 07:57:23]
AdwCleaner[S0].txt - [952 bytes] - [17/03/2015 07:59:30]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1010  bytes] ##########

 

-------------------------------------------------------------------------------------------------------------------------------------------------

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.5 (03.17.2015:1)
OS: Windows 8 x64
Ran by Goymane on Tue 03/17/2015 at  8:02:52.68
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Tue 03/17/2015 at  8:04:04.86
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

-----------------------------------------------------------------------------------------------------------------------------------------

MiniToolBox by Farbar  Version: 09-03-2015
Ran by Goymane (administrator) on 17-03-2015 at 08:06:46
Running from "C:\Users\Goymane\Desktop"
Microsoft Windows 8  (X64)
Model: G30AB Manufacturer: ASUSTeK COMPUTER INC.
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================



========================= IP Configuration: ================================

Intel® Ethernet Connection I217-V = Ethernet (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled
set interface interface="Local Area Connection* 9" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 11" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 12" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : Brail1
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : vf.shawcable.net

Wireless LAN adapter Local Area Connection* 12:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter #2
   Physical Address. . . . . . . . . : A4-DB-30-3F-35-0F
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wi-Fi 2:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : vf.shawcable.net
   Description . . . . . . . . . . . : 802.11n Wireless LAN Card
   Physical Address. . . . . . . . . : A4-DB-30-3F-35-0D
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Ethernet:

   Connection-specific DNS Suffix  . : vf.shawcable.net
   Description . . . . . . . . . . . : Intel® Ethernet Connection I217-V
   Physical Address. . . . . . . . . : 74-D0-2B-99-85-D1
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : fd30:c257:1f05:0:3179:61e3:37c8:a8a5(Preferred)
   Temporary IPv6 Address. . . . . . : fd30:c257:1f05:0:c4a5:ef02:9c9d:8615(Preferred)
   Link-local IPv6 Address . . . . . : fe80::3179:61e3:37c8:a8a5%12(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.1.101(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Tuesday, March 17, 2015 7:59:54 AM
   Lease Expires . . . . . . . . . . : Wednesday, March 18, 2015 7:59:54 AM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 259313707
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-19-D4-6B-7B-74-D0-2B-99-85-D1
   DNS Servers . . . . . . . . . . . : 64.59.144.17
                                       64.59.150.133
                                       192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.vf.shawcable.net:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : vf.shawcable.net
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 13:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:90d7:c8a:1dba:3f57:fe9a(Preferred)
   Link-local IPv6 Address . . . . . : fe80::c8a:1dba:3f57:fe9a%13(Preferred)
   Default Gateway . . . . . . . . . :
   NetBIOS over Tcpip. . . . . . . . : Disabled
Server:  pd1nsc2.st.vc.shawcable.net
Address:  64.59.144.17

Name:    google.com
Addresses:  2607:f8b0:400a:806::200e
      216.58.216.142


Pinging google.com [216.58.216.142] with 32 bytes of data:
Reply from 216.58.216.142: bytes=32 time=15ms TTL=56
Reply from 216.58.216.142: bytes=32 time=14ms TTL=57

Ping statistics for 216.58.216.142:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 14ms, Maximum = 15ms, Average = 14ms
Server:  pd1nsc2.st.vc.shawcable.net
Address:  64.59.144.17

Name:    yahoo.com
Addresses:  206.190.36.45
      98.139.183.24
      98.138.253.109


Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=20ms TTL=53
Reply from 206.190.36.45: bytes=32 time=22ms TTL=53

Ping statistics for 206.190.36.45:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 20ms, Maximum = 22ms, Average = 21ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 17...a4 db 30 3f 35 0f ......Microsoft Wi-Fi Direct Virtual Adapter #2
 16...a4 db 30 3f 35 0d ......802.11n Wireless LAN Card
 12...74 d0 2b 99 85 d1 ......Intel® Ethernet Connection I217-V
  1...........................Software Loopback Interface 1
 18...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 13...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.101     10
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link     192.168.1.101    266
    192.168.1.101  255.255.255.255         On-link     192.168.1.101    266
    192.168.1.255  255.255.255.255         On-link     192.168.1.101    266
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     192.168.1.101    266
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     192.168.1.101    266
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 13    306 2001::/32                On-link
 13    306 2001:0:9d38:90d7:c8a:1dba:3f57:fe9a/128
                                    On-link
 12    266 fd30:c257:1f05::/64      On-link
 12    266 fd30:c257:1f05:0:3179:61e3:37c8:a8a5/128
                                    On-link
 12    266 fd30:c257:1f05:0:c4a5:ef02:9c9d:8615/128
                                    On-link
 12    266 fe80::/64                On-link
 13    306 fe80::/64                On-link
 13    306 fe80::c8a:1dba:3f57:fe9a/128
                                    On-link
 12    266 fe80::3179:61e3:37c8:a8a5/128
                                    On-link
  1    306 ff00::/8                 On-link
 13    306 ff00::/8                 On-link
 12    266 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\SysWOW64\pnrpnsp.dll [67584] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [67584] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\SysWOW64\NLAapi.dll [55296] (Microsoft Corporation)
Catalog5 05 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog5 06 C:\WINDOWS\SysWOW64\winrnr.dll [21504] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [289280] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [66560] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [85504] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [85504] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [72192] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [53760] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [355328] (Microsoft Corporation)

**** End of log ****



 

 

 

 



#10 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,671 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:17 AM

Posted 17 March 2015 - 06:02 PM

Greetings,

That looks fine. No, your computer can not be accessed as a result of what is posted.

Could you update me regarding your computer performance?
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#11 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 17 March 2015 - 06:57 PM

Ok Thanks. What about the Rouge Killer results? Performance has always been good, I still see the same names show up on the PB range though. Haven't had problems with the email yet.



#12 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,671 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:17 AM

Posted 17 March 2015 - 08:03 PM

Nothing malicious in the RogueKiller log.

Please run this.

===================================================

Malwarebytes Anti-Rootkit - Scan Only

--------------------
  • Download Malwarebytes Anti-Rootkit (mbar) and save it to your desktop
  • Double click the mbar icon and select Run
  • Click OK to install it on your desktop
  • If you receive a User Account Control prompt allow it to run
  • If you receive the following screen select Yes and your computer will be restarted

dda-driver-warning.png

  • Click Next on the following screen (or something that looks similar)

start-screen.png

  • On the Update Database: screen click Update to download the latest definition updates then click Next

database-update.png

  • On the Scan System: screen place checkmarks in the Drivers, Sectors, and System boxes (should be checked by default) then click Scan. Please be patient and allow the process to complete

scan-system.png

  • Click the Exit button not Cleanup
  • A system-log report will be created in the mbar folder, please copy and paste the contents in your reply
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • MBAR report

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#13 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 17 March 2015 - 08:28 PM

It keeps freezing on me, it runs for awhile but then shortly after it freezes.



#14 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,671 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:17 AM

Posted 17 March 2015 - 08:30 PM

Please attempt to run it in Safe Mode.
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#15 BadVirus88

BadVirus88
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:08:17 AM

Posted 17 March 2015 - 08:36 PM

Same thing happens in Safe mode.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users